"Fossies" - the Fresh Open Source Software Archive  

Source code changes of the file "include/tests_dns" between
lynis-3.0.1.tar.gz and lynis-3.0.2.tar.gz

About: Lynis is a security and system auditing tool.

tests_dns  (lynis-3.0.1):tests_dns  (lynis-3.0.2)
skipping to change at line 48 skipping to change at line 48
# # Description : Validate DNSSEC signature is checked # # Description : Validate DNSSEC signature is checked
# Register --test-no DNS-1600 --weight L --network YES --category security -- description "Validate DNSSEC igniture is checked" # Register --test-no DNS-1600 --weight L --network YES --category security -- description "Validate DNSSEC igniture is checked"
# if [ "${SKIPTEST}" -eq 0 ]; then # if [ "${SKIPTEST}" -eq 0 ]; then
# if [ -n "${DIGBINARY}" ]; then # if [ -n "${DIGBINARY}" ]; then
# #
# GOOD=$("${DIGBINARY}" +short +time=1 $SIGOKDNS) # GOOD=$("${DIGBINARY}" +short +time=1 $SIGOKDNS)
# BAD=$("${DIGBINARY}" +short +time=1 $SIGFAILDNS) # BAD=$("${DIGBINARY}" +short +time=1 $SIGFAILDNS)
# #
# if [ "${GOOD}" = "${TIMEOUT}" -a "${BAD}" = "${TIMEOUT}" ]; then # if [ "${GOOD}" = "${TIMEOUT}" -a "${BAD}" = "${TIMEOUT}" ]; then
# LogText "Result: received timeout, can't determine DNSSEC valid ation" # LogText "Result: received timeout, can't determine DNSSEC valid ation"
# Display --indent 4 --text "- Checking DNSSEC validation" --resu lt "${STATUS_UNKOWN}" --color YELLOW # Display --indent 4 --text "- Checking DNSSEC validation" --resu lt "${STATUS_UNKNOWN}" --color YELLOW
# #ReportException "${TEST_NO}" "Exception found, both query fail ed, due to connection timeout" # #ReportException "${TEST_NO}" "Exception found, both query fail ed, due to connection timeout"
# elif [ -z "${GOOD}" -a -n "${BAD}" ]; then # elif [ -z "${GOOD}" -a -n "${BAD}" ]; then
# LogText "Result: good signature failed, yet bad signature was a ccepted" # LogText "Result: good signature failed, yet bad signature was a ccepted"
# Display --indent 4 --text "- Checking DNSSEC validation" --resu lt "${STATUS_UNKOWN}" --color YELLOW # Display --indent 4 --text "- Checking DNSSEC validation" --resu lt "${STATUS_UNKNOWN}" --color YELLOW
# #ReportException "${TEST_NO}" "Exception found, OK failed, bad signature was accepted" # #ReportException "${TEST_NO}" "Exception found, OK failed, bad signature was accepted"
# elif [ -n "${GOOD}" -a -n "${BAD}" ]; then # elif [ -n "${GOOD}" -a -n "${BAD}" ]; then
# Display --indent 4 --text "- Checking DNSSEC validation" --resu lt "${STATUS_SUGGESTION}" --color YELLOW # Display --indent 4 --text "- Checking DNSSEC validation" --resu lt "${STATUS_SUGGESTION}" --color YELLOW
# LogText "Note: Using DNSSEC validation can protect from DNS hij acking" # LogText "Note: Using DNSSEC validation can protect from DNS hij acking"
# #ReportSuggestion "${TEST_NO}" "Altered DNS queries are accepte d, configure DNSSEC validating name servers" # #ReportSuggestion "${TEST_NO}" "Altered DNS queries are accepte d, configure DNSSEC validating name servers"
# AddHP 2 2 # AddHP 2 2
# elif [ -n "${GOOD}" -a -z "${BAD}" ]; then # elif [ -n "${GOOD}" -a -z "${BAD}" ]; then
# Display --indent 4 --text "- Checking DNSSEC validation" --resu lt "${STATUS_OK}" --color GREEN # Display --indent 4 --text "- Checking DNSSEC validation" --resu lt "${STATUS_OK}" --color GREEN
# LogText "Result: altered DNS responses were ignored" # LogText "Result: altered DNS responses were ignored"
# AddHP 0 2 # AddHP 0 2
 End of changes. 2 change blocks. 
2 lines changed or deleted 2 lines changed or added

Home  |  About  |  Features  |  All  |  Newest  |  Dox  |  Diffs  |  RSS Feeds  |  Screenshots  |  Comments  |  Imprint  |  Privacy  |  HTTP(S)