This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| { | |
| "ssg:rhel7|standard|xccdf_org.ssgproject.content_rule_sshd_set_keepalive": false, | |
| "ssg:rhel7|standard|xccdf_org.ssgproject.content_rule_sshd_disable_empty_passwords": false, | |
| "ssg:rhel7|standard|xccdf_org.ssgproject.content_rule_sshd_disable_root_login": false, | |
| "ssg:rhel7|standard|xccdf_org.ssgproject.content_rule_sshd_set_idle_timeout": false, | |
| "ssg:rhel7|standard|xccdf_org.ssgproject.content_rule_chronyd_or_ntpd_specify_remote_server": false, | |
| "ssg:rhel7|standard|xccdf_org.ssgproject.content_rule_service_chronyd_or_ntpd_enabled": false, | |
| "ssg:rhel7|standard|xccdf_org.ssgproject.content_rule_set_firewalld_default_zone": false, | |
| "ssg:rhel7|standard|xccdf_org.ssgproject.content_rule_display_login_attempts": false, | |
| "ssg:rhel7|standard|xccdf_org.ssgproject.content_rule_no_direct_root_logins": false, |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| [ActiveJob] [ParseReportJob] [fff126ad-e68a-4b97-a652-119bf824a0ad] Performing ParseReportJob (Job ID: fff126ad-e68a-4b97-a652-119bf824a0ad) from Async(default) for account: "1460290" | |
| [ActiveJob] Enqueued ParseReportJob (Job ID: fff126ad-e68a-4b97-a652-119bf824a0ad) to Async(default) for account: "1460290" | |
| Message enqueued: dlobatog as fff126ad-e68a-4b97-a652-119bf824a0ad | |
| I, [2019-03-22T19:09:38.353553 #406] INFO -- : New topics added to target list: platform.upload.validation | |
| I, [2019-03-22T19:09:38.353599 #406] INFO -- : Fetching cluster metadata from kafka://localhost:29092 | |
| I, [2019-03-22T19:09:38.356545 #406] INFO -- : Discovered cluster metadata; nodes: kafka:29092 (node_id=1) | |
| I, [2019-03-22T19:09:38.356832 #406] INFO -- : Sending 1 messages to kafka:29092 (node_id=1) | |
| [ActiveJob] [ParseReportJob] [fff126ad-e68a-4b97-a652-119bf824a0ad] Account Load (0.9ms) SELECT "accounts".* FROM "accounts" WHERE "accounts"."account_number" = $1 LIMIT $2 [["account_number", "1460290"], ["LIMIT", 1]] | |
| [ActiveJob] |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| [ActiveJob] [ParseReportJob] [82883349-7cdf-4f77-bfb0-4eafc8ac36d3] Performing ParseReportJob (Job ID: 82883349-7cdf-4f77-bfb0-4eafc8ac36d3) from Async(default) for account: "1460290" | |
| [ActiveJob] [ParseReportJob] [82883349-7cdf-4f77-bfb0-4eafc8ac36d3] Account Load (0.4ms) SELECT "accounts".* FROM "accounts" WHERE "accounts"."account_number" = $1 LIMIT $2 [["account_number", "1460290"], ["LIMIT", 1]] | |
| [ActiveJob] [ParseReportJob] [82883349-7cdf-4f77-bfb0-4eafc8ac36d3] ↳ app/services/xccdf_report_parser.rb:23 | |
| [ActiveJob] [ParseReportJob] [82883349-7cdf-4f77-bfb0-4eafc8ac36d3] Profile Load (0.4ms) SELECT "profiles".* FROM "profiles" WHERE "profiles"."name" = $1 AND "profiles"."ref_id" = $2 AND "profiles"."account_id" = $3 LIMIT $4 [["name", "Standard System Security Profile for Fedora"], ["ref_id", "xccdf_org.ssgproject.content_profile_standard"], ["account_id", "9f6f30ee-dd69-42e6-bfc0-374e85e3cdc7"], ["LIMIT", 1]] | |
| [ActiveJob] [ParseReportJob] [82883349-7cdf-4f77-bfb0-4eafc8ac36d3] ↳ app/services/ |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| class OpenshiftConnection < ApplicationRecord | |
| attr_encrypted_options.merge!(key: ENV.fetch('OPENSHIFT_TOKENS_SECRET')) | |
| belongs_to :account | |
| validates :api_url, presence: true | |
| validates :registry_api_url, presence: true | |
