Skip to content

Releases: ansible-lockdown/RHEL8-STIG

V2r4 release

26 Mar 16:42
0aed5af

Choose a tag to compare

RuleIDs updated for listed controls after changes

RHEL-08-010330, RHEL-08-010340, RHEL-08-010350
Added “/usr/lib64” to Check and Fix Text paths.
RHEL-08-010380 - Updated sudoers “NOPASSWD” Check Text command.
RHEL-08-010381 - Updated Check Text command to split the search for “NOPASSWD” and “!authenticate”
RHEL-08-010382 - Updated sudoers “ALL” Check Text command.
RHEL-08-010741 - Updated finding text.
RHEL-08-030610 - Adjusted to change rules.d file thanks to @platymatt
RHEL-08-030655 - Added requirement to audit any script or executable called by cron as root or by any privileged user.
RHEL-08-040030 - Updated Check command.
RHEL-08-040310 - Updated the Discussion to include “aide.conf” monitoring explanation and updated the Check to require the SA to review the “aide.conf” manually.
QA Linting Fixes
Revamp 08-010100
Removed boot_partition prem lim var
improvements in logic in several controls.

What's Changed

New Contributors

Full Changelog: 4.0.0...4.1.0

V2R1 Release Oct 2024

10 Apr 08:22
cd10dac

Choose a tag to compare

Release of STIG V2R 24th October 2024

RuleIDs updated for all controls
Nist Control ID associations added

  • RHEL-08-010350 - command updated
  • RHEL-08-010472 - Not Applicable if fips
  • RHEL-08-020035 - version 8.7+
  • RHEL-08-020039 RHEL-08-020040 RHEL-08-020041 RHEL-08-020042, RHEL-08-020070 - TMUX removed
  • RHEL-08-020220, RHEL-08-020221 - remember not required for PAM
  • RHEL-08-020320 - Updated Check and Fix
  • RHEL-08-030603, RHEL-08-040139, RHEL-08-040140, RHEL-08-040141 - Rules updated Ok if no USB peripherals
  • RHEL-08-040284
  • RHEL-08-040370
  • RHEL-08-010001 - removed as not a NIST value
  • RHEL-08-020035 - updated
  • RHEL-08-040132 - updated
  • RHEL-08-010040 - tags and conditional

#316
#327

Others updates include
workflow update
new linting
company name update
date changes

What's Changed

Full Changelog: 3.4.0...4.0.0

STIG Version1 Release14 - April 2024

21 Feb 15:37
d3f99fd

Choose a tag to compare

Release of STIG V1R14 24th April 2023

GUI discovery update
RuleID updates
ansible config update

#232 - thanks to @eday87 @BJSmithIEEE
#298 thanks to @mikefrompsu
#299 thanks to @cpu010100
thanks to @dglinder
#301
#302

What's Changed

Full Changelog: 3.3.2...3.4.0

Final - STIG V1R13 release

13 Aug 15:06
a14f30a

Choose a tag to compare

STIG Version1 Release 13 release - Jan 24

Remediate

Pre-commit updates
new workflow configurations
removed jmespath dependency

Audit

Improvements and updates

What's Changed

Full Changelog: 3.3.0...3.3.3

STIG V1R13 release

31 May 13:20
9981f76

Choose a tag to compare

STIG Version1 Release 13 release - Jan 24

Main Release for v1r13 RHEL8 STIG

Remediate

  • Issues closed and PRs merged - What's changed
  • Pre-commit updates
  • Many improvements to different controls
  • Rebase required from v1r12

Audit

  • Related Audit repo updated to improve tests audit binary(goss updated to latest version)

What's Changed

Full Changelog: 3.2.0...3.3.0

STIG v1r12 - April 2024 update

30 Apr 07:51
26e9ed2

Choose a tag to compare

STIG Version1 Release 12 release - October 23

Main Release for v1r12 RHEL8 STIG

Remediate

  • Issues closed and PRs merged - What's changed
  • Pre-commit updates
  • Many improvements to different controls

Audit

  • Audit_only ability now added to run standalone audit
    • audit_only: true
  • Related Audit repo updated to improve tests audit binary(goss updated to latest version)

What's Changed

Full Changelog: 3.1.0...3.2.0

Final STIG V1R11

19 Mar 16:40
1c4b7db

Choose a tag to compare

STIG Version1 Release 11 release - July 23

Remediate

Issues closed and PRs merged - What's changed
Pre-commit updates
Many improvements to different controls
Update to allow Galaxy Releases for new galaxy_ng

What's Changed

New Contributors

Full Changelog: 3.0.0...3.1.0

Stig V1R11 - release

13 Sep 14:47
31b5330

Choose a tag to compare

What's Changed

New Contributors

#Issues:

Controls updated

  • CAT2:
    • 010030 - ruleid
    • 010200 - ruleid
    • 010201 - ruleid
    • 010290 - ruleid and SSH MACS updated
    • 010291 - ruleid and SSH Ciphers updated
    • 010770 - ruleid
    • 020035 - new control idlesession timeout new var rhel_08_020035_idlesessiontimeout
    • 020041 - ruleid and tmux script update
    • 030690 - ruleid and protocol options added
    • 040159 - ruleid
    • 040160 - ruleid
    • 040342 - ruleid and SSH KEX algorithms updated

Full Changelog: 2.9.1...3.0.0

Stig V1R10 - release

19 Jul 13:56
85340ce

Choose a tag to compare

What's Changed

Full Changelog: 2.9.0...2.9.1

Stig V1R10 Release

22 May 09:09
a9d47c8

Choose a tag to compare

What's Changed

  • Stig v1r10 - release by @uk-bolly in #201
  • Fixed typo in user password assertion by @Phenix66 in #202
  • Stig V1R10 Release to main by @uk-bolly in #203
  • updates for containers on new version
  • #204
  • boot partition variable usage

New Contributors

Full Changelog: 2.8.1...2.9.0