-
Sun Nov 22 2015 Jingdong Lu <jingdong.lu@oracle.com> 0.1.25-3.0.2
- Update "Security Policy" UI interface during installation [22127080]
-
Thu Nov 19 2015 Jacob Wang <jacob.wang@oracle.com> 0.1.25-3.0.1
- Oracle files:docs/RedHat/en-US/images/image_right.png docs/RedHat/en-US/images/rhlogo.png docs/RedHat/en-US/images/documentation.png docs/RedHat/en-US/images/image_left.png
- Oracle files:JBossEAP5/docs/jboss_logo.png JBossFuse6/docs/jboss_logo.png
- Fixed initial OL CPE patch placing oval cpe checks to shared/oval (ilya.okomin@oracle.com)
- Updated platform metadata value: multi_platform_all (ilya.okomin@oracle.com)
- Replace jboss_logo.png and redhat image under docs/RedHat/en-US/images/ in tarball.
- Added OL6 and OL7 CPE names approved by NIST support (ilya.okomin@oracle.com)
- Update description for Oracle Linux
-
Fri Oct 02 2015 Jan iankko Lieskovsky <jlieskov@redhat.com> 0.1.25-3
- Drop "Verify and Correct File Permissions with RPM" rule from the PCI-DSS
profile for Red Hat Enterprise Linux 7 (RH BZ#1267861)
-
Wed Sep 09 2015 Jan iankko Lieskovsky <jlieskov@redhat.com> 0.1.25-2
- Update R and BR for the openscap-scanner package to 1.2.5 per RHBZ#1202762#c7
-
Wed Aug 19 2015 Jan iankko Lieskovsky <jlieskov@redhat.com> 0.1.25-1
- Rebase to upstream 0.1.25 release
-
Tue Aug 04 2015 Jan iankko Lieskovsky <jlieskov@redhat.com> 0.1.24-4
- Fix false-positive in OVAL check for 'accounts_passwords_pam_faillock_deny'
rule
-
Mon Aug 03 2015 Jan iankko Lieskovsky <jlieskov@redhat.com> 0.1.24-3
- Add remediation script for 'accounts_passwords_pam_faillock_unlock_time' rule
for Red Hat Enterprise Linux 7 product
- Override title and description for all existing profiles for Red Hat
Enterprise Linux 6 product that are extending another SCAP profile
(RHBZ#1246529)
- Correct various issues in the included Oscap Anaconda Addon PCI-DSS profile
kickstart file for Red Hat Enterprise Linux 7 product
- Add remediation script for 'audit_rules_time_clock_settime' rule for
Red Hat Enterprise Linux 7 product
- Add remediation scripts for 'audit_rules_time_adjtimex',
'audit_rules_time_settimeofday', and 'audit_rules_time_stime' rules for
Red Hat Enterprise Linux 7 product
- Tag current PCI-DSS profile for Red Hat Enterprise Linux 7 product with
"Draft" label
- Disable the following rules in the PCI-DSS profile for the Red Hat Enterprise
Linux 7 product:
* dconf_gnome_screensaver_idle_delay -- missing remediation script,
* dconf_gnome_screensaver_idle_activation -- missing remediation script,
* dconf_gnome_screensaver_lock_enabled -- missing remediation script,
* audit_rules_login_events -- incorrect OVAL check (upstream issue #607),
* audit_rules_privileged_commands -- missing remediation script, and
* audit_rules_immutable -- missing remediation script.
-
Mon Aug 03 2015 Martin Preisler <mpreisle@redhat.com> 0.1.24-2
- Break-down firewalld rule description for Red Hat Enterprise Linux 7 product
into multiple lines, prevents HTML guide UX issues
-
Tue Jul 07 2015 Jan iankko Lieskovsky <jlieskov@redhat.com> 0.1.24-1
- Rebase to upstream scap-security-guide-0.1.24 version
- Start producing the -doc subpackage to provide the HTML formatted
documents containing security guides generated from shipped XCCDF benchmarks
-
Mon Jun 22 2015 Jan iankko Lieskovsky <jlieskov@redhat.com> 0.1.23-1
- Rebase to upstream scap-security-guide-0.1.23 version
- Update upstream tarball source URL to GitHub archive location
- Drop the following patches that have been accepted upstream:
* scap-security-guide-0.1.19-rhel7-include-only-rht-ccp-profile.patch
* scap-security-guide-0.1.19-rhel7-drop-restorecond-since-in-optional.patch
* scap-security-guide-0.1.19-update-man-page-for-rhel7-content.patch
* scap-security-guide-0.1.19-rhel7-update-pam-XCCDF-to-use-pam_pwquality.patch
* scap-security-guide-0.1.20-rhel7-shared-fix-limit-password-reuse-remediation.patch
* scap-security-guide-0.1.20-rhel6-rhel7-PR#280-set-deny-prerequisite-#1.patch
* scap-security-guide-0.1.20-rhel6-rhel7-set-deny-prerequisite-#2.patch
* scap-security-guide-0.1.20-shared-fix-set-deny-for-failed-password-attempts-remediation.patch
* scap-security-guide-0.1.20-rhel7-specify-exact-profile-name-when-generating-guide.patch
- Include the datastream versions of Firefox and Java Runtime Environment (JRE) benchmarks
- Include USGCB and DISA STIG profile kickstart files for Red Hat Enterprise Linux 6