Advertisement
Guest User

oscap docker container debian8

a guest
Oct 16th, 2019
245
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 5.94 KB | None | 0 0
  1. sudo oscap-docker container debian8 xccdf eval --profile standard --results rs.arf --report rs.html ./content/build/ssg-debian8-ds.xml
  2. Docker container debian8 ready to be scanned !
  3. Title Ensure the audit Subsystem is Installed
  4. Rule xccdf_org.ssgproject.content_rule_package_audit_installed
  5. Result notapplicable
  6.  
  7. Title Enable auditd Service
  8. Rule xccdf_org.ssgproject.content_rule_service_auditd_enabled
  9. Result notapplicable
  10.  
  11. Title Ensure /var Located On Separate Partition
  12. Rule xccdf_org.ssgproject.content_rule_partition_for_var
  13. Result notapplicable
  14.  
  15. Title Ensure /tmp Located On Separate Partition
  16. Rule xccdf_org.ssgproject.content_rule_partition_for_tmp
  17. Result notapplicable
  18.  
  19. Title Ensure /home Located On Separate Partition
  20. Rule xccdf_org.ssgproject.content_rule_partition_for_home
  21. Result notapplicable
  22.  
  23. Title Ensure /var/log Located On Separate Partition
  24. Rule xccdf_org.ssgproject.content_rule_partition_for_var_log
  25. Result notapplicable
  26.  
  27. Title Ensure /var/log/audit Located On Separate Partition
  28. Rule xccdf_org.ssgproject.content_rule_partition_for_var_log_audit
  29. Result notapplicable
  30.  
  31. Title Ensure Logrotate Runs Periodically
  32. Rule xccdf_org.ssgproject.content_rule_ensure_logrotate_activated
  33. Result notapplicable
  34.  
  35. Title Ensure System Log Files Have Correct Permissions
  36. Rule xccdf_org.ssgproject.content_rule_rsyslog_files_permissions
  37. Result notapplicable
  38.  
  39. Title Ensure Log Files Are Owned By Appropriate Group
  40. Rule xccdf_org.ssgproject.content_rule_rsyslog_files_groupownership
  41. Result notapplicable
  42.  
  43. Title Ensure Log Files Are Owned By Appropriate User
  44. Rule xccdf_org.ssgproject.content_rule_rsyslog_files_ownership
  45. Result notapplicable
  46.  
  47. Title Ensure rsyslog is Installed
  48. Rule xccdf_org.ssgproject.content_rule_package_rsyslog_installed
  49. Result notapplicable
  50.  
  51. Title Enable rsyslog Service
  52. Rule xccdf_org.ssgproject.content_rule_service_rsyslog_enabled
  53. Result notapplicable
  54.  
  55. Title Enable Randomized Layout of Virtual Address Space
  56. Rule xccdf_org.ssgproject.content_rule_sysctl_kernel_randomize_va_space
  57. Result notapplicable
  58.  
  59. Title Disable Core Dumps for SUID programs
  60. Rule xccdf_org.ssgproject.content_rule_sysctl_fs_suid_dumpable
  61. Result notapplicable
  62.  
  63. Title Verify Permissions on shadow File
  64. Rule xccdf_org.ssgproject.content_rule_file_permissions_etc_shadow
  65. Result pass
  66.  
  67. Title Verify User Who Owns passwd File
  68. Rule xccdf_org.ssgproject.content_rule_file_owner_etc_passwd
  69. Result pass
  70.  
  71. Title Verify User Who Owns shadow File
  72. Rule xccdf_org.ssgproject.content_rule_file_owner_etc_shadow
  73. Result pass
  74.  
  75. Title Verify Group Who Owns shadow File
  76. Rule xccdf_org.ssgproject.content_rule_file_groupowner_etc_shadow
  77. Result pass
  78.  
  79. Title Verify User Who Owns gshadow File
  80. Rule xccdf_org.ssgproject.content_rule_file_owner_etc_gshadow
  81. Result pass
  82.  
  83. Title Verify Group Who Owns gshadow File
  84. Rule xccdf_org.ssgproject.content_rule_file_groupowner_etc_gshadow
  85. Result pass
  86.  
