Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CIS 5.2.3.4 audit date and time fails in the CIS Assessor after remediation #11885

Open
4 tasks
Mackemania opened this issue Apr 25, 2024 · 0 comments
Open
4 tasks

Comments

@Mackemania
Copy link
Contributor

Description of problem:

After applying remediation for CIS 5.2.3.4 "Ensure events that modify date and time information are collected" it still fails in the CIS Security Assessor. This is probably due to the filter -F a0=0x0 as it is not specified in the CIS Benchmark.

Details:

This content is not aligned with content from CIS Security

The misalignment affects these profiles:

  • RHEL 8 CIS Server Level 2

The misalignment affects these rules:

  • audit_rules_time_clock_settime

Outcome:

  • This project's content can be improved:
    • Check needs to be improved.
    • Remediation needs to be improved.
  • The external content's check is faulty - the other party needs to be notified, they have work to do.

SCAP Security Guide Version:

0.1.72

External Content's Version:

CIS Red Hat Enterprise Linux 8 Benchmark v3.0.0

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant