Open jan-cerny opened 2 years ago
Just for posterity, the problem is that DISA mandates that the configuration option exists in ONE file only, which is not the case when remediating clean RHEL 8 installation with our content.
Weirdly, the rule is aligned in RHEL9 STIG.
Description of problem:
Rule xccdf_org.ssgproject.content_rule_sysctl_kernel_core_pattern is misaligned with rule xccdf_mil.disa.stig_rule_SV-230311r833305_rule from the DISA content in disa-stig-rhel8-v1r6-xccdf-scap.xml.
SCAP Security Guide Version:
current upstream as of 2022-08-06 as of HEAD https://github.com/ComplianceAsCode/content/commit/61b8f59e05e7a63267e22f3a44ff2b98de822ec0
Operating System Version:
RHEL 8
Steps to Reproduce:
Actual Results:
xccdf_org.ssgproject.content_rule_sysctl_kernel_core_pattern : pass xccdf_mil.disa.stig_rule_SV-230311r833305_rule : fail
Expected Results:
both rules pass
Additional Information/Debugging Steps:
This problem occurs also with the "STIG with GUI" profile.