Skip to content

[Ubuntu 24.04] Add stigid@ubuntu2404 references: Auditing Rules#14482

Closed
hdean3 wants to merge 1 commit intoComplianceAsCode:masterfrom
hdean3:fix/stigid-ubuntu2404-auditing
Closed

[Ubuntu 24.04] Add stigid@ubuntu2404 references: Auditing Rules#14482
hdean3 wants to merge 1 commit intoComplianceAsCode:masterfrom
hdean3:fix/stigid-ubuntu2404-auditing

Conversation

@hdean3
Copy link
Copy Markdown
Contributor

@hdean3 hdean3 commented Feb 27, 2026

Summary

Adds missing stigid@ubuntu2404 cross-references to 80 rule.yml files for audit rules (DAC modifications, file deletions, unsuccessful modifications, kernel module loading, SUID/SGID execution, account management events).

Coverage Gap Addressed

Ubuntu 24.04 LTS (UBTU-24-XXXXXX) had zero stigid@ubuntu2404 entries in ComplianceAsCode/content prior to this PR series. This PR is part of an 11-PR series covering all 230 rules mapped in controls/stig_ubuntu2404.yml.

Changes

  • Category: Auditing Rules
  • Files modified: rule.yml files with stigid@ubuntu2404: UBTU-24-XXXXXX added to references: block
  • No functional logic changes — reference metadata only
  • All existing references: entries preserved

Related PRs in this series

This PR is part of the same series as the Ubuntu 22.04 STIG stigid@ gap-filling work (#14463#14471).

Testing

# Verify stigid@ubuntu2404 appears in modified files
grep -r "stigid@ubuntu2404" linux_os/ | wc -l

Fixes part of: Ubuntu 24.04 has zero stigid@ubuntu2404 coverage in CaC (V1R1)

Adds missing stigid@ubuntu2404 cross-references to 80 rule.yml files
mapping to UBTU-24-XXXXXX STIG IDs from the Ubuntu 24.04 LTS STIG V1R1.

Addresses coverage gap: Ubuntu 24.04 had zero stigid@ubuntu2404 entries
in ComplianceAsCode/content.
@openshift-ci openshift-ci Bot added the needs-ok-to-test Used by openshift-ci bot. label Feb 27, 2026
@openshift-ci
Copy link
Copy Markdown

openshift-ci Bot commented Feb 27, 2026

Hi @hdean3. Thanks for your PR.

I'm waiting for a ComplianceAsCode member to verify that this patch is reasonable to test. If it is, they should reply with /ok-to-test on its own line. Until that is done, I will not automatically test new commits in this PR, but the usual testing commands by org members will still work. Regular contributors should join the org to skip this step.

Once the patch is verified, the new status will be reflected by the ok-to-test label.

I understand the commands that are listed here.

Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository.

@hdean3
Copy link
Copy Markdown
Contributor Author

hdean3 commented Feb 27, 2026

Closing to clear CI/CD queue. Ubuntu 24.04 stigid@ubuntu2404 additions will be re-submitted after investigating Build Content failures. Will re-open in small batches of 2-3.

@hdean3 hdean3 closed this Feb 27, 2026
@hdean3 hdean3 deleted the fix/stigid-ubuntu2404-auditing branch February 27, 2026 22:35
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

needs-ok-to-test Used by openshift-ci bot.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant