Blame SOURCES/scap-security-guide-0.1.58-RHEL_08_010630-PR_7250.patch

9be3b2
From 4ac2a6db67e03e616b26d39fb0620d4656bac65b Mon Sep 17 00:00:00 2001
9be3b2
From: Matthew Burket <mburket@redhat.com>
9be3b2
Date: Wed, 14 Jul 2021 13:19:42 -0500
9be3b2
Subject: [PATCH] Add RHEL-08-010590 STIG to existing rule
9be3b2
9be3b2
---
9be3b2
 products/rhel8/profiles/stig.profile                          | 1 +
9be3b2
 tests/data/profile_stability/rhel8/stig.profile               | 1 +
9be3b2
 tests/data/profile_stability/rhel8/stig_gui.profile           | 1 +
9be3b2
 3 files changed, 3 insertions(+)
9be3b2
9be3b2
diff --git a/products/rhel8/profiles/stig.profile b/products/rhel8/profiles/stig.profile
9be3b2
index 2508008d511..fef1965fb1d 100644
9be3b2
--- a/products/rhel8/profiles/stig.profile
9be3b2
+++ b/products/rhel8/profiles/stig.profile
9be3b2
@@ -341,6 +341,7 @@ selections:
9be3b2
     - mount_option_nodev_nonroot_local_partitions
9be3b2
 
9be3b2
     # RHEL-08-010590
9be3b2
+    - mount_option_home_noexec
9be3b2
 
9be3b2
     # RHEL-08-010600
9be3b2
     - mount_option_nodev_removable_partitions
9be3b2
diff --git a/tests/data/profile_stability/rhel8/stig.profile b/tests/data/profile_stability/rhel8/stig.profile
9be3b2
index 765487c6f16..843d8eb7d0a 100644
9be3b2
--- a/tests/data/profile_stability/rhel8/stig.profile
9be3b2
+++ b/tests/data/profile_stability/rhel8/stig.profile
9be3b2
@@ -156,6 +156,7 @@ selections:
9be3b2
 - mount_option_dev_shm_nodev
9be3b2
 - mount_option_dev_shm_noexec
9be3b2
 - mount_option_dev_shm_nosuid
9be3b2
+- mount_option_home_noexec
9be3b2
 - mount_option_home_nosuid
9be3b2
 - mount_option_nodev_nonroot_local_partitions
9be3b2
 - mount_option_nodev_remote_filesystems
9be3b2
diff --git a/tests/data/profile_stability/rhel8/stig_gui.profile b/tests/data/profile_stability/rhel8/stig_gui.profile
9be3b2
index 9fd80aac727..6dd0f08b142 100644
9be3b2
--- a/tests/data/profile_stability/rhel8/stig_gui.profile
9be3b2
+++ b/tests/data/profile_stability/rhel8/stig_gui.profile
9be3b2
@@ -167,6 +167,7 @@ selections:
9be3b2
 - mount_option_dev_shm_nodev
9be3b2
 - mount_option_dev_shm_noexec
9be3b2
 - mount_option_dev_shm_nosuid
9be3b2
+- mount_option_home_noexec
9be3b2
 - mount_option_home_nosuid
9be3b2
 - mount_option_nodev_nonroot_local_partitions
9be3b2
 - mount_option_nodev_remote_filesystems