Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix: allow alternative output for sestatus policy #152

Merged
merged 1 commit into from
Oct 28, 2023

Conversation

nejch
Copy link
Contributor

@nejch nejch commented Sep 15, 2023

It seems like some versions of sestatus do not output Policy from config file, at least on Amazon Linux 2023 I can't get this from sestatus after appying ansible-collection-hardening's os_hardening role and rebooting.

Also looks like others have this condition https://www.stigviewer.com/stig/red_hat_enterprise_linux_7/2017-12-14/finding/V-71991:

If the "Policy from config file" is not set to "targeted", or the "Loaded policy name" is not set to "targeted", this is a finding.

/cc @schurzi @dlouzan

@schurzi schurzi merged commit d1e5504 into dev-sec:master Oct 28, 2023
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants