ComplianceAsCode / content

Security automation content in SCAP, Bash, Ansible, and other formats
https://complianceascode.readthedocs.io/en/latest/
Other
2.22k stars 698 forks source link

ANSSI BP28 - R28 Misalignments in RHEL 9 Profile #12289

Open jlemangarin opened 3 months ago

jlemangarin commented 3 months ago

Description of problem:

ANSSI BP28 - R28 Misalignments in RHEL 9 Profile

Details:

This content is not aligned with content from CONFIGURATION RECOMMENDATIONS OF A GNU/LINUX SYSTEM

The misalignment affects these profiles:

There are partitioning checks exclusions that shouldn't be excluded :

  1. partition_for_opt
  2. partition_for_boot
  3. partition_for_usr

There are partitioning checks that should be excluded :

  1. partition_for_var_log_audit

There are partitioning checks that should be created and included :

  1. partition_for_proc

Outcome:

SCAP Security Guide Version:

0.1.75 - Guide to the Secure Configuration of Red Hat Enterprise Linux 9

External Content's Version:

2 - CONFIGURATION RECOMMENDATIONS OF A GNU/LINUX SYSTEM

marcusburghardt commented 2 months ago

Probably related PR: https://github.com/ComplianceAsCode/content/pull/12351