Files
debian-cis/tests/hardening/use_time_sync.sh
damcav35 b0e46dd658 Damcava35/deb12 scripts 3 (#279)
* add "apt_remove" in lib/utils.sh

in order to manage DEBIAN_FRONTEND

* feat: add new scripts for debian 12

- tftp_is_disabled              ->      2.1.16
- network_services_listening    ->      2.1.22
- use_time_sync                 ->      2.3.1.1
Update the existing script to check there is only one installed

- chrony_is_enabled_and_running ->      2.3.3.3

---------

Co-authored-by: damien cavagnini <damien.cavagnini@corp.ovh.com>
2025-08-06 16:50:52 +02:00

24 lines
714 B
Bash

# shellcheck shell=bash
# run-shellcheck
test_audit() {
describe Running on blank host
register_test retvalshouldbe 1
# shellcheck disable=2154
run blank "${CIS_CHECKS_DIR}/${script}.sh" --audit-all
describe Correcting situation
apt-get update
apt-get install -y ntp
# Finally assess that your corrective actions end up with a compliant system
describe Checking resolved state
register_test retvalshouldbe 0
run resolved "${CIS_CHECKS_DIR}/${script}.sh" --audit-all
# we can not check the presence of multiple time synchronization from debian packages, as they are mutually exclusive
describe clean installation
apt remove -y ntp
apt autoremove -y
}