Skip to content

oscap-podman STIG scan results not rendering to xml file #14258

@slygirl09

Description

@slygirl09

Description of problem: oscap-podman RHEL8 and RHEL9 scans no longer generate xml output correctly. Issue started after June Release for RHEL8 and unknown for RHEL9. I think RHEL9 happened in September. The oscap-podman results ouput to the screen but the xml file is not properly populated.

SCAP Security Guide Version: v.0.1.77 and later.

Operating System Version: RHEL8 and RHEL9

Steps to Reproduce:

  1. Run oscap-podman xccdf eval --profile xccdf_org.ssgproject.content_profile_stig --stig-viewer results_file_RHEL9_stig-results.xml /usr/share/xml/scap/ssg/content/ssg-rhel9-ds.xml or Run oscap-podman xccdf eval --profile xccdf_org.ssgproject.content_profilegenereate_stig --stig-viewer results_file_RHEL8_stig-results.xml /usr/share/xml/scap/ssg/content/ssg-rhel8-ds.xml
  2. Open STIGViewer and create a STIG from the RHEL8 STIG and create a STIG from the RHEL9 STIG.
  3. Import the xml output files to their respective STIGs
    4.The results will be blank.

Actual Results: The scan results output goes to the screen; however, the xml files do not have any results that can be read by STIGViewer. I do not think any tags or data is there.

Expected Results: After import of xml results file there should be results from the scan visible in STIG Viewer.

Additional Information/Debugging Steps: Use RHEL8 ssg file from June and RHEL9 ssg from June and see that the oscap-podman --stig-viewer xml files import into STIG Viewer with results.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions