Skip to content

Commit 0840ce8

Browse files
committed
Remove CIS references from rules
Remove CIS RHEL 7, RHEL 8, RHEL 9 references from rules because they are added automatically based on control files.
1 parent 9f15c87 commit 0840ce8

511 files changed

Lines changed: 0 additions & 1347 deletions

File tree

  • linux_os/guide
    • services
    • system
      • accounts
        • accounts-banners
        • accounts-pam
          • locking_out_password_attempts
            • account_password_pam_faillock_password_auth
            • account_password_pam_faillock_system_auth
            • accounts_password_pam_pwhistory_remember_password_auth
            • accounts_password_pam_pwhistory_remember_system_auth
            • accounts_password_pam_unix_remember
            • accounts_passwords_pam_faillock_deny_root
            • accounts_passwords_pam_faillock_deny
            • accounts_passwords_pam_faillock_unlock_time
          • package_pam_pwquality_installed
          • password_quality/password_quality_pwquality
          • set_password_hashing_algorithm
            • set_password_hashing_algorithm_libuserconf
            • set_password_hashing_algorithm_logindefs
            • set_password_hashing_algorithm_passwordauth
            • set_password_hashing_algorithm_systemauth
        • accounts-physical
        • accounts-restrictions
        • accounts-session
          • accounts_tmout
          • accounts_user_dot_group_ownership
          • accounts_user_dot_no_world_writable_programs
          • accounts_user_dot_user_ownership
          • accounts_user_interactive_home_directory_exists
          • accounts_users_home_files_ownership
          • accounts_users_netrc_file_permissions
          • file_groupownership_home_directories
          • file_ownership_home_directories
          • file_permission_user_init_files
          • file_permissions_home_directories
          • root_paths
          • user_umask
        • enable_authselect
      • auditing
        • auditd_configure_rules
          • audit_dac_actions
            • audit_rules_dac_modification_chmod
            • audit_rules_dac_modification_chown
            • audit_rules_dac_modification_fchmodat
            • audit_rules_dac_modification_fchmod
            • audit_rules_dac_modification_fchownat
            • audit_rules_dac_modification_fchown
            • audit_rules_dac_modification_fremovexattr
            • audit_rules_dac_modification_fsetxattr
            • audit_rules_dac_modification_lchown
            • audit_rules_dac_modification_lremovexattr
            • audit_rules_dac_modification_lsetxattr
            • audit_rules_dac_modification_removexattr
            • audit_rules_dac_modification_setxattr
          • audit_execution_acl_commands
          • audit_execution_selinux_commands/audit_rules_execution_chcon
          • audit_file_deletion_events
            • audit_rules_file_deletion_events_renameat
            • audit_rules_file_deletion_events_rename
            • audit_rules_file_deletion_events_rmdir
            • audit_rules_file_deletion_events_unlinkat
            • audit_rules_file_deletion_events
          • audit_file_modification
            • audit_rules_unsuccessful_file_modification_creat
            • audit_rules_unsuccessful_file_modification_ftruncate
            • audit_rules_unsuccessful_file_modification_open_by_handle_at
            • audit_rules_unsuccessful_file_modification_openat
            • audit_rules_unsuccessful_file_modification_open
            • audit_rules_unsuccessful_file_modification_truncate
          • audit_kernel_module_loading
            • audit_rules_kernel_module_loading_create
            • audit_rules_kernel_module_loading_delete
            • audit_rules_kernel_module_loading_finit
            • audit_rules_kernel_module_loading_init
            • audit_rules_kernel_module_loading_query
            • audit_rules_kernel_module_loading
          • audit_login_events
            • audit_rules_login_events_faillock
            • audit_rules_login_events_lastlog
          • audit_privileged_commands
