You are on page 1of 105

F5 BIG-IP v13.0.0 (Build 2.0.

1671) QUICK SECURITY ASSESSMENT

F5 BIG-IP v13.0.0 (Build 2.0.1671) ANALYSIS


2017-05-17 12:35:14 ===---------------------------------------------------------------===
2017-05-17 12:35:14 ===---------------------------------------------------------------===
2017-05-17 12:35:14 Program version: 2.5.0
2017-05-17 12:35:14 Operating system: Linux
2017-05-17 12:35:14 Operating system name: CentOS
2017-05-17 12:35:14 Operating system version: CentOS release 6.6 (Final)
Comment [1]: CentOS 6.6 with EL7 kernel?
2017-05-17 12:35:14 Kernel version: 3.10.0
2017-05-17 12:35:14 Kernel version (full): 3.10.0-327.36.3.el7.x86_64
2017-05-17 12:35:14 Hardware platform: x86_64 Comment [2]: Multiple vulnerabilities:
2017-05-17 12:35:14 ----------------------------------------------------- http://www.cvedetails.com/vulnerability-list/vendor_id-
2017-05-17 12:35:14 Hostname: no-hostname 33/product_id-47/version_id-147597/Linux-Linux-Kernel-
2017-05-17 12:35:14 Auditor: [Not Specified] 3.10.0.html
2017-05-17 12:35:14 Profiles: /home/admin/assess/default.prf
2017-05-17 12:35:14 Work directory: /home/admin/assess
2017-05-17 12:35:14 Include directory: /home/admin/assess/include
2017-05-17 12:35:14 Plugin directory: ./plugins
2017-05-17 12:35:14 -----------------------------------------------------
2017-05-17 12:35:14 Log file: /var/log/assess.log
2017-05-17 12:35:14 Report file: /var/log/assess-report.dat
2017-05-17 12:35:14 Report version: 1.0
2017-05-17 12:35:14 -----------------------------------------------------
2017-05-17 12:35:14 Test category: all
2017-05-17 12:35:14 Test group: all
2017-05-17 12:35:14 BusyBox used: 0
2017-05-17 12:35:14 ===---------------------------------------------------------------===
2017-05-17 12:35:14 Test: Checking for program update...
2017-05-17 12:35:14 Current installed version : 250
2017-05-17 12:35:14 Latest stable version : 250
2017-05-17 12:35:14 No Assess update available.
2017-05-17 12:35:14 ===---------------------------------------------------------------===
2017-05-17 12:35:14 Checking permissions of /home/admin/assess/include/binaries
2017-05-17 12:35:14 File permissions are OK
2017-05-17 12:35:14 ===---------------------------------------------------------------===
2017-05-17 12:35:14 Action: Performing tests from category: System Tools
2017-05-17 12:35:14 Start scanning for available audit binaries and tools...
2017-05-17 12:35:14 ===---------------------------------------------------------------===
2017-05-17 12:35:14 Performing test ID CORE-1000 (Check all system binaries)
2017-05-17 12:35:14 Status: Starting binary scan...
2017-05-17 12:35:14 Test: Checking binaries in directory /bin
2017-05-17 12:35:14 Directory /bin exists. Starting directory scanning...
2017-05-17 12:35:14 Found known binary: awk (string tool) - /bin/awk

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:14 Found known binary: cat (generic file handling) - /bin/cat
2017-05-17 12:35:14 Found known binary: cut (text stream editor) - /bin/cut
2017-05-17 12:35:14 Found known binary: dnsdomainname (DNS domain) - /bin/dnsdomainname
2017-05-17 12:35:14 Found known binary: domainname (NIS domain) - /bin/domainname
2017-05-17 12:35:14 Found known binary: egrep (text search) - /bin/egrep
2017-05-17 12:35:14 Found known binary: find (search tool) - /bin/find
2017-05-17 12:35:14 Found known binary: grep (text search) - /bin/grep
2017-05-17 12:35:14 Found known binary: gzip (compressing utility) - /bin/gzip
2017-05-17 12:35:14 Found known binary: ls (file listing) - /bin/ls
2017-05-17 12:35:14 Found known binary: mount (disk utility) - /bin/mount
2017-05-17 12:35:14 Found known binary: netstat (network statistics) - /bin/netstat
2017-05-17 12:35:14 Found known binary: ps (process listing) - /bin/ps
2017-05-17 12:35:14 Found known binary: readlink (follows symlinks) - /bin/readlink
2017-05-17 12:35:14 Found known binary: rpm (package manager) - /bin/rpm
2017-05-17 12:35:14 Found known binary: sed (text stream editor) - /bin/sed
2017-05-17 12:35:14 Found known binary: sort (sort data streams) - /bin/sort
2017-05-17 12:35:15 Found known binary: uname (operating system details) - /bin/uname
2017-05-17 12:35:15 Found known binary: xargs (command output redirection) - /bin/xargs
2017-05-17 12:35:15 Test: Checking binaries in directory /sbin
2017-05-17 12:35:15 Directory /sbin exists. Starting directory scanning...
2017-05-17 12:35:15 Found known binary: auditctl (control utility for audit daemon) - /sbin/auditctl
2017-05-17 12:35:15 Found known binary: auditd (audit framework) - /sbin/auditd
2017-05-17 12:35:15 Found known binary: blkid (information about block devices) - /sbin/blkid
2017-05-17 12:35:15 Found known binary: chkconfig (administration tool) - /sbin/chkconfig
2017-05-17 12:35:15 Found known binary: ipconfig (IP configuration) - /sbin/ifconfig
2017-05-17 12:35:15 Found known binary: initctl (client to upstart init) - /sbin/initctl
2017-05-17 12:35:15 Found known binary: ip (IP configuration) - /sbin/ip
2017-05-17 12:35:15 Found known binary: iptables (firewall) - /sbin/iptables
2017-05-17 12:35:15 Found known binary: iptables-save (firewall) - /sbin/iptables-save
2017-05-17 12:35:15 Found known binary: lsmod (kernel modules) - /sbin/lsmod
2017-05-17 12:35:15 Found known binary: lvdisplay (LVM tool) - /sbin/lvdisplay
2017-05-17 12:35:15 Found known binary: modprobe (kernel modules) - /sbin/modprobe
2017-05-17 12:35:15 Found known binary: runlevel (system utility) - /sbin/runlevel
2017-05-17 12:35:15 Found known binary: service (system services) - /sbin/service
2017-05-17 12:35:15 Found known binary: sysctl (kernel parameters) - /sbin/sysctl
2017-05-17 12:35:15 Found known binary: tune2fs (file system tool) - /sbin/tune2fs
2017-05-17 12:35:15 Found known binary: vgdisplay (LVM tool) - /sbin/vgdisplay
2017-05-17 12:35:15 Test: Checking binaries in directory /usr/bin
2017-05-17 12:35:15 Directory /usr/bin exists. Starting directory scanning...
2017-05-17 12:35:15 Found known binary: as (compiler) - /usr/bin/as
2017-05-17 12:35:15 Found known binary: awk (string tool) - /usr/bin/awk
2017-05-17 12:35:15 Found known binary: base64 (encoding tool) - /usr/bin/base64
2017-05-17 12:35:15 Found known binary: comm (file compare) - /usr/bin/comm
2017-05-17 12:35:15 Found known binary: curl (browser) - /usr/bin/curl
2017-05-17 12:35:15 Found known binary: cut (text stream editor) - /usr/bin/cut

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:15 Found known binary: dig (nameservice tool) - /usr/bin/dig


2017-05-17 12:35:15 Found known binary: file (file type detection) - /usr/bin/file
2017-05-17 12:35:15 Found known binary: find (search tool) - /usr/bin/find
2017-05-17 12:35:16 Found known binary: getent (query tool for name service switch libraries) - /usr/bin/getent
2017-05-17 12:35:16 Found known binary: gzip (compressing utility) - /usr/bin/gzip
2017-05-17 12:35:16 Found known binary: head (text filter) - /usr/bin/head
2017-05-17 12:35:16 Found known binary: lsattr (file attributes) - /usr/bin/lsattr
2017-05-17 12:35:16 Found known binary: md5sum (hash tool) - /usr/bin/md5sum
2017-05-17 12:35:16 Found /usr/bin/mysql (version: 5.1.73)
2017-05-17 12:35:16 Found /usr/bin/openssl (version 1.0.1l-fips)
2017-05-17 12:35:16 Found /usr/bin/perl (version 5.10.1)
2017-05-17 12:35:16 Found known binary: pgrep (search in process list) - /usr/bin/pgrep
2017-05-17 12:35:17 Found known binary: php (programming language interpreter) - /usr/bin/php (version 5.4.45)
2017-05-17 12:35:17 Found known binary: python (programming language interpreter) - /usr/bin/python (version 2.6.6)
2017-05-17 12:35:17 Found known binary: python2 (programming language interpreter) - /usr/bin/python2 (version 2.6.6)
2017-05-17 12:35:17 Found known binary: readlink (follows symlinks) - /usr/bin/readlink
2017-05-17 12:35:17 Found known binary: sha1/sha1sum/shasum (crypto hashing) - /usr/bin/sha1sum
2017-05-17 12:35:17 Found known binary: sha256/sha256sum (crypto hashing) - /usr/bin/sha256sum
2017-05-17 12:35:17 Found known binary: sha1/sha1sum/shasum (crypto hashing) - /usr/bin/shasum
2017-05-17 12:35:17 Found known binary: ssh-keyscan (scanner for SSH keys) - /usr/bin/ssh-keyscan
2017-05-17 12:35:17 Found known binary: stat (file information) - /usr/bin/stat
2017-05-17 12:35:17 Found known binary: strings (text strings search) - /usr/bin/strings
2017-05-17 12:35:18 Found known binary: tr (text transformation) - /usr/bin/tr
2017-05-17 12:35:18 Found known binary: uniq (text manipulation utility) - /usr/bin/uniq
2017-05-17 12:35:18 Found known binary: wc (word count) - /usr/bin/wc
2017-05-17 12:35:18 Found known binary: xargs (command output redirection) - /usr/bin/xargs
2017-05-17 12:35:18 Found known binary: zgrep (text search for compressed files) - /usr/bin/zgrep
2017-05-17 12:35:18 Test: Checking binaries in directory /usr/sbin
2017-05-17 12:35:18 Directory /usr/sbin exists. Starting directory scanning...
2017-05-17 12:35:18 Found known binary: getcap (kernel capabilities) - /usr/sbin/getcap
2017-05-17 12:35:18 Found known binary: grpck (consistency checker) - /usr/sbin/grpck
2017-05-17 12:35:18 Found known binary: grub2-install (installer for boot loader) - /usr/sbin/grub2-install
2017-05-17 12:35:18 Found known binary: httpd (web server) - /usr/sbin/httpd
2017-05-17 12:35:18 Found known binary: logrotate (log rotation tool) - /usr/sbin/logrotate
2017-05-17 12:35:18 Found known binary: lsof (open files) - /usr/sbin/lsof
2017-05-17 12:35:18 Found known binary: named-checkconf (BIND configuration analyzer) - /usr/sbin/named-checkconf
2017-05-17 12:35:18 Found known binary ntpq (time daemon client) - /usr/sbin/ntpq Comment [3]: Outdated
2017-05-17 12:35:18 Found known binary: rpcinfo (RPC information) - /usr/sbin/rpcinfo Vulnerable: The resend_bytes function in roaming_common.c
2017-05-17 12:35:18 Found known binary: sestatus (SELinux client) - /usr/sbin/sestatus in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2 allows
2017-05-17 12:35:18 Found known binary: ss (show sockets) - /usr/sbin/ss remote servers to obtain sensitive information from process
2017-05-17 12:35:19 Found /usr/sbin/sshd (version 5.3p1) memory by requesting transmission of an entire buffer, as
2017-05-17 12:35:19 Found /usr/sbin/syslog-ng (version 2.1.4) demonstrated by reading a private key.
2017-05-17 12:35:19 Test: Checking binaries in directory /usr/local/bin
2017-05-17 12:35:19 Directory /usr/local/bin exists. Starting directory scanning... CVE-2016-0777
2017-05-17 12:35:19 Test: Checking binaries in directory /usr/local/sbin

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:19 Directory /usr/local/sbin exists. Starting directory scanning...


2017-05-17 12:35:19 Test: Checking binaries in directory /usr/local/libexec
2017-05-17 12:35:19 Directory /usr/local/libexec exists. Starting directory scanning...
2017-05-17 12:35:19 Test: Checking binaries in directory /usr/libexec
2017-05-17 12:35:19 Directory /usr/libexec exists. Starting directory scanning...
2017-05-17 12:35:19 Test: Checking binaries in directory /usr/sfw/bin
2017-05-17 12:35:19 Result: Directory /usr/sfw/bin does NOT exist
2017-05-17 12:35:19 Test: Checking binaries in directory /usr/sfw/sbin
2017-05-17 12:35:19 Result: Directory /usr/sfw/sbin does NOT exist
2017-05-17 12:35:19 Test: Checking binaries in directory /usr/sfw/libexec
2017-05-17 12:35:19 Result: Directory /usr/sfw/libexec does NOT exist
2017-05-17 12:35:19 Test: Checking binaries in directory /opt/sfw/bin
2017-05-17 12:35:19 Result: Directory /opt/sfw/bin does NOT exist
2017-05-17 12:35:19 Test: Checking binaries in directory /opt/sfw/sbin
2017-05-17 12:35:19 Result: Directory /opt/sfw/sbin does NOT exist
2017-05-17 12:35:19 Test: Checking binaries in directory /opt/sfw/libexec
2017-05-17 12:35:19 Result: Directory /opt/sfw/libexec does NOT exist
2017-05-17 12:35:19 Test: Checking binaries in directory /usr/xpg4/bin
2017-05-17 12:35:19 Result: Directory /usr/xpg4/bin does NOT exist
2017-05-17 12:35:19 Test: Checking binaries in directory /usr/css/bin
2017-05-17 12:35:19 Result: Directory /usr/css/bin does NOT exist
2017-05-17 12:35:19 Test: Checking binaries in directory /usr/ucb
2017-05-17 12:35:19 Result: Directory /usr/ucb does NOT exist
2017-05-17 12:35:19 Test: Checking binaries in directory /usr/X11R6/bin
2017-05-17 12:35:19 Result: Directory /usr/X11R6/bin does NOT exist
2017-05-17 12:35:19 Test: Checking binaries in directory /usr/X11R7/bin
2017-05-17 12:35:19 Result: Directory /usr/X11R7/bin does NOT exist
2017-05-17 12:35:19 Test: Checking binaries in directory /usr/pkg/bin
2017-05-17 12:35:19 Result: Directory /usr/pkg/bin does NOT exist
2017-05-17 12:35:19 Test: Checking binaries in directory /usr/pkg/sbin
2017-05-17 12:35:19 Result: Directory /usr/pkg/sbin does NOT exist
2017-05-17 12:35:19 Discovered directories:
/bin,/sbin,/usr/bin,/usr/sbin,/usr/local/bin,/usr/local/sbin,/usr/local/libexec,/usr/libexec
2017-05-17 12:35:19 Result: found 2039 binaries
2017-05-17 12:35:19 ===---------------------------------------------------------------===
2017-05-17 12:35:19 Test: Determine if this system is a virtual machine
2017-05-17 12:35:19 Result: facter utility not found
2017-05-17 12:35:19 Result: systemd-detect-virt not found
2017-05-17 12:35:19 Test: trying to guess virtualization with lscpu
2017-05-17 12:35:19 Result: can't find hypervisor vendor with lscpu
2017-05-17 12:35:19 Test: trying to guess virtualization with dmidecode
2017-05-17 12:35:19 Result: found C112
2017-05-17 12:35:19 Result: skipped processes test, as we already found platform
2017-05-17 12:35:19 Result: skipped Amazon EC2 test, as we already found platform
2017-05-17 12:35:19 Result: skipped sysctl test, as we already found platform

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:19 Result: lshw not found


2017-05-17 12:35:19 Result: Unknown virtualization type, so most likely system is physical
2017-05-17 12:35:19 Result: unknown if this system is a virtual machine
2017-05-17 12:35:19 Result: Assess is not running in container
2017-05-17 12:35:19 Result: systemd not found, or partially
2017-05-17 12:35:19 ===---------------------------------------------------------------===
2017-05-17 12:35:19 Action: Performing plugin tests
2017-05-17 12:35:19 Searching plugins...
2017-05-17 12:35:19 Result: Found 0 plugins of which 0 are enabled
2017-05-17 12:35:19 Result: Plugins phase 1 finished
2017-05-17 12:35:19 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Info: using hardware address f4:15:63:33:2a:01 to create ID
2017-05-17 12:35:20 Result: Found HostID: aff4fcca8bbc41a4a44d0c911f988df36b991701
2017-05-17 12:35:20 Info: creating a HostID (version 2)
2017-05-17 12:35:20 Info: found valid HostID aff4fcca8bbc41a4a44d0c911f988df36b991701
2017-05-17 12:35:20 Info: no machine ID found
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Info: perform tests from all categories
2017-05-17 12:35:20 Checking permissions of /home/admin/assess/include/tests_boot_services
2017-05-17 12:35:20 File permissions are OK
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Action: Performing tests from category: Boot and services
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Skipped test BOOT-5102 (Check for AIX boot device)
2017-05-17 12:35:20 Reason to skip: Incorrect guest OS (AIX only)
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Performing test ID BOOT-5104 (Determine service manager)
2017-05-17 12:35:20 Result: cmdline found = /sbin/init
2017-05-17 12:35:20 Found: init
2017-05-17 12:35:20 Result: service manager found = SysV Init
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Skipped test BOOT-5106 (Check EFI boot file on Mac OS X/macOS)
2017-05-17 12:35:20 Reason to skip: Incorrect guest OS (macOS only)
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Performing test ID BOOT-5108 (Check Syslinux as bootloader)
2017-05-17 12:35:20 Test: checking if file /boot/syslinux/syslinux.cfg exists
2017-05-17 12:35:20 Result: file /boot/syslinux/syslinux.cfg NOT found
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Performing test ID BOOT-5116 (Check if system is booted in UEFI mode)
2017-05-17 12:35:20 Test: checking if UEFI is used
2017-05-17 12:35:20 Result: UEFI not used, can't find /sys/firmware/efi directory
2017-05-17 12:35:20 Test: determine if Secure Boot is used
2017-05-17 12:35:20 Result: system not booted with Secure Boot (no SecureBoot file found)
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Performing test ID BOOT-5121 (Check for GRUB boot loader presence)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:20 Test: Checking for presence GRUB conf file (/boot/grub/grub.conf or /boot/grub/menu.lst)
2017-05-17 12:35:20 Result: no GRUB configuration file found.
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Skipped test BOOT-5122 (Check for GRUB boot password)
2017-05-17 12:35:20 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Skipped test BOOT-5124 (Check for FreeBSD boot loader presence)
2017-05-17 12:35:20 Reason to skip: Incorrect guest OS (FreeBSD only)
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Skipped test BOOT-5261 (Check for DragonFly boot loader presence)
2017-05-17 12:35:20 Reason to skip: Incorrect guest OS (DragonFly only)
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Skipped test BOOT-5126 (Check for NetBSD boot loader presence)
2017-05-17 12:35:20 Reason to skip: Incorrect guest OS (NetBSD only)
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Performing test ID BOOT-5139 (Check for LILO boot loader presence)
2017-05-17 12:35:20 Test: checking for presence LILO configuration file
2017-05-17 12:35:20 Result: LILO configuration file not found
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Performing test ID BOOT-5142 (Check SPARC Improved boot loader (SILO))
2017-05-17 12:35:20 Result: no SILO configuration file found.
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Performing test ID BOOT-5155 (Check for YABOOT boot loader configuration file)
2017-05-17 12:35:20 Test: Check for /etc/yaboot.conf
2017-05-17 12:35:20 Result: no YABOOT configuration file found.
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Skipped test BOOT-5159 (Check for OpenBSD boot loader presence)
2017-05-17 12:35:20 Reason to skip: Incorrect guest OS (OpenBSD only)
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Skipped test BOOT-5165 (Check for FreeBSD boot services)
2017-05-17 12:35:20 Reason to skip: Incorrect guest OS (FreeBSD only)
2017-05-17 12:35:20 ===---------------------------------------------------------------===
2017-05-17 12:35:20 Performing test ID BOOT-5177 (Check for Linux boot and running services)
2017-05-17 12:35:20 Test: checking presence systemctl binary
2017-05-17 12:35:20 Result: systemctl binary not found, checking chkconfig binary
2017-05-17 12:35:20 Result: chkconfig binary found, trying that to discover information
2017-05-17 12:35:20 Searching for services at startup (chkconfig, runlevel 3 and 5)
2017-05-17 12:35:20 Found service (at boot, runlevel 3 or 5): auditd
2017-05-17 12:35:20 Found service (at boot, runlevel 3 or 5): bigstart
2017-05-17 12:35:20 Found service (at boot, runlevel 3 or 5): blk-availability
2017-05-17 12:35:20 Found service (at boot, runlevel 3 or 5): cluster
2017-05-17 12:35:20 Found service (at boot, runlevel 3 or 5): crond
2017-05-17 12:35:20 Found service (at boot, runlevel 3 or 5): dhclient
2017-05-17 12:35:20 Found service (at boot, runlevel 3 or 5): f5dirs
2017-05-17 12:35:20 Found service (at boot, runlevel 3 or 5): fips

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:20 Found service (at boot, runlevel 3 or 5): fw_update


2017-05-17 12:35:20 Found service (at boot, runlevel 3 or 5): httpd
2017-05-17 12:35:20 Found service (at boot, runlevel 3 or 5): httpd_sam
2017-05-17 12:35:20 Found service (at boot, runlevel 3 or 5): hyperv_promote_pv_drv
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): increase_entropy
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): ip6tables
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): iptables
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): irqbalance
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): lopd
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): lvm2-monitor
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): mdmonitor
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): messagebus
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): netfs
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): network
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): ntpd
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): pkg-tools
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): qkview
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): rsync
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): runit
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): smartd
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): sshd
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): stratospfinit
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): syslog-ng
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): sysstat
2017-05-17 12:35:21 Found service (at boot, runlevel 3 or 5): udev-post
2017-05-17 12:35:21 Hint: Run chkconfig --list to see all services and disable unneeded services
2017-05-17 12:35:21 Result: Found 33 services at startup
2017-05-17 12:35:21 ===---------------------------------------------------------------===
2017-05-17 12:35:21 Skipped test BOOT-5180 (Check for Linux boot services (Debian style))
2017-05-17 12:35:21 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:21 ===---------------------------------------------------------------===
2017-05-17 12:35:21 Performing test ID BOOT-5184 (Check permissions for boot files/scripts)
2017-05-17 12:35:21 Result: checking /etc/init.d scripts for writable bit
2017-05-17 12:35:21 Test: checking if directory /etc/init.d exists
2017-05-17 12:35:21 Result: directory /etc/init.d found
2017-05-17 12:35:21 Test: checking for available files in directory
2017-05-17 12:35:21 Result: found no files in directory.
2017-05-17 12:35:21 Test: checking if directory /etc/rc.d exists
2017-05-17 12:35:21 Result: directory /etc/rc.d found
2017-05-17 12:35:21 Test: checking for available files in directory
2017-05-17 12:35:21 Result: found files in directory, checking permissions now
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/rc
2017-05-17 12:35:21 Result: good, file /etc/rc.d/rc not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/rc.local
2017-05-17 12:35:21 Result: good, file /etc/rc.d/rc.local not world writable

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/cgconfig


2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/cgconfig not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/smartd
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/smartd not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/lvm2-monitor
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/lvm2-monitor not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/rpcbind
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/rpcbind not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/auditd
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/auditd not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/ntpdate
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/ntpdate not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/messagebus
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/messagebus not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/rsync
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/rsync not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/sysstat
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/sysstat not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/restorecond
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/restorecond not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/dhclient
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/dhclient not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/runit
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/runit not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/multipathd
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/multipathd not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/fips
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/fips not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/ip6tables
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/ip6tables not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/functions
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/functions not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/lvm2-lvmetad
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/lvm2-lvmetad not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/iptables
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/iptables not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/qkview
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/qkview not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/irqbalance
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/irqbalance not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/cgred
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/cgred not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/pkg-tools
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/pkg-tools not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/mdmonitor

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/mdmonitor not world writable


2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/entropy.init
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/entropy.init not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/hsqldb
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/hsqldb not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/f5dirs
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/f5dirs not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/killall
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/killall not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/single
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/single not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/ntpd
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/ntpd not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/netconsole
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/netconsole not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/sshd
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/sshd not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/udev-post
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/udev-post not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/httpd
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/httpd not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/sandbox
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/sandbox not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/htcacheclean
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/htcacheclean not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/halt
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/halt not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/network
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/network not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/rdisc
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/rdisc not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/cluster
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/cluster not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/mysql
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/mysql not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/f5functions
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/f5functions not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/fw_update
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/fw_update not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/hyperv_promote_pv_drv
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/hyperv_promote_pv_drv not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/syslog-ng
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/syslog-ng not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/blk-availability
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/blk-availability not world writable

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/netfs


2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/netfs not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/lm_sensors
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/lm_sensors not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/crond
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/crond not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/bigstart
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/bigstart not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/lopd
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/lopd not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/httpd_sam
2017-05-17 12:35:21 Result: good, file /etc/rc.d/init.d/httpd_sam not world writable
2017-05-17 12:35:21 Test: checking permissions of file /etc/rc.d/init.d/increase_entropy
2017-05-17 12:35:22 Result: good, file /etc/rc.d/init.d/increase_entropy not world writable
2017-05-17 12:35:22 Test: checking permissions of file /etc/rc.d/init.d/stratospfinit
2017-05-17 12:35:22 Result: good, file /etc/rc.d/init.d/stratospfinit not world writable
2017-05-17 12:35:22 Test: checking permissions of file /etc/rc.d/rc.sysinit
2017-05-17 12:35:22 Result: good, file /etc/rc.d/rc.sysinit not world writable
2017-05-17 12:35:22 Test: checking permissions of file /etc/rc.d/rc.sysinit.plymouthd
2017-05-17 12:35:22 Result: good, file /etc/rc.d/rc.sysinit.plymouthd not world writable
2017-05-17 12:35:22 Test: checking permissions of file /etc/rc.d/rc.sysinit.f5
2017-05-17 12:35:22 Result: good, file /etc/rc.d/rc.sysinit.f5 not world writable
2017-05-17 12:35:22 Test: checking permissions of file /etc/rc.d/rc.sysinit.glibc
2017-05-17 12:35:22 Result: good, file /etc/rc.d/rc.sysinit.glibc not world writable
2017-05-17 12:35:22 Test: checking if directory /etc/rcS.d exists
2017-05-17 12:35:22 Result: directory /etc/rcS.d not found. Skipping..
2017-05-17 12:35:22 Test: Checking /etc/rc0.d scripts for writable bit
2017-05-17 12:35:22 Test: Checking /etc/rc1.d scripts for writable bit
2017-05-17 12:35:22 Test: Checking /etc/rc2.d scripts for writable bit
2017-05-17 12:35:22 Test: Checking /etc/rc3.d scripts for writable bit
2017-05-17 12:35:22 Test: Checking /etc/rc4.d scripts for writable bit
2017-05-17 12:35:22 Test: Checking /etc/rc5.d scripts for writable bit
2017-05-17 12:35:22 Test: Checking /etc/rc6.d scripts for writable bit
2017-05-17 12:35:22 Action: checking symlink for file /etc/rc
2017-05-17 12:35:22 Note: Using real readlink binary to determine symlink on /etc/rc
2017-05-17 12:35:22 Result: readlink shows /etc/rc.d/rc as output
2017-05-17 12:35:22 Result: symlink found, pointing to file /etc/rc.d/rc
2017-05-17 12:35:22 Result: found the path behind this symlink (/etc/rc.d/rc --> /etc/rc)
2017-05-17 12:35:22 Test: Checking /etc/rc.d/rc file for writable bit
2017-05-17 12:35:22 Result: good, file /etc/rc.d/rc not world writable
2017-05-17 12:35:22 Action: checking symlink for file /etc/rc.local
2017-05-17 12:35:22 Note: Using real readlink binary to determine symlink on /etc/rc.local
2017-05-17 12:35:22 Result: readlink shows /etc/rc.d/rc.local as output
2017-05-17 12:35:22 Result: symlink found, pointing to file /etc/rc.d/rc.local
2017-05-17 12:35:22 Result: found the path behind this symlink (/etc/rc.d/rc.local --> /etc/rc.local)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:22 Test: Checking /etc/rc.d/rc.local file for writable bit


2017-05-17 12:35:22 Result: good, file /etc/rc.d/rc.local not world writable
2017-05-17 12:35:22 Action: checking symlink for file /etc/rc.d/rc.sysinit
2017-05-17 12:35:22 Result: file /etc/rc.d/rc.sysinit is not a symlink
2017-05-17 12:35:22 Test: Checking /etc/rc.d/rc.sysinit file for writable bit
2017-05-17 12:35:22 Result: good, file /etc/rc.d/rc.sysinit not world writable
2017-05-17 12:35:22 Hardening: assigned maximum number of hardening points for this item (3). Currently having 3 points
(out of 3)
2017-05-17 12:35:22 ===---------------------------------------------------------------===
2017-05-17 12:35:22 Performing test ID BOOT-5202 (Check uptime of system)
2017-05-17 12:35:22 Uptime (in seconds): 508558
2017-05-17 12:35:22 Uptime (in days): 5
2017-05-17 12:35:22 ===---------------------------------------------------------------===
2017-05-17 12:35:22 Performing test ID BOOT-5260 (Check single user mode for systemd)
2017-05-17 12:35:22 Test: Searching /usr/lib/systemd/system/rescue.service
2017-05-17 12:35:22 Result: file /usr/lib/systemd/system/rescue.service does not exist
2017-05-17 12:35:22 Checking permissions of /home/admin/assess/include/tests_kernel
2017-05-17 12:35:22 File permissions are OK
2017-05-17 12:35:22 ===---------------------------------------------------------------===
2017-05-17 12:35:22 Action: Performing tests from category: Kernel
2017-05-17 12:35:22 ===---------------------------------------------------------------===
2017-05-17 12:35:22 Performing test ID KRNL-5622 (Determine Linux default run level)
2017-05-17 12:35:22 Test: Checking for systemd default.target
2017-05-17 12:35:22 Result: no systemd found, so trying inittab
2017-05-17 12:35:22 Test: Checking /etc/inittab
2017-05-17 12:35:22 Result: file /etc/inittab found
2017-05-17 12:35:22 Test: Checking default Linux run level
2017-05-17 12:35:22 Found default run level '3'
2017-05-17 12:35:22 ===---------------------------------------------------------------===
2017-05-17 12:35:22 Performing test ID KRNL-5677 (Check CPU options and support)
2017-05-17 12:35:22 Test: Checking /proc/cpuinfo
2017-05-17 12:35:22 Result: found /proc/cpuinfo
2017-05-17 12:35:22 Test: Checking CPU options (XD/NX/PAE)
2017-05-17 12:35:22 PAE: Yes
2017-05-17 12:35:22 NX: Yes
2017-05-17 12:35:22 Result: PAE or No eXecute option(s) both found
2017-05-17 12:35:22 ===---------------------------------------------------------------===
2017-05-17 12:35:22 Performing test ID KRNL-5695 (Determine Linux kernel version and release number)
2017-05-17 12:35:22 Result: found kernel release 3.10.0-327.36.3.el7.x86_64
2017-05-17 12:35:22 Result: found kernel version #1 SMP Fri Apr 28 17:36:29 PDT 2017
2017-05-17 12:35:22 ===---------------------------------------------------------------===
2017-05-17 12:35:22 Performing test ID KRNL-5723 (Determining if Linux kernel is monolithic)
2017-05-17 12:35:22 Test: checking if kernel is monolithic or modular
2017-05-17 12:35:22 Result: Found modular kernel
2017-05-17 12:35:22 ===---------------------------------------------------------------===

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:22 Performing test ID KRNL-5726 (Checking Linux loaded kernel modules)
2017-05-17 12:35:22 Loaded modules according lsmod:
2017-05-17 12:35:22 Loaded module: 3w_9xxx
2017-05-17 12:35:22 Loaded module: 8021q
2017-05-17 12:35:22 Loaded module: acpi_cpufreq
2017-05-17 12:35:22 Loaded module: ahci
2017-05-17 12:35:22 Loaded module: amd74xx
2017-05-17 12:35:22 Loaded module: ata_piix
2017-05-17 12:35:22 Loaded module: binfmt_misc
2017-05-17 12:35:22 Loaded module: bridge
2017-05-17 12:35:22 Loaded module: crc_t10dif
2017-05-17 12:35:22 Loaded module: crct10dif_common
2017-05-17 12:35:22 Loaded module: dm_bufio
2017-05-17 12:35:22 Loaded module: dm_log
2017-05-17 12:35:22 Loaded module: dm_mirror
2017-05-17 12:35:22 Loaded module: dm_mod
2017-05-17 12:35:22 Loaded module: dm_region_hash
2017-05-17 12:35:22 Loaded module: dm_snapshot
2017-05-17 12:35:22 Loaded module: dm_zero
2017-05-17 12:35:22 Loaded module: evchannel
2017-05-17 12:35:22 Loaded module: ext2
2017-05-17 12:35:22 Loaded module: ext3
2017-05-17 12:35:22 Loaded module: garp
2017-05-17 12:35:22 Loaded module: hrsleep
2017-05-17 12:35:22 Loaded module: i2c_core
2017-05-17 12:35:22 Loaded module: i2c_dev
2017-05-17 12:35:22 Loaded module: i2c_i801
2017-05-17 12:35:22 Loaded module: ide_core
2017-05-17 12:35:22 Loaded module: ide_gd_mod
2017-05-17 12:35:22 Loaded module: igb
2017-05-17 12:35:22 Loaded module: ip_tables
2017-05-17 12:35:22 Loaded module: ipt_REJECT
2017-05-17 12:35:22 Loaded module: iptable_filter
2017-05-17 12:35:22 Loaded module: iptable_raw
2017-05-17 12:35:22 Loaded module: isofs
2017-05-17 12:35:22 Loaded module: ixgbe
2017-05-17 12:35:22 Loaded module: jbd
2017-05-17 12:35:22 Loaded module: jiffies
2017-05-17 12:35:22 Loaded module: lasthop
2017-05-17 12:35:22 Loaded module: libahci
2017-05-17 12:35:22 Loaded module: libata
2017-05-17 12:35:22 Loaded module: libsas
2017-05-17 12:35:22 Loaded module: llc
2017-05-17 12:35:22 Loaded module: loop
2017-05-17 12:35:22 Loaded module: lpc_ich

