Blame SOURCES/scap-security-guide-0.1.58-fix_STIG_references-PR_7371.patch

76240a
From 859684c560e948a439029b0d180fe23659d85141 Mon Sep 17 00:00:00 2001
76240a
From: Gabriel Becker <ggasparb@redhat.com>
76240a
Date: Tue, 10 Aug 2021 12:04:16 +0200
76240a
Subject: [PATCH] Remove inexistent and/or duplicated STIG references.
76240a
76240a
---
76240a
 .../package_xorg-x11-server-common_removed/rule.yml             | 1 -
76240a
 .../accounts_password_pam_unix_remember/rule.yml                | 1 -
76240a
 .../audit_rules_sysadmin_actions/rule.yml                       | 1 -
76240a
 .../file_ownership_var_log_audit/rule.yml                       | 1 -
76240a
 .../auditd_data_retention_space_left_action/rule.yml            | 2 +-
76240a
 .../harden_sshd_ciphers_openssh_conf_crypto_policy/rule.yml     | 1 -
76240a
 .../rule.yml                                                    | 2 +-
76240a
 .../crypto/harden_sshd_macs_openssh_conf_crypto_policy/rule.yml | 1 -
76240a
 8 files changed, 2 insertions(+), 8 deletions(-)
76240a
76240a
diff --git a/linux_os/guide/services/xwindows/disabling_xwindows/package_xorg-x11-server-common_removed/rule.yml b/linux_os/guide/services/xwindows/disabling_xwindows/package_xorg-x11-server-common_removed/rule.yml
76240a
index de8f0f6fd8..6e739d21a2 100644
76240a
--- a/linux_os/guide/services/xwindows/disabling_xwindows/package_xorg-x11-server-common_removed/rule.yml
76240a
+++ b/linux_os/guide/services/xwindows/disabling_xwindows/package_xorg-x11-server-common_removed/rule.yml
76240a
@@ -42,7 +42,6 @@ references:
76240a
     nist-csf: PR.AC-3,PR.PT-4
76240a
     srg: SRG-OS-000480-GPOS-00227
76240a
     stigid@rhel7: RHEL-07-040730
76240a
-    stigid@rhel8: RHEL-08-040320
76240a
 
76240a
 ocil_clause: 'the X Windows package group or xorg-x11-server-common has not be removed'
76240a
 
76240a
diff --git a/linux_os/guide/system/accounts/accounts-pam/locking_out_password_attempts/accounts_password_pam_unix_remember/rule.yml b/linux_os/guide/system/accounts/accounts-pam/locking_out_password_attempts/accounts_password_pam_unix_remember/rule.yml
76240a
index 9138681688..a2b66fc4d6 100644
76240a
--- a/linux_os/guide/system/accounts/accounts-pam/locking_out_password_attempts/accounts_password_pam_unix_remember/rule.yml
76240a
+++ b/linux_os/guide/system/accounts/accounts-pam/locking_out_password_attempts/accounts_password_pam_unix_remember/rule.yml
76240a
@@ -50,7 +50,6 @@ references:
76240a
     srg: SRG-OS-000077-GPOS-00045
76240a
     stigid@ol7: OL07-00-010270
76240a
     stigid@rhel7: RHEL-07-010270
76240a
-    stigid@rhel8: RHEL-08-020220
76240a
     stigid@sle15: SLES-15-020250
76240a
     stigid@ubuntu2004: UBTU-20-010070
76240a
     vmmsrg: SRG-OS-000077-VMM-000440
76240a
diff --git a/linux_os/guide/system/auditing/auditd_configure_rules/audit_rules_sysadmin_actions/rule.yml b/linux_os/guide/system/auditing/auditd_configure_rules/audit_rules_sysadmin_actions/rule.yml
76240a
index 12bca676d8..b4291e168c 100644
76240a
--- a/linux_os/guide/system/auditing/auditd_configure_rules/audit_rules_sysadmin_actions/rule.yml
76240a
+++ b/linux_os/guide/system/auditing/auditd_configure_rules/audit_rules_sysadmin_actions/rule.yml
76240a
@@ -50,7 +50,6 @@ references:
76240a
     srg: SRG-OS-000004-GPOS-00004,SRG-OS-000037-GPOS-00015,SRG-OS-000042-GPOS-00020,SRG-OS-000062-GPOS-00031,SRG-OS-000304-GPOS-00121,SRG-OS-000392-GPOS-00172,SRG-OS-000462-GPOS-00206,SRG-OS-000470-GPOS-00214,SRG-OS-000471-GPOS-00215,SRG-OS-000239-GPOS-00089,SRG-OS-000240-GPOS-00090,SRG-OS-000241-GPOS-00091,SRG-OS-000303-GPOS-00120,SRG-OS-000304-GPOS-00121,CCI-002884,SRG-OS-000466-GPOS-00210,SRG-OS-000476-GPOS-00221
76240a
     stigid@ol7: OL07-00-030700
76240a
     stigid@rhel7: RHEL-07-030700
76240a
-    stigid@rhel8: RHEL-08-030172
76240a
     stigid@sle15: SLES-15-030140
76240a
     vmmsrg: SRG-OS-000462-VMM-001840,SRG-OS-000471-VMM-001910
76240a
 
