<?xml version="1.0" encoding="utf-8"?>
<feed xml:lang="en" xmlns="http://www.w3.org/2005/Atom"><title>Recent changes to feature-requests</title><link href="https://sourceforge.net/p/bastille-linux/feature-requests/" rel="alternate"/><link href="https://sourceforge.net/p/bastille-linux/feature-requests/feed.atom" rel="self"/><id>https://sourceforge.net/p/bastille-linux/feature-requests/</id><updated>2014-08-29T13:12:34.479000Z</updated><subtitle>Recent changes to feature-requests</subtitle><entry><title>test_AccountSecurity.pm limit find</title><link href="https://sourceforge.net/p/bastille-linux/feature-requests/19/" rel="alternate"/><published>2014-08-29T13:12:34.479000Z</published><updated>2014-08-29T13:12:34.479000Z</updated><author><name>Michael Jones</name><uri>https://sourceforge.net/u/bcmjone/</uri></author><id>https://sourceforge.netf2873e03e01d0263e64c6ba463b29f9432cbfffb</id><summary type="html">&lt;div class="markdown_content"&gt;&lt;p&gt;The test_AccountSecurity.pm  allows for a variable to limit the 'find'  on files from certain paths.    This could be improved to avoid edits to perl module source code.   By adding an option to the bastille command line to avoid certain paths or adding a config file of path exclusions.   Limiting find command on large database servers is certainly needed, otherwise the find will run for a very long time.&lt;/p&gt;&lt;/div&gt;</summary></entry><entry><title>IOLoader.pm updates</title><link href="https://sourceforge.net/p/bastille-linux/feature-requests/18/" rel="alternate"/><published>2014-08-29T13:07:10.163000Z</published><updated>2014-08-29T13:07:10.163000Z</updated><author><name>Michael Jones</name><uri>https://sourceforge.net/u/bcmjone/</uri></author><id>https://sourceforge.net8f35c3c2659194f7262157c94b7b999d983ef051</id><summary type="html">&lt;div class="markdown_content"&gt;&lt;p&gt;I have been using Bastille on HP-UX.   The IOLoader.pm needs changing to allow two things &lt;/p&gt;
&lt;p&gt;1) Allow the path of the 'img src' html tag to be something other than the path on HP-UX of /opt/sec_mgmt/bastille/lib to that of Apache webserver.   This could be done using bastille command line option or in a config file.&lt;br /&gt;
2) title and h1 html tags need to allow for hostnames.   These is needed when multiple bastille audit reports are posted on a website.   It make identifying what box the report came easier to see.   Also date should be added to h1 html tag.   I customized hostname/date requirments using Sys::Hostname and localtime in the perl mod.&lt;/p&gt;&lt;/div&gt;</summary></entry><entry><title>Support for RHEL 6 / CentOS 6</title><link href="https://sourceforge.net/p/bastille-linux/feature-requests/17/" rel="alternate"/><published>2013-01-22T23:00:33Z</published><updated>2013-01-22T23:00:33Z</updated><author><name>Ryan</name><uri>https://sourceforge.net/u/hammondry/</uri></author><id>https://sourceforge.net00440fbe8b41a866d820be190ae6d4352992e682</id><summary type="html">&lt;div class="markdown_content"&gt;&lt;p&gt;Probably a pipe dream...&lt;/p&gt;&lt;/div&gt;</summary></entry><entry><title>Support for Fedora Core 10</title><link href="https://sourceforge.net/p/bastille-linux/feature-requests/16/" rel="alternate"/><published>2009-04-22T14:46:38Z</published><updated>2009-04-22T14:46:38Z</updated><author><name>Anonymous</name><uri>https://sourceforge.net/u/userid-None/</uri></author><id>https://sourceforge.net74b82eddca799854a092191cef6d408ae2aa0bde</id><summary type="html">&lt;div class="markdown_content"&gt;&lt;p&gt;My company recently went through PCI certification.&lt;/p&gt;
&lt;p&gt;Bastille was actually listed as the primary tool to harden an internet facing, web server that takes or comes into contact with credit card information.&lt;/p&gt;
&lt;p&gt;Unfortunately, Bastille would not run as it doesn't support Fedora Core 10 (to my knowledge)&lt;/p&gt;
&lt;p&gt;Please contact me if I can be of any assistance; I have a few test environments I can play with; this has been deamed important enough that I can dedicate some time to it&lt;/p&gt;
&lt;p&gt;Let me know if I can help&lt;br /&gt;
-Mario&lt;br /&gt;
mgiambanco@gmail.com&lt;/p&gt;&lt;/div&gt;</summary></entry><entry><title>Bastille on Leopard</title><link href="https://sourceforge.net/p/bastille-linux/feature-requests/15/" rel="alternate"/><published>2008-08-17T10:34:00Z</published><updated>2008-08-17T10:34:00Z</updated><author><name>Anonymous</name><uri>https://sourceforge.net/u/userid-None/</uri></author><id>https://sourceforge.net5ce7d6cb99fff114a8964a5e8a48a0bfa2265815</id><summary type="html">&lt;div class="markdown_content"&gt;&lt;p&gt;Bastille at present still doesn't run on Mac OS X 10.5 Leopard.&lt;br /&gt;
When will it be ported?&lt;/p&gt;
&lt;p&gt;Thanks,&lt;br /&gt;
Best regards.&lt;/p&gt;
&lt;p&gt;Al.&lt;/p&gt;&lt;/div&gt;</summary></entry><entry><title>support for RHEL5 - Server</title><link href="https://sourceforge.net/p/bastille-linux/feature-requests/14/" rel="alternate"/><published>2008-04-24T21:05:29Z</published><updated>2008-04-24T21:05:29Z</updated><author><name>Anonymous</name><uri>https://sourceforge.net/u/userid-None/</uri></author><id>https://sourceforge.netaa3a8ab40fd119dddeeabcdef69844d9f5ac5644</id><summary type="html">&lt;div class="markdown_content"&gt;&lt;p&gt;there is no supported operating system for RHEL5 - can you put that in?&lt;/p&gt;&lt;/div&gt;</summary></entry><entry><title>Fedora Core 6 support</title><link href="https://sourceforge.net/p/bastille-linux/feature-requests/13/" rel="alternate"/><published>2008-01-08T08:02:08Z</published><updated>2008-01-08T08:02:08Z</updated><author><name>Anonymous</name><uri>https://sourceforge.net/u/userid-None/</uri></author><id>https://sourceforge.net8d146ff511943cb3da70a08265b11da039d392c4</id><summary type="html">&lt;div class="markdown_content"&gt;&lt;p&gt;When do you estimate to release a version that will support Fedora Core 6?&lt;/p&gt;
&lt;p&gt;From Stuart.Robin@sea.co.uk&lt;/p&gt;&lt;/div&gt;</summary></entry><entry><title>Fedora Core 6 support</title><link href="https://sourceforge.net/p/bastille-linux/feature-requests/12/" rel="alternate"/><published>2007-03-09T20:38:44Z</published><updated>2007-03-09T20:38:44Z</updated><author><name>Nick Vlad</name><uri>https://sourceforge.net/u/ivlad/</uri></author><id>https://sourceforge.net55e63990a2b7b6bfc263b9ed394b66e109f0ab15</id><summary type="html">&lt;div class="markdown_content"&gt;&lt;p&gt;[root@localhost ~]# bastille -c&lt;br /&gt;
ERROR:   'RHFC6' is not a supported operating system.&lt;br /&gt;
Valid operating system versions are as follows:&lt;br /&gt;
OSX:&lt;br /&gt;
'OSX10.2' 'OSX10.3' 'OSX10.4'&lt;br /&gt;
HP-UX:&lt;br /&gt;
'HP-UX11.00' 'HP-UX11.11' 'HP-UX11.22' 'HP-UX11.23' 'HP-UX11.31'&lt;/p&gt;
&lt;p&gt;LINUX:&lt;br /&gt;
'DB2.2' 'DB3.0' 'RH6.0' 'RH6.1' 'RH6.2'&lt;br /&gt;
'RH7.0' 'RH7.1' 'RH7.2' 'RH7.3' 'RH8.0'&lt;br /&gt;
'RH9' 'RHEL4AS' 'RHEL4ES' 'RHEL4WS' 'RHEL3AS'&lt;br /&gt;
'RHEL3ES' 'RHEL3WS' 'RHEL2AS' 'RHEL2ES' 'RHEL2WS'&lt;br /&gt;
'RHFC1' 'RHFC2' 'RHFC3' 'RHFC4' 'RHFC5'&lt;br /&gt;
'MN6.0' 'MN6.1 ' 'MN7.0' 'MN7.1' 'MN7.2'&lt;br /&gt;
'MN8.0' 'MN8.1' 'MN8.2' 'MN9.2' 'MN10.0'&lt;br /&gt;
'MN10.1' 'MN2006.0' 'SE7.2' 'SE7.3' 'SE8.0'&lt;br /&gt;
'SE8.1' 'SE9.0' 'SE9.1' 'SE9.2' 'SE9.3'&lt;br /&gt;
'SE10.0' 'SESLES8' 'SESLES9' 'TB7.0'&lt;/p&gt;&lt;/div&gt;</summary></entry><entry><title>No mails in hosts.allow</title><link href="https://sourceforge.net/p/bastille-linux/feature-requests/11/" rel="alternate"/><published>2005-12-09T11:31:11Z</published><updated>2005-12-09T11:31:11Z</updated><author><name>Jean-Pierre Bergamin</name><uri>https://sourceforge.net/u/jbergamin/</uri></author><id>https://sourceforge.netb88c5e255e40d068443ff8e836e14b2ac3a86e05</id><summary type="html">&lt;div class="markdown_content"&gt;&lt;p&gt;I'd recommend that you do not send mails within the &lt;br /&gt;
hosts.allow file (ALL : ALL : spawn &lt;br /&gt;
(/usr/sbin/safe_finger -l @%h | /bin/mail -s "Port &lt;br /&gt;
Denial noted %d-%h" root) &amp;amp; : DENY).&lt;/p&gt;
&lt;p&gt;Imagine what happens if you install sendmail, but &lt;br /&gt;
forget to add an entry in the hosts.allow file to &lt;br /&gt;
allow sendmail...&lt;/p&gt;
&lt;p&gt;This exactly happened to me. I had tens of thousands &lt;br /&gt;
e-mails in the sendmail queue after an hour. Every &lt;br /&gt;
mail that was tried to be sent from within &lt;br /&gt;
hosts.allow caused another mail to be sent out, which &lt;br /&gt;
caused another one, which....&lt;/p&gt;
&lt;p&gt;I'd prefer something like this:&lt;br /&gt;
ALL : ALL : spawn (/usr/sbin/safe_finger -l @%h &lt;br /&gt;
| /usr/bin/logger -p authpriv.warning -t &lt;br /&gt;
hosts.allow "Port Denial noted %d-%h" root) &amp;amp; : DENY&lt;/p&gt;
&lt;p&gt;It would be great, if the user could choose, what &lt;br /&gt;
action has to be taken during the set-up of bastille &lt;br /&gt;
(send mail, log it to the syslogger, etc.)&lt;/p&gt;
&lt;p&gt;Regards&lt;/p&gt;
&lt;p&gt;James&lt;/p&gt;&lt;/div&gt;</summary></entry><entry><title>SuSE 9.3 Support</title><link href="https://sourceforge.net/p/bastille-linux/feature-requests/10/" rel="alternate"/><published>2005-05-31T10:27:29Z</published><updated>2005-05-31T10:27:29Z</updated><author><name>Anonymous</name><uri>https://sourceforge.net/u/userid-None/</uri></author><id>https://sourceforge.net5c0a4b822b7bacfc4090091028010242ccea8cee</id><summary type="html">&lt;div class="markdown_content"&gt;&lt;p&gt;...&lt;/p&gt;&lt;/div&gt;</summary></entry></feed>