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:22 Loaded module: mbcache


2017-05-17 12:35:22 Loaded module: mfd_core
2017-05-17 12:35:22 Loaded module: mptbase
2017-05-17 12:35:22 Loaded module: mptscsih
2017-05-17 12:35:22 Loaded module: mptspi
2017-05-17 12:35:22 Loaded module: mrp
2017-05-17 12:35:22 Loaded module: mvsas
2017-05-17 12:35:22 Loaded module: nf_conntrack
2017-05-17 12:35:22 Loaded module: nf_conntrack_ipv4
2017-05-17 12:35:22 Loaded module: nf_defrag_ipv4
2017-05-17 12:35:22 Loaded module: nls_utf8
2017-05-17 12:35:22 Loaded module: piix
2017-05-17 12:35:22 Loaded module: pps_core
2017-05-17 12:35:22 Loaded module: ptp
2017-05-17 12:35:22 Loaded module: qat_1_5_mux
2017-05-17 12:35:22 Loaded module: qat_mux
2017-05-17 12:35:22 Loaded module: raid0
2017-05-17 12:35:22 Loaded module: raid1
2017-05-17 12:35:22 Loaded module: sata_sil
2017-05-17 12:35:22 Loaded module: sata_svw
2017-05-17 12:35:22 Loaded module: scsi_transport_sas
2017-05-17 12:35:22 Loaded module: scsi_transport_spi
2017-05-17 12:35:22 Loaded module: sd_mod
2017-05-17 12:35:22 Loaded module: serverworks
2017-05-17 12:35:22 Loaded module: sg
2017-05-17 12:35:22 Loaded module: sha512_generic
2017-05-17 12:35:22 Loaded module: stp
2017-05-17 12:35:22 Loaded module: sysstats
2017-05-17 12:35:22 Loaded module: tg3
2017-05-17 12:35:22 Loaded module: ti_usb_3410_5052
2017-05-17 12:35:22 Loaded module: virtio
2017-05-17 12:35:22 Loaded module: virtio_blk
2017-05-17 12:35:22 Loaded module: virtio_pci
2017-05-17 12:35:22 Loaded module: virtio_ring
2017-05-17 12:35:22 Loaded module: virtio_scsi
2017-05-17 12:35:22 Loaded module: vnic
2017-05-17 12:35:22 Loaded module: womdict
2017-05-17 12:35:22 Loaded module: xen_blkfront
2017-05-17 12:35:22 Loaded module: xt_CT
2017-05-17 12:35:22 Loaded module: xt_owner
2017-05-17 12:35:22 Loaded module: xt_physdev
2017-05-17 12:35:22 Loaded module: xt_state
2017-05-17 12:35:22 ===---------------------------------------------------------------===
2017-05-17 12:35:22 Performing test ID KRNL-5728 (Checking Linux kernel config)
2017-05-17 12:35:22 Result: found config (/boot/config-3.10.0-327.36.3.el7.x86_64)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:22 ===---------------------------------------------------------------===


2017-05-17 12:35:22 Performing test ID KRNL-5730 (Checking disk I/O kernel scheduler)
2017-05-17 12:35:22 Test: Checking the default I/O kernel scheduler
2017-05-17 12:35:22 Result: found IO scheduler 'deadline'
2017-05-17 12:35:22 ===---------------------------------------------------------------===
2017-05-17 12:35:22 Skipped test KRNL-5745 (Checking FreeBSD loaded kernel modules)
2017-05-17 12:35:22 Reason to skip: Incorrect guest OS (FreeBSD only)
2017-05-17 12:35:22 ===---------------------------------------------------------------===
2017-05-17 12:35:22 Skipped test KRNL-5831 (Checking DragonFly loaded kernel modules)
2017-05-17 12:35:22 Reason to skip: Incorrect guest OS (DragonFly only)
2017-05-17 12:35:22 ===---------------------------------------------------------------===
2017-05-17 12:35:22 Skipped test KRNL-5770 (Checking active kernel modules)
2017-05-17 12:35:22 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:35:22 ===---------------------------------------------------------------===
2017-05-17 12:35:22 Skipped test KRNL-5788 (Checking availability new Linux kernel)
2017-05-17 12:35:22 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:22 ===---------------------------------------------------------------===
2017-05-17 12:35:22 Performing test ID KRNL-5820 (Checking core dumps configuration)
2017-05-17 12:35:22 Test: Checking presence /etc/security/limits.conf
2017-05-17 12:35:22 Result: file /etc/security/limits.conf exists
2017-05-17 12:35:22 Test: Checking if core dumps are disabled in /etc/security/limits.conf
2017-05-17 12:35:22 Result: core dumps (soft and hard) are both disabled
2017-05-17 12:35:22 Hardening: assigned maximum number of hardening points for this item (3). Currently having 6 points
(out of 6)
2017-05-17 12:35:22 Test: Checking sysctl value of fs.suid_dumpable
2017-05-17 12:35:22 Result: value 0 found
2017-05-17 12:35:23 Result: found default option, some programs can dump (not processes which need to change
credentials)
2017-05-17 12:35:23 Hardening: assigned maximum number of hardening points for this item (1). Currently having 7 points
(out of 7)
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Performing test ID KRNL-5830 (Checking if system is running on the latest installed kernel)
2017-05-17 12:35:23 Test: Checking presence /var/run/reboot-required.pkgs
2017-05-17 12:35:23 Result: file /var/run/reboot-required.pkgs not found
2017-05-17 12:35:23 Result: /boot exists, performing more tests from here
2017-05-17 12:35:23 Result: found symlink of /boot/vmlinuz, skipping file
2017-05-17 12:35:23 Result: using 3.10.0.327.36.3 as my kernel version (stripped)
2017-05-17 12:35:23 Result: found /boot/vmlinuz
2017-05-17 12:35:23 Result: found /boot/vmlinuz-3.10.0-327.36.3.el7.x86_64
2017-05-17 12:35:23 Action: checking relevant kernels
2017-05-17 12:35:23 Output: vmlinuz 3.10.0.327.36.3
2017-05-17 12:35:23 Result: Found vmlinuz
2017-05-17 12:35:23 Result: Found 3.10.0.327.36.3 (= our kernel)
2017-05-17 12:35:23 Result: we found our kernel on disk as last entry, so seems to be up-to-date

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:23 Hardening: assigned maximum number of hardening points for this item (5). Currently having 12 points
(out of 12)
2017-05-17 12:35:23 Checking permissions of /home/admin/assess/include/tests_memory_processes
2017-05-17 12:35:23 File permissions are OK
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Action: Performing tests from category: Memory and Processes
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Performing test ID PROC-3602 (Checking /proc/meminfo for memory details)
2017-05-17 12:35:23 Result: found /proc/meminfo
2017-05-17 12:35:23 Result: Found 8167288 kB memory
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Skipped test PROC-3604 (Query prtconf for memory details)
2017-05-17 12:35:23 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Performing test ID PROC-3612 (Check dead or zombie processes)
2017-05-17 12:35:23 Result: found one or more dead or zombie processes
2017-05-17 12:35:23 Output: PIDs 9557 9559 9561 28120 28164 28198 28227 30541 Comment [4]: 9557 ? Z 0:00 [rm]
2017-05-17 12:35:23 Suggestion: Check the output of ps for dead or zombie processes [test:PROC-3612] [details:-] <defunct>
[solution:-]
9559 ? Z 0:00 [rm] <defunct>
2017-05-17 12:35:23 ===---------------------------------------------------------------===
9561 ? Z 0:00 [rm] <defunct>
2017-05-17 12:35:23 Performing test ID PROC-3614 (Check heavy IO waiting based processes)
28120 ? Z 0:00 [generate_config] <defunct>
2017-05-17 12:35:23 Result: No processes were waiting for IO requests to be handled first
28164 ? Z 0:00 [generate_config] <defunct>
2017-05-17 12:35:23 Checking permissions of /home/admin/assess/include/tests_authentication
28198 ? Z 0:00 [generate_config] <defunct>
2017-05-17 12:35:23 File permissions are OK
28227 ? Z 0:00 [generate_config] <defunct>
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Action: Performing tests from category: Users, Groups and Authentication
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Performing test ID AUTH-9204 (Check users with an UID of zero)
2017-05-17 12:35:23 Test: Searching accounts with UID 0
2017-05-17 12:35:23 Result: Found more than one administrator accounts
2017-05-17 12:35:23 Warning: Multiple users with UID 0 found in passwd file [test:AUTH-9204] [details:-] [solution:-]
2017-05-17 12:35:23 Administrator account: admin:0
2017-05-17 12:35:23 Administrator account: <anon>:0 Comment [5]: Is <anon> using a general or a
2017-05-17 12:35:23 ===---------------------------------------------------------------===
customer specific password?
2017-05-17 12:35:23 Performing test ID AUTH-9208 (Check non-unique accounts in passwd file)
2017-05-17 12:35:23 Test: Checking for non-unique accounts
2017-05-17 12:35:23 Result: found multiple accounts with same UID
2017-05-17 12:35:23 Output (non-unique UIDs): 0
2017-05-17 12:35:23 Warning: Multiple accounts found with same UID [test:AUTH-9208] [details:-] [solution:-]
Comment [6]: User Admin and user
2017-05-17 12:35:23 Remarks: Non unique UIDs can be a risk for the system or part of a configuration mistake Qsight have the same UID.
2017-05-17 12:35:23 Prerequisite test: /usr/sbin/chkgrp
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Skipped test AUTH-9212 (Test group file)
2017-05-17 12:35:23 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:23 ===---------------------------------------------------------------===

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:23 Performing test ID AUTH-9216 (Check group and shadow group files)
2017-05-17 12:35:23 Test: Checking for grpck binary output
2017-05-17 12:35:23 Warning: grpck binary found errors in one or more group files [test:AUTH-9216] [details:-]
[solution:-]
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Skipped test AUTH-9218 (Check login shells for passwordless accounts)
2017-05-17 12:35:23 Reason to skip: Incorrect guest OS (FreeBSD only)
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Skipped test AUTH-9489 (Check login shells for passwordless accounts)
2017-05-17 12:35:23 Reason to skip: Incorrect guest OS (DragonFly only)
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Performing test ID AUTH-9222 (Check unique groups (IDs))
2017-05-17 12:35:23 Test: Checking for non unique group ID's in /etc/group
2017-05-17 12:35:23 Result: All group ID's are unique
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Performing test ID AUTH-9226 (Check unique group names)
2017-05-17 12:35:23 Test: Checking for non unique group names in /etc/group
2017-05-17 12:35:23 Result: All group names are unique
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Performing test ID AUTH-9228 (Check password file consistency with pwck)
2017-05-17 12:35:23 Test: Checking password file consistency (pwck)
2017-05-17 12:35:23 Result: pwck check didn't find any problems
2017-05-17 12:35:23 Hardening: assigned maximum number of hardening points for this item (2). Currently having 14 points
(out of 14)
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Performing test ID AUTH-9234 (Query user accounts)
2017-05-17 12:35:23 Test: Read system users (including root user) from password database (e.g. /etc/passwd)
2017-05-17 12:35:23 Result: found minimal user id specified: 500
2017-05-17 12:35:23 Linux real users output (ID = 0, or 500+, but not 65534):
2017-05-17 12:35:23 Real user: root,0
2017-05-17 12:35:23 Real user: tmshnobody,32765
2017-05-17 12:35:23 Real user: admin,0
2017-05-17 12:35:23 Real user: qsight,0
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Performing test ID AUTH-9240 (Query NIS+ authentication support)
2017-05-17 12:35:23 Result: NIS+ authentication not enabled
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Performing test ID AUTH-9242 (Query NIS authentication support)
2017-05-17 12:35:23 Result: NIS authentication not enabled
2017-05-17 12:35:23 ===---------------------------------------------------------------===
2017-05-17 12:35:23 Performing test ID AUTH-9250 (Checking sudoers file)
2017-05-17 12:35:23 Test: checking presence /etc/sudoers
2017-05-17 12:35:23 Result: file /etc/sudoers not found
2017-05-17 12:35:23 Test: checking presence /usr/local/etc/sudoers
2017-05-17 12:35:23 Result: file /usr/local/etc/sudoers not found

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:23 Test: checking presence /usr/pkg/etc/sudoers


2017-05-17 12:35:23 Result: file /usr/pkg/etc/sudoers not found
2017-05-17 12:35:23 Result: sudoers file NOT found
2017-05-17 12:35:24 ===---------------------------------------------------------------===
2017-05-17 12:35:24 Skipped test AUTH-9252 (Check sudoers file)
2017-05-17 12:35:24 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:24 ===---------------------------------------------------------------===
2017-05-17 12:35:24 Skipped test AUTH-9254 (Solaris passwordless accounts)
2017-05-17 12:35:24 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:35:24 ===---------------------------------------------------------------===
2017-05-17 12:35:24 Performing test ID AUTH-9262 (Checking presence password strength testing tools (PAM))
2017-05-17 12:35:24 Searching PAM password testing modules (cracklib, passwdqc, pwquality)
2017-05-17 12:35:24 Result: found pam_cracklib.so (crack library PAM) in /lib/security
2017-05-17 12:35:24 Result: found pam_cracklib.so (crack library PAM) in /lib64/security
2017-05-17 12:35:24 Result: pam_cracklib.so found
2017-05-17 12:35:24 Result: pam_passwdqc.so NOT found (passwd quality control PAM)
2017-05-17 12:35:24 Result: pam_pwquality.so NOT found (pwquality control PAM)
2017-05-17 12:35:24 Result: found at least one PAM module for password strength testing
2017-05-17 12:35:24 Hardening: assigned maximum number of hardening points for this item (3). Currently having 17 points
(out of 17)
2017-05-17 12:35:24 ===---------------------------------------------------------------===
2017-05-17 12:35:24 Performing test ID AUTH-9264 (Checking presence pam.conf)
2017-05-17 12:35:24 Test: Checking file /etc/pam.conf
2017-05-17 12:35:24 Result: file /etc/pam.conf could not be found
2017-05-17 12:35:24 ===---------------------------------------------------------------===
2017-05-17 12:35:24 Performing test ID AUTH-9266 (Checking presence pam.d files)
2017-05-17 12:35:24 Test: Checking directory /etc/pam.d
2017-05-17 12:35:24 Result: directory /etc/pam.d exists
2017-05-17 12:35:24 Test: searching PAM configuration files
2017-05-17 12:35:24 ===---------------------------------------------------------------===
2017-05-17 12:35:24 Performing test ID AUTH-9268 (Checking presence pam.d files)
2017-05-17 12:35:24 Test: Searching pam modules
2017-05-17 12:35:24 Test: Checking /lib/i386-linux-gnu/security
2017-05-17 12:35:24 Result: directory /lib/i386-linux-gnu/security could not be found or is a symlink to another
directory
2017-05-17 12:35:24 Test: Checking /lib/security
2017-05-17 12:35:24 Result: directory /lib/security exists
2017-05-17 12:35:24 Found file: /lib/security/pam_access.so
2017-05-17 12:35:24 Found file: /lib/security/pam_apm.so
2017-05-17 12:35:24 Found file: /lib/security/pam_audit.so
2017-05-17 12:35:24 Found file: /lib/security/pam_bigip_authz.so
2017-05-17 12:35:24 Found file: /lib/security/pam_cap.so
2017-05-17 12:35:24 Found file: /lib/security/pam_chroot.so
2017-05-17 12:35:24 Found file: /lib/security/pam_console.so
2017-05-17 12:35:24 Found file: /lib/security/pam_cracklib.so

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:24 Found file: /lib/security/pam_debug.so


2017-05-17 12:35:24 Found file: /lib/security/pam_deny.so
2017-05-17 12:35:24 Found file: /lib/security/pam_echo.so
2017-05-17 12:35:24 Found file: /lib/security/pam_env.so
2017-05-17 12:35:24 Found file: /lib/security/pam_exec.so
2017-05-17 12:35:24 Found file: /lib/security/pam_faildelay.so
2017-05-17 12:35:24 Found file: /lib/security/pam_faillock.so
2017-05-17 12:35:24 Found file: /lib/security/pam_filter.so
2017-05-17 12:35:24 Found file: /lib/security/pam_ftp.so
2017-05-17 12:35:24 Found file: /lib/security/pam_group.so
2017-05-17 12:35:24 Found file: /lib/security/pam_issue.so
2017-05-17 12:35:24 Found file: /lib/security/pam_keyinit.so
2017-05-17 12:35:24 Found file: /lib/security/pam_krbdelegate.so
2017-05-17 12:35:24 Found file: /lib/security/pam_lastlog.so
2017-05-17 12:35:24 Found file: /lib/security/pam_ldap.so
2017-05-17 12:35:24 Found file: /lib/security/pam_limits.so
2017-05-17 12:35:24 Found file: /lib/security/pam_listfile.so
2017-05-17 12:35:24 Found file: /lib/security/pam_localuser.so
2017-05-17 12:35:24 Found file: /lib/security/pam_loginuid.so
2017-05-17 12:35:24 Found file: /lib/security/pam_mail.so
2017-05-17 12:35:24 Found file: /lib/security/pam_mkhomedir.so
2017-05-17 12:35:24 Found file: /lib/security/pam_motd.so
2017-05-17 12:35:24 Found file: /lib/security/pam_namespace.so
2017-05-17 12:35:24 Found file: /lib/security/pam_nologin.so
2017-05-17 12:35:24 Found file: /lib/security/pam_permit.so
2017-05-17 12:35:24 Found file: /lib/security/pam_postgresok.so
2017-05-17 12:35:24 Found file: /lib/security/pam_pwhistory.so
2017-05-17 12:35:24 Found file: /lib/security/pam_radius_auth.so
2017-05-17 12:35:24 Found file: /lib/security/pam_rhosts.so
2017-05-17 12:35:24 Found file: /lib/security/pam_rootok.so
2017-05-17 12:35:24 Found file: /lib/security/pam_securetty.so
2017-05-17 12:35:24 Found file: /lib/security/pam_selinux.so
2017-05-17 12:35:24 Found file: /lib/security/pam_sepermit.so
2017-05-17 12:35:24 Found file: /lib/security/pam_shells.so
2017-05-17 12:35:24 Found file: /lib/security/pam_stress.so
2017-05-17 12:35:24 Found file: /lib/security/pam_succeed_if.so
2017-05-17 12:35:24 Found file: /lib/security/pam_tacplus.so
2017-05-17 12:35:24 Found file: /lib/security/pam_tally2.so
2017-05-17 12:35:24 Found file: /lib/security/pam_time.so
2017-05-17 12:35:24 Found file: /lib/security/pam_timestamp.so
2017-05-17 12:35:24 Found file: /lib/security/pam_tmm_cc_ldap.so
2017-05-17 12:35:24 Found file: /lib/security/pam_tmm_crldp.so
2017-05-17 12:35:24 Found file: /lib/security/pam_tmm_ocsp.so
2017-05-17 12:35:24 Found file: /lib/security/pam_tty_audit.so
2017-05-17 12:35:24 Found file: /lib/security/pam_umask.so

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:24 Found file: /lib/security/pam_unix.so


2017-05-17 12:35:24 Found file: /lib/security/pam_userdb.so
2017-05-17 12:35:24 Found file: /lib/security/pam_warn.so
2017-05-17 12:35:24 Found file: /lib/security/pam_wheel.so
2017-05-17 12:35:24 Found file: /lib/security/pam_xauth.so
2017-05-17 12:35:24 Test: Checking /lib/x86_64-linux-gnu/security
2017-05-17 12:35:24 Result: directory /lib/x86_64-linux-gnu/security could not be found or is a symlink to another
directory
2017-05-17 12:35:24 Test: Checking /lib64/security
2017-05-17 12:35:24 Result: directory /lib64/security exists
2017-05-17 12:35:24 Found file: /lib64/security/pam_access.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_apm.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_audit.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_bigip_authz.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_cap.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_chroot.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_ck_connector.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_console.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_cracklib.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_debug.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_deny.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_echo.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_env.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_exec.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_faildelay.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_faillock.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_filter.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_ftp.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_group.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_issue.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_keyinit.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_krbdelegate.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_lastlog.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_ldap.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_limits.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_listfile.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_localuser.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_loginuid.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_mail.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_mkhomedir.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_motd.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_namespace.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_nologin.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_permit.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_postgresok.so

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:24 Found file: /lib64/security/pam_pwhistory.so


2017-05-17 12:35:24 Found file: /lib64/security/pam_radius_auth.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_rhosts.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_rootok.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_securetty.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_selinux.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_sepermit.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_shells.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_smbpass.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_stress.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_succeed_if.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_tacplus.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_tally2.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_time.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_timestamp.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_tty_audit.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_umask.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_unix.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_userdb.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_warn.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_wheel.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_winbind.so
2017-05-17 12:35:24 Found file: /lib64/security/pam_xauth.so
2017-05-17 12:35:24 Test: Checking /usr/lib
2017-05-17 12:35:24 Result: directory /usr/lib exists
2017-05-17 12:35:24 Test: Checking /usr/lib/security
2017-05-17 12:35:24 Result: directory /usr/lib/security could not be found or is a symlink to another directory
2017-05-17 12:35:24 ===---------------------------------------------------------------===
2017-05-17 12:35:24 Performing test ID AUTH-9278 (Checking LDAP pam status)
2017-05-17 12:35:24 Test: checking presence /etc/pam.d/common-auth
2017-05-17 12:35:24 Result: file /etc/pam.d/common-auth not found, skipping test
2017-05-17 12:35:24 Result: skipping test for this Linux version
2017-05-17 12:35:24 Manual: one or more manual actions are required for further testing of this control/plugin
2017-05-17 12:35:24 ===---------------------------------------------------------------===
2017-05-17 12:35:24 Skipped test AUTH-9282 (Checking password protected account without expire date)
2017-05-17 12:35:24 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:24 ===---------------------------------------------------------------===
2017-05-17 12:35:24 Skipped test AUTH-9283 (Checking accounts without password)
2017-05-17 12:35:24 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:24 ===---------------------------------------------------------------===
2017-05-17 12:35:24 Performing test ID AUTH-9286 (Checking user password aging)
2017-05-17 12:35:24 Test: Checking PASS_MIN_DAYS option in /etc/login.defs
2017-05-17 12:35:24 Result: password minimum age is not configured
2017-05-17 12:35:24 Suggestion: Configure minimum password age in /etc/login.defs [test:AUTH-9286] [details:-]
[solution:-]

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:24 Hardening: assigned partial number of hardening points (0 of 1). Currently having 17 points (out of
18)
2017-05-17 12:35:24 Test: Checking PASS_MAX_DAYS option in /etc/login.defs
2017-05-17 12:35:24 Result: password aging limits are not configured
2017-05-17 12:35:24 Suggestion: Configure maximum password age in /etc/login.defs [test:AUTH-9286] [details:-]
[solution:-]
2017-05-17 12:35:24 Hardening: assigned partial number of hardening points (0 of 1). Currently having 17 points (out of
19)
2017-05-17 12:35:24 ===---------------------------------------------------------------===
2017-05-17 12:35:24 Performing test ID AUTH-9288 (Checking for expired passwords)
2017-05-17 12:35:24 Test: check if we can access /etc/shadow (escaped: /etc/shadow)
2017-05-17 12:35:24 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:35:24 Result: file /etc/shadow is readable (or directory accessible).
2017-05-17 12:35:24 Data: Days since epoch is 17303
2017-05-17 12:35:24 Test: collecting accounts which have an expired password (last day changed + maximum change time)
2017-05-17 12:35:24 Result: good, no passwords have been expired
2017-05-17 12:35:25 Hardening: assigned maximum number of hardening points for this item (10). Currently having 27
points (out of 29)
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Skipped test AUTH-9304 (Check single user login configuration)
2017-05-17 12:35:25 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Skipped test AUTH-9306 (Check single boot authentication)
2017-05-17 12:35:25 Reason to skip: Incorrect guest OS (HP-UX only)
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Performing test ID AUTH-9308 (Check single user login configuration)
2017-05-17 12:35:25 Test: Searching /etc/inittab
2017-05-17 12:35:25 Result: file /etc/inittab exists
2017-05-17 12:35:25 Test: checking presence sulogin for single user mode
2017-05-17 12:35:25 Test: Searching /etc/sysconfig/init
2017-05-17 12:35:25 Result: file /etc/sysconfig/init exists
2017-05-17 12:35:25 Test: checking presence sulogin for single user mode
2017-05-17 12:35:25 Result: option not set, no password needed at single user mode boot
2017-05-17 12:35:25 Warning: No password set for single mode [test:AUTH-9308] [details:-] [solution:-]
Comment [7]: Although the physical console
2017-05-17 12:35:25 Suggestion: Set password for single user mode to minimize physical access attack surface [test:AUTH- isnt accessable, it should be protected by a password. This
9308] [details:-] [solution:-]
can be exploited through other accounts to get elevated rights.
2017-05-17 12:35:25 Hardening: assigned partial number of hardening points (0 of 2). Currently having 27 points (out of
31)
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Performing test ID AUTH-9328 (Default umask values)
2017-05-17 12:35:25 Test: Checking /etc/profile.d directory
2017-05-17 12:35:25 Result: found /etc/profile.d, with one or more files in it
2017-05-17 12:35:25 Test: Checking /etc/profile
2017-05-17 12:35:25 Result: file /etc/profile exists
2017-05-17 12:35:25 Test: Checking umask value in /etc/profile

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:25 Result: found multiple umask values configured in /etc/profile Comment [8]: if [ $UID -gt 199 ] && [ "`id -
2017-05-17 12:35:25 Result: umask 002 could be more strict
gn`" = "`id -un`" ]; then
2017-05-17 12:35:25 Hardening: assigned partial number of hardening points (1 of 2). Currently having 28 points (out of
umask 002
33)
else
2017-05-17 12:35:25 Result: umask 022 could be more strict
umask 022
2017-05-17 12:35:25 Hardening: assigned partial number of hardening points (1 of 2). Currently having 29 points (out of
fi
35)
2017-05-17 12:35:25 Suggestion: Default umask in /etc/profile or /etc/profile.d/custom.sh could be more strict (e.g.
027) [test:AUTH-9328] [details:-] [solution:-] What is the use of this? Looks like unfinished code.
2017-05-17 12:35:25 Hardening: assigned partial number of hardening points (0 of 2). Currently having 29 points (out of
37)
2017-05-17 12:35:25 Test: Checking umask entries in /etc/passwd (pam_umask)
2017-05-17 12:35:25 Result: file /etc/passwd exists
2017-05-17 12:35:25 Test: Checking umask value in /etc/passwd
2017-05-17 12:35:25 Manual: one or more manual actions are required for further testing of this control/plugin
2017-05-17 12:35:25 Test: Checking /etc/login.defs
2017-05-17 12:35:25 Result: file /etc/login.defs exists
2017-05-17 12:35:25 Test: Checking umask value in /etc/login.defs
2017-05-17 12:35:25 Result: umask is 0077, which is fine
2017-05-17 12:35:25 Hardening: assigned maximum number of hardening points for this item (2). Currently having 31 points
(out of 39)
2017-05-17 12:35:25 Test: Checking /etc/init.d/functions
2017-05-17 12:35:25 Result: file /etc/init.d/functions exists
2017-05-17 12:35:25 Test: Checking umask value in /etc/init.d/functions
2017-05-17 12:35:25 Result: found umask 022, which could be improved
2017-05-17 12:35:25 Hardening: assigned partial number of hardening points (0 of 2). Currently having 31 points (out of
41)
2017-05-17 12:35:25 Test: Checking /etc/init.d/rc
2017-05-17 12:35:25 Result: file /etc/init.d/rc does not exist
2017-05-17 12:35:25 Test: Checking /etc/init.d/rcS
2017-05-17 12:35:25 Result: file /etc/init.d/rcS does not exist
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Skipped test AUTH-9340 (Solaris account locking)
2017-05-17 12:35:25 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Performing test ID AUTH-9402 (Query LDAP authentication support)
2017-05-17 12:35:25 Result: LDAP authentication not enabled
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Skipped test AUTH-9406 (Query LDAP servers in client configuration)
2017-05-17 12:35:25 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Performing test ID AUTH-9408 (Logging of failed login attempts via /etc/login.defs)
2017-05-17 12:35:25 Test: Checking FAILLOG_ENAB option in /etc/login.defs Comment [9]: Why would you not log? Easy
2017-05-17 12:35:25 Result: failed login attempts are not logged fix.

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:25 Hardening: assigned partial number of hardening points (0 of 1). Currently having 31 points (out of
42)
2017-05-17 12:35:25 Checking permissions of /home/admin/assess/include/tests_shells
2017-05-17 12:35:25 File permissions are OK
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Action: Performing tests from category: Shells
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Skipped test SHLL-6202 (Check console TTYs)
2017-05-17 12:35:25 Reason to skip: Incorrect guest OS (FreeBSD only)
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Performing test ID SHLL-6211 (Checking available and valid shells)
2017-05-17 12:35:25 Test: Searching for /etc/shells
2017-05-17 12:35:25 Result: Found /etc/shells file
2017-05-17 12:35:25 Test: Reading available shells from /etc/shells
2017-05-17 12:35:25 Found installed shell: /bin/sh
2017-05-17 12:35:25 Found installed shell: /bin/bash
2017-05-17 12:35:25 Found installed shell: /sbin/nologin
2017-05-17 12:35:25 Found installed shell: /usr/bin/tmsh
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Performing test ID SHLL-6220 (Checking available and valid shells)
2017-05-17 12:35:25 Test: Search for session timeout tools or settings in shell
2017-05-17 12:35:25 IsRunning: process 'timeoutd' not found
2017-05-17 12:35:25 IsRunning: process 'autolog' not found
2017-05-17 12:35:25 Result: could not find TMOUT setting in /etc/profile
2017-05-17 12:35:25 Result: could not find export, readonly or typeset -r in /etc/profile
2017-05-17 12:35:25 Result: could not find TMOUT setting in /etc/profile.d/*.sh
2017-05-17 12:35:25 Result: could not find export, readonly or typeset -r in /etc/profile
2017-05-17 12:35:25 Hardening: assigned partial number of hardening points (1 of 3). Currently having 32 points (out of
45)
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Performing test ID SHLL-6230 (Perform umask check for shell configurations)
2017-05-17 12:35:25 Result: file /etc/bashrc exists
2017-05-17 12:35:25 Result: found umask 002 in /etc/bashrc
2017-05-17 12:35:25 Result: umask 002 can be hardened
2017-05-17 12:35:25 Result: found umask 022 in /etc/bashrc
2017-05-17 12:35:25 Result: umask 022 can be hardened
2017-05-17 12:35:25 Hardening: assigned partial number of hardening points (1 of 3). Currently having 33 points (out of
48)
2017-05-17 12:35:25 Result: file /etc/bash.bashrc not found
2017-05-17 12:35:25 Result: file /etc/csh.cshrc exists
2017-05-17 12:35:25 Result: found umask 077 in /etc/csh.cshrc
2017-05-17 12:35:25 Result: umask 077 is considered a properly hardened value
2017-05-17 12:35:25 Result: found umask 077 in /etc/csh.cshrc
2017-05-17 12:35:25 Result: umask 077 is considered a properly hardened value

