Skip to content

oscal-compass/e2e-demo-compliance-posture

End-to-End Demo: Compliance Posture

End-to-End Demo: Policy as Code Ubuntu results

This repo comprises Compliance Posture for the end-to-end demo.

The demo overview.

Last updated: 2025-03-05 12:19:21



Component definition for Ubuntu_Linux_24.04_LTS V1.0

type: ubuntu2404

host: Dade

Status by control
control name control status
ac-1 fail
ac-2 fail
ac-2.1 fail
ac-2.5 fail
ac-3 fail
ac-5 fail
ac-6 fail
ac-6.2 fail
ac-6.5 fail
ac-11 fail
ac-11.1 fail
ac-12 fail
ac-17.2 pass
au-2 pass
au-3 fail
au-3.1 fail
au-7 fail
au-12 fail
cm-1 pass
cm-2 pass
cm-6 pass
cm-7 pass
cm-7.1 pass
cm-9 pass
ia-5 pass
ia-5.1 fail
mp-2 fail
sa-3 pass
sa-8 pass
sa-10 pass
sc-8 pass
sc-8.1 pass
sc-28 fail
sc-28.1 fail


Status by control + rule
control name control status rule name rule status
ac-1 fail
accounts_passwords_pam_faillock_deny fail
accounts_passwords_pam_faillock_enabled fail
accounts_passwords_pam_faillock_root_unlock_time fail
accounts_passwords_pam_faillock_unlock_time fail
ac-2 fail
accounts_passwords_pam_faillock_deny fail
accounts_passwords_pam_faillock_enabled fail
accounts_passwords_pam_faillock_root_unlock_time fail
accounts_passwords_pam_faillock_unlock_time fail
ac-2.1 fail
accounts_passwords_pam_faillock_deny fail
accounts_passwords_pam_faillock_enabled fail
accounts_passwords_pam_faillock_root_unlock_time fail
accounts_passwords_pam_faillock_unlock_time fail
ac-2.5 fail
accounts_tmout fail
ac-3 fail
accounts_password_pam_unix_enabled pass
accounts_root_gid_zero pass
accounts_umask_etc_bashrc fail
accounts_umask_etc_login_defs fail
accounts_umask_etc_profile fail
accounts_umask_root pass
ensure_pam_wheel_group_empty fail
ensure_root_access_controlled pass
file_groupowner_sshd_config pass
file_owner_sshd_config pass
file_permissions_sshd_config pass
file_permissions_sshd_private_key pass
file_permissions_sshd_pub_key pass
groups_no_zero_gid_except_root pass
no_invalid_shell_accounts_unlocked pass
no_shelllogin_for_systemaccounts pass
sshd_limit_user_access fail
use_pam_wheel_group_for_su fail
ac-5 fail
accounts_password_pam_unix_enabled pass
accounts_root_gid_zero pass
accounts_umask_etc_bashrc fail
accounts_umask_etc_login_defs fail
accounts_umask_etc_profile fail
accounts_umask_root pass
ensure_pam_wheel_group_empty fail
ensure_root_access_controlled pass
file_groupowner_sshd_config pass
file_owner_sshd_config pass
file_permissions_sshd_config pass
file_permissions_sshd_private_key pass
file_permissions_sshd_pub_key pass
groups_no_zero_gid_except_root pass
no_invalid_shell_accounts_unlocked pass
no_shelllogin_for_systemaccounts pass
sshd_limit_user_access fail
use_pam_wheel_group_for_su fail
ac-6 fail
accounts_password_pam_unix_enabled pass
accounts_root_gid_zero pass
accounts_umask_etc_bashrc fail
accounts_umask_etc_login_defs fail
accounts_umask_etc_profile fail
accounts_umask_root pass
ensure_pam_wheel_group_empty fail
ensure_root_access_controlled pass
file_groupowner_sshd_config pass
file_owner_sshd_config pass
file_permissions_sshd_config pass
file_permissions_sshd_private_key pass
file_permissions_sshd_pub_key pass
groups_no_zero_gid_except_root pass
no_invalid_shell_accounts_unlocked pass
no_shelllogin_for_systemaccounts pass
sshd_limit_user_access fail
use_pam_wheel_group_for_su fail
ac-6.2 fail
package_sudo_installed pass
sshd_disable_root_login pass
sudo_add_use_pty pass
sudo_remove_no_authenticate pass
sudo_require_authentication pass
sudo_require_reauthentication fail
ac-6.5 fail
package_sudo_installed pass
sshd_disable_root_login pass
sudo_add_use_pty pass
sudo_remove_no_authenticate pass
sudo_require_authentication pass
sudo_require_reauthentication fail
ac-11 fail
accounts_tmout fail
ac-11.1 fail
accounts_tmout fail
ac-12 fail
accounts_tmout fail
ac-17.2 pass
sshd_use_strong_ciphers pass
sshd_use_strong_kex pass
sshd_use_strong_macs pass
au-2 pass
sshd_set_loglevel_info pass
au-3 fail
sshd_set_max_auth_tries pass
sudo_custom_logfile fail
au-3.1 fail
sshd_set_max_auth_tries pass
sudo_custom_logfile fail
au-7 fail
sshd_set_loglevel_info pass
sshd_set_max_auth_tries pass
sudo_custom_logfile fail
au-12 fail
sshd_set_loglevel_info pass
sshd_set_max_auth_tries pass
sudo_custom_logfile fail
cm-1 pass
accounts_password_warn_age_login_defs pass
cm-2 pass
accounts_password_warn_age_login_defs pass
cm-6 pass
accounts_password_warn_age_login_defs pass
sshd_disable_forwarding pass
cm-7 pass
accounts_password_warn_age_login_defs pass
sshd_disable_forwarding pass
cm-7.1 pass
accounts_password_warn_age_login_defs pass
cm-9 pass
accounts_password_warn_age_login_defs pass
ia-5 pass
sshd_use_strong_ciphers pass
sshd_use_strong_kex pass
sshd_use_strong_macs pass
ia-5.1 fail
account_disable_post_pw_expiration fail
accounts_maximum_age_login_defs fail
accounts_minimum_age_login_defs fail
accounts_password_last_change_is_in_past pass
accounts_password_pam_dcredit fail
accounts_password_pam_dictcheck fail
accounts_password_pam_difok fail
accounts_password_pam_enforce_root fail
accounts_password_pam_enforcing fail
accounts_password_pam_lcredit fail
accounts_password_pam_maxrepeat fail
accounts_password_pam_maxsequence fail
accounts_password_pam_minclass fail
accounts_password_pam_minlen fail
accounts_password_pam_ocredit fail
accounts_password_pam_pwhistory_enabled fail
accounts_password_pam_pwhistory_enforce_root fail
accounts_password_pam_pwhistory_remember fail
accounts_password_pam_pwhistory_use_authtok fail
accounts_password_pam_pwquality_enabled pass
accounts_password_pam_ucredit fail
accounts_password_pam_unix_authtok pass
accounts_password_pam_unix_no_remember pass
accounts_password_set_max_life_existing fail
accounts_password_set_min_life_existing fail
no_empty_passwords_unix fail
set_password_hashing_algorithm_logindefs pass
set_password_hashing_algorithm_systemauth pass
sshd_disable_empty_passwords pass
sshd_disable_gssapi_auth pass
sshd_disable_rhosts pass
sshd_enable_pam pass
sshd_use_strong_ciphers pass
sshd_use_strong_kex pass
sshd_use_strong_macs pass
mp-2 fail
accounts_password_pam_unix_enabled pass
accounts_root_gid_zero pass
accounts_umask_etc_bashrc fail
accounts_umask_etc_login_defs fail
accounts_umask_etc_profile fail
accounts_umask_root pass
ensure_pam_wheel_group_empty fail
ensure_root_access_controlled pass
file_groupowner_sshd_config pass
file_owner_sshd_config pass
file_permissions_sshd_config pass
file_permissions_sshd_private_key pass
file_permissions_sshd_pub_key pass
groups_no_zero_gid_except_root pass
no_invalid_shell_accounts_unlocked pass
no_shelllogin_for_systemaccounts pass
sshd_limit_user_access fail
use_pam_wheel_group_for_su fail
sa-3 pass
accounts_password_warn_age_login_defs pass
sa-8 pass
accounts_password_warn_age_login_defs pass
sa-10 pass
accounts_password_warn_age_login_defs pass
sc-8 pass
sshd_use_strong_ciphers pass
sshd_use_strong_kex pass
sshd_use_strong_macs pass
sc-8.1 pass
sshd_use_strong_ciphers pass
sshd_use_strong_kex pass
sshd_use_strong_macs pass
sc-28 fail
accounts_password_pam_pwhistory_use_authtok fail
accounts_password_pam_unix_authtok pass
set_password_hashing_algorithm_logindefs pass
set_password_hashing_algorithm_systemauth pass
sc-28.1 fail
accounts_password_pam_pwhistory_use_authtok fail
accounts_password_pam_unix_authtok pass
set_password_hashing_algorithm_logindefs pass
set_password_hashing_algorithm_systemauth pass