Page MenuHomeVyOS Platform

Result of system audit by Lynis
Closed, InvalidPublicBUG

Description

Result of scanning VyOS 1.4-rolling-202309040919 using Lynis 3.0.8 (package from debian bookworm).

For more information see:

https://cisofy.com/lynis/

Note that the testresult below was obtained by adding this to /etc/apt/sources.list:

deb http://ftp.se.debian.org/debian bookworm main

Followed by:

sudo apt-get update
sudo apt-get install lynis
sudo lynis audit system

Also note that not all recommendations are valid (for example that some apt sources are missing which they are supposed to be missing (all of them) in VyOS iso).

See attached file for testresult:

T5549_Lynis_audit_system_230904.txt.gz

Details

Difficulty level
Unknown (require assessment)
Version
1.4-rolling-202309040919
Why the issue appeared?
Will be filled on close
Is it a breaking change?
Unspecified (possibly destroys the router)
Issue type
Improvement (missing useful functionality)

Event Timeline

Updated scan performed on VyOS 1.5-rolling-202310090023 (see attached file).

Viacheslav triaged this task as Normal priority.Jan 20 2024, 1:15 PM
Viacheslav subscribed.

Needs to add some subtasks to fixing
Create please subtasks or close the task

@Apachez, what exactly do you want to fix here?

Its mainly a headsup for maintainers to go through the report and fix whats possible.

Without subtasks, it is going to be dead.
@Apachez It is not clear what you want to fix exactly. Fix all and do all working well could be related to any task.

dmbaturin edited projects, added Invalid; removed VyOS 1.4 Sagitta (1.4.1).
dmbaturin subscribed.

Since the task as worded is no actionable, I'm closing it as invalid. I'm not against using any tools that might help us, but we need to be sure what the task is (e.g., to implement regular scanning, or to fix specific suggestions from a scan...).