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:25 Hardening: assigned partial number of hardening points (1 of 3). Currently having 34 points (out of
51)
2017-05-17 12:35:25 Result: file /etc/profile exists
2017-05-17 12:35:25 Result: found umask 002 in /etc/profile
2017-05-17 12:35:25 Result: umask 002 can be hardened Comment [10]: Easy fix.
2017-05-17 12:35:25 Result: found umask 022 in /etc/profile
2017-05-17 12:35:25 Result: umask 022 can be hardened
2017-05-17 12:35:25 Hardening: assigned partial number of hardening points (1 of 3). Currently having 35 points (out of
54)
2017-05-17 12:35:25 Checking permissions of /home/admin/assess/include/tests_filesystems
2017-05-17 12:35:25 File permissions are OK
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Action: Performing tests from category: File systems
2017-05-17 12:35:25 ===---------------------------------------------------------------===
2017-05-17 12:35:25 Performing test ID FILE-6310 (Checking /tmp, /home and /var directory)
2017-05-17 12:35:25 Test: Checking if /home is mounted separately or mounted on / file system
2017-05-17 12:35:25 Result: directory /home exists
2017-05-17 12:35:25 Result: /home not found in mount list. Directory most likely stored on / file system
2017-05-17 12:35:25 Suggestion: To decrease the impact of a full /home file system, place /home on a separated partition
[test:FILE-6310] [details:-] [solution:-]
2017-05-17 12:35:26 Hardening: assigned partial number of hardening points (9 of 10). Currently having 44 points (out of
64)
2017-05-17 12:35:26 Test: Checking if /tmp is mounted separately or mounted on / file system
2017-05-17 12:35:26 Result: directory /tmp exists
2017-05-17 12:35:26 Result: found /tmp as a separated mount point
2017-05-17 12:35:26 Hardening: assigned maximum number of hardening points for this item (10). Currently having 54
points (out of 74)
2017-05-17 12:35:26 Test: Checking if /var is mounted separately or mounted on / file system
2017-05-17 12:35:26 Result: directory /var exists
2017-05-17 12:35:26 Result: found /var as a separated mount point
2017-05-17 12:35:26 Hardening: assigned maximum number of hardening points for this item (10). Currently having 64
points (out of 84)
2017-05-17 12:35:26 ===---------------------------------------------------------------===
2017-05-17 12:35:26 Performing test ID FILE-6311 (Checking LVM volume groups)
2017-05-17 12:35:26 Test: Checking for LVM volume groups
2017-05-17 12:35:26 Result: found one or more volume groups
2017-05-17 12:35:26 Found LVM volume group: vg-db-sda
2017-05-17 12:35:26 ===---------------------------------------------------------------===
2017-05-17 12:35:26 Performing test ID FILE-6312 (Checking LVM volumes)
2017-05-17 12:35:26 Test: Checking for LVM volumes
2017-05-17 12:35:27 Result: found one or more volumes
2017-05-17 12:35:27 Found LVM volume: app.ASWADB.set.1.mysqldb
2017-05-17 12:35:27 Found LVM volume: app.ASWADB.set.2.mysqldb
2017-05-17 12:35:27 Found LVM volume: app.asm.dat.asmdata1
2017-05-17 12:35:27 Found LVM volume: app.avr.dat.avrdata

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:27 Found LVM volume: dat.log.1


2017-05-17 12:35:27 Found LVM volume: dat.maint.1
2017-05-17 12:35:27 Found LVM volume: dat.share.1
2017-05-17 12:35:27 Found LVM volume: dat.swapvol.1
2017-05-17 12:35:27 Found LVM volume: set.1._config
2017-05-17 12:35:27 Found LVM volume: set.1._usr
2017-05-17 12:35:27 Found LVM volume: set.1._var
2017-05-17 12:35:27 Found LVM volume: set.1.root
2017-05-17 12:35:27 Found LVM volume: set.2._config
2017-05-17 12:35:27 Found LVM volume: set.2._usr
2017-05-17 12:35:27 Found LVM volume: set.2._var
2017-05-17 12:35:27 Found LVM volume: set.2.root
2017-05-17 12:35:27 ===---------------------------------------------------------------===
2017-05-17 12:35:27 Performing test ID FILE-6323 (Checking EXT file systems)
2017-05-17 12:35:27 Test: Checking for Linux EXT file systems
2017-05-17 12:35:27 Result: found one or more EXT file systems
2017-05-17 12:35:27 File system: / (type: ext3)
2017-05-17 12:35:27 File system: /config (type: ext3)
2017-05-17 12:35:27 File system: /usr (type: ext3)
2017-05-17 12:35:27 File system: /var (type: ext3)
2017-05-17 12:35:27 File system: /shared (type: ext3)
2017-05-17 12:35:27 File system: /var/log (type: ext3)
2017-05-17 12:35:27 File system: /var/lib/mysql (type: ext3)
2017-05-17 12:35:27 File system: /shared/avr (type: ext3)
2017-05-17 12:35:27 File system: /var/asmdata1 (type: ext3)
2017-05-17 12:35:27 ===---------------------------------------------------------------===
2017-05-17 12:35:27 Performing test ID FILE-6329 (Checking FFS/UFS file systems)
2017-05-17 12:35:27 Test: Query /etc/fstab for available FFS/UFS mount points
2017-05-17 12:35:27 Result: unable to find any single mount point (FFS/UFS)
2017-05-17 12:35:27 ===---------------------------------------------------------------===
2017-05-17 12:35:27 Skipped test FILE-6330 (Checking ZFS file systems)
2017-05-17 12:35:27 Reason to skip: Incorrect guest OS (FreeBSD only)
2017-05-17 12:35:27 ===---------------------------------------------------------------===
2017-05-17 12:35:27 Skipped test FILE-6439 (Checking HAMMER PFS mounts)
2017-05-17 12:35:27 Reason to skip: Incorrect guest OS (DragonFly only)
2017-05-17 12:35:27 ===---------------------------------------------------------------===
2017-05-17 12:35:27 Performing test ID FILE-6332 (Checking swap partitions)
2017-05-17 12:35:27 Test: query swap partitions from /etc/fstab file
2017-05-17 12:35:27 Result: no swap partitions found in /etc/fstab
2017-05-17 12:35:27 ===---------------------------------------------------------------===
2017-05-17 12:35:27 Performing test ID FILE-6336 (Checking swap mount options)
2017-05-17 12:35:27 Test: check swap partitions with incorrect mount options
2017-05-17 12:35:27 Result: all swap partitions have correct options (sw or swap)
2017-05-17 12:35:27 ===---------------------------------------------------------------===
2017-05-17 12:35:27 Performing test ID FILE-6344 (Checking proc mount options)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:27 Test: check proc mount with incorrect mount options
2017-05-17 12:35:27 Hardening: assigned partial number of hardening points (0 of 3). Currently having 64 points (out of
87)
2017-05-17 12:35:27 Result: /proc filesystem is not mounted with option hidepid=1 or hidepid=2
2017-05-17 12:35:27 ===---------------------------------------------------------------===
2017-05-17 12:35:27 Performing test ID FILE-6354 (Searching for old files in /tmp)
2017-05-17 12:35:27 Test: Searching for old files in /tmp
2017-05-17 12:35:27 Result: no files found in /tmp which are older than 3 months
2017-05-17 12:35:27 ===---------------------------------------------------------------===
2017-05-17 12:35:27 Performing test ID FILE-6362 (Checking /tmp sticky bit)
2017-05-17 12:35:27 Result: sticky bit found on /tmp directory
2017-05-17 12:35:27 Hardening: assigned maximum number of hardening points for this item (3). Currently having 67 points
(out of 90)
2017-05-17 12:35:27 ===---------------------------------------------------------------===
2017-05-17 12:35:27 Performing test ID FILE-6368 (Checking ACL support on root file system)
2017-05-17 12:35:27 Test: Checking acl option on ext[2-4] root file system
2017-05-17 12:35:27 Result: mount point probably mounted with defaults
2017-05-17 12:35:27 Test: Checking device which holds root file system
2017-05-17 12:35:27 Result: found /dev/root
2017-05-17 12:35:27 Test: Checking default options on /dev/root
2017-05-17 12:35:28 Result: no ACL option found in default mount options list
2017-05-17 12:35:28 Test: Checking acl option on xfs root file system
2017-05-17 12:35:28 Result: ACL option enabled on root file system
2017-05-17 12:35:28 Hardening: assigned maximum number of hardening points for this item (3). Currently having 70 points
(out of 93)
2017-05-17 12:35:28 ===---------------------------------------------------------------===
2017-05-17 12:35:28 Performing test ID FILE-6372 (Checking / mount options)
2017-05-17 12:35:28 Result: mount system / is configured with options: defaults,noatime
2017-05-17 12:35:28 ===---------------------------------------------------------------===
2017-05-17 12:35:28 Performing test ID FILE-6374 (Checking /boot mount options)
2017-05-17 12:35:28 Result: file system /boot not found in /etc/fstab
2017-05-17 12:35:28 File system: /dev/shm
2017-05-17 12:35:28 Expected flags: nosuid nodev noexec
2017-05-17 12:35:28 Found flags: defaults noatime
2017-05-17 12:35:28 Result: Could not find mount option nosuid on file system /dev/shm
2017-05-17 12:35:28 Result: Could not find mount option nodev on file system /dev/shm
2017-05-17 12:35:28 Result: Could not find mount option noexec on file system /dev/shm
2017-05-17 12:35:28 Result: marked /dev/shm options as non default (unclear about hardening)
2017-05-17 12:35:28 Hardening: assigned partial number of hardening points (4 of 5). Currently having 74 points (out of
98)
2017-05-17 12:35:28 Result: file system /home not found in /etc/fstab
2017-05-17 12:35:28 Result: file system /tmp not found in /etc/fstab
2017-05-17 12:35:28 File system: /var
2017-05-17 12:35:28 Expected flags: nosuid
2017-05-17 12:35:28 Found flags: defaults noatime noexec

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:28 Result: Could not find mount option nosuid on file system /var
2017-05-17 12:35:28 Result: marked /var options as non default (unclear about hardening)
2017-05-17 12:35:28 Hardening: assigned partial number of hardening points (4 of 5). Currently having 78 points (out of
103)
2017-05-17 12:35:28 File system: /var/log
2017-05-17 12:35:28 Expected flags: nodev noexec nosuid
2017-05-17 12:35:28 Found flags: defaults noatime
2017-05-17 12:35:28 Result: Could not find mount option nodev on file system /var/log
2017-05-17 12:35:28 Result: Could not find mount option noexec on file system /var/log Comment [11]: Really easy to alter or delete
2017-05-17 12:35:28 Result: Could not find mount option nosuid on file system /var/log logs by user without elevated rights. Priority #1 for an
2017-05-17 12:35:28 Result: marked /var/log options as non default (unclear about hardening)
attacker to cover his tracks.
2017-05-17 12:35:28 Hardening: assigned partial number of hardening points (4 of 5). Currently having 82 points (out of
108)
2017-05-17 12:35:28 Result: file system /var/log/audit not found in /etc/fstab
2017-05-17 12:35:28 Result: file system /var/tmp not found in /etc/fstab
2017-05-17 12:35:28 ===---------------------------------------------------------------===
2017-05-17 12:35:28 Performing test ID FILE-6376 (Determine if /var/tmp is bound to /tmp)
2017-05-17 12:35:28 Result: no mount point /var/tmp or expected options found
2017-05-17 12:35:28 ===---------------------------------------------------------------===
2017-05-17 12:35:28 Skipped test FILE-6410 (Checking Locate database)
2017-05-17 12:35:28 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:28 ===---------------------------------------------------------------===
2017-05-17 12:35:28 Performing test ID FILE-6430 (Disable mounting of some filesystems)
2017-05-17 12:35:28 Result: found module support in kernel: insmod /lib/modules/3.10.0-
327.36.3.el7.x86_64/kernel/fs/cramfs/cramfs.ko
2017-05-17 12:35:28 Test: Checking if cramfs is active
2017-05-17 12:35:28 Result: module cramfs is not loaded in the kernel
2017-05-17 12:35:28 Hardening: assigned partial number of hardening points (2 of 3). Currently having 84 points (out of
111)
2017-05-17 12:35:28 Hardening: assigned maximum number of hardening points for this item (3). Currently having 87 points
(out of 114)
2017-05-17 12:35:28 Hardening: assigned maximum number of hardening points for this item (3). Currently having 90 points
(out of 117)
2017-05-17 12:35:28 Hardening: assigned maximum number of hardening points for this item (3). Currently having 93 points
(out of 120)
2017-05-17 12:35:28 Hardening: assigned maximum number of hardening points for this item (3). Currently having 96 points
(out of 123)
2017-05-17 12:35:28 Result: found module support in kernel: insmod /lib/modules/3.10.0-
327.36.3.el7.x86_64/kernel/fs/squashfs/squashfs.ko
2017-05-17 12:35:28 Test: Checking if squashfs is active
2017-05-17 12:35:28 Result: module squashfs is not loaded in the kernel
2017-05-17 12:35:28 Hardening: assigned partial number of hardening points (2 of 3). Currently having 98 points (out of
126)
2017-05-17 12:35:29 Result: found module support in kernel: insmod /lib/modules/3.10.0-
327.36.3.el7.x86_64/kernel/fs/udf/udf.ko

