From c9e19b51e6f1aeb2793439ad7f743c0d39fb3a22 Mon Sep 17 00:00:00 2001 From: Thibault Ayanides Date: Tue, 22 Dec 2020 10:51:39 +0100 Subject: [PATCH] Renum 4.x files to comply with debian10 CIS renamed: bin/hardening/4.1.2_enable_auditd.sh -> bin/hardening/4.1.1.2_enable_auditd.sh renamed: bin/hardening/4.1.3_audit_bootloader.sh -> bin/hardening/4.1.1.3_audit_bootloader.sh renamed: bin/hardening/4.1.11_record_failed_access_file.sh -> bin/hardening/4.1.10_record_failed_access_file.sh renamed: bin/hardening/4.1.12_record_privileged_commands.sh -> bin/hardening/4.1.11_record_privileged_commands.sh renamed: bin/hardening/4.1.13_record_successful_mount.sh -> bin/hardening/4.1.12_record_successful_mount.sh renamed: bin/hardening/4.1.14_record_file_deletions.sh -> bin/hardening/4.1.13_record_file_deletions.sh renamed: bin/hardening/4.1.15_record_sudoers_edit.sh -> bin/hardening/4.1.14_record_sudoers_edit.sh renamed: bin/hardening/4.1.16_record_sudo_usage.sh -> bin/hardening/4.1.15_record_sudo_usage.sh renamed: bin/hardening/4.1.17_record_kernel_modules.sh -> bin/hardening/4.1.16_record_kernel_modules.sh renamed: bin/hardening/4.1.18_freeze_auditd_conf.sh -> bin/hardening/4.1.17_freeze_auditd_conf.sh renamed: bin/hardening/4.1.1.1_audit_log_storage.sh -> bin/hardening/4.1.2.1_audit_log_storage.sh renamed: bin/hardening/4.1.1.2_halt_when_audit_log_full.sh -> bin/hardening/4.1.2.2_halt_when_audit_log_full.sh renamed: bin/hardening/4.1.1.3_keep_all_audit_logs.sh -> bin/hardening/4.1.2.3_keep_all_audit_logs.sh renamed: bin/hardening/4.1.4_record_date_time_edit.sh -> bin/hardening/4.1.3_record_date_time_edit.sh renamed: bin/hardening/4.1.5_record_user_group_edit.sh -> bin/hardening/4.1.4_record_user_group_edit.sh renamed: bin/hardening/4.1.6_record_network_edit.sh -> bin/hardening/4.1.5_record_network_edit.sh renamed: bin/hardening/4.1.7_record_mac_edit.sh -> bin/hardening/4.1.6_record_mac_edit.sh renamed: bin/hardening/4.1.8_record_login_logout.sh -> bin/hardening/4.1.7_record_login_logout.sh renamed: bin/hardening/4.1.9_record_session_init.sh -> bin/hardening/4.1.8_record_session_init.sh renamed: bin/hardening/4.1.10_record_dac_edit.sh -> bin/hardening/4.1.9_record_dac_edit.sh renamed: bin/hardening/4.2.3_install_syslog-ng.sh -> bin/hardening/4.2.2.1_install_syslog-ng.sh renamed: bin/hardening/4.2.2.1_enable_syslog-ng.sh -> bin/hardening/4.2.2.2_enable_syslog-ng.sh renamed: bin/hardening/4.2.2.2_configure_syslog-ng.sh -> bin/hardening/4.2.2.3_configure_syslog-ng.sh renamed: bin/hardening/4.2.2.3_syslog_ng_logfiles_perm.sh -> bin/hardening/4.2.2.4_syslog_ng_logfiles_perm.sh renamed: bin/hardening/4.2.2.4_syslog-ng_remote_host.sh -> bin/hardening/4.2.2.5_syslog-ng_remote_host.sh renamed: bin/hardening/4.2.2.5_remote_syslog-ng_acl.sh -> bin/hardening/4.2.2.6_remote_syslog-ng_acl.sh renamed: bin/hardening/4.2.4_logs_permissions.sh -> bin/hardening/4.2.3_logs_permissions.sh renamed: tests/hardening/4.1.2_enable_auditd.sh -> tests/hardening/4.1.1.2_enable_auditd.sh renamed: tests/hardening/4.1.3_audit_bootloader.sh -> tests/hardening/4.1.1.3_audit_bootloader.sh renamed: tests/hardening/4.1.11_record_failed_access_file.sh -> tests/hardening/4.1.10_record_failed_access_file.sh renamed: tests/hardening/4.1.12_record_privileged_commands.sh -> tests/hardening/4.1.11_record_privileged_commands.sh renamed: tests/hardening/4.1.13_record_successful_mount.sh -> tests/hardening/4.1.12_record_successful_mount.sh renamed: tests/hardening/4.1.14_record_file_deletions.sh -> tests/hardening/4.1.13_record_file_deletions.sh renamed: tests/hardening/4.1.15_record_sudoers_edit.sh -> tests/hardening/4.1.14_record_sudoers_edit.sh renamed: tests/hardening/4.1.16_record_sudo_usage.sh -> tests/hardening/4.1.15_record_sudo_usage.sh renamed: tests/hardening/4.1.17_record_kernel_modules.sh -> tests/hardening/4.1.16_record_kernel_modules.sh renamed: tests/hardening/4.1.18_freeze_auditd_conf.sh -> tests/hardening/4.1.17_freeze_auditd_conf.sh renamed: tests/hardening/4.1.1.1_audit_log_storage.sh -> tests/hardening/4.1.2.1_audit_log_storage.sh renamed: tests/hardening/4.1.1.2_halt_when_audit_log_full.sh -> tests/hardening/4.1.2.2_halt_when_audit_log_full.sh renamed: tests/hardening/4.1.1.3_keep_all_audit_logs.sh -> tests/hardening/4.1.2.3_keep_all_audit_logs.sh renamed: tests/hardening/4.1.4_record_date_time_edit.sh -> tests/hardening/4.1.3_record_date_time_edit.sh renamed: tests/hardening/4.1.5_record_user_group_edit.sh -> tests/hardening/4.1.4_record_user_group_edit.sh