lynis icon indicating copy to clipboard operation
lynis copied to clipboard

Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.

Results 214 lynis issues
Sort by recently updated
recently updated
newest added

**Describe the bug** A Lynis audit reports the following despite explicitly using `sha256` and/or `sha512` in `aide.conf`: ``` * Use SHA256 or SHA512 to create checksums in AIDE [FINT-4402] https://cisofy.com/lynis/controls/FINT-4402/...

**Describe the bug** An exception is reported: Exception occurred, no output from apt-cache policy **Version** - Distribution Ubuntu 20.04 - Lynis version 3.0.6 **Expected behavior** **Output** ``` 2021-10-13 16:24:05 Performing...

**Is your feature request related to a problem? Please describe.** Finding some way of including NIST standards into this would be amazing and first by starting with this new NIST...

**Describe the bug** Lynis couldn't open symlink files realted to apache Function/test: [FileIsReadable] Message: Can not determine symlink /etc/httpd/common/.conf **Version** -Distribution 3.10.0-1160.42.2.el7.x86_64 - Lynis version 3.0.6 **Expected behavior** A clear...

information-needed

**Describe the bug** [+] Software: webserver ------------------------------------ - Checking Apache (binary /usr/sbin/apache2) [ FOUND ] [Notice] possible directory/file parts found, but still unsure what the real configuration file is. Skipping...

information-needed

**Describe the bug** executing `sshd -T -C user=doesnotexist,host=none,addr=none` returns non zero and no config, causing all of SSH-7408 (option checking) to return `NOT FOUND` **Version** - Distribution Arch Linux (rolling...

information-needed

**Describe the bug** Lynis didn't find any virtual hosts, but I actually have some **Version** - Distribution: openSUSE Tumbleweed - Lynis version 3.0.6 **Expected behavior** virtual hosts are detected **Output**...

information-needed

**Is your feature request related to a problem? Please describe.** When running `audit system` on workstation with fewer logical iptables like drop input everything, allow all out, allow in established...

no-issue-activity

**Is your feature request related to a problem? Please describe.** If the locale on the system is not English some tests such as `KRNL-5788` will fail. E.g., if `LC_ALL=fr_FR.UTF-8`, `apt-cache...

Added FILE-6398 (JBD driver loaded?) test