Commit Graph

451 Commits

Author SHA1 Message Date
Samson-W 2d3d7f0e4f Add Uninstall iptables description to how_to_migrating_from_iptables_to_nftables_in_debian10.md 2019-07-19 02:27:13 +08:00
Samson-W 007c10ed90 Update format for how_to_migrating_from_iptables_to_nftables_in_debian10.md 2019-07-19 02:23:28 +08:00
Samson-W 64a6d8209c Update how_to_persistent_nft_rules_with_debian_10.mkd. 2019-07-19 02:20:24 +08:00
Samson-W 8145299c32 Add doc how_to_persistent_nft_rules_with_debian_10.mkd 2019-07-18 16:54:56 +08:00
Samson-W ec2c6c234a Add nftables plugin script. 2019-07-18 16:33:24 +08:00
Samson-W 3ecae343f4 Update nftables.conf: Add example when there are multiple net interface. 2019-07-17 17:12:44 +08:00
Samson-W c71dc9a977 Add nftable ruleset config. 2019-07-17 16:54:40 +08:00
Samson-W 354d1a4df6 Update how_to_migrating_from_iptables_to_nftables_in_debian10.md 2019-07-12 17:55:24 +08:00
Samson-W 1503bb4ffe Add doc:how_to_migrating_from_iptables_to_nftables_in_debian10.md 2019-07-12 17:53:04 +08:00
Samson.W d2d92d1ed2
Merge pull request #7 from hardenedlinux/harbian-audit-deepin
Modify is_debian_10 function.
2019-07-07 17:22:50 +08:00
Samson.W c8703e9581
Merge pull request #6 from hardenedlinux/harbian-audit-deepin
Add readme-CN doc to harbian-audit-deepin branch.
2019-07-07 17:19:00 +08:00
Samson-W 08e2cf2867 Modify is_debian_10 function. 2019-07-07 17:16:27 +08:00
Samson-W ac602f7222 Add readme-CN doc to harbian-audit-deepin branch. 2019-07-02 16:36:25 +08:00
Samson-W eea44e5124 Optimizational function for 8.3.3 8.3.6 2019-05-22 01:36:37 +08:00
Samson-W 25c083a731 Fix some bugs for 8.2.4 2019-05-21 17:45:51 +08:00
Samson-W 3717ab1550 Fix a bug for 8.3.1 2019-05-21 15:54:00 +08:00
Samson-W 70b95bd177 Fix some bugs. 2019-05-21 12:39:45 +08:00
Samson-W c591c3f601 Merge branch 'master' of github.com:hardenedlinux/harbian-audit 2019-05-21 11:46:46 +08:00
Samson-W cfd14ce818 Fix some bugs. 2019-05-21 11:43:16 +08:00
Samson-W 4508b5b23e Update README and add STIG benchmark dir. 2019-05-20 17:56:32 +08:00
Samson-W 7305b2c770 Add 8.1.28~8.1.31 description to Benchmark. 2019-05-20 04:49:54 +08:00
Samson-W e3a7b267d5 Apply check_audit_is_immutable_mode method for auditd rules check item. 2019-05-18 04:53:05 +08:00
Samson-W 8856f64d16 Add check_audit_is_immutable_mode method in lib/utils.sh and apply the method for 8.1.4 2019-05-18 04:36:55 +08:00
Samson-W 0bd15205e9 Add auditd rules for 8.1.29 8.1.30 8.1.31 base stig-Ubuntu_16-04_LTS. 2019-05-18 04:00:18 +08:00
Samson-W 08a0db4561 Add audit and apply methods for 8.1.28. 2019-05-17 17:28:41 +08:00
Samson-W fa964bc586 Add auditd rules for 8.1.7 8.1.17 8.1.19 base stig-Ubuntu_16-04_LTS. 2019-05-17 17:10:58 +08:00
Samson-W 8d3737fa43 Add auditd rules for chfn in 8.1.22 base stig-Ubuntu_16-04_LTS. 2019-05-17 15:03:12 +08:00
Samson-W 9d886d7bf9 1, Add check rounds of pam_unix for 9.2.13 base stig-Ubuntu_16-04_LTS.
2,Fix a bug: when the configured values have different lengths, the reassignment is incorrect.
2019-05-16 17:40:40 +08:00
Samson-W 1d595f787c Merge branch 'master' of github.com:hardenedlinux/harbian-audit 2019-05-16 14:45:35 +08:00
Samson-W c4b9847694 Fix a bug for 9.2.15 and delete the debug method in lib/utils.sh 2019-05-16 14:45:12 +08:00
Samson-W ac30f6afbe Update README.md 2019-05-15 16:52:53 +08:00
Samson-W 471a3a0d62 Update harbian_audit_Debian_9_Benchmark_v0.1.mkd 2019-05-14 18:24:26 +08:00
Samson-W b762376882 Fix a bug for 8.2.5: when syslog-ng has installed, pass this check item. 2019-05-14 17:48:49 +08:00
Samson-W efb9efafdc Add audit and apply methods for 12.5 12.6 12.12 12.13 2019-05-14 14:24:15 +08:00
Samson-W c50234b965 Fix a bug for default auditd.conf: The NOLOG option to log_format is deprecated. Please use the write_logs option. 2019-05-14 11:44:24 +08:00
Samson-W 39da6d480a Add audit and apply methods for 12.4: Ensure permissions on /etc/gshadow are configured 2019-05-14 04:07:26 +08:00
Samson-W a29f621ea7 Combine the functions of 12.4 to 12.1, 12.5 to 12.2, 12.6 to 12.3. 2019-05-14 04:05:04 +08:00
Samson-W 22002609f4 Rename file name of 9.5 2019-05-14 03:46:07 +08:00
Samson-W b629896e82 Add check ownership method for 12.1 2019-05-14 03:40:20 +08:00
Samson-W a1f02aaabf Reorder check items. 2019-05-13 17:34:34 +08:00
Samson-W 0e9f690966 Delete unimplemented item 10.5, which is implemented by 10.1.5. 2019-05-13 17:23:30 +08:00
Samson-W 56b3db72b0 Add audit and apply methods for 10.1.5: Ensure inactive password lock is 30 days or less. 2019-05-13 17:14:37 +08:00
Samson-W 0de7b1d404 Remove 10.1.5 and add runtime check method to 10.1.2: for min password lifetime. 2019-05-12 05:13:07 +08:00
Samson-W cf7c0cae75 Remove 10.1.6 and add runtime check method to 10.1.1: for max password lifetime. 2019-05-10 17:32:39 +08:00
Samson-W 0c676832d1 Rename and reorder number for pam module check. 2019-05-10 15:49:17 +08:00
Samson-W e35e51602a Rename 9.3.27 check script name. 2019-05-09 18:34:16 +08:00
Samson-W 0dcaecc466 Add audit and apply methods for 9.3.27: Ensure SSH access is limited. 2019-05-09 18:32:27 +08:00
Samson-W 4893491e16 Add audit and apply methods for 9.3.26: Ensure SSH LoginGraceTime is set to one minute or less 2019-05-09 17:07:34 +08:00
Samson-W 175fae40d7 Modify ClientAliveInterval to 300 by new benchmark doc. 2019-05-09 15:34:20 +08:00
Samson-W 9c93e6955a Add check ownership methods for 9.3.23 2019-05-09 15:07:49 +08:00