Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Jammy STIG Compliance Release #274

Open
kcbimonte opened this issue Dec 17, 2024 · 4 comments
Open

Jammy STIG Compliance Release #274

kcbimonte opened this issue Dec 17, 2024 · 4 comments
Assignees
Labels
enhancement New feature or request

Comments

@kcbimonte
Copy link

Is your feature request related to a problem? Please describe.

The current jammy-compliance-release does not provide remediations aligned to the DISA Ubuntu Jammy STIG even though the STIG has been released for some time.

Describe the solution you'd like

The DISA STIG for Ubuntu 22.04 was release earlier this year with it being on Ver 2, Rel 2 today (2024-12-17) (STIGs Document Library). The current jammy-compliance-release only contains fixes that address findings found by CIS scanner.

The solution requested is to update the jammy-compliance-release to address findings documented by the results of the Compliance Scanner / DISA STIG.

Describe alternatives you've considered

No other solutions considered

Additional context

No response

@kcbimonte kcbimonte added the enhancement New feature or request label Dec 17, 2024
@xtreme-nitin-ravindran
Copy link
Contributor

@kcbimonte There is a stig job to fix Jammy STIG compliance failures. Readme

@kcbimonte
Copy link
Author

Thanks for the response. Looking at the readme, it looks like it's targeting Bionic and hasn't actually been created for Jammy yet. Is the readme just incorrect here? Excerpt below

The stig is intended to be used to change the stemcell configurations to pass Bionic STIG rules, since a Jammy STIG has not been published yet

@xtreme-nitin-ravindran
Copy link
Contributor

The job has fixes for Jammy STIG Ver 1, Rel 1. The readme needs to updated. Thanks for catching this.
I will update the Compliance Scanner and the jammy-compliance-release to Jammy Ver 2, Rel 2.

@kcbimonte
Copy link
Author

Perfect, sounds good. Feel free to use this issue to track the update to V2R2 and cleanup the readme or close it

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

2 participants