Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Ubuntu 22.04 STIG: disable_ctrlaltdel_burstaction included in check but not upstream #12556

Open
2 of 4 tasks
jaredledvina opened this issue Oct 30, 2024 · 1 comment
Open
2 of 4 tasks
Labels
STIG STIG Benchmark related. Ubuntu Ubuntu product related.

Comments

@jaredledvina
Copy link

Description of problem:

Currently, disable_ctrlaltdel_burstaction is marked in

- disable_ctrlaltdel_burstaction

However, upstream the STIG control 260469 does not require/reference this rule. The check text is just

"Verify Ubuntu 22.04 LTS is not configured to reboot the system when Ctrl-Alt-Delete is pressed by using the following command: 
 
     $ systemctl status ctrl-alt-del.target 
     ctrl-alt-del.target 
          Loaded: masked (Reason: Unit ctrl-alt-del.target is masked.) 
          Active: inactive (dead) 
 
If the ""ctrl-alt-del.target"" is not masked, this is a finding."

which is covered by the disable_ctrlaltdel_reboot check.

Details:

This content is not aligned with content from

The misalignment affects these profiles:

  • Ubuntu 22.04 DISA STIG

The misalignment affects these rules:

  • xccdf_org.ssgproject.content_rule_disable_ctrlaltdel_burstaction

Outcome:

  • This project's content can be improved:
    • Check needs to be improved.
    • Remediation needs to be improved.
  • The external content's check is faulty - the other party needs to be notified, they have work to do.

SCAP Security Guide Version: Unknown...how do I determine this?

External Content's Version: v2r2

@dodys dodys added Ubuntu Ubuntu product related. STIG STIG Benchmark related. labels Oct 31, 2024
@dodys
Copy link
Contributor

dodys commented Oct 31, 2024

@mpurg fyi

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
STIG STIG Benchmark related. Ubuntu Ubuntu product related.
Projects
None yet
Development

No branches or pull requests

2 participants