renamed: tests/hardening/4.1.6_record_network_edit.sh -> tests/hardening/4.1.5_record_network_edit.sh renamed: tests/hardening/4.1.7_record_mac_edit.sh -> tests/hardening/4.1.6_record_mac_edit.sh renamed: tests/hardening/4.1.8_record_login_logout.sh -> tests/hardening/4.1.7_record_login_logout.sh renamed: tests/hardening/4.1.9_record_session_init.sh -> tests/hardening/4.1.8_record_session_init.sh renamed: tests/hardening/4.1.10_record_dac_edit.sh -> tests/hardening/4.1.9_record_dac_edit.sh renamed: tests/hardening/4.2.2.1_enable_syslog-ng.sh -> tests/hardening/4.2.2.1_install_syslog-ng.sh renamed: tests/hardening/4.2.2.2_configure_syslog-ng.sh -> tests/hardening/4.2.2.2_enable_syslog-ng.sh renamed: tests/hardening/4.2.2.3_syslog_ng_logfiles_perm.sh -> tests/hardening/4.2.2.3_configure_syslog-ng.sh renamed: tests/hardening/4.2.2.5_remote_syslog-ng_acl.sh -> tests/hardening/4.2.2.4_syslog_ng_logfiles_perm.sh renamed: tests/hardening/4.2.2.4_syslog-ng_remote_host.sh -> tests/hardening/4.2.2.5_syslog-ng_remote_host.sh renamed: tests/hardening/4.2.3_install_syslog-ng.sh -> tests/hardening/4.2.2.6_remote_syslog-ng_acl.sh renamed: tests/hardening/4.2.4_logs_permissions.sh -> tests/hardening/4.2.3_logs_permissions.sh --- .../{4.1.2_enable_auditd.sh => 4.1.1.2_enable_auditd.sh} | 2 +- .../{4.1.3_audit_bootloader.sh => 4.1.1.3_audit_bootloader.sh} | 2 +- ...ailed_access_file.sh => 4.1.10_record_failed_access_file.sh} | 2 +- ...vileged_commands.sh => 4.1.11_record_privileged_commands.sh} | 2 +- ...rd_successful_mount.sh => 4.1.12_record_successful_mount.sh} | 2 +- ...record_file_deletions.sh => 4.1.13_record_file_deletions.sh} | 2 +- ....15_record_sudoers_edit.sh => 4.1.14_record_sudoers_edit.sh} | 2 +- ...{4.1.16_record_sudo_usage.sh => 4.1.15_record_sudo_usage.sh} | 2 +- ...record_kernel_modules.sh => 4.1.16_record_kernel_modules.sh} | 2 +- ....1.18_freeze_auditd_conf.sh => 4.1.17_freeze_auditd_conf.sh} | 2 +- ....1.1.1_audit_log_storage.sh => 4.1.2.1_audit_log_storage.sh} | 2 +- ...en_audit_log_full.sh => 4.1.2.2_halt_when_audit_log_full.sh} | 2 +- ....3_keep_all_audit_logs.sh => 4.1.2.3_keep_all_audit_logs.sh} | 2 +- ..._record_date_time_edit.sh => 4.1.3_record_date_time_edit.sh} | 2 +- ...ecord_user_group_edit.sh => 4.1.4_record_user_group_edit.sh} | 2 +- ....1.6_record_network_edit.sh => 4.1.5_record_network_edit.sh} | 2 +- .../{4.1.7_record_mac_edit.sh => 4.1.6_record_mac_edit.sh} | 2 +- ....1.8_record_login_logout.sh => 4.1.7_record_login_logout.sh} | 2 +- ....1.9_record_session_init.sh => 4.1.8_record_session_init.sh} | 2 +- .../{4.1.10_record_dac_edit.sh => 4.1.9_record_dac_edit.sh} | 2 +- ...{4.2.3_install_syslog-ng.sh => 4.2.1.1_install_syslog-ng.sh} | 2 +- ...{4.2.2.1_enable_syslog-ng.sh => 4.2.1.2_enable_syslog-ng.sh} | 2 +- ....2_configure_syslog-ng.sh => 4.2.1.3_configure_syslog-ng.sh} | 2 +- ...g_ng_logfiles_perm.sh => 4.2.1.4_syslog_ng_logfiles_perm.sh} | 2 +- ...yslog-ng_remote_host.sh => 4.2.1.5_syslog-ng_remote_host.sh} | 2 +- ..._remote_syslog-ng_acl.sh => 4.2.1.6_remote_syslog-ng_acl.sh} | 2 +- .../{4.2.4_logs_permissions.sh => 4.2.3_logs_permissions.sh} | 2 +- .../{4.1.2_enable_auditd.sh => 4.1.1.2_enable_auditd.sh} | 0 .../{4.1.3_audit_bootloader.sh => 4.1.1.3_audit_bootloader.sh} | 0 ...ailed_access_file.sh => 4.1.10_record_failed_access_file.sh} | 0 ...vileged_commands.sh => 4.1.11_record_privileged_commands.sh} | 0 ...rd_successful_mount.sh => 4.1.12_record_successful_mount.sh} | 0 ...record_file_deletions.sh => 4.1.13_record_file_deletions.sh} | 0 ....15_record_sudoers_edit.sh => 4.1.14_record_sudoers_edit.sh} | 0 ...{4.1.16_record_sudo_usage.sh => 4.1.15_record_sudo_usage.sh} | 0 ...record_kernel_modules.sh => 4.1.16_record_kernel_modules.sh} | 0 ....1.18_freeze_auditd_conf.sh => 4.1.17_freeze_auditd_conf.sh} | 0 ....1.1.1_audit_log_storage.sh => 4.1.2.1_audit_log_storage.sh} | 0 ...en_audit_log_full.sh => 4.1.2.2_halt_when_audit_log_full.sh} | 0 ....3_keep_all_audit_logs.sh => 4.1.2.3_keep_all_audit_logs.sh} | 0 ..._record_date_time_edit.sh => 4.1.3_record_date_time_edit.sh} | 0 ...ecord_user_group_edit.sh => 4.1.4_record_user_group_edit.sh} | 0 ....1.6_record_network_edit.sh => 4.1.5_record_network_edit.sh} | 0 .../{4.1.7_record_mac_edit.sh => 4.1.6_record_mac_edit.sh} | 0 ....1.8_record_login_logout.sh => 4.1.7_record_login_logout.sh} | 0 ....1.9_record_session_init.sh => 4.1.8_record_session_init.sh} | 0 .../{4.1.10_record_dac_edit.sh => 4.1.9_record_dac_edit.sh} | 0 ...4.2.2.1_enable_syslog-ng.sh => 