Skip to content

Commit

Permalink
Merge pull request #5280 from redhatrises/cleanup-coreos
Browse files Browse the repository at this point in the history
Clear up coreos profile titles and descriptions
  • Loading branch information
jan-cerny committed Mar 12, 2020
2 parents 1b87962 + 61e1f67 commit dcc1157
Show file tree
Hide file tree
Showing 2 changed files with 9 additions and 14 deletions.
6 changes: 3 additions & 3 deletions ocp4/profiles/coreos-ncp.profile
Original file line number Diff line number Diff line change
Expand Up @@ -15,7 +15,7 @@ description: |-

- Committee on National Security Systems Instruction No. 1253 (CNSSI 1253)
- NIST Controlled Unclassified Information (NIST 800-171)
- NIST 800-53 control selections for MODERATE impact systems (NIST 800-53)
- NIST 800-53 control selections for Moderate-Impact systems (NIST 800-53)
- U.S. Government Configuration Baseline (USGCB)
- NIAP Protection Profile for General Purpose Operating Systems v4.2.1 (OSPP v4.2.1)
- DISA Operating System Security Requirements Guide (OS SRG)
Expand All @@ -26,9 +26,9 @@ description: |-
scap-security-guide-docs package.

This profile reflects U.S. Government consensus content and is developed through
the OpenSCAP/SCAP Security Guide initiative, championed by the National
the ComplianceAsCode initiative, championed by the National
Security Agency. Except for differences in formatting to accommodate
publishing processes, this profile mirrors OpenSCAP/SCAP Security Guide
publishing processes, this profile mirrors ComplianceAsCode
content as minor divergences, such as bugfixes, work through the
consensus and release processes.

Expand Down
17 changes: 6 additions & 11 deletions ocp4/profiles/moderate.profile
Original file line number Diff line number Diff line change
@@ -1,10 +1,10 @@
documentation_complete: true

title: 'NIST National Checklist for Red Hat Enterprise Linux CoreOS'
title: 'NIST 800-53 Moderate-Impact Baseline for Red Hat Enterprise Linux CoreOS'

description: |-
This compliance profile reflects the core set of security
related configuration settings for deployment of Red Hat Enterprise
This compliance profile reflects the core set of Moderate-Impact Baseline
configuration settings for deployment of Red Hat Enterprise
Linux CoreOS into U.S. Defense, Intelligence, and Civilian agencies.
Development partners and sponsors include the U.S. National Institute
of Standards and Technology (NIST), U.S. Department of Defense,
Expand All @@ -13,22 +13,17 @@ description: |-
This baseline implements configuration requirements from the following
sources:

- Committee on National Security Systems Instruction No. 1253 (CNSSI 1253)
- NIST Controlled Unclassified Information (NIST 800-171)
- NIST 800-53 control selections for MODERATE impact systems (NIST 800-53)
- U.S. Government Configuration Baseline (USGCB)
- NIAP Protection Profile for General Purpose Operating Systems v4.2.1 (OSPP v4.2.1)
- DISA Operating System Security Requirements Guide (OS SRG)
- NIST 800-53 control selections for Moderate-Impact systems (NIST 800-53)

For any differing configuration requirements, e.g. password lengths, the stricter
security setting was chosen. Security Requirement Traceability Guides (RTMs) and
sample System Security Configuration Guides are provided via the
scap-security-guide-docs package.

This profile reflects U.S. Government consensus content and is developed through
the OpenSCAP/SCAP Security Guide initiative, championed by the National
the ComplianceAsCode initiative, championed by the National
Security Agency. Except for differences in formatting to accommodate
publishing processes, this profile mirrors OpenSCAP/SCAP Security Guide
publishing processes, this profile mirrors ComplianceAsCode
content as minor divergences, such as bugfixes, work through the
consensus and release processes.

Expand Down

0 comments on commit dcc1157

Please sign in to comment.