shield Optional update for ssg-apply
SUSE-SLE-Module-Basesystem-15-SP4-2022-4059


This update for ssg-apply fixes the following issues: This package contains a systemd service which can be run on boot which detects and/or mitigates hardening issues from the scap-security-guide, aka ComplianceAsCode. The behaviour can be configured in the config file /etc/ssg-apply/default.conf Options: - "profile" ... Which SCAP XCCDF profile to use. The default is "stig" for the SUSE supported DISA stig profile. Other profiles from the scap-security-guide can also be selected, like "cis", "hipaa", "pci-dss" and others. - "remediate" Whether to have the service immediately fix the issues. The default is "off", if you want to enable automatic remediation, use "on". - "tailoring-file" ... default is "" (none). A tailoring file is a XML configuration file that can be used to select/deselect rules to check / remediate. The service can be enabled with: * systemctl enable ssg-apply.service

  • Release Date
    Nov 17 2022
  • References
  • Type
    optional
  • Severity
    moderate

cloud_download Downloads

Basesystem Module 15.4 ppc64le
  • Packages
    ssg-apply
    Package to Apply SCAP Security Guide Content
    1.0-150000.1.3.1 lock rpm lock src
Basesystem Module 15.4 aarch64
  • Packages
    ssg-apply
    Package to Apply SCAP Security Guide Content
    1.0-150000.1.3.1 lock rpm lock src
Basesystem Module 15.4 x86_64
  • Packages
    ssg-apply
    Package to Apply SCAP Security Guide Content
    1.0-150000.1.3.1 lock rpm lock src
Basesystem Module 15.4 s390x
  • Packages
    ssg-apply
    Package to Apply SCAP Security Guide Content
    1.0-150000.1.3.1 lock rpm lock src