4.2.1.1_install_syslog-ng.sh} | 0 ...2.2.2_configure_syslog-ng.sh => 4.2.1.2_enable_syslog-ng.sh} | 0 ...yslog_ng_logfiles_perm.sh => 4.2.1.3_configure_syslog-ng.sh} | 0 ...mote_syslog-ng_acl.sh => 4.2.1.4_syslog_ng_logfiles_perm.sh} | 0 ...yslog-ng_remote_host.sh => 4.2.1.5_syslog-ng_remote_host.sh} | 0 ...2.3_install_syslog-ng.sh => 4.2.1.6_remote_syslog-ng_acl.sh} | 0 .../{4.2.4_logs_permissions.sh => 4.2.3_logs_permissions.sh} | 0 54 files changed, 27 insertions(+), 27 deletions(-) rename bin/hardening/{4.1.2_enable_auditd.sh => 4.1.1.2_enable_auditd.sh} (97%) rename bin/hardening/{4.1.3_audit_bootloader.sh => 4.1.1.3_audit_bootloader.sh} (97%) rename bin/hardening/{4.1.11_record_failed_access_file.sh => 4.1.10_record_failed_access_file.sh} (97%) rename bin/hardening/{4.1.12_record_privileged_commands.sh => 4.1.11_record_privileged_commands.sh} (97%) rename bin/hardening/{4.1.13_record_successful_mount.sh => 4.1.12_record_successful_mount.sh} (97%) rename bin/hardening/{4.1.14_record_file_deletions.sh => 4.1.13_record_file_deletions.sh} (97%) rename bin/hardening/{4.1.15_record_sudoers_edit.sh => 4.1.14_record_sudoers_edit.sh} (97%) rename bin/hardening/{4.1.16_record_sudo_usage.sh => 4.1.15_record_sudo_usage.sh} (97%) rename bin/hardening/{4.1.17_record_kernel_modules.sh => 4.1.16_record_kernel_modules.sh} (97%) rename bin/hardening/{4.1.18_freeze_auditd_conf.sh => 4.1.17_freeze_auditd_conf.sh} (97%) rename bin/hardening/{4.1.1.1_audit_log_storage.sh => 4.1.2.1_audit_log_storage.sh} (97%) rename bin/hardening/{4.1.1.2_halt_when_audit_log_full.sh => 4.1.2.2_halt_when_audit_log_full.sh} (98%) rename bin/hardening/{4.1.1.3_keep_all_audit_logs.sh => 4.1.2.3_keep_all_audit_logs.sh} (98%) rename bin/hardening/{4.1.4_record_date_time_edit.sh => 4.1.3_record_date_time_edit.sh} (97%) rename bin/hardening/{4.1.5_record_user_group_edit.sh => 4.1.4_record_user_group_edit.sh} (97%) rename bin/hardening/{4.1.6_record_network_edit.sh => 4.1.5_record_network_edit.sh} (97%) rename bin/hardening/{4.1.7_record_mac_edit.sh => 4.1.6_record_mac_edit.sh} (97%) rename bin/hardening/{4.1.8_record_login_logout.sh => 4.1.7_record_login_logout.sh} (97%) rename bin/hardening/{4.1.9_record_session_init.sh => 4.1.8_record_session_init.sh} (97%) rename bin/hardening/{4.1.10_record_dac_edit.sh => 4.1.9_record_dac_edit.sh} (96%) rename bin/hardening/{4.2.3_install_syslog-ng.sh => 4.2.1.1_install_syslog-ng.sh} (97%) rename bin/hardening/{4.2.2.1_enable_syslog-ng.sh => 4.2.1.2_enable_syslog-ng.sh} (97%) rename bin/hardening/{4.2.2.2_configure_syslog-ng.sh => 4.2.1.3_configure_syslog-ng.sh} (96%) rename bin/hardening/{4.2.2.3_syslog_ng_logfiles_perm.sh => 4.2.1.4_syslog_ng_logfiles_perm.sh} (98%) rename bin/hardening/{4.2.2.4_syslog-ng_remote_host.sh => 4.2.1.5_syslog-ng_remote_host.sh} (97%) rename bin/hardening/{4.2.2.5_remote_syslog-ng_acl.sh => 4.2.1.6_remote_syslog-ng_acl.sh} (95%) rename bin/hardening/{4.2.4_logs_permissions.sh => 4.2.3_logs_permissions.sh} (97%) rename tests/hardening/{4.1.2_enable_auditd.sh => 4.1.1.2_enable_auditd.sh} (100%) rename tests/hardening/{4.1.3_audit_bootloader.sh => 4.1.1.3_audit_bootloader.sh} (100%) rename tests/hardening/{4.1.11_record_failed_access_file.sh => 4.1.10_record_failed_access_file.sh} (100%) rename tests/hardening/{4.1.12_record_privileged_commands.sh => 4.1.11_record_privileged_commands.sh} (100%) rename tests/hardening/{4.1.13_record_successful_mount.sh => 4.1.12_record_successful_mount.sh} (100%) rename tests/hardening/{4.1.14_record_file_deletions.sh => 4.1.13_record_file_deletions.sh} (100%) rename tests/hardening/{4.1.15_record_sudoers_edit.sh => 4.1.14_record_sudoers_edit.sh} (100%) rename tests/hardening/{4.1.16_record_sudo_usage.sh => 4.1.15_record_sudo_usage.sh} (100%) rename tests/hardening/{4.1.17_record_kernel_modules.sh => 4.1.16_record_kernel_modules.sh} (100%) rename tests/hardening/{4.1.18_freeze_auditd_conf.sh => 4.1.17_freeze_auditd_conf.sh} (100%) rename tests/hardening/{4.1.1.1_audit_log_storage.sh => 4.1.2.1_audit_log_storage.sh} (100%) rename tests/hardening/{4.1.1.2_halt_when_audit_log_full.sh => 4.1.2.2_halt_when_audit_log_full.sh} (100%) rename tests/hardening/{4.1.1.3_keep_all_audit_logs.sh => 4.1.2.3_keep_all_audit_logs.sh} (100%) rename tests/hardening/{4.1.4_record_date_time_edit.sh => 4.1.3_record_date_time_edit.sh} (100%) rename tests/hardening/{4.1.5_record_user_group_edit.sh => 4.1.4_record_user_group_edit.sh} (100%) rename tests/hardening/{4.1.6_record_network_edit.sh => 4.1.5_record_network_edit.sh} (100%) rename tests/hardening/{4.1.7_record_mac_edit.sh => 4.1.6_record_mac_edit.sh} (100%) rename tests/hardening/{4.1.8_record_login_logout.sh => 4.1.7_record_login_logout.sh} (100%) rename tests/hardening/{4.1.9_record_session_init.sh => 4.1.8_record_session_init.sh} (100%) rename tests/hardening/{4.1.10_record_dac_edit.sh => 4.1.9_record_dac_edit.sh} (100%) rename tests/hardening/{4.2.2.1_enable_syslog-ng.sh => 4.2.1.1_install_syslog-ng.sh} (100%) rename tests/hardening/{4.2.2.2_configure_syslog-ng.sh => 4.2.1.2_enable_syslog-ng.sh} (100%) rename tests/hardening/{4.2.2.3_syslog_ng_logfiles_perm.sh => 4.2.1.3_configure_syslog-ng.sh} (100%) rename tests/hardening/{4.2.2.5_remote_syslog-ng_acl.sh => 4.2.1.4_syslog_ng_logfiles_perm.sh} (100%) rename tests/hardening/{4.2.2.4_syslog-ng_remote_host.sh => 4.2.1.5_syslog-ng_remote_host.sh} (100%) rename tests/hardening/{4.2.3_install_syslog-ng.sh => 4.2.1.6_remote_syslog-ng_acl.sh} (100%) rename tests/hardening/{4.2.4_logs_permissions.sh => 4.2.3_logs_permissions.sh} (100%) diff --git a/bin/hardening/4.1.2_enable_auditd.sh b/bin/hardening/4.1.1.2_enable_auditd.sh similarity index 97% rename from bin/hardening/4.1.2_enable_auditd.sh rename to bin/hardening/4.1.1.2_enable_auditd.sh index 1b226e2..2bfb7cc 100755 --- a/bin/hardening/4.1.2_enable_auditd.sh +++ b/bin/hardening/4.1.1.2_enable_auditd.sh @@ -6,7 +6,7 @@ # # -# 4.1.2 Ensure auditd service is enabled (Scored) +# 4.1.1.2 Ensure auditd service is enabled (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.3_audit_bootloader.sh b/bin/hardening/4.1.1.3_audit_bootloader.sh similarity index 97% rename from bin/hardening/4.1.3_audit_bootloader.sh rename to bin/hardening/4.1.1.3_audit_bootloader.sh index 44e30cc..2ec6944 100755 --- a/bin/hardening/4.1.3_audit_bootloader.sh +++ b/bin/hardening/4.1.1.3_audit_bootloader.sh @@ -6,7 +6,7 @@ # # -# 4.1.3 Ensure auditing for processes that start prior to auditd is enabled (Scored) +# 4.1.1.3 Ensure auditing for processes that start prior to auditd is enabled (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.11_record_failed_access_file.sh b/bin/hardening/4.1.10_record_failed_access_file.sh similarity index 97% rename from bin/hardening/4.1.11_record_failed_access_file.sh rename to bin/hardening/4.1.10_record_failed_access_file.sh index f91a270..3e67863 100755 --- a/bin/hardening/4.1.11_record_failed_access_file.sh +++ b/bin/hardening/4.1.10_record_failed_access_file.sh @@ -6,7 +6,7 @@ # # -# 4.1.11 Ensure unsuccessful unauthorized file access attempts are collected (Scored) +# 4.1.10 Ensure unsuccessful unauthorized file access attempts are collected (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.12_record_privileged_commands.sh b/bin/hardening/4.1.11_record_privileged_commands.sh similarity index 97% rename from bin/hardening/4.1.12_record_privileged_commands.sh rename to bin/hardening/4.1.11_record_privileged_commands.sh index 581dafd..a920bcb 100755 --- a/bin/hardening/4.1.12_record_privileged_commands.sh +++ b/bin/hardening/4.1.11_record_privileged_commands.sh @@ -6,7 +6,7 @@ # # -# 4.1.12 Ensure use of privileged commands is collected (Scored) +# 4.1.11 Ensure use of privileged commands is collected (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.13_record_successful_mount.sh b/bin/hardening/4.1.12_record_successful_mount.sh similarity index 97% rename from bin/hardening/4.1.13_record_successful_mount.sh rename to bin/hardening/4.1.12_record_successful_mount.sh index 1cbfd1e..6b84700 100755 --- a/bin/hardening/4.1.13_record_successful_mount.sh +++ b/bin/hardening/4.1.12_record_successful_mount.sh @@ -6,7 +6,7 @@ # # -# 4.1.13 Ensure successful file system mounts are collected (Scored) +# 4.1.12 Ensure successful file system mounts are collected (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.14_record_file_deletions.sh b/bin/hardening/4.1.13_record_file_deletions.sh similarity index 97% rename from bin/hardening/4.1.14_record_file_deletions.sh rename to bin/hardening/4.1.13_record_file_deletions.sh index 9ce7448..1807ce7 100755 --- a/bin/hardening/4.1.14_record_file_deletions.sh +++ b/bin/hardening/4.1.13_record_file_deletions.sh @@ -6,7 +6,7 @@ # # -# 4.1.14 Ensure file deletion events by users are collected (Scored) +# 4.1.13 Ensure file deletion events by users are collected (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.15_record_sudoers_edit.sh b/bin/hardening/4.1.14_record_sudoers_edit.sh similarity index 97% rename