  87. Title Verify User Who Owns group File
  88. Rule xccdf_org.ssgproject.content_rule_file_owner_etc_group
  89. Result pass
  90.  
  91. Title Verify Permissions on group File
  92. Rule xccdf_org.ssgproject.content_rule_file_permissions_etc_group
  93. Result pass
  94.  
  95. Title Verify Group Who Owns passwd File
  96. Rule xccdf_org.ssgproject.content_rule_file_groupowner_etc_passwd
  97. Result pass
  98.  
  99. Title Verify Permissions on gshadow File
  100. Rule xccdf_org.ssgproject.content_rule_file_permissions_etc_gshadow
  101. Result pass
  102.  
  103. Title Verify Permissions on passwd File
  104. Rule xccdf_org.ssgproject.content_rule_file_permissions_etc_passwd
  105. Result pass
  106.  
  107. Title Verify Group Who Owns group File
  108. Rule xccdf_org.ssgproject.content_rule_file_groupowner_etc_group
  109. Result pass
  110.  
  111. Title Enable Kernel Parameter to Enforce DAC on Hardlinks
  112. Rule xccdf_org.ssgproject.content_rule_sysctl_fs_protected_hardlinks
  113. Result fail
  114.  
  115. Title Verify that local System.map file (if exists) is readable only by root
  116. Rule xccdf_org.ssgproject.content_rule_file_permissions_systemmap
  117. Result fail
  118.  
  119. Title Enable Kernel Parameter to Enforce DAC on Symlinks
  120. Rule xccdf_org.ssgproject.content_rule_sysctl_fs_protected_symlinks
  121. Result fail
  122.  
  123. Title Uninstall the ssl compliant telnet server
  124. Rule xccdf_org.ssgproject.content_rule_package_telnetd-ssl_removed
  125. Result pass
  126.  
  127. Title Uninstall the inet-based telnet server
  128. Rule xccdf_org.ssgproject.content_rule_package_inetutils-telnetd_removed
  129. Result pass
  130.  
  131. Title Uninstall the telnet server
  132. Rule xccdf_org.ssgproject.content_rule_package_telnetd_removed
  133. Result pass
  134.  
  135. Title Uninstall the nis package
  136. Rule xccdf_org.ssgproject.content_rule_package_nis_removed
  137. Result pass
  138.  
  139. Title Uninstall the ntpdate package
  140. Rule xccdf_org.ssgproject.content_rule_package_ntpdate_removed
  141. Result pass
  142.  
  143. Title Set SSH Idle Timeout Interval
  144. Rule xccdf_org.ssgproject.content_rule_sshd_set_idle_timeout
  145. Result notapplicable
  146.  
  147. Title Set SSH Client Alive Max Count
  148. Rule xccdf_org.ssgproject.content_rule_sshd_set_keepalive
  149. Result notapplicable
  150.  
  151. Title Allow Only SSH Protocol 2
  152. Rule xccdf_org.ssgproject.content_rule_sshd_allow_only_protocol2
  153. Result notapplicable
  154.  
  155. Title Disable SSH Root Login
  156. Rule xccdf_org.ssgproject.content_rule_sshd_disable_root_login
  157. Result notapplicable
  158.  
  159. Title Disable SSH Access via Empty Passwords
  160. Rule xccdf_org.ssgproject.content_rule_sshd_disable_empty_passwords
  161. Result notapplicable
  162.  
  163. Title Install the cron service
  164. Rule xccdf_org.ssgproject.content_rule_package_cron_installed
  165. Result notapplicable
  166.  
  167. Title Enable cron Service
  168. Rule xccdf_org.ssgproject.content_rule_service_cron_enabled
  169. Result notapplicable
  170.  
  171. Title Install the ntp service
  172. Rule xccdf_org.ssgproject.content_rule_package_ntp_installed
  173. Result notapplicable
  174.  
  175. Title Enable the NTP Daemon
  176. Rule xccdf_org.ssgproject.content_rule_service_ntp_enabled
  177. Result notapplicable
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement