[Open-scap] rule-2.3.5.2.a/c failure FC14

Ted Toth txtoth at gmail.com
Fri Mar 18 16:22:10 UTC 2011


I've just started to look at openscap and ran it as follows:
oscap xccdf eval --profile F14-Desktop --result-file xccdf-results.xml
scap-fedora14-xccdf.xml

I noticed several failures:
Rule ID:	rule-2.3.5.2.a
Title:  	Set Boot Loader user owner
Result: 	fail

Rule ID:	rule-2.3.5.2.c
Title:  	Set permission on /boot/grub/grub.conf
Result: 	fail

that I don't understand because /boot/grub/grub.conf is owned by root
with permissions 600:

[root at localhost log]# ls -laZ /boot/grub/grub.conf
-rw-------. root root system_u:object_r:boot_t:s0      /boot/grub/grub.conf

Can someone help me understand what could be happening here?

Ted




More information about the Open-scap-list mailing list