CIS benchmark 1.6.1.2 failed in Jammy stemcell
search cancel

CIS benchmark 1.6.1.2 failed in Jammy stemcell

book

Article ID: 380583

calendar_today

Updated On:

Products

VMware Tanzu Application Service VMware Tanzu Application Service VMware Tanzu Application Service for VMs

Issue/Introduction

Customer noticed below rules failing for CIS Level Benchmarks. 

Title

Ident

Result

Exception

       

Ensure AppArmor is enabled in the bootloader configuration(apparmor)

1.6.1.2

fail

Exception:
Will be fixed in later versions of Jammy  stemcell

Ensure AppArmor is enabled in the bootloader configuration(security)

1.6.1.2

fail

Exception:
Will be fixed in later versions of Jammy  

Cause

CIS needs to configure AppArmor to be enabled at boot time and verify that it has not been overwritten by the bootloader boot parameters. 

Resolution

 Stemcell 1.613 fixes rule 1.6.1.2. Please upgrade stemcell to this version for the fix.