feat: add debian12 scripts

ufw_is_installed.sh				-> 4.1.1
iptables_persistent_is_not_installed.sh		-> 4.1.2
ufw_is_enabled					-> 4.1.3
nftables_is_not_installed.sh 			-> 4.3.1.2
libpam_runtime_is_version 			-> 5.3.1.1
This commit is contained in:
damien cavagnini
2025-07-28 14:47:41 +02:00
parent 15a59d6b2e
commit c2598e484e
10 changed files with 494 additions and 0 deletions

View File

@@ -0,0 +1,39 @@
# shellcheck shell=bash
# run-shellcheck
test_audit() {
describe set up failed check
apt remove -y ufw iptables-persistent
describe Running failed test
register_test retvalshouldbe 1
# shellcheck disable=2154
run failure "${CIS_CHECKS_DIR}/${script}.sh" --audit-all
describe set up failed resolution
DEBIAN_FRONTEND='noninteractive' apt -o Dpkg::Options::="--force-confdef" -o Dpkg::Options::="--force-confold" install iptables-persistent apt-utils -y
sed -i 's/audit/enabled/' "${CIS_CONF_DIR}/conf.d/${script}.cfg"
describe running failed resolution
# shellcheck disable=2154
"${CIS_CHECKS_DIR}/${script}.sh" --apply || true
describe running failed run after apply audit
register_test retvalshouldbe 1
# shellcheck disable=2154
run success "${CIS_CHECKS_DIR}/${script}.sh" --audit-all
describe fix resolution
apt remove -y iptables-persistent
describe running successfull resolution
# shellcheck disable=2154
"${CIS_CHECKS_DIR}/${script}.sh" --apply || true
describe running successfull audit
register_test retvalshouldbe 0
# shellcheck disable=2154
run success "${CIS_CHECKS_DIR}/${script}.sh" --audit-all
apt remove -y ufw
apt autoremove -y
}