3682 Commits

Author SHA1 Message Date
Stefan Baumgartner
0515094a33
Fix REGEX in FILE-6430 2024-05-19 12:34:57 +02:00
Stefan Baumgartner
ab17f170a5
Fix regex for NETW-3200 2024-05-19 12:23:56 +02:00
Michael Boelen
c745a6c0a6
Merge branch 'archarm' 2024-05-17 12:36:31 +00:00
Michael Boelen
d037b0697d
Update log 2024-05-16 11:13:33 +00:00
Michael Boelen
f8e2da3087
PKGS-7392: filter only lines starting with a number when checking apt-check 2024-05-16 11:13:25 +00:00
Michael Boelen
14f0d563ed
Update CHANGELOG.md 2024-05-16 08:50:33 +02:00
Michael Boelen
672d1fce23
Merge pull request #1364 from pyllyukko/ulimit-fix
KRNL-5820: Accept ulimit with -H parameter also
2024-05-16 08:49:17 +02:00
Michael Boelen
1abe669079
Merge pull request #1482 from vk6xebec/master
Update tests_php to include PHP8.3 and 8.4
2024-05-16 08:48:29 +02:00
Michael Boelen
e75a7b9547
Merge branch 'master' into master 2024-05-16 08:48:23 +02:00
Michael Boelen
1278cd3f2b
Merge pull request #1499 from pyllyukko/krb-fix
KRB-1010: Silence output when SKIPTEST != 0
2024-05-16 08:38:34 +02:00
Michael Boelen
c1d6328d46
Merge pull request #1498 from pyllyukko/typo-fix
Fixed a typo
2024-05-16 08:38:00 +02:00
pyllyukko
c3996cd1bb
Rephrasing 2024-05-16 07:16:20 +03:00
pyllyukko
d60c197e14
KRB-1010: Silence output when SKIPTEST != 0
Fixes https://github.com/CISOfy/lynis/pull/1456#issuecomment-2113390171
2024-05-15 23:31:17 +03:00
Michael Boelen
7ad42d689f
Fix for line that gave error 2024-05-15 20:29:28 +00:00
Michael Boelen
05b15f4209
Update language files for recent changes 2024-05-15 20:15:09 +00:00
Michael Boelen
ab00091d21
Merge pull request #1456 from pyllyukko/krb5-plugin
Added initial version of a Kerberos plugin
2024-05-15 22:12:49 +02:00
pyllyukko
5182ce31fb Changed the Kerberos plugin into a category
According to @mboelen's recommendations:
https://github.com/CISOfy/lynis/pull/1456#issuecomment-2110761098
2024-05-15 21:52:30 +03:00
pyllyukko
4d5b41cb4e plugin_krb5_phase1: Added few more tests
* Check that admin principals have disallow_tgt_based attribute
* Check that regular user principals have requires_pre_auth and
  disallow_svr attributes
* Check for weak crypto
    * Use kdb5_util for this
2024-05-15 21:52:30 +03:00
pyllyukko
ac526be452 Added initial version of a Kerberos plugin 2024-05-15 21:52:30 +03:00
Michael Boelen
24679bee9a
Do not unset SKIPREASON, as it is cleared at the beginning of the function 2024-05-15 12:23:23 +00:00
Michael Boelen
1a26005b50
Update consts
Setting variables
2024-05-15 14:12:54 +02:00
Michael Boelen
9fcd3bdeb3
Update CHANGELOG.md 2024-05-15 13:42:53 +02:00
Michael Boelen
2231470615
Merge pull request #1406 from xnoguer/issue-1275
Checking debsums default file to make sure cron jobs are enabled. Issue 1275
2024-05-15 13:40:45 +02:00
Michael Boelen
b4e57bcbd8
Merge pull request #1489 from katalyst666/master
changed wording of the output AllowUsers to AllowGroups in test SSH-7440
2024-05-14 23:53:28 +02:00
Michael Boelen
4f5ede1e42
Update CHANGELOG.md 2024-05-14 19:32:54 +02:00
Michael Boelen
c8c7eeb2ec
Merge pull request #1458 from grandcentrix/mac-check-filevault-status
Added CRYP-7932 to determine if the system has enabled macOS FileVault.
2024-05-14 19:27:06 +02:00
Florian Sonnenschein
79632bfbe5 - Deleted "filevault_status" variable
- Now checks if "fdesetup" exists
- Add some hardening points (AddHP): 3 of 3 when enabled, 0 of 3, when not.
