[SFS] STIG?

Matt James sfs@thegeek.nu
Thu, 7 Nov 2013 11:18:09 -0700


--047d7b15ac2388d2ad04ea9a4bfb
Content-Type: text/plain; charset=ISO-8859-1

I have not - looks cool - I'll have to mess with it.  Thanks!

Matt


On Thu, Nov 7, 2013 at 11:11 AM, murph <murph@murph.info> wrote:

> Have you taken a look here?
>
> http://www.open-scap.org/page/Main_Page
>
> On Thu, Nov 7, 2013 at 1:00 PM, Matt James <matuse@gmail.com> wrote:
> > Hey Linuxers,
> >     I've been working on performing a STIG for some systems and
> wondering if
> > anyone else has had to deal with this stuff.  Now - Willson, calm down, I
> > don't work for the DOD/NSA/etc. - but my customers have to comply with
> their
> > standards and are asking for my help. I've found some commercial products
> > that act as a scan tool and will report findings, etc. but I was
> wondering
> > if anyone has a secret weapon they have used that might keep me from
> > re-inventing the wheel.  It's not that this stuff is overly difficult -
> it's
> > just really tedious to do 500+ checks on a system and apply the
> appropriate
> > configuration changes.
> >
> > If you're unfamiliar with STIG - here:  http://iase.disa.mil/stigs/
> >
> > I'm doing this on RHEL / CentOS 5 machines BTW.
> >
> > TIA,
> >
> > Matt
> >
> > --
> > Go Green!  Please do not print this e-mail unless it is completely
> > necessary.
>
>
>
> --
> Team Amiga  New Jersey - The less that I speak, the smarter I sound.
> _______________________________________________
> SFS mailing list
> SFS@thegeek.nu
> http://mailman.thegeek.nu/mailman/listinfo/sfs
>



-- 
Go Green!  Please do not print this e-mail unless it is completely
necessary.

--047d7b15ac2388d2ad04ea9a4bfb
Content-Type: text/html; charset=ISO-8859-1
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr">I have not - looks cool - I&#39;ll have to mess with it. =
=A0Thanks!<div><br></div><div>Matt</div></div><div class=3D"gmail_extra"><b=
r><br><div class=3D"gmail_quote">On Thu, Nov 7, 2013 at 11:11 AM, murph <sp=
an dir=3D"ltr">&lt;<a href=3D"mailto:murph@murph.info" target=3D"_blank">mu=
rph@murph.info</a>&gt;</span> wrote:<br>

<blockquote class=3D"gmail_quote" style=3D"margin:0 0 0 .8ex;border-left:1p=
x #ccc solid;padding-left:1ex">Have you taken a look here?<br>
<br>
<a href=3D"http://www.open-scap.org/page/Main_Page" target=3D"_blank">http:=
//www.open-scap.org/page/Main_Page</a><br>
<div class=3D"HOEnZb"><div class=3D"h5"><br>
On Thu, Nov 7, 2013 at 1:00 PM, Matt James &lt;<a href=3D"mailto:matuse@gma=
il.com">matuse@gmail.com</a>&gt; wrote:<br>
&gt; Hey Linuxers,<br>
&gt; =A0 =A0 I&#39;ve been working on performing a STIG for some systems an=
d wondering if<br>
&gt; anyone else has had to deal with this stuff. =A0Now - Willson, calm do=
wn, I<br>
&gt; don&#39;t work for the DOD/NSA/etc. - but my customers have to comply =
with their<br>
&gt; standards and are asking for my help. I&#39;ve found some commercial p=
roducts<br>
&gt; that act as a scan tool and will report findings, etc. but I was wonde=
ring<br>
&gt; if anyone has a secret weapon they have used that might keep me from<b=
r>
&gt; re-inventing the wheel. =A0It&#39;s not that this stuff is overly diff=
icult - it&#39;s<br>
&gt; just really tedious to do 500+ checks on a system and apply the approp=
riate<br>
&gt; configuration changes.<br>
&gt;<br>
&gt; If you&#39;re unfamiliar with STIG - here: =A0<a href=3D"http://iase.d=
isa.mil/stigs/" target=3D"_blank">http://iase.disa.mil/stigs/</a><br>
&gt;<br>
&gt; I&#39;m doing this on RHEL / CentOS 5 machines BTW.<br>
&gt;<br>
&gt; TIA,<br>
&gt;<br>
&gt; Matt<br>
&gt;<br>
&gt; --<br>
&gt; Go Green! =A0Please do not print this e-mail unless it is completely<b=
r>
&gt; necessary.<br>
<br>
<br>
<br>
</div></div><span class=3D"HOEnZb"><font color=3D"#888888">--<br>
Team Amiga =A0New Jersey - The less that I speak, the smarter I sound.<br>
_______________________________________________<br>
SFS mailing list<br>
<a href=3D"mailto:SFS@thegeek.nu">SFS@thegeek.nu</a><br>
<a href=3D"http://mailman.thegeek.nu/mailman/listinfo/sfs" target=3D"_blank=
">http://mailman.thegeek.nu/mailman/listinfo/sfs</a><br>
</font></span></blockquote></div><br><br clear=3D"all"><div><br></div>-- <b=
r>Go Green!=A0 Please do not print this e-mail unless it is completely nece=
ssary.
</div>

--047d7b15ac2388d2ad04ea9a4bfb--