Commit Graph

168 Commits

Author SHA1 Message Date
Dan Brodjieski
e5876d5cbe Merge branch 'sequoia' into dev_sequoia_bio 2025-11-21 16:30:10 -05:00
Dan Brodjieski
647f8b83ec refactor: fix typos and spelling 2025-09-15 10:55:09 -04:00
Jordy Witteman
1cf55be5d0 Update system_settings_time_server_configure.yaml 2025-09-09 21:43:22 +02:00
Dan Brodjieski
5b527bcc8a fix{rule]: add note about FileVault implementation
Issue #540
2025-09-08 12:13:35 -04:00
Dan Brodjieski
4e9c3613ac fix[rule]: update check for time machine encryption
Verified
1a6a8df
changing to CIS method

Issue #538
2025-09-08 12:03:19 -04:00
Jordy Witteman
64dba1e8d4 Merge branch 'dev_sequoia_nlmapgov' into sequoia 2025-09-05 20:39:45 +02:00
mahlmanj
2df2d68ea1 Merge branch 'sequoia' into dev_sequoia_cmmc 2025-09-03 10:17:43 -04:00
Bob Gendler
e435364874 refactor[rules] Added stderr redirect
Issue #522
Added stderr redirect for mdmclient for
- os_authenticated_root_enable
- os_recovery_lock_enable
- os_secure_boot_verify
- system_settings_remote_management_disable
2025-08-26 15:04:57 -04:00
Bob Gendler
79adf45029 Merge pull request #506 from usnistgov/dev_sequoia_issue364
Dev sequoia issue364
2025-08-26 13:10:28 -04:00
mahlmanj
1460f2082f Updating rules to add CMMC tags and removing tags from one. Update baselines. 2025-08-18 14:55:41 -04:00
Allen Golbig
15a6501477 Merge pull request #523 from root3nl/nlmapgov
Initial development version of NLMAPGOV
2025-08-14 09:12:56 -04:00
Jordy Witteman
0e85b93535 Updates and mapping
- Updates to some rules
- Mapping added for `nlmapgov_plus` to the BIO rules
2025-08-07 17:22:41 +02:00
Jordy Witteman
d7be09a4de NLMAPGOV updates
- Added additional audit rules to `nlmapgov_base`
- Added first draft of `nlmapgov_plus`, designed as a complete package with rules from best practices from the field and other baselines. Still requires evaluation and altering by organizations.
2025-07-24 17:12:32 +02:00
Jordy Witteman
e569753014 Merge branch 'usnistgov:main' into nlmapgov 2025-07-10 17:02:03 +02:00
Bob Gendler
30193a9ccf Added missing cis_lvl1 2025-07-02 09:45:31 -04:00
Bob Gendler
dbb7f7f38d refactor[rules/baseline]
Added missing baseline tags to system_settings_ssh_disable
Added rule to baseline files
2025-06-26 11:32:09 -04:00
Bob Gendler
892e06ad18 refactor[rules] Modified CIS information
Moved CIS benchmark numbers
2025-06-18 09:48:22 -04:00
Jordy Witteman
d11a2bbcff Added BIO guidance mapping
Added BIO guidance mapping
2025-06-05 14:48:15 +02:00
Jordy Witteman
f702efa237 Merge branch 'sequoia' of https://github.com/usnistgov/macos_security into usnistgov-sequoia 2025-05-26 15:49:41 +02:00
Bob Gendler
9fa05af111 refactor[rules] CIS updates
Updates to CIS rule IDs
2025-05-21 10:23:04 -04:00
Dan Brodjieski
16d0501b28 update[cis]: additional controls for v1.1.0 2025-05-07 10:30:12 -04:00
Bob Gendler
0b4d809ae0 Fixed r5 to 800-53r5 in references 2025-04-16 09:48:41 -04:00
Bob Gendler
448a11248d Merge branch 'dev_sequoia_issue469' into sequoia 2025-04-14 11:50:38 -04:00
Jordy Witteman
42e76d9300 Maatregelen toegevoegd
- pwpolicy_minimum_length_enforce
- pwpolicy_prevent_dictionary_words
- system_settings_guest_account_disable
2025-04-11 15:15:08 +02:00
Bob Gendler
ba30243ee7 Issue #434 2025-04-04 11:04:36 -04:00
Bob Gendler
6dfaa07c48 Updated discussion 2025-04-04 11:03:51 -04:00
Bob Gendler
10fabf914c Updated 800-171r3 references
PR #469
2025-04-04 10:12:01 -04:00
Bob Gendler
c774e8cc5b refactor[rules] Updated discussion
Updated discussion to use lastUserName from com.apple.loginwindow

