· 8 years ago · Aug 02, 2018, 06:08 PM
1<?xml version="1.0" encoding="UTF-8"?>
2<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
3<html xmlns="http://www.w3.org/1999/xhtml" xmlns:xlink="http://www.w3.org/1999/xlink" xmlns:svg="http://www.w3.org/2000/svg">
4 <head>
5 <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" />
6 <title>XCCDF Test Result</title>
7 <meta name="generator" content="" />
8 <meta name="Content-Type" content="text/html;charset=utf-8" />
9 <style type="text/css" media="all">
10 html, body { background-color: black; font-family:sans-serif; margin:0; padding:0; }
11 abbr { text-transform:none; border:none; font-variant:normal; }
12 div.score-outer { height: .8em; width:100%; min-width:100px; background-color: red; }
13 div.score-inner { height: 100%; background-color: green; }
14 .score-max, .score-val, .score-percent { text-align:right; }
15 .score-percent { font-weight: bold; }
16 th, td { padding-left:.5em; padding-right:.5em; }
17 .rule-selected, .result-pass strong, .result-fixed strong { color:green; }
18 .rule-inactive, .unknown, .result-notselected strong, .result-notchecked strong, .result-notapplicable strong, .result-informational strong, .result-unknown strong { color:#555; }
19 .rule-notselected, .result-error strong, .result-fail strong { color:red; }
20 table { border-collapse: collapse; border: 1px black solid; width:100%; }
21 table th, thead tr { background-color:black; color:white; }
22 table td { border-right: 1px black solid; }
23 table td.result, table td.link { text-align:center; }
24 table td.num { text-align:right; }
25 div#rule-results-summary { margin-bottom: 1em; }
26 table tr.result-legend td { width: 10%; }
27 div#content p { text-align:justify; }
28 div.result-detail { border: 1px solid black; margin: 2em 0; padding: 0 1em; }
29 div#content h2 { border-bottom:2px dashed; margin-top:1em; margin-bottom:0.5em; text-align:center; }
30 div#content h2#summary { margin-top:0; }
31 h1 { margin:1em 0; }
32 div.raw table, div.raw table td { border:none; width:auto; padding:0; }
33 div.raw table { margin-left: 2em; }
34 div.raw table td { padding: .1em .7em; }
35 table tr { border-bottom: 1px dotted #000; }
36 dir.raw table tr { border-bottom: 0 !important; }
37 pre.code { background: #ccc; padding:.2em; }
38 ul.toc-struct li { list-style-type: none; }
39 div.xccdf-rule { margin-left: 10%; }
40 div#footer, p.remark, .link { font-size:.8em; }
41 thead tr td { font-weight:bold; text-align:center; }
42 .hidden { display:none; }
43 td.score-bar { text-align:center; }
44 td.score-bar span.media { width:100%; min-width:7em; height:.8em; display:block; margin:0; padding:0; }
45 .oval-results { font-size:.8em; overflow:auto; }
46 div#guide-top-table table { width: 100%; }
47 td#common-info { min-width: 25.0em; border-right: 1px solid #000; }
48 td#versions-revisions { width: 25.0em; }
49 </style>
50 <style type="text/css" media="screen">
51 div#content, div#header, div#footer { margin-left:1em; margin-right:1em; }
52 div#content { background-color: white; padding:2em; }
53 div#footer, div#header { color:white; text-align:center; }
54 a, a:visited { color:blue; text-decoration:underline; }
55 div#content p.link { text-align:right; font-size:.8em; }
56 div#footer a { color:white; }
57 div.xccdf-group, div.xccdf-rule { border-left: 3px solid white; padding-left:.3em; }
58 div.xccdf-group:target, div.xccdf-rule:target { border-left-color:#ccc; }
59 .toc-struct li:target { background:#ddd; }
60 abbr { border-bottom: 1px black dotted; }
61 abbr.date { border-bottom:none; }
62 pre.code { overflow:auto; }
63 table tbody tr:hover { background: #ccc; }
64 div.raw table tbody tr:hover { background: transparent !important; }
65 </style>
66 <style type="text/css" media="print">
67 @page { margin:3cm; }
68 html, body { background-color:white; font-family:serif; }
69 .link { display:none; }
70 a, a:visited { color:black; text-decoration:none; }
71 div#header, div#footer { text-align:center; }
72 div#header { padding-top:36%; }
73 h1 { vertical-align:center; }
74 h2 { page-break-before:always; }
75 h3, h4, h5 { page-break-after:avoid; }
76 pre.code { background: #ccc; }
77 div#footer { margin-top:auto; }
78 .toc-struct { page-break-after:always; }
79 </style>
80 </head>
81 <body>
82 <div id="xccdf_org.open-scap_testresult_xccdf_preupg_profile_default">
83 <div id="header">
84 <h1>XCCDF Test Result</h1>
85 </div>
86 <div id="content">
87 <div id="intro">
88 <h2>Introduction</h2>
89 <div>
90 <h3>Test Result</h3>
91 <div id="test-result-summary">
92 <table>
93 <thead>
94 <tr>
95 <td>Result ID</td>
96 <td>Profile</td>
97 <td>Start time</td>
98 <td>End time</td>
99 <td>Benchmark</td>
100 <td>Benchmark version</td>
101 </tr>
102 </thead>
103 <tbody>
104 <tr>
105 <td align="center">xccdf_org.open-scap_testresult_xccdf_preupg_profile_default</td>
106 <td align="center">xccdf_preupg_profile_default</td>
107 <td align="center">
108 <abbr title="2018-08-02T11:59:31" class="date">2018-08-02 11:59</abbr>
109 </td>
110 <td align="center">
111 <abbr title="2018-08-02T12:00:55" class="date">2018-08-02 12:00</abbr>
112 </td>
113 <td align="center">
114 <span>embedded</span>
115 </td>
116 <td align="center">1.0</td>
117 </tr>
118 </tbody>
119 </table>
120 </div>
121 </div>
122 <div>
123 <h3>Target info</h3>
124 <div class="raw">
125 <table>
126 <tbody>
127 <tr>
128 <td valign="top">
129 <h4>Targets</h4>
130 <ul class="itemizedlist">
131 <li>pbx-test.fmorales.vfmsa</li>
132 </ul>
133 </td>
134 <td valign="top">
135 <h4>Addresses</h4>
136 <ul class="itemizedlist">
137 <li>127.0.0.1</li>
138 <li>192.168.1.49</li>
139 </ul>
140 </td>
141 <td></td>
142 <td valign="top"></td>
143 </tr>
144 </tbody>
145 </table>
146 </div>
147 </div>
148 </div>
149 <div id="results-overview">
150 <h2>Results overview</h2>
151 <div id="rule-results-summary">
152 <h4>Rule Results Summary</h4>
153 <table>
154 <thead>
155 <tr>
156 <td>pass</td>
157 <td>fixed</td>
158 <td>fail</td>
159 <td>needs inspection</td>
160 <td>needs action</td>
161 <td>error</td>
162 <td>not selected</td>
163 <td>not checked</td>
164 <td>not applicable</td>
165 <td>informational</td>
166 <td>unknown</td>
167 <td>total</td>
168 </tr>
169 </thead>
170 <tbody>
171 <tr class="result-legend">
172 <td align="center" class="result-pass">
173 <strong class="strong">22</strong>
174 </td>
175 <td align="center" class="result-fixed">
176 <strong class="strong">2</strong>
177 </td>
178 <td align="center" class="result-fail">
179 <strong class="strong">0</strong>
180 </td>
181 <td align="center" class="result-needsinspection">
182 <strong class="strong">5</strong>
183 </td>
184 <td align="center" class="result-needsaction">
185 <strong class="strong">0</strong>
186 </td>
187 <td align="center" class="result-error">
188 <strong class="strong">0</strong>
189 </td>
190 <td align="center" class="result-notselected">
191 <strong class="strong">0</strong>
192 </td>
193 <td align="center" class="result-notchecked">
194 <strong class="strong">0</strong>
195 </td>
196 <td align="center" class="result-notapplicable">
197 <strong class="strong">101</strong>
198 </td>
199 <td align="center" class="result-informational">
200 <strong class="strong">8</strong>
201 </td>
202 <td align="center" class="result-unknown">
203 <strong class="strong">0</strong>
204 </td>
205 <td align="center">
206 <strong class="strong">138</strong>
207 </td>
208 </tr>
209 </tbody>
210 </table>
211 </div>
212 <div>
213 <h4 class="hidden">Rule results summary</h4>
214 <table>
215 <thead>
216 <tr>
217 <td>Title</td>
218 <td>Result</td>
219 </tr>
220 </thead>
221 <tbody>
222 <tr class="result-fixed">
223 <td class="id">
224 <a href="#ruleresult-idp11866048">Custom SELinux policy</a>
225 </td>
226 <td class="result">
227 <strong class="strong">fixed</strong>
228 </td>
229 </tr>
230 <tr class="result-fixed">
231 <td class="id">
232 <a href="#ruleresult-idp12373536">Grubby</a>
233 </td>
234 <td class="result">
235 <strong class="strong">fixed</strong>
236 </td>
237 </tr>
238 <tr class="result-informational">
239 <td class="id">
240 <a href="#ruleresult-idp11506784">NFSv2</a>
241 </td>
242 <td class="result">
243 <strong class="strong">informational</strong>
244 </td>
245 </tr>
246 <tr class="result-informational">
247 <td class="id">
248 <a href="#ruleresult-idp11752144">The gawk package</a>
249 </td>
250 <td class="result">
251 <strong class="strong">informational</strong>
252 </td>
253 </tr>
254 <tr class="result-informational">
255 <td class="id">
256 <a href="#ruleresult-idp11762048">Removed command line options</a>
257 </td>
258 <td class="result">
259 <strong class="strong">informational</strong>
260 </td>
261 </tr>
262 <tr class="result-informational">
263 <td class="id">
264 <a href="#ruleresult-idp11793472">The util-linux (util-linux-ng) binaries</a>
265 </td>
266 <td class="result">
267 <strong class="strong">informational</strong>
268 </td>
269 </tr>
270 <tr class="result-informational">
271 <td class="id">
272 <a href="#ruleresult-idp12258928">File systems, partitions, and the mounts configuration</a>
273 </td>
274 <td class="result">
275 <strong class="strong">informational</strong>
276 </td>
277 </tr>
278 <tr class="result-informational">
279 <td class="id">
280 <a href="#ruleresult-idp12290176">Libraries with their soname kept</a>
281 </td>
282 <td class="result">
283 <strong class="strong">informational</strong>
284 </td>
285 </tr>
286 <tr class="result-informational">
287 <td class="id">
288 <a href="#ruleresult-idp12498352">PolicyKit</a>
289 </td>
290 <td class="result">
291 <strong class="strong">informational</strong>
292 </td>
293 </tr>
294 <tr class="result-informational">
295 <td class="id">
296 <a href="#ruleresult-idp12601792">UEFI boot loader</a>
297 </td>
298 <td class="result">
299 <strong class="strong">informational</strong>
300 </td>
301 </tr>
302 <tr class="result-needs_inspection">
303 <td class="id">
304 <a href="#ruleresult-idp11270800">File lists for the manual migration</a>
305 </td>
306 <td class="result">
307 <strong class="strong">needs_inspection</strong>
308 </td>
309 </tr>
310 <tr class="result-needs_inspection">
311 <td class="id">
312 <a href="#ruleresult-idp11612912">Changed configuration files</a>
313 </td>
314 <td class="result">
315 <strong class="strong">needs_inspection</strong>
316 </td>
317 </tr>
318 <tr class="result-needs_inspection">
319 <td class="id">
320 <a href="#ruleresult-idp12174752">Binaries to be rebuilt</a>
321 </td>
322 <td class="result">
323 <strong class="strong">needs_inspection</strong>
324 </td>
325 </tr>
326 <tr class="result-needs_inspection">
327 <td class="id">
328 <a href="#ruleresult-idp12518960">Repositories for Kickstart</a>
329 </td>
330 <td class="result">
331 <strong class="strong">needs_inspection</strong>
332 </td>
333 </tr>
334 <tr class="result-needs_inspection">
335 <td class="id">
336 <a href="#ruleresult-idp12642016">Incorrect usage of reserved UIDs and GIDs</a>
337 </td>
338 <td class="result">
339 <strong class="strong">needs_inspection</strong>
340 </td>
341 </tr>
342 <tr class="result-pass">
343 <td class="id">
344 <a href="#ruleresult-idp11259424">Configuration files to be reviewed</a>
345 </td>
346 <td class="result">
347 <strong class="strong">pass</strong>
348 </td>
349 </tr>
350 <tr class="result-pass">
351 <td class="id">
352 <a href="#ruleresult-idp11603024">Reusable configuration files</a>
353 </td>
354 <td class="result">
355 <strong class="strong">pass</strong>
356 </td>
357 </tr>
358 <tr class="result-pass">
359 <td class="id">
360 <a href="#ruleresult-idp11666512">Changes in utilities</a>
361 </td>
362 <td class="result">
363 <strong class="strong">pass</strong>
364 </td>
365 </tr>
366 <tr class="result-pass">
367 <td class="id">
368 <a href="#ruleresult-idp11677232">Packages from other system variants</a>
369 </td>
370 <td class="result">
371 <strong class="strong">pass</strong>
372 </td>
373 </tr>
374 <tr class="result-pass">
375 <td class="id">
376 <a href="#ruleresult-idp11698064">Packages not signed by Sangoma</a>
377 </td>
378 <td class="result">
379 <strong class="strong">pass</strong>
380 </td>
381 </tr>
382 <tr class="result-pass">
383 <td class="id">
384 <a href="#ruleresult-idp11708960">Obsolete RPM packages</a>
385 </td>
386 <td class="result">
387 <strong class="strong">pass</strong>
388 </td>
389 </tr>
390 <tr class="result-pass">
391 <td class="id">
392 <a href="#ruleresult-idp11803408">Removed RPM packages</a>
393 </td>
394 <td class="result">
395 <strong class="strong">pass</strong>
396 </td>
397 </tr>
398 <tr class="result-pass">
399 <td class="id">
400 <a href="#ruleresult-idp11855328">Package downgrades</a>
401 </td>
402 <td class="result">
403 <strong class="strong">pass</strong>
404 </td>
405 </tr>
406 <tr class="result-pass">
407 <td class="id">
408 <a href="#ruleresult-idp12154192">Add-Ons</a>
409 </td>
410 <td class="result">
411 <strong class="strong">pass</strong>
412 </td>
413 </tr>
414 <tr class="result-pass">
415 <td class="id">
416 <a href="#ruleresult-idp12164864">Unsupported architectures</a>
417 </td>
418 <td class="result">
419 <strong class="strong">pass</strong>
420 </td>
421 </tr>
422 <tr class="result-pass">
423 <td class="id">
424 <a href="#ruleresult-idp12185856">Debuginfo packages</a>
425 </td>
426 <td class="result">
427 <strong class="strong">pass</strong>
428 </td>
429 </tr>
430 <tr class="result-pass">
431 <td class="id">
432 <a href="#ruleresult-idp12217104">Requirements for the /usr/ directory</a>
433 </td>
434 <td class="result">
435 <strong class="strong">pass</strong>
436 </td>
437 </tr>
438 <tr class="result-pass">
439 <td class="id">
440 <a href="#ruleresult-idp12227456">Cluster and High Availability</a>
441 </td>
442 <td class="result">
443 <strong class="strong">pass</strong>
444 </td>
445 </tr>
446 <tr class="result-pass">
447 <td class="id">
448 <a href="#ruleresult-idp12301136">Removed .so libraries</a>
449 </td>
450 <td class="result">
451 <strong class="strong">pass</strong>
452 </td>
453 </tr>
454 <tr class="result-pass">
455 <td class="id">
456 <a href="#ruleresult-idp12311840">CGROUP_DAEMON in sysconfig scripts</a>
457 </td>
458 <td class="result">
459 <strong class="strong">pass</strong>
460 </td>
461 </tr>
462 <tr class="result-pass">
463 <td class="id">
464 <a href="#ruleresult-idp12321744">Checking the system version and variant</a>
465 </td>
466 <td class="result">
467 <strong class="strong">pass</strong>
468 </td>
469 </tr>
470 <tr class="result-pass">
471 <td class="id">
472 <a href="#ruleresult-idp12353040">Sangoma Developer Toolset</a>
473 </td>
474 <td class="result">
475 <strong class="strong">pass</strong>
476 </td>
477 </tr>
478 <tr class="result-pass">
479 <td class="id">
480 <a href="#ruleresult-idp12394048">Hyper-V</a>
481 </td>
482 <td class="result">
483 <strong class="strong">pass</strong>
484 </td>
485 </tr>
486 <tr class="result-pass">
487 <td class="id">
488 <a href="#ruleresult-idp12530128">System requirements</a>
489 </td>
490 <td class="result">
491 <strong class="strong">pass</strong>
492 </td>
493 </tr>
494 <tr class="result-pass">
495 <td class="id">
496 <a href="#ruleresult-idp12582032">Copying Kickstart</a>
497 </td>
498 <td class="result">
499 <strong class="strong">pass</strong>
500 </td>
501 </tr>
502 <tr class="result-pass">
503 <td class="id">
504 <a href="#ruleresult-idp12632048">Dangerous ranges of UIDs and GIDs</a>
505 </td>
506 <td class="result">
507 <strong class="strong">pass</strong>
508 </td>
509 </tr>
510 <tr class="result-pass">
511 <td class="id">
512 <a href="#ruleresult-idp12653824">The libuser.conf file</a>
513 </td>
514 <td class="result">
515 <strong class="strong">pass</strong>
516 </td>
517 </tr>
518 </tbody>
519 </table>
520 </div>
521 </div>
522 <div id="results-details">
523 <h2>Results details</h2>
524 <div class="result-detail" id="ruleresult-idp11259424"><h3>Result for Configuration files to be reviewed</h3><p class="result-pass">Result: <strong class="strong">pass</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_backup_NoverifyConfigs_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:34" class="date">2018-08-02 11:59</abbr></strong></p><p>
525 The module stores the system configuration files that might have been modified by the user when it is not possible to upgrade them automatically.
526
527
528
529
530 </p>
531 Additional output:
532 <pre class="code"><code>preupg.log.INFO: The /etc/crypttab backup file is not tracked by any package but it is a part of the input list.
533preupg.log.INFO: The /etc/selinux/targeted/modules/active/seusers.final backup file is not tracked by any package but it is a part of the input list.
534preupg.log.INFO: The /etc/selinux/targeted/modules/active/users_extra backup file is not tracked by any package but it is a part of the input list.
535preupg.risk.SLIGHT: We detected some files where their modifications are not tracked by the RPM packages. Check the functionality of the files after the successful upgrade.
536preupg.risk.HIGH: The /etc/shadow and /etc/gshadow files must be backed up manually by the administrator.
537</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
538 <div class="result-detail" id="ruleresult-idp11270800"><h3>Result for File lists for the manual migration</h3><p class="result-needs_inspection">Result: <strong class="strong">needs_inspection</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_backup_UntrackedFiles_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:34" class="date">2018-08-02 11:59</abbr></strong></p><p>
539 The module generates lists of files that are not migrated automatically, such as temporary, application, and user data files.
540
541
542
543
544 </p><div class="xccdf-fixtext"><h4 class="short">Remediation instructions</h4><p>Some user data, such as user home directories and temporary files, are not tracked by the RPM database. This data will not be migrated automatically. To assist you with migrating it, this module generates the following files:<br/>
545<br/>
546* The <a href="././kickstart/untrackedsystem">./kickstart/untrackedsystem</a> file lists the regular files on the system that will not be migrated. The list does not contain the files mounted over the network, files created by runtime system operations, files in temporary locations, or the users' files in the /home/ or /root/ directory.<br/>
547<br/>
548* The <a href="././kickstart/untrackeduser">./kickstart/untrackeduser</a> file lists the regular local files in the /home/ and /root/ directories that will not be migrated. If the /home/ and /root/ directories are on a file system mounted over the network, this file might be empty.<br/>
549<br/>
550* The <a href="././kickstart/untrackedexpected">./kickstart/untrackedexpected</a> file lists the regular files and symlinks created by runtime system operations (for example, handling runlevels, alternatives, and active SELinux modules). Most likely you do not need to care about them, the list is available just for the sake of completeness.<br/>
551<br/>
552* The <a href="././kickstart/untrackedtemporary">./kickstart/untrackedtemporary</a> file lists all temporary local files on the system that will not be migrated. This is everything in the /cgroup/, /tmp/, and /var/ directories. Most likely you do not need to care about them, the list is available just for the sake of completeness.<br/>
553<br/>
554It is recommended that you back up all the data before proceeding with the upgrade to Sangoma Linux 7. This data might be quite large.<br/>
555<br/>
556If you are performing an in-place upgrade, this data should remain in their current location after the upgrade. Review the configuration files and other data to determine if any modifications are needed for the use with Sangoma Linux 7. Verify that all the data was maintained successfully.<br/>
557<br/>
558If you are performing a migration, this data must be backed up to another storage medium. Copy the data that you want to have on the new installation back into place after the upgrade is complete. Review the configuration files and other data to determine if any modifications are needed for the use with Sangoma Linux 7.<br/>
559</p></div>
560 Additional output:
561 <pre class="code"><code>preupg.risk.SLIGHT: Some files untracked by RPM packages were detected. Some of these files might need a manual check or migration after redhat-upgrade-tool and/or might cause conflicts during the installation. Try to reduce the number of the unnecessary untracked files before running redhat-upgrade-tool.
562</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
563 <div class="result-detail" id="ruleresult-idp11506784"><h3>Result for NFSv2</h3><p class="result-informational">Result: <strong class="strong">informational</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_networking_nfsv2_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:35" class="date">2018-08-02 11:59</abbr></strong></p><p>
564 NFSv2 is not supported in Sangoma Linux 7. The module checks if a configuration requiring NFSv2 exists, and it tries to use a default version of NFS if possible.
565
566
567
568
569 </p><div class="xccdf-fixtext"><h4 class="short">Remediation instructions</h4><p>NFS protocol version 2 is not supported in Sangoma Linux 7.<br/>
570-----------------------------------------------------<br/>
571</p></div>
572 Additional output:
573 <pre class="code"><code>cat: /etc/sysconfig/nfs: No such file or directory
574cat: /etc/nfsmount.conf: No such file or directory
575</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
576 <div class="result-detail" id="ruleresult-idp11603024">
577 <h3>Result for Reusable configuration files</h3>
578 <p class="result-pass">Result: <strong class="strong">pass</strong></p>
579 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_others_NoVersionChangeEtc_check</strong></p>
580 <p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:35" class="date">2018-08-02 11:59</abbr></strong></p>
581 <p>
582 The module provides a list of the configuration files that can be reused in Sangoma Linux 7, and it stores them in the /root/preupgrade/cleanconf/etc/ directory.
583
584
585
586
587 </p>
588 <p class="link">
589 <a href="#results-overview">results overview</a>
590 </p>
591 </div>
592 <div class="result-detail" id="ruleresult-idp11612912"><h3>Result for Changed configuration files</h3><p class="result-needs_inspection">Result: <strong class="strong">needs_inspection</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_others_configchanges_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:38" class="date">2018-08-02 11:59</abbr></strong></p><p>
593 The module prints modified configuration files with a noreplace flag, which might generate .rpmnew or .rpmsave files.
594
595
596
597
598 </p><div class="xccdf-fixtext"><h4 class="short">Remediation instructions</h4><p>Check these configuration files after the upgrade to Sangoma Linux 7:<br/>
599<br/>
600/root/.bashrc<br/>
601/etc/odbc.ini<br/>
602/etc/httpd/conf.d/ssl.conf<br/>
603/etc/xinetd.d/tftp<br/>
604/etc/my.cnf<br/>
605/etc/openldap/ldap.conf<br/>
606/etc/inittab<br/>
607/etc/rc.d/rc.local<br/>
608/etc/sysctl.conf<br/>
609/etc/rsyslog.conf<br/>
610/etc/pam.d/fingerprint-auth<br/>
611/etc/pam.d/password-auth<br/>
612/etc/pam.d/smartcard-auth<br/>
613/etc/pam.d/system-auth<br/>
614/etc/libuser.conf<br/>
615/etc/dahdi/assigned-spans.conf.sample<br/>
616/etc/dahdi/genconf_parameters<br/>
617/etc/dahdi/init.conf<br/>
618/etc/dahdi/modules<br/>
619/etc/dahdi/modules.sample<br/>
620/etc/dahdi/span-types.conf.sample<br/>
621/etc/dahdi/system.conf.sample<br/>
622/etc/httpd/conf/httpd.conf<br/>
623/etc/ssh/sshd_config<br/>
624/etc/dnsmasq.conf<br/>
625/etc/aliases<br/>
626/etc/sudoers<br/>
627/etc/fail2ban/jail.local<br/>
628/etc/login.defs<br/>
629/etc/postfix/main.cf<br/>
630</p></div>
631 Additional output:
632 <pre class="code"><code>preupg.risk.SLIGHT: Certain configuration files are changed and the .rpmnew files will be generated.
633</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
634 <div class="result-detail" id="ruleresult-idp11666512"><h3>Result for Changes in utilities</h3><p class="result-pass">Result: <strong class="strong">pass</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_GenericUtilities_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:38" class="date">2018-08-02 11:59</abbr></strong></p><p>
635 The module prints utilities that were replaced or removed from packages, moved into a different package, or changed their location.
636
637
638
639
640 </p>
641 Additional output:
642 <pre class="code"><code>cat: /root/preupgrade/RHEL6_7/common/default_utilities: No such file or directory
643</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
644 <div class="result-detail" id="ruleresult-idp11677232"><h3>Result for Packages from other system variants</h3><p class="result-pass">Result: <strong class="strong">pass</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_InterVariants_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:41" class="date">2018-08-02 11:59</abbr></strong></p><p>
645 The module lists the installed packages from other variants of the system.
646
647
648
649
650 </p>
651 Additional output:
652 <pre class="code"><code>ls: cannot access /root/preupgrade/RHEL6_7/common/default_kept-pkgs: No such file or directory
653cat: /root/preupgrade/RHEL6_7/common/default_kept-pkgs: No such file or directory
654cat: /root/preupgrade/RHEL6_7/common/default_kept-pkgs-optional: No such file or directory
655ls: cannot access /root/preupgrade/RHEL6_7/common/default*: No such file or directory
656</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
657 <div class="result-detail" id="ruleresult-idp11698064"><h3>Result for Packages not signed by Sangoma</h3><p class="result-pass">Result: <strong class="strong">pass</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_NonRHSignedPkg_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:46" class="date">2018-08-02 11:59</abbr></strong></p><p>
658 The module lists the packages not signed by Sangoma, which will not be upgraded.
659
660
661
662
663 </p>
664 Additional output:
665 <pre class="code"><code>preupg.risk.HIGH: We detected some packages not signed by Sangoma. You can find the list in the [link:/root/preupgrade/kickstart/nonrhpkgs] file. Handle them yourself.
666</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
667 <div class="result-detail" id="ruleresult-idp11708960"><h3>Result for Obsolete RPM packages</h3><p class="result-pass">Result: <strong class="strong">pass</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_ObsoletedPackages_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:46" class="date">2018-08-02 11:59</abbr></strong></p><p>
668 The module lists obsolete RPM packages.
669
670
671
672
673 </p>
674 Additional output:
675 <pre class="code"><code>cat: /root/preupgrade/RHEL6_7/common/default*_*obsoleted*: No such file or directory
676grep: /root/preupgrade/RHEL6_7/common/default*_moved-obsoleted_?*: No such file or directory
677grep: /root/preupgrade/RHEL6_7/common/default-*_obsoleted: No such file or directory
678ls: cannot access /root/preupgrade/kickstart/RHRHEL7rpmlist_obsoleted*: No such file or directory
679</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
680 <div class="result-detail" id="ruleresult-idp11752144">
681 <h3>Result for The gawk package</h3>
682 <p class="result-informational">Result: <strong class="strong">informational</strong></p>
683 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_RemovedOptions_gawk_check</strong></p>
684 <p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:46" class="date">2018-08-02 11:59</abbr></strong></p>
685 <p>
686 The module informs about the options and binaries removed from the gawk package between Sangoma Linux 6 and Sangoma Linux 7.
687
688
689
690
691 </p>
692 <div class="xccdf-fixtext">
693 <h4 class="short">Remediation instructions</h4>
694 <p>Some options were removed from the gawk package binaries between Sangoma Linux 6<br/>
695and Sangoma Linux 7. This might break the functionality of some of your scripts.<br/>
696All option removals for awk, gawk, and pgawk, along with the solutions, are listed below:<br/>
697<br/>
698- The '--compat' option was removed, the alternative is '--traditional'.<br/>
699- The '--copyleft' option was removed, the alternative is '--copyright' or '-C'.<br/>
700- The '--gen-po' option was replaced by the '--gen-pot' option.<br/>
701- The '--usage' option was removed.<br/>
702- The '-D' option, which was the short form of the '--parsedebug' option, was changed to '-Y'.<br/>
703<br/>
704Verify that your scripts have been updated to work with these changes.<br/>
705</p>
706 </div>
707 <p class="link">
708 <a href="#results-overview">results overview</a>
709 </p>
710 </div>
711 <div class="result-detail" id="ruleresult-idp11762048">
712 <h3>Result for Removed command line options</h3>
713 <p class="result-informational">Result: <strong class="strong">informational</strong></p>
714 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_RemovedOptions_grep_check</strong></p>
715 <p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:46" class="date">2018-08-02 11:59</abbr></strong></p>
716 <p>
717 The module prints a list of command line options that were removed or deprecated in the packages.
718
719
720
721
722 </p>
723 <div class="xccdf-fixtext">
724 <h4 class="short">Remediation instructions</h4>
725 <p>The '-K' option was removed from grep, egrep, and fgrep utilities in Sangoma Linux 7.<br/>
726This option was not even documented before in Sangoma Linux 6.<br/>
727<br/>
728</p>
729 </div>
730 <p class="link">
731 <a href="#results-overview">results overview</a>
732 </p>
733 </div>
734 <div class="result-detail" id="ruleresult-idp11793472">
735 <h3>Result for The util-linux (util-linux-ng) binaries</h3>
736 <p class="result-informational">Result: <strong class="strong">informational</strong></p>
737 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_RemovedOptions_util-linux_check</strong></p>
738 <p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:46" class="date">2018-08-02 11:59</abbr></strong></p>
739 <p>
740 The module prints a list of command line options that were removed or deprecated in the packages.
741
742
743
744
745 </p>
746 <div class="xccdf-fixtext">
747 <h4 class="short">Remediation instructions</h4>
748 <p>Some options were removed or deprecated from the util-linux-ng (in Sangoma Linux 7 it<br/>
749is renamed back to util-linux) package binaries between Sangoma Linux 6 and Sangoma Linux 7.<br/>
750This might break the functionality of some of your scripts. All option removals<br/>
751with the solutions are listed below.<br/>
752<br/>
753blkid:<br/>
754 The '-w' option is deprecated (undocumented in Sangoma Linux 7).<br/>
755<br/>
756fallocate:<br/>
757 The '--lenght' option is replaced by '--length'.<br/>
758<br/>
759findmnt:<br/>
760 The '--fsroot' option is replaced by '--nofsroot'.<br/>
761<br/>
762losetup:<br/>
763 The short '-s' option is removed, available only as the long '--show' option.<br/>
764<br/>
765mount:<br/>
766 The '-p' and '--pass-fd' options are deprecated (undocumented in Sangoma Linux 7).<br/>
767<br/>
768partx:<br/>
769 The '--gpt' option is undocumented and removed.<br/>
770<br/>
771readprofile:<br/>
772 The '-t' option is removed.<br/>
773<br/>
774sfdisk:<br/>
775 The '-?' option is replaced by '-h'.<br/>
776<br/>
777blkid, fsck, hexdump, hwclock, mkfs, mount, renice:<br/>
778 The '-v' option is deprecated and replaced by '-V'.<br/>
779 <br/>
780</p>
781 </div>
782 <p class="link">
783 <a href="#results-overview">results overview</a>
784 </p>
785 </div>
786 <div class="result-detail" id="ruleresult-idp11803408"><h3>Result for Removed RPM packages</h3><p class="result-pass">Result: <strong class="strong">pass</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_RemovedPackages_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:49" class="date">2018-08-02 11:59</abbr></strong></p><p>
787 The module informs about the packages removed between Sangoma Linux 6 and Sangoma Linux 7.
788
789
790
791
792 </p>
793 Additional output:
794 <pre class="code"><code>cat: /root/preupgrade/RHEL6_7/common/default*_removed*: No such file or directory
795</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
796 <div class="result-detail" id="ruleresult-idp11855328"><h3>Result for Package downgrades</h3><p class="result-pass">Result: <strong class="strong">pass</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_pkgdowngrades_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:51" class="date">2018-08-02 11:59</abbr></strong></p><p>
797 The module detects package downgrades from Sangoma Linux 6 to Sangoma Linux 7.
798
799
800
801
802 </p>
803 Additional output:
804 <pre class="code"><code>cat: /root/preupgrade/RHEL6_7/common/default*_downgraded: No such file or directory
805</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
806 <div class="result-detail" id="ruleresult-idp11866048">
807 <h3>Result for Custom SELinux policy</h3>
808 <p class="result-fixed">Result: <strong class="strong">fixed</strong></p>
809 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_selinux_CustomPolicy_check</strong></p>
810 <p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:52" class="date">2018-08-02 11:59</abbr></strong></p>
811 <p>
812 The module solves a problem with custom SELinux policy modules after migration.
813
814
815
816
817 </p>
818 <div class="xccdf-fixtext">
819 <h4 class="short">Remediation instructions</h4>
820 <p>Custom SELinux policy modules could not be found by sesearch. This is fixed by removing SELinux module sandbox.pp, which is replaced by sandboxX.pp. The sandbox.pp module is disabled by default in Sangoma Linux 7. <br/>
821This also solves some other issues between sandbox.pp and sandboxX.pp. The sandbox.pp module<br/>
822is removed by default by the postcript: /root/preupgrade/postupgrade.d/fix_SELinuxCustomPolicy.sh<br/>
823</p>
824 </div>
825 <p class="link">
826 <a href="#results-overview">results overview</a>
827 </p>
828 </div>
829 <div class="result-detail" id="ruleresult-idp12154192"><h3>Result for Add-Ons</h3><p class="result-pass">Result: <strong class="strong">pass</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_AddOns_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:53" class="date">2018-08-02 11:59</abbr></strong></p><p>
830 The module checks for the presence of High Availability, Resilient Storage, and Load Balancer Add-Ons.
831
832
833
834
835 </p>
836 Additional output:
837 <pre class="code"><code>/root/preupgrade/RHEL6_7/system/AddOns/check: line 32: cd: /etc/pki/product: No such file or directory
838</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
839 <div class="result-detail" id="ruleresult-idp12164864">
840 <h3>Result for Unsupported architectures</h3>
841 <p class="result-pass">Result: <strong class="strong">pass</strong></p>
842 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_Architecture_check</strong></p>
843 <p>Time: <strong class="strong"><abbr title="2018-08-02T11:59:53" class="date">2018-08-02 11:59</abbr></strong></p>
844 <p>
845 The module informs that Sangoma Linux 7 does not support installations or performing an in-place upgrade on 32-bit architectures.
846
847
848
849
850 </p>
851 <p class="link">
852 <a href="#results-overview">results overview</a>
853 </p>
854 </div>
855 <div class="result-detail" id="ruleresult-idp12174752"><h3>Result for Binaries to be rebuilt</h3><p class="result-needs_inspection">Result: <strong class="strong">needs_inspection</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_BinariesRebuild_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:46" class="date">2018-08-02 12:00</abbr></strong></p><p>
856 The module checks for all binaries installed on the source system that need to be rebuilt on the target system.
857
858
859
860
861 </p><div class="xccdf-fixtext"><h4 class="short">Remediation instructions</h4><p>The module generates a list of binaries that need to be rebuilt at <a href="./kickstart/binaries">kickstart/binaries</a>.<br/>
862<br/>
863</p></div>
864 Additional output:
865 <pre class="code"><code>cat: /root/preupgrade/RHEL6_7/common/default*_so*-kept: No such file or directory
866cat: /root/preupgrade/RHEL6_7/common/default*_so*-moved_*: No such file or directory
867cat: /root/preupgrade/RHEL6_7/common/default*_so*obsoleted: No such file or directory
868preupg.log.WARNING: The file mentioned in the configuration file does not exist.
869preupg.risk.SLIGHT: Some scripts untracked by RPM were discovered on the system. The scripts might not work properly after the upgrade.
870</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
871 <div class="result-detail" id="ruleresult-idp12185856">
872 <h3>Result for Debuginfo packages</h3>
873 <p class="result-pass">Result: <strong class="strong">pass</strong></p>
874 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_Debuginfo_check</strong></p>
875 <p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:48" class="date">2018-08-02 12:00</abbr></strong></p>
876 <p>
877 The module checks for debuginfo packages and informs about potential risks for the in-place upgrade.
878
879
880
881
882 </p>
883 <p class="link">
884 <a href="#results-overview">results overview</a>
885 </p>
886 </div>
887 <div class="result-detail" id="ruleresult-idp12217104"><h3>Result for Requirements for the /usr/ directory</h3><p class="result-pass">Result: <strong class="strong">pass</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_FHS_UsrPartition_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:49" class="date">2018-08-02 12:00</abbr></strong></p><p>
888 The module checks if the /usr/ directory is located on a separate partition.
889
890
891
892
893 </p>
894 Additional output:
895 <pre class="code"><code></code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
896 <div class="result-detail" id="ruleresult-idp12227456">
897 <h3>Result for Cluster and High Availability</h3>
898 <p class="result-pass">Result: <strong class="strong">pass</strong></p>
899 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_HA-Cluster_ha-cluster_check</strong></p>
900 <p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:49" class="date">2018-08-02 12:00</abbr></strong></p>
901 <p>
902 The module checks for Cluster and High Availability packages and configuration files. The upgrade is not possible with them.
903
904
905
906
907 </p>
908 <p class="link">
909 <a href="#results-overview">results overview</a>
910 </p>
911 </div>
912 <div class="result-detail" id="ruleresult-idp12258928"><h3>Result for File systems, partitions, and the mounts configuration</h3><p class="result-informational">Result: <strong class="strong">informational</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_PartitionMounts_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:49" class="date">2018-08-02 12:00</abbr></strong></p><p>
913 The module describes a new default file system, and it stores partitions and the mounts configuration.
914
915
916
917
918 </p><div class="xccdf-fixtext"><h4 class="short">Remediation instructions</h4><p>Sangoma Linux 7 now uses the XFS file system as a default file system instead of the ext4 file system. If you intend to migrate the system to another machine or create a new file system, consider using XFS instead of ext4. If you use a Kickstart installation, consider modifying the Kickstart configuration to use XFS.<br/>
919<br/>
920Additionally, the information about the partitions and the mounts configuration has been saved in the /root/preupgrade/kickstart/ directory. This information can be useful to perform a system migration or to convert your file systems to XFS.<br/>
921</p></div>
922 Additional output:
923 <pre class="code"><code> No volume groups found
924 No volume groups found
925</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
926 <div class="result-detail" id="ruleresult-idp12290176"><h3>Result for Libraries with their soname kept</h3><p class="result-informational">Result: <strong class="strong">informational</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_SonameKept_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:49" class="date">2018-08-02 12:00</abbr></strong></p><p>
927 The module provides an overview of dynamic libraries from Sangoma Linux 6 that can be reused in Sangoma Linux 7, as the dynamic libraries remain compatible with both the application programming interface (API) and the application binary interface (ABI).
928
929
930
931
932 </p><div class="xccdf-fixtext"><h4 class="short">Remediation instructions</h4><p>Applications developed in the C programming language can use dynamic libraries (.so files) to reuse common functions and symbols in the binary. When the library changes its soname in a major version, the binaries normally need to be rebuilt for the target system. Some libraries have not changed their soname between Sangoma Linux 6 and Sangoma Linux 7, so it could be possible to reuse the third-party applications that use only these libraries without rebuilding.<br/>
933<br/>
934You can find the list of the unchanged dynamic libraries and their package names in the <a href="././kickstart/NoSonameBumpLibs">./kickstart/NoSonameBumpLibs</a> file.<br/>
935<br/>
936If it is not clear what libraries the third-party binary or RPM uses, it is possible to use the 'ldd' utility for the C binary, or enter the 'rpm -q --whatrequires SONAME' command for the whole RPM package. No problems are expected to occur if there are only .so files listed in the NoSonameBumpLibs file and unversioned shared libraries.<br/>
937</p></div>
938 Additional output:
939 <pre class="code"><code>cat: /root/preupgrade/RHEL6_7/common/default*_soversioned-kept: No such file or directory
940cat: /root/preupgrade/RHEL6_7/common/default*_so-kept: No such file or directory
941cat: /root/preupgrade/RHEL6_7/common/default*_so*-moved_*: No such file or directory
942cat: /root/preupgrade/RHEL6_7/common/default*_so*obsoleted: No such file or directory
943</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
944 <div class="result-detail" id="ruleresult-idp12301136"><h3>Result for Removed .so libraries</h3><p class="result-pass">Result: <strong class="strong">pass</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_SonameRemoval_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:49" class="date">2018-08-02 12:00</abbr></strong></p><p>
945 The module checks for the .so libraries that were removed between Sangoma Linux 6 and Sangoma Linux 7 in your Sangoma packages.
