|
Packit Service |
39273c |
|
|
Packit Service |
39273c |
<Benchmark xmlns="http://checklists.nist.gov/xccdf/1.2" id="xccdf_moc.elpmaxe.www_benchmark_first">
|
|
Packit Service |
39273c |
<status>incomplete</status>
|
|
Packit Service |
39273c |
<version>1.0</version>
|
|
Packit Service |
39273c |
<Profile id="xccdf_com.example_profile_my_profile">
|
|
Packit Service |
39273c |
<title>My testing profile</title>
|
|
Packit Service |
39273c |
<description>A profile for testing purposes.</description>
|
|
Packit Service |
39273c |
<select selected="true" idref="xccdf_moc.elpmaxe.www_rule_first"/>
|
|
Packit Service |
39273c |
<select selected="true" idref="xccdf_com.example_rule_tmp_part"/>
|
|
Packit Service |
39273c |
<select selected="true" idref="xccdf_com.example_rule_passwd_min_len"/>
|
|
Packit Service |
39273c |
<select selected="true" idref="xccdf_com.example_rule_telnet_not_installed"/>
|
|
Packit Service |
39273c |
<select selected="true" idref="xccdf_com.example_rule_iptables_installed"/>
|
|
Packit Service |
39273c |
</Profile>
|
|
Packit Service |
39273c |
<Profile id="xccdf_com.example_profile_my_profile2">
|
|
Packit Service |
39273c |
<title>My testing profile2</title>
|
|
Packit Service |
39273c |
<description>Another profile for testing purposes.</description>
|
|
Packit Service |
39273c |
<select selected="true" idref="xccdf_com.example_rule_telnet_not_installed"/>
|
|
Packit Service |
39273c |
<select selected="true" idref="xccdf_com.example_rule_iptables_installed"/>
|
|
Packit Service |
39273c |
</Profile>
|
|
Packit Service |
39273c |
<Rule selected="false" id="xccdf_moc.elpmaxe.www_rule_first">
|
|
Packit Service |
39273c |
<fix reboot="false" disruption="low" system="urn:xccdf:fix:script:sh">
|
|
Packit Service |
39273c |
touch /root/must_exist.txt
|
|
Packit Service |
39273c |
</fix>
|
|
Packit Service |
39273c |
<check system="http://oval.mitre.org/XMLSchema/oval-definitions-5">
|
|
Packit Service |
39273c |
<check-content-ref href="scap-mycheck-oval.xml" name="oval:org.open-scap.f14:def:20000"/>
|
|
Packit Service |
39273c |
</check>
|
|
Packit Service |
39273c |
</Rule>
|
|
Packit Service |
39273c |
<Rule selected="false" id="xccdf_com.example_rule_tmp_part">
|
|
Packit Service |
39273c |
<fix reboot="false" disruption="high" system="urn:redhat:anaconda:pre">
|
|
Packit Service |
39273c |
part /tmp --mountoptions="nodev,noauto"
|
|
Packit Service |
39273c |
</fix>
|
|
Packit Service |
39273c |
</Rule>
|
|
Packit Service |
39273c |
<Rule selected="false" id="xccdf_com.example_rule_passwd_min_len">
|
|
Packit Service |
39273c |
<fix reboot="false" disruption="high" system="urn:redhat:anaconda:pre">
|
|
Packit Service |
39273c |
passwd --minlen=10
|
|
Packit Service |
39273c |
</fix>
|
|
Packit Service |
39273c |
</Rule>
|
|
Packit Service |
39273c |
<Rule selected="false" id="xccdf_com.example_rule_telnet_not_installed">
|
|
Packit Service |
39273c |
<fix reboot="false" disruption="high" system="urn:redhat:anaconda:pre">
|
|
Packit Service |
39273c |
package --remove=telnet
|
|
Packit Service |
39273c |
</fix>
|
|
Packit Service |
39273c |
</Rule>
|
|
Packit Service |
39273c |
<Rule selected="false" id="xccdf_com.example_rule_iptables_installed">
|
|
Packit Service |
39273c |
<fix reboot="false" disruption="high" system="urn:redhat:anaconda:pre">
|
|
Packit Service |
39273c |
package --add=iptables
|
|
Packit Service |
39273c |
</fix>
|
|
Packit Service |
39273c |
</Rule>
|
|
Packit Service |
39273c |
</Benchmark>
|