UPDATE: Lynis 1.2.9!

by Black on December 17, 2009 · 0 comments

in Open Source, Security tools, Tool Updates

b729b0b7d3d7b17921aa5a93aef0285a UPDATE: Lynis 1.2.9!We wrote about Lynis here. The latest version – 1.2.9 is now out for all of you! Mr. Michael Boelen sure seems keen to develop this into an awesome platform!

Lynis is an auditing tool for Unix (specialists). It scans the system and available software, to detect security issues. Beside security related information it will also scan for general system information, installed packages and configuration mistakes.

This software aims in assisting automated auditing, software patch management, vulnerability and malware scanning of Unix based systems. It can be run without prior installation, so inclusion on read only storage is no problem (USB stick, cd/dvd).

Lynis assists auditors in performing Basel II, GLBA, HIPAA, PCI DSS and SOX (Sarbanes-Oxley) compliance audits.

This is the change log for Lynis 1.2.8 (2009-12-08):
New:
- Support for Squid3
- Added Squid unsafe ports check [SQD-3624]
- Added Squid configuration file permission check [SQD-3613]
- Added Squid test: reply_body_max_size option [SQD-3630]
- Added /etc/init.d/rc and /etc/init.d/rcS to umask test [AUTH-9328]
- Check PHP option allow_url_include [PHP-2378]

Changes:
- Extended possible Squid configuration file locations
- Added additional sysctl keys to default profile
- Fixed typo in squid.conf checks
- Improved descriptions, logging and reporting for several tests
- Corrected /etc/security/limits.conf path in test [KRNL-5820]
- Updated man page, limited lines to 80 chars

… and more.

Download lynis-1.2.9.tar.gz here.

Searches leading to this post:
KRNL-5820, update lynis

Related Posts

Previous post:

Next post: