Menu

Tree [r3] /
 History

HTTPS access


File Date Author Commit
 answer 2014-07-31 cjaymes [r1] Initial commit
 backup 2014-07-31 cjaymes [r1] Initial commit
 check 2014-07-31 cjaymes [r3] Fixed manual check script from 'fail' to 'notch...
 doc 2014-07-31 cjaymes [r2] Removed non applicable files
 fix 2014-07-31 cjaymes [r1] Initial commit
 lib 2014-07-31 cjaymes [r1] Initial commit
 results 2014-07-31 cjaymes [r1] Initial commit
 share 2014-07-31 cjaymes [r1] Initial commit
 README.txt 2014-07-31 cjaymes [r1] Initial commit
 STIG.pl 2014-07-31 cjaymes [r1] Initial commit
 STIG_XML_Parser.pl 2014-07-31 cjaymes [r1] Initial commit
 STIG_convert_txt_to_xccdf.pl 2014-07-31 cjaymes [r1] Initial commit
 STIG_generate_notapplicable_checks.pl 2014-07-31 cjaymes [r1] Initial commit
 check.sh 2014-07-31 cjaymes [r1] Initial commit
 du_diff.sh 2014-07-31 cjaymes [r1] Initial commit
 fix.sh 2014-07-31 cjaymes [r1] Initial commit
 fix_line_endings.sh 2014-07-31 cjaymes [r1] Initial commit
 fix_term.sh 2014-07-31 cjaymes [r1] Initial commit
 install_lynx.sh 2014-07-31 cjaymes [r1] Initial commit
 install_redhat_dependencies.sh 2014-07-31 cjaymes [r1] Initial commit
 iptables_template.txt 2014-07-31 cjaymes [r1] Initial commit
 mysql root pw change.txt 2014-07-31 cjaymes [r1] Initial commit
 offline.repo 2014-07-31 cjaymes [r1] Initial commit
 oracle_STIG_convert.pl 2014-07-31 cjaymes [r1] Initial commit
 oracle_daily_cron.sh 2014-07-31 cjaymes [r1] Initial commit
 oracle_full_partition_fix.txt 2014-07-31 cjaymes [r1] Initial commit
 oracle_products.sh 2014-07-31 cjaymes [r1] Initial commit
 update_from_offline_repo.sh 2014-07-31 cjaymes [r1] Initial commit

Read Me

The main tool is STIG.pl. You run perl STIG.pl {--check|--fix} <benchmark-xccdf.xml> --out <benchmark-results-xccdf.xml> on the machine you're checking.
Most of the time, you have to specify a profile with --profile <profilename>, but it will tell you that when it parses the XCCDF file.
If you run it without arguments, it prints out a usage message.
The other interesting option is --log <logfile.txt> which keeps a log of the messages that get printed when you run the program.
Any files that are changed by the fixes should be backed up in the backup directory under the hostname and date.
Want the latest updates on software, tech news, and AI?
Get latest updates about software, tech news, and AI from SourceForge directly in your inbox once a month.