| validates :username, presence: true | |
| validates :token, presence: true |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| sudo oscap-docker image registry.insights-dev.openshift.com:443/buildfactory/compliance-backend xccdf eval --fetch-remote-resources --results oscap-docker-results.xml --report report.ht | |
| ml /usr/share/xml/scap/ssg/content/ssg-centos7-xccdf.xml | |
| Downloading: https://www.redhat.com/security/data/oval/com.redhat.rhsa-RHEL7.xml.bz2 ... ok | |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| sudo oscap-docker image registry.insights-dev.openshift.com:443/buildfactory/compliance-backend xccdf eval --results oscap-docker-results.xml --report report.html /usr/share/xml/scap/ssg/content/ssg-rhel7-xccdf.xml --fetch-remote-resources | |
| Could not mount docker container: | |
| /usr/bin/mount -o ro,nosuid,nodev,context="system_u:object_r:container_file_t:s0" /dev/mapper/docker-253:1-2886585-2bf918b8e43317162f6c422260b272cff81be15a500eb0d8c4a8ac7855fd1d97 /tmp/tmp_1bm8aej/8b096f3321a87e1673f2 | |
| mount.nfs: Failed to resolve server /dev/mapper/docker-253: Name or service not known |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| [insights-client] | |
| # Example options in this file are the defaults | |
| # Change log level, valid options DEBUG, INFO, WARNING, ERROR, CRITICAL. Default DEBUG | |
| #loglevel=DEBUG | |
| # Log each line executed | |
| #trace=False | |
| # Attempt to auto configure with Satellite server |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| "HTTP_COOKIE"=> | |
| "rh_omni_tc=701f2000001Css5AAC; AAMC_redhat_0=REGION%7C6; check=true; AMCVS_945D02BE532957400A490D4C%40AdobeOrg=1; s_cc=true; rh_lo | |
| cale=en_US; rh_sso_session=1; dmdbase_cdc=DBSET; mbox=PC#e5cbe99eebcd46b3b0d52776b14d74c6.26_3#1611585873|session#57fbf2dfc5d6487c81b07 | |
| 3487048df83#1548342944; BIGipServer~qa~kcs-webapp-http=242948874.20480.0000; dtm_prevURL=https%3A%2F%2Fsso.qa.redhat.com%2Fauth%2Frealm | |
| s%2Fredhat-external%2Fprotocol%2Fopenid-connect%2Fauth%3Fclient_id%3Dcustomer-portal%26redirect_uri%3Dhttps%253A%252F%252Fci.foo.redhat | |
| .com%253A1337%252Finsights%252Fplatform%252Fcompliance%252Fpolicies%26state%3D2ee23801-e964-404d-88a7-9de63cf13b60%26response_mode%3Dqu | |
| ery%26response_type%3Dcode%26scope%3Dopenid%26nonce%3Dda30b42a-5cfc-426b-85cd-878b8b434d66; dtm_prevProp=prod.foo.redhat.com%7Cprod.foo | |
| .redhat.com%7Cprod.foo.redhat.com%7Cci.foo.redhat.com%7Cci.foo.redhat.com; sat_prevExtCmp=701f2000001Css5AAC; sat_prevPage=sso.qa.redha | |
| t.com%7Cauth%7Crealms%7Credhat-external%7Cprotocol%7Cope |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| 13: def authenticate_user | |
| 14: binding.pry | |
| => 15: return unauthenticated unless identity_header | |
| 16: | |
| 17: account = Account.find_or_create_by( | |
| 18: account_number: identity_header_content['account_number'] | |
| 19: ) | |
| 20: user = find_or_create_user(identity_header_content['user']['username'], | |
| 21: account) |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| Document type: Source Data Stream | |
| Imported: 2018-10-01T17:20:34 | |
| Stream: scap_org.open-scap_datastream_from_xccdf_ssg-fedora-xccdf-1.2.xml | |
| Generated: (null) | |
| Version: 1.2 | |
| Checklists: | |
| Ref-Id: scap_org.open-scap_cref_ssg-fedora-xccdf-1.2.xml | |
| Status: draft | |
| Generated: 2018-10-01 |