Thibault Ayanides
|
7b8cca20d6
|
FIX(4.1.1.2): fix auditd apply
|
2020-11-09 11:48:48 +01:00 |
|
Thibault Ayanides
|
a6de243808
|
Rename 6.1.2,6.1.3,6.1.4 to be CIS9 compliant
|
2020-11-09 09:00:34 +01:00 |
|
Thibault Ayanides
|
7e8c976722
|
Add disclaimer when checks don't require comprehensive checks
modified: tests/hardening/1.1.1.1_disable_freevxfs.sh
modified: tests/hardening/1.1.1.2_disable_jffs2.sh
modified: tests/hardening/1.1.1.3_disable_hfs.sh
modified: tests/hardening/1.1.1.4_disable_hfsplus.sh
modified: tests/hardening/1.1.1.5_disable_udf.sh
modified: tests/hardening/1.1.1.6_disable_cramfs.sh
modified: tests/hardening/1.1.1.7_disable_squashfs.sh
modified: tests/hardening/1.1.10_var_tmp_noexec.sh
modified: tests/hardening/1.1.11_var_log_partition.sh
modified: tests/hardening/1.1.12_var_log_audit_partition.sh
modified: tests/hardening/1.1.13_home_partition.sh
modified: tests/hardening/1.1.14_home_nodev.sh
modified: tests/hardening/1.1.18_removable_device_nodev.sh
modified: tests/hardening/1.1.19_removable_device_nosuid.sh
modified: tests/hardening/1.1.20_removable_device_noexec.sh
modified: tests/hardening/1.1.2_tmp_partition.sh
modified: tests/hardening/1.1.3_tmp_nodev.sh
modified: tests/hardening/1.1.4_tmp_nosuid.sh
modified: tests/hardening/1.1.5_tmp_noexec.sh
modified: tests/hardening/1.1.6_var_partition.sh
modified: tests/hardening/1.1.7_var_tmp_partition.sh
modified: tests/hardening/1.1.8_var_tmp_nodev.sh
modified: tests/hardening/1.1.9_var_tmp_nosuid.sh
modified: tests/hardening/1.8_install_updates.sh
modified: tests/hardening/2.2.10_disable_http_server.sh
modified: tests/hardening/2.2.11_disable_imap_pop.sh
modified: tests/hardening/2.2.12_disable_samba.sh
modified: tests/hardening/2.2.13_disable_http_proxy.sh
modified: tests/hardening/2.2.14_disable_snmp_server.sh
modified: tests/hardening/2.2.2_disable_xwindow_system.sh
modified: tests/hardening/2.2.3_disable_avahi_server.sh
modified: tests/hardening/2.2.4_disable_print_server.sh
modified: tests/hardening/2.2.5_disable_dhcp.sh
modified: tests/hardening/2.2.6_disable_ldap.sh
modified: tests/hardening/2.2.7_disable_nfs_rpc.sh
modified: tests/hardening/2.2.8_disable_dns_server.sh
modified: tests/hardening/2.2.9_disable_ftp.sh
modified: tests/hardening/2.3.1_disable_nis.sh
modified: tests/hardening/2.3.2_disable_rsh_client.sh
modified: tests/hardening/2.3.3_disable_talk_client.sh
modified: tests/hardening/2.3.4_telnet_client_not_installed.sh
modified: tests/hardening/2.3.5_ldap_client_not_installed.sh
|
2020-11-06 16:20:10 +01:00 |
|
Thibault Ayanides
|
ce1e87b1a3
|
IMP(4.5): rename to 1.6.1.2 improve test
|
2020-11-06 11:09:22 +01:00 |
|
Thibault Ayanides
|
b5865947ba
|
Move to most recent docker image for buster
|
2020-11-06 10:11:46 +01:00 |
|
Thibault Ayanides
|
ee4b2417c2
|
IMP(4.1.x): add tests for each checks
|
2020-11-02 15:47:27 +01:00 |
|
Thibault Ayanides
|
5568065c35
|
IMP(4.1.3): skip on docker (bootloader)
|
2020-11-02 15:46:45 +01:00 |
|
Thibault Ayanides
|
91a2824246
|
IMP(5.6): add test
|
2020-10-30 09:48:36 +01:00 |
|
Thibault Ayanides
|
47f8b7b677
|
IMP(5.4.4): add test
|
2020-10-30 09:48:27 +01:00 |
|
Thibault Ayanides
|
728011f846
|
IMP(5.4.3): add purposely failing test
|
2020-10-30 09:40:28 +01:00 |
|
Thibault Ayanides
|
17e43753b9
|
IMP(5.4.1.1-3): add tests and rename some variables
|
2020-10-30 09:39:42 +01:00 |
|
Thibault Ayanides
|
8af91dd6a8
|
IMP(5.3.1,5.3.2): add tests and upgrade PAM conf
|
2020-10-29 16:45:15 +01:00 |
|
Thibault Ayanides
|
feefee28e4
|
IMP(5.3.1): add test and config function for check
|
2020-10-29 15:35:56 +01:00 |
|
Thibault Ayanides
|
774af39a34
|
IMP(5.2.x): add tests and default_config
I added tests from 5.2.4 to 5.2.19 and default_config files in the
checks. This checks concern sshd conf (ciphers, mac, rootlogin, ...)
modifié : bin/hardening/5.2.4_sshd_protocol.sh
modifié : bin/hardening/5.2.6_disable_x11_forwarding.sh
modifié : bin/hardening/5.2.7_sshd_maxauthtries.sh
modifié : bin/hardening/5.2.8_enable_sshd_ignorerhosts.sh
modifié : bin/hardening/5.2.9_disable_sshd_hostbasedauthentication.sh
modifié : bin/hardening/5.2.10_disable_root_login.sh
modifié : bin/hardening/5.2.11_disable_sshd_permitemptypasswords.sh
modifié : bin/hardening/5.2.12_disable_sshd_setenv.sh
modifié : bin/hardening/5.2.13_sshd_ciphers.sh
modifié : bin/hardening/5.2.16_sshd_idle_timeout.sh
modifié : bin/hardening/5.2.17_sshd_login_grace_time.sh
modifié : tests/hardening/5.2.4_sshd_protocol.sh
modifié : tests/hardening/5.2.5_sshd_loglevel.sh
modifié : tests/hardening/5.2.6_disable_x11_forwarding.sh
modifié : tests/hardening/5.2.7_sshd_maxauthtries.sh
modifié : tests/hardening/5.2.8_enable_sshd_ignorerhosts.sh
modifié : tests/hardening/5.2.9_disable_sshd_hostbasedauthentication.sh
modifié : tests/hardening/5.2.10_disable_root_login.sh
modifié : tests/hardening/5.2.11_disable_sshd_permitemptypasswords.sh
modifié : tests/hardening/5.2.12_disable_sshd_setenv.sh
modifié : tests/hardening/5.2.13_sshd_ciphers.sh
modifié : tests/hardening/5.2.16_sshd_idle_timeout.sh
modifié : tests/hardening/5.2.17_sshd_login_grace_time.sh
modifié : tests/hardening/5.2.18_sshd_limit_access.sh
modifié : tests/hardening/5.2.19_ssh_banner.sh
|
2020-10-29 11:18:31 +01:00 |
|
Thibault
|
3c7a03445c
|
FIX(3.1.1): fix unbound variable issue
|
2020-11-12 10:15:41 +01:00 |
|
Thibault Ayanides
|
03c8e25ff3
|
FIX(99.5.4): fix test (permission denied on authorized_keys)
|
2020-11-05 15:05:12 +01:00 |
|
Thibault Ayanides
|
7b73eac6d6
|
FIX: fix test for CDS
|
2020-11-05 14:24:57 +01:00 |
|
Thibault Ayanides
|
67649ec407
|
IMP: dismiss for count some tests on blank host
|
2020-11-05 12:06:14 +01:00 |
|
Thibault Ayanides
|
fe568561bf
|
IMP: Better cleanup after tests
|
2020-11-05 10:13:14 +01:00 |
|
Thibault Ayanides
|
6aae84f4b2
|
FIX(2.3.18): Re-add telnet server check
Renaming for 2.3.4 anbd 2.3.5 to have naming consistency.
nouveau fichier : bin/hardening/2.2.18_disable_telnet_server.sh
renommé : bin/hardening/2.3.4_telnet_client_not_installed.sh -> bin/hardening/2.3.4_disable_telnet_client.sh
renommé : bin/hardening/2.3.5_ldap_client_not_installed.sh -> bin/hardening/2.3.5_disable_ldap_client.sh
renommé : tests/hardening/2.3.4_telnet_client_not_installed.sh -> tests/hardening/2.2.18_disable_telnet_server.sh
renommé : tests/hardening/2.3.5_ldap_client_not_installed.sh -> tests/hardening/2.3.4_disable_telnet_client.sh
nouveau fichier : tests/hardening/2.3.5_disable_ldap_client.sh
|
2020-11-03 09:38:13 +01:00 |
|
Thibault Ayanides
|
26c119c4a1
|
ADD(3.2.7): add check mysteriously deleted during renaming
|
2020-10-30 16:09:25 +01:00 |
|
Thibault Ayanides
|
aff5d708e8
|
ADD(3.2.6): add check mysteriously deleted during renaming
|
2020-10-30 16:09:21 +01:00 |
|
Thibault Ayanides
|
b266982a3c
|
ADD(6.2.7): add check mysteriously deleted during renaming
|
2020-10-30 16:01:18 +01:00 |
|
Thibault Ayanides
|
258da6b4a1
|
CLEAN(4.2.2): delete 4.2.2, duplicate with 4.2.3
|
2020-10-30 14:40:48 +01:00 |
|
Thibault Ayanides
|
ab712b4a6c
|
IMP(5.2.1,5.2.2,5.2.3): add purposely failing tests
|
2020-10-28 09:09:30 +01:00 |
|
Thibault Ayanides
|
2559dd82cb
|
IMP(5.1.8): add purposely failing tests
|
2020-10-27 16:44:14 +01:00 |
|
Thibault Ayanides
|
b33ab3d9bf
|
IMP(5.1.2-5.1.7): add purposely failing tests
|
2020-10-27 16:16:23 +01:00 |
|
Thibault Ayanides
|
67badc0ed1
|
FIX(2.2.15): add netstat docker images
|
2020-10-27 16:01:20 +01:00 |
|
Thibault Ayanides
|
7a09e0fb9a
|
IMP(99.2): skip on docker
|
2020-10-27 16:00:02 +01:00 |
|
Thibault Ayanides
|
5d16ee5c98
|
IMP(1.1.21): skip on docker
|
2020-10-27 15:34:32 +01:00 |
|
Thibault Ayanides
|
4680465095
|
IMP(1.4.1,1.4.2,1.4.3): skip on docker
|
2020-10-27 15:12:09 +01:00 |
|
Thibault Ayanides
|
027552f364
|
IMP(8.0): skip on docker
|
2020-10-27 15:07:32 +01:00 |
|
Thibault Ayanides
|
a0df6837ea
|
IMP(1.5.1): skip this test on docker
|
2020-10-27 14:29:13 +01:00 |
|
Thibault Ayanides
|
97bb1927c3
|
IMP(1.1.1.X): skip this tests on docker
|
2020-10-27 11:25:18 +01:00 |
|
Thibault Ayanides
|
fec0ac159c
|
IMP(6.2.18,6.2.19,6.2.20): add purposely failing tests
|
2020-10-27 11:24:40 +01:00 |
|
Thibault Ayanides
|
f89a864b33
|
IMP(6.2.15): add purposely failing tests
|
2020-10-27 11:06:27 +01:00 |
|
Thibault Ayanides
|
5ea053a502
|
IMP(6.2.12,6.2.13): add purposely failing tests
|
2020-10-27 11:04:55 +01:00 |
|
Thibault Ayanides
|
58277716c7
|
IMP(6.2.11,6.2.14): add purposely failing tests
|
2020-10-27 11:04:33 +01:00 |
|
Thibault Ayanides
|
912718a014
|
IMP(6.2.10): add purposely failing tests
|
2020-10-27 10:01:29 +01:00 |
|
Thibault Ayanides
|
01d02b5d5c
|
IMP(6.2.8): add purposely failing tests
|
2020-10-27 09:34:06 +01:00 |
|
Thibault Ayanides
|
bb266ebe4a
|
IMP(6.2.6): add purposely failing tests
|
2020-10-27 09:17:57 +01:00 |
|
Thibault Ayanides
|
1e64a14299
|
IMP(6.2.2,6.2.3,6.2.4): add purposely failing tests
|
2020-10-26 14:46:42 +01:00 |
|
Thibault Ayanides
|
7ab41f7b88
|
IMP(6.2.1): add purposely failing tests
|
2020-10-26 12:52:29 +01:00 |
|
Thibault Ayanides
|
a0796af547
|
IMP(6.1.2,6.1.3,6.1.4): add purposely failing tests
|
2020-10-26 11:48:02 +01:00 |
|
Thibault Ayanides
|
990f191111
|
CLEAN: rename 2.18, 2.23
|
2020-10-26 11:05:37 +01:00 |
|
Thibault Ayanides
|
f82712203d
|
CLEAN: rename 7.7
|
2020-10-26 11:00:55 +01:00 |
|
Thibault Ayanides
|
e2616b024d
|
CLEAN: Remove 13.13 (duplicate with 6.2.9)
|
2020-10-26 10:55:12 +01:00 |
|
Thibault Ayanides
|
36d55a6f79
|
CLEAN: Remove old checks (3.2, 8.2.4)
|
2020-10-26 10:48:08 +01:00 |
|
Thibault Ayanides
|
e1846ebd4c
|
CLEAN: Rename 1.7.1.4, 8.2.1
|
2020-10-26 10:40:48 +01:00 |
|
Thibault Ayanides
|
bb9f60a939
|
IMP(12.7): test is automatically skipped on docker
|
2020-10-26 08:51:50 +01:00 |
|