fleetdm / fleet

Open-source platform for IT, security, and infrastructure teams. (Linux, macOS, Chrome, Windows, cloud, data center)
https://fleetdm.com
Other
2.98k stars 413 forks source link

Investigate support for ChromeOS CIS benchmark #22442

Open ddribeiro opened 4 days ago

ddribeiro commented 4 days ago

Gong snippet: None, this was only discussed via Slack.

Problem

CIS has recently released their benchmark for ChromeOS. customer-ufa was inquiring about Fleet's plans to offer policies that support the benchmark. Fleet currently offers policies for macOS 13/14 and Windows 10/11, but not ChromeOS.

What have you tried?

I checked the /ee/cis folder in the Fleet repo for policies related to the new ChromeOS CIS benchmark, but only found ones for macOS and Windows.

Potential solutions

Fleet could explore the newly published ChromeOS CIS benchmark and maintain queries that help organizations become compliant with the benchmark.

What is the expected workflow as a result of your proposal?

If Fleet offered a set of policies for the ChromeOS CIS benchmark, a Fleet customer with ChromeOS hosts would be able to import them into their environment. They would then be able to ensure compliance with the benchmark for their ChromeOS hosts.
JoStableford commented 4 days ago

Linked to Unthread ticket:

Inquiry about ChromeOS CIS Benchmark Support #3035)