-
Story
-
Resolution: Done
-
Undefined
-
None
-
None
-
None
1. Proposed title of this feature request
Rule (xccdf_org.ssgproject.content_rule_security_patches_up_to_date ) should be enabled/checked by default when running compliance can using CIS Profile( xccdf_org.ssgproject.content_profile_cis).
2. What is the nature and description of the request?
In CIS Profile( xccdf_org.ssgproject.content_profile_cis) under the section "Updating software" rule "Ensure Software Patches Installed (xccdf_org.ssgproject.content_rule_security_patches_up_to_date )" is not enabled by default.The customer uses satellite to run compliance scans now to make sure the rule( (xccdf_org.ssgproject.content_rule_security_patches_up_to_date )) is evaluated, the customer has to create a tailoring file and perform additional settings and the customer would like to avoid those steps and request to enable the rule "Ensure Software Patches Installed (xccdf_org.ssgproject.content_rule_security_patches_up_to_date )" as a part of default CIS checklist.
3. How would the customer like to achieve this? (List the functional requirements here)
Enable the rule as a part of the default checklist, so during the scan the rule will be evaluated by default.
4. Is there already an existing RFE upstream or in Red Hat Bugzilla?
NA
5. Would the customer be able to assist in testing this functionality if implemented?
Yes