from bin/hardening/4.1.15_record_sudoers_edit.sh rename to bin/hardening/4.1.14_record_sudoers_edit.sh index 757fc8f..b7d4cb4 100755 --- a/bin/hardening/4.1.15_record_sudoers_edit.sh +++ b/bin/hardening/4.1.14_record_sudoers_edit.sh @@ -6,7 +6,7 @@ # # -# 4.1.15 Ensure changes to system administration scope (sudoers) is collected (Scored) +# 4.1.14 Ensure changes to system administration scope (sudoers) is collected (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.16_record_sudo_usage.sh b/bin/hardening/4.1.15_record_sudo_usage.sh similarity index 97% rename from bin/hardening/4.1.16_record_sudo_usage.sh rename to bin/hardening/4.1.15_record_sudo_usage.sh index c70bbb6..4759268 100755 --- a/bin/hardening/4.1.16_record_sudo_usage.sh +++ b/bin/hardening/4.1.15_record_sudo_usage.sh @@ -6,7 +6,7 @@ # # -# 4.1.16 Ensure system administrator actions (sudolog) are collected (Scored) +# 4.1.15 Ensure system administrator actions (sudolog) are collected (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.17_record_kernel_modules.sh b/bin/hardening/4.1.16_record_kernel_modules.sh similarity index 97% rename from bin/hardening/4.1.17_record_kernel_modules.sh rename to bin/hardening/4.1.16_record_kernel_modules.sh index c9f7361..05eba6e 100755 --- a/bin/hardening/4.1.17_record_kernel_modules.sh +++ b/bin/hardening/4.1.16_record_kernel_modules.sh @@ -6,7 +6,7 @@ # # -# 4.1.17 Ensure kernel module loading and unloading is collected (Scored) +# 4.1.16 Ensure kernel module loading and unloading is collected (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.18_freeze_auditd_conf.sh b/bin/hardening/4.1.17_freeze_auditd_conf.sh similarity index 97% rename from bin/hardening/4.1.18_freeze_auditd_conf.sh rename to bin/hardening/4.1.17_freeze_auditd_conf.sh index 9b7e37b..cec9a57 100755 --- a/bin/hardening/4.1.18_freeze_auditd_conf.sh +++ b/bin/hardening/4.1.17_freeze_auditd_conf.sh @@ -6,7 +6,7 @@ # # -# 4.1.18 Ensure the audit configuration is immutable (Scored) +# 4.1.17 Ensure the audit configuration is immutable (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.1.1_audit_log_storage.sh b/bin/hardening/4.1.2.1_audit_log_storage.sh similarity index 97% rename from bin/hardening/4.1.1.1_audit_log_storage.sh rename to bin/hardening/4.1.2.1_audit_log_storage.sh index 834fe11..120a1dd 100755 --- a/bin/hardening/4.1.1.1_audit_log_storage.sh +++ b/bin/hardening/4.1.2.1_audit_log_storage.sh @@ -6,7 +6,7 @@ # # -# 4.1.1.1 Ensure audit log storage size is configured (Scored) +# 4.1.2.1 Ensure audit log storage size is configured (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.1.2_halt_when_audit_log_full.sh b/bin/hardening/4.1.2.2_halt_when_audit_log_full.sh similarity index 98% rename from bin/hardening/4.1.1.2_halt_when_audit_log_full.sh rename to bin/hardening/4.1.2.2_halt_when_audit_log_full.sh index 5e6d243..3a2b94b 100755 --- a/bin/hardening/4.1.1.2_halt_when_audit_log_full.sh +++ b/bin/hardening/4.1.2.2_halt_when_audit_log_full.sh @@ -6,7 +6,7 @@ # # -# 4.1.1.2 Ensure system is disabled when audit logs are full (Scored) +# 4.1.2.2 Ensure system is disabled when audit logs are full (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.1.3_keep_all_audit_logs.sh b/bin/hardening/4.1.2.3_keep_all_audit_logs.sh similarity index 98% rename from bin/hardening/4.1.1.3_keep_all_audit_logs.sh rename to bin/hardening/4.1.2.3_keep_all_audit_logs.sh index 002cd7a..eba4e74 100755 --- a/bin/hardening/4.1.1.3_keep_all_audit_logs.sh +++ b/bin/hardening/4.1.2.3_keep_all_audit_logs.sh @@ -6,7 +6,7 @@ # # -# 4.1.1.3 Ensure audit logs are not automatically deleted (Scored) +# 4.1.2.3 Ensure audit logs are not automatically deleted (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.4_record_date_time_edit.sh b/bin/hardening/4.1.3_record_date_time_edit.sh similarity index 97% rename from bin/hardening/4.1.4_record_date_time_edit.sh rename to bin/hardening/4.1.3_record_date_time_edit.sh index 8ed450b..e66fc50 100755 --- a/bin/hardening/4.1.4_record_date_time_edit.sh +++ b/bin/hardening/4.1.3_record_date_time_edit.sh @@ -6,7 +6,7 @@ # # -# 4.1.4 Ensure events that modify date and time information are collected (Scored) +# 4.1.3 Ensure events that modify date and time information are collected (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.5_record_user_group_edit.sh b/bin/hardening/4.1.4_record_user_group_edit.sh similarity index 97% rename from bin/hardening/4.1.5_record_user_group_edit.sh rename to bin/hardening/4.1.4_record_user_group_edit.sh index f7d4e7c..22adf8c 100755 --- a/bin/hardening/4.1.5_record_user_group_edit.sh +++ b/bin/hardening/4.1.4_record_user_group_edit.sh @@ -6,7 +6,7 @@ # # -# 4.1.5 Ensure events that modify user/group information are collected (Scored) +# 4.1.4 Ensure events that modify user/group information are collected (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.6_record_network_edit.sh b/bin/hardening/4.1.5_record_network_edit.sh similarity index 97% rename from bin/hardening/4.1.6_record_network_edit.sh rename to bin/hardening/4.1.5_record_network_edit.sh index 1df373a..6a249f8 100755 --- a/bin/hardening/4.1.6_record_network_edit.sh +++ b/bin/hardening/4.1.5_record_network_edit.sh @@ -6,7 +6,7 @@ # # -# 4.1.6 Ensure events that modify the system's network environment are collected (Scored) +# 4.1.5 Ensure events that modify the system's network environment are collected (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.7_record_mac_edit.sh b/bin/hardening/4.1.6_record_mac_edit.sh similarity index 97% rename from bin/hardening/4.1.7_record_mac_edit.sh rename to bin/hardening/4.1.6_record_mac_edit.sh index db908b7..bbddeb4 100755 --- a/bin/hardening/4.1.7_record_mac_edit.sh +++ b/bin/hardening/4.1.6_record_mac_edit.sh @@ -6,7 +6,7 @@ # # -# 4.1.7 Ensure that events that modify the system's Mandatory Access Controls are collected (Scored) +# 4.1.6 Ensure that events that modify the system's Mandatory Access Controls are collected (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.8_record_login_logout.sh b/bin/hardening/4.1.7_record_login_logout.sh similarity index 97% rename from bin/hardening/4.1.8_record_login_logout.sh rename to bin/hardening/4.1.7_record_login_logout.sh index 5855dca..6a85605 100755 --- a/bin/hardening/4.1.8_record_login_logout.sh +++ b/bin/hardening/4.1.7_record_login_logout.sh @@ -6,7 +6,7 @@ # # -# 4.1.8 Ensure login and logout events are collected (Scored) +# 4.1.7 Ensure login and logout events are collected (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.9_record_session_init.sh b/bin/hardening/4.1.8_record_session_init.sh similarity index 97% rename from bin/hardening/4.1.9_record_session_init.sh rename to bin/hardening/4.1.8_record_session_init.sh index 5e5759a..5e422ee 100755 --- a/bin/hardening/4.1.9_record_session_init.sh +++ b/bin/hardening/4.1.8_record_session_init.sh @@ -6,7 +6,7 @@ # # -# 4.1.9 Ensure session initiation information is collected (Scored) +# 4.1.8 Ensure session initiation information is collected (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.1.10_record_dac_edit.sh b/bin/hardening/4.1.9_record_dac_edit.sh similarity index 96% rename from bin/hardening/4.1.10_record_dac_edit.sh rename to bin/hardening/4.1.9_record_dac_edit.sh index f284824..4a38419 100755 --- a/bin/hardening/4.1.10_record_dac_edit.sh +++ b/bin/hardening/4.1.9_record_dac_edit.sh @@ -6,7 +6,7 @@ # # -# 4.1.10 Ensure discretionary access control permission modification events are collected (Scored) +# 4.1.9 Ensure discretionary access control permission modification events are collected (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.2.3_install_syslog-ng.sh b/bin/hardening/4.2.1.1_install_syslog-ng.sh similarity index 97% rename from bin/hardening/4.2.3_install_syslog-ng.sh rename to bin/hardening/4.2.1.1_install_syslog-ng.sh index 7aeb4b7..8e7a804 100755 --- a/bin/hardening/4.2.3_install_syslog-ng.sh +++ b/bin/hardening/4.2.1.1_install_syslog-ng.sh @@ -6,7 +6,7 @@ # # -# 4.2.3 Ensure Syslog-ng is installed (Scored) +# 4.2.2.1 Ensure Syslog-ng is installed (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.2.2.1_enable_syslog-ng.sh b/bin/hardening/4.2.1.2_enable_syslog-ng.sh similarity index 97% rename from bin/hardening/4.2.2.1_enable_syslog-ng.sh rename to bin/hardening/4.2.1.2_enable_syslog-ng.sh index 7fe0dfe..a73ee66 100755 --- a/bin/hardening/4.2.2.1_enable_syslog-ng.sh +++ b/bin/hardening/4.2.1.2_enable_syslog-ng.sh @@ -6,7 +6,7 @@ # # -# 4.2.2.1 Ensure syslog-ng service is enabled (Scored) +# 4.2.2.2 Ensure syslog-ng service is enabled (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.2.2.2_configure_syslog-ng.sh b/bin/hardening/4.2.1.3_configure_syslog-ng.sh similarity index 96% rename from bin/hardening/4.2.2.2_configure_syslog-ng.sh rename to bin/hardening/4.2.1.3_configure_syslog-ng.sh index 50930e0..468b2a2 100755 --- a/bin/hardening/4.2.2.2_configure_syslog-ng.sh +++ b/bin/hardening/4.2.1.3_configure_syslog-ng.sh @@ -6,7 +6,7 @@ # # -# 4.2.2.2 Configure /etc/syslog-ng/syslog-ng.conf (Not Scored) +# 4.2.2.3 Configure /etc/syslog-ng/syslog-ng.conf (Not Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.2.2.3_syslog_ng_logfiles_perm.sh b/bin/hardening/4.2.1.4_syslog_ng_logfiles_perm.sh similarity index 98% rename from bin/hardening/4.2.2.3_syslog_ng_logfiles_perm.sh rename to bin/hardening/4.2.1.4_syslog_ng_logfiles_perm.sh index 8430c61..377bc53 100755 --- a/bin/hardening/4.2.2.3_syslog_ng_logfiles_perm.sh +++ b/bin/hardening/4.2.1.4_syslog_ng_logfiles_perm.sh @@ -6,7 +6,7 @@ # # -# 4.2.2.3 Create and Set Permissions on syslog-ng Log Files (Scored) +# 4.2.2.4 Create and Set Permissions on syslog-ng Log Files (Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.2.2.4_syslog-ng_remote_host.sh b/bin/hardening/4.2.1.5_syslog-ng_remote_host.sh similarity index 97% rename from bin/hardening/4.2.2.4_syslog-ng_remote_host.sh rename to bin/hardening/4.2.1.5_syslog-ng_remote_host.sh index 6881a61..ac9915d 100755 --- a/bin/hardening/4.2.2.4_syslog-ng_remote_host.sh +++ b/bin/hardening/4.2.1.5_syslog-ng_remote_host.sh @@ -6,7 +6,7 @@ # # -# 4.2.2.4 Ensure syslog-ng is configured to send logs to a remote log host (Not Scored) +# 4.2.2.5 Ensure syslog-ng is configured to send logs to a remote log host (Not Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.2.2.5_remote_syslog-ng_acl.sh b/bin/hardening/4.2.1.6_remote_syslog-ng_acl.sh similarity index 95% rename from bin/hardening/4.2.2.5_remote_syslog-ng_acl.sh rename to bin/hardening/4.2.1.6_remote_syslog-ng_acl.sh index 30eb688..7b38f07 100755 --- a/bin/hardening/4.2.2.5_remote_syslog-ng_acl.sh +++ b/bin/hardening/4.2.1.6_remote_syslog-ng_acl.sh @@ -6,7 +6,7 @@ # # -# 4.2.2.5 Accept Remote rsyslog Messages Only on Designated Log Hosts (Not Scored) +# 4.2.2.6 Accept Remote rsyslog Messages Only on Designated Log Hosts (Not Scored) # set -e # One error, it's over diff --git a/bin/hardening/4.2.4_logs_permissions.sh b/bin/hardening/4.2.3_logs_permissions.sh similarity index 97% rename from bin/hardening/4.2.4_logs_permissions.sh rename to bin/hardening/4.2.3_logs_permissions.sh index eb74183..2f19812 100755 --- a/bin/hardening/4.2.4_logs_permissions.sh +++ b/bin/hardening/4.2.3_logs_permissions.sh @@ -6,7 +6,7 @@ # # -# 4.2.4 Ensure permissions on all logfiles are configured (Scored) +# 4.2.3 Ensure permissions on all logfiles are configured (Scored) # set -e # One error, it's over diff --git a/tests/hardening/4.1.2_enable_auditd.sh b/tests/hardening/4.1.1.2_enable_auditd.sh similarity index 100% rename from tests/hardening/4.1.2_enable_auditd.sh rename to tests/hardening/4.1.1.2_enable_auditd.sh diff --git a/tests/hardening/4.1.3_audit_bootloader.sh b/tests/hardening/4.1.1.3_audit_bootloader.sh similarity index 100% rename from tests/hardening/4.1.3_audit_bootloader.sh rename to tests/hardening/4.1.1.3_audit_bootloader.sh diff --git a/tests/hardening/4.1.11_record_failed_access_file.sh b/tests/hardening/4.1.10_record_failed_access_file.sh similarity index 100% rename from tests/hardening/4.1.11_record_failed_access_file.sh rename to tests/hardening/4.1.10_record_failed_access_file.sh diff --git a/tests/hardening/4.1.12_record_privileged_commands.sh b/tests/hardening/4.1.11_record_privileged_commands.sh similarity index 100% rename from tests/hardening/4.1.12_record_privileged_commands.sh rename to tests/hardening/4.1.11_record_privileged_commands.sh diff --git a/tests/hardening/4.1.13_record_successful_mount.sh b/tests/hardening/4.1.12_record_successful_mount.sh similarity index 100% rename from tests/hardening/4.1.13_record_successful_mount.sh rename to tests/hardening/4.1.12_record_successful_mount.sh diff --git a/tests/hardening/4.1.14_record_file_deletions.sh b/tests/hardening/4.1.13_record_file_deletions.sh similarity index 100% rename from tests/hardening/4.1.14_record_file_deletions.sh rename to tests/hardening/4.1.13_record_file_deletions.sh diff --git a/tests/hardening/4.1.15_record_sudoers_edit.sh b/tests/hardening/4.1.14_record_sudoers_edit.sh similarity index 100% rename from tests/hardening/4.1.15_record_sudoers_edit.sh rename to tests/hardening/4.1.14_record_sudoers_edit.sh diff --git a/tests/hardening/4.1.16_record_sudo_usage.sh b/tests/hardening/4.1.15_record_sudo_usage.sh similarity index 100% rename from tests/hardening/4.1.16_record_sudo_usage.sh rename to tests/hardening/4.1.15_record_sudo_usage.sh diff --git a/tests/hardening/4.1.17_record_kernel_modules.sh b/tests/hardening/4.1.16_record_kernel_modules.sh similarity index 100% rename from tests/hardening/4.1.17_record_kernel_modules.sh rename to tests/hardening/4.1.16_record_kernel_modules.sh diff --git a/tests/hardening/4.1.18_freeze_auditd_conf.sh b/tests/hardening/4.1.17_freeze_auditd_conf.sh similarity index 100% rename from tests/hardening/4.1.18_freeze_auditd_conf.sh rename to tests/hardening/4.1.17_freeze_auditd_conf.sh diff --git a/tests/hardening/4.1.1.1_audit_log_storage.sh b/tests/hardening/4.1.2.1_audit_log_storage.sh similarity index 100% rename from tests/hardening/4.1.1.1_audit_log_storage.sh rename to tests/hardening/4.1.2.1_audit_log_storage.sh diff --git a/tests/hardening/4.1.1.2_halt_when_audit_log_full.sh b/tests/hardening/4.1.2.2_halt_when_audit_log_full.sh similarity index 100% rename from tests/hardening/4.1.1.2_halt_when_audit_log_full.sh rename to tests/hardening/4.1.2.2_halt_when_audit_log_full.sh diff --git a/tests/hardening/4.1.1.3_keep_all_audit_logs.sh b/tests/hardening/4.1.2.3_keep_all_audit_logs.sh similarity index 100% rename from tests/hardening/4.1.1.3_keep_all_audit_logs.sh rename to tests/hardening/4.1.2.3_keep_all_audit_logs.sh diff --git a/tests/hardening/4.1.4_record_date_time_edit.sh b/tests/hardening/4.1.3_record_date_time_edit.sh similarity index 100% rename from tests/hardening/4.1.4_record_date_time_edit.sh rename to tests/hardening/4.1.3_record_date_time_edit.sh diff --git a/tests/hardening/4.1.5_record_user_group_edit.sh b/tests/hardening/4.1.4_record_user_group_edit.sh similarity index 100% rename from tests/hardening/4.1.5_record_user_group_edit.sh rename to tests/hardening/4.1.4_record_user_group_edit.sh diff --git a/tests/hardening/4.1.6_record_network_edit.sh b/tests/hardening/4.1.5_record_network_edit.sh similarity index 100% rename from tests/hardening/4.1.6_record_network_edit.sh rename to tests/hardening/4.1.5_record_network_edit.sh diff --git a/tests/hardening/4.1.7_record_mac_edit.sh b/tests/hardening/4.1.6_record_mac_edit.sh similarity index 100% rename from tests/hardening/4.1.7_record_mac_edit.sh rename to tests/hardening/4.1.6_record_mac_edit.sh diff --git a/tests/hardening/4.1.8_record_login_logout.sh b/tests/hardening/4.1.7_record_login_logout.sh similarity index 100% rename from tests/hardening/4.1.8_record_login_logout.sh rename to tests/hardening/4.1.7_record_login_logout.sh diff --git a/tests/hardening/4.1.9_record_session_init.sh b/tests/hardening/4.1.8_record_session_init.sh similarity index 100% rename from tests/hardening/4.1.9_record_session_init.sh rename to tests/hardening/4.1.8_record_session_init.sh diff --git a/tests/hardening/4.1.10_record_dac_edit.sh b/tests/hardening/4.1.9_record_dac_edit.sh similarity index 100% rename from tests/hardening/4.1.10_record_dac_edit.sh rename to tests/hardening/4.1.9_record_dac_edit.sh diff --git a/tests/hardening/4.2.2.1_enable_syslog-ng.sh b/tests/hardening/4.2.1.1_install_syslog-ng.sh similarity index 100% rename from tests/hardening/4.2.2.1_enable_syslog-ng.sh rename to tests/hardening/4.2.1.1_install_syslog-ng.sh diff --git a/tests/hardening/4.2.2.2_configure_syslog-ng.sh b/tests/hardening/4.2.1.2_enable_syslog-ng.sh similarity index 100% rename from tests/hardening/4.2.2.2_configure_syslog-ng.sh rename to tests/hardening/4.2.1.2_enable_syslog-ng.sh diff --git a/tests/hardening/4.2.2.3_syslog_ng_logfiles_perm.sh b/tests/hardening/4.2.1.3_configure_syslog-ng.sh similarity index 100% rename from tests/hardening/4.2.2.3_syslog_ng_logfiles_perm.sh rename to tests/hardening/4.2.1.3_configure_syslog-ng.sh diff --git a/tests/hardening/4.2.2.5_remote_syslog-ng_acl.sh b/tests/hardening/4.2.1.4_syslog_ng_logfiles_perm.sh similarity index 100% rename from tests/hardening/4.2.2.5_remote_syslog-ng_acl.sh rename to tests/hardening/4.2.1.4_syslog_ng_logfiles_perm.sh diff --git a/tests/hardening/4.2.2.4_syslog-ng_remote_host.sh b/tests/hardening/4.2.1.5_syslog-ng_remote_host.sh similarity index 100% rename from tests/hardening/4.2.2.4_syslog-ng_remote_host.sh rename to tests/hardening/4.2.1.5_syslog-ng_remote_host.sh diff --git a/tests/hardening/4.2.3_install_syslog-ng.sh b/tests/hardening/4.2.1.6_remote_syslog-ng_acl.sh similarity index 100% rename from tests/hardening/4.2.3_install_syslog-ng.sh rename to tests/hardening/4.2.1.6_remote_syslog-ng_acl.sh diff --git a/tests/hardening/4.2.4_logs_permissions.sh b/tests/hardening/4.2.3_logs_permissions.sh similarity index 100% rename from tests/hardening/4.2.4_logs_permissions.sh rename to tests/hardening/4.2.3_logs_permissions.sh