Issue #364
2025-04-04 09:35:55 -04:00
Jordy Witteman
657bd211f4 New rules added
New rules added
2025-04-03 16:27:43 +02:00
Jordy Witteman
cd2187c0a4 Eerste experiment baseline aanmaken
Eerste experiment baseline aanmaken met mSCP. Inhoudelijke regels zijn enkel om mechanisme te testen.
2025-03-27 17:08:52 +01:00
Bob Gendler
4dcd801a2c fixed check result true->false 2025-01-31 15:03:28 -05:00
Bob Gendler
f1c9bb290c fixed check result true->false 2025-01-31 15:03:17 -05:00
Bob Gendler
48ed4ab878 fixed check result true->false 2025-01-31 15:00:07 -05:00
Bob Gendler
a908b9a7be removed rules/system_settings/system_settings_cd_dvd_sharing_disable.yaml 2024-12-10 11:38:16 -05:00
Bob Gendler
24bc6964f3 Added CCEs 2024-12-10 10:50:46 -05:00
Bob Gendler
52ffec3089 Issue #450 2024-11-25 10:56:26 -05:00
Bob Gendler
2c50e63a9a refactor[rules] Added external intelligence rules
Added rules to disable external intelligence features for 15.2
2024-11-25 10:55:26 -05:00
Allen Golbig
ac50ebedee fix[rule] remove cis tags and reference
remove cis ref & tag from system_settings_improve_search_disable

issue #443
2024-10-30 14:21:29 -04:00
Bob Gendler
2b552f99ca refactor[rules] CNSSI tags added
Added CNSSI1253 low, moderate, high tags
2024-10-24 10:14:48 -04:00
Allen Golbig
0f533e9d8f changes for upcoming cis release 2024-10-23 21:39:59 -04:00
Bob Gendler
8608f13943 merge and updates 2024-10-23 21:13:09 -04:00
Bob Gendler
84a063b1a0 refactor[rules] Added, Modified and deleted rules
Added os_mail_summary_disable
Added os_photos_enhanced_search_disable
Removed system_settings_cd_dvd_sharing_disable
Modified system_settings_improve_search_disable - updated title
Modified system_settings_improve_siri_dictation_disable - updated title
2024-10-18 09:26:47 -04:00
Bob Gendler
cb8447e39d Merge branch 'sequoia' into dev_sequoia_stig 2024-10-01 09:10:50 -04:00
Allen Golbig
1ae429cc07 fix[rule] fixed path on line 63
fixed path in system_settings_system_wide_preferences_configure
2024-09-27 09:08:53 -04:00
Allen Golbig
fb097c992b fix[rule] fixed path
Fixed path in system_settings_system_wide_preferences_configure
2024-09-27 08:47:25 -04:00
Bob Gendler
c779a35529 Updated STIG ID 2024-09-23 13:59:13 -04:00
Bob Gendler
ea925dc054 sync sequoia to dev_sequoia_stig 2024-09-23 12:04:46 -04:00
Bob Gendler
b32a6bf10f Updated media sharing key 2024-09-23 11:34:45 -04:00
mahlmanj
ecb5de498d Updating CIS benchmark and tags in missed rules. 2024-09-18 12:18:25 -04:00
Bob Gendler
58d26f36c8 added APPL-15-002024 2024-09-10 10:52:40 -04:00