Skip to content

Commit

Permalink
Clarify what fixes for AIDE acl and xattrs do
Browse files Browse the repository at this point in the history
From the rule description is not clear what will be changed by the rule.
  • Loading branch information
yuumasato committed May 6, 2021
1 parent 713eb14 commit 9678c52
Show file tree
Hide file tree
Showing 2 changed files with 6 additions and 0 deletions.
Expand Up @@ -13,6 +13,9 @@ description: |-
AIDE rules can be configured in multiple ways; this is merely one example that is already
configured by default.
The remediation provided with this rule adds <tt>acl</tt> to all rule sets available in
<tt>/etc/aide.conf</tt>
rationale: |-
ACLs can provide permissions beyond those permitted through the file mode and must be
verified by the file integrity tools.
Expand Down
Expand Up @@ -13,6 +13,9 @@ description: |-
AIDE rules can be configured in multiple ways; this is merely one example that is already
configured by default.
The remediation provided with this rule adds <tt>xattrs</tt> to all rule sets available in
<tt>/etc/aide.conf</tt>
rationale: |-
Extended attributes in file systems are used to contain arbitrary data and file metadata
with security implications.
Expand Down

0 comments on commit 9678c52

Please sign in to comment.