-
Notifications
You must be signed in to change notification settings - Fork 763
Open
Description
Description of problem: oscap-podman RHEL8 and RHEL9 scans no longer generate xml output correctly. Issue started after June Release for RHEL8 and unknown for RHEL9. I think RHEL9 happened in September. The oscap-podman results ouput to the screen but the xml file is not properly populated.
SCAP Security Guide Version: v.0.1.77 and later.
Operating System Version: RHEL8 and RHEL9
Steps to Reproduce:
- Run oscap-podman
xccdf eval --profile xccdf_org.ssgproject.content_profile_stig --stig-viewer results_file_RHEL9_stig-results.xml /usr/share/xml/scap/ssg/content/ssg-rhel9-ds.xml or Run oscap-podman
xccdf eval --profile xccdf_org.ssgproject.content_profilegenereate_stig --stig-viewer results_file_RHEL8_stig-results.xml /usr/share/xml/scap/ssg/content/ssg-rhel8-ds.xml
- Open STIGViewer and create a STIG from the RHEL8 STIG and create a STIG from the RHEL9 STIG.
- Import the xml output files to their respective STIGs
4.The results will be blank.
Actual Results: The scan results output goes to the screen; however, the xml files do not have any results that can be read by STIGViewer. I do not think any tags or data is there.
Expected Results: After import of xml results file there should be results from the scan visible in STIG Viewer.
Additional Information/Debugging Steps: Use RHEL8 ssg file from June and RHEL9 ssg from June and see that the oscap-podman --stig-viewer xml files import into STIG Viewer with results.
Metadata
Metadata
Assignees
Labels
No labels