mirror of
https://github.com/optim-enterprises-bv/secureblue.git
synced 2025-11-05 21:07:45 +00:00
feat: add check for container policy (#471)
Co-authored-by: qoijjj <129108030+qoijjj@users.noreply.github.com>
This commit is contained in:
@@ -444,6 +444,12 @@ audit-secureblue:
|
|||||||
print_status "$AUTHSELECT_TEST_STRING" "$STATUS_FAILURE"
|
print_status "$AUTHSELECT_TEST_STRING" "$STATUS_FAILURE"
|
||||||
fi
|
fi
|
||||||
|
|
||||||
|
CONTAINER_POLICY_TEST_STRING="Ensuring no container policy overrides"
|
||||||
|
if diff /usr/etc/containers/policy.json /etc/containers/policy.json > /dev/null && [ ! -f $HOME/.config/containers/policy.json ]; then
|
||||||
|
print_status "$CONTAINER_POLICY_TEST_STRING" "$STATUS_SUCCESS"
|
||||||
|
else
|
||||||
|
print_status "$CONTAINER_POLICY_TEST_STRING" "$STATUS_FAILURE"
|
||||||
|
fi
|
||||||
|
|
||||||
USBGUARD_TEST_STRING="Ensuring usbguard is active"
|
USBGUARD_TEST_STRING="Ensuring usbguard is active"
|
||||||
if systemctl is-active --quiet usbguard; then
|
if systemctl is-active --quiet usbguard; then
|
||||||
|
|||||||
Reference in New Issue
Block a user