Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
Go to file
mboelen 6ab5cd9bfd Remove numbering on changelog, as it will be 2.2.0 release 2015-12-30 14:35:27 +01:00
db Removed last newline 2015-09-07 21:11:51 +02:00
debian Delete trailing whitespace 2015-09-07 18:35:07 +03:00
extras Bump for upcoming 2.2.0 release 2015-12-21 11:25:03 +01:00
include New tests and renumbering 2015-12-30 14:33:50 +01:00
plugins Set enable status of pwhistory module at beginning of test 2015-10-23 15:53:22 +02:00
.gitignore Updated spec file and build script 2014-09-14 20:35:01 +02:00
CHANGELOG Remove numbering on changelog, as it will be 2.2.0 release 2015-12-30 14:35:27 +01:00
CONTRIBUTIONS.md Delete trailing whitespace 2015-09-07 18:35:07 +03:00
CONTRIBUTORS Rename of logtext and report functions, upcoming year change 2015-12-21 21:17:15 +01:00
FAQ Rename of logtext and report functions, upcoming year change 2015-12-21 21:17:15 +01:00
INSTALL Rename of logtext and report functions, upcoming year change 2015-12-21 21:17:15 +01:00
LICENSE Update of LICENSE file, which has version control texts in it 2014-10-06 14:00:47 +02:00
README Rename of logtext and report functions, upcoming year change 2015-12-21 21:17:15 +01:00
README.md Breaks added for request to vote for security tool of 2015. Will you help? 2015-12-01 12:46:59 +01:00
default.prf Add upload_compressed option to profile 2015-12-21 11:37:27 +01:00
lynis Bumping up patch version towards 2.2.0 release 2015-12-30 14:34:44 +01:00
lynis.8 Changed text, markup, added exit codes, and first time usage 2015-09-10 09:31:55 +02:00

README.md

lynis

** Help requested **

Want to help the project? In 1 minute you can make a big difference. Vote for the project as best security tool of 2015:

http://www.toolswatch.org/2015/11/vote-for-2015-best-security-tool/


Lynis - Security auditing and hardening tool, for Unix based systems

Lynis is a security auditing for Unix derivatives like Linux, BSD, and Solaris. It performs an in-depth security scan on the system to detect software and security issues. Besides information related to security, it will also scan for general system information, vulnerable software packages, and possible configuration issues.

We believe software should be simple, updated on a regular basis and open. You should be able to trust, understand, and even alter the software. Many agree with us, as the software is being used by thousands every day to protect their systems.

Main goals:

  • Security auditing (automated)
  • Compliance testing (e.g. PCI-DSS, HIPAA)
  • Vulnerability testing

The software aims to also assist with:

  • Configuration management
  • Software patch management
  • System hardening
  • Penetration testing
  • Malware scanning
  • Intrusion detection

License:

  • GPLv3

Typical users of the software:

  • System administrators
  • Auditors
  • Security officers
  • Security professionals

First run

  1. Clone or download the project files. No compilation or installation is required.
  2. Execute: ./lynis audit system

If you want to run the software as root, we suggest altering the ownership of the files. Use chown -R and chgrp -R to recursively alter the owner and group.

Documentation

Full documentation: https://cisofy.com/documentation/lynis/

Flexibility

If you want to create your own tests, use the 'tests_custom' file (template available in 'include' directory). Plugins are another possibility to customize, although their main goal is collecting data.

Enterprise version

This software is also available as part of an enterprise suite. It includes additional functionality (plugins, centralized system, reporting, dashboard), and supports.

Contribute

Got an improvement? Create it as an issue in the tracker on GitHub or send us an e-mail: lynis-dev@cisofy.com More details can be found at Contributors Guide