Skip to content

Commit

Permalink
Update RHEL 8 STIG due to rule removal
Browse files Browse the repository at this point in the history
  • Loading branch information
Mab879 committed Oct 31, 2024
1 parent 3b29795 commit ad9a0f5
Show file tree
Hide file tree
Showing 10 changed files with 0 additions and 43 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -27,7 +27,6 @@ references:
disa: CCI-000060,CCI-000056
srg: SRG-OS-000031-GPOS-00012,SRG-OS-000028-GPOS-00009,SRG-OS-000030-GPOS-00011
stigid@ol8: OL08-00-020041
stigid@rhel8: RHEL-08-020041

platform: package[tmux]

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -25,7 +25,6 @@ references:
ospp: FMT_SMF_EXT.1,FMT_MOF_EXT.1,FTA_SSL.1
srg: SRG-OS-000029-GPOS-00010,SRG-OS-000031-GPOS-00012
stigid@ol8: OL08-00-020070
stigid@rhel8: RHEL-08-020070

platform: package[tmux]

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -30,7 +30,6 @@ references:
ospp: FMT_SMF_EXT.1,FMT_MOF_EXT.1,FTA_SSL.1
srg: SRG-OS-000028-GPOS-00009,SRG-OS-000030-GPOS-00011
stigid@ol8: OL08-00-020040
stigid@rhel8: RHEL-08-020040

platform: package[tmux]

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -27,7 +27,6 @@ references:
disa: CCI-000056
srg: SRG-OS-000028-GPOS-00009,SRG-OS-000030-GPOS-00011
stigid@ol8: OL08-00-020040
stigid@rhel8: RHEL-08-020040

platform: package[tmux]

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -26,7 +26,6 @@ references:
ospp: FMT_SMF_EXT.1,FMT_MOF_EXT.1,FTA_SSL.1
srg: SRG-OS-000324-GPOS-00125,SRG-OS-000028-GPOS-00009,SRG-OS-000030-GPOS-00011
stigid@ol8: OL08-00-020042
stigid@rhel8: RHEL-08-020042

ocil_clause: 'tmux is listed in /etc/shells'

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -43,7 +43,6 @@ references:
ospp: FMT_SMF_EXT.1,FMT_MOF_EXT.1,FTA_SSL.1
srg: SRG-OS-000030-GPOS-00011,SRG-OS-000028-GPOS-00009
stigid@ol8: OL08-00-020039
stigid@rhel8: RHEL-08-020039

ocil_clause: 'the package is not installed'

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -24,7 +24,6 @@ references:
disa: CCI-001263,CCI-000366
nist: SI-2(2)
srg: SRG-OS-000191-GPOS-00080
stigid@rhel8: RHEL-08-010001
stigid@sle12: SLES-12-010599

ocil_clause: 'virus scanning software is not running'
Expand Down
20 changes: 0 additions & 20 deletions products/rhel8/profiles/stig.profile
Original file line number Diff line number Diff line change
Expand Up @@ -92,10 +92,6 @@ selections:
# RHEL-08-010000
- installed_OS_is_vendor_supported

# RHEL-08-010001
- package_mcafeetp_installed
- agent_mfetpd_running

# RHEL-08-010010
- security_patches_up_to_date

Expand Down Expand Up @@ -549,28 +545,12 @@ selections:
- logind_session_timeout
- var_logind_session_timeout=10_minutes

