Skip to content
Richard Spindler edited this page Jan 15, 2017 · 1 revision

Ubuntu

CIS benchmarks:

https://benchmarks.cisecurity.org/downloads/multiform/index.cfm

Ubuntu Security Notices:

http://www.ubuntu.com/usn/

Ubuntu Security:

https://help.ubuntu.com/13.10/serverguide/security.html

Example usage

This output is in an older format.

# ./lunar.sh -a

Running:   In audit mode (no changes will be made to system)
           Filesystem checks will not be done


# SYSTEM INFORMATION:

Platform:  Ubuntu Linux 13 Update 10 on x86_64
Checking:  Security message in /etc/issue
Warning:   No security message in /etc/issue [-1]
Checking:  Value of "Protocol" in /etc/ssh/sshd_config is "2"
Secure:    Parameter "Protocol" already set to "2" in /etc/ssh/sshd_config [0]
Checking:  Value of "X11Forwarding" in /etc/ssh/sshd_config is "no"
Warning:   Parameter "X11Forwarding" not set to "no" in /etc/ssh/sshd_config [-1]
Checking:  Value of "MaxAuthTries" in /etc/ssh/sshd_config is "3"
Warning:   Parameter "MaxAuthTries" not set to "3" in /etc/ssh/sshd_config [-2]
Checking:  Value of "MaxAuthTriesLog" in /etc/ssh/sshd_config is "0"
Warning:   Parameter "MaxAuthTriesLog" not set to "0" in /etc/ssh/sshd_config [-3]
Checking:  Value of "RhostsAuthentication" in /etc/ssh/sshd_config is "no"
Warning:   Parameter "RhostsAuthentication" not set to "no" in /etc/ssh/sshd_config [-4]
Checking:  Value of "IgnoreRhosts" in /etc/ssh/sshd_config is "yes"
Secure:    Parameter "IgnoreRhosts" already set to "yes" in /etc/ssh/sshd_config [-3]
Checking:  Value of "StrictModes" in /etc/ssh/sshd_config is "yes"
Secure:    Parameter "StrictModes" already set to "yes" in /etc/ssh/sshd_config [-2]
Checking:  Value of "AllowTcpForwarding" in /etc/ssh/sshd_config is "no"
Warning:   Parameter "AllowTcpForwarding" not set to "no" in /etc/ssh/sshd_config [-3]
Checking:  Value of "ServerKeyBits" in /etc/ssh/sshd_config is "1024"
Warning:   Parameter "ServerKeyBits" not set to "1024" in /etc/ssh/sshd_config [-4]
Checking:  Value of "GatewayPorts" in /etc/ssh/sshd_config is "no"
Warning:   Parameter "GatewayPorts" not set to "no" in /etc/ssh/sshd_config [-5]
Checking:  Value of "RhostsRSAAuthentication" in /etc/ssh/sshd_config is "no"
Secure:    Parameter "RhostsRSAAuthentication" already set to "no" in /etc/ssh/sshd_config [-4]
Checking:  Value of "PermitRootLogin" in /etc/ssh/sshd_config is "no"
Warning:   Parameter "PermitRootLogin" not set to "no" in /etc/ssh/sshd_config [-5]
Checking:  Value of "PermitEmptyPasswords" in /etc/ssh/sshd_config is "no"
Secure:    Parameter "PermitEmptyPasswords" already set to "no" in /etc/ssh/sshd_config [-4]
Checking:  Value of "PermitUserEnvironment" in /etc/ssh/sshd_config is "no"
Warning:   Parameter "PermitUserEnvironment" not set to "no" in /etc/ssh/sshd_config [-5]
Checking:  Value of "HostbasedAuthentication" in /etc/ssh/sshd_config is "no"
Secure:    Parameter "HostbasedAuthentication" already set to "no" in /etc/ssh/sshd_config [-4]
Checking:  Value of "Banner" in /etc/ssh/sshd_config is "/etc/issue"
Warning:   Parameter "Banner" not set to "/etc/issue" in /etc/ssh/sshd_config [-5]
Checking:  Value of "PrintMotd" in /etc/ssh/sshd_config is "no"
Secure:    Parameter "PrintMotd" already set to "no" in /etc/ssh/sshd_config [-4]
Checking:  Value of "ClientAliveInterval" in /etc/ssh/sshd_config is "300"
Warning:   Parameter "ClientAliveInterval" not set to "300" in /etc/ssh/sshd_config [-5]
Checking:  Value of "ClientAliveCountMax" in /etc/ssh/sshd_config is "0"
Warning:   Parameter "ClientAliveCountMax" not set to "0" in /etc/ssh/sshd_config [-6]
Checking:  Value of "LogLevel" in /etc/ssh/sshd_config is "VERBOSE"
Warning:   Parameter "LogLevel" not set to "VERBOSE" in /etc/ssh/sshd_config [-7]
Checking:  Value of "RSAAuthentication" in /etc/ssh/sshd_config is "no"
Warning:   Parameter "RSAAuthentication" not set to "no" in /etc/ssh/sshd_config [-8]
Checking:  Value of "UsePrivilegeSeparation" in /etc/ssh/sshd_config is "yes"
Secure:    Parameter "UsePrivilegeSeparation" already set to "yes" in /etc/ssh/sshd_config [-7]
Checking:  Value of "LoginGraceTime" in /etc/ssh/sshd_config is "120"
Secure:    Parameter "LoginGraceTime" already set to "120" in /etc/ssh/sshd_config [-6]
Checking:  Value of "AllowTcpForwarding" in /etc/ssh/sshd_config is "yes"
Warning:   Parameter "AllowTcpForwarding" not set to "yes" in /etc/ssh/sshd_config [-7]
Checking:  Service telnet at run level 3
Notice:    Service telnet is not installed [-6]
Checking:  Service telnet at run level 5
Notice:    Service telnet is not installed [-5]
Checking:  Service login at run level 3
Notice:    Service login is not installed [-4]
Checking:  Service login at run level 5
Notice:    Service login is not installed [-3]
Checking:  Service rlogin at run level 3
Notice:    Service rlogin is not installed [-2]
Checking:  Service rlogin at run level 5
Notice:    Service rlogin is not installed [-1]
Checking:  Service rsh at run level 3
Notice:    Service rsh is not installed [0]
Checking:  Service rsh at run level 5
Notice:    Service rsh is not installed [1]
Checking:  Service shell at run level 3
Notice:    Service shell is not installed [2]
Checking:  Service shell at run level 5
Notice:    Service shell is not installed [3]
Checking:  Remote consoles
Warning:   Consoles enabled on tty1 tty2 tty3 tty4 tty5 tty6 tty7 tty8 tty9 tty10 tty11 tty12 tty13 tty14 tty15 tty16 tty17 tty18 tty19 tty20 tty21 tty22 tty23 tty24 tty25 tty26 tty27 tty28 tty29 tty30 tty31 tty32 tty33 tty34 tty35 tty36 tty37 tty38 tty39 tty40 tty41 tty42 tty43 tty44 tty45 tty46 tty47 tty48 tty49 tty50 tty51 tty52 tty53 tty54 tty55 tty56 tty57 tty58 tty59 tty60 tty61 tty62 tty63 [2]
Checking:  Rhost authentication disabled in /etc/pam.d/accountsservice [2]
Secure:    Rhost authentication disabled in /etc/pam.d/accountsservice [3]
Checking:  Rhost authentication disabled in /etc/pam.d/chfn [3]
Secure:    Rhost authentication disabled in /etc/pam.d/chfn [4]
Checking:  Rhost authentication disabled in /etc/pam.d/chpasswd [4]
Secure:    Rhost authentication disabled in /etc/pam.d/chpasswd [5]
Checking:  Rhost authentication disabled in /etc/pam.d/chsh [5]
Secure:    Rhost authentication disabled in /etc/pam.d/chsh [6]
Checking:  Rhost authentication disabled in /etc/pam.d/common-account [6]
Secure:    Rhost authentication disabled in /etc/pam.d/common-account [7]
Checking:  Rhost authentication disabled in /etc/pam.d/common-auth [7]
Secure:    Rhost authentication disabled in /etc/pam.d/common-auth [8]
Checking:  Rhost authentication disabled in /etc/pam.d/common-password [8]
Secure:    Rhost authentication disabled in /etc/pam.d/common-password [9]
Checking:  Rhost authentication disabled in /etc/pam.d/common-session [9]
Secure:    Rhost authentication disabled in /etc/pam.d/common-session [10]
Checking:  Rhost authentication disabled in /etc/pam.d/common-session-noninteractive [10]
Secure:    Rhost authentication disabled in /etc/pam.d/common-session-noninteractive [11]
Checking:  Rhost authentication disabled in /etc/pam.d/cron [11]
Secure:    Rhost authentication disabled in /etc/pam.d/cron [12]
Checking:  Rhost authentication disabled in /etc/pam.d/login [12]
Secure:    Rhost authentication disabled in /etc/pam.d/login [13]
Checking:  Rhost authentication disabled in /etc/pam.d/newusers [13]
Secure:    Rhost authentication disabled in /etc/pam.d/newusers [14]
Checking:  Rhost authentication disabled in /etc/pam.d/other [14]
Secure:    Rhost authentication disabled in /etc/pam.d/other [15]
Checking:  Rhost authentication disabled in /etc/pam.d/passwd [15]
Secure:    Rhost authentication disabled in /etc/pam.d/passwd [16]
Checking:  Rhost authentication disabled in /etc/pam.d/ppp [16]
Secure:    Rhost authentication disabled in /etc/pam.d/ppp [17]
Checking:  Rhost authentication disabled in /etc/pam.d/sshd [17]
Secure:    Rhost authentication disabled in /etc/pam.d/sshd [18]
Checking:  Rhost authentication disabled in /etc/pam.d/su [18]
Secure:    Rhost authentication disabled in /etc/pam.d/su [19]
Checking:  Rhost authentication disabled in /etc/pam.d/sudo [19]
Secure:    Rhost authentication disabled in /etc/pam.d/sudo [20]
Checking:  Rhost authentication disabled in /etc/pam.d/vmtoolsd [20]
Secure:    Rhost authentication disabled in /etc/pam.d/vmtoolsd [21]
Checking:  Rhosts files
Checking:  File /.rhosts does not exist
Secure:    File /.rhosts does not exist [22]
Checking:  File /.shosts does not exist
Secure:    File /.shosts does not exist [23]
Checking:  File /etc/hosts.equiv does not exist
Secure:    File /etc/hosts.equiv does not exist [24]
Checking:  For .netrc files
Secure:    File /root/.netrc does not exist [25]
Secure:    File /usr/sbin/.netrc does not exist [26]
Secure:    File /bin/.netrc does not exist [27]
Secure:    File /dev/.netrc does not exist [28]
Secure:    File /bin/.netrc does not exist [29]
Secure:    File /usr/games/.netrc does not exist [30]
Secure:    File /var/cache/man/.netrc does not exist [31]
Secure:    File /var/spool/lpd/.netrc does not exist [32]
Secure:    File /var/mail/.netrc does not exist [33]
Secure:    File /var/spool/news/.netrc does not exist [34]
Secure:    File /var/spool/uucp/.netrc does not exist [35]
Secure:    File /bin/.netrc does not exist [36]
Secure:    File /var/www/.netrc does not exist [37]
Secure:    File /var/backups/.netrc does not exist [38]
Secure:    File /var/list/.netrc does not exist [39]
Secure:    File /var/run/ircd/.netrc does not exist [40]
Secure:    File /var/lib/gnats/.netrc does not exist [41]
Secure:    File /nonexistent/.netrc does not exist [42]
Secure:    File /var/lib/libuuid/.netrc does not exist [43]
Secure:    File /home/syslog/.netrc does not exist [44]
Secure:    File /var/run/dbus/.netrc does not exist [45]
Secure:    File /home/sysadmin/.netrc does not exist [46]
Secure:    File /var/run/sshd/.netrc does not exist [47]
Secure:    File /var/lib/nfs/.netrc does not exist [48]
Checking:  Value of "ENABLED" in /etc/default/sysstat is "true"
Warning:   Parameter "ENABLED" not set to "true" in /etc/default/sysstat [47]
Checking:  System accounting is enabled
Warning:   System accounting not enabled [46]
Checking:  Parameter "-f 1" is set in /etc/audit/audit.rules
Warning:   Parameter "-f 1" does not exist in /etc/audit/audit.rules [45]
Checking:  Parameter "-a always,exit -F arch=b32 -S adjtimex -S settimeofday -S stime -k time-change" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b32 -S adjtimex -S settimeofday -S stime -k time-change" does not exist in /etc/audit/audit.rules [44]
Checking:  Parameter "-a always,exit -F arch=b64 -S adjtimex -S settimeofday -k time-change" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b64 -S adjtimex -S settimeofday -k time-change" does not exist in /etc/audit/audit.rules [43]
Checking:  Parameter "-a always,exit -F arch=b32 -S clock_settime -k time-change" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b32 -S clock_settime -k time-change" does not exist in /etc/audit/audit.rules [42]
Checking:  Parameter "-a always,exit -F arch=b64 -S clock_settime -k time-change" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b64 -S clock_settime -k time-change" does not exist in /etc/audit/audit.rules [41]
Checking:  Parameter "-w /etc/localtime -p wa -k time-change" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /etc/localtime -p wa -k time-change" does not exist in /etc/audit/audit.rules [40]
Checking:  Parameter "-w /etc/group -p wa -k identity" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /etc/group -p wa -k identity" does not exist in /etc/audit/audit.rules [39]
Checking:  Parameter "-w /etc/passwd -p wa -k identity" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /etc/passwd -p wa -k identity" does not exist in /etc/audit/audit.rules [38]
Checking:  Parameter "-w /etc/gshadow -p wa -k identity" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /etc/gshadow -p wa -k identity" does not exist in /etc/audit/audit.rules [37]
Checking:  Parameter "-w /etc/shadow -p wa -k identity" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /etc/shadow -p wa -k identity" does not exist in /etc/audit/audit.rules [36]
Checking:  Parameter "-w /etc/security/opasswd -p wa -k identity" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /etc/security/opasswd -p wa -k identity" does not exist in /etc/audit/audit.rules [35]
Checking:  Parameter "-a exit,always -F arch=b32 -S sethostname -S setdomainname -k system-locale" is set in /etc/audit/audit.rules
Warning:   Parameter "-a exit,always -F arch=b32 -S sethostname -S setdomainname -k system-locale" does not exist in /etc/audit/audit.rules [34]
Checking:  Parameter "-a exit,always -F arch=b64 -S sethostname -S setdomainname -k system-locale" is set in /etc/audit/audit.rules
Warning:   Parameter "-a exit,always -F arch=b64 -S sethostname -S setdomainname -k system-locale" does not exist in /etc/audit/audit.rules [33]
Checking:  Parameter "-w /etc/issue -p wa -k system-locale" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /etc/issue -p wa -k system-locale" does not exist in /etc/audit/audit.rules [32]
Checking:  Parameter "-w /etc/issue.net -p wa -k system-locale" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /etc/issue.net -p wa -k system-locale" does not exist in /etc/audit/audit.rules [31]
Checking:  Parameter "-w /etc/hosts -p wa -k system-locale" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /etc/hosts -p wa -k system-locale" does not exist in /etc/audit/audit.rules [30]
Checking:  Parameter "-w /etc/sysconfig/network -p wa -k system-locale" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /etc/sysconfig/network -p wa -k system-locale" does not exist in /etc/audit/audit.rules [29]
Checking:  Parameter "-w /etc/selinux/ -p wa -k MAC-policy" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /etc/selinux/ -p wa -k MAC-policy" does not exist in /etc/audit/audit.rules [28]
Checking:  Parameter "-w /var/log/faillog -p wa -k logins" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /var/log/faillog -p wa -k logins" does not exist in /etc/audit/audit.rules [27]
Checking:  Parameter "-w /var/log/lastlog -p wa -k logins" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /var/log/lastlog -p wa -k logins" does not exist in /etc/audit/audit.rules [26]
Checking:  Parameter "-w /var/run/utmp -p wa -k session" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /var/run/utmp -p wa -k session" does not exist in /etc/audit/audit.rules [25]
Checking:  Parameter "-w /var/log/btmp -p wa -k session" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /var/log/btmp -p wa -k session" does not exist in /etc/audit/audit.rules [24]
Checking:  Parameter "-w /var/log/wtmp -p wa -k session" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /var/log/wtmp -p wa -k session" does not exist in /etc/audit/audit.rules [23]
Checking:  Parameter "-a always,exit -F arch=b32 -S chmod -S fchmod -S fchmodat -F auid>=500 -F auid!=4294967295 -k perm_mod" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b32 -S chmod -S fchmod -S fchmodat -F auid>=500 -F auid!=4294967295 -k perm_mod" does not exist in /etc/audit/audit.rules [22]
Checking:  Parameter "-a always,exit -F arch=b64 -S chmod -S fchmod -S fchmodat -F auid>=500 -F auid!=4294967295 -k perm_mod" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b64 -S chmod -S fchmod -S fchmodat -F auid>=500 -F auid!=4294967295 -k perm_mod" does not exist in /etc/audit/audit.rules [21]
Checking:  Parameter "-a always,exit -F arch=b32 -S chown -S fchown -S fchownat -S lchown -F auid>=500 - F auid!=4294967295 -k perm_mod" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b32 -S chown -S fchown -S fchownat -S lchown -F auid>=500 - F auid!=4294967295 -k perm_mod" does not exist in /etc/audit/audit.rules [20]
Checking:  Parameter "-a always,exit -F arch=b64 -S chown -S fchown -S fchownat -S lchown -F auid>=500 - F auid!=4294967295 -k perm_mod" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b64 -S chown -S fchown -S fchownat -S lchown -F auid>=500 - F auid!=4294967295 -k perm_mod" does not exist in /etc/audit/audit.rules [19]
Checking:  Parameter "-a always,exit -F arch=b32 -S setxattr -S lsetxattr -S fsetxattr -S removexattr -S lremovexattr -S fremovexattr -F auid>=500 -F auid!=4294967295 -k perm_mod" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b32 -S setxattr -S lsetxattr -S fsetxattr -S removexattr -S lremovexattr -S fremovexattr -F auid>=500 -F auid!=4294967295 -k perm_mod" does not exist in /etc/audit/audit.rules [18]
Checking:  Parameter "-a always,exit -F arch=b64 -S setxattr -S lsetxattr -S fsetxattr -S removexattr -S lremovexattr -S fremovexattr -F auid>=500 -F auid!=4294967295 -k perm_mod" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b64 -S setxattr -S lsetxattr -S fsetxattr -S removexattr -S lremovexattr -S fremovexattr -F auid>=500 -F auid!=4294967295 -k perm_mod" does not exist in /etc/audit/audit.rules [17]
Checking:  Parameter "-a always,exit -F arch=b32 -S creat -S open -S openat -S truncate -S ftruncate -F exit=-EACCES -F auid>=500 -F auid!=4294967295 -k access" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b32 -S creat -S open -S openat -S truncate -S ftruncate -F exit=-EACCES -F auid>=500 -F auid!=4294967295 -k access" does not exist in /etc/audit/audit.rules [16]
Checking:  Parameter "-a always,exit -F arch=b32 -S creat -S open -S openat -S truncate -S ftruncate -F exit=-EPERM -F auid>=500 -F auid!=4294967295 -k access" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b32 -S creat -S open -S openat -S truncate -S ftruncate -F exit=-EPERM -F auid>=500 -F auid!=4294967295 -k access" does not exist in /etc/audit/audit.rules [15]
