From 8ea39314f2a028bca4ff53842258459c8ca018d3 Mon Sep 17 00:00:00 2001 From: Topi Miettinen Date: Mon, 23 Mar 2020 10:35:38 +0200 Subject: Check for dm-integrity and dm-verity Detect tools for dm-integrity and dm-verity, check if some devices in /dev/mapper/* use them and especially the system root device. Signed-off-by: Topi Miettinen --- db/tests.db | 2 ++ 1 file changed, 2 insertions(+) (limited to 'db') diff --git a/db/tests.db b/db/tests.db index 44a9a410..3fc66b9a 100644 --- a/db/tests.db +++ b/db/tests.db @@ -136,6 +136,8 @@ FINT-4334:test:security:file_integrity::Check lfd daemon status: FINT-4336:test:security:file_integrity::Check lfd configuration status: FINT-4338:test:security:file_integrity::osqueryd syscheck daemon running: FINT-4339:test:security:file_integrity:Linux:Check IMA/EVM Status +FINT-4340:test:security:file_integrity:Linux:Check dm-integrity status +FINT-4341:test:security:file_integrity:Linux:Check dm-verity status FINT-4350:test:security:file_integrity::File integrity software installed: FINT-4402:test:security:file_integrity::Checksums (SHA256 or SHA512): FIRE-4502:test:security:firewalls:Linux:Check iptables kernel module: -- cgit v1.2.3