Blame SOURCES/scap-security-guide-0.1.56-remove_audit_rules_privileged_commands_from_stig-PR_7008.patch

a8c580
From 2fe060ae47a1f17e01d64cf9253edddb9d13cdca Mon Sep 17 00:00:00 2001
a8c580
From: Gabriel Becker <ggasparb@redhat.com>
a8c580
Date: Mon, 17 May 2021 11:56:08 +0200
a8c580
Subject: [PATCH] Remove audit_privileged_commands from RHEL7 STIG profile.
a8c580
a8c580
This rule is not aligned with latest version of RHEL7 STIG and should be
a8c580
removed from the profile.
a8c580
---
a8c580
 .../audit_rules_privileged_commands/rule.yml                     | 1 -
a8c580
 rhel7/profiles/stig.profile                                      | 1 -
a8c580
 2 files changed, 2 deletions(-)
a8c580
a8c580
diff --git a/linux_os/guide/system/auditing/auditd_configure_rules/audit_privileged_commands/audit_rules_privileged_commands/rule.yml b/linux_os/guide/system/auditing/auditd_configure_rules/audit_privileged_commands/audit_rules_privileged_commands/rule.yml
a8c580
index fb294f20821..cf997bbcf4a 100644
a8c580
--- a/linux_os/guide/system/auditing/auditd_configure_rules/audit_privileged_commands/audit_rules_privileged_commands/rule.yml
a8c580
+++ b/linux_os/guide/system/auditing/auditd_configure_rules/audit_privileged_commands/audit_rules_privileged_commands/rule.yml
a8c580
@@ -53,7 +53,6 @@ references:
a8c580
     pcidss: Req-10.2.2
a8c580
     srg: SRG-OS-000327-GPOS-00127
a8c580
     vmmsrg: SRG-OS-000471-VMM-001910
a8c580
-    stigid@rhel7: RHEL-07-030360
a8c580
     isa-62443-2013: 'SR 1.13,SR 2.10,SR 2.11,SR 2.12,SR 2.6,SR 2.8,SR 2.9,SR 3.1,SR 3.5,SR 3.8,SR 3.9,SR 4.1,SR 4.3,SR 5.1,SR 5.2,SR 5.3,SR 6.1,SR 6.2,SR 7.1,SR 7.6'
a8c580
     isa-62443-2009: 4.2.3.10,4.3.2.6.7,4.3.3.3.9,4.3.3.5.8,4.3.3.6.6,4.3.4.4.7,4.3.4.5.5,4.3.4.5.6,4.3.4.5.7,4.3.4.5.8,4.3.4.5.9,4.4.2.1,4.4.2.2,4.4.2.4
a8c580
     cobit5: APO08.04,APO10.01,APO10.03,APO10.04,APO10.05,APO11.04,APO12.06,APO13.01,BAI03.05,BAI08.02,DSS01.03,DSS01.04,DSS02.02,DSS02.04,DSS02.05,DSS02.07,DSS03.01,DSS03.05,DSS05.02,DSS05.03,DSS05.04,DSS05.05,DSS05.07,MEA01.01,MEA01.02,MEA01.03,MEA01.04,MEA01.05,MEA02.01
a8c580
diff --git a/rhel7/profiles/stig.profile b/rhel7/profiles/stig.profile
a8c580
index 336bf98e7f7..d3b33615415 100644
a8c580
--- a/rhel7/profiles/stig.profile
a8c580
+++ b/rhel7/profiles/stig.profile
a8c580
@@ -181,7 +181,6 @@ selections:
a8c580
     - auditd_data_retention_space_left
a8c580
     - auditd_data_retention_space_left_action
a8c580
     - auditd_data_retention_action_mail_acct
a8c580
-    - audit_rules_privileged_commands
a8c580
     - audit_rules_dac_modification_chown
a8c580
     - audit_rules_dac_modification_fchown
a8c580
     - audit_rules_dac_modification_lchown