plus3it/ash-linux-formula
Automated System Hardening (ash-linux) is a Salt formula to apply SCAP benchmarks to Linux systems
SaltStackNOASSERTION
Issues
- 0
[Feature Request] Add Support for RHEL9 and Related Distros (using same content used by SCC)
#508 opened by ferricoxide - 0
[Feature Request] Add Support for RHEL9 and Related Distros (using Compliance as Code content)
#496 opened by ferricoxide - 0
- 0
[BUG] Upstream OSCAP Content Is (Currently) adding `*.* @@logcollector` to `/etc/rsyslog.conf`
#498 opened by ferricoxide - 2
- 0
[Feature Request] Ensure that UEFI Bootloader Password Is Configured On EFI-Enabled Systems
#487 opened by ferricoxide - 0
[Maintainability] Change all states in the `el8` hierarchy to use `tpldir` directive when declaring `helperLoc`
#486 opened by ferricoxide - 1
[BUG] Do Not Rely On Implicit `fapolicyd` Rules
#460 opened by ferricoxide - 0
[BUG] The `fapolicyd` RPM can fail to install properly if there are any files already in `/etc/fapolicyd/rules.d`
#484 opened by ferricoxide - 1
[BUG] The `mode` token in `*.mount` systemd units' `options.conf` files no longer valid
#482 opened by ferricoxide - 0
[BUG] Missing Dependency in `ash-linux/el8/STIGbyID/cat2/RHEL-08-030590.sls`
#481 opened by ferricoxide - 0
[Feature Request] Add Remediation For EL8 STIG Vulnerability-ID V-255924 (RHEL-08-040342)
#466 opened by ferricoxide - 1
Failure to apply Salt State Settings on RHEL EL8 for STIG ID: RHEL-08-020035
#471 opened by justinmackey - 0
[Feature Request] Add remediation for EL8 STIG Vulnerability-ID V-230252 (RHEL-08-010291)
#464 opened by ferricoxide - 2
Failure to apply Salt State Settings on RHEL EL8 for STIG ID: RHEL-08-010201
#470 opened by justinmackey - 0
[Feature Request] Add Remediation For EL8 STIG Vulnerability-ID V-244525 (RHEL-08-010201)
#465 opened by ferricoxide - 1
[Feature Request] Add remediation for EL8 STIG Vulnerability-ID V-230228 (RHEL-08-010070)
#463 opened by ferricoxide - 1
- 1
EL8 SCC SCAP Scan Finding V-230466
#455 opened by justinmackey - 1
RHEL 8 Scap Scan finding V-230229
#454 opened by justinmackey - 1
Failure to apply Salt State Settings on RHEL EL8 for STIG ID: RHEL-08-020220
#452 opened by justinmackey - 0
[BUG] Update state-labels for greater portability
#450 opened by ferricoxide - 1
[BUG]
#449 opened by ferricoxide - 0
[Feature Request] Update `oscap` logic to allow use of a tailoring XML in concert with standard remediation
#446 opened by ferricoxide - 0
[BUG] RHEL 8.8+ and 9.2+ Require Use of `authselect` to Enable/Configure `pam_faillock.so`
#436 opened by ferricoxide - 0
[Feature Request] Add user-exclusions to `ash-linux/el7/STIGbyID/cat2/RHEL-07-020020.sls`
#440 opened by ferricoxide - 0
[BUG] RHEL 8.8+ and 9.2+ Require Use of `authselect` to enable `pam_pwhistory.so`
#435 opened by ferricoxide - 0
[ENHANCEMENT] Add handler for EL8 V-230504
#422 opened by ferricoxide - 1
- 1
[Feature Request] Implement V-230523's/RHEL-08-040135's Default `deny-all` posture for `fapolicyd`
#397 opened by ferricoxide - 0
- 0
[ENHANCEMENT] Add handler for EL8 V-230532
#421 opened by ferricoxide - 0
[ENHANCEMENT] Add handler for EL8 V-244533
#423 opened by ferricoxide - 0
[Feature Request] Remediate EL8 V-256974 By Adding State to Ensure Installation of The `mailx` RPM
#425 opened by ferricoxide - 1
- 2
[BUG] Prevent `augenrule` Failures By Ensuring No Duplicative Rule-Definitions In `/etc/audit/rules.d` files
#415 opened by ferricoxide - 1
[Feature Request] Lint all existing scripts
#410 opened by ferricoxide - 3
- 1
[BUG] The `el7.STIGbyID.cat2.RHEL-07-020360` State Can Fail If Identified "Files" Are Actually Directories
#407 opened by ferricoxide - 0
- 0
- 0
- 0
[BUG] Investigate need for `notRpm` state in
#395 opened by ferricoxide - 9
Current scap-security-guide contains a bug which breaks use of key only accounts after 60 days
#384 opened by eseglem - 0
[Feature Request] The OS Must Be Configured To Prevent Unrestricted Mail Relaying.
#371 opened by ferricoxide - 0
[Feature Request] The OS Must Disable The Chrony Daemon From Acting As A Server.
#372 opened by ferricoxide - 0
- 0
[Feature Request] The OS Must Disable Network Management Of The Chrony Daemon.
#373 opened by ferricoxide - 0
[BUG] Saltstack's `user.present` Module Doesn't Like a `$HOME` of `/dev/null`
#387 opened by ferricoxide - 0