From 9f0ca8f4a9d7236e6433658fde338d19443cff4e Mon Sep 17 00:00:00 2001 From: damien cavagnini Date: Tue, 2 Sep 2025 14:09:16 +0200 Subject: [PATCH] feat: add trixie docker build Ensure the current debian12 scripts are going to run on trixie --- tests/docker/Dockerfile.debian13 | 21 +++++++++++++++++++++ 1 file changed, 21 insertions(+) create mode 100644 tests/docker/Dockerfile.debian13 diff --git a/tests/docker/Dockerfile.debian13 b/tests/docker/Dockerfile.debian13 new file mode 100644 index 0000000..3ce6a1e --- /dev/null +++ b/tests/docker/Dockerfile.debian13 @@ -0,0 +1,21 @@ +FROM debian:trixie + +LABEL vendor="OVH" +LABEL project="debian-cis" +LABEL url="https://github.com/ovh/debian-cis" +LABEL description="This image is used to run tests" + +RUN groupadd -g 500 secaudit && useradd -u 500 -g 500 -s /bin/bash secaudit && install -m 700 -o secaudit -g secaudit -d /home/secaudit + +RUN apt-get update && DEBIAN_FRONTEND=noninteractive apt-get install -y openssh-server sudo syslog-ng net-tools auditd cron iproute2 procps + +COPY --chown=500:500 . /opt/debian-cis/ + +COPY debian/default /etc/default/cis-hardening +RUN sed -i 's#cis-hardening#debian-cis#' /etc/default/cis-hardening + +COPY cisharden.sudoers /etc/sudoers.d/secaudit +RUN sed -i 's#cisharden#secaudit#' /etc/sudoers.d/secaudit + + +ENTRYPOINT ["/opt/debian-cis/tests/launch_tests.sh"]