Automatus file_groupownership_sshd_private_key/correct_groupowner.pass
fails on RHEL-10
#12893
Labels
productization-issue
Issue found in upstream stabilization process.
RHEL10
Red Hat Enterprise Linux 10 product related.
Description of problem:
This seems like a broken test that should never have worked .. ?
A
.pass.sh
test is defined in the README asBut the test does
where the rule description says:
So of course the
oscap
scan fails, failing the test, when the test intentionally creates a scenario that fails the check (a newssh_keys
group will not have GID 0).Even when reusing an existing group, the GID is not 0, ie. on RHEL-8 it is 995, on my Fedora it's 999, likely created with
groupadd -r / --system
.Attaching ARF in case you'd like to investigate.
SCAP Security Guide Version:
master @ 2edb023
Operating System Version:
RHEL-10
Steps to Reproduce:
file_groupownership_sshd_private_key
Additional Information/Debugging Steps:
The text was updated successfully, but these errors were encountered: