325 Commits

Author SHA1 Message Date
Samson-W
e8459b26e0 Update picture for doc. 2019-04-16 18:12:17 +08:00
Samson-W
5867efd5d6 Add audit and apply methods for ipv6 firewall rules. 2019-04-16 18:09:05 +08:00
Samson-W
3a572da9aa Merge branch 'master' of github.com:hardenedlinux/harbian-audit 2019-04-16 15:45:56 +08:00
Samson-W
b582708d5f Update doc: how_to_creating_and_making_an_AMI_public.mkd and how_to_creating_and_making_a_QEMU_img.mkd. 2019-04-16 15:43:55 +08:00
Samson.W
e364dc4145
Update how_to_creating_and_making_a_QEMU_img.mkd
Update reference doc link.
2019-04-16 15:26:01 +08:00
Samson.W
92be703575
Update how_to_use_harbian_audit_complianced_Debian_9.mkd
Modify reference doc link.
2019-04-16 15:21:23 +08:00
Samson-W
49f7a90a54 Update iptables rules for base set. 2019-04-16 15:10:17 +08:00
Samson-W
1c9ebf578f Fix a bug for 7.7.6 2019-04-16 15:03:13 +08:00
Samson-W
9a238af3e8 Modify some description for 7.7.6 2019-04-16 14:39:31 +08:00
Samson-W
f23c662b7c Fix bug for 8.2.4: when create file if dir is not, create file is fail. 2019-04-16 03:57:53 +08:00
Samson-W
449c818e22 Update iptables rule file path. 2019-04-16 02:41:26 +08:00
Samson-W
7c178d141b Update link of use case. 2019-04-15 15:13:53 +08:00
Samson-W
40246ee3b7 Add a method when the system architecture is 32-bit for some audit check. 2019-04-15 01:45:32 +08:00
Samson-W
8b59848f42 Add a method when the system architecture is 32-bit for 8.1.10. 2019-04-14 08:24:03 -04:00
Samson-W
568d82253b Add method for check machine architecture and modify 8.1.4 2019-04-14 08:09:04 -04:00
Samson-W
822159dce1 Modify for lib and 8.1.2 2019-04-14 05:56:05 -04:00
Samson-W
e2313bd1ff Implement audit and apply methods for 7.6 disable_wireless. 2019-04-12 04:07:44 -04:00
Samson-W
b2fd0dd674 1.Add audit and apply methods for 7.7.7: Ensure outbound and established connections are configured.
2.Fix some bug for lib and 7.7.6
2019-04-12 00:27:50 -04:00
Samson-W
7d0de8fdfe Add a method for check debian version is buster/10. 2019-04-11 14:57:14 -04:00
Samson-W
d31530f2a6 Add methods for check outbound and input is set to accept. 2019-04-11 14:50:30 -04:00
Samson-W
ee9f4dfff4 Add audit and apply methods for 7.7.6 Ensure firewall rules exist for all open ports 2019-04-10 02:40:57 +08:00
Samson-W
8a873e2652 Fix bug for 7.7.4. 2019-04-09 17:18:17 +08:00
Samson-W
f9c5a21dff Fix some bug for 7.7.4 and 7.7.5 2019-04-09 04:59:31 -04:00
Samson-W
86ca90d417 Fix some bugs for 7.7.5 2019-04-09 16:31:57 +08:00
Samson-W
582476f7e8 Fix bug for 7.7.5. 2019-04-09 12:28:45 +08:00
Samson-W
ea03f5f7e5 Add audit and apply methods for 7.7.5: Ensure IPv6 loopback traffic is configured. (Include ipv4 and ip6) 2019-04-09 04:29:36 +08:00
Samson-W
3be3101d13 Add 7.7.5 2019-04-09 04:03:38 +08:00
Samson-W
d5152a656f Add audit and apply methods for ip6tables check: 7.7.2 7.7.3 2019-03-08 23:52:52 +08:00
Samson-W
ba1e7b4195 Add audit and apply methods for 7.7.4: Ensure default deny firewall policy. (Include ipv4 and ip6) 2019-04-09 03:01:17 +08:00
samson
c8713c4fba Adjust the order of detection cases. 2019-04-04 17:52:01 +08:00
samson
4ed4b90321 Modify for 11.2 and delete not implemented 11.3 2019-04-04 17:07:20 +08:00
samson
c641faef11 Add methods of audit and apply for 6.20: configure chrony 2019-04-03 06:13:44 +08:00
samson
43979c9dd9 Add Readme for use case, and update README. 2019-04-02 04:45:52 +08:00
samson
a82e2ee1f7 Organize the document structure. 2019-04-02 04:32:27 +08:00
samson
aac2b3bf9e Add link of new use case doc to Readme and add comment for guide. 2019-04-02 03:44:15 +08:00
samson
24a7dd810e Add comment for 6.5. 2019-04-02 03:33:59 +08:00
samson
e17aab2467 Add method of analogons pakeage check for 6.5: Configure Network Time Protocol. 2019-04-02 03:29:00 +08:00
samson
2ac2c2538b Add audit and apply methods for 6.19: ensure time sync server(ntp or chrony) is installed. 2019-04-02 02:59:52 +08:00
samson
5caa36d5af Modify is_service_enabled method for debian 9, and apply to 2.25. 2019-04-01 04:15:09 +08:00
samson
c6a43f52c0 Add doc of server/client node for use case: nginx-mutual-ssl-proxy-http-service 2019-04-01 03:12:39 +08:00
samson
fc27cd6701 Add doc of client node for use case: using-Nginx-as-SSL-tunnel-4TCP-UDP-service 2019-03-31 03:45:08 +08:00
samson
474ae4944e Add doc of server node for use case: using-Nginx-as-SSL-tunnel-4TCP-UDP-service 2019-03-31 03:20:05 +08:00
samson
a4e0754891 Modify command use method: apt-get update 2019-03-30 18:49:19 +08:00
samson
ebed556653 Implement the exception handling feature for the specified service. 2019-03-29 17:02:58 +08:00
samson
0985aedee2 Modify comment. 2019-03-28 11:56:23 +08:00
samson
372b6627ed Add new feature: Implement the exception handling feature for the specified service. Just implement http for 6.10 2019-03-28 03:39:16 +08:00
samson
f3e43720cf Move set hardening level command to after audit-all command. 2019-03-27 03:21:10 +08:00
samson
8120d13a17 Add iptables rules config file for hyperledger cello usecase. 2019-03-19 17:13:38 +08:00
samson
2653809f96 Add use case: deploy hyperledger cello on debian 9 to readme doc. 2019-03-19 17:09:38 +08:00
samson
47d55c71c3 Update Readme. 2019-03-19 15:29:02 +08:00