Skip to content

Commit

Permalink
refactor[rules,docs]: final updates for release
Browse files Browse the repository at this point in the history
Updated STIG rules and references to match latest revision
Update CIS references to mathc latest revision
  • Loading branch information
brodjieski committed Dec 7, 2022
1 parent 75f250e commit 9a16f74
Show file tree
Hide file tree
Showing 10 changed files with 13 additions and 10 deletions.
3 changes: 3 additions & 0 deletions CHANGELOG.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -10,6 +10,9 @@ This document provides a high-level view of the changes to the macOS Security Co
*** os_hibernate_mode_enable
*** os_tftpd_disable
*** sysprefs_automatic_logout_enforce
*** sysprefs_bluetooth_prefpane_disable
*** sysprefs_bluetooth_prefpane_hide
*** sysprefs_bluetooth_disable
*** sysprefs_time_server_configure
** Bug fixes

Expand Down
2 changes: 1 addition & 1 deletion VERSION.yaml
Original file line number Diff line number Diff line change
@@ -1,4 +1,4 @@
os: "11.0"
version: "Big Sur Guidance, Revision 6.1"
cpe: o:apple:macos:11.0
date: "2022-12-06"
date: "2022-12-07"
2 changes: 1 addition & 1 deletion baselines/DISA-STIG.yaml
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
title: "macOS 11.0: Security Configuration - DISA STIG"
description: |
This guide describes the actions to take when securing a macOS system against the Apple macOS 11 (Big Sur) STIG - Ver 1, Rel 5.
This guide describes the actions to take when securing a macOS system against the Apple macOS 11 (Big Sur) STIG - Ver 1, Rel 6.
authors: |
|===
|Dan Brodjieski|National Aeronautics and Space Administration
Expand Down
2 changes: 1 addition & 1 deletion baselines/cis_lvl1.yaml
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
title: "macOS 11.0: Security Configuration - CIS Benchmarks"
description: |
This guide describes the actions to take when securing a macOS system against the CIS Apple macOS 11.0 Big Sur v2.1.0 Benchmark (Level 1)
This guide describes the actions to take when securing a macOS system against the CIS Apple macOS 11.0 Big Sur v3.0.0 Benchmark (Level 1)
authors: |
The CIS Benchmarks are referenced with the permission and support of the Center for Internet Security® (CIS®)
|===
Expand Down
2 changes: 1 addition & 1 deletion baselines/cis_lvl2.yaml
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
title: "macOS 11.0: Security Configuration - CIS Benchmarks"
description: |
This guide describes the actions to take when securing a macOS system against the CIS Apple macOS 11.0 Big Sur v2.1.0 Benchmark (Level 1 and 2)
This guide describes the actions to take when securing a macOS system against the CIS Apple macOS 11.0 Big Sur v3.0.0 Benchmark (Level 1 and 2)
authors: |
The CIS Benchmarks are referenced with the permission and support of the Center for Internet Security® (CIS®)
|===
Expand Down
4 changes: 2 additions & 2 deletions includes/mscp-data.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -60,8 +60,8 @@ titles:
800-53r5_moderate: NIST SP 800-53 Rev 5 Moderate Impact
800-53r5_low: NIST SP 800-53 Rev 5 Low Impact
800-171: NIST 800-171 Rev 2
cis_lvl1: CIS Apple macOS 11.0 Big Sur v2.1.0 Benchmark (Level 1)
cis_lvl2: CIS Apple macOS 11.0 Big Sur v2.1.0 Benchmark (Level 2)
cis_lvl1: CIS Apple macOS 11.0 Big Sur v3.0.0 Benchmark (Level 1)
cis_lvl2: CIS Apple macOS 11.0 Big Sur v3.0.0 Benchmark (Level 2)
cisv8: CIS Controls Version 8
stig: Apple macOS 11 (Big Sur) STIG - Ver 1, Rel 6
cnssi-1253: Committee on National Security Systems Instruction No. 1253
2 changes: 1 addition & 1 deletion rules/sysprefs/sysprefs_bluetooth_disable.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -29,7 +29,7 @@ references:
- AC-18(3)
- SC-8
srg:
- SRG-OS-000481-GPOS-000481
- SRG-OS-000481-GPOS-00481
disa_stig:
- APPL-11-002062
800-171r2:
Expand Down
2 changes: 1 addition & 1 deletion rules/sysprefs/sysprefs_bluetooth_prefpane_disable.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -18,7 +18,7 @@ references:
800-53r4:
- SC-8
srg:
- SRG-OS-000481-GPOS-000481
- SRG-OS-000481-GPOS-00481
disa_stig:
- APPL-11-002062
800-171r2:
Expand Down
2 changes: 1 addition & 1 deletion rules/sysprefs/sysprefs_bluetooth_prefpane_hide.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -18,7 +18,7 @@ references:
800-53r4:
- SC-8
srg:
- SRG-OS-000481-GPOS-000481
- SRG-OS-000481-GPOS-00481
disa_stig:
- APPL-11-002062
800-171r2:
Expand Down
2 changes: 1 addition & 1 deletion templates/adoc_acronyms.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -43,6 +43,6 @@
.Definitions
[width="100%",cols="1,3"]
|====
|Baseline|Baselines are a catalog of settings that can be used to create security benchmarks.
|Baseline|A baseline is a predefined set of controls (also referred to as "a catalog" of settings) that address the protection needs of an organization's information systems. A baseline serves as a starting point for the creation of security benchmarks.
|Benchmark|Benchmarks are a defined list of settings with values that an organization has defined.
|====

0 comments on commit 9a16f74

Please sign in to comment.