On 4/5/19 7:37 AM, Watson Sato wrote:
Hello,
On Thu, Mar 28, 2019 at 4:50 PM Mike Johnston <mijohnst(a)gmail.com
<mailto:mijohnst@gmail.com>> wrote:
I'm a new to this project and have always done my SCAP lock downs
with kickstart scripts up until now. This looks to be something I
switched to a long time ago.
In the environment I work in, I need to make custom ISO
installation disks to send out to the field. I've been testing out
the 'addon xccdf_org.ssgproject.content_profile_stig-rhel7-disa'
security profile and then made a custom tailored XML following the
guidelines keep a few things on that were being removed. My
problem is that now that I have my 'ssg-rhel7-ds-tailoring.xml'
file, where do I put it in my kickstart image?
I've tried copying it in the post -nochroot section of my
kickstart to /tmp/openscap_data and /root/openscap_data and
neither of those worked.
From what I see in the source code, the tailoring file needs to be in
"/tmp/openscap_data".
During the post install phase, the addon copies the file to
"/root/openscap_data" and uses the tailoring from there.
Where should that be documented?