DevSec Linux Patch Baseline - InSpec Profile
Clone or download
iveskins and chris-rock allow yum to run as non-root user. (#20)
* Update linux_updates.rb

run yum-cli via sudo, so can work with non-root user

* Update linux_updates.rb

set cache dir for yum. Default cache dir needs root access. setting the cache dir to tmp to allow non-root users to run this test. This way we don't need to allow ssh to the root account, or enable python in sudoers.

* Update linux_updates.rb

remove unneeded 'sudo'
Latest commit 4f8ab3f Sep 14, 2018
Permalink
Failed to load latest commit information.
controls add suse support (#15) Apr 12, 2018
libraries allow yum to run as non-root user. (#20) Sep 14, 2018
.kitchen.yml fix #3 Dec 1, 2016
.rubocop.yml update all lints Apr 12, 2018
.travis.yml restrict ruby testing to version 2.3.3 Apr 4, 2017
CHANGELOG.md 0.4.0 Apr 12, 2018
CONTRIBUTING.md
CentOS+Patch.png initial commit Sep 27, 2016
Gemfile fix vulnerable rubocop version for testing Apr 12, 2018
LICENSE initial commit Sep 27, 2016
README.md add suse support (#15) Apr 12, 2018
Rakefile 0.3.0 May 8, 2017
inspec.yml 0.4.0 Apr 12, 2018

README.md

Linux Patch Benchmark

This InSpec profile verifies that all updates have been installed on a RedHat/CentOS/Ubuntu machine. It uses the local package manager to determine the available packages.

Available Patches in CentOs 7

Supported Operating Systems

  • RHEL 6/7
  • CentOS 6/7
  • Ubuntu 12.04+
  • OpenSUSE, SuSE 11/12

License

Author: Dominik Richter (dominik.richter@googlemail.com)
Author: Christoph Hartmann (chris@lollyrock.com)
Copyright: Dominik Richter (dominik.richter@googlemail.com)
Copyright: Christoph Hartmann (chris@lollyrock.com)
License: Mozilla Public License Version 2.0