lynis icon indicating copy to clipboard operation
lynis copied to clipboard

Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.

Results 214 lynis issues
Sort by recently updated
recently updated
newest added

**Version** - Solus 4.3 - Lynis version: 3.0.8 **Expected behavior** OS Should be detected as NAME="Solus" VERSION="4.3" **Output** `cat /etc/os-release`: ``` NAME="Solus" VERSION="4.3" ID="solus" VERSION_CODENAME=fortitude VERSION_ID="4.3" PRETTY_NAME="Solus 4.3 Fortitude" ANSI_COLOR="1;34"...

**Describe the bug** I have a server running Nginx. Lynis detects an issue (HTTP-6710) but looking through the **lynis.log** and **lynis-report.log** I cannot see what failed to have triggered the...

**Is your feature request related to a problem? Please describe.** Lynis does not recognise KDE Neon **Describe the solution you'd like** Reporting this as it is requested to do so....

**Is your feature request related to a problem? Please describe.** A new test is needed. **Describe the solution you'd like** Lynis does not currently notify on this. **Required changes** Add...

**Describe the bug** when running `lynis audit system remote HOST` lynis suggests to use `scp` for some of the steps. `scp` is seen as outdated and insecure by it's own...

HRDN-7230 does not recognise Carbon Black as a Anti-Virus **Describe the solution you'd like** Add Carbon Black as a known Anti-virus in check HRDN-7230 **Required changes** 1. Carbon Black agent...

**Describe the bug** Lynis report says: ``` Result: no commercial anti-virus tools found Hardening: assigned partial number of hardening points (0 of 3). ``` However, the system has ESET Endpoint...

`include/tests_databases` invokes `xargs` with the nonstandard `-i`(lower-case `i`) flag, resulting in an error message to stderr. It should use the standard `-I` (upper-case `I`) flag, which requires an argument instead...

If I comment out some test, then it is still taken into account in the Hardening index. Is there a way to avoid this?

Content of /etc/os-release: ID=mel NAME=Mentor Embedded Linux VERSION=2015.12 (jethro) VERSION_ID=2015.12 PRETTY_NAME=Mentor Embedded Linux 2015.12 (jethro)