Closed brendanbeck62 closed 1 week ago
Based on my quick glance at the XCCDF file, OpenSCAP is correct there is no fix for the rule. There is fix text, which appears the bash remediation script formatted in HTML, but no actual fix that OpenSCAP can use to create a remediation script.
Description of Problem:
There seems to be conflicting documentation about where/how to install on Ubuntu 24.04, and if it is even supported. I found that the name of the package changed from
libopenscap8
toopenscap-scanner
here: https://github.com/OpenSCAP/openscap/blob/main/docs/manual/manual.adoc. But on the main website, it still stateslibopenscap8
is the package to install (https://www.open-scap.org/tools/openscap-base/#download).I am looking into this because when attempting to generate a hardening script based on the new Ubuntu 24.04 benchamrks released by CISCAT, and getting
FIX FOR THIS RULE <rule_name> IS MISSING!
for every rule. Trying to figure out whether it's a bug in the benchmark files or in Oscap.OpenSCAP Version:
Operating System & Version:
Ubuntu 24.04
Steps to Reproduce:
Actual Results:
script full of
FIX FOR THIS RULE <rule_name> IS MISSING!
for every ruleExpected Results:
a valid hardening script.