            • audit_rules_privileged_commands_kmod
            • audit_rules_privileged_commands_usermod
            • audit_rules_privileged_commands
          • audit_rules_immutable
          • audit_rules_mac_modification_usr_share
          • audit_rules_mac_modification
          • audit_rules_media_export
          • audit_rules_networkconfig_modification
          • audit_rules_session_events
          • audit_rules_suid_auid_privilege_function
          • audit_rules_sysadmin_actions
          • audit_rules_usergroup_modification_group
          • audit_rules_usergroup_modification_gshadow
          • audit_rules_usergroup_modification_opasswd
          • audit_rules_usergroup_modification_passwd
          • audit_rules_usergroup_modification_shadow
          • audit_sudo_log_events
          • audit_time_rules
          • directory_permissions_var_log_audit
          • file_group_ownership_var_log_audit
          • file_groupownership_audit_configuration
          • file_ownership_audit_configuration
          • file_ownership_var_log_audit_stig
          • file_permissions_audit_configuration
          • file_permissions_var_log_audit
        • configure_auditd_data_retention
          • auditd_data_disk_error_action
          • auditd_data_disk_full_action
          • auditd_data_retention_action_mail_acct
          • auditd_data_retention_admin_space_left_action
          • auditd_data_retention_max_log_file_action
          • auditd_data_retention_max_log_file
          • auditd_data_retention_space_left_action
        • coreos_audit_backlog_limit_kernel_argument
        • coreos_audit_option
        • grub2_audit_argument
        • grub2_audit_backlog_limit_argument
        • package_audit-libs_installed
        • package_audit_installed
        • service_auditd_enabled
      • bootloader-grub2
      • logging
        • ensure_rsyslog_log_file_configuration
        • journald
        • log_rotation
        • package_rsyslog_installed
        • rsyslog_accepting_remote_messages
        • rsyslog_filecreatemode
        • rsyslog_sending_messages/rsyslog_remote_loghost
        • service_rsyslog_enabled
      • network
        • network-firewalld
          • firewalld_activation
          • ruleset_modifications
          • set_firewalld_appropriate_zone
        • network-iptables
          • iptables_activation
          • iptables_ruleset_modifications
          • package_iptables-services_installed
          • package_iptables-services_removed
          • package_iptables_installed
        • network-ipv6
          • configuring_ipv6
            • sysctl_net_ipv6_conf_all_accept_ra
            • sysctl_net_ipv6_conf_all_accept_redirects
            • sysctl_net_ipv6_conf_all_accept_source_route
            • sysctl_net_ipv6_conf_all_forwarding
            • sysctl_net_ipv6_conf_default_accept_ra
            • sysctl_net_ipv6_conf_default_accept_redirects
            • sysctl_net_ipv6_conf_default_accept_source_route
          • disabling_ipv6
        • network-kernel
          • network_host_and_router_parameters
            • sysctl_net_ipv4_conf_all_accept_redirects
            • sysctl_net_ipv4_conf_all_accept_source_route
            • sysctl_net_ipv4_conf_all_log_martians
            • sysctl_net_ipv4_conf_all_rp_filter
            • sysctl_net_ipv4_conf_all_secure_redirects
            • sysctl_net_ipv4_conf_default_accept_redirects
            • sysctl_net_ipv4_conf_default_accept_source_route
            • sysctl_net_ipv4_conf_default_log_martians
            • sysctl_net_ipv4_conf_default_rp_filter
            • sysctl_net_ipv4_conf_default_secure_redirects
            • sysctl_net_ipv4_icmp_echo_ignore_broadcasts
            • sysctl_net_ipv4_icmp_ignore_bogus_error_responses
            • sysctl_net_ipv4_tcp_syncookies
          • network_host_parameters
            • sysctl_net_ipv4_conf_all_send_redirects
            • sysctl_net_ipv4_conf_default_send_redirects
            • sysctl_net_ipv4_ip_forward
        • network-nftables
        • network-uncommon
        • network-wireless/wireless_software
      • permissions
      • selinux
      • software

