Skip to content

Commit

Permalink
fixed,regex: Ensure auditing for processes that start prior to auditd…
Browse files Browse the repository at this point in the history
… is enabled

Signed-off-by: Manuel Weber <manuel@mondoo.com>

fixed,regex: Ensure auditing for processes that start prior to auditd is enabled++

Signed-off-by: Manuel Weber <manuel@mondoo.com>

fixed,regex: Ensure changes to system administration scope (sudoers) is collected

Signed-off-by: Manuel Weber <manuel@mondoo.com>

fixed,replaced command: Ensure changes to system administration scope (sudoers) is collected

Signed-off-by: Manuel Weber <manuel@mondoo.com>

added,regex: Ensure login and logout events are collected

Signed-off-by: Manuel Weber <manuel@mondoo.com>

fixed,regex: Ensure session initiation information is collected

Signed-off-by: Manuel Weber <manuel@mondoo.com>

added: manuel/linux-policy-improvements

Signed-off-by: Manuel Weber <manuel@mondoo.com>

fixed,regex: Ensure events that modify date and time information are collected

Signed-off-by: Manuel Weber <manuel@mondoo.com>

fixed,regex:  Ensure events that modify the systems Mandatory Access Controls are collected

Signed-off-by: Manuel Weber <manuel@mondoo.com>

fixed,regex: Ensure events that modify the systems network environment are collected

Signed-off-by: Manuel Weber <manuel@mondoo.com>

fixed,regex: Ensure unsuccessful unauthorized file access attempts are collected

Signed-off-by: Manuel Weber <manuel@mondoo.com>

fixed,regex:Ensure discretionary access control permission modification events are collected

Signed-off-by: Manuel Weber <manuel@mondoo.com>

fixed,regex: Ensure events that modify user/group information are collected

Signed-off-by: Manuel Weber <manuel@mondoo.com>

fixed,regex: Ensure file deletion events by users are collected

Signed-off-by: Manuel Weber <manuel@mondoo.com>

fixed,regex: Ensure kernel module loading and unloading is collected

Signed-off-by: Manuel Weber <manuel@mondoo.com>

added: Ensure system administrator actions (sudolog) are collected

Signed-off-by: Manuel Weber <manuel@mondoo.com>

added: Ensure the audit configuration is immutable

Signed-off-by: Manuel Weber <manuel@mondoo.com>

regex start changed to include potential whitespace

Signed-off-by: Manuel Weber <manuel@mondoo.com>

regex end changed to include potential whitespace

Signed-off-by: Manuel Weber <manuel@mondoo.com>

fixed,regex: Ensure sudo logging is enabled

Signed-off-by: Manuel Weber <manuel@mondoo.com>

fixed first remedeation

Signed-off-by: Manuel Weber <manuel@mondoo.com>

added remediation fixes

Signed-off-by: Manuel Weber <manuel@mondoo.com>

added remediation fixes++

Signed-off-by: Manuel Weber <manuel@mondoo.com>
  • Loading branch information
mm-weber committed Dec 6, 2022
1 parent 387169f commit b3e58d1
Showing 1 changed file with 276 additions and 73 deletions.
Loading

0 comments on commit b3e58d1

Please sign in to comment.