Commit Graph

155 Commits

Author SHA1 Message Date
Allen Golbig
4c6fb8b693 removed os_firewall_log_enable from all_rules 2024-08-12 09:01:33 -04:00
Allen Golbig
701e4d6b6a dev_sequoia 2024-07-15 18:01:42 -04:00
Bob Gendler
9fc373b236 Updated baseline files 2024-04-04 11:46:12 -04:00
Bob Gendler
2ab099bfcd Dev sonoma issue356 (#367)
* chore[rules]: updated STIG tags

Removed the stig tag from rules that weren't in the stig.
Added 'srg' tag to rules that had SRG references, but not in stig

Issue #356

* chore[baseline]: updated STIG baseline

* chore[references]: updated CCI and SRG refs

Updated severity where needed too

* fix[rule]: yaml syntax for CCI

* fix[rules]: added missing STIG ODVs

---------

Co-authored-by: Dan Brodjieski <daniel.brodjieski@nasa.gov>
Co-authored-by: Dan Brodjieski <dbrodjieski@icloud.com>
2024-02-26 15:50:02 -05:00
Dan Brodjieski
7ff8240bca chore[baseline]: updated STIG yaml
removed unneeded support files
2024-01-31 12:24:14 -05:00
Dan Brodjieski
701ed9bec0 chore[rules]: updates from published STIG
added STIG references and updated baselines to support latest release from DISA
2024-01-24 08:16:00 -05:00
Dan Brodjieski
f06782a180 Merge branch 'sonoma' into dev_sonoma_disa 2024-01-23 15:45:21 -05:00
Allen Golbig
812d3b93ca fix[rules] updates for cis release
Moved os_safari_javascript_enabled to manual
2023-10-13 10:35:00 -04:00
Bob Gendler
50c33a90e0 Renamed baseline file 2023-10-05 13:50:26 -04:00
Bob Gendler
ccc9675769 Renamed baseline file 2023-10-05 13:49:54 -04:00
Bob Gendler
a1505a4ff8 new stig draft baseline created 2023-10-05 13:43:31 -04:00
Bob Gendler
64f26af052 removed r4 baselines 2023-09-21 15:08:58 -04:00
Bob Gendler
da12659012 last minute CIS additions 2023-09-21 15:08:31 -04:00
Bob Gendler
ed1eb1b890 updated baselines 2023-09-20 14:44:04 -04:00
Bob Gendler
be766ebd06 added *macOS Security Compliance Project* 2023-09-20 13:57:14 -04:00
Bob Gendler
7bec67dd1f resync with dev_sonoma 2023-09-20 13:52:06 -04:00
mahlmanj
cbf3cfe65c Updateing baselines with new rule 2023-09-19 15:51:11 -04:00
mahlmanj
19b76b02e1 Syncing level 1 baseline (and updates) 2023-09-19 15:27:24 -04:00
Bob Gendler
d25a6d31ac Added baseline files 2023-09-19 12:43:51 -04:00
Dan Brodjieski
5acbdbd21e chore: clean up extraneous trailing whitespace 2023-09-14 14:21:06 -04:00
mahlmanj
ff2de7a933 CMMC level 2 updated for Sonoma 2023-09-12 15:29:19 -04:00
mahlmanj
889de402ab CMMC Sonoma dev branch. Unaltered baselines. 2023-09-12 15:27:56 -04:00
Allen Golbig
c396f18b24 feat[baseline] dev_sonoma
dev_sonoma
2023-07-13 22:17:34 -04:00
Bob Gendler
7d7205e376 refactor[baselines]removed unncessary supplemental
Removed stig and cis supplemental from baselines not requiring it.
2023-06-26 10:32:07 -04:00
Bob Gendler
6105b6e144 tag issue resolved 2023-06-22 13:07:43 -04:00
Bob Gendler
85e2d68fe4 [refactor] rules, baselines, includes
Added cnssi and disa stig to mscp-data.yaml
Generated updated baseline files
Fixed merge issue with audit_files_owner_configure
2023-06-22 13:01:59 -04:00
Bob Gendler
9fccb44c5d Merge branch 'dev_ventura_stig' into ventura 2023-06-22 12:47:18 -04:00
Dan Brodjieski
a6fbad2241 refactor[rule]: updated baseline for STIG 2023-06-13 10:19:12 -04:00
Allen Golbig
9e29b7c86c refactor[rules] removed level 3 from cmmc
Removed lvl 3 from cmmc
2023-05-25 16:25:41 -04:00
Bob Gendler
dd40ffa6f2 refactor[baseline] DISA-STIG Baseline adjusted
Added supplemental_stig
Removed supplemental_controls and pf_firewall
2023-05-23 12:22:49 -04:00
Bob Gendler
f0bc8666c9 refactor[rules/baselines] DISA STIG
Re-add DISA STIG branch
* New rules added
* STIG references and tags added
* Whitespace clean up
* DISA-STIG baseline added
2023-05-04 13:43:18 -04:00
Bob Gendler
fa6711513e Merge branch 'ventura' into dev_ventura_cmmc 2023-04-26 09:55:16 -04:00
Dan Brodjieski
0f5f5b697e update[baselines]: removed cnssi tags
removing until cnssi updates are finalized
2023-04-25 11:56:23 -04:00
Dan Brodjieski
feec3b41b8 fix[baselines]: removed deprecated rules
Removed deprecated rules from the baseline files
2023-04-25 11:52:03 -04:00
Allen Golbig
c0762ed62c fix[baseline] added time machine encryption
Added system_settings_time_machine_encrypted_configure to cis_lvl1
2023-01-03 10:52:12 -05:00
mahlmanj
88ddd0487c Adding missing inherint rule for LVL 3. 2022-12-22 11:19:29 -05:00
mahlmanj
23c4797454 Updating authors. 2022-12-19 12:53:08 -05:00
mahlmanj
7efee13b82 Here we go! First rule push. 2022-12-19 11:43:52 -05:00
mahlmanj
f198137659 Updating baselines to include more in description. 2022-12-19 09:41:44 -05:00
mahlmanj
29d4ce5f8b Second draft of CMMC baselines. Readjusted. 2022-12-16 15:43:04 -05:00
Bob Gendler
4061bf588d changed 12 to 13 in title 2022-11-30 11:52:38 -05:00
Bob Gendler
d0ac9889a7 Merge branch 'dev_ventura_pr195' into ventura 2022-11-18 09:22:18 -05:00
Bob Gendler
461aae2f2d refactor[baselines] Added new rules
New rules added to all_rules and cis related baselines
2022-11-15 11:27:31 -05:00
Henry S
c61042badc add rule to disable iCloud based sign-in for Game Center (#195)
* Update 800-171.yaml

* Fixed generate_mapping.py for authors

* v8 to controls v8 fix for excel generation

* Date for Monterey Revision 2 Updated

* Update README.adoc

* add rule to disable iCloud based sign-in for Game Center

* set CCE to N/A

TODO: NIST might need  to assign a CCE

Co-authored-by: Bob Gendler <robert.gendler@nist.gov>
Co-authored-by: Dan Brodjieski <brodjieski@gmail.com>
2022-11-08 10:47:10 -05:00
Allen Golbig
413ba269ee fix[baseline] fixed cis_lvl1.yaml
Fixed cis_lvl1.yaml to remove cis_lvl2 rules
2022-11-03 12:11:50 -04:00
Bob Gendler
090ecebcc8 Removed system_settings_bluetooth_unpaired_disable from all_rules 2022-10-28 09:56:59 -04:00
Bob Gendler
31a59b9edb removed system_settings_location_services_audit 2022-10-20 12:23:58 -04:00
Bob Gendler
149484fbef fixed 12 to 13 2022-10-20 12:20:45 -04:00
Bob Gendler
fdc6b4b0aa refactor[baselines]: Added more description
Added description defining as a catalog of rules, not a benchmark.
2022-10-19 21:44:57 -04:00
Bob Gendler
64e0c2ca8a changed monterey to ventura 2022-10-19 21:08:13 -04:00