massyn / centos-cis-benchmark Goto Github PK
View Code? Open in Web Editor NEWCIS CentOS Linux 7 Benchmark
License: MIT License
CIS CentOS Linux 7 Benchmark
License: MIT License
Find a way to read the date from chage that can easly be checked if it is in future or not
If sysctl checks out fine, there is no need to check the files too.
Investigate this a bit more -- it may be a manual check
The test appears to be working in reverse, finding a valid test and failing it.
grep -E bug
Module checking is not failing correctly
Test is not testing anything.
Check session vs login...
Tests that include sub folders, like sysctl.d/*.conf may not find it correctly. Review the tests, and update the bash check to an ls
Setting of 300 is ok .. Check the logic of -gt vs -ge
If found in the first one, there's no need to check the remaining paths
Hi Massyn,
It is great how is divided in test cases. Do you know if there is a Centos 8 repository somewhere else in Github. I was not able to find it, but I think there is one somewhere.
Thank you,
Guillermo
Some tests require root access to operate. Instead of failing, they fail silently with error code 0, giving the impression that everything is ok.
While some of the tests can be run without root access, you should always run the script as root, to ensure all the tests are correctly executed.
This issue is to work through the ones that do not fail correctly, and update the script to fail. For this benchmark, it is better to have a false negative than it is to have a false positive.
Fails when there are no files in /etc/sysctl.d/*
FATAL: Module freevxfs not found.
A declarative, efficient, and flexible JavaScript library for building user interfaces.
๐ Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. ๐๐๐
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google โค๏ธ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.