content
content copied to clipboard
Security automation content in SCAP, Bash, Ansible, and other formats
#### Description of problem: The products key is no longer useful to figure out what product a rule is applicable to. #### SCAP Security Guide Version: b895bce65b0d16d14bab9dadbd2f8e145d77e298 #### Operating System...
Let's increase the retry wait time to 300 seconds for Gate / Kubernetes Test Content Parsing workflow, so it can have higher success rate.
Some of the kubeletconfig rules does not have not contains reference to variable being used in its remediation, this PR adds that reference to those rules. Related BUG: https://issues.redhat.com/browse/OCPBUGS-1316
Bumps [JamesIves/github-pages-deploy-action](https://github.com/jamesives/github-pages-deploy-action) from 4.6.0 to 4.6.1. Release notes Sourced from JamesIves/github-pages-deploy-action's releases. v4.6.1 What's Changed Fixes Resolved an issue where workflows were suddenly failing due to a worktree in use...
#### Description: Improve OVAL checks so that the rule will pass if the modern Rainer script syntax is used. Up until now these rules passed only when the legacy configuration...
#### Description of problem: When provisioning system with Imagebuilder and hardening with CUI profile, the rule mount_option_nodev_nonroot_local_partitions is reported as fail in the final scan. #### SCAP Security Guide Version:...
#### Description: This rule `controller_rotate_kubelet_server_certs` is no longer valid as it still checking for feature-gate parameter which does not exist in any supported versions of OpenShift 4. $ ./oc get...
#### Share the context I have currently been testing OpenSCAP to enforce a minimum build for linux laptops running Fedora Workstation 30. Using the Fedora CUSP on Fedora 39, nearly...
#### Description: - Add AL2023 Product - Add CIS level 1 and level 2 controls #### Rationale: - AWS is now supporting AL2023 and announced is end of life for...
#### Description: This PR adds the `--used-rules` flag to the `most-used-components` command of the `profile_tool.py` file, which adds a list of used component's rules with the number of profiles where...