Welcome to mirror list, hosted at ThFree Co, Russian Federation.

github.com/CISOfy/lynis.git - Unnamed repository; edit this file 'description' to name the repository.
summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authormboelen <michael@cisofy.com>2016-04-27 11:52:45 +0300
committermboelen <michael@cisofy.com>2016-04-27 11:52:45 +0300
commitb453190cd793cfd0c035903b68b3fa70a9946960 (patch)
tree0cc587e61f6a1dae9700874e20160b975b82c167 /include
parent84d619852aabde7c35afd7f780a16d6d91579ecc (diff)
Added firewall_software[] to report
Diffstat (limited to 'include')
-rw-r--r--include/tests_firewalls8
1 files changed, 7 insertions, 1 deletions
diff --git a/include/tests_firewalls b/include/tests_firewalls
index fe8c20e5..bb2b0d62 100644
--- a/include/tests_firewalls
+++ b/include/tests_firewalls
@@ -91,6 +91,7 @@
fi
fi
fi
+ if [ ${IPTABLES_ACTIVE} -eq 1 ]; then Report "firewall_software[]=iptables"; fi
fi
#
#################################################################################
@@ -246,6 +247,7 @@
if [ ${PFFOUND} -eq 1 ]; then
FIREWALL_ACTIVE=1
FIREWALL_SOFTWARE="pf"
+ Report "firewall_software[]=pf"
else
LogText "Result: pf not running on this system"
fi
@@ -295,6 +297,7 @@
LogText "Result: ${FILE} exists"
FIREWALL_ACTIVE=1
FIREWALL_SOFTWARE="csf"
+ Report "firewall_software[]=csf"
Display --indent 2 --text "- Checking CSF status (configuration file)" --result FOUND --color GREEN
else
LogText "Result: ${FILE} does NOT exist"
@@ -314,6 +317,7 @@
LogText "Result: ipf is enabled and running"
FIREWALL_ACTIVE=1
FIREWALL_SOFTWARE="ipf"
+ Report "firewall_software[]=ipf"
else
Display --indent 4 --text "- Checking ipf status" --result "NOT RUNNING" --color YELLOW
LogText "Result: ipf is not running"
@@ -334,6 +338,7 @@
LogText "Result: IPFW is running for IPv4"
FIREWALL_ACTIVE=1
FIREWALL_SOFTWARE="ipfw"
+ Report "firewall_software[]=ipfw"
IPFW_ENABLED=`service -e | grep -o ipfw`
if [ "${IPFW_ENABLED}" = "ipfw" ]; then
Display --indent 4 --text "- IPFW enabled in /etc/rc.conf" --result YES --color GREEN
@@ -384,6 +389,7 @@
if [ ! "${FIND}" = "" ]; then
FIREWALL_SOFTWARE="nftables"
NFTABLES_ACTIVE=1
+ Report "firewall_software[]=nftables"
fi
fi
#
@@ -396,7 +402,7 @@
if [ ${SKIPTEST} -eq 0 ]; then
# Retrieve nft version
NFT_VERSION=`${NFTBINARY} --version 2> /dev/null | ${AWKBINARY} '{ if ($1=="nftables") { print $2 }}' | tr -d 'v'`
- report "nft_version=${NFT_VERSION}"
+ Report "nft_version=${NFT_VERSION}"
# Check for empty ruleset
NFT_RULES_LENGTH=`${NFTBINARY} export json 2> /dev/null | wc -c`