Skip to content

jeromemarc/drown_vulnerability

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

5 Commits
 
 
 
 
 
 
 
 

Repository files navigation

This is a package containing a policy, profile and report to assist in identifying affected OpenSSL package versions and validate the security of the servers visible in Red Hat CloudForms and ManageIQ.

See this blog post for additional details: Managing Patching Compliance Using DROWN OpenSSL Vulnerability as an Example.

Download the following policy, profile and report yaml definitions and import them in your appliance:

Once the policy and profile imported, the profile can be assigned to VM instances and Compliance can be checked. Screen Shot Compliance Policy

The report provides the results of the compliance checks. Screen Shot Compliance Report

About

CloudForms and ManageIQ policy, profile and report for DROWN OpenSSH Vulnerability

Resources

Stars

Watchers

Forks

Packages

No packages published