-
Notifications
You must be signed in to change notification settings - Fork 706
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Incorrect error for "Verify Permissions on the system journal" (Ubuntu 22.04 STIG) #12555
Comments
Hi @jaredledvina , thanks for pointing out this issue.
I suspect that this change fixes missing executable bits on directories (e.g. |
@mpurg - Yeah, I had a similar thought but was surprised that it's the only change they made from v2r1 to v2r2 so figured maybe it was explicit. Do you have a way to ask them about this in particular? For now, I've implemented what's in the actual STIG versus what we're checking here but, I agree an executable bit on the |
I've already sent a request to DISA to consider changing this permission. |
@mpurg - I just wanted to see if you heard back for DISA on this one |
Sorry for late reply. I've heard back, the suggestion was considered and will likely be included in a future release. |
Ah cool! |
Description of problem:
The
Verify Permissions on the system journal
check for the Ubuntu 22.04 STIG ruleset is slightly off. The check atcontent/linux_os/guide/system/logging/journald/file_permissions_system_journal/rule.yml
Line 66 in 21a4c72
0640
as the permissions. However, the fix text in v2r2 of the STIG states:Which explicitly sets
/var/log/journal/%m/system.journal
to0750
.Details:
This content is not aligned with content from
The misalignment affects these profiles:
The misalignment affects these rules:
xccdf_org.ssgproject.content_rule_file_permissions_system_journal
Outcome:
SCAP Security Guide Version: Unsure...where is this located?
External Content's Version: v2r2
The text was updated successfully, but these errors were encountered: