Michael Boelen
f471bf9d96
Merge pull request #70 from kboratynski/auth-9407
...
Wrote 'AUTH-9407' - logging failed login attempts.
2015-09-07 11:19:40 +02:00
mboelen
5165e57b86
Added report option to store logging status of failed logins
2015-09-07 11:17:38 +02:00
mboelen
53840a4cfb
Added variable for logging status of failed logins
2015-09-07 11:17:08 +02:00
mboelen
fc27379452
Minor cleaning up and improved comment
2015-09-07 10:13:20 +02:00
Kamil Boratyński
0e97f7936f
Wrote 'AUTH-9407' - logging failed login attempts.
2015-09-07 04:12:58 +02:00
mboelen
a42e8feac2
Added Unbound status and configuration check, logging name cacher status to report file
2015-09-06 21:38:21 +02:00
mboelen
88caa85f59
Added default values for name cachers and Unbound status
2015-09-06 21:37:26 +02:00
mboelen
4a354c8479
Change ipfw to IPFW, change exeception ID for IPFW test
2015-09-06 17:42:56 +02:00
mboelen
10a300ddb7
Don't show pf status on screen when it is not available
2015-09-06 17:38:15 +02:00
Michael Boelen
8ab314cf07
Merge pull request #43 from rsmith-nl/ipfw
...
Add test for 'ipfw' firewall on FreeBSD.
2015-09-06 17:34:36 +02:00
mboelen
05dd1a6814
Remove systemctl to detect virtualization, use systemd-detect-virt instead
2015-09-05 18:51:36 +02:00
mboelen
461920ff72
Enabled dmidecode for virtualization detection
2015-09-05 18:41:04 +02:00
Michael Boelen
2fd7788b9b
Merge pull request #58 from markruys/master
...
More reliable and often faster check to determine virtualization.
2015-09-05 17:34:18 +02:00
squid-cache-object
12d9b38288
Update tests_filesystems
2015-09-03 14:14:02 -07:00
Michael Boelen
3927d60b8e
Merge pull request #69 from alobodzinski/name-4406-hostname-clash
...
Do not let a hostname that is contained in "localhost" like "cal" tri…
2015-09-03 17:35:25 +02:00
Alexander Lobodzinski
e1a87794bc
Do not let a hostname that is contained in "localhost" like "cal" trigger a false positive
2015-09-03 17:20:34 +02:00
mboelen
d9b7d9a9fd
Combined several potential mount option tests into 1 unit
2015-09-03 15:44:10 +02:00
mboelen
f4c2bd52fb
Ensure that docker is a file, not directory in /usr/libexec
2015-09-03 15:43:33 +02:00
mboelen
235b228fe2
Added vmtoolsd detection
2015-09-03 11:15:55 +02:00
dataking
e37446521d
include/tests_filesystems tweak
2015-09-01 11:50:07 -07:00
mboelen
2577caf66d
Only show suggestion for ntpdate if ntpd isn't running
2015-09-01 17:40:05 +02:00
mboelen
d2aaa9662e
Changed test description
2015-09-01 16:10:16 +02:00
mboelen
18d97ce60e
Use different status for unused firewall rules
2015-09-01 15:50:14 +02:00
mboelen
8cefc0f7b9
Show different status on screen when expired SSL certificates were found
2015-09-01 15:49:50 +02:00
mboelen
d4b1812962
Changed screen output when finding old files in /tmp
2015-09-01 15:47:32 +02:00
mboelen
401bf26c91
NIS improvement for test
2015-09-01 13:37:55 +02:00
mboelen
7cb9e364c7
Proper filtering for IPv6 addresses
2015-08-31 13:23:17 +02:00
mboelen
d1ae757240
Replaced -z for empty string testing
2015-08-20 18:50:30 +02:00
Michael Boelen
afe30cf3a7
Merge pull request #56 from mpepping/master
...
Comparison error when Docker is present, but the daemon is not running (or unset).