2024-05-14 16:02:51 +02:00
Michael Boelen
c13da07039
Merge pull request #1460 from grandcentrix/macos-get-applications-and-services
Added PKGS-7305 - macOS Applications and CoreService (Name & Version)
2024-05-14 14:51:00 +02:00
Michael Boelen
65ac3e65b4
Merge pull request #1388 from xnoguer/issue-1367
Fixing test on kernel major and minor version (FILE-6344). Issue 1367
2024-05-14 14:39:00 +02:00
Michael Boelen
1773db0bef
Merge pull request #1296 from konstruktoid/issue1286
use systemctl get-default instead of following link
2024-05-14 14:30:11 +02:00
Michael Boelen
68c99760a1
Merge pull request #1392 from ianchesal/ianchesal.recognize-cos
Add .editorconfig and detection for Google's Container-Optimized OS
2024-05-14 14:27:20 +02:00
Michael Boelen
ba4cd63bda
Added KDE Neon 2024-05-14 12:23:36 +00:00
Michael Boelen
e41e08ad1b
Merge pull request #1284 from mab974/koozali
osdetection: add Koozali #1274
2024-05-14 14:13:17 +02:00
Michael Boelen
481880e0f6
Merge pull request #1317 from zbalkan/wazuh-malware-scan
Added Wazuh as a malware scanner/antivirus and rootkit detection tool
2024-05-14 13:30:58 +02:00
Michael Boelen
2db0bb7334
Merge pull request #1302 from konstruktoid/issue1285
add check for ESET oaeventd
2024-05-14 13:18:07 +02:00
Michael Boelen
a0f9a61b73
Merge pull request #1279 from Hyask/skia/pmos
osdetection: add PostmarketOS
2024-05-14 11:58:42 +02:00
Michael Boelen
fd62c192fe
Merge pull request #1156 from sanderu/FILE-6398
Added FILE-6398 test
2024-05-14 11:57:43 +02:00
Michael Boelen
a29a5786be
Merge pull request #1343 from alangonzalez/master
Replace newer tr command syntax with older ascii specific operations
2024-05-14 11:54:27 +02:00
Michael Boelen
79d4cb3c43
Merge pull request #1377 from konstruktoid/issue1376
support perf_event_paranoid=4
2024-05-14 11:50:16 +02:00
Michael Boelen
240c2b1db4
Merge branch 'master' into issue1376 2024-05-14 11:50:07 +02:00
Michael Boelen
b84ba04f7c
Merge pull request #1260 from pyllyukko/fix-perf_event_paranoid
perf_event_paranoid -> 2|3
2024-05-14 11:47:26 +02:00
Michael Boelen
9fd1a811d1
Merge pull request #1474 from tsvenbla/master
Added regex for NETW-3200 in tests_networking
2024-05-14 11:44:41 +02:00
Michael Boelen
2cb1f4351f
Merge pull request #1373 from jsegitz/tests_mac_frameworks2
tests_mac_frameworks: check for existance of semanage binary
2024-05-14 11:41:04 +02:00
Michael Boelen
eeec52b160
Update tests_mac_frameworks
Changed check from is executable to is not empty
2024-05-14 11:40:50 +02:00
Michael Boelen
83695ad3e2
Merge pull request #1395 from xnoguer/issue-1280
Adding missing test number for suggestion. Issue 1280
2024-05-14 11:35:29 +02:00
Michael Boelen
182ba62369
Merge pull request #1389 from xnoguer/issue-1354
Change in suggestion message. Issue 1354
2024-05-14 11:34:12 +02:00
Michael Boelen
b8064bc5de
Don't reset status of malware scanner, as there might be two available. Small change to format 2024-05-14 06:50:26 +00:00
Michael Boelen
f22bfb5c6a
Merge pull request #1481 from vk6xebec/vk6xebec-macafee-1
McAfee antivirus has been deprecated
2024-05-14 08:35:15 +02:00
Michael Boelen
529102c5e7
Merge pull request #1459 from grandcentrix/macos-brew-get-versions
PKGS-7303: Added version numbers to brew packages.
2024-05-14 08:33:51 +02:00
Michael Boelen
ba18b533d9
Merge pull request #1473 from NL-TCH/patch-1
Add nobara osdetection
2024-05-14 08:32:51 +02:00