<div dir="ltr"><div dir="ltr"><div>Hello,</div><div><br></div><br><div class="gmail_quote"><div dir="ltr">On Wed, Nov 28, 2018 at 5:39 PM Boucher, William <<a href="mailto:William.Boucher@mza.com">William.Boucher@mza.com</a>> wrote:<br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">
<div lang="EN-US">
<div class="gmail-m_4855630425819865659WordSection1">
<p class="MsoNormal"><span style="color:rgb(31,73,125)">Stuart,<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:rgb(31,73,125)"><u></u> <u></u></span></p>
<p class="MsoNormal"><span style="color:rgb(31,73,125)">How do I get the current/latest scap security guide?<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:rgb(31,73,125)"><u></u> </span></p></div></div></blockquote><div>Latest pre-built content can be grabbed at <a href="https://github.com/ComplianceAsCode/content/releases">https://github.com/ComplianceAsCode/content/releases</a>, just download the zip file.</div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex"><div lang="EN-US"><div class="gmail-m_4855630425819865659WordSection1"><p class="MsoNormal"><span style="color:rgb(31,73,125)"><u></u></span></p>
<p class="gmail-m_4855630425819865659MsoListParagraph"><u></u><span style="color:rgb(31,73,125)"><span>1)<span style="font:7pt "Times New Roman"">
</span></span></span><u></u><span style="color:rgb(31,73,125)">I went to <a href="https://www.open-scap.org/security-policies/scap-security-guide/" target="_blank">
https://www.open-scap.org/security-policies/scap-security-guide/</a> and clicked on the Ubuntu symbol to get directions for installing it, but that gave message “The SCAP Security Guide package is not available on the Ubuntu distribution yet. Check for update.”</span></p></div></div></blockquote><div>The website needs to updated, there are SCAP Security Guide packages for Ubuntu and Debian.<br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex"><div lang="EN-US"><div class="gmail-m_4855630425819865659WordSection1"><p class="gmail-m_4855630425819865659MsoListParagraph"><span style="color:rgb(31,73,125)"><u></u><u></u></span></p>
<p class="gmail-m_4855630425819865659MsoListParagraph"><u></u><span style="color:rgb(31,73,125)"><span>2)<span style="font:7pt "Times New Roman"">
</span></span></span><u></u><span style="color:rgb(31,73,125)">“apt-get install scap-security-guide” produced the error “Unable to locate package scap-security-guide.”</span></p></div></div></blockquote><div><br></div><div>It seems that the packages are named slightly different in Ubuntu, see: <a href="https://packages.ubuntu.com/source/disco/scap-security-guide">https://packages.ubuntu.com/source/disco/scap-security-guide</a> <br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex"><div lang="EN-US"><div class="gmail-m_4855630425819865659WordSection1"><p class="gmail-m_4855630425819865659MsoListParagraph"><span style="color:rgb(31,73,125)"><u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:rgb(31,73,125)"><u></u> <u></u></span></p>
<p class="MsoNormal"><span style="color:rgb(31,73,125)">I did successfully install libopenscap8 (“apt-get install libopenscap8”).<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:rgb(31,73,125)"><u></u> <u></u></span></p>
<p class="MsoNormal"><span style="color:rgb(31,73,125)">All help is appreciated.<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:rgb(31,73,125)"><u></u> <u></u></span></p>
<div>
<p class="MsoNormal"><span style="color:black">William B. Boucher, BSEE<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:black">Embedded Systems Software Engineer
<br>
Information Systems Security Manager<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:black">MZA Associates Corporation<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:black">2021 Girard Blvd., SE, Suite 150<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:black">Albuquerque, New Mexico 87106<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:black">Phone: 505.245.9970 x166<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:black">Fax: 505.245.9971<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:black">Cell: 505.459.7620<u></u><u></u></span></p>
<p class="MsoNormal"><u><span style="color:blue"><a href="mailto:william.boucher@mza.com" target="_blank">william.boucher@mza.com</a></span></u><span style="color:black"><u></u><u></u></span></p>
</div>
<p class="MsoNormal"><span style="color:rgb(31,73,125)"><u></u> <u></u></span></p>
<div>
<div style="border-color:rgb(225,225,225) currentcolor currentcolor;border-style:solid none none;border-width:1pt medium medium;padding:3pt 0in 0in">
<p class="MsoNormal"><b>From:</b> Newman, Stuart J. (GSFC-491.0)[KBRwyle] [mailto:<a href="mailto:stuart.j.newman@nasa.gov" target="_blank">stuart.j.newman@nasa.gov</a>]
<br>
<b>Sent:</b> Wednesday, November 28, 2018 4:19 AM<br>
<b>To:</b> Boucher, William <<a href="mailto:William.Boucher@mza.com" target="_blank">William.Boucher@mza.com</a>>; <a href="mailto:open-scap-list@redhat.com" target="_blank">open-scap-list@redhat.com</a><br>
<b>Subject:</b> RE: Benchmark for Canonical Ubuntu 16.04 LTS<u></u><u></u></p>
</div>
</div>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal"><span style="color:rgb(31,73,125)">The current (0.1.41) version of the scap security guide has Ubuntu benchmarks.<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:rgb(31,73,125)"><u></u> <u></u></span></p>
<div>
<p class="MsoNormal"><b><span style="font-family:"Arial",sans-serif;color:rgb(84,87,97)">Stuart J Newman<u></u><u></u></span></b></p>
<p class="MsoNormal"><span style="color:rgb(31,73,125)"><u></u> <u></u></span></p>
<p class="MsoNormal"><span style="color:rgb(31,73,125)"><img id="gmail-m_4855630425819865659Picture_x0020_11" src="cid:16828cbeb8a4cff311" width="106" height="22" border="0"><u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:rgb(31,73,125)"><u></u> <u></u></span></p>
<p class="MsoNormal"><span style="font-size:9pt;font-family:"Arial",sans-serif;color:rgb(84,87,97)">Engineer 4; Systems<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-size:9pt;font-family:"Arial",sans-serif;color:rgb(84,87,97)">NASA/Goddard Space Flight Center, Building 14 Room 252 | Greenbelt, Maryland 20771 | USA<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-size:9pt;font-family:"Arial",sans-serif;color:rgb(84,87,97)">Office: +1 301. 286.5145 | Mobile: +1443.878.6146 |
<a href="mailto:Stuart.J.Newman@nasa.gov" target="_blank">Stuart.J.Newman@nasa.gov</a></span><span style="font-size:9pt;font-family:"Arial",sans-serif;color:rgb(31,73,125)"><u></u><u></u></span></p>
<p class="MsoNormal" style="text-align:center" align="center"><span style="font-size:12pt;font-family:"Times New Roman",serif;color:rgb(31,73,125)"><u></u> <u></u></span></p>
<p class="MsoNormal" style="text-align:center" align="center"><span style="font-size:12pt;font-family:"Times New Roman",serif;color:rgb(31,73,125)"><u></u> <u></u></span></p>
<div class="MsoNormal" style="text-align:center" align="center"><span style="font-size:12pt;font-family:"Times New Roman",serif;color:rgb(31,73,125)">
<hr width="100%" size="2" align="center">
</span></div>
<p class="MsoNormal"><span style="font-size:9pt;font-family:"Times New Roman",serif;color:rgb(31,73,125)">This e-mail, including any attached files, may contain confidential and privileged information for the sole use of the intended recipient. Any review, use,
distribution, or disclosure by others is strictly prohibited. If you are not the intended recipient (or authorized to receive information for the intended recipient), please contact the sender by reply e-mail and delete all copies of this message.
<u></u><u></u></span></p>
</div>
<p class="MsoNormal"><span style="color:rgb(31,73,125)"><u></u> <u></u></span></p>
<div>
<div style="border-color:rgb(225,225,225) currentcolor currentcolor;border-style:solid none none;border-width:1pt medium medium;padding:3pt 0in 0in">
<p class="MsoNormal"><b>From:</b> <a href="mailto:open-scap-list-bounces@redhat.com" target="_blank">
open-scap-list-bounces@redhat.com</a> <<a href="mailto:open-scap-list-bounces@redhat.com" target="_blank">open-scap-list-bounces@redhat.com</a>>
<b>On Behalf Of </b>Boucher, William<br>
<b>Sent:</b> November 27, 2018 18:23<br>
<b>To:</b> <a href="mailto:open-scap-list@redhat.com" target="_blank">open-scap-list@redhat.com</a><br>
<b>Subject:</b> [Open-scap] Benchmark for Canonical Ubuntu 16.04 LTS<u></u><u></u></p>
</div>
</div>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal">Hi folks,<u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal">I am currently hardening an Ubuntu embedded system for delivery to a customer.<u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal">I have downloaded the “Canonical Ubuntu 16.04 LTS STIG Ver 1, Rel 1” from DISA, and I have obtained a copy of the SCAP Compliance checker tool “SCC 5.0.2 Ubuntu 16 AMD64”.<u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal">What I am missing is an SCAP Benchmark file for Ubuntu 16.04. Does one exist?<u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal">I would like to use OpenSCAP to harden then scan this IS. The Open-SCAP BASE page says that Ubuntu is supported, so I can get the tools installed. But without a benchmark how would I proceed from there?
<u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal">Thank you,<u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal"> --Bill<u></u><u></u></p>
<p class="MsoNormal"><span style="color:black">William B. Boucher, BSEE<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:black">Embedded Systems Software Engineer
<br>
Information Systems Security Manager<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:black">MZA Associates Corporation<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:black">2021 Girard Blvd., SE, Suite 150<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:black">Albuquerque, New Mexico 87106<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:black">Phone: 505.245.9970 x166<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:black">Fax: 505.245.9971<u></u><u></u></span></p>
<p class="MsoNormal"><span style="color:black">Cell: 505.459.7620<u></u><u></u></span></p>
<p class="MsoNormal"><u><span style="color:blue"><a href="mailto:william.boucher@mza.com" target="_blank">william.boucher@mza.com</a></span></u><span style="color:black"><u></u><u></u></span></p>
<p class="MsoNormal"><u></u> <u></u></p>
</div>
</div>
_______________________________________________<br>
Open-scap-list mailing list<br>
<a href="mailto:Open-scap-list@redhat.com" target="_blank">Open-scap-list@redhat.com</a><br>
<a href="https://www.redhat.com/mailman/listinfo/open-scap-list" rel="noreferrer" target="_blank">https://www.redhat.com/mailman/listinfo/open-scap-list</a></blockquote></div><br clear="all"><br>-- <br><div dir="ltr" class="gmail_signature"><div dir="ltr">Watson Sato<br>Security Technologies | Red Hat, Inc<br></div></div></div></div>