Skip to content

PE-8058 Ubuntu 24.04 STIG image changes#551

Open
vipsharm wants to merge 12 commits intomainfrom
PE-8058
Open

PE-8058 Ubuntu 24.04 STIG image changes#551
vipsharm wants to merge 12 commits intomainfrom
PE-8058

Conversation

@vipsharm
Copy link
Contributor

@vipsharm vipsharm commented Feb 26, 2026

Add STIG image support for Ubuntu 24.04
Download STIG recommendations.
Build a script to apply these.
Run the remediation script to apply STIG recommendations
The base image will be STIG compliant.

Added ds.xml to log file so we can run compliance check on the host

sudo oscap xccdf eval --profile xccdf_org.ssgproject.content_profile_stig --report report.html /var/log/stig-remediation/ssg-ubuntu2404-ds.xml

Package the ds.xml so we can run the compliance check on host.
@vipsharm vipsharm requested a review from rishi-anand February 26, 2026 20:55
Copy link

@bulwark-spectrocloud bulwark-spectrocloud bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

⚠️ Gitleaks scan found potential secrets or sensitive information:


    • File: ubuntu-stig/static/ssg-ubuntu2404-ds.xml
    • Fingerprint: e8dd103c1025d9f5a4f4f3e05733303259dee24b:ubuntu-stig/static/ssg-ubuntu2404-ds.xml:generic-api-key:185271

Please review these findings and remove any sensitive information before merging.

Copy link

@bulwark-spectrocloud bulwark-spectrocloud bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

⚠️ Gitleaks scan found potential secrets or sensitive information:


    • File: ubuntu-stig/static/ssg-ubuntu2404-ds.xml
    • Fingerprint: e8dd103c1025d9f5a4f4f3e05733303259dee24b:ubuntu-stig/static/ssg-ubuntu2404-ds.xml:generic-api-key:185271

Please review these findings and remove any sensitive information before merging.

Copy link

@bulwark-spectrocloud bulwark-spectrocloud bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

⚠️ Gitleaks scan found potential secrets or sensitive information:


    • File: ubuntu-stig/static/ssg-ubuntu2404-ds.xml
    • Fingerprint: e8dd103c1025d9f5a4f4f3e05733303259dee24b:ubuntu-stig/static/ssg-ubuntu2404-ds.xml:generic-api-key:185271

Please review these findings and remove any sensitive information before merging.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant