File: rule.yml

package info (click to toggle)
scap-security-guide 0.1.65-1
  • links: PTS, VCS
  • area: main
  • in suites: bookworm
  • size: 71,936 kB
  • sloc: xml: 179,374; sh: 69,771; python: 23,819; makefile: 23
file content (31 lines) | stat: -rw-r--r-- 899 bytes parent folder | download
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
documentation_complete: true

prodtype: alinux2,alinux3,ol7,ol8,ol9,rhel7,rhel8,rhel9,sle12,sle15

title: 'Enable Postfix Service'

description: |-
    The Postfix mail transfer agent is used for local mail delivery
    within the system. The default configuration only listens for connections to
    the default SMTP port (port 25) on the loopback interface (127.0.0.1).  It is
    recommended to leave this service enabled for local mail delivery.
    {{{ describe_service_enable(service="postfix") }}}

rationale: |-
    Local mail delivery is essential to some system maintenance and
    notification tasks.

severity: unknown

identifiers:
    cce@rhel7: CCE-80287-6

ocil_clause: 'the system is not a cross domain solution and the service is not enabled'

ocil: |-
    {{{ ocil_service_enabled(service="postfix") }}}

template:
    name: service_enabled
    vars:
        servicename: postfix