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

linux_os/guide/services/avahi/disable_avahi_group/package_avahi-autoipd_removed/rule.yml

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -24,7 +24,6 @@ identifiers:
2424

2525
references:
2626
cis-csc: 11,14,3,9
27-
cis@rhel9: 2.2.2
2827
cis@sle12: 2.2.3
2928
cis@sle15: 2.2.3
3029
cobit5: BAI10.01,BAI10.02,BAI10.03,BAI10.05,DSS05.02,DSS05.05,DSS06.06

linux_os/guide/services/avahi/disable_avahi_group/package_avahi_removed/rule.yml

Lines changed: 0 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -24,9 +24,6 @@ identifiers:
2424

2525
references:
2626
cis-csc: 11,14,3,9
27-
cis@rhel7: 2.2.2
28-
cis@rhel8: 2.2.2
29-
cis@rhel9: 2.2.2
3027
cis@sle12: 2.2.3
3128
cis@sle15: 2.2.3
3229
cis@ubuntu2004: 2.2.3

linux_os/guide/services/avahi/disable_avahi_group/service_avahi-daemon_disabled/rule.yml

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -23,7 +23,6 @@ identifiers:
2323

2424
references:
2525
cis-csc: 11,14,3,9
26-
cis@rhel8: 2.2.2
2726
cis@sle12: 2.2.3
2827
cis@sle15: 2.2.3
2928
cis@ubuntu2004: 2.2.3

linux_os/guide/services/base/service_rhnsd_disabled/rule.yml

Lines changed: 0 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -25,8 +25,6 @@ identifiers:
2525

2626
references:
2727
cis-csc: 11,12,14,15,3,8,9
28-
cis@rhel7: 1.2.5
29-
cis@rhel8: 1.2.2
3028
cobit5: APO13.01,BAI10.01,BAI10.02,BAI10.03,BAI10.05,DSS01.04,DSS05.02,DSS05.03,DSS05.05,DSS06.06
3129
disa: CCI-000382
3230
isa-62443-2009: 4.3.3.5.1,4.3.3.5.2,4.3.3.5.3,4.3.3.5.4,4.3.3.5.5,4.3.3.5.6,4.3.3.5.7,4.3.3.5.8,4.3.3.6.1,4.3.3.6.2,4.3.3.6.3,4.3.3.6.4,4.3.3.6.5,4.3.3.6.6,4.3.3.6.7,4.3.3.6.8,4.3.3.6.9,4.3.3.7.1,4.3.3.7.2,4.3.3.7.3,4.3.3.7.4,4.3.4.3.2,4.3.4.3.3

linux_os/guide/services/cron_and_at/file_groupowner_cron_d/rule.yml

Lines changed: 0 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -22,9 +22,6 @@ identifiers:
2222

2323
references:
2424
cis-csc: 12,13,14,15,16,18,3,5
25-
cis@rhel7: 4.1.1.7
26-
cis@rhel8: 4.1.1.7
27-
cis@rhel9: 5.1.7
2825
cis@sle12: 5.1.7
2926
cis@sle15: 5.1.7
3027
cis@ubuntu2004: 5.1.7

linux_os/guide/services/cron_and_at/file_groupowner_cron_daily/rule.yml

Lines changed: 0 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -22,9 +22,6 @@ identifiers:
2222

2323
references:
2424
cis-csc: 12,13,14,15,16,18,3,5
25-
cis@rhel7: 4.1.1.4
26-
cis@rhel8: 4.1.1.4
27-
cis@rhel9: 5.1.4
2825
cis@sle12: 5.1.4
2926
cis@sle15: 5.1.4
3027
cis@ubuntu2004: 5.1.4

linux_os/guide/services/cron_and_at/file_groupowner_cron_hourly/rule.yml

Lines changed: 0 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -22,9 +22,6 @@ identifiers:
2222

2323
references:
2424
cis-csc: 12,13,14,15,16,18,3,5
25-
cis@rhel7: 4.1.1.3
26-
cis@rhel8: 4.1.1.3
27-
cis@rhel9: 5.1.3
2825
cis@sle12: 5.1.3
2926
cis@sle15: 5.1.3
3027
cis@ubuntu2004: 5.1.3

linux_os/guide/services/cron_and_at/file_groupowner_cron_monthly/rule.yml

Lines changed: 0 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -22,9 +22,6 @@ identifiers:
2222

2323
references:
2424
cis-csc: 12,13,14,15,16,18,3,5
25-
cis@rhel7: 4.1.1.6
26-
cis@rhel8: 4.1.1.6
27-
cis@rhel9: 5.1.6
2825
cis@sle12: 5.1.6
2926
cis@sle15: 5.1.6
3027
cis@ubuntu2004: 5.1.6

linux_os/guide/services/cron_and_at/file_groupowner_cron_weekly/rule.yml

Lines changed: 0 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -22,9 +22,6 @@ identifiers:
2222

2323
references:
2424
cis-csc: 12,13,14,15,16,18,3,5
25-
cis@rhel7: 4.1.1.5
26-
cis@rhel8: 4.1.1.5
27-
cis@rhel9: 5.1.5
2825
cis@sle12: 5.1.5
2926
cis@sle15: 5.1.5
3027
cis@ubuntu2004: 5.1.5

linux_os/guide/services/cron_and_at/file_groupowner_crontab/rule.yml

Lines changed: 0 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -22,9 +22,6 @@ identifiers:
2222

2323
references:
2424
cis-csc: 12,13,14,15,16,18,3,5
25-
cis@rhel7: 4.1.1.2
26-
cis@rhel8: 4.1.1.2
27-
cis@rhel9: 5.1.2
2825
cis@sle12: 5.1.2
2926
cis@sle15: 5.1.2
3027
cis@ubuntu2004: 5.1.2

0 commit comments

Comments
 (0)