From 6fb683a2ac1808ab74c4e6e70080f61773279993 Mon Sep 17 00:00:00 2001 From: Andrew Lukoshko Date: Wed, 14 Jan 2026 16:50:46 +0000 Subject: [PATCH] import CS scap-security-guide-0.1.79-1.el8 --- .gitignore | 2 +- .scap-security-guide.metadata | 2 +- SPECS/scap-security-guide.spec | 11 ++++++++++- 3 files changed, 12 insertions(+), 3 deletions(-) diff --git a/.gitignore b/.gitignore index d568cd9..d29db1a 100644 --- a/.gitignore +++ b/.gitignore @@ -1,3 +1,3 @@ SOURCES/scap-security-guide-0.1.52-2.el7_9-rhel6.tar.bz2 SOURCES/scap-security-guide-0.1.73-1.el7_9-rhel7.tar.bz2 -SOURCES/scap-security-guide-0.1.78.tar.bz2 +SOURCES/scap-security-guide-0.1.79.tar.bz2 diff --git a/.scap-security-guide.metadata b/.scap-security-guide.metadata index 53d78dd..113887a 100644 --- a/.scap-security-guide.metadata +++ b/.scap-security-guide.metadata @@ -1,3 +1,3 @@ b22b45d29ad5a97020516230a6ef3140a91d050a SOURCES/scap-security-guide-0.1.52-2.el7_9-rhel6.tar.bz2 17274daaa588330aa4df9a4d8df5ef448e40a696 SOURCES/scap-security-guide-0.1.73-1.el7_9-rhel7.tar.bz2 -c5818deab3cfdbfb59c3dc745de3898380429a94 SOURCES/scap-security-guide-0.1.78.tar.bz2 +91163dda2ac5ca31984d3488bcea8eda7fce1de8 SOURCES/scap-security-guide-0.1.79.tar.bz2 diff --git a/SPECS/scap-security-guide.spec b/SPECS/scap-security-guide.spec index 9e1be12..b46fc61 100644 --- a/SPECS/scap-security-guide.spec +++ b/SPECS/scap-security-guide.spec @@ -5,7 +5,7 @@ # global _default_patch_fuzz 2 # Normally shouldn't be needed as patches should apply cleanly Name: scap-security-guide -Version: 0.1.78 +Version: 0.1.79 Release: 1%{?dist} Summary: Security guidance and baselines in SCAP formats License: BSD-3-Clause @@ -124,6 +124,15 @@ ln -s ssg-firefox-ds.xml %{buildroot}%{_datadir}/xml/scap/ssg/content/ssg-firefo %endif %changelog +* Mon Dec 1 2025 Artem Denisov - 0.1.79-1 +- Rebase scap-security-guide to the latest upstream version 0.1.79 (RHEL-130249) +- Introduce configure_custom_crypto_policy_cis rule to restrict weak ciphers in RHEL CIS profiles (RHEL-111896) +- Cover configuration of maxseq parameter in pwquality in all CIS profiles (RHEL-128593) +- Add missing requirement to configure_custom_crypto_policy_cis rule (RHEL-76009) +- Enable sshd_disable_forwarding rule for RHEL8 (RHEL-76009) +- Fix idempotency of network_ipv6_privacy_extensions rule (RHEL-106813) +- Make enable_authselect rule not applicable in containers (RHEL-84439) + * Tue Sep 16 2025 Matthew Burket - 0.1.78-1 - Rebase scap-security-guide to the latest upstream version 0.1.78 (RHEL-111011) - Rule service_rngd_enabled is now evaluated on RHEL >= 8.4 in case kernel is not in FIPS mode (RHEL-95188)