76240a
diff --git a/linux_os/guide/system/auditing/auditd_configure_rules/file_ownership_var_log_audit/rule.yml b/linux_os/guide/system/auditing/auditd_configure_rules/file_ownership_var_log_audit/rule.yml
76240a
index 956beef52b..96bc0fa0b8 100644
76240a
--- a/linux_os/guide/system/auditing/auditd_configure_rules/file_ownership_var_log_audit/rule.yml
76240a
+++ b/linux_os/guide/system/auditing/auditd_configure_rules/file_ownership_var_log_audit/rule.yml
76240a
@@ -35,7 +35,6 @@ references:
76240a
     srg: SRG-OS-000057-GPOS-00027,SRG-OS-000058-GPOS-00028,SRG-OS-000059-GPOS-00029,SRG-OS-000206-GPOS-00084
76240a
     stigid@ol7: OL07-00-910055
76240a
     stigid@rhel7: RHEL-07-910055
76240a
-    stigid@rhel8: RHEL-08-030080
76240a
 
76240a
 ocil: |-
76240a
     {{{ describe_file_owner(file="/var/log/audit", owner="root") }}}
76240a
diff --git a/linux_os/guide/system/auditing/configure_auditd_data_retention/auditd_data_retention_space_left_action/rule.yml b/linux_os/guide/system/auditing/configure_auditd_data_retention/auditd_data_retention_space_left_action/rule.yml
76240a
index 6e30f1c4ac..7569a6776b 100644
76240a
--- a/linux_os/guide/system/auditing/configure_auditd_data_retention/auditd_data_retention_space_left_action/rule.yml
76240a
+++ b/linux_os/guide/system/auditing/configure_auditd_data_retention/auditd_data_retention_space_left_action/rule.yml
76240a
@@ -53,7 +53,7 @@ references:
76240a
     srg: SRG-OS-000343-GPOS-00134
76240a
     stigid@ol7: OL07-00-030340
76240a
     stigid@rhel7: RHEL-07-030340
76240a
-    stigid@rhel8: RHEL-08-030730
76240a
+    stigid@rhel8: RHEL-08-030731
76240a
     stigid@ubuntu2004: UBTU-20-010217
76240a
     vmmsrg: SRG-OS-000343-VMM-001240
76240a
 
76240a
diff --git a/linux_os/guide/system/software/integrity/crypto/harden_sshd_ciphers_openssh_conf_crypto_policy/rule.yml b/linux_os/guide/system/software/integrity/crypto/harden_sshd_ciphers_openssh_conf_crypto_policy/rule.yml
76240a
index 0aa310d924..682ca436b8 100644
76240a
--- a/linux_os/guide/system/software/integrity/crypto/harden_sshd_ciphers_openssh_conf_crypto_policy/rule.yml
76240a
+++ b/linux_os/guide/system/software/integrity/crypto/harden_sshd_ciphers_openssh_conf_crypto_policy/rule.yml
76240a
@@ -30,7 +30,6 @@ references:
76240a
     disa: CCI-001453
76240a
     nist: AC-17(2)
76240a
     srg: SRG-OS-000250-GPOS-00093
76240a
-    stigid@rhel8: RHEL-08-010291
76240a
 
76240a
 ocil_clause: 'Crypto Policy for OpenSSH client is not configured correctly'
76240a
 
76240a
diff --git a/linux_os/guide/system/software/integrity/crypto/harden_sshd_ciphers_opensshserver_conf_crypto_policy/rule.yml b/linux_os/guide/system/software/integrity/crypto/harden_sshd_ciphers_opensshserver_conf_crypto_policy/rule.yml
76240a
index b56f2421f2..e904bc848c 100644
76240a
--- a/linux_os/guide/system/software/integrity/crypto/harden_sshd_ciphers_opensshserver_conf_crypto_policy/rule.yml
76240a
+++ b/linux_os/guide/system/software/integrity/crypto/harden_sshd_ciphers_opensshserver_conf_crypto_policy/rule.yml
76240a
@@ -30,7 +30,7 @@ references:
76240a
     disa: CCI-001453
76240a
     nist: AC-17(2)
76240a
     srg: SRG-OS-000250-GPOS-00093
76240a
-    stigid@rhel8: RHEL-08-010290
76240a
+    stigid@rhel8: RHEL-08-010291
76240a
 
76240a
 ocil_clause: 'Crypto Policy for OpenSSH Server is not configured correctly'
76240a
 
76240a
diff --git a/linux_os/guide/system/software/integrity/crypto/harden_sshd_macs_openssh_conf_crypto_policy/rule.yml b/linux_os/guide/system/software/integrity/crypto/harden_sshd_macs_openssh_conf_crypto_policy/rule.yml
76240a
index 1aeb987db2..d21f68ac17 100644
76240a
--- a/linux_os/guide/system/software/integrity/crypto/harden_sshd_macs_openssh_conf_crypto_policy/rule.yml
76240a
+++ b/linux_os/guide/system/software/integrity/crypto/harden_sshd_macs_openssh_conf_crypto_policy/rule.yml
76240a
@@ -28,7 +28,6 @@ references:
76240a
     disa: CCI-001453
76240a
     nist: AC-17(2)
76240a
     srg: SRG-OS-000250-GPOS-00093
76240a
-    stigid@rhel8: RHEL-08-010290
76240a
 
76240a
 ocil_clause: 'Crypto Policy for OpenSSH client is not configured correctly'
76240a