Eric Light
|
47748c8fd8
|
UseDNS = No is a safer configuration (#204)
See Issue #197.
References:
- https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/424371/comments/11
- https://unix.stackexchange.com/questions/56941/what-is-the-point-of-sshd-usedns-option
- https://security.googleblog.com/2016/02/cve-2015-7547-glibc-getaddrinfo-stack.html
|
2016-05-19 19:58:52 +02:00 |
Yann ILAS
|
e8d6308d82
|
use ${LSMODBINARY} instead of lsmod (#200)
|
2016-05-19 17:34:35 +02:00 |
Yann ILAS
|
770605e4c6
|
use ${LSMODBINARY} instead of lsmod (#199)
Use detected lsmod binary instead of calling it directly.
|
2016-05-19 17:24:49 +02:00 |
Yann ILAS
|
bc313949c8
|
Add of MODPROBE variable (#202)
Test for presence of modprobe utility
|
2016-05-19 17:23:54 +02:00 |
Michael Boelen
|
7b769214cd
|
Split auditd between Linux and Solaris, store if an audit daemon is running
|
2016-05-19 17:23:01 +02:00 |
Michael Boelen
|
9dafcac6b0
|
Extend configure module to allow making changes to custom.prf soon
|
2016-05-17 21:39:02 +02:00 |
Michael Boelen
|
7b819b4eca
|
Show release as version with release type (e.g. 2.2.0-dev)
|
2016-05-17 18:12:49 +02:00 |
Michael Boelen
|
443497855e
|
Add lynis show hostids to display host IDs
|
2016-05-17 18:08:08 +02:00 |
Michael Boelen
|
0d62613388
|
Store host IDv2 and detect utilities when no binaries scan has been done
|
2016-05-17 18:07:43 +02:00 |
Michael Boelen
|
933edeeae0
|
Improve screen output when an error in a profile has been found
|
2016-05-16 20:56:42 +02:00 |
Michael Boelen
|
573698afdb
|
Show debug details on screen in verbose mode
|
2016-05-16 20:56:16 +02:00 |
Michael Boelen
|
f7e353fe17
|
Report multiple file integrity tools, clean ups, and renumber FINT-4316 to FINT-4402
|
2016-05-16 20:55:42 +02:00 |
Michael Boelen
|
9542dc2f6b
|
Initial import of configure helper
|
2016-05-15 20:37:10 +02:00 |
Michael Boelen
|
bb2c97f9c1
|
Added --man-page alias
|
2016-05-15 20:01:32 +02:00 |
Michael Boelen
|
c751302a76
|
Add helper tool 'configure'
|
2016-05-15 20:00:18 +02:00 |
Michael Boelen
|
1cbf7244c2
|
Added detection and display of profile directory
|
2016-05-15 14:03:57 +02:00 |
Michael Boelen
|
26c67e4ec6
|
Use full paths when local directory is used for includedir or dbdir
|
2016-05-15 13:41:03 +02:00 |
Michael Boelen
|
098f7685fc
|
Added show dbdir, show includedir, show workdir
|
2016-05-14 18:04:26 +02:00 |
Michael Boelen
|
18fb54e92d
|
Improve screen output of 'lynis update info'
|
2016-05-14 17:43:40 +02:00 |
Michael Boelen
|
e7afd92533
|
Improve screen output
|
2016-05-14 17:42:51 +02:00 |
Michael Boelen
|
b72b510301
|
Improve help output and error messages
|
2016-05-14 17:42:33 +02:00 |
Michael Boelen
|
08bad0ffbf
|
Initial support for remote scanning with: lynis audit system remote
|
2016-05-14 15:44:06 +02:00 |
Michael Boelen
|
93074a89ea
|
Initial import of remote system scanning
|
2016-05-14 15:43:29 +02:00 |
Michael Boelen
|
4225611b5b
|
Remove debugging details
|
2016-05-12 11:21:20 +02:00 |
Michael Boelen
|
d6ceeaa11f
|
Clean ups and added hints for contributions
|
2016-05-11 16:02:46 +02:00 |
Michael Boelen
|
5db9d4a4e0
|
[FILE-6376] Enabled contributed test and enhancements
|
2016-05-11 15:57:36 +02:00 |
Yann ILAS
|
125f704a10
|
FILE-xyzz : Bind mount the /var/tmp directory to /tmp (#193)
Check if a bind mount is done between /var/tmp and the directory /tmp
|
2016-05-11 15:20:08 +02:00 |
Yann ILAS
|
8ba1f51c19
|
FILE-6372 : error in awk comparaison (#192)
|
2016-05-11 15:18:39 +02:00 |
Yann ILAS
|
8e73f33475
|
Check of /dev/shm:nosuid,nodev,noexec (#194)
|
2016-05-11 15:17:50 +02:00 |
Yann ILAS
|
527955211b
|
The XFS root FS is not checked (#190)
At line 431, you should maybe add some tests...
