-
Notifications
You must be signed in to change notification settings - Fork 764
Add Amazon Linux 2023 DISA STIG Profile #14238
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
…ew and validation of each control.
bring up to date
|
Hi @Eric-Domeier. Thanks for your PR. I'm waiting for a github.com member to verify that this patch is reasonable to test. If it is, they should reply with Once the patch is verified, the new status will be reflected by the I understand the commands that are listed here. DetailsInstructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. |
|
Amazon linux ships with oscap version 1.3.9 which appears to be the reason why the results file was not able to be imported into STIG Viewer. After building oscap from source on the Amazon Linux 2023 box with version 1.4.3, the results file is able to be imported into stig viewer. Remaining tasks to complete this PR is to go through all the rules to ensure they are correct - a majority appear to be coming back as N/A |
ATEX Test ResultsTest artifacts have been submitted to Testing Farm. Results: View Test Results This comment was automatically generated by the ATEX workflow. |
|
Moved this PR to here to remove the failing merge commit issue |

Description:
Rationale:
Amazon linux 2023 stig profile is useful for federal agencies, cmmc, fedramp etc.
Amazon Linux 2023 Department of War (Previously Department of Defense) STIG #13885
Review Hints:
This builds off of @jesseborden branch, attempts to get the --stig-viewer flag working properly.
products/al2023/overlays/srg_support.xml is just a copy paste from products/rhel8/overlays/srg_support.xml with name replaced, the content hasn't actually been checked yet.
I haven't verified the content in controls/stig_al2023.yml yet
modifies applicability templates to ensure checks are applicable for al2023