ClearFoundation Tracker - ClearCenter | |||||
View Issue Details | |||||
ID | Project | Category | View Status | Date Submitted | Last Update |
0002030 | ClearCenter | app-security-audit - Security Audit | public | 2014-11-11 09:28 | 2014-11-11 09:36 |
Reporter | marclaporte | ||||
Assigned To | |||||
Priority | low | Severity | feature | Reproducibility | N/A |
Status | confirmed | Resolution | open | ||
Platform | OS | OS Version | |||
Product Version | |||||
Target Version | Fixed in Version | ||||
Summary | 0002030: Security audit report should also indicate the software updates for the same time period | ||||
Description | We get something like this: AIDE found differences between database and filesystem!! Summary: Total number of files: 18491 Added files: 0 Removed files: 0 Changed files: 24 But how to know if those 24 changed files are legit? It would be useful to have (in the same message) the info from https://example.org:81/app/software_updates [^] So when I see: changed: /usr/lib64/openssl/engines/libcapi.so changed: /usr/lib64/openssl/engines/libchil.so Along with this: Nov 11 03:42:25 Updated openssl-1.0.1e-16.el6_5.15.x86_64 I can be confident that it's legit. Thanks! | ||||
Steps To Reproduce | |||||
Additional Information | |||||
Tags | No tags attached. | ||||
Relationships | |||||
Attached Files | |||||
Issue History | |||||
Date Modified | Username | Field | Change | ||
2014-11-11 09:28 | marclaporte | New Issue | |||
2014-11-11 09:36 | user2 | Status | new => confirmed |
There are no notes attached to this issue. |