bordenitllc / ubi-container-hardening

ubi-container-hardening
Apache License 2.0
0 stars 1 forks source link

add_openscap_scan #14

Closed bordenit closed 8 months ago

bordenit commented 8 months ago

Added just the ubi container to test publishing. Will add the others if successful.

github-actions[bot] commented 8 months ago

Test Results

  1 files  ±0    1 suites  ±0   1s :stopwatch: ±0s 562 tests +1  195 :white_check_mark:  - 5  90 :zzz: ±0  277 :x: +6  565 runs  +1  195 :white_check_mark:  - 5  90 :zzz: ±0  267 :x: +6  13 :fire: ±0 

For more details on these failures, see this check.

Results for commit 4c3928f2. ± Comparison against base commit ed8e076c.

This pull request removes 15 and adds 16 tests. Note that renamed tests count towards both. ``` redhat-enterprise-linux-8-stig-baseline.SV-230225 ‑ Control Source Code Error redhat-enterprise-linux-8-stig-baseline-main/controls/SV-230225.rb:1 redhat-enterprise-linux-8-stig-baseline.SV-230276 ‑ Control Source Code Error redhat-enterprise-linux-8-stig-baseline-main/controls/SV-230276.rb:1 redhat-enterprise-linux-8-stig-baseline.SV-230320 ‑ Note: `exempt_home_users` skipped user root redhat-enterprise-linux-8-stig-baseline.SV-230321 ‑ No non-exempt interactive user accounts were detected on the system redhat-enterprise-linux-8-stig-baseline.SV-230322 ‑ No non-exempt interactive user accounts were detected on the system redhat-enterprise-linux-8-stig-baseline.SV-230323 ‑ No non-exempt interactive user accounts were detected on the system redhat-enterprise-linux-8-stig-baseline.SV-230337 ‑ Parse Config File /etc/security/faillock.conf unlock_time is expected to cmp >= 0 redhat-enterprise-linux-8-stig-baseline.SV-230371 ‑ Count of interactive unique user IDs should match interactive user count (1): UID count is expected to eq 1 redhat-enterprise-linux-8-stig-baseline.SV-230384 ‑ No non-exempt interactive user accounts were detected on the system redhat-enterprise-linux-8-stig-baseline.SV-230399 ‑ Control Source Code Error redhat-enterprise-linux-8-stig-baseline-main/controls/SV-230399.rb:1 … ``` ``` redhat-enterprise-linux-8-stig-baseline.SV-230225 ‑ Control Source Code Error redhat-enterprise-linux-8-stig-baseline-1.12.0/controls/SV-230225.rb:1 redhat-enterprise-linux-8-stig-baseline.SV-230276 ‑ Control Source Code Error redhat-enterprise-linux-8-stig-baseline-1.12.0/controls/SV-230276.rb:1 redhat-enterprise-linux-8-stig-baseline.SV-230321 ‑ All non-exempt interactive user account home directories on the system should not be more permissive than '0750' redhat-enterprise-linux-8-stig-baseline.SV-230322 ‑ All non-exempt interactive user account home directories on the system should be group-owned by the group of the user they are associated with redhat-enterprise-linux-8-stig-baseline.SV-230323 ‑ All non-exempt interactive user account home directories on the system should exist redhat-enterprise-linux-8-stig-baseline.SV-230328 ‑ The '/var' mount point has its own partition redhat-enterprise-linux-8-stig-baseline.SV-230328 ‑ The '/var' mount point is not on the same partition as the root partition redhat-enterprise-linux-8-stig-baseline.SV-230337 ‑ Parse Config File /etc/security/faillock.conf unlock_time is expected to cmp >= 604800 redhat-enterprise-linux-8-stig-baseline.SV-230371 ‑ Count of interactive unique user IDs should match interactive user count (2): UID count is expected to eq 2 redhat-enterprise-linux-8-stig-baseline.SV-230384 ‑ All non-exempt interactive users on the system should not set the UMASK more permissive than '077' in any init files … ```

:recycle: This comment has been updated with latest results.

sonarcloud[bot] commented 8 months ago

Quality Gate Passed Quality Gate passed

Issues
0 New issues
0 Accepted issues

Measures
0 Security Hotspots
No data about Coverage
0.0% Duplication on New Code

See analysis details on SonarCloud