Skip to content

Commit 25bbd9a

Browse files
authored
Merge pull request #11429 from teacup-on-rockingchair/iptables_service_when_firewalld_service_disabled
Check iptables service when firewalld service is disabled
2 parents 4aae772 + 8145877 commit 25bbd9a

1 file changed

Lines changed: 1 addition & 3 deletions

File tree

  • linux_os/guide/system/network/network-iptables/iptables_activation/service_iptables_enabled

linux_os/guide/system/network/network-iptables/iptables_activation/service_iptables_enabled/rule.yml

Lines changed: 1 addition & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -11,8 +11,6 @@ rationale: |-
1111
1212
severity: medium
1313

14-
platform: package[iptables]
15-
1614
identifiers:
1715
cce@rhel8: CCE-85961-1
1816
cce@rhel9: CCE-85962-9
@@ -33,7 +31,7 @@ references:
3331
nist: AC-4,CM-7(b),CA-3(5),SC-7(21),CM-6(a)
3432
nist-csf: DE.AE-1,ID.AM-3,PR.AC-5,PR.DS-5,PR.IP-1,PR.PT-3,PR.PT-4
3533

36-
platform: machine
34+
platform: machine and package[iptables] and service_disabled[firewalld]
3735

3836
ocil: |-
3937
{{{ ocil_service_enabled(service="iptables") }}}

0 commit comments

Comments
 (0)