# RHEL-08-020039
- package_tmux_installed

# RHEL-08-020040
- configure_tmux_lock_command
- configure_tmux_lock_keybinding

# RHEL-08-020041
- configure_bashrc_tmux

# RHEL-08-020042
- no_tmux_in_shells

# RHEL-08-020050
- dconf_gnome_lock_screen_on_smartcard_removal

# RHEL-08-020060
- dconf_gnome_screensaver_idle_delay

# RHEL-08-020070
- configure_tmux_lock_after_time

# RHEL-08-020080
- dconf_gnome_screensaver_user_locks

Expand Down
8 changes: 0 additions & 8 deletions tests/data/profile_stability/rhel8/stig.profile
Original file line number Diff line number Diff line change
Expand Up @@ -79,7 +79,6 @@ selections:
- accounts_user_interactive_home_directory_exists
- accounts_users_home_files_groupownership
- accounts_users_home_files_permissions
- agent_mfetpd_running
- aide_build_database
- aide_check_audit_tools
- aide_scan_notification
Expand Down Expand Up @@ -169,7 +168,6 @@ selections:
- chronyd_server_directive
- chronyd_specify_remote_server
- clean_components_post_updating
- configure_bashrc_tmux
- configure_bind_crypto_policy
- configure_crypto_policy
- configure_firewalld_ports
Expand All @@ -179,9 +177,6 @@ selections:
- configure_openssl_crypto_policy
- configure_openssl_tls_crypto_policy
- configure_ssh_crypto_policy
- configure_tmux_lock_after_time
- configure_tmux_lock_command
- configure_tmux_lock_keybinding
- configure_usbguard_auditbackend
- configured_firewalld_default_deny
- coredump_disable_backtraces
Expand Down Expand Up @@ -306,7 +301,6 @@ selections:
- no_empty_passwords_etc_shadow
- no_files_unowned_by_user
- no_host_based_files
- no_tmux_in_shells
- no_user_host_based_files
- package_abrt-addon-ccpp_removed
- package_abrt-addon-kerneloops_removed
Expand All @@ -324,7 +318,6 @@ selections:
- package_libreport-plugin-logger_removed
- package_libreport-plugin-rhtsupport_removed
- package_mailx_installed
- package_mcafeetp_installed
- package_opensc_installed
- package_openssh-server_installed
- package_policycoreutils_installed
Expand All @@ -337,7 +330,6 @@ selections:
- package_sendmail_removed
- package_telnet-server_removed
- package_tftp-server_removed
- package_tmux_installed
- package_tuned_removed
- package_usbguard_installed
- package_vsftpd_removed
Expand Down
8 changes: 0 additions & 8 deletions tests/data/profile_stability/rhel8/stig_gui.profile
Original file line number Diff line number Diff line change
Expand Up @@ -90,7 +90,6 @@ selections:
- accounts_user_interactive_home_directory_exists
- accounts_users_home_files_groupownership
- accounts_users_home_files_permissions
- agent_mfetpd_running
- aide_build_database
- aide_check_audit_tools
- aide_scan_notification
Expand Down Expand Up @@ -180,7 +179,6 @@ selections:
- chronyd_server_directive
- chronyd_specify_remote_server
- clean_components_post_updating
- configure_bashrc_tmux
- configure_bind_crypto_policy
- configure_crypto_policy
- configure_firewalld_ports
Expand All @@ -190,9 +188,6 @@ selections:
- configure_openssl_crypto_policy
- configure_openssl_tls_crypto_policy
- configure_ssh_crypto_policy
- configure_tmux_lock_after_time
- configure_tmux_lock_command
- configure_tmux_lock_keybinding
- configure_usbguard_auditbackend
- configured_firewalld_default_deny
- coredump_disable_backtraces
Expand Down Expand Up @@ -316,7 +311,6 @@ selections:
- no_empty_passwords_etc_shadow
- no_files_unowned_by_user
- no_host_based_files
- no_tmux_in_shells
- no_user_host_based_files
- package_abrt-addon-ccpp_removed
- package_abrt-addon-kerneloops_removed
Expand All @@ -333,7 +327,6 @@ selections:
- package_krb5-workstation_removed
- package_libreport-plugin-logger_removed
- package_mailx_installed
- package_mcafeetp_installed
- package_opensc_installed
- package_openssh-server_installed
- package_policycoreutils_installed
Expand All @@ -346,7 +339,6 @@ selections:
- package_sendmail_removed
- package_telnet-server_removed
- package_tftp-server_removed
- package_tmux_installed
- package_tuned_removed
- package_usbguard_installed
- package_vsftpd_removed
Expand Down

0 comments on commit ad9a0f5

Please sign in to comment.