Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- sudo oscap-docker container debian8 xccdf eval --profile standard --results rs.arf --report rs.html ./content/build/ssg-debian8-ds.xml
- Docker container debian8 ready to be scanned !
- Title Ensure the audit Subsystem is Installed
- Rule xccdf_org.ssgproject.content_rule_package_audit_installed
- Result notapplicable
- Title Enable auditd Service
- Rule xccdf_org.ssgproject.content_rule_service_auditd_enabled
- Result notapplicable
- Title Ensure /var Located On Separate Partition
- Rule xccdf_org.ssgproject.content_rule_partition_for_var
- Result notapplicable
- Title Ensure /tmp Located On Separate Partition
- Rule xccdf_org.ssgproject.content_rule_partition_for_tmp
- Result notapplicable
- Title Ensure /home Located On Separate Partition
- Rule xccdf_org.ssgproject.content_rule_partition_for_home
- Result notapplicable
- Title Ensure /var/log Located On Separate Partition
- Rule xccdf_org.ssgproject.content_rule_partition_for_var_log
- Result notapplicable
- Title Ensure /var/log/audit Located On Separate Partition
- Rule xccdf_org.ssgproject.content_rule_partition_for_var_log_audit
- Result notapplicable
- Title Ensure Logrotate Runs Periodically
- Rule xccdf_org.ssgproject.content_rule_ensure_logrotate_activated
- Result notapplicable
- Title Ensure System Log Files Have Correct Permissions
- Rule xccdf_org.ssgproject.content_rule_rsyslog_files_permissions
- Result notapplicable
- Title Ensure Log Files Are Owned By Appropriate Group
- Rule xccdf_org.ssgproject.content_rule_rsyslog_files_groupownership
- Result notapplicable
- Title Ensure Log Files Are Owned By Appropriate User
- Rule xccdf_org.ssgproject.content_rule_rsyslog_files_ownership
- Result notapplicable
- Title Ensure rsyslog is Installed
- Rule xccdf_org.ssgproject.content_rule_package_rsyslog_installed
- Result notapplicable
- Title Enable rsyslog Service
- Rule xccdf_org.ssgproject.content_rule_service_rsyslog_enabled
- Result notapplicable
- Title Enable Randomized Layout of Virtual Address Space
- Rule xccdf_org.ssgproject.content_rule_sysctl_kernel_randomize_va_space
- Result notapplicable
- Title Disable Core Dumps for SUID programs
- Rule xccdf_org.ssgproject.content_rule_sysctl_fs_suid_dumpable
- Result notapplicable
- Title Verify Permissions on shadow File
- Rule xccdf_org.ssgproject.content_rule_file_permissions_etc_shadow
- Result pass
- Title Verify User Who Owns passwd File
- Rule xccdf_org.ssgproject.content_rule_file_owner_etc_passwd
- Result pass
- Title Verify User Who Owns shadow File
- Rule xccdf_org.ssgproject.content_rule_file_owner_etc_shadow
- Result pass
- Title Verify Group Who Owns shadow File
- Rule xccdf_org.ssgproject.content_rule_file_groupowner_etc_shadow
- Result pass
- Title Verify User Who Owns gshadow File
- Rule xccdf_org.ssgproject.content_rule_file_owner_etc_gshadow
- Result pass
- Title Verify Group Who Owns gshadow File
- Rule xccdf_org.ssgproject.content_rule_file_groupowner_etc_gshadow
- Result pass
- Title Verify User Who Owns group File
- Rule xccdf_org.ssgproject.content_rule_file_owner_etc_group
- Result pass
- Title Verify Permissions on group File
- Rule xccdf_org.ssgproject.content_rule_file_permissions_etc_group
- Result pass
- Title Verify Group Who Owns passwd File
- Rule xccdf_org.ssgproject.content_rule_file_groupowner_etc_passwd
- Result pass
- Title Verify Permissions on gshadow File
- Rule xccdf_org.ssgproject.content_rule_file_permissions_etc_gshadow
- Result pass
- Title Verify Permissions on passwd File
- Rule xccdf_org.ssgproject.content_rule_file_permissions_etc_passwd
- Result pass
- Title Verify Group Who Owns group File
- Rule xccdf_org.ssgproject.content_rule_file_groupowner_etc_group
- Result pass
- Title Enable Kernel Parameter to Enforce DAC on Hardlinks
- Rule xccdf_org.ssgproject.content_rule_sysctl_fs_protected_hardlinks
- Result fail
- Title Verify that local System.map file (if exists) is readable only by root
- Rule xccdf_org.ssgproject.content_rule_file_permissions_systemmap
- Result fail
- Title Enable Kernel Parameter to Enforce DAC on Symlinks
- Rule xccdf_org.ssgproject.content_rule_sysctl_fs_protected_symlinks
- Result fail
- Title Uninstall the ssl compliant telnet server
- Rule xccdf_org.ssgproject.content_rule_package_telnetd-ssl_removed
- Result pass
- Title Uninstall the inet-based telnet server
- Rule xccdf_org.ssgproject.content_rule_package_inetutils-telnetd_removed
- Result pass
- Title Uninstall the telnet server
- Rule xccdf_org.ssgproject.content_rule_package_telnetd_removed
- Result pass
- Title Uninstall the nis package
- Rule xccdf_org.ssgproject.content_rule_package_nis_removed
- Result pass
- Title Uninstall the ntpdate package
- Rule xccdf_org.ssgproject.content_rule_package_ntpdate_removed
- Result pass
- Title Set SSH Idle Timeout Interval
- Rule xccdf_org.ssgproject.content_rule_sshd_set_idle_timeout
- Result notapplicable
- Title Set SSH Client Alive Max Count
- Rule xccdf_org.ssgproject.content_rule_sshd_set_keepalive
- Result notapplicable
- Title Allow Only SSH Protocol 2
- Rule xccdf_org.ssgproject.content_rule_sshd_allow_only_protocol2
- Result notapplicable
- Title Disable SSH Root Login
- Rule xccdf_org.ssgproject.content_rule_sshd_disable_root_login
- Result notapplicable
- Title Disable SSH Access via Empty Passwords
- Rule xccdf_org.ssgproject.content_rule_sshd_disable_empty_passwords
- Result notapplicable
- Title Install the cron service
- Rule xccdf_org.ssgproject.content_rule_package_cron_installed
- Result notapplicable
- Title Enable cron Service
- Rule xccdf_org.ssgproject.content_rule_service_cron_enabled
- Result notapplicable
- Title Install the ntp service
- Rule xccdf_org.ssgproject.content_rule_package_ntp_installed
- Result notapplicable
- Title Enable the NTP Daemon
- Rule xccdf_org.ssgproject.content_rule_service_ntp_enabled
- Result notapplicable
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement