All releases of Linux Security Auditing Tool


Release Notes: This release adds an extra limits check on resource limits, a Redhat/Fedora specific check in checkcfg, and checking for strict mode in SSH config. It fixes a few small output errors.


Release Notes: The dependency on the popt library has been removed. This release adds extra passwd and group checks under Linux, a check for failed logins under Linux/Solaris, a check for kernel modules under Solaris, network interface stats, and routing checks. It fixes a problem in checknetforward giving false positives, and an issue where verbose output was not very consistent. The kernel module check under Linux has been modified.


Release Notes: Headers were missing from a number of modules, and checkrc was not working under Linux kernel 2.6 and gentoo. A possible symlink attack in various modules and notes in modules writing instructions were fixed. The checkinit module returning false positive under gentoo was fixed. checknet was changed to reflect a network promiscuity change under the Linux 2.6 kernel. The behavior of checkopenfiles was changed, as it would not catch some open files. More checking was added to the checkdotfiles module. Various typos and formatting errors were fixed.


Release Notes: Explicit CentOS, CaOS, and Fedora Core checks were added. Changes were made in the umask module. More sys exclusions were added for find in md5. The openfiles module was sped up. Checks for listening applications were added. Small problems in the checkx module were resolved.


Release Notes: An error in checkwww under Slackware and an error in checkhostfiles under Solaris were fixed. Typos in checkinittab.c were fixed. General code cleanup was done.


Release Notes: The checkwww module no longer gives a false positive on Red Hat and Fedora systems. The tool has been confirmed to work on Fedora Core systems.


Release Notes: Changes in the checkx module to check actual processes and close files/filepointers left open in checkfiles and checkhostfiles.


Release Notes: This release should run fine on Slackware. Checkbpass does not print out a password if found. checkx will check for X-fs now. This release has been tested on Fedora Core1 and SuSE for AMD64.


Release Notes: This release adds a checkftp module that checks FTP configurations. There are more repairs to the checkmd5 module, and numerous typo fixes and code cleanups.


Release Notes: This release fixes a typo in checkx which was causing it to not check the gdm.conf file.