New PostgreSQL STIG includes updated guidance for PostgreSQL 9.6 through 12, including how to use SCRAM authentication, a new logging location for PostgreSQL 10+, and usage of built-in defined roles added in newer Postgres releases. The Crunchy Data PostgreSQL STIG also provides expanded information regarding the use of any Federal Information Processing Standard (FIPS) compliant operating systems.
Link to download the guide:
https://www.crunchydata.com/disa-postgres-security-guide/dis...