Skip to content

Commit 8698542

Browse files
committed
-Update applications references
- Remove STIG format validator as it doesn't apply for all STIG IDS
1 parent c7bc537 commit 8698542

File tree

82 files changed

+81
-88
lines changed
  • applications
    • openshift
    • openstack
      • keystone
        • keystone_disable_user_account_days_inactive
        • keystone_lockout_duration
        • keystone_lockout_failure_attempts
      • keystone_container
        • container_keystone_disable_user_account_days_inactive
        • container_keystone_lockout_duration
        • container_keystone_lockout_failure_attempts
  • linux_os/guide/system
    • accounts/accounts-restrictions/account_expiration/account_temp_expire_date
    • auditing/auditd_configure_rules/audit_rules_usergroup_modification
  • ssg

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

82 files changed

+81
-88
lines changed

applications/openshift/api-server/api_server_client_ca/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -42,7 +42,7 @@ references:
4242
cis: 1.2.31
4343

4444
identifiers:
45-
cce@ocp3: 81152-1
45+
cce@ocp3: CCE-81152-1
4646

4747
ocil_clause: '<tt>clientCA</tt> is not set as appropriate for <tt>servingInfo</tt>'
4848

applications/openshift/controller/controller_bind_address/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -40,7 +40,7 @@ rationale: |-
4040
severity: low
4141

4242
identifiers:
43-
cce@ocp3: 80587-9
43+
cce@ocp3: CCE-80587-9
4444

4545
ocil_clause: |-
4646
<tt>bind-address</tt> is not configured to a secure IP address

applications/openshift/controller/controller_disable_profiling/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -38,7 +38,7 @@ rationale: |-
3838
severity: low
3939

4040
identifiers:
41-
cce@ocp3: 83000-0
41+
cce@ocp3: CCE-83000-0
4242

4343
ocil_clause: |-
4444
<tt>OPENSHIFT_PROFILE</tt> is configured to <tt>web</tt> or enabled.

applications/openshift/controller/controller_rotate_kubelet_server_certs/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -56,7 +56,7 @@ ocil: |-
5656
{{%- endif %}}
5757

5858
identifiers:
59-
cce@ocp3: 80590-3
59+
cce@ocp3: CCE-80590-3
6060

6161
references:
6262
cis: 1.3.6

applications/openshift/controller/controller_terminated_pod_gc_threshhold/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -54,7 +54,7 @@ ocil: |-
5454
The returned value of <tt>terminated-pod-gc-threshold</tt> should be greater than zero.
5555

5656
identifiers:
57-
cce@ocp3: 80592-9
57+
cce@ocp3: CCE-80592-9
5858

5959
references:
6060
cis: 1.3.1

applications/openshift/controller/controller_use_service_account/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -56,7 +56,7 @@ ocil: |-
5656
The value of <tt>use-service-account-credentials</tt> should be <tt>true</tt>.
5757

5858
identifiers:
59-
cce@ocp3: 80593-7
59+
cce@ocp3: CCE-80593-7
6060

6161
references:
6262
cis: 1.3.3

applications/openshift/etcd/etcd_auto_tls/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -21,7 +21,7 @@ rationale: |-
2121
severity: medium
2222

2323
identifiers:
24-
cce@ocp3: 80573-9
24+
cce@ocp3: CCE-80573-9
2525

2626
references:
2727
cis: '2.3'

applications/openshift/etcd/etcd_cert_file/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ rationale: |-
2222
severity: medium
2323

2424
identifiers:
25-
cce@ocp3: 80577-0
25+
cce@ocp3: CCE-80577-0
2626

2727
references:
2828
cis: '2.1'

applications/openshift/etcd/etcd_client_cert_auth/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,7 @@ rationale: |-
1818
severity: medium
1919

2020
identifiers:
21-
cce@ocp3: 80579-6
21+
cce@ocp3: CCE-80579-6
2222

2323
references:
2424
cis: '2.2'

applications/openshift/etcd/etcd_key_file/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ rationale: |-
2222
severity: medium
2323

2424
identifiers:
25-
cce@ocp3: 80578-8
25+
cce@ocp3: CCE-80578-8
2626

2727
references:
2828
cis: '2.1'

applications/openshift/etcd/etcd_max_wals/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,7 @@ rationale: |-
1818
severity: medium
1919

2020
identifiers:
21-
cce@ocp3: 80584-6
21+
cce@ocp3: CCE-80584-6
2222

2323
references:
2424
cis: 1.5.8

applications/openshift/etcd/etcd_peer_auto_tls/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -21,7 +21,7 @@ rationale: |-
2121
severity: medium
2222

2323
identifiers:
24-
cce@ocp3: 80583-8
24+
cce@ocp3: CCE-80583-8
2525

2626
references:
2727
cis: '2.6'

applications/openshift/etcd/etcd_peer_cert_file/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ rationale: |-
2222
severity: medium
2323

2424
identifiers:
25-
cce@ocp3: 80580-4
25+
cce@ocp3: CCE-80580-4
2626

2727
references:
2828
cis: '2.4'

applications/openshift/etcd/etcd_peer_client_cert_auth/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,7 @@ rationale: |-
1818
severity: medium
1919