2015-08-20 18:48:32 +02:00
mboelen
210ba41a3c
Improved umask detection and logging
2015-08-20 18:46:06 +02:00
mboelen
649f0cfb3c
Improved BOOT-5180 detection for newer systems like Debian 8 and screen output enhancement
2015-08-20 18:37:03 +02:00
mboelen
7bd91675fe
Improved debug logging
2015-08-19 16:20:21 +02:00
mboelen
0c2a9daef9
Show help on screen
2015-08-19 16:19:14 +02:00
mboelen
8c1e1f29a3
Additional logging
2015-08-19 16:02:50 +02:00
mboelen
2e87b8fde9
Apply additional checks on first cURL command execution
2015-08-19 15:51:52 +02:00
mboelen
c153344240
Capture self-signed certificates during upload with cURL
2015-08-19 15:31:24 +02:00
Mark Ruys
919e48001d
More reliable and often faster check to determine virtualization.
2015-07-27 12:38:13 +02:00
Martijn Pepping
25c8567b57
Fixed an comparison error when Docker is present, but the daemon is not running (or unset).
2015-07-24 23:58:50 +02:00
Mark Ruys
c998924b51
Fix STRG-1840 (Check for disabled USB storage)
2015-07-24 15:11:39 +02:00
mboelen
dd66273f41
Removed unused categories
2015-07-22 18:28:34 +02:00
mboelen
db131518f0
Clean up code
2015-07-22 17:37:39 +02:00
mboelen
afd01ece5d
Remove incomplete tests, code enhancements
2015-07-22 17:37:11 +02:00
mboelen
66fb369593
Copyright line changes and cleanups
2015-07-22 16:28:11 +02:00
mboelen
17c44ced52
Include examples and clarify usage
2015-07-22 14:57:57 +02:00
mboelen
8f9a616854
Add more descriptive text to the template
2015-07-22 14:26:25 +02:00
mboelen
2b1061ef14
Added suggestions for Solaris auditing
2015-07-22 13:47:44 +02:00
mboelen
fd5c968d16
Cleaning up some lines
2015-07-22 13:44:30 +02:00
mboelen
afaecd9512
Removing deprecated strings and cleaning up
2015-07-22 12:21:36 +02:00
mboelen
95d08a735a
Optimizing code, cleaning up
2015-07-22 12:20:27 +02:00
mboelen
e06d706c83
Optimizing code, cleaning up
2015-07-22 12:20:03 +02:00
mboelen
6857f01500
Added LDAP configuration file location to report, and code cleanups
2015-07-16 17:02:15 +02:00
James White
f341b01e4d
Fix false positive matches with unsafe ports on SQD-3624
...
The grep statement needs to be modified to prevent tagging port values that contains a value in `SQUID_DAEMON_UNSAFE_PORTS_LIST` but aren't actually the listed port.
2015-07-15 11:50:56 +01:00
Michael Boelen
4266992f6b
Merge pull request #39 from aneeshusa/check-locate-preqs
...
Prevent the locate test from running spuriously when locate is not present.
2015-07-14 00:55:47 +02:00
Michael Boelen
6694add635
Merge pull request #38 from aneeshusa/update-systemd-sulogin-detection
...
Update check for sulogin under systemd.
2015-07-14 00:49:40 +02:00
mboelen
e8111a124f
Increase default minimum amount of connections before alerting
2015-07-14 00:31:59 +02:00
mboelen
7d30538311
Added missing bracket
2015-06-17 17:13:44 +02:00
mboelen
b947bb085c
Changed detection, added examples of fstab entries
2015-06-17 17:06:51 +02:00
mboelen
f34e59663f
Report hardening index, even when report is not shown
2015-06-11 20:50:19 +02:00
mboelen
f0026427bb
Textual changes
2015-06-11 13:58:30 +02:00
mboelen
0d4b25d308
Disable suggestion for this test
2015-06-11 13:58:16 +02:00
mboelen
e13a9087ea
Added compilers to report
2015-06-11 13:57:57 +02:00
mboelen
72feac9638
Added additional legal words for banner usage
2015-06-11 13:57:37 +02:00
mboelen
785ac74f91
Moved tests to new container group
2015-05-27 12:36:34 +02:00
mboelen
5f3c47df68
Added debsecan, debsums and kernel package counting
2015-05-27 12:35:56 +02:00
mboelen
7f0fbcf359
Initial import for container category
2015-05-27 12:34:01 +02:00
mboelen
f60011eb1b
Removing tests which were already performed in authentication section.
2015-05-27 11:43:08 +02:00
mboelen
917c790ecc
Changed text
2015-05-27 11:42:31 +02:00
mboelen
fe636c7d6c
Docker support
2015-05-27 11:25:35 +02:00
mboelen
30b9b1edd9
Added support for Docker binary
2015-05-27 11:25:07 +02:00
mboelen
bb696a04f1
Improved detection of directories in logrotate
2015-05-26 11:13:47 +02:00
mboelen
c70f3e93cd
Cleanup of screen output, with focus on minimum output
2015-05-26 11:13:23 +02:00
mboelen
a1095ef941
Improved swap detection and added UUID check
2015-05-26 11:12:36 +02:00
mboelen
3c3bb2d0db
Do not show auditd suggestion for OpenVZ systems
2015-05-26 11:11:42 +02:00
mboelen
1a04109dad
Extended descriptions
2015-05-26 11:11:15 +02:00
mboelen
52b8c3a6a7
Added VMTYPE
2015-05-26 11:10:50 +02:00
mboelen
b885b9f84f
Add missing pipe
2015-05-25 23:20:52 +02:00
mboelen
1d1aa3c966
Improved kernel detection on Slackware
2015-05-25 23:17:42 +02:00
mboelen
2f0e9f0981
Changed last line
2015-05-25 23:17:21 +02:00
mboelen
ef2b12e218
Added block and character type devices as symlinks
2015-05-25 23:17:08 +02:00
mboelen
3f3ced806e
Changed last line
2015-05-25 23:16:45 +02:00
mboelen
7854eeae20
Chronyd support, finishing test
2015-05-25 17:45:41 +02:00
mboelen
1c07e6fa2c
New test TIME-3106, Chronyd and systemd-timesyncd support
2015-05-25 17:33:51 +02:00
mboelen
45114e6557
Chef support added
2015-05-25 17:20:58 +02:00
mboelen
f3bd9ca9ad
Display only the tools actually found, to keep screen output as clean as possible
2015-05-17 23:22:54 +02:00
mboelen
46f9a3dec8
Log file integrity monitoring tool, adding support for lfd (CSF) tool
2015-05-17 23:01:38 +02:00
mboelen
283e198c23
Improved detection of blacklisted/disabled modules
2015-05-17 23:00:28 +02:00
mboelen
893e17d982
Added new AddSystemGroup function
2015-05-13 14:45:50 +02:00
mboelen
5729189349
Added additional legal words for banners
2015-05-13 14:45:16 +02:00
mboelen
c37e2eb9eb
Extended Sophos detection
2015-05-04 13:37:36 +02:00
mboelen
22810e58e7
Replace existing update check options with new helper utility
2015-04-30 01:28:33 +02:00
mboelen
943b944a13
New profile options for automatic updates
2015-04-30 01:28:05 +02:00
mboelen
0e581e6ad7
Initial import of helper for automatic updates
2015-04-30 01:27:36 +02:00
mboelen
8ae3cfd5ad
Remove unused variable
2015-04-30 01:25:18 +02:00
mboelen
1ece78f1a8
Set default for showing program details at start
2015-04-30 01:23:47 +02:00
mboelen
508cf7ac71
Added missing space
2015-04-29 19:58:13 +02:00
mboelen
6a0417da8b
Added Python and updated PHP description
2015-04-29 14:20:46 +02:00
mboelen
70e20d514c
Ensure that only one value is provided
2015-04-29 13:53:40 +02:00
mboelen
2cd57933b6
Correction of Display function
2015-04-29 11:57:57 +02:00
mboelen
aa8410477e
Performance tuning by removing full listing of binaries from log
2015-04-29 11:57:30 +02:00
Roland Smith
1bb5b4b0a6
FreeBSD uses the bsdrc service manager.
...
With this patch, a run on my machine returns:
[+] Initializing program
------------------------------------
- Detecting OS... [ DONE ]
---------------------------------------------------
Program version: 2.1.1
Operating system: FreeBSD
Operating system name: FreeBSD
...
[+] Boot and services
------------------------------------
- Service Manager [ bsdrc ]
2015-04-27 20:09:18 +02:00