posit-dev / posit-dev/images-shared
Create a hardened Workbench image using OpenSCAP
Nobody has claimed this yet.
- Dominant language
- Python
- Stars
- 2
- Forks
- 0
- Avg merge
- 4d 13h
- Merged PRs (30d)
- 22
Description
Related to https://github.com/posit-dev/images-shared/issues/88
To fulfill customer requests for a hardened Workbench image, we will need to scan and remediate any issues identified by OpenSCAP against our security policies and CIS benchmarks. Any steps for remediation should be included and documented in the image definition for repeatability by other end users.
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Start by reviewing the related issue and locating the Workbench image definition and its existing build or validation steps. Run OpenSCAP against the image using the stated security policies and CIS benchmarks, then document each required remediation in the image definition so the hardened image can be reproduced by end users.
Written by the indexing model from the issue text.
Assessment
- Domain
- infrastructure, security
- Issue type
- Feature
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 35/100