DEV Community

Piyapol
Piyapol

Posted on

How to perform a CIS Benchmark scan on Ubuntu 22.04

In this blog, we will focus on the process of performing a security scan on Ubuntu 22.04 following the CIS Benchmark for Ubuntu 22.04 (version 1.0.0).

First, install OpenSCAP.

apt install libopenscap8
Enter fullscreen mode Exit fullscreen mode

Next, download OpenSCAP's content.

wget https://github.com/ComplianceAsCode/content/releases/download/v0.1.67/scap-security-guide-0.1.67.zip

unzip scap-security-guide-0.1.67.zip
Enter fullscreen mode Exit fullscreen mode

After that, perform the scanning process.

oscap xccdf eval --profile xccdf_org.ssgproject.content_profile_cis_level1_server --report report.html scap-security-guide-0.1.67/ssg-ubuntu2204-ds.xml
Enter fullscreen mode Exit fullscreen mode

Finally, evaluate the results.

open report.html
Enter fullscreen mode Exit fullscreen mode

That's all. Thank you for reading. Having a nice day.

Oldest comments (0)