From mboxrd@z Thu Jan 1 00:00:00 1970 From: Steve Grubb Subject: Re: STIG issue with auditctl -l Date: Thu, 20 Nov 2014 12:08:51 -0500 Message-ID: <32197423.hiQ8eKy0QW@x2> References: <2556417.QbYXNFcFXW@x2> Mime-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit Return-path: In-Reply-To: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Sender: linux-audit-bounces@redhat.com Errors-To: linux-audit-bounces@redhat.com To: linux-audit@redhat.com List-Id: linux-audit@redhat.com On Thursday, November 20, 2014 11:56:50 AM leam hall wrote: > Steve, as always I appreciate your fast response and awesome help! I'm > collating stuff to send up the chain. I discussed this a couple weeks back on the SCAP Security Guide mail list: https://lists.fedorahosted.org/pipermail/scap-security-guide/2014-October/006251.html You might want to review that thread because I pointed out a couple more mistakes that its making. Not to mention, if you have to STIG a box, wouldn't you want to have a scanner to tell you that you are in compliance? SSG + openscap solves this problem in an open source way. -Steve