{"description": "\nThe <code>ufw</code> service can be enabled with the following command:\n<pre>$ sudo systemctl enable ufw.service</pre>", "rationale": "The ufw service must be enabled and running in order for ufw to protect the system", "severity": "medium", "references": {"srg": ["SRG-OS-000297-GPOS-00115"], "cis": ["4.1.3"], "stigid": ["UBTU-22-251020"], "stigref": ["SV-260516r991593_rule"]}, "control_references": {"cis": ["4.1.3"], "stigid": ["UBTU-22-251020"]}, "components": [], "identifiers": {}, "ocil_clause": "the service is not enabled", "ocil": "\n\nRun the following command to determine the current status of the\n<code>ufw</code> service:\n<pre>$ sudo systemctl is-active ufw</pre>\nIf the service is running, it should return the following: <pre>active</pre>", "oval_external_content": null, "fixtext": "", "checktext": "", "vuldiscussion": "", "srg_requirement": "", "warnings": [], "conflicts": [], "requires": [], "policy_specific_content": {}, "platform": "system_with_kernel and package[ufw]", "platforms": ["system_with_kernel and package[ufw]"], "sce_metadata": {}, "inherited_platforms": ["system_with_kernel"], "cpe_platform_names": ["package_ufw_and_system_with_kernel"], "inherited_cpe_platform_names": ["system_with_kernel"], "bash_conditional": null, "fixes": {}, "title": "Verify ufw Enabled", "definition_location": "/aptdata/openscap/scap-security-guide/linux_os/guide/system/network/network-ufw/service_ufw_enabled/rule.yml", "template": {"name": "service_enabled_guard_var", "vars": {"packagename": "ufw", "servicename": "ufw", "variable": "var_network_filtering_service", "value": "ufw"}, "backends": {}}}