content icon indicating copy to clipboard operation
content copied to clipboard

Security automation content in SCAP, Bash, Ansible, and other formats

Results 630 content issues
Sort by recently updated
recently updated
newest added

#### Description: STIG profiles for OL9 are updated based on preliminary DISA requirements #### Rationale: This is a draft set variables and rules within the profile to better align with...

needs-ok-to-test

#### Description: Rule `route_ip_whitelist` had an incorrect title and it is pointing to `routes_rate_limit`. #### Rationale: Fixes [CMP-2485](https://issues.redhat.com/browse/CMP-2485) #### Review Hints: Both the rules `ocp4-route-ip-whitelist` and `ocp4-routes-rate-limit` in compliance operator...

OpenShift
needs-ok-to-test

#### Description: Clean Up Tests Due to RHEL 7 Removal #### Rationale: Ensure tests are in a good state after RHEL 7 removal.

Test Suite

Hey 👋🏻 ! #### Description: This commit pins actions to their commit hash. If this is of interest to CaC, I can also open another PR with [an action](https://github.com/stacklok/frizbee-action) that...

We implemented support for checking aesgcm encryption ciphers in https://github.com/ComplianceAsCode/content/pull/10974 but never removed the comment or updated the status in the control file. This commit updates the status since it's...

OpenShift
CIS

#### Description: - correct and simplify the bash remediation for the template - modify test scenarios #### Rationale: - the Bash remediation was creating invalid configuration files because they were...

Bash
do-not-merge/work-in-progress

#### Description of problem: `socket_systemd-journal-remote_disabled` rule fails for all variants of CIS profile after Anaconda installation. According to final HTML report, the socket is not masked: Test that the property...

productization-issue
RHEL9
CIS

#### Description of problem: Fix for 'xccdf_org.ssgproject.content_rule_accounts_password_pam_retry' breaks `passwd` #### SCAP Security Guide Version: Benchmark Version: 0.1.73 #### Operating System Version: Ubuntu 22.04.4 LTS #### Steps to Reproduce: Execute Bash...

Ubuntu
CIS

#### Description: This PR adds [Amazon Linux 2](https://aws.amazon.com/fr/amazon-linux-2) support. This series of changes is based on the Amazon Linux 2 support, available as part of the `scap-security-guide-0.1.40-12.amzn2.0.1.1.src.rpm` package (2019-04-19), distributed...

needs-ok-to-test
needs-rebase
New Product

#### Description of problem: `sshd_use_approved_ciphers` fails to remediate (`error` during remediation) resulting to `fail` during final test scan. The problem is in CIS Server L1, CIS Server L2, CIS Workstation...

productization-issue
RHEL9
CIS