|
2016-05-11 15:16:28 +02:00 |
Michael Boelen
|
668a1fd0e5
|
Alignment, restructuring, and quoting of -? option
|
2016-05-11 15:12:37 +02:00 |
Michael Boelen
|
50609242c2
|
Only use public keys for host ID creation
|
2016-05-10 14:21:09 +02:00 |
Michael Boelen
|
ef23180adc
|
Decrease length of hostid v2 as hostname is stored already
|
2016-05-10 11:47:33 +02:00 |
Michael Boelen
|
41197f722b
|
Added -? argument as alias for --help
|
2016-05-10 11:47:01 +02:00 |
Michael Boelen
|
dfce1a770a
|
Removed local variable assignment to prevent portability issues
|
2016-05-09 14:20:16 +02:00 |
Michael Boelen
|
a40331aedc
|
Clean up unneeded log entries
|
2016-05-09 13:50:38 +02:00 |
Michael Boelen
|
632e8bd47a
|
Show hardware address in log
|
2016-05-09 13:46:32 +02:00 |
Michael Boelen
|
788ab9999d
|
Create a version 2 host ID
|
2016-05-05 17:49:41 +02:00 |
Michael Boelen
|
9f14495d70
|
Added sha256 and sha256sum utilities
|
2016-05-05 17:49:04 +02:00 |
Michael Boelen
|
90f196f067
|
[PKGS-7381] Check for vuln.xml file
|
2016-05-04 21:59:52 +02:00 |
Michael Boelen
|
412613e14c
|
Added check-value for custom configurations check
|
2016-05-04 21:39:13 +02:00 |
Michael Boelen
|
076c5dd093
|
Initial work to profile for custom configurations check (key-value)
|
2016-05-04 21:38:42 +02:00 |
Michael Boelen
|
049569ceca
|
Set default value for CHECK
|
2016-05-04 13:42:46 +02:00 |
Michael Boelen
|
eded02cfde
|
Rewritten counters and dealing with values
|
2016-05-03 14:57:53 +02:00 |
Michael Boelen
|
eda79af419
|
Minor cleanups, including comment about -c option (deprecated soon)
|
2016-05-03 13:53:20 +02:00 |
Michael Boelen
|
c8c7a11e37
|
Implemented linter suggestions
|
2016-05-03 13:16:11 +02:00 |
Michael Boelen
|
bbdfce2b05
|
Performance: only use lshw at end, and when having root privileges
|
2016-05-03 13:15:46 +02:00 |
Michael Boelen
|
dab69d2860
|
Don't show errors when we are running non-privileged
|
2016-05-03 13:11:28 +02:00 |
Michael Boelen
|
062782e7a5
|
Remove blank line and space
|
2016-05-03 12:55:23 +02:00 |
Michael Boelen
|
7260f3030c
|
Code rewrites after linting
|
2016-05-03 12:40:26 +02:00 |