2020
identifiers:
21-
cce@ocp3: 80582-0
21+
cce@ocp3: CCE-80582-0
2222

2323
references:
2424
cis: '2.5'

applications/openshift/etcd/etcd_peer_key_file/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@ rationale: |-
2222
severity: medium
2323

2424
identifiers:
25-
cce@ocp3: 80581-2
25+
cce@ocp3: CCE-80581-2
2626

2727
references:
2828
cis: '2.4'

applications/openshift/etcd/etcd_unique_ca/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -24,7 +24,7 @@ rationale: |-
2424
severity: medium
2525

2626
identifiers:
27-
cce@ocp3: 80585-3
27+
cce@ocp3: CCE-80585-3
2828

2929
references:
3030
cis: '2.7'

applications/openshift/etcd/etcd_wal_dir/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,7 @@ rationale: |-
1818
severity: medium
1919

2020
identifiers:
21-
cce@ocp3: 80586-1
21+
cce@ocp3: CCE-80586-1
2222

2323
#references:
2424
# cis: 1.5.7

applications/openshift/general/general_configure_imagepolicywebhook/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -38,7 +38,7 @@ ocil: |-
3838
{{%- endif %}}
3939

4040
identifiers:
41-
cce@ocp3: 81001-0
41+
cce@ocp3: CCE-81001-0
4242

4343
references:
4444
cis@ocp3: 1.6.7

applications/openshift/kubelet/kubelet_configure_client_ca/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -47,7 +47,7 @@ ocil: |-
4747
{{%- endif %}}
4848

4949
identifiers:
50-
cce@ocp3: 80594-5
50+
cce@ocp3: CCE-80594-5
5151

5252
references:
5353
cis@ocp3: 2.1.4

applications/openshift/kubelet/kubelet_configure_event_creation/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -39,7 +39,7 @@ ocil: |-
3939
The output should return <tt>0</tt>.
4040

4141
identifiers:
42-
cce@ocp3: 80595-2
42+
cce@ocp3: CCE-80595-2
4343

4444
references:
4545
cis@ocp3: 2.1.11

applications/openshift/kubelet/kubelet_configure_tls_cert/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -28,7 +28,7 @@ rationale: |-
2828
severity: medium
2929

3030
identifiers:
31-
cce@ocp3: 80596-0
31+
cce@ocp3: CCE-80596-0
3232

3333
references:
3434
cis@ocp3: 2.1.12

applications/openshift/kubelet/kubelet_configure_tls_key/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -28,7 +28,7 @@ rationale: |-
2828
severity: medium
2929

3030
identifiers:
31-
cce@ocp3: 80597-8
31+
cce@ocp3: CCE-80597-8
3232

3333
references:
3434
cis@ocp3: 2.1.12

applications/openshift/kubelet/kubelet_disable_cadvisor_port/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -28,7 +28,7 @@ ocil: |-
2828
The output should return <tt>0</tt>.
2929
3030
identifiers:
31-
cce@ocp3: 80599-4
31+
cce@ocp3: CCE-80599-4
3232

3333
references:
3434
cis: 2.1.13

applications/openshift/kubelet/kubelet_disable_hostname_override/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,7 @@ ocil: |-
2525
The output should return no output.
2626
2727
identifiers:
28-
cce@ocp3: 80600-0
28+
cce@ocp3: CCE-80600-0
2929

3030
references:
3131
cis: 2.1.10

applications/openshift/kubelet/kubelet_disable_readonly_port/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -39,7 +39,7 @@ ocil: |-
3939
{{%- endif %}}
4040

4141
identifiers:
42-
cce@ocp3: 80601-8
42+
cce@ocp3: CCE-80601-8
4343

4444
references:
4545
cis@ocp3: 2.1.5

applications/openshift/kubelet/kubelet_enable_client_cert_rotation/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -41,7 +41,7 @@ ocil: |-
4141
The output should return <tt>true</tt>.
4242

4343
identifiers:
44-
cce@ocp3: 80603-4
44+
cce@ocp3: CCE-80603-4
4545

4646
references:
4747
cis@ocp3: 2.1.14

applications/openshift/kubelet/kubelet_enable_iptables_util_chains/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -42,7 +42,7 @@ ocil: |-
4242
The output should return <tt>true</tt>.
4343

4444
identifiers:
45-
cce@ocp3: 80604-2
45+
cce@ocp3: CCE-80604-2
4646

4747
references:
4848
cis: 2.1.8

applications/openshift/kubelet/kubelet_enable_server_cert_rotation/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -42,7 +42,7 @@ ocil: |-
4242
The output should return <tt>true</tt>.
4343

4444
identifiers:
45-
cce@ocp3: 80606-7
45+
cce@ocp3: CCE-80606-7
4646

4747
references:
4848
cis@ocp3: 1.3.7

applications/openshift/kubelet/kubelet_enable_streaming_connections/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -40,7 +40,7 @@ ocil: |-
4040
{{%- endif %}}
4141

4242
identifiers:
43-
cce@ocp3: 80607-5
43+
cce@ocp3: CCE-80607-5
4444

4545
references:
4646
cis@ocp3: 2.1.6

applications/openshift/ocp-permissions/ocp-files/file_groupowner_master_admin_conf/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ rationale: |-
1414
severity: medium
1515

1616
identifiers:
17-
cce@ocp3: 80610-9
17+
cce@ocp3: CCE-80610-9
1818

1919
references:
2020
cis: 1.4.14

applications/openshift/ocp-permissions/ocp-files/file_groupowner_master_api_server/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ rationale: |-
1414
severity: medium
1515

1616
identifiers:
17-
cce@ocp3: 80576-2
17+
cce@ocp3: CCE-80576-2
1818

1919
references:
2020
cis: 1.4.2

applications/openshift/ocp-permissions/ocp-files/file_groupowner_master_cni_conf/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -15,7 +15,7 @@ rationale: |-
1515
severity: medium
1616

1717
identifiers:
18-
cce@ocp3: 80611-7
18+
cce@ocp3: CCE-80611-7
1919

2020
references:
2121
cis: 1.4.10

applications/openshift/ocp-permissions/ocp-files/file_groupowner_master_controller_manager/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ rationale: |-
1414
severity: medium
1515

1616
identifiers:
17-
cce@ocp3: 80612-5
17+
cce@ocp3: CCE-80612-5
1818

1919
references:
2020
cis: 1.4.4,1.4.6

applications/openshift/ocp-permissions/ocp-files/file_groupowner_master_etcd/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ rationale: |-
1414
severity: medium
1515

1616
identifiers:
17-
cce@ocp3: 80613-3
17+
cce@ocp3: CCE-80613-3
1818

1919
references:
2020
cis: 1.4.2

applications/openshift/ocp-permissions/ocp-files/file_groupowner_master_openshift_conf/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ rationale: |-
1414
severity: medium
1515

1616
identifiers:
17-
cce@ocp3: 80614-1
17+
cce@ocp3: CCE-80614-1
1818

1919
references:
2020
cis: 1.4.18

applications/openshift/ocp-permissions/ocp-files/file_groupowner_master_openshift_kubeconfig/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ rationale: |-
1414
severity: medium
1515

1616
identifiers:
17-
cce@ocp3: 80615-8
17+
cce@ocp3: CCE-80615-8
1818

1919
references:
2020
cis: 1.4.18

applications/openshift/ocp-permissions/ocp-files/file_groupowner_master_openvswitch/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -15,7 +15,7 @@ rationale: |-
1515
severity: medium
1616

1717
identifiers:
18-
cce@ocp3: 82172-8
18+
cce@ocp3: CCE-82172-8
1919

2020
references:
2121
cis: 1.4.10

applications/openshift/ocp-permissions/ocp-files/file_groupowner_master_scheduler_conf/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ rationale: |-
1414
severity: medium
1515

1616
identifiers:
17-
cce@ocp3: 80616-6
17+
cce@ocp3: CCE-80616-6
1818

1919
references:
2020
cis: 1.4.16

applications/openshift/ocp-permissions/ocp-files/file_groupowner_node_config/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ rationale: |-
1414
severity: medium
1515

1616
identifiers:
17-
cce@ocp3: 80617-4
17+
cce@ocp3: CCE-80617-4
1818

1919
references:
2020
cis: 2.2.2

applications/openshift/ocp-permissions/ocp-files/file_groupowner_node_kubeconfig/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ rationale: |-
1313
severity: medium
1414

1515
identifiers:
16-
cce@ocp3: 80618-2
16+
cce@ocp3: CCE-80618-2
1717

1818
references:
1919
cis: 2.2.2

applications/openshift/ocp-permissions/ocp-files/file_groupowner_openshift_node_client_crt/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ rationale: |-
1414
severity: medium
1515

1616
identifiers:
17-
cce@ocp3: 80619-0
17+
cce@ocp3: CCE-80619-0
1818

1919
references:
2020
cis: 2.2.8

applications/openshift/ocp-permissions/ocp-files/file_groupowner_openshift_node_service/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ rationale: |-
1414
severity: medium
1515

1616
identifiers:
17-
cce@ocp3: 80620-8
17+
cce@ocp3: CCE-80620-8
1818

1919
references:
2020
cis: 2.2.4

applications/openshift/ocp-permissions/ocp-files/file_groupowner_var_lib_etcd/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ rationale: |-
1414
severity: medium
1515

1616
identifiers:
17-
cce@ocp3: 80621-6
17+
cce@ocp3: CCE-80621-6
1818

1919
references:
2020
cis: 1.4.12

applications/openshift/ocp-permissions/ocp-files/file_owner_master_admin_conf/rule.yml

+1-1
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ rationale: |-
1414
severity: medium
1515

1616
identifiers:
17-
cce@ocp3: 80622-4
17+
cce@ocp3: CCE-80622-4
1818

1919
references:
2020
cis: 1.4.14

0 commit comments

Comments
 (0)