Bug 1815007
| Summary: | Rebase scap-security-guide in Red Hat Enterprise Linux 8.3 to latest upstream version | ||
|---|---|---|---|
| Product: | Red Hat Enterprise Linux 8 | Reporter: | Gabriel Gaspar Becker <ggasparb> |
| Component: | scap-security-guide | Assignee: | Gabriel Gaspar Becker <ggasparb> |
| Status: | CLOSED ERRATA | QA Contact: | Matus Marhefka <mmarhefk> |
| Severity: | medium | Docs Contact: | lmcgarry |
| Priority: | high | ||
| Version: | 8.2 | CC: | ggasparb, jafiala, lmanasko, matyc, mhaicman, mjahoda, vpolasek, wsato |
| Target Milestone: | rc | Keywords: | Rebase, Triaged |
| Target Release: | 8.3 | Flags: | pm-rhel:
mirror+
|
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | scap-security-guide-0.1.50-3.el8 | Doc Type: | Enhancement |
| Doc Text: |
.`scap-security-guide` rebased to 0.1.50
The `scap-security-guide` packages, which contain the latest set of security policies for Linux systems, have been upgraded to version 0.1.50.
This update includes bug fixes and enhancements, most notably:
* Ansible content has been improved: numerous rules contain Ansible remediations for the first time and other rules have been updated to address bug fixes.
* Fixes and improvements to the `scap-security-guide` content for scanning RHEL7 systems, including:
** The `scap-security-guide` packages now provide a profile aligned with the CIS RHEL 7 Benchmark v2.2.0.
Note that the `rpm_verify_permissions` rule in the CIS profile does not work correctly; see the xref:BZ-1843913[`rpm_verify_permissions` fails in the CIS profile] known issue.
** The SCAP Security Guide profiles now correctly disable and mask services that should not be started.
** The `audit_rules_privileged_commands` rule in the `scap-security-guide` packages now works correctly for privileged commands.
** Remediation of the `dconf_gnome_login_banner_text` rule in the `scap-security-guide` packages no longer incorrectly fails.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | 2020-11-04 02:29:53 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
Gabriel Gaspar Becker
2020-03-19 10:09:52 UTC
A new release is out, https://github.com/ComplianceAsCode/content/releases/tag/v0.1.50 Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (scap-security-guide bug fix and enhancement update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2020:4626 |