Checking:  Parameter "-a always,exit -F arch=b64 -S creat -S open -S openat -S truncate -S ftruncate -F exit=-EACCES -F auid>=500 -F auid!=4294967295 -k access" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b64 -S creat -S open -S openat -S truncate -S ftruncate -F exit=-EACCES -F auid>=500 -F auid!=4294967295 -k access" does not exist in /etc/audit/audit.rules [14]
Checking:  Parameter "-a always,exit -F arch=b64 -S creat -S open -S openat -S truncate -S ftruncate -F exit=-EPERM -F auid>=500 -F auid!=4294967295 -k access" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b64 -S creat -S open -S openat -S truncate -S ftruncate -F exit=-EPERM -F auid>=500 -F auid!=4294967295 -k access" does not exist in /etc/audit/audit.rules [13]
Checking:  Parameter "-a always,exit -F arch=b32 -S mount -F auid>=500 -F auid!=4294967295 -k export" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b32 -S mount -F auid>=500 -F auid!=4294967295 -k export" does not exist in /etc/audit/audit.rules [12]
Checking:  Parameter "-a always,exit -F arch=b64 -S mount -F auid>=500 -F auid!=4294967295 -k export" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b64 -S mount -F auid>=500 -F auid!=4294967295 -k export" does not exist in /etc/audit/audit.rules [11]
Checking:  Parameter "-a always,exit -F arch=b32 -S unlink -S unlinkat -S rename -S renameat -F auid>=500 -F auid!=4294967295 -k delete" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b32 -S unlink -S unlinkat -S rename -S renameat -F auid>=500 -F auid!=4294967295 -k delete" does not exist in /etc/audit/audit.rules [10]
Checking:  Parameter "-a always,exit -F arch=b64 -S unlink -S unlinkat -S rename -S renameat -F auid>=500 -F auid!=4294967295 -k delete" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b64 -S unlink -S unlinkat -S rename -S renameat -F auid>=500 -F auid!=4294967295 -k delete" does not exist in /etc/audit/audit.rules [9]
Checking:  Parameter "-w /etc/sudoers -p wa -k scope" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /etc/sudoers -p wa -k scope" does not exist in /etc/audit/audit.rules [8]
Checking:  Parameter "-w /etc/sudoers -p wa -k actions" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /etc/sudoers -p wa -k actions" does not exist in /etc/audit/audit.rules [7]
Checking:  Parameter "-w /sbin/insmod -p x -k modules" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /sbin/insmod -p x -k modules" does not exist in /etc/audit/audit.rules [6]
Checking:  Parameter "-w /sbin/rmmod -p x -k modules" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /sbin/rmmod -p x -k modules" does not exist in /etc/audit/audit.rules [5]
Checking:  Parameter "-w /sbin/modprobe -p x -k modules" is set in /etc/audit/audit.rules
Warning:   Parameter "-w /sbin/modprobe -p x -k modules" does not exist in /etc/audit/audit.rules [4]
Checking:  Parameter "-a always,exit -S init_module -S delete_module -k modules" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -S init_module -S delete_module -k modules" does not exist in /etc/audit/audit.rules [3]
Checking:  Parameter "-a always,exit -F arch=b64 -S mount -F auid>=500 -F auid!=4294967295 -k mounts" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b64 -S mount -F auid>=500 -F auid!=4294967295 -k mounts" does not exist in /etc/audit/audit.rules [2]
Checking:  Parameter "-a always,exit -F arch=b32 -S mount -F auid>=500 -F auid!=4294967295 -k mounts" is set in /etc/audit/audit.rules
Warning:   Parameter "-a always,exit -F arch=b32 -S mount -F auid>=500 -F auid!=4294967295 -k mounts" does not exist in /etc/audit/audit.rules [1]
Checking:  Parameter "" is set in /etc/audit/audit.rules
Warning:   Parameter "" does not exist in /etc/audit/audit.rules [0]
Checking:  Parameter "space_left_action = email" is set in /etc/audit/audit.rules
Warning:   Parameter "space_left_action = email" does not exist in /etc/audit/audit.rules [-1]
Checking:  Parameter "action_mail_acct = email" is set in /etc/audit/audit.rules
Warning:   Parameter "action_mail_acct = email" does not exist in /etc/audit/audit.rules [-2]
Checking:  Parameter "admin_space_left_action = email" is set in /etc/audit/audit.rules
Warning:   Parameter "admin_space_left_action = email" does not exist in /etc/audit/audit.rules [-3]
Checking:  Parameter "max_log_file = MB" is set in /etc/audit/audit.rules
Warning:   Parameter "max_log_file = MB" does not exist in /etc/audit/audit.rules [-4]
Checking:  Parameter "max_log_file_action = keep_logs" is set in /etc/audit/audit.rules
Warning:   Parameter "max_log_file_action = keep_logs" does not exist in /etc/audit/audit.rules [-5]
Checking:  Parameter "-e 2" is set in /etc/audit/audit.rules
Warning:   Parameter "-e 2" does not exist in /etc/audit/audit.rules [-6]
Checking:  Service sysstat at run level 3
Notice:    Service sysstat is not installed [-5]
Checking:  Service sysstat at run level 5
Notice:    Service sysstat is not installed [-4]
Checking:  Service sysstat at run level 3
Notice:    Service sysstat is not installed [-3]
Checking:  Service sysstat at run level 5
Notice:    Service sysstat is not installed [-2]
Checking:  Value of "ALL" in /etc/hosts.deny is " ALL"
Warning:   Parameter "ALL" not set to " ALL" in /etc/hosts.deny [-3]
Checking:  Value of "ALL" in /etc/hosts.allow is " localhost"
Warning:   Parameter "ALL" not set to " localhost" in /etc/hosts.allow [-4]
Checking:  Value of "ALL" in /etc/hosts.allow is " 127.0.0.1"
Warning:   Parameter "ALL" not set to " 127.0.0.1" in /etc/hosts.allow [-5]
Checking:  For nullok entry in /etc/pam.d/common-auth
Warning:   Found nullok entry in /etc/pam.d/common-auth [-6]
Checking:  File /etc/security/opasswd exists
Secure:    File /etc/security/opasswd exists [-7]
Checking:  File permissions on /etc/security/opasswd
Secure:    File /etc/security/opasswd has correct permissions [-6]
Checking:  Password entry remember set to 10 in /etc/pam.d/common-auth
Warning:   Password entry remember is not set to 10 in /etc/pam.d/common-auth [-7]
Checking:  Auth entry not enabled in /etc/pam.d/common-auth
Warning:   Auth entry not enabled in /etc/pam.d/common-auth [-8]
Checking:  Account reset entry not enabled in /etc/pam.d/common-auth
Warning:   Account reset entry not enabled in /etc/pam.d/common-auth [-9]
Checking:  Password minlen is set to 9 in /etc/pam.d/common-auth
Warning:   Password minlen is not set to 9 in /etc/pam.d/common-auth [-10]
Checking:  Password dcredit is set to -1 in /etc/pam.d/common-auth
Warning:   Password dcredit is not set to -1 in /etc/pam.d/common-auth [-11]
Checking:  Password lcredit is set to -1 in /etc/pam.d/common-auth
Warning:   Password lcredit is not set to -1 in /etc/pam.d/common-auth [-12]
Checking:  Password ocredit is set to -1 in /etc/pam.d/common-auth
Warning:   Password ocredit is not set to -1 in /etc/pam.d/common-auth [-13]
Checking:  Password ucredit is set to -1 in /etc/pam.d/common-auth
Warning:   Password ucredit is not set to -1 in /etc/pam.d/common-auth [-14]
Checking:  Password minimum strength enabled in /etc/pam.d/common-auth
Warning:   Password strength settings not enabled in /etc/pam.d/common-auth [-15]
Checking:  Lockout time for failed password attempts enabled in /etc/pam.d/common-auth
Warning:   Lockout time for failed password attempts not enabled in /etc/pam.d/common-auth [-16]
Checking:  Lockout for failed password attempts enabled in /etc/pam.d/common-auth
Warning:   Lockout for failed password attempts not enabled in /etc/pam.d/common-auth [-17]
Checking:  Value of "PASS_MAX_DAYS" in /etc/login.defs is "90"
Warning:   Parameter "PASS_MAX_DAYS" not set to "90" in /etc/login.defs [-18]
Checking:  Value of "PASS_MIN_DAYS" in /etc/login.defs is "7"
Warning:   Parameter "PASS_MIN_DAYS" not set to "7" in /etc/login.defs [-19]
Checking:  Value of "PASS_WARN_AGE" in /etc/login.defs is "14"
Warning:   Parameter "PASS_WARN_AGE" not set to "14" in /etc/login.defs [-20]
Checking:  Value of "PASS_MIN_LEN" in /etc/login.defs is "9"
Warning:   Parameter "PASS_MIN_LEN" not set to "9" in /etc/login.defs [-21]
Checking:  File permissions on /etc/login.defs
Warning:   File /etc/login.defs has incorrect permissions [-22]
Checking:  File permissions on /etc/group
Secure:    File /etc/group has correct permissions [-21]
Checking:  File permissions on /etc/passwd
Secure:    File /etc/passwd has correct permissions [-20]
Checking:  File permissions on /etc/gshadow
Warning:   File /etc/gshadow has incorrect permissions [-21]
Checking:  File permissions on /etc/shadow
Warning:   File /etc/shadow has incorrect permissions [-22]
Checking:  Wheel group membership required for su in /etc/pam.d/su
Warning:   Wheel group membership not required for su in /etc/pam.d/su [-23]
Checking:  Value of "net.ipv4.conf.default.secure_redirects" in /etc/sysctl.conf is "0"
Warning:   Parameter "net.ipv4.conf.default.secure_redirects" not set to "0" in /etc/sysctl.conf [-24]
Checking:  Value of "net.ipv4.conf.all.secure_redirects" in /etc/sysctl.conf is "0"
Warning:   Parameter "net.ipv4.conf.all.secure_redirects" not set to "0" in /etc/sysctl.conf [-25]
Checking:  Value of "net.ipv4.icmp_echo_ignore_broadcasts" in /etc/sysctl.conf is "1"
Warning:   Parameter "net.ipv4.icmp_echo_ignore_broadcasts" not set to "1" in /etc/sysctl.conf [-26]
Checking:  Value of "net.ipv4.conf.all.accept_redirects" in /etc/sysctl.conf is "0"
Warning:   Parameter "net.ipv4.conf.all.accept_redirects" not set to "0" in /etc/sysctl.conf [-27]
Checking:  Value of "net.ipv4.conf.default.accept_redirects" in /etc/sysctl.conf is "0"
Warning:   Parameter "net.ipv4.conf.default.accept_redirects" not set to "0" in /etc/sysctl.conf [-28]
Checking:  Value of "net.ipv4.tcp_syncookies" in /etc/sysctl.conf is "1"
Warning:   Parameter "net.ipv4.tcp_syncookies" not set to "1" in /etc/sysctl.conf [-29]
Checking:  Value of "net.ipv4.tcp_max_syn_backlog" in /etc/sysctl.conf is "4096"
Warning:   Parameter "net.ipv4.tcp_max_syn_backlog" not set to "4096" in /etc/sysctl.conf [-30]
Checking:  Value of "net.ipv4.conf.all.rp_filter" in /etc/sysctl.conf is "1"
Warning:   Parameter "net.ipv4.conf.all.rp_filter" not set to "1" in /etc/sysctl.conf [-31]
Checking:  Value of "net.ipv4.conf.default.rp_filter" in /etc/sysctl.conf is "1"
Warning:   Parameter "net.ipv4.conf.default.rp_filter" not set to "1" in /etc/sysctl.conf [-32]
Checking:  Value of "net.ipv4.conf.all.accept_source_route" in /etc/sysctl.conf is "0"
Warning:   Parameter "net.ipv4.conf.all.accept_source_route" not set to "0" in /etc/sysctl.conf [-33]
Checking:  Value of "net.ipv4.conf.default.accept_source_route" in /etc/sysctl.conf is "0"
Warning:   Parameter "net.ipv4.conf.default.accept_source_route" not set to "0" in /etc/sysctl.conf [-34]
Checking:  Value of "net.ipv4.tcp_max_orphans" in /etc/sysctl.conf is "256"
Warning:   Parameter "net.ipv4.tcp_max_orphans" not set to "256" in /etc/sysctl.conf [-35]
Checking:  Value of "net.ipv4.conf.all.log_martians" in /etc/sysctl.conf is "1"
Warning:   Parameter "net.ipv4.conf.all.log_martians" not set to "1" in /etc/sysctl.conf [-36]
Checking:  Value of "net.ipv4.ip_forward" in /etc/sysctl.conf is "0"
Warning:   Parameter "net.ipv4.ip_forward" not set to "0" in /etc/sysctl.conf [-37]
Checking:  Value of "net.ipv4.conf.all.send_redirects" in /etc/sysctl.conf is "0"
Warning:   Parameter "net.ipv4.conf.all.send_redirects" not set to "0" in /etc/sysctl.conf [-38]
Checking:  Value of "net.ipv4.conf.default.send_redirects" in /etc/sysctl.conf is "0"
Warning:   Parameter "net.ipv4.conf.default.send_redirects" not set to "0" in /etc/sysctl.conf [-39]
Checking:  Value of "net.ipv4.icmp_ignore_bogus_error_responses" in /etc/sysctl.conf is "1"
Warning:   Parameter "net.ipv4.icmp_ignore_bogus_error_responses" not set to "1" in /etc/sysctl.conf [-40]
Checking:  Value of "net.ipv6.conf.default.accept_redirects" in /etc/sysctl.conf is "0"
Warning:   Parameter "net.ipv6.conf.default.accept_redirects" not set to "0" in /etc/sysctl.conf [-41]
Checking:  Value of "net.ipv6.conf.default.accept_ra" in /etc/sysctl.conf is "0"
Warning:   Parameter "net.ipv6.conf.default.accept_ra" not set to "0" in /etc/sysctl.conf [-42]
Checking:  Value of "kernel.randomize_va_space" in /etc/sysctl.conf is "1"
Warning:   Parameter "kernel.randomize_va_space" not set to "1" in /etc/sysctl.conf [-43]
Checking:  Value of "kernel.exec-shield" in /etc/sysctl.conf is "1"
Warning:   Parameter "kernel.exec-shield" not set to "1" in /etc/sysctl.conf [-44]
Checking:  Value of "fs.suid.dumpable" in /etc/sysctl.conf is "0"
Warning:   Parameter "fs.suid.dumpable" not set to "0" in /etc/sysctl.conf [-45]
Checking:  Parameter "* hard core 0" is set in /etc/security/limits.conf
Warning:   Parameter "* hard core 0" does not exist in /etc/security/limits.conf [-46]
Checking:  File permissions on /etc/security/limits.conf
Warning:   File /etc/security/limits.conf has incorrect permissions [-47]
Checking:  Parameter "echo 1 > /proc/sys/net/ipv4/tcp_syncookies" is set in /etc/rc.d/local
Warning:   Parameter "echo 1 > /proc/sys/net/ipv4/tcp_syncookies" does not exist in /etc/rc.d/local [-48]
Checking:  File permissions on /etc/rc.d/local
Notice:    File /etc/rc.d/local does not exist [-47]
Checking:  Parameter "install tipc /bin/true" is set in /etc/modprobe.conf
Warning:   Parameter "install tipc /bin/true" does not exist in /etc/modprobe.conf [-48]
Checking:  Parameter "install rds /bin/true" is set in /etc/modprobe.conf
Warning:   Parameter "install rds /bin/true" does not exist in /etc/modprobe.conf [-49]
Checking:  Parameter "install sctp /bin/true" is set in /etc/modprobe.conf
Warning:   Parameter "install sctp /bin/true" does not exist in /etc/modprobe.conf [-50]
Checking:  Parameter "install dccp /bin/true" is set in /etc/modprobe.conf
Warning:   Parameter "install dccp /bin/true" does not exist in /etc/modprobe.conf [-51]
Warning:   Unconfined daemons  [-52]
Checking:  Value of "SELINUX" in /etc/selinux/config is "enforcing"
Warning:   Parameter "SELINUX" not set to "enforcing" in /etc/selinux/config [-53]
Checking:  Value of "SELINUXTYPE" in /etc/selinux/config is "targeted"
Warning:   Parameter "SELINUXTYPE" not set to "targeted" in /etc/selinux/config [-54]
Checking:  Service sendmail at run level 3
Notice:    Service sendmail is not installed [-53]
Checking:  Service sendmail at run level 5
Notice:    Service sendmail is not installed [-52]
Checking:  Value of "DAEMON" in /etc/sysconfig/sendmail is "no"
Warning:   Parameter "DAEMON" not set to "no" in /etc/sysconfig/sendmail [-53]
Checking:  Value of "QUEUE" in /etc/sysconfig/sendmail is "1h"
Warning:   Parameter "QUEUE" not set to "1h" in /etc/sysconfig/sendmail [-54]
Checking:  File permissions on /etc/aliases
Notice:    File /etc/aliases does not exist [-53]
Checking:  Service cyrus at run level 3
Notice:    Service cyrus is not installed [-52]
Checking:  Service cyrus at run level 3
Notice:    Service cyrus is not installed [-51]
Checking:  Service imapd at run level 3
Notice:    Service imapd is not installed [-50]
Checking:  Service imapd at run level 3
Notice:    Service imapd is not installed [-49]
Checking:  Service qpopper at run level 3
Notice:    Service qpopper is not installed [-48]
Checking:  Service qpopper at run level 3
Notice:    Service qpopper is not installed [-47]
Checking:  File permissions on /root
Warning:   File /root has incorrect permissions [-48]
Checking:  Primary group for root is root
Secure:    Primary group for root is root [-47]
Checking:  Root SSH keys
Secure:    Keys file /root/.ssh/authorized_keys does not exist
Secure:    Keys file /root/.ssh/authorized_keys2 does not exist
Checking:  Value of "mesg" in /etc/.login is "n"
Warning:   Parameter "mesg" not set to "n" in /etc/.login [-46]
Checking:  Value of "mesg" in /etc/profile is "n"
Warning:   Parameter "mesg" not set to "n" in /etc/profile [-47]
Checking:  Value of "mesg" in /etc/skel/.bash_profile is "n"
Warning:   Parameter "mesg" not set to "n" in /etc/skel/.bash_profile [-48]
Checking:  Value of "mesg" in /etc/skel/.bashrc is "n"
Warning:   Parameter "mesg" not set to "n" in /etc/skel/.bashrc [-49]
Checking:  Groups in passwd file exist in group file
Secure:    No non existant group issues [-48]
Checking:  User home directory permissions
Checking:  File permissions on /home/sysadmin
Warning:   File /home/sysadmin has incorrect permissions [-49]
Checking:  Ownership of home directories
Warning:   Home Directory for sys is owned by root [-50]
Warning:   Home Directory for proxy is owned by root [-51]
Warning:   Home Directory for backup is owned by root [-52]
Secure:    No ownership issues with home directories [-48]
Checking:  For users with duplicate name
Secure:    No users with duplicate name [-47]
Checking:  For users with duplicate id
Secure:    No users with duplicate id [-46]
Checking:  For groups with duplicate name
Secure:    No groups with duplicate name [-45]
Checking:  For groups with duplicate id
Secure:    No groups with duplicate id [-44]
Checking:  User dot file permissions
Checking:  File permissions on /root/.bashrc
Warning:   File /root/.bashrc has incorrect permissions [-45]
Checking:  File permissions on /root/.profile
Warning:   File /root/.profile has incorrect permissions [-46]
Checking:  File permissions on /home/sysadmin/.bash_logout
Warning:   File /home/sysadmin/.bash_logout has incorrect permissions [-47]
Checking:  File permissions on /home/sysadmin/.bashrc
Warning:   File /home/sysadmin/.bashrc has incorrect permissions [-48]
Checking:  File permissions on /home/sysadmin/.profile
Warning:   File /home/sysadmin/.profile has incorrect permissions [-49]
Checking:  For .forward files
Secure:    File /root/.forward does not exist [-48]
Secure:    File /usr/sbin/.forward does not exist [-47]
Secure:    File /bin/.forward does not exist [-46]
Secure:    File /dev/.forward does not exist [-45]
Secure:    File /bin/.forward does not exist [-44]
Secure:    File /usr/games/.forward does not exist [-43]
Secure:    File /var/cache/man/.forward does not exist [-42]
Secure:    File /var/spool/lpd/.forward does not exist [-41]
Secure:    File /var/mail/.forward does not exist [-40]
Secure:    File /var/spool/news/.forward does not exist [-39]
Secure:    File /var/spool/uucp/.forward does not exist [-38]
Secure:    File /bin/.forward does not exist [-37]
Secure:    File /var/www/.forward does not exist [-36]
Secure:    File /var/backups/.forward does not exist [-35]
Secure:    File /var/list/.forward does not exist [-34]
Secure:    File /var/run/ircd/.forward does not exist [-33]
Secure:    File /var/lib/gnats/.forward does not exist [-32]
Secure:    File /nonexistent/.forward does not exist [-31]
Secure:    File /var/lib/libuuid/.forward does not exist [-30]
Secure:    File /home/syslog/.forward does not exist [-29]
Secure:    File /var/run/dbus/.forward does not exist [-28]
Secure:    File /home/sysadmin/.forward does not exist [-27]
Secure:    File /var/run/sshd/.forward does not exist [-26]
Secure:    File /var/lib/nfs/.forward does not exist [-25]
Checking:  Root PATH
Secure:    No empty directory in PATH [-24]
Secure:    No trailing : in PATH [-23]
Secure:    Group write permission not set on directory /usr/local/sbin [-22]
Secure:    Other write permission not set on directory /usr/local/sbin [-21]
Secure:    Group write permission not set on directory /usr/local/bin [-20]
Secure:    Other write permission not set on directory /usr/local/bin [-19]
Secure:    Group write permission not set on directory /usr/sbin [-18]
Secure:    Other write permission not set on directory /usr/sbin [-17]
Secure:    Group write permission not set on directory /usr/bin [-16]
Secure:    Other write permission not set on directory /usr/bin [-15]
Secure:    Group write permission not set on directory /sbin [-14]
Secure:    Other write permission not set on directory /sbin [-13]
Secure:    Group write permission not set on directory /bin [-12]
Secure:    Other write permission not set on directory /bin [-11]
Checking:  Primary group for root is root
Secure:    Primary group for root is root [-10]
Checking:  Value of "umask" in /etc/.login is "077"
Warning:   Parameter "umask" not set to "077" in /etc/.login [-11]
Checking:  Value of "umask" in /etc/profile is "077"
Warning:   Parameter "umask" not set to "077" in /etc/profile [-12]
Checking:  Value of "umask" in /etc/skel/.bash_profile is "077"
Warning:   Parameter "umask" not set to "077" in /etc/skel/.bash_profile [-13]
Checking:  Value of "UMASK" in /etc/bashrc is "077"
Warning:   Parameter "UMASK" not set to "077" in /etc/bashrc [-14]
Checking:  Value of "UMASK" in /etc/skel/.bashrc is "077"
Warning:   Parameter "UMASK" not set to "077" in /etc/skel/.bashrc [-15]
Checking:  Password fields
Secure:    No empty password entries
Checking:  Whether reserved UUIDs are assigned to system accounts
Warning:   User sys has a reserved UID (3) [-15]
Warning:   User man has a reserved UID (6) [-16]
Warning:   User proxy has a reserved UID (13) [-17]
Warning:   User www-data has a reserved UID (33) [-18]
Warning:   User backup has a reserved UID (34) [-19]
Warning:   User list has a reserved UID (38) [-20]
Warning:   User irc has a reserved UID (39) [-21]
Warning:   User gnats has a reserved UID (41) [-22]
Warning:   User libuuid has a reserved UID (100) [-23]
Warning:   User syslog has a reserved UID (101) [-24]
Warning:   User messagebus has a reserved UID (102) [-25]
Warning:   User statd has a reserved UID (104) [-26]
Checking:  Super users other than root
Secure:    No accounts other than root have UID 0 [-13]
Checking:  Value of "umask" in /etc/sysconfig/init is "027"
Warning:   Parameter "umask" not set to "027" in /etc/sysconfig/init [-14]
Checking:  File permissions on /etc/crontab
Warning:   File /etc/crontab has incorrect permissions [-15]
Checking:  File permissions on /var/spool/cron
Warning:   File /var/spool/cron has incorrect permissions [-16]
Checking:  File permissions on /etc/cron.daily
Warning:   File /etc/cron.daily has incorrect permissions [-17]
Checking:  File permissions on /etc/cron.weekly
Warning:   File /etc/cron.weekly has incorrect permissions [-18]
Checking:  File permissions on /etc/cron.mounthly
Notice:    File /etc/cron.mounthly does not exist [-17]
Checking:  File permissions on /etc/cron.hourly
Warning:   File /etc/cron.hourly has incorrect permissions [-18]
Checking:  File permissions on /etc/anacrontab
Notice:    File /etc/anacrontab does not exist [-17]
Checking:  Wheel group exists in /etc/group
Warning:   Wheel group does not exist in /etc/group [-18]
Checking:  File permissions on /bin/su
find: `wheel' is not the name of an existing group
Warning:   File /bin/su has incorrect permissions [-19]
Warning:   User libuuid has never logged in and their account is not locked [-20]
Checking:  System accounts have valid shells
Warning:   System account daemon has an invalid shell
Warning:   System account bin has an invalid shell
Warning:   System account sys has an invalid shell
Warning:   System account games has an invalid shell
Warning:   System account man has an invalid shell
Warning:   System account lp has an invalid shell
Warning:   System account mail has an invalid shell
Warning:   System account news has an invalid shell
Warning:   System account uucp has an invalid shell
Warning:   System account proxy has an invalid shell
Warning:   System account www-data has an invalid shell
Warning:   System account backup has an invalid shell
Warning:   System account list has an invalid shell
Warning:   System account irc has an invalid shell
Warning:   System account gnats has an invalid shell
Warning:   System account libuuid has an invalid shell but the account is disabled
Warning:   System account sshd has an invalid shell
Checking:  Service iscsi at run level 3
Notice:    Service iscsi is not installed [-35]
Checking:  Service iscsi at run level 5
Notice:    Service iscsi is not installed [-34]
Checking:  Service iscsd at run level 3
Notice:    Service iscsd is not installed [-33]
Checking:  Service iscsd at run level 5
Notice:    Service iscsd is not installed [-32]
Checking:  Service pcscd at run level 3
Notice:    Service pcscd is not installed [-31]
Checking:  Service pcscd at run level 5
Notice:    Service pcscd is not installed [-30]
Checking:  Service haldaemon at run level 3
Notice:    Service haldaemon is not installed [-29]
Checking:  Service haldaemon at run level 5
Notice:    Service haldaemon is not installed [-28]
Checking:  Service kudzu at run level 3
Notice:    Service kudzu is not installed [-27]
Checking:  Service kudzu at run level 5
Notice:    Service kudzu is not installed [-26]
Checking:  Service apmd at run level 3
Notice:    Service apmd is not installed [-25]
Checking:  Service apmd at run level 5
Notice:    Service apmd is not installed [-24]
Checking:  Service xend at run level 3
Notice:    Service xend is not installed [-23]
Checking:  Service xend at run level 5
Notice:    Service xend is not installed [-22]
Checking:  Service xendomains at run level 3
Notice:    Service xendomains is not installed [-21]
Checking:  Service xendomains at run level 5
Notice:    Service xendomains is not installed [-20]
Checking:  Service xfs at run level 3
Notice:    Service xfs is not installed [-19]
Checking:  Service xfs at run level 5
Notice:    Service xfs is not installed [-18]
Checking:  Service vncserver at run level 3
Notice:    Service vncserver is not installed [-17]
Checking:  Service vncserver at run level 5
Notice:    Service vncserver is not installed [-16]
Checking:  Service yppasswdd at run level 3
Notice:    Service yppasswdd is not installed [-15]
Checking:  Service yppasswdd at run level 5
Notice:    Service yppasswdd is not installed [-14]
Checking:  Service ypserv at run level 3
Notice:    Service ypserv is not installed [-13]
Checking:  Service ypserv at run level 5
Notice:    Service ypserv is not installed [-12]
Checking:  Service ypxfrd at run level 3
Notice:    Service ypxfrd is not installed [-11]
Checking:  Service ypxfrd at run level 5
Notice:    Service ypxfrd is not installed [-10]
Checking:  Service ypbind at run level 3
Notice:    Service ypbind is not installed [-9]
Checking:  Service ypbind at run level 5
Notice:    Service ypbind is not installed [-8]
Checking:  Service ldap at run level 3
Notice:    Service ldap is not installed [-7]
Checking:  Service ldap at run level 5
Notice:    Service ldap is not installed [-6]
Checking:  Service nscd at run level 3
Notice:    Service nscd is not installed [-5]
Checking:  Service nscd at run level 5
Notice:    Service nscd is not installed [-4]
Checking:  Service avahi at run level 3
Notice:    Service avahi is not installed [-3]
Checking:  Service avahi at run level 5
Notice:    Service avahi is not installed [-2]
Checking:  Service avahi-autoipd at run level 3
Notice:    Service avahi-autoipd is not installed [-1]
Checking:  Service avahi-autoipd at run level 5
Notice:    Service avahi-autoipd is not installed [0]
Checking:  Service avahi-daemon at run level 3
Notice:    Service avahi-daemon is not installed [1]
Checking:  Service avahi-daemon at run level 5
Notice:    Service avahi-daemon is not installed [2]
Checking:  Service avahi-dnsconfd at run level 3
Notice:    Service avahi-dnsconfd is not installed [3]
Checking:  Service avahi-dnsconfd at run level 5
Notice:    Service avahi-dnsconfd is not installed [4]
Checking:  Service named at run level 3
Notice:    Service named is not installed [5]
Checking:  Service named at run level 5
Notice:    Service named is not installed [6]
Checking:  Service kadmin at run level 3
Notice:    Service kadmin is not installed [7]
Checking:  Service kadmin at run level 5
Notice:    Service kadmin is not installed [8]
Checking:  Service kprop at run level 3
Notice:    Service kprop is not installed [9]
Checking:  Service kprop at run level 5
Notice:    Service kprop is not installed [10]
Checking:  Service krb524 at run level 3
Notice:    Service krb524 is not installed [11]
Checking:  Service krb524 at run level 5
Notice:    Service krb524 is not installed [12]
Checking:  Service krb5kdc at run level 3
Notice:    Service krb5kdc is not installed [13]
Checking:  Service krb5kdc at run level 5
Notice:    Service krb5kdc is not installed [14]
Checking:  Legacy NIS '+' entries
Secure:    No NIS entries in /etc/passwd [15]
Secure:    No NIS entries in /etc/shadow [16]
Secure:    No NIS entries in /etc/group [17]
Checking:  Value of "disable-user-service-publishing" in /etc/avahi/avahi-daemon.conf is "yes"
Warning:   Parameter "disable-user-service-publishing" not set to "yes" in /etc/avahi/avahi-daemon.conf [16]
Checking:  Value of "disable-publishing" in /etc/avahi/avahi-daemon.conf is "yes"
Warning:   Parameter "disable-publishing" not set to "yes" in /etc/avahi/avahi-daemon.conf [15]
Checking:  Value of "publish-address" in /etc/avahi/avahi-daemon.conf is "no"
Warning:   Parameter "publish-address" not set to "no" in /etc/avahi/avahi-daemon.conf [14]
Checking:  Value of "publish-binfo" in /etc/avahi/avahi-daemon.conf is "no"
Warning:   Parameter "publish-binfo" not set to "no" in /etc/avahi/avahi-daemon.conf [13]
Checking:  Value of "publish-workstation" in /etc/avahi/avahi-daemon.conf is "no"
Warning:   Parameter "publish-workstation" not set to "no" in /etc/avahi/avahi-daemon.conf [12]
Checking:  Value of "publish-domain" in /etc/avahi/avahi-daemon.conf is "no"
Warning:   Parameter "publish-domain" not set to "no" in /etc/avahi/avahi-daemon.conf [11]
Checking:  Value of "disallow-other-stacks" in /etc/avahi/avahi-daemon.conf is "yes"
Warning:   Parameter "disallow-other-stacks" not set to "yes" in /etc/avahi/avahi-daemon.conf [10]
Checking:  Value of "check-response-ttl" in /etc/avahi/avahi-daemon.conf is "yes"
Warning:   Parameter "check-response-ttl" not set to "yes" in /etc/avahi/avahi-daemon.conf [9]
Checking:  Service autofs at run level 3
Notice:    Service autofs is not installed [10]
Checking:  Service autofs at run level 5
Notice:    Service autofs is not installed [11]
Secure:    No filesystem that should be mounted with nodev [12]
Checking:  File permissions on /etc/fstab
Secure:    File /etc/fstab has correct permissions [13]
Checking:  File permissions on /usr/share/hal/fdi/policy/20thirdparty/floppycdrom.fdi
Notice:    File /usr/share/hal/fdi/policy/20thirdparty/floppycdrom.fdi does not exist [14]
Checking:  Service nfs at run level 3
Notice:    Service nfs is not installed [15]
Checking:  Service nfs at run level 5
Notice:    Service nfs is not installed [16]
Checking:  Service nfslock at run level 3
Notice:    Service nfslock is not installed [17]
Checking:  Service nfslock at run level 5
Notice:    Service nfslock is not installed [18]
Checking:  Service portmap at run level 3
Notice:    Service portmap is not installed [19]
Checking:  Service portmap at run level 5
Notice:    Service portmap is not installed [20]
Checking:  Service rpc at run level 3
Notice:    Service rpc is not installed [21]
Checking:  Service rpc at run level 5
Notice:    Service rpc is not installed [22]
Checking:  Service httpd at run level 3
Notice:    Service httpd is not installed [23]
Checking:  Service httpd at run level 5
Notice:    Service httpd is not installed [24]
Checking:  Service apache at run level 3
Notice:    Service apache is not installed [25]
Checking:  Service apache at run level 5
Notice:    Service apache is not installed [26]
Checking:  Service tomcat5 at run level 3
Notice:    Service tomcat5 is not installed [27]
Checking:  Service tomcat5 at run level 5
Notice:    Service tomcat5 is not installed [28]
Checking:  Service squid at run level 3
Notice:    Service squid is not installed [29]
Checking:  Service squid at run level 5
Notice:    Service squid is not installed [30]
Checking:  Service prixovy at run level 3
Notice:    Service prixovy is not installed [31]
Checking:  Service prixovy at run level 5
Notice:    Service prixovy is not installed [32]
Checking:  Service bgpd at run level 3
Notice:    Service bgpd is not installed [33]
Checking:  Service bgpd at run level 5
Notice:    Service bgpd is not installed [34]
Checking:  Service ospf6d at run level 3
Notice:    Service ospf6d is not installed [35]
Checking:  Service ospf6d at run level 5
Notice:    Service ospf6d is not installed [36]
Checking:  Service ospfd at run level 3
Notice:    Service ospfd is not installed [37]
Checking:  Service ospfd at run level 5
Notice:    Service ospfd is not installed [38]
Checking:  Service ripd at run level 3
Notice:    Service ripd is not installed [39]
Checking:  Service ripd at run level 5
Notice:    Service ripd is not installed [40]
Checking:  Service ripngd at run level 3
Notice:    Service ripngd is not installed [41]
Checking:  Service ripngd at run level 5
Notice:    Service ripngd is not installed [42]
Checking:  Service smb at run level 3
Notice:    Service smb is not installed [43]
Checking:  Service smb at run level 5
Notice:    Service smb is not installed [44]
Checking:  Service rarpd at run level 3
Notice:    Service rarpd is not installed [45]
Checking:  Service rarpd at run level 5
Notice:    Service rarpd is not installed [46]
Checking:  Service winbind at run level 3
Notice:    Service winbind is not installed [47]
Checking:  Service winbind at run level 5
Notice:    Service winbind is not installed [48]
Checking:  Service wu-ftpd at run level 3
Notice:    Service wu-ftpd is not installed [49]
Checking:  Service wu-ftpd at run level 5
Notice:    Service wu-ftpd is not installed [50]
Checking:  Service ftp at run level 3
Notice:    Service ftp is not installed [51]
Checking:  Service ftp at run level 5
Notice:    Service ftp is not installed [52]
Checking:  Service vsftpd at run level 3
Notice:    Service vsftpd is not installed [53]
Checking:  Service vsftpd at run level 5
Notice:    Service vsftpd is not installed [54]
Checking:  Service aaeventd at run level 3
Notice:    Service aaeventd is not installed [55]
Checking:  Service aaeventd at run level 5
Notice:    Service aaeventd is not installed [56]
Checking:  Service tftp at run level 3
Notice:    Service tftp is not installed [57]
Checking:  Service tftp at run level 5
Notice:    Service tftp is not installed [58]
Checking:  Service acpid at run level 3
Notice:    Service acpid is not installed [59]
Checking:  Service acpid at run level 5
Notice:    Service acpid is not installed [60]
Checking:  Service amd at run level 3
Notice:    Service amd is not installed [61]
Checking:  Service amd at run level 5
Notice:    Service amd is not installed [62]
Checking:  Service arptables_jg at run level 3
Notice:    Service arptables_jg is not installed [63]
Checking:  Service arptables_jg at run level 5
Notice:    Service arptables_jg is not installed [64]
Checking:  Service arpwatch at run level 3
Notice:    Service arpwatch is not installed [65]
Checking:  Service arpwatch at run level 5
Notice:    Service arpwatch is not installed [66]
Checking:  Service atd at run level 3
Notice:    Service atd is not installed [67]
Checking:  Service atd at run level 5
Notice:    Service atd is not installed [68]
Checking:  Service netfs at run level 3
Notice:    Service netfs is not installed [69]
Checking:  Service netfs at run level 5
Notice:    Service netfs is not installed [70]
Checking:  Service irda at run level 3
Notice:    Service irda is not installed [71]
Checking:  Service irda at run level 5
Notice:    Service irda is not installed [72]
Checking:  Service isdn at run level 3
Notice:    Service isdn is not installed [73]
Checking:  Service isdn at run level 5
Notice:    Service isdn is not installed [74]
Checking:  Service bluetooth at run level 3
Notice:    Service bluetooth is not installed [75]
Checking:  Service bluetooth at run level 5
Notice:    Service bluetooth is not installed [76]
Checking:  Service capi at run level 3
Notice:    Service capi is not installed [77]
Checking:  Service capi at run level 5
Notice:    Service capi is not installed [78]
Checking:  Service conman at run level 3
Notice:    Service conman is not installed [79]
Checking:  Service conman at run level 5
Notice:    Service conman is not installed [80]
Checking:  Service cpuspeed at run level 3
Notice:    Service cpuspeed is not installed [81]
Checking:  Service cpuspeed at run level 5
Notice:    Service cpuspeed is not installed [82]
Checking:  Service cryrus-imapd at run level 3
Notice:    Service cryrus-imapd is not installed [83]
Checking:  Service cryrus-imapd at run level 5
Notice:    Service cryrus-imapd is not installed [84]
Checking:  Service dc_client at run level 3
Notice:    Service dc_client is not installed [85]
Checking:  Service dc_client at run level 5
Notice:    Service dc_client is not installed [86]
Checking:  Service dc_server at run level 3
Notice:    Service dc_server is not installed [87]
Checking:  Service dc_server at run level 5
Notice:    Service dc_server is not installed [88]
Checking:  Service dhcdbd at run level 3
Notice:    Service dhcdbd is not installed [89]
Checking:  Service dhcdbd at run level 5
Notice:    Service dhcdbd is not installed [90]
Checking:  Service dhcp6s at run level 3
Notice:    Service dhcp6s is not installed [91]
Checking:  Service dhcp6s at run level 5
Notice:    Service dhcp6s is not installed [92]
Checking:  Service dhcrelay at run level 3
Notice:    Service dhcrelay is not installed [93]
Checking:  Service dhcrelay at run level 5
Notice:    Service dhcrelay is not installed [94]
Checking:  Service chargen at run level 3
Notice:    Service chargen is not installed [95]
Checking:  Service chargen at run level 5
Notice:    Service chargen is not installed [96]
Checking:  Service chargen-udp at run level 3
Notice:    Service chargen-udp is not installed [97]
Checking:  Service chargen-udp at run level 5
Notice:    Service chargen-udp is not installed [98]
Checking:  Service dovecot at run level 3
Notice:    Service dovecot is not installed [99]
Checking:  Service dovecot at run level 5
Notice:    Service dovecot is not installed [100]
Checking:  Service dund at run level 3
Notice:    Service dund is not installed [101]
Checking:  Service dund at run level 5
Notice:    Service dund is not installed [102]
Checking:  Service gpm at run level 3
Notice:    Service gpm is not installed [103]
Checking:  Service gpm at run level 5
Notice:    Service gpm is not installed [104]
Checking:  Service hidd at run level 3
Notice:    Service hidd is not installed [105]
Checking:  Service hidd at run level 5
Notice:    Service hidd is not installed [106]
Checking:  Service hplip at run level 3
Notice:    Service hplip is not installed [107]
Checking:  Service hplip at run level 5
Notice:    Service hplip is not installed [108]
Checking:  Service ibmasm at run level 3
Notice:    Service ibmasm is not installed [109]
Checking:  Service ibmasm at run level 5
Notice:    Service ibmasm is not installed [110]
Checking:  Service innd at run level 3
Notice:    Service innd is not installed [111]
Checking:  Service innd at run level 5
Notice:    Service innd is not installed [112]
Checking:  Service ip6tables at run level 3
Notice:    Service ip6tables is not installed [113]
Checking:  Service ip6tables at run level 5
Notice:    Service ip6tables is not installed [114]
Checking:  Service lisa at run level 3
Notice:    Service lisa is not installed [115]
Checking:  Service lisa at run level 5
Notice:    Service lisa is not installed [116]
Checking:  Service lm_sensors at run level 3
Notice:    Service lm_sensors is not installed [117]
Checking:  Service lm_sensors at run level 5
Notice:    Service lm_sensors is not installed [118]
Checking:  Service mailman at run level 3
Notice:    Service mailman is not installed [119]
Checking:  Service mailman at run level 5
Notice:    Service mailman is not installed [120]
Checking:  Service mctrans at run level 3
Notice:    Service mctrans is not installed [121]
Checking:  Service mctrans at run level 5
Notice:    Service mctrans is not installed [122]
Checking:  Service mdmonitor at run level 3
Notice:    Service mdmonitor is not installed [123]
Checking:  Service mdmonitor at run level 5
Notice:    Service mdmonitor is not installed [124]
Checking:  Service mdmpd at run level 3
Notice:    Service mdmpd is not installed [125]
Checking:  Service mdmpd at run level 5
Notice:    Service mdmpd is not installed [126]
Checking:  Service microcode_ctl at run level 3
Notice:    Service microcode_ctl is not installed [127]
Checking:  Service microcode_ctl at run level 5
Notice:    Service microcode_ctl is not installed [128]
Checking:  Service mysqld at run level 3
Notice:    Service mysqld is not installed [129]
Checking:  Service mysqld at run level 5
Notice:    Service mysqld is not installed [130]
Checking:  Service netplugd at run level 3
Notice:    Service netplugd is not installed [131]
Checking:  Service netplugd at run level 5
Notice:    Service netplugd is not installed [132]
Checking:  Service network at run level 3
Notice:    Service network is not installed [133]
Checking:  Service network at run level 5
Notice:    Service network is not installed [134]
Checking:  Service NetworkManager at run level 3
Notice:    Service NetworkManager is not installed [135]
Checking:  Service NetworkManager at run level 5
Notice:    Service NetworkManager is not installed [136]
Checking:  Service openibd at run level 3
Notice:    Service openibd is not installed [137]
Checking:  Service openibd at run level 5
Notice:    Service openibd is not installed [138]
Checking:  Service pand at run level 3
Notice:    Service pand is not installed [139]
Checking:  Service pand at run level 5
Notice:    Service pand is not installed [140]
Checking:  Service postfix at run level 3
Notice:    Service postfix is not installed [141]
Checking:  Service postfix at run level 5
Notice:    Service postfix is not installed [142]
Checking:  Service psacct at run level 3
Notice:    Service psacct is not installed [143]
Checking:  Service psacct at run level 5
Notice:    Service psacct is not installed [144]
Checking:  Service mutipathd at run level 3
Notice:    Service mutipathd is not installed [145]
Checking:  Service mutipathd at run level 5
Notice:    Service mutipathd is not installed [146]
Checking:  Service daytime at run level 3
Notice:    Service daytime is not installed [147]
Checking:  Service daytime at run level 5
Notice:    Service daytime is not installed [148]
Checking:  Service daytime-udp at run level 3
Notice:    Service daytime-udp is not installed [149]
Checking:  Service daytime-udp at run level 5
Notice:    Service daytime-udp is not installed [150]
Checking:  Service radiusd at run level 3
Notice:    Service radiusd is not installed [151]
Checking:  Service radiusd at run level 5
Notice:    Service radiusd is not installed [152]
Checking:  Service radvd at run level 3
Notice:    Service radvd is not installed [153]
Checking:  Service radvd at run level 5
Notice:    Service radvd is not installed [154]
Checking:  Service rdisc at run level 3
Notice:    Service rdisc is not installed [155]
Checking:  Service rdisc at run level 5
Notice:    Service rdisc is not installed [156]
Checking:  Service readahead_early at run level 3
Notice:    Service readahead_early is not installed [157]
Checking:  Service readahead_early at run level 5
Notice:    Service readahead_early is not installed [158]
Checking:  Service readahead_later at run level 3
Notice:    Service readahead_later is not installed [159]
Checking:  Service readahead_later at run level 5
Notice:    Service readahead_later is not installed [160]
Checking:  Service rhnsd at run level 3
Notice:    Service rhnsd is not installed [161]
Checking:  Service rhnsd at run level 5
Notice:    Service rhnsd is not installed [162]
Checking:  Service rpcgssd at run level 3
Notice:    Service rpcgssd is not installed [163]
Checking:  Service rpcgssd at run level 5
Notice:    Service rpcgssd is not installed [164]
Checking:  Service rpcimapd at run level 3
Notice:    Service rpcimapd is not installed [165]
Checking:  Service rpcimapd at run level 5
Notice:    Service rpcimapd is not installed [166]
Checking:  Service rpcsvcgssd at run level 3
Notice:    Service rpcsvcgssd is not installed [167]
Checking:  Service rpcsvcgssd at run level 5
Notice:    Service rpcsvcgssd is not installed [168]
Checking:  Service rstatd at run level 3
Notice:    Service rstatd is not installed [169]
Checking:  Service rstatd at run level 5
Notice:    Service rstatd is not installed [170]
Checking:  Service rusersd at run level 3
Notice:    Service rusersd is not installed [171]
Checking:  Service rusersd at run level 5
Notice:    Service rusersd is not installed [172]
Checking:  Service rwhod at run level 3
