Applying Security Policies in RHEL
Автор: Tony Kolstee
Загружено: 2022-01-08
Просмотров: 1427
Описание:
Demonstration of how to apply premade security policies in RHEL at both install and runtime. In this case we are applying the CIS RHEL8 Benchmark for servers, level 2, to a RHEL8 server.
Red Hat provided packages required at runtime:
openscap-scanner
openscap-utils
scap-security-guide
SCAP Commands:
export SSG=/usr/share/xml/scap/ssg/content/ssg-rhel8-ds.xml
oscap info $SSG
oscap info --profile cis $SSG
oscap xccdf eval --profile cis --results results1.xml --report report1.html $SSG
oscap xccdf generate fix --profile cis --fix-type ansible --output remediations.yml results1.xml
oscap xccdf generate fix --profile cis --fix-type bash --output remediations.sh results1.xml
./remediations.sh
oscap xccdf eval --profile cis --results results2.xml --report report2.html $SSG
Повторяем попытку...
Доступные форматы для скачивания:
Скачать видео
-
Информация по загрузке: