RHEL Engineering is moving the tracking of its product development work on RHEL 6 through RHEL 9 to Red Hat Jira (issues.redhat.com). If you're a Red Hat customer, please continue to file support cases via the Red Hat customer portal. If you're not, please head to the "RHEL project" in Red Hat Jira and file new tickets here. Individual Bugzilla bugs in the statuses "NEW", "ASSIGNED", and "POST" are being migrated throughout September 2023. Bugs of Red Hat partners with an assigned Engineering Partner Manager (EPM) are migrated in late September as per pre-agreed dates. Bugs against components "kernel", "kernel-rt", and "kpatch" are only migrated if still in "NEW" or "ASSIGNED". If you cannot log in to RH Jira, please consult article #7032570. That failing, please send an e-mail to the RH Jira admins at rh-issues@redhat.com to troubleshoot your issue as a user management inquiry. The email creates a ServiceNow ticket with Red Hat. Individual Bugzilla bugs that are migrated will be moved to status "CLOSED", resolution "MIGRATED", and set with "MigratedToJIRA" in "Keywords". The link to the successor Jira issue will be found under "Links", have a little "two-footprint" icon next to it, and direct you to the "RHEL project" in Red Hat Jira (issue links are of type "https://issues.redhat.com/browse/RHEL-XXXX", where "X" is a digit). This same link will be available in a blue banner at the top of the page informing you that that bug has been migrated.
Bug 2116474 - DISA stig security profile creates botched network file
Summary: DISA stig security profile creates botched network file
Keywords:
Status: CLOSED ERRATA
Alias: None
Deadline: 2022-10-31
Product: Red Hat Enterprise Linux 8
Classification: Red Hat
Component: scap-security-guide
Version: 8.6
Hardware: Unspecified
OS: Unspecified
low
low
Target Milestone: rc
: ---
Assignee: Marcus Burghardt
QA Contact: Jiri Jaburek
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2022-08-08 15:10 UTC by cweather
Modified: 2023-05-16 10:04 UTC (History)
9 users (show)

Fixed In Version: scap-security-guide-0.1.63-5.el8
Doc Type: No Doc Update
Doc Text:
Clone Of:
Environment:
Last Closed: 2023-05-16 08:39:27 UTC
Type: Bug
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Issue Tracker RHELPLAN-130513 0 None None None 2022-08-08 15:24:01 UTC
Red Hat Product Errata RHBA-2023:2869 0 None None None 2023-05-16 08:40:27 UTC

Description cweather 2022-08-08 15:10:16 UTC
Description of problem:
A STIG install with multiple network interfaces causes a file in /etc/sysconfig/network-scripts to be created with linefeeds in the file name.

Version-Release number of selected component (if applicable):
CCE-84300-3
RHEL 8.6

Actual results:
ls /etc/sysconfig/network-scripts

ifcfg-eno1  'ifcfg-eno1'$'\n''eno2'$'\n''eno3'$'\n''eno4'   ifcfg-eno2   ifcfg-eno3   ifcfg-eno4

---------------

cat 'ifcfg-eno1'$'\n''eno2'$'\n''eno3'$'\n''eno4'

eno2
eno3
eno4
ZONE=public

Expected results:
Not containing an entry with linefeeds in the name

$ cat ifcfg-eno1
# Generated by parse-kickstart
TYPE=Ethernet
DEVICE=eno1
UUID=bce7cd1b-4813-4d3c-bbaa-a0ec585aea08
ONBOOT=yes
IPADDR=10.166.107.251
NETMASK=255.255.255.192
GATEWAY=10.166.107.193
IPV6INIT=yes
DNS1=10.166.107.234
DNS2=10.166.123.234
PROXY_METHOD=none
BROWSER_ONLY=no
PREFIX=26
DEFROUTE=yes
IPV4_FAILURE_FATAL=no
IPV6_AUTOCONF=yes
IPV6_DEFROUTE=yes
IPV6_FAILURE_FATAL=no
NAME="System eno1"

Additional info:

Since this machine is a fresh reinstall on an isolated network, it does not have its subscription certificate installed yet.

Comment 5 Marcus Burghardt 2022-10-31 12:18:58 UTC
The fix is already merged in Upstream:
https://github.com/ComplianceAsCode/content/pull/9712

Comment 21 errata-xmlrpc 2023-05-16 08:39:27 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (scap-security-guide bug fix and enhancement update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHBA-2023:2869


Note You need to log in before you can comment on or make changes to this bug.