-
Mon Jan 29 2024 Edgar Aguilar <edgar.aguilar@oracle.com> - 0.1.69-1.0.3
- Update stig profiles to latest DISA standard V2r14 [Orabug: 36237419]
- Make sssd rules look into /etc/sssd/conf.d/*.conf files for the desired
configuration [Orabug: 36237419]
-
Thu Aug 31 2023 Edgar Aguilar <edgar.aguilar@oracle.com> - 0.1.69-1.0.1
- Fix url to remote oval definitions [Orabug: 35441381]
- Update jinja conditionals in source, so built contents include all expected
strings/code [Orabug: 35450273]
- Update vendor references to mention Oracle and Oracle Linux [Orabug: 35450273]
- Update rhel7 project profiles to use oracle gpgkey [Orabug: 33612582]
- Update rhel7 profiles to generate Oracle Linux 7 content [Orabug: 33612582]
- Update source to generate Oracle Linux 7 content [Orabug: 33612582]
- Add ntpd and chronyd OL approved servers support [Orabug: 33612582]
- Add UEFI boot loader rules to Oracle Linux 7 profiles [Orabug: 33612582]
- Fix OL7 mapping in stable_profile_ids test [Orabug: 33612582]
- Update OL7 Essential Eight profile [Orabug: 33612582]
- Disable cis profile [Orabug: 33612582]
- Disable new CIS and stig_gui profiles for RHEL7 product [Orabug: 34195638]
- Update OL7 STIG to V2R12 [Orabug: 35663532]
- Update OL8 STIG to V1R7 [Orabug: 35765451]
-
Fri Aug 04 2023 Jan Černý <jcerny@redhat.com> - 0.1.69-1
- Rebase to the latest upstream release (RHBZ#2221694)
- Make IPv6 related rules applicable only in case IPv6 is actually enabled. (RHBZ#2210276)
- update ANSSI BP-028 profiles to be aligned with version 2.0 (RHBZ#2155793)
- Correct URL used to download CVE checks. (RHBZ#2223817)
-
Tue Feb 14 2023 Watson Sato <wsato@redhat.com> - 0.1.66-1
- Rebase to a new upstream release 0.1.66 (RHBZ#2158410)
- Update RHEL7 STIG profile to V3R10 (RHBZ#2152657)
- Align file_permissions_sshd_private_key with DISA Benchmark (RHBZ#2123284)
- Fix remediation of audit watch rules (RHBZ#2123367)
- Fix check firewalld_sshd_port_enabled (RHBZ#2158410)
- Fix accepted control flags for pam_pwhistory (RHBZ#2158410)
- Unselect rule logind_session_timeout (RHBZ#2158410)
- Add support rainer scripts in rsyslog rules (RHBZ#2170038)
-
Tue Aug 09 2022 Watson Sato <wsato@redhat.com> - 0.1.63-1
- Update to the latest upstream release (RHBZ#2116359)
- Fix SSH Key permissions (RHBZ#2021258)
- Remove PCI-DSS Benchmark(RHBZ2038165)
- Updated source of CVE data feed(RHBZ#2028432)
- Improved alignment with DISA's RHEL7 STIG(RHBZ#1967950)
- Update RHEL7 STIG profile to v3r8 (RHBZ#2112939)
- Add warning how to override audit buffer (RHBZ#1993822)
- Fix smartcard_auth rule for systems installed without authconfig (RHBZ#2116359)
- Fix check of enable_fips_mode on s390x (RHBZ#2116359)
- Fix applicability of pam_pkcs11 and grub2 rules on s390x (RHBZ#2116359)
-
Tue May 03 2022 Watson Sato <wsato@redhat.com> - 0.1.57-8
- Remove warning how to override audit buffer (RHBZ#1993822)
-
Wed Apr 27 2022 Watson Sato <wsato@redhat.com> - 0.1.57-7
- Add warning how to override audit buffer (RHBZ#1993822)
- Fix name of antivirus package in STIG profile (RHBZ#2066321)
- Update RHEL7 DISA STIG profile to v3r7 (RHBZ#2079217)
-
Fri Feb 25 2022 Gabriel Becker <ggasparb@redhat.com> - 0.1.57-6
- Fix bash remediation of sudo_require_reauthentication (RHBZ#2049532)
-
Thu Feb 17 2022 Gabriel Becker <ggasparb@redhat.com> - 0.1.57-5
- Update RHEL7 DISA STIG profile to v3r6 (RHBZ#2049532)
-
Tue Nov 02 2021 Gabriel Becker <ggasparb@redhat.com> - 0.1.57-4
- Update RHEL7 DISA STIG profile to v3r5 (RHBZ#1996678)