Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update RHEL 7 CIS Section 1 #11449

Merged
merged 43 commits into from
Jan 19, 2024
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
43 commits
Select commit Hold shift + click to select a range
5e3db44
Update Section 1.1 of RHEL 7 CIS Control
Mab879 Jan 11, 2024
788bb23
Update section for /tmp checks RHEL 7 CIS
Mab879 Jan 11, 2024
b82ea11
Update section for /dev/shm checks RHEL 7 CIS
Mab879 Jan 11, 2024
3f8e875
Update section for /home checks RHEL 7 CIS
Mab879 Jan 11, 2024
3c31379
Update CIS for RHEL 7 /var section
Mab879 Jan 12, 2024
f86054d
RHEL 7 CIS Update /var/tmp section
Mab879 Jan 12, 2024
a82f232
RHEL 7 CIS Update /var/log section
Mab879 Jan 12, 2024
ca64748
Update RHEL 7 CIS /var/log/audit
Mab879 Jan 12, 2024
8ac7cc7
Remove "removable media partitions mount rules from RHEL 7 CIS
Mab879 Jan 12, 2024
10dfe5e
Update Section 1.2 for RHEL 7 CIS
Mab879 Jan 15, 2024
e703489
Update Section 1.3 for RHEL 7 CIS
Mab879 Jan 15, 2024
1a9a85e
Update Section 1.4 for RHEL 7 CIS
Mab879 Jan 15, 2024
dc51a45
Remove NX rule has it is no longer in the RHEL 7 Benchmark
Mab879 Jan 15, 2024
d8bff60
Remove prelink removed rule from RHEL 7 CIS
Mab879 Jan 15, 2024
81a303d
Update section 1.5 RHEL 7 CIS
Mab879 Jan 15, 2024
b53290e
Update section 1.6 RHEL 7 CIS
Mab879 Jan 15, 2024
f154fae
Remove 1.2.5 from the RHEL 7 Benchmark
Mab879 Jan 16, 2024
9dfe172
Remove section 1.9 as it was moved up to 1.2.5
Mab879 Jan 16, 2024
120054a
Update section 1.7 for RHEL 7 CIS Control
Mab879 Jan 16, 2024
a43f1d2
Update mount_option_home_nosuid RHEL 7 CIS references
Mab879 Jan 17, 2024
729e009
Update references for mount_option_var_nodev RHEL 7 CIS
Mab879 Jan 17, 2024
560c81e
Update dconf_gnome_disable_automount references for RHEL 7 CIS
Mab879 Jan 17, 2024
32a85da
Update references on dconf_gnome_screensaver_user_locks for RHEL 7 CIS
Mab879 Jan 17, 2024
4775e63
Update dconf_gnome_disable_automount_open references for RHEL 7 CIS
Mab879 Jan 17, 2024
642ab64
Update references on mount_option_var_log_nosuid for RHEL 7
Mab879 Jan 17, 2024
1e67187
Add RHEL 7 CIS reference to mount_option_var_log_noexec
Mab879 Jan 17, 2024
933a2b4
Add RHEL7 CIS reference to dconf_gnome_disable_autorun
Mab879 Jan 17, 2024
e0cd3aa
Add RHEL 7 CIS reference to 1.1.2.7.4
Mab879 Jan 16, 2024
4ffb3fc
Add RHEL7 CIS reference for mount_option_var_log_nodev
Mab879 Jan 16, 2024
b3062e2
Add selinux_not_disabled to RHEL 7
Mab879 Jan 16, 2024
76f372e
Add RHEL 7 CIS reference to selinux_not_disabled
Mab879 Jan 16, 2024
7671404
Add RHEL 7 CIS references to dconf_gnome_screensaver_idle_delay
Mab879 Jan 16, 2024
6f88d1e
Add RHEL 7 CIS reference mount_option_var_log_audit_nodev
Mab879 Jan 16, 2024
9520958
Add RHEL 7 CIS reference for sysctl_kernel_yama_ptrace_scope
Mab879 Jan 16, 2024
eee826a
Add RHEL 7 CIS reference to mount_option_var_log_audit_nosuid
Mab879 Jan 16, 2024
8d0b15c
Add RHEL 7 CIS reference to mount_option_var_nosuid
Mab879 Jan 16, 2024
0a6702a
Update CIS reference for kernel_module_hfs_disabled
Mab879 Jan 16, 2024
66bd4ec
Update RHEL 7 Section 1 references
Mab879 Jan 17, 2024
ace50a6
fixup! Add RHEL 7 CIS reference to 1.1.2.7.4
Mab879 Jan 17, 2024
b1b5e81
Fix mount_option_home_nosuid references
Mab879 Jan 17, 2024
a1f5550
Fix up section 1.1.1 for RHEL 7 CIS
Mab879 Jan 18, 2024
8476249
Update titles in section 1.1 for RHEL 7 CIS
Mab879 Jan 18, 2024
0eaeec4
fix package_iptables_installed
Mab879 Jan 18, 2024
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
858 changes: 495 additions & 363 deletions controls/cis_rhel7.yml

Large diffs are not rendered by default.

Original file line number Diff line number Diff line change
Expand Up @@ -26,7 +26,7 @@ references:
cis-csc: 12,13,14,15,16,18,3,5
cis@alinux2: 5.2.1
cis@alinux3: 5.2.1
cis@rhel7: 5.3.1
cis@rhel7: 4.2.1
cis@rhel8: 5.2.1
cis@rhel9: 5.2.1
cis@sle12: 5.2.1
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -19,7 +19,7 @@ identifiers:
cce@rhel9: CCE-86127-8

references:
cis@rhel7: 5.3.2
cis@rhel7: 4.2.2
cis@rhel8: 5.2.2
cis@rhel9: 5.2.2

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -26,7 +26,7 @@ references:
cis-csc: 12,13,14,15,16,18,3,5
cis@alinux2: 5.2.1
cis@alinux3: 5.2.1
cis@rhel7: 5.3.1
cis@rhel7: 4.2.1
cis@rhel8: 5.2.1
cis@rhel9: 5.2.1
cis@sle12: 5.2.1
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -17,7 +17,7 @@ identifiers:
cce@rhel9: CCE-86119-5

references:
cis@rhel7: 5.3.2
cis@rhel7: 4.2.2
cis@rhel8: 5.2.2
cis@rhel9: 5.2.2

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -26,7 +26,7 @@ references:
cis-csc: 12,13,14,15,16,18,3,5
cis@alinux2: 5.2.1
cis@alinux3: 5.2.1
cis@rhel7: 5.3.1
cis@rhel7: 4.2.1
cis@rhel8: 5.2.1
cis@rhel9: 5.2.1
cis@sle12: 5.2.1
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -37,7 +37,7 @@ references:
anssi: BP28(R36)
cis-csc: 12,13,14,15,16,18,3,5
cis@alinux2: 5.2.3
cis@rhel7: 5.3.2
cis@rhel7: 4.2.2
cis@rhel8: 5.2.2
cis@rhel9: 5.2.2
cis@sle12: 5.2.2
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -33,7 +33,7 @@ references:
cis-csc: 11,12,14,15,16,18,3,5,9
cis@alinux2: 5.2.9
cis@alinux3: 5.2.9
cis@rhel7: 5.3.9
cis@rhel7: 4.2.9
cis@rhel8: 5.2.8
cis@rhel9: 5.2.8
cis@sle12: 5.2.9
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -34,7 +34,7 @@ references:
cis-csc: 11,12,13,14,15,16,18,3,5,9
cis@alinux2: 5.2.11
cis@alinux3: 5.2.11
cis@rhel7: 5.3.11
cis@rhel7: 4.2.11
cis@rhel8: 5.2.9
cis@rhel9: 5.2.9
cis@sle12: 5.2.11
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -32,7 +32,7 @@ references:
cis-csc: 11,12,14,15,16,18,3,5,9
cis@alinux2: 5.2.8
cis@alinux3: 5.2.8
cis@rhel7: 5.3.8
cis@rhel7: 4.2.8
cis@rhel8: 5.2.11
cis@rhel9: 5.2.11
cis@sle12: 5.2.8
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -31,7 +31,7 @@ references:
cis-csc: 1,11,12,13,14,15,16,18,3,5
cis@alinux2: 5.2.10
cis@alinux3: 5.2.10
cis@rhel7: 5.3.10
cis@rhel7: 4.2.10
cis@rhel8: 5.2.7
cis@rhel9: 5.2.7
cis@sle12: 5.2.10
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -22,7 +22,7 @@ identifiers:

references:
cis@alinux3: 5.2.17
cis@rhel7: 5.3.20
cis@rhel7: 4.2.20
cis@rhel8: 5.2.13
cis@rhel9: 5.2.13
cis@sle12: 5.2.20
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -34,7 +34,7 @@ identifiers:
references:
cis@alinux2: 5.2.6
cis@alinux3: 5.2.6
cis@rhel7: 5.3.6
cis@rhel7: 4.2.6
cis@rhel8: 5.2.12
cis@rhel9: 5.2.12
cis@sle12: 5.2.6
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -29,7 +29,7 @@ references:
cis-csc: 11,3,9
cis@alinux2: 5.2.12
cis@alinux3: 5.2.12
cis@rhel7: 5.3.12
cis@rhel7: 4.2.12
cis@rhel8: 5.2.10
cis@rhel9: 5.2.10
cis@sle12: 5.2.12
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -28,7 +28,7 @@ identifiers:
cce@sle15: CCE-91333-5

references:
cis@rhel7: 5.3.19
cis@rhel7: 4.2.19
cis@rhel8: 5.2.6
cis@rhel9: 5.2.6
cis@sle12: 5.2.19
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -29,7 +29,7 @@ identifiers:

references:
ccn@rhel9: A.11.SEC-RHEL4
cis@rhel7: 5.3.18
cis@rhel7: 4.2.18
cis@rhel8: 5.2.15
cis@rhel9: 5.2.15
cis@ubuntu2004: 5.2.18
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -43,7 +43,7 @@ references:
cis-csc: 1,12,13,14,15,16,18,3,5,7,8
cis@alinux2: 5.2.14
cis@alinux3: 5.2.13
cis@rhel7: 5.3.16
cis@rhel7: 4.2.16
cis@rhel8: 5.2.20
cis@rhel9: 5.2.20
cis@sle12: 5.2.16
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -37,7 +37,7 @@ references:
cis-csc: 1,12,13,14,15,16,18,3,5,7,8
cis@alinux2: 5.2.14
cis@alinux3: 5.2.13
cis@rhel7: 5.3.16
cis@rhel7: 4.2.16
cis@rhel8: 5.2.20
cis@rhel9: 5.2.20
cis@sle12: 5.2.16
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -25,7 +25,7 @@ identifiers:
references:
cis@alinux2: 5.2.15
cis@alinux3: 5.2.14
cis@rhel7: 5.3.17
cis@rhel7: 4.2.17
cis@rhel8: 5.2.19
cis@rhel9: 5.2.19
cis@sle12: 5.2.17
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -30,7 +30,7 @@ identifiers:
references:
cis@alinux2: 5.2.5
cis@alinux3: 5.2.5
cis@rhel7: 5.3.5
cis@rhel7: 4.2.5
cis@rhel8: 5.2.5
cis@rhel9: 5.2.5
cis@sle12: 5.2.5
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -25,7 +25,7 @@ references:
cis@alinux2: 5.2.7
cis@alinux3: 5.2.7
cis@debian11: 9.3.5
cis@rhel7: 5.3.7
cis@rhel7: 4.2.7
cis@rhel8: 5.2.16
cis@rhel9: 5.2.16
cis@sle12: 5.2.7
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -22,7 +22,7 @@ identifiers:
cce@sle15: CCE-91309-5

references:
cis@rhel7: 5.3.22
cis@rhel7: 4.2.22
cis@rhel8: 5.2.18
cis@rhel9: 5.2.18
cis@sle12: 5.2.22
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -28,7 +28,7 @@ identifiers:
cce@sle15: CCE-91308-7

references:
cis@rhel7: 5.3.21
cis@rhel7: 4.2.21
cis@rhel8: 5.2.17
cis@rhel9: 5.2.17
cis@sle12: 5.2.21
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -55,7 +55,7 @@ identifiers:
references:
cis-csc: 1,11,12,14,15,16,18,3,5,6,8,9
cis@alinux2: 5.2.17
cis@rhel7: 5.3.13
cis@rhel7: 4.2.13
cis@sle12: 5.2.13
cis@sle15: 5.2.13
cis@ubuntu2004: 5.2.12
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -49,7 +49,7 @@ identifiers:
references:
cis-csc: 1,12,13,15,16,5,8
cis@alinux2: 5.2.13
cis@rhel7: 5.3.14
cis@rhel7: 4.2.14
cis@sle12: 5.2.14
cis@sle15: 5.2.14
cis@ubuntu2004: 5.2.13
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -24,7 +24,7 @@ identifiers:
cce@sle15: CCE-92626-1

references:
cis@rhel7: 5.3.15
cis@rhel7: 4.2.15
cis@sle12: 5.2.15
cis@sle15: 5.2.15
cis@ubuntu2004: 5.2.14
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -99,7 +99,7 @@ references:
cis-csc: 1,12,15,16
cis@alinux2: 1.7.1.2
cis@alinux3: 1.2.2
cis@rhel7: 1.7.2
cis@rhel7: 1.6.2
cis@rhel8: 1.7.2
cis@rhel9: 1.7.2
cis@sle12: 1.8.1.2
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -58,7 +58,7 @@ identifiers:
references:
ccn@rhel9: A.11.SEC-RHEL4
cis@alinux2: 1.7.1.3
cis@rhel7: 1.7.3
cis@rhel7: 1.6.3
cis@rhel8: 1.7.3
cis@rhel9: 1.7.3
cis@sle12: 1.8.1.3
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -59,7 +59,7 @@ references:
ccn@rhel9: A.11.SEC-RHEL4
cis@alinux2: 1.7.1.1
cis@alinux3: 1.2.1
cis@rhel7: 1.7.1
cis@rhel7: 1.6.1
cis@rhel8: 1.7.1
cis@rhel9: 1.7.1
cis@sle12: 1.8.1.1
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -26,7 +26,7 @@ identifiers:
references:
cis@alinux2: 1.7.1.5
cis@alinux3: 1.2.5
cis@rhel7: 1.7.5
cis@rhel7: 1.6.5
cis@rhel8: 1.7.5
cis@rhel9: 1.7.5
cis@sle12: 1.8.1.5
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -24,7 +24,7 @@ identifiers:
cce@sle15: CCE-91358-2

references:
cis@rhel7: 1.7.6
cis@rhel7: 1.6.6
cis@rhel8: 1.7.6
cis@rhel9: 1.7.6
cis@sle12: 1.8.1.6
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -26,7 +26,7 @@ identifiers:
references:
cis@alinux2: 1.7.1.4
cis@alinux3: 1.2.4
cis@rhel7: 1.7.4
cis@rhel7: 1.6.4
cis@rhel8: 1.7.4
cis@rhel9: 1.7.4
cis@sle12: 1.8.1.4
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -26,7 +26,7 @@ identifiers:
references:
cis@alinux2: 1.7.1.5
cis@alinux3: 1.2.5
cis@rhel7: 1.7.5
cis@rhel7: 1.6.5
cis@rhel8: 1.7.5
cis@rhel9: 1.7.5
cis@sle12: 1.8.1.5
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -24,7 +24,7 @@ identifiers:
cce@sle15: CCE-91359-0

references:
cis@rhel7: 1.7.6
cis@rhel7: 1.6.6
cis@rhel8: 1.7.6
cis@rhel9: 1.7.6
cis@sle12: 1.8.1.6
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -26,7 +26,7 @@ identifiers:
references:
cis@alinux2: 1.7.1.4
cis@alinux3: 1.2.4
cis@rhel7: 1.7.4
cis@rhel7: 1.6.4
cis@rhel8: 1.7.4
cis@rhel9: 1.7.4
cis@sle12: 1.8.1.4
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -26,7 +26,7 @@ identifiers:
references:
cis@alinux2: 1.7.1.5
cis@alinux3: 1.2.5
cis@rhel7: 1.7.5
cis@rhel7: 1.6.5
cis@rhel8: 1.7.5
cis@rhel9: 1.7.5
cis@sle12: 1.8.1.5
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -24,7 +24,7 @@ identifiers:
cce@sle15: CCE-91357-4

references:
cis@rhel7: 1.7.6
cis@rhel7: 1.6.6
cis@rhel8: 1.7.6
cis@rhel9: 1.7.6
cis@sle12: 1.8.1.6
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -26,7 +26,7 @@ identifiers:
references:
cis@alinux2: 1.7.1.4
cis@alinux3: 1.2.4
cis@rhel7: 1.7.4
cis@rhel7: 1.6.4
cis@rhel8: 1.7.4
cis@rhel9: 1.7.4
cis@sle12: 1.8.1.4
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -41,7 +41,7 @@ references:
ccn@rhel9: A.11.SEC-RHEL4
cis-csc: 1,12,15,16
cis@alinux3: 1.8.2
cis@rhel7: 1.8.2
cis@rhel7: 1.7.2
cis@rhel8: 1.8.2
cis@rhel9: 1.8.2
cis@sle12: "1.9"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -45,7 +45,7 @@ references:
ccn@rhel9: A.11.SEC-RHEL4
cis-csc: 1,12,15,16
cis@alinux3: 1.8.2
cis@rhel7: 1.8.2
cis@rhel7: 1.7.2
cis@rhel8: 1.8.2
cis@rhel9: 1.8.2
cis@sle12: "1.10"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -30,7 +30,7 @@ references:
cis-csc: 1,11,12,14,15,16,18,3,5
cis@alinux2: 1.4.2
cis@alinux3: 1.5.3
cis@rhel7: 1.4.3
cis@rhel7: 1.3.3
cis@sle12: 1.5.3
cis@sle15: 1.5.3
cobit5: DSS05.02,DSS05.04,DSS05.05,DSS05.07,DSS05.10,DSS06.03,DSS06.06,DSS06.10
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -31,7 +31,7 @@ references:
cis-csc: 1,11,12,14,15,16,18,3,5
cis@alinux2: 1.4.2
cis@alinux3: 1.5.3
cis@rhel7: 1.4.3
cis@rhel7: 1.3.3
cis@sle12: 1.5.3
cis@sle15: 1.5.3
cobit5: DSS05.02,DSS05.04,DSS05.05,DSS05.07,DSS05.10,DSS06.03,DSS06.06,DSS06.10
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -28,7 +28,7 @@ references:
cis-csc: 12,13,14,15,16,18,3,5
cis@alinux2: 1.4.1
cis@alinux3: 1.5.2
cis@rhel7: 1.4.2
cis@rhel7: 1.3.2
cis@rhel8: 1.3.2
cis@rhel9: 1.4.2
cis@sle12: 1.5.2
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -24,7 +24,7 @@ identifiers:
references:
ccn@rhel9: A.6.SEC-RHEL2
cis-csc: 12,13,14,15,16,18,3,5
cis@rhel7: 1.4.2
cis@rhel7: 1.3.2
cis@rhel8: 1.3.2
cis@rhel9: 1.4.2
cjis: 5.5.2.2
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -26,7 +26,7 @@ references:
cis-csc: 12,13,14,15,16,18,3,5
cis@alinux2: 1.4.1
cis@alinux3: 1.5.2
cis@rhel7: 1.4.2
cis@rhel7: 1.3.2
cis@rhel8: 1.3.2
cis@rhel9: 1.4.2
cis@sle12: 1.5.2
Expand Down
Loading
Loading