On 23/01/18 13:42, Dan White wrote:
Another head-scratcher:

RHEL 6 scan brings up findings saying rsyslog is not installed or configured. We are using the rsyslog7 package for compatibility with things like Splunk and LogStash and such.

Is there a workaround or should I create a bug/issue about this ?
Can rsyslog and rsylog7 be used interchangeably, and configured the same way by other rsyslog related rules? If so, RHEL6 can have own definition for package_rsyslog_installed checking for rsyslog or rsyslog7.

In the mean time, the workaround is to edit the content to check for rsyslog7 instead of rsyslog.
Look for the snippet below and change it to rsyslog7.
        <ns5:rpminfo_object id="oval:ssg-obj_package_rsyslog_installed:obj:1" version="1">
          <ns5:name>rsyslog</ns5:name>
        </ns5:rpminfo_object>



Dan White | [email protected]
------------------------------------------------
“Sometimes I think the surest sign that intelligent life exists elsewhere in the universe is that none of it has tried to contact us.”  (Bill Waterson: Calvin & Hobbes)



_______________________________________________
Open-scap-list mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/open-scap-list


--
Watson Sato
Security Technologies | Red Hat, Inc

_______________________________________________
Open-scap-list mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/open-scap-list

Reply via email to