Notice:    Service rwhod is not installed [173]
Checking:  Service rwhod at run level 5
Notice:    Service rwhod is not installed [174]
Checking:  Service saslauthd at run level 3
Notice:    Service saslauthd is not installed [175]
Checking:  Service saslauthd at run level 5
Notice:    Service saslauthd is not installed [176]
Checking:  Service settroubleshoot at run level 3
Notice:    Service settroubleshoot is not installed [177]
Checking:  Service settroubleshoot at run level 5
Notice:    Service settroubleshoot is not installed [178]
Checking:  Service smartd at run level 3
Notice:    Service smartd is not installed [179]
Checking:  Service smartd at run level 5
Notice:    Service smartd is not installed [180]
Checking:  Service spamassasin at run level 3
Notice:    Service spamassasin is not installed [181]
Checking:  Service spamassasin at run level 5
Notice:    Service spamassasin is not installed [182]
Checking:  Service echo at run level 3
Notice:    Service echo is not installed [183]
Checking:  Service echo at run level 5
Notice:    Service echo is not installed [184]
Checking:  Service echo-udp at run level 3
Notice:    Service echo-udp is not installed [185]
Checking:  Service echo-udp at run level 5
Notice:    Service echo-udp is not installed [186]
Checking:  Service time at run level 3
Notice:    Service time is not installed [187]
Checking:  Service time at run level 5
Notice:    Service time is not installed [188]
Checking:  Service time-udp at run level 3
Notice:    Service time-udp is not installed [189]
Checking:  Service time-udp at run level 5
Notice:    Service time-udp is not installed [190]
Checking:  Service vnc at run level 3
Notice:    Service vnc is not installed [191]
Checking:  Service vnc at run level 5
Notice:    Service vnc is not installed [192]
Checking:  Service svcgssd at run level 3
Notice:    Service svcgssd is not installed [193]
Checking:  Service svcgssd at run level 5
Notice:    Service svcgssd is not installed [194]
Checking:  Service rpmconfigcheck at run level 3
Notice:    Service rpmconfigcheck is not installed [195]
Checking:  Service rpmconfigcheck at run level 5
Notice:    Service rpmconfigcheck is not installed [196]
Checking:  Service rsh at run level 3
Notice:    Service rsh is not installed [197]
Checking:  Service rsh at run level 5
Notice:    Service rsh is not installed [198]
Checking:  Service rsync at run level 3 is off
Warning:   Service rsync at run level 3 is not off [197]
Checking:  Service rsync at run level 5
Notice:    Service rsync is not installed [198]
Checking:  Service rsyncd at run level 3
Notice:    Service rsyncd is not installed [199]
Checking:  Service rsyncd at run level 5
Notice:    Service rsyncd is not installed [200]
Checking:  Service saslauthd at run level 3
Notice:    Service saslauthd is not installed [201]
Checking:  Service saslauthd at run level 5
Notice:    Service saslauthd is not installed [202]
Checking:  Service powerd at run level 3
Notice:    Service powerd is not installed [203]
Checking:  Service powerd at run level 5
Notice:    Service powerd is not installed [204]
Checking:  Service raw at run level 3
Notice:    Service raw is not installed [205]
Checking:  Service raw at run level 5
Notice:    Service raw is not installed [206]
Checking:  Service rexec at run level 3
Notice:    Service rexec is not installed [207]
Checking:  Service rexec at run level 5
Notice:    Service rexec is not installed [208]
Checking:  Service rlogin at run level 3
Notice:    Service rlogin is not installed [209]
Checking:  Service rlogin at run level 5
Notice:    Service rlogin is not installed [210]
Checking:  Service rpasswdd at run level 3
Notice:    Service rpasswdd is not installed [211]
Checking:  Service rpasswdd at run level 5
Notice:    Service rpasswdd is not installed [212]
Checking:  Service openct at run level 3
Notice:    Service openct is not installed [213]
Checking:  Service openct at run level 5
Notice:    Service openct is not installed [214]
Checking:  Service ipxmount at run level 3
Notice:    Service ipxmount is not installed [215]
Checking:  Service ipxmount at run level 5
Notice:    Service ipxmount is not installed [216]
Checking:  Service joystick at run level 3
Notice:    Service joystick is not installed [217]
Checking:  Service joystick at run level 5
Notice:    Service joystick is not installed [218]
Checking:  Service esound at run level 3
Notice:    Service esound is not installed [219]
Checking:  Service esound at run level 5
Notice:    Service esound is not installed [220]
Checking:  Service evms at run level 3
Notice:    Service evms is not installed [221]
Checking:  Service evms at run level 5
Notice:    Service evms is not installed [222]
Checking:  Service fam at run level 3
Notice:    Service fam is not installed [223]
Checking:  Service fam at run level 5
Notice:    Service fam is not installed [224]
Checking:  Service gpm at run level 3
Notice:    Service gpm is not installed [225]
Checking:  Service gpm at run level 5
Notice:    Service gpm is not installed [226]
Checking:  Service gssd at run level 3
Notice:    Service gssd is not installed [227]
Checking:  Service gssd at run level 5
Notice:    Service gssd is not installed [228]
Checking:  Service pcscd at run level 3
Notice:    Service pcscd is not installed [229]
Checking:  Service pcscd at run level 5
Notice:    Service pcscd is not installed [230]
Checking:  Service tog-pegasus at run level 3
Notice:    Service tog-pegasus is not installed [231]
Checking:  Service tog-pegasus at run level 5
Notice:    Service tog-pegasus is not installed [232]
Checking:  Service tux at run level 3
Notice:    Service tux is not installed [233]
Checking:  Service tux at run level 5
Notice:    Service tux is not installed [234]
Checking:  Service wpa_supplicant at run level 3
Notice:    Service wpa_supplicant is not installed [235]
Checking:  Service wpa_supplicant at run level 5
Notice:    Service wpa_supplicant is not installed [236]
Checking:  Service zebra at run level 3
Notice:    Service zebra is not installed [237]
Checking:  Service zebra at run level 5
Notice:    Service zebra is not installed [238]
Checking:  Service ncpfs at run level 3
Notice:    Service ncpfs is not installed [239]
Checking:  Service ncpfs at run level 5
Notice:    Service ncpfs is not installed [240]
Checking:  File permissions on /var/log/boot.log
Warning:   File /var/log/boot.log has incorrect permissions [239]
Checking:  File permissions on /var/log/dmesg
Warning:   File /var/log/dmesg has incorrect permissions [238]
Checking:  File permissions on /var/log/lastlog
Warning:   File /var/log/lastlog has incorrect permissions [237]
Checking:  File permissions on /var/log/wtmp
Warning:   File /var/log/wtmp has incorrect permissions [236]
Checking:  Value of "authpriv.*" in /etc/syslog.conf is "/var/log/secure"
Warning:   Parameter "authpriv.*" not set to "/var/log/secure" in /etc/syslog.conf [235]
Checking:  Value of "auth.*" in /etc/syslog.conf is "/var/log/messages"
Warning:   Parameter "auth.*" not set to "/var/log/messages" in /etc/syslog.conf [234]
Checking:  Service kdump at run level 3
Notice:    Service kdump is not installed [235]
Checking:  Service kdump at run level 5
Notice:    Service kdump is not installed [236]
Checking:  NTP is enabled
Warning:   NTP not enabled [235]
Checking:  Service ntp at run level 3
Notice:    Service ntp is not installed [236]
Checking:  Service ntp at run level 5
Notice:    Service ntp is not installed [237]
Checking:  Parameter "restrict default kod nomodify nopeer notrap noquery" is set in /etc/ntp.conf
Warning:   Parameter "restrict default kod nomodify nopeer notrap noquery" does not exist in /etc/ntp.conf [236]
Checking:  Parameter "restrict -6 default kod nomodify nopeer notrap noquery" is set in /etc/ntp.conf
Warning:   Parameter "restrict -6 default kod nomodify nopeer notrap noquery" does not exist in /etc/ntp.conf [235]
Checking:  Value of "OPTIONS" in /etc/ntp.conf is "-u ntp:ntp -p /var/run/ntpd.pid"
Warning:   Parameter "OPTIONS" not set to "-u ntp:ntp -p /var/run/ntpd.pid" in /etc/ntp.conf [234]
Checking:  Service ipmi at run level 3
Notice:    Service ipmi is not installed [235]
Checking:  Service ipmi at run level 5
Notice:    Service ipmi is not installed [236]
Checking:  Service bootparamd at run level 3
Notice:    Service bootparamd is not installed [237]
Checking:  Service bootparamd at run level 5
Notice:    Service bootparamd is not installed [238]
Checking:  Service tftp at run level 3
Notice:    Service tftp is not installed [239]
Checking:  Service tftp at run level 5
Notice:    Service tftp is not installed [240]
Checking:  Service postgresql at run level 3
Notice:    Service postgresql is not installed [241]
Checking:  Service postgresql at run level 5
Notice:    Service postgresql is not installed [242]

Tests:     620
Score:     242
Clone this wiki locally