[ Все 3 A B C D E F G H I J K L M N O P Q R S T U V W X Y Z ]
×

Проект scap-security-guide-0.1.79-1.el9

Имя scap-security-guide
Эпоха 0
Версия 0.1.79
Релиз 1.el9
Сайт https://github.com/ComplianceAsCode/content/
Лицензия BSD-3-Clause
Время сборки 2025-12-17 09:04:45
Хост сборки builder-arm64-1.inferitos.ru
Краткое описание Security guidance and baselines in SCAP formats
Репозитории AppStream
Полное описание The scap-security-guide project provides a guide for configuration of the system from the final system's security point of view. The guidance is specified in the Security Content Automation Protocol (SCAP) format and constitutes a catalog of practical hardening advice, linked to government requirements where applicable. The project bridges the gap between generalized policy requirements and specific implementation guidelines. The system administrator can use the oscap CLI tool from openscap-scanner package, or the scap-workbench GUI tool from scap-workbench package to verify that the system conforms to provided guideline. Refer to scap-security-guide(8) manual page for further information.
Эррата
× Full screenshot
Найдена 1 старая версия
Пакеты link
Пакет Краткое описание Контрольная сумма SHA-256
noarch
scap-security-guide-0.1.79-1.el9.noarch Security guidance and baselines in SCAP formats 2ca4980bbaec33b2553df1c66e61a04350a30983b70a15b43d8f59baa899e1bb download
scap-security-guide-doc-0.1.79-1.el9.noarch HTML formatted security guides generated from XCCDF benchmarks b4de51c95491d4900825c402bb62a6124de915ecd432a94db2716d0667db4089 download
src
scap-security-guide-0.1.79-1.el9.src Security guidance and baselines in SCAP formats e7bfc84a3019fcae9c18dd0c9dcc148203c1e5d4e93e491e46b0bb8b34dc28f9 download
История изменений link
* Tue Dec 02 2025 adenisov <adenisov@redhat.com> - 0.1.79-1
- Rebase scap-security-guide package to version 0.1.79 (RHEL-130246)
- add detection of non-existent directories in root's PATH for RHEL 9 CIS profiles (RHEL-102330)
- replace systemd_service module with systemd module across Ansible playbooks (RHEL-117141)
- add multiline support for detecting RainerScript statements in rsyslog configuration (RHEL-104207)
- introduce a new template for kernel module loading audit rules (RHEL-102334)
- add audit rules for monitoring changes to /etc/hostname and NetworkManager configuration (RHEL-102331)
- remove aide_periodic_cron_checking rule from RHEL-09-651015 (RHEL-100924)
- rule ensure_logrotate_activated inserts the rotation interval at the begining of the file, mitigating possible invalid configuration (RHEL-79123)
- fix idempotency issue in require_singleuser_auth bash remediation (RHEL-106811)
- add clarification about using /bin/false and /bin/true for disabling kernel modules (RHEL-106814)

* Mon Sep 08 2025 vojtapolasek <krecoun@gmail.com> - 0.1.78-1
- coverage of section 1.2.1.2 of CIS profile has been improved (RHEL-102328)
- fix checks of rules related to sudo and cron (RHEL-89812)
- rules allow white spaces around equal sign in Systemd configuration (RHEL-89714)
- install package polkit-pkla-compat when needed (RHEL-87606)
- rule auditd_freq correctly honors XCCDF variable (RHEL-64013)
- rebase scap-security-guide package to version 0.1.78 (RHEL-111009)

* Fri Jun 27 2025 Vojtech Polasek <vpolasek@redhat.com> - 0.1.77-3
- fix incorrect applicability of Grub2 UEFI specific rules
- replace grub-mkconfig with grub2-mkconfig in rule descriptions

* Fri Jun 06 2025 Matthew Burket <mburket@redhat.com> - 0.1.77-2
- Turn on SCE for this release (RHEL-94803)

* Tue Jun 03 2025 Matthew Burket <mburket@redhat.com> - 0.1.77-1
- Rebase to scap-security-guide version 0.1.77 (RHEL-94803)
- rule networkmanager_dns_mode now checks dropin files and has more resilient regex (RHEL-62843)
- rsyslog_remote_loghost checks for Rainer Script syntax as well (RHEL-62731)
- improve checking of Grub2 superuser and password configuration (RHEL-58818)

* Tue Feb 25 2025 Vojtech Polasek <vpolasek@redhat.com> - 0.1.76-1
- rebase scap-security-guide to the latest upstream version 0.1.76 (RHEL-74240)
- modify the rule require_singleuser_auth to honor overriding mechanism offered by Systemd (RHEL-71936)
- make the rule sysctl_user_max_user_namespaces informational and unscored in RHEL 9 STIG profile (RHEL-40120)
- align checking of approved SSH ciphers with latest STIG policy (RHEL-65432)

* Fri Nov 15 2024 Matthew Burket <mburket@redhat.com> - 0.1.75-1
- Rebase to new release (RHEL-66154)
- the rule sshd_use_priv_separation is no longer used (RHEL-66057)
- add a rule checking for presence of chrony to CIS RHEL 9 profile (RHEL-60005)
- remediation of Networkmanager DNS mode now remediates value "default" (RHEL-53426)
- Adjust mount_option_nodev_nonroot_local_partitions to work in Image Builder environments. (RHEL-45018)
- Adjusted rules related to sshd ensure constancy in checked values and ensure that drop in configuration files are checked. (RHEL-38206)

* Fri Aug 09 2024 Matthew Burket <mburket@redhat.com> - 0.1.74-1
- Rebase to a new upstream release 0.1.74 (RHEL-53865)
- Ensure authselect features are preserved by enable_authselect rule (RHEL-39383)
- Fix check for passwords last changed date (RHEL-47129)
- Remediations of Journald configuration files now include a correct section (RHEL-38531)
- Adjust service requirements for CIS profiles (RHEL-23852)
- Update password hashing settings for ANSSI-BP-028 (RHEL-44983)

* Wed Aug 07 2024 Milan Lysonek <mlysonek@redhat.com> - 0.1.73-2
- Switch gating to tmt plan (RHEL-43243)

* Mon May 20 2024 Vojtech Polasek <vpolasek@redhat.com> - 0.1.73-1
- Rebase to a new upstream release 0.1.73 (RHEL-36663)
- Correctly parse sudo options even if they are not quoted (RHEL-31976)
- Ensure that web links within kickstart files are valid (RHEL-30735)
- Align set of allowed SSH ciphers with STIG requirement (RHEL-29684)
- Add audit rules on /etc/sysconfig/network-scripts (RHEL-29308)
- Remove rule restricting user namespaces from stig_gui profile (RHEL-10416)
- Add rule which enables auditing of files within /etc/sysconfig/network-scripts (RHEL-1093)