Bug 2045341
| Summary: | Add ANSSI profiles to RHEL9 | ||
|---|---|---|---|
| Product: | Red Hat Enterprise Linux 9 | Reporter: | Gabriel Gaspar Becker <ggasparb> |
| Component: | scap-security-guide | Assignee: | Watson Yuuma Sato <wsato> |
| Status: | CLOSED ERRATA | QA Contact: | Milan Lysonek <mlysonek> |
| Severity: | unspecified | Docs Contact: | Jan Fiala <jafiala> |
| Priority: | unspecified | ||
| Version: | 9.0 | CC: | ggasparb, jafiala, mhaicman, mlysonek, openscap-maint, vpolasek |
| Target Milestone: | rc | Keywords: | AutoVerified, Triaged |
| Target Release: | --- | Flags: | pm-rhel:
mirror+
|
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | scap-security-guide-0.1.60-1.el9 | Doc Type: | Enhancement |
| Doc Text: |
.SCAP Security Guide profiles supported in RHEL 9.0
With the SCAP Security Guide compliance profiles included in RHEL 9.0, you can harden the system to the recommendations from the issuing organizations. As a result, you can configure and automate compliance of your RHEL 9 systems according to your required hardening level by using the associated remediations and SCAP profiles.
[options="header"]
|====
|Profile name|Profile ID|Policy version
|French National Agency for the Security of Information Systems (ANSSI) BP-028 Enhanced Level|`xccdf_org.ssgproject.content_profile_**anssi_bp28_enhanced**`|1.2
|French National Agency for the Security of Information Systems (ANSSI) BP-028 High Level|`xccdf_org.ssgproject.content_profile_**anssi_bp28_high**`|1.2
|French National Agency for the Security of Information Systems (ANSSI) BP-028 Intermediary Level|`xccdf_org.ssgproject.content_profile_**anssi_bp28_intermediary**`|1.2
|French National Agency for the Security of Information Systems (ANSSI) BP-028 Minimal Level|`xccdf_org.ssgproject.content_profile_**anssi_bp28_minimal**`|1.2
|[DRAFT] CIS Red Hat Enterprise Linux 9 Benchmark for Level 2 - Server|`xccdf_org.ssgproject.content_profile_**cis**`|DRAFTfootnoteref:[cis,CIS has not yet published an official benchmark for {ProductShortName} 9]
|[DRAFT] CIS Red Hat Enterprise Linux 9 Benchmark for Level 1 - Server|`xccdf_org.ssgproject.content_profile_**cis_server_l1**`|DRAFTfootnoteref:[cis]
|[DRAFT] CIS Red Hat Enterprise Linux 9 Benchmark for Level 1 - Workstation|`xccdf_org.ssgproject.content_profile_**cis_workstation_l1**`|DRAFTfootnoteref:[cis]
|[DRAFT] CIS Red Hat Enterprise Linux 9 Benchmark for Level 2 - Workstation|`xccdf_org.ssgproject.content_profile_**cis_workstation_l2**`|DRAFTfootnoteref:[cis]
|[DRAFT] Unclassified Information in Non-federal Information Systems and Organizations (NIST 800-171)|`xccdf_org.ssgproject.content_profile_**cui**`|r2
|Australian Cyber Security Centre (ACSC) Essential Eight|`xccdf_org.ssgproject.content_profile_**e8**`|not versioned
|Health Insurance Portability and Accountability Act (HIPAA)|`xccdf_org.ssgproject.content_profile_**hipaa**`|not versioned
|Australian Cyber Security Centre (ACSC) ISM Official|`xccdf_org.ssgproject.content_profile_**ism_o**`|not versioned
|[DRAFT] Protection Profile for General Purpose Operating Systems|`xccdf_org.ssgproject.content_profile_**ospp**`|4.2.1
|PCI-DSS v3.2.1 Control Baseline for Red Hat Enterprise Linux 9|`xccdf_org.ssgproject.content_profile_**pci-dss**`|3.2.1
|[DRAFT] DISA STIG for Red Hat Enterprise Linux 9|`xccdf_org.ssgproject.content_profile_**stig**`|DRAFTfootnoteref:[stig,DISA has not yet published an official benchmark for {ProductShortName} 9]
|[DRAFT] DISA STIG with GUI for Red Hat Enterprise Linux 9|`xccdf_org.ssgproject.content_profile_**stig_gui**`|DRAFTfootnoteref:[stig]
|====
WARNING: Automatic remediation might render the system non-functional. Run the remediation in a test environment first.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | 2022-05-17 13:53:40 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
Gabriel Gaspar Becker
2022-01-25 16:28:20 UTC
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (new packages: scap-security-guide), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2022:2610 |