Skip to content

Commit

Permalink
Merge pull request #12453 from vojtapolasek/fix_cis_rhel9_tiny_issues
Browse files Browse the repository at this point in the history
Two CIS RHEL 9 enhancements
  • Loading branch information
Mab879 authored Oct 3, 2024
2 parents 2facea0 + 19d3cff commit 3efbf63
Show file tree
Hide file tree
Showing 5 changed files with 9 additions and 2 deletions.
7 changes: 5 additions & 2 deletions controls/cis_rhel9.yml
Original file line number Diff line number Diff line change
Expand Up @@ -602,7 +602,10 @@ controls:
- l1_server
- l1_workstation
status: manual

notes: |-
User should manually ensure that CVE-2023-48795 is addressed.
This is not automated and it might be difficult to automate actually.
Therefore, keeping this control as manual.
- id: 1.6.7
title: Ensure system wide crypto policy disables EtM for ssh (Automated)
levels:
Expand Down Expand Up @@ -1067,7 +1070,7 @@ controls:
- l1_server
- l1_workstation
status: automated
related_rules:
rules:
- package_chrony_installed

- id: 2.3.2
Expand Down
1 change: 1 addition & 0 deletions tests/data/profile_stability/rhel9/cis.profile
Original file line number Diff line number Diff line change
Expand Up @@ -285,6 +285,7 @@ selections:
- package_audit-libs_installed
- package_audit_installed
- package_bind_removed
- package_chrony_installed
- package_cyrus-imapd_removed
- package_dhcp_removed
- package_dnsmasq_removed
Expand Down
1 change: 1 addition & 0 deletions tests/data/profile_stability/rhel9/cis_server_l1.profile
Original file line number Diff line number Diff line change
Expand Up @@ -201,6 +201,7 @@ selections:
- no_shelllogin_for_systemaccounts
- package_aide_installed
- package_bind_removed
- package_chrony_installed
- package_cyrus-imapd_removed
- package_dhcp_removed
- package_dnsmasq_removed
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -198,6 +198,7 @@ selections:
- no_shelllogin_for_systemaccounts
- package_aide_installed
- package_bind_removed
- package_chrony_installed
- package_cyrus-imapd_removed
- package_dhcp_removed
- package_dnsmasq_removed
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -285,6 +285,7 @@ selections:
- package_audit-libs_installed
- package_audit_installed
- package_bind_removed
- package_chrony_installed
- package_cyrus-imapd_removed
- package_dhcp_removed
- package_dnsmasq_removed
Expand Down

0 comments on commit 3efbf63

Please sign in to comment.