LinuxQuestions.org
Visit Jeremy's Blog.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Software
User Name
Password
Linux - Software This forum is for Software issues.
Having a problem installing a new program? Want to know which application is best for the job? Post your question in this forum.

Notices


Reply
  Search this Thread
Old 10-17-2012, 06:38 PM   #1
jnojr
Member
 
Registered: Sep 2007
Location: Chandler, AZ
Posts: 227

Rep: Reputation: 20
Disa unix srr?


Does anyone have a copy of a recent SRR? They pulled this item off of their site, and I'd like a copy to mine for ideas.
 
Old 10-18-2012, 10:53 AM   #2
TB0ne
LQ Guru
 
Registered: Jul 2003
Location: Birmingham, Alabama
Distribution: SuSE, RedHat, Slack,CentOS
Posts: 26,634

Rep: Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965
Quote:
Originally Posted by jnojr View Post
Does anyone have a copy of a recent SRR? They pulled this item off of their site, and I'd like a copy to mine for ideas.
Who's "they", and what site are you talking about? Google pulls up lots of results, several of which have scripts and documentation.
 
Old 10-18-2012, 12:21 PM   #3
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Security Readiness Review Scripts are owned and distributed by DISA FSO. Access to SRRs now requires CAC auth so I would conclude LQ unfortunately is not the right place to ask for them.
 
Old 10-18-2012, 01:35 PM   #4
TB0ne
LQ Guru
 
Registered: Jul 2003
Location: Birmingham, Alabama
Distribution: SuSE, RedHat, Slack,CentOS
Posts: 26,634

Rep: Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965
Quote:
Originally Posted by unSpawn View Post
Security Readiness Review Scripts are owned and distributed by DISA FSO. Access to SRRs now requires CAC auth so I would conclude LQ unfortunately is not the right place to ask for them.
Ahh...but a Google search brings up other such scripts, and based on what the OP posted, they may be looking for just samples to craft one of their own.
 
Old 10-18-2012, 01:43 PM   #5
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Quote:
Originally Posted by TB0ne View Post
Ahh...but a Google search brings up other such scripts
Hmm. Then my Google-fu may be severely lacking. CYP point me to one SRR?
 
Old 10-18-2012, 01:49 PM   #6
jnojr
Member
 
Registered: Sep 2007
Location: Chandler, AZ
Posts: 227

Original Poster
Rep: Reputation: 20
Quote:
Originally Posted by unSpawn View Post
Security Readiness Review Scripts are owned and distributed by DISA FSO. Access to SRRs now requires CAC auth so I would conclude LQ unfortunately is not the right place to ask for them.
DISA has removed the SRRs from their site. They no longer support them at all.
 
Old 10-18-2012, 02:17 PM   #7
TB0ne
LQ Guru
 
Registered: Jul 2003
Location: Birmingham, Alabama
Distribution: SuSE, RedHat, Slack,CentOS
Posts: 26,634

Rep: Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965Reputation: 7965
Quote:
Originally Posted by unSpawn View Post
Hmm. Then my Google-fu may be severely lacking. CYP point me to one SRR?
http://webjob.sourceforge.net/Files/...a-srr-unix.txt
http://www.intrasection.com/pjmorr/2...diness-review/

Just two samples, which may be all the OP is looking for, since the original question was just a copy to 'mine for ideas' (which is a good thing). Also, the STIG's have layouts and descriptions, which may allow the OP to build something useable as well:
http://iase.disa.mil/stigs/os/unix/red_hat.html
 
Old 10-18-2012, 02:55 PM   #8
jnojr
Member
 
Registered: Sep 2007
Location: Chandler, AZ
Posts: 227

Original Poster
Rep: Reputation: 20
Quote:
Originally Posted by TB0ne View Post
http://webjob.sourceforge.net/Files/...a-srr-unix.txt
http://www.intrasection.com/pjmorr/2...diness-review/

Just two samples, which may be all the OP is looking for, since the original question was just a copy to 'mine for ideas' (which is a good thing). Also, the STIG's have layouts and descriptions, which may allow the OP to build something useable as well:
http://iase.disa.mil/stigs/os/unix/red_hat.html
I really would like to find an entire SRR. It isn't one script... it's a pretty sizable tarball.
 
Old 10-18-2012, 06:19 PM   #9
NyteOwl
Member
 
Registered: Aug 2008
Location: Nova Scotia, Canada
Distribution: Slackware, OpenBSD, others periodically
Posts: 512

Rep: Reputation: 139Reputation: 139
The "Lite" version is available here:

http://iase.disa.mil/stigs/dod_purpose-tool/index.html
 
Old 10-18-2012, 07:45 PM   #10
jnojr
Member
 
Registered: Sep 2007
Location: Chandler, AZ
Posts: 227

Original Poster
Rep: Reputation: 20
Quote:
Originally Posted by NyteOwl View Post
The "Lite" version is available here:

http://iase.disa.mil/stigs/dod_purpose-tool/index.html
Thanks. The unclassified version doesn't seem to have any scripts, just docs. The other one didn't complete downloading... I may need to fiddle around to get it. Hopefully it does, but as I recall, the SRR scripts were a good 20MB+ each, and that FOUO download is about 188, so I'm not hopeful :-(
 
Old 11-05-2012, 03:01 PM   #11
wyamcb
LQ Newbie
 
Registered: Nov 2012
Posts: 1

Rep: Reputation: Disabled
My first 3 tries to download FOUO Stig library also failed, but the 4th time it worked. Not sure if it is related to a CAC timeout, when download speed is too slow, or what. My suggestion is to just start the download and not *touch* anything else until it's done! (Also maybe pray your speed stays above 320KB/sec!)
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
DISA STIG Compliance Scripts/RPM's zcrxsir88 Linux - Security 21 03-17-2017 12:32 PM
How long does a DISA UNIX SRR script take to run? e.g. "nohup ./Start-SRR &" MythicDark Linux - Security 8 07-25-2011 01:58 PM
[SOLVED] Asterisk DISA IVR PelliX Linux - Server 1 11-30-2010 07:32 AM
SUSE 10 and DISA STIGS question CDAWG Linux - Security 1 09-24-2010 05:10 PM
DISA STIG (Gold Disk can not find %systemroot%domainfwname.log on mcrsft wndws xp) Reeder General 3 05-12-2010 07:54 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Software

All times are GMT -5. The time now is 08:48 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration