content icon indicating copy to clipboard operation
content copied to clipboard

Security automation content in SCAP, Bash, Ansible, and other formats

Results 630 content issues
Sort by recently updated
recently updated
newest added

#### Description of problem: The rule is failing in Image Mode #### SCAP Security Guide Version: 95222edc12b4689c6d72115ddc748281427e895e #### Operating System Version: RHEL10, RHEL9 #### Steps to Reproduce: 1. Run productization...

RHEL
productization-issue
RHEL9
RHEL10
Image Mode
triaged

#### Description of problem: The content is misaligned with an external (third party) content that targets the same policy - typically, this means that a system hardened by our content...

triaged

Based on the comment below. We should explore building SCE by default. > Why not instead get rid of the option completely and always build SCEs? > > Is there...

triaged

#### Description of problem: Valid SCAP content must correctly coerce XCCDF and OVAL datatypes for external variables. The variable `var_password_yescrypt_cost_factor_login_defs` is defined as `number` but imported in the `set_password_hashing_yescrypt_cost_factor_logindefs` as...

RHEL
OVAL
standards
productization-issue
RHEL10
triaged

#### Description: - _Create SLE Micro 5 General profile_ #### Rationale: - _This profile contains configuration checks that align to the General System Security Profile for SUSE Linux Enterprise Micro...

SLES
needs-ok-to-test
New Profile

#### Description of problem: We have vulnerability disclosure and we would like to use GitHub's private vulnerability disclosure feature, can you please enable it on the repo ? Or otherwise...

triaged

#### Description: - Implement mount_option_tmp_noexec for slmicro5 platform #### Rationale: - Make sure that for slmicro5 platform we do check that noexec option is set for the tmp partition -...

Ansible
OVAL
Bash
SLES
do-not-merge/work-in-progress

#### Description: - Enable audit configure rules for slmicro5 #### Rationale: - Enable slmicro5 platform for audit_rules_immutable and audit_rules_session_events rules

do-not-merge/work-in-progress

#### Description: - Patches related to disable ipv6 rules for SL Mirco 5 platforms #### Rationale: - Make sure sysctl ipv6 is applicable on platform basis - Make sure that...

do-not-merge/work-in-progress

#### Description: - Make sure rsyncd service disabled rule has valid CCE for slmicro5 #### Rationale: - Add slmicro5 CCE to the rule and drop it from the available list

do-not-merge/work-in-progress