946
947
948
949
950 </p>
951 Additional output:
952 <pre class="code"><code>cat: /root/preupgrade/RHEL6_7/common/default*_so*-removed: No such file or directory
953</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
954 <div class="result-detail" id="ruleresult-idp12311840">
955 <h3>Result for CGROUP_DAEMON in sysconfig scripts</h3>
956 <p class="result-pass">Result: <strong class="strong">pass</strong></p>
957 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_SysconfigCgroupDaemon_check</strong></p>
958 <p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:49" class="date">2018-08-02 12:00</abbr></strong></p>
959 <p>
960 The module searches for the CGROUP_DAEMON variable in the files in the /etc/sysconfig/ directory.
961
962
963
964
965 </p>
966 <p class="link">
967 <a href="#results-overview">results overview</a>
968 </p>
969 </div>
970 <div class="result-detail" id="ruleresult-idp12321744">
971 <h3>Result for Checking the system version and variant</h3>
972 <p class="result-pass">Result: <strong class="strong">pass</strong></p>
973 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_SystemVersion_check</strong></p>
974 <p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:49" class="date">2018-08-02 12:00</abbr></strong></p>
975 <p>
976 The module checks if the system is the latest released version and a supported variant for the upgrade to be successful.
977
978
979
980
981 </p>
982 <p class="link">
983 <a href="#results-overview">results overview</a>
984 </p>
985 </div>
986 <div class="result-detail" id="ruleresult-idp12353040">
987 <h3>Result for Sangoma Developer Toolset</h3>
988 <p class="result-pass">Result: <strong class="strong">pass</strong></p>
989 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_dts_check</strong></p>
990 <p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:49" class="date">2018-08-02 12:00</abbr></strong></p>
991 <p>
992 The module checks if the Sangoma Developer Toolset packages are installed.
993
994
995
996
997 </p>
998 <p class="link">
999 <a href="#results-overview">results overview</a>
1000 </p>
1001 </div>
1002 <div class="result-detail" id="ruleresult-idp12373536">
1003 <h3>Result for Grubby</h3>
1004 <p class="result-fixed">Result: <strong class="strong">fixed</strong></p>
1005 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_grubby_check</strong></p>
1006 <p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:50" class="date">2018-08-02 12:00</abbr></strong></p>
1007 <p>
1008 A workaround to prevent crashing of the grubby utility. The module fills initrd into the /boot/grub/grub.conf file by the postupgrade script.
1009
1010
1011
1012
1013 </p>
1014 <div class="xccdf-fixtext">
1015 <h4 class="short">Remediation instructions</h4>
1016 <p>The module works around crashing grubby. It modifies the /boot/grub/grub.conf file by adding initrd.<br/>
1017</p>
1018 </div>
1019 <p class="link">
1020 <a href="#results-overview">results overview</a>
1021 </p>
1022 </div>
1023 <div class="result-detail" id="ruleresult-idp12394048">
1024 <h3>Result for Hyper-V</h3>
1025 <p class="result-pass">Result: <strong class="strong">pass</strong></p>
1026 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_hyperv_check</strong></p>
1027 <p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:50" class="date">2018-08-02 12:00</abbr></strong></p>
1028 <p>
1029 The module checks if the system runs on Hyper-V.
1030
1031
1032
1033
1034 </p>
1035 <p class="link">
1036 <a href="#results-overview">results overview</a>
1037 </p>
1038 </div>
1039 <div class="result-detail" id="ruleresult-idp12498352">
1040 <h3>Result for PolicyKit</h3>
1041 <p class="result-informational">Result: <strong class="strong">informational</strong></p>
1042 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_polkit_check</strong></p>
1043 <p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:50" class="date">2018-08-02 12:00</abbr></strong></p>
1044 <p>
1045 The module informs about the necessity of checking modified or your own configuration files due to important changes in the PolicyKit configuration files.
1046
1047
1048
1049
1050 </p>
1051 <div class="xccdf-fixtext">
1052 <h4 class="short">Remediation instructions</h4>
1053 <p>PolicyKit (alias polkit) does not use the *.conf and *.pkla files anymore. Everything is inside the<br/>
1054*.rules files instead, which contain rules written in JavaScript. See more in the<br/>
1055"Sangoma Linux 7 Desktop Migration and Administration Guide", Chapter 4, at<br/>
1056<a href="https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/html/Desktop_Migration_and_Administration_Guide/policykit.html">https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/html/Desktop_Migration_and_Administration_Guide/policykit.html</a><br/>
1057<br/>
1058</p>
1059 </div>
1060 <p class="link">
1061 <a href="#results-overview">results overview</a>
1062 </p>
1063 </div>
1064 <div class="result-detail" id="ruleresult-idp12518960"><h3>Result for Repositories for Kickstart</h3><p class="result-needs_inspection">Result: <strong class="strong">needs_inspection</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_repositories_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:50" class="date">2018-08-02 12:00</abbr></strong></p><p>
1065 The module checks for enabled repositories and stores them in the /root/preupgrade/kickstart/available-repos file. They are later used for generating Kickstart.
1066
1067
1068
1069
1070 </p><div class="xccdf-fixtext"><h4 class="short">Remediation instructions</h4><p>The module stores enabled repositories for Kickstart issues in the <a href="././kickstart/available-repos">./kickstart/available-repos</a> file.<br/>
1071During the generation of Kickstart, these repositories are added to the Kickstart script.<br/>
1072<br/>
1073</p></div>
1074 Additional output:
1075 <pre class="code"><code>preupg.risk.SLIGHT: The upgrade repository is enabled.
1076preupg.risk.SLIGHT: The schmooze-commercial repository is enabled.
1077preupg.risk.SLIGHT: The pbx repository is enabled.
1078preupg.risk.SLIGHT: The high-availability repository is not enabled.
1079preupg.risk.SLIGHT: The base repository is enabled.
1080preupg.risk.SLIGHT: The updates repository is enabled.
1081preupg.risk.SLIGHT: The extras repository is enabled.
1082preupg.risk.SLIGHT: Enabled repository files for the Kickstart generation are stored in the /root/preupgrade/kickstart/available-repos file.
1083</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
1084 <div class="result-detail" id="ruleresult-idp12530128">
1085 <h3>Result for System requirements</h3>
1086 <p class="result-pass">Result: <strong class="strong">pass</strong></p>
1087 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_requirements_check</strong></p>
1088 <p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:50" class="date">2018-08-02 12:00</abbr></strong></p>
1089 <p>
1090 The module checks if the system complies with the minimal requirements.
1091
1092
1093
1094
1095 </p>
1096 <p class="link">
1097 <a href="#results-overview">results overview</a>
1098 </p>
1099 </div>
1100 <div class="result-detail" id="ruleresult-idp12582032">
1101 <h3>Result for Copying Kickstart</h3>
1102 <p class="result-pass">Result: <strong class="strong">pass</strong></p>
1103 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_system-kickstart_check</strong></p>
1104 <p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:51" class="date">2018-08-02 12:00</abbr></strong></p>
1105 <p>
1106 The module copies system Kickstart from the /root/ directory to the directory with results.
1107
1108
1109
1110
1111 </p>
1112 <p class="link">
1113 <a href="#results-overview">results overview</a>
1114 </p>
1115 </div>
1116 <div class="result-detail" id="ruleresult-idp12601792">
1117 <h3>Result for UEFI boot loader</h3>
1118 <p class="result-informational">Result: <strong class="strong">informational</strong></p>
1119 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_uefi_check</strong></p>
1120 <p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:51" class="date">2018-08-02 12:00</abbr></strong></p>
1121 <p>
1122 The module checks for EFI and it forbids an in-place upgrade when the EFI boot loader is present.
1123
1124
1125
1126
1127 </p>
1128 <div class="xccdf-fixtext">
1129 <h4 class="short">Remediation instructions</h4>
1130 <p>This system does not use the EFI boot loader. The Preupgrade Assistant will not replace your current boot loader automatically as it is too dangerous. If you want to use GRUB 2, do it manually after the upgrade by using 'grub2-install' and 'grub2-mkconfig'.<br/>
1131</p>
1132 </div>
1133 <p class="link">
1134 <a href="#results-overview">results overview</a>
1135 </p>
1136 </div>
1137 <div class="result-detail" id="ruleresult-idp12632048">
1138 <h3>Result for Dangerous ranges of UIDs and GIDs</h3>
1139 <p class="result-pass">Result: <strong class="strong">pass</strong></p>
1140 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_usrmgmt_DangerousRanges_check</strong></p>
1141 <p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:52" class="date">2018-08-02 12:00</abbr></strong></p>
1142 <p>
1143 The module checks for IDs in the range 0 - 199 that are used without reservations, and it also checks for IDs that need to be moved from the range 500 - 999 before the migration.
1144
1145
1146
1147
1148 </p>
1149 <p class="link">
1150 <a href="#results-overview">results overview</a>
1151 </p>
1152 </div>
1153 <div class="result-detail" id="ruleresult-idp12642016"><h3>Result for Incorrect usage of reserved UIDs and GIDs</h3><p class="result-needs_inspection">Result: <strong class="strong">needs_inspection</strong></p><p>Rule ID: <strong class="strong">xccdf_preupg_rule_usrmgmt_ReservedIDs_check</strong></p><p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:54" class="date">2018-08-02 12:00</abbr></strong></p><p>
1154 The module checks for changes in the reserved user and group IDs between Sangoma Linux 6 and Sangoma Linux 7. In some cases, these changes might cause the unfunctionality of the system after the upgrade. This check mitigates the risks.
1155
1156
1157
1158
1159 </p><div class="xccdf-fixtext"><h4 class="short">Remediation instructions</h4><p>The packages might create system accounts with static IDs based on the reservation in the /usr/share/doc/setup-*/uidgid file. If you have any violations against the uidgid file reservation, the applications might not work properly, or they might cause some unexpected behavior. As the reservations between different releases of Sangoma Linux might differ, check the results below carefully.<br/>
1160<br/>
1161Especially the cases when an ID reserved by an application is used by a different account are really important. Using a different account than the reserved one might cause interoperability issues.<br/>
1162<br/>
1163Invalid GID is used for the games account. Now, it is 100, but it should be 20.<br/>
1164This might cause troubles when an exact static GID is expected by an application.<br/>
1165The ID 6 reserved for the amandabackup account is used by disk.<br/>
1166The amandabackup account is expected to be created by the amanda package(s). If you plan to use the package(s) on the system, it might cause troubles as the amandabackup account might not be created properly.<br/>
1167Invalid GID is used for the mongodb account. Now, it is 494, but it should be 184.<br/>
1168This might cause troubles when an exact static GID is expected by an application.<br/>
1169 These issues do not usually cause critical failures, but in rare cases they might contribute to some hard-to-analyze failures in the case where the system ID values are hard-coded in the application. <br/>
1170</p></div>
1171 Additional output:
1172 <pre class="code"><code>preupg.log.INFO: Incorrect shell is used for the adm account. Now, it is /sbin/nologin, but it should be /bin/bash based on the reservation data.
1173preupg.log.WARNING: Invalid GID is used for the games account. Now, it is 100, but it should be 20.
1174preupg.log.WARNING: The ID 6 reserved for the amandabackup account is used by disk.
1175preupg.log.INFO: Incorrect shell is used for the apache account. Now, it is /sbin/nologin, but it should be /bin/false based on the reservation data.
1176preupg.log.INFO: Incorrect shell is used for the postfix account. Now, it is /sbin/nologin, but it should be /bin/true based on the reservation data.
1177preupg.log.INFO: Incorrect home directory is used for the radiusd account. Now, it is /home/radiusd, but it should be / based on the reservation data.
1178preupg.log.INFO: Incorrect shell is used for the radiusd account. Now, it is /sbin/nologin, but it should be /bin/false based on the reservation data.
1179preupg.log.WARNING: Invalid GID is used for the mongodb account. Now, it is 494, but it should be 184.
1180preupg.risk.MEDIUM: Reserved user and group IDs by the setup package changed between Sangoma Linux 6 and Sangoma Linux 7.
1181</code></pre><p class="link"><a href="#results-overview">results overview</a></p></div>
1182 <div class="result-detail" id="ruleresult-idp12653824">
1183 <h3>Result for The libuser.conf file</h3>
1184 <p class="result-pass">Result: <strong class="strong">pass</strong></p>
1185 <p>Rule ID: <strong class="strong">xccdf_preupg_rule_usrmgmt_libuser_check</strong></p>
1186 <p>Time: <strong class="strong"><abbr title="2018-08-02T12:00:54" class="date">2018-08-02 12:00</abbr></strong></p>
1187 <p>
1188 The module checks for a rejected configuration in the /etc/libuser.conf file. The rejected configuration is the combination of the ldap module with others, due to the ambiguity in password handling.
1189
1190
1191
1192
1193 </p>
1194 <p class="link">
1195 <a href="#results-overview">results overview</a>
1196 </p>
1197 </div>
1198 </div>
1199 </div>
1200 <div id="footer">
1201 <p> Generated by <a href="http://open-scap.org">OpenSCAP</a>
1202 (1.0.8)
1203 on <abbr title="2018-08-02T12:00:56-06:00" class="date">2018-08-02 12:00</abbr>.</p>
1204 </div>
1205 </div>
1206 </body>
1207</html>