feat: add new scripts for debian 12

- tftp_is_disabled              ->      2.1.16
- network_services_listening    ->      2.1.22
- use_time_sync                 ->      2.3.1.1
Update the existing script to check there is only one installed

- chrony_is_enabled_and_running ->      2.3.3.3
This commit is contained in:
Damien Cavagnini
2025-07-18 15:05:32 +02:00
committed by damien cavagnini
parent 7c7730248e
commit b0ca64f589
12 changed files with 379 additions and 14 deletions

View File

@@ -3,7 +3,6 @@
test_audit() {
describe Running on blank host
register_test retvalshouldbe 1
dismiss_count_for_test
# shellcheck disable=2154
run blank "${CIS_CHECKS_DIR}/${script}.sh" --audit-all
@@ -14,6 +13,11 @@ test_audit() {
# Finally assess that your corrective actions end up with a compliant system
describe Checking resolved state
register_test retvalshouldbe 0
register_test contain "Time synchronization is available through"
run resolved "${CIS_CHECKS_DIR}/${script}.sh" --audit-all
# we can not check the presence of multiple time synchronization from debian packages, as they are mutually exclusive
describe clean installation
apt remove -y ntp
apt autoremove -y
}