content
content copied to clipboard
Security automation content in SCAP, Bash, Ansible, and other formats
#### Description: Create Initial OSPP control file. This is an automatically created using the script in this branches history. #### Rationale: Get the RHEL 10 draft OSPP profile ready.
#### Description of problem: I tried to use the less-than-operator "
#### Description of problem: The content is misaligned with an external (third party) content that targets the same policy - typically, this means that a system hardened by our content...
#### Description: - Let's use `oauth_or_oauthclient_inactivity_timeout` instead of `oautclient_inactivity_timeout`. #### Rationale: - The former rule checks for server and client token timeout configuration is multiple places and remediates the server...
#### Description: Investigating the issue #11891 it was noticed that OpenSCAP scanner was returning error for rule `auditd_audispd_configure_sufficiently_large_partition` because the OVAL in this rule was using an OVAL property only...
#### Description: - Make sure that behaviour of rules about nftables,iptables and firewalld are mutually exclusive and the default behaviour of the checks and remediations is based on external interactive...
#### Description of problem: We are in the middle of a project to harden an Ubuntu 20 machine according to Canonical Ubuntu 20.04 LTS STIG - Ver 1, Rel 11...
#### Description of problem: Rule chronyd_or_ntpd_set_maxpoll check if all time sources in `/etc/chrony.conf` specified by `server` keyword have `maxpoll` option set. However, it doesn't check sources specified as `pool` or...
#### Description: Initial HIPAA RHEL 10 Profile #### Rationale: RHEL 10 Initial profile set.
#### Description of problem: Remediation for DISA-STIG-RHEL-08-020035 involves adding this setting to /etc/systemd/logind.conf: StopIdleSessionSec=900 Per Red Hat this, can cause GNOME sessions to fail. For example, if the RHEL screen...