Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Benchmark and STIG support #386

Open
brandtkeller opened this issue Apr 24, 2024 · 2 comments
Open

Benchmark and STIG support #386

brandtkeller opened this issue Apr 24, 2024 · 2 comments
Labels
enhancement New feature or request

Comments

@brandtkeller
Copy link
Member

Is your feature request related to a problem? Please describe.

Ability for Lula to support the validation of STIG or other benchmarks as parallel efforts to authorization or accreditation processes.

Describe the solution you'd like

  • Given a benchmark artifact is supplied to Lula
  • When performing a validation
  • Then Lula will perform analysis and provide a result of that benchmark in an OSCAL format

Describe alternatives you've considered

  • Integration with KubeBench

Additional context

May require direct shell access (Not uncommon for various STIG tooling)

@brandtkeller brandtkeller added the enhancement New feature or request label Apr 24, 2024
@github-actions github-actions bot added the triage Awaiting triage from the team label Apr 24, 2024
@brandtkeller
Copy link
Member Author

This issue is intended to be an investigation with docs/ADR as the output.

@brandtkeller brandtkeller removed the triage Awaiting triage from the team label Apr 29, 2024
@brandtkeller
Copy link
Member Author

In consideration of a shell domain - review the capability for Lula offer the generic shell domain with an optional allow list or configuration for commands that are permitted without execute escalation. Shifting initial responsibility for managing what is permitted and permissions to the end-user.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
Status: 📋 Backlog
Development

No branches or pull requests

1 participant