Skip to content

Rules audit_privileged_commands_* is misaligned with DISA #13296

Open
@Mab879

Description

@Mab879

Description of problem:

The content is misaligned with an external (third party) content that targets the same policy - typically, this means that a system hardened by our content doesn't pass the scan by the external content.

Details:

This content is not aligned with content from DISA

The misalignment affects these profiles STIG. The Rules are listed below.

audit_privileged_commands_init	SSG result: pass, DISA result(s): SV-258211r1045418_rule:fail
audit_privileged_commands_poweroff	SSG result: pass, DISA result(s): SV-258212r1045421_rule:fail
audit_privileged_commands_reboot	SSG result: pass, DISA result(s): SV-258213r1045424_rule:fail
audit_privileged_commands_shutdown	SSG result: pass, DISA result(s): SV-258214r1045427_rule:fail
audit_privileged_commands_init	SSG result: pass, DISA result(s): SV-258211r1045418_rule:fail
audit_privileged_commands_poweroff	SSG result: pass, DISA result(s): SV-258212r1045421_rule:fail
audit_privileged_commands_reboot	SSG result: pass, DISA result(s): SV-258213r1045424_rule:fail
audit_privileged_commands_shutdown	SSG result: pass, DISA result(s): SV-258214r1045427_rule:fail
audit_privileged_commands_init	SSG result: pass, DISA result(s): SV-258211r1045418_rule:fail
audit_privileged_commands_poweroff	SSG result: pass, DISA result(s): SV-258212r1045421_rule:fail
audit_privileged_commands_reboot	SSG result: pass, DISA result(s): SV-258213r1045424_rule:fail
audit_privileged_commands_shutdown	SSG result: pass, DISA result(s): SV-258214r1045427_rule:fail

Outcome:

  • This project's content can be improved:
    • Check needs to be improved.
    • Remediation needs to be improved.
  • The external content's check is faulty - the other party needs to be notified, they have work to do.

Most likely related to b32 and b64.

Might be related to #13272

SCAP Security Guide Version:

844310e

External Content's Version:

V2R3

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions