ComplianceAsCode / content

Security automation content in SCAP, Bash, Ansible, and other formats
https://complianceascode.readthedocs.io/en/latest/
Other
2.22k stars 698 forks source link

Disabling Kernel Modules does not align with DISA STIG RHEL 9 V2R2 #12594

Open christopher-davidson opened 1 week ago

christopher-davidson commented 1 week ago

Description of problem:

Disabling Kernel Modules does not align with DISA STIG RHEL 9 V2R2 and likely others.

Details:

This content is not aligned with content from DISA STIG. All of these rules are checking that "install /bin/true" when the STIG states that these should be /bin/false

The misalignment affects these profiles:

The misalignment affects these rules:

This may effect many more kernelmodule*_disabled rules

Outcome:

SCAP Security Guide Version:

0.1.74

External Content's Version:

V2R2