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:29 Test: Checking if udf is active


2017-05-17 12:35:29 Result: module udf is not loaded in the kernel
2017-05-17 12:35:29 Hardening: assigned partial number of hardening points (2 of 3). Currently having 100 points (out of
129)
2017-05-17 12:35:29 Checking permissions of /home/admin/assess/include/tests_storage
2017-05-17 12:35:29 File permissions are OK
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Action: Performing tests from category: Storage
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Performing test ID STRG-1840 (Check if USB storage is disabled)
2017-05-17 12:35:29 Test: Checking USB storage driver in directory /etc/modprobe.d and configuration file
/etc/modprobe.conf
2017-05-17 12:35:29 Result: usb-storage driver is not explicitly disabled
2017-05-17 12:35:29 Suggestion: Disable drivers like USB storage when not used, to prevent unauthorized storage or data
theft [test:STRG-1840] [details:-] [solution:-]
2017-05-17 12:35:29 Hardening: assigned partial number of hardening points (2 of 3). Currently having 102 points (out of
132)
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Performing test ID STRG-1842 (Check USB authorizations)
2017-05-17 12:35:29 Test: Checking USB devices authorization to connect to the system
2017-05-17 12:35:29 Test: /sys/bus/usb/devices/usb1 is authorized by default
2017-05-17 12:35:29 Result: Some USB devices are authorized by default (or temporary) to connect to the system
2017-05-17 12:35:29 Hardening: assigned partial number of hardening points (0 of 3). Currently having 102 points (out of
135)
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Performing test ID STRG-1846 (Check if firewire storage is disabled)
2017-05-17 12:35:29 Test: Checking firewire storage driver in directory /etc/modprobe.d and configuration file
/etc/modprobe.conf
2017-05-17 12:35:29 Result: firewire ohci driver is not explicitly disabled
2017-05-17 12:35:29 Suggestion: Disable drivers like firewire storage when not used, to prevent unauthorized storage or
data theft [test:STRG-1846] [details:-] [solution:-]
2017-05-17 12:35:29 Hardening: assigned partial number of hardening points (2 of 3). Currently having 104 points (out of
138)
2017-05-17 12:35:29 Checking permissions of /home/admin/assess/include/tests_storage_nfs
2017-05-17 12:35:29 File permissions are OK
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Action: Performing tests from category: NFS
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Performing test ID STRG-1902 (Check rpcinfo registered programs)
2017-05-17 12:35:29 Test: Checking rpcinfo registered programs
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Performing test ID STRG-1904 (Check nfs rpc)
2017-05-17 12:35:29 Test: Checking NFS registered versions
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Performing test ID STRG-1906 (Check nfs rpc)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:29 Test: Checking NFS registered protocols


2017-05-17 12:35:29 Output: no NFS protocols found
2017-05-17 12:35:29 Test: Checking NFS registered ports
2017-05-17 12:35:29 Output: no NFS port number found
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Performing test ID STRG-1920 (Checking NFS daemon)
2017-05-17 12:35:29 Test: Checking running NFS daemon
2017-05-17 12:35:29 Output: NFS daemon is not running
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Skipped test STRG-1926 (Checking NFS exports)
2017-05-17 12:35:29 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Skipped test STRG-1928 (Checking empty /etc/exports)
2017-05-17 12:35:29 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Skipped test STRG-1930 (Check client access to nfs share)
2017-05-17 12:35:29 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:29 Checking permissions of /home/admin/assess/include/tests_nameservices
2017-05-17 12:35:29 File permissions are OK
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Action: Performing tests from category: Name services
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Performing test ID NAME-4016 (Check /etc/resolv.conf default domain)
2017-05-17 12:35:29 Test: check /etc/resolv.conf for default domain
2017-05-17 12:35:29 Result: /etc/resolv.conf found
2017-05-17 12:35:29 Result: no default domain found
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Performing test ID NAME-4018 (Check /etc/resolv.conf search domains)
2017-05-17 12:35:29 Test: check /etc/resolv.conf for search domains
2017-05-17 12:35:29 Result: /etc/resolv.conf found
2017-05-17 12:35:29 Found search domain: localhost
2017-05-17 12:35:29 Result: Found 1 search domains
2017-05-17 12:35:29 Result: found 1 line(s) with a search statement (expecting less than 2 lines)
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Performing test ID NAME-4020 (Check non default options)
2017-05-17 12:35:29 Test: check /etc/resolv.conf for non default options
2017-05-17 12:35:29 Result: /etc/resolv.conf found
2017-05-17 12:35:29 Found option: ndots:0
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Skipped test NAME-4024 (Solaris uname -n output)
2017-05-17 12:35:29 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:35:29 ===---------------------------------------------------------------===
2017-05-17 12:35:29 Skipped test NAME-4026 (Check /etc/nodename)
2017-05-17 12:35:29 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:35:29 ===---------------------------------------------------------------===

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:29 Performing test ID NAME-4028 (Check domain name)


2017-05-17 12:35:29 Test: Checking if dnsdomainname command is available
2017-05-17 12:35:29 Result: dnsdomainname command returned a value
2017-05-17 12:35:29 Found domain name: localdomain
2017-05-17 12:35:29 Result: found domain name
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Performing test ID NAME-4032 (Check nscd status)
2017-05-17 12:35:30 Test: checking nscd status
2017-05-17 12:35:30 IsRunning: process 'nscd' not found
2017-05-17 12:35:30 Result: nscd is not running
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Performing test ID NAME-4034 (Check Unbound status)
2017-05-17 12:35:30 Test: checking Unbound (unbound) status
2017-05-17 12:35:30 IsRunning: process 'unbound' not found
2017-05-17 12:35:30 Result: Unbound daemon is not running
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Skipped test NAME-4036 (Check Unbound configuration file)
2017-05-17 12:35:30 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Performing test ID NAME-4202 (Check BIND status)
2017-05-17 12:35:30 Test: Checking for running BIND instance
2017-05-17 12:35:30 IsRunning: process 'named' found ( 5443 ? S 0:00 runsv named
5463 ? S 0:07 /sbin/runsm1_named /usr/sbin/named -f -t /var/named -u named -c /config/named.conf -n 1
9351 ? Sl 0:00 /usr/sbin/named -f -t /var/named -u named -c /config/named.conf -n 1)
2017-05-17 12:35:30 Result: found BIND process
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Performing test ID NAME-4204 (Search BIND configuration file)
2017-05-17 12:35:30 Test: Search BIND configuration file
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Skipped test NAME-4206 (Check BIND configuration consistency)
2017-05-17 12:35:30 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Skipped test NAME-4210 (Check DNS banner)
2017-05-17 12:35:30 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Performing test ID NAME-4230 (Check PowerDNS status)
2017-05-17 12:35:30 Test: Checking for running PowerDNS instance
2017-05-17 12:35:30 IsRunning: process 'pdns_server' not found
2017-05-17 12:35:30 Result: PowerDNS not running
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Skipped test NAME-4232 (Search PowerDNS configuration file)
2017-05-17 12:35:30 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Skipped test NAME-4236 (Check PowerDNS backends)
2017-05-17 12:35:30 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:30 ===---------------------------------------------------------------===


2017-05-17 12:35:30 Skipped test NAME-4238 (Check PowerDNS authoritative status)
2017-05-17 12:35:30 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Performing test ID NAME-4304 (Check NIS ypbind status)
2017-05-17 12:35:30 Test: Checking status of ypbind daemon
2017-05-17 12:35:30 IsRunning: process 'ypbind' not found
2017-05-17 12:35:30 Result: ypbind is not active
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Skipped test NAME-4306 (Check NIS domain)
2017-05-17 12:35:30 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Performing test ID NAME-4402 (Check duplicate line in /etc/hosts)
2017-05-17 12:35:30 Test: check duplicate line in /etc/hosts
2017-05-17 12:35:30 Result: OK, no duplicate lines found
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Performing test ID NAME-4404 (Check /etc/hosts contains an entry for this server name)
2017-05-17 12:35:30 Test: Check /etc/hosts contains an entry for this server name
2017-05-17 12:35:30 Result: No entry found for no-hostname in /etc/hosts
2017-05-17 12:35:30 Suggestion: Add the IP name and FQDN to /etc/hosts for proper name resolving [test:NAME-4404]
[details:-] [solution:-]
2017-05-17 12:35:30 Risk: No entry for the server name [hostname] in /etc/hosts may cause unexpected performance
problems for local connections
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Performing test ID NAME-4406 (Check server hostname mapping)
2017-05-17 12:35:30 Test: Check server hostname not locally mapped in /etc/hosts
2017-05-17 12:35:30 Result: this server hostname is not mapped to a local address
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Performing test ID NAME-4408 (Check localhost entry)
2017-05-17 12:35:30 Test: Check server hostname not locally mapped in /etc/hosts
2017-05-17 12:35:30 Result: localhost mapped to 127.0.0.1
2017-05-17 12:35:30 Checking permissions of /home/admin/assess/include/tests_ports_packages
2017-05-17 12:35:30 File permissions are OK
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Action: Performing tests from category: Ports and packages
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Skipped test PKGS-7301 (Query NetBSD pkg)
2017-05-17 12:35:30 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Skipped test PKGS-7302 (Query FreeBSD/NetBSD pkg_info)
2017-05-17 12:35:30 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:30 ===---------------------------------------------------------------===
2017-05-17 12:35:30 Skipped test PKGS-7303 (Query brew package manager)
2017-05-17 12:35:30 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:31 Result: brew can NOT be found on this system

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:31 ===---------------------------------------------------------------===


2017-05-17 12:35:31 Skipped test PKGS-7304 (Querying Gentoo packages)
2017-05-17 12:35:31 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:31 Result: emerge can NOT be found on this system
2017-05-17 12:35:31 ===---------------------------------------------------------------===
2017-05-17 12:35:31 Skipped test PKGS-7306 (Querying Solaris packages)
2017-05-17 12:35:31 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:35:31 Result: pkginfo can NOT be found on this system
2017-05-17 12:35:31 ===---------------------------------------------------------------===
2017-05-17 12:35:31 Performing test ID PKGS-7308 (Checking package list with RPM)
2017-05-17 12:35:31 Result: Found rpm binary (/bin/rpm)
2017-05-17 12:35:31 Test: Querying 'rpm -qa' to get package list
2017-05-17 12:35:31 Output:
2017-05-17 12:35:31 --------
2017-05-17 12:35:33 Found package: ConsoleKit,0.4.1-3.el6.0.0.1645.x86_64
2017-05-17 12:35:33 Found package: ConsoleKit-libs,0.4.1-3.el6.0.0.1645.x86_64
2017-05-17 12:35:33 Found package: GConf2,2.28.0-6.el6.i686
2017-05-17 12:35:33 Found package: GConf2,2.28.0-6.el6.x86_64
2017-05-17 12:35:33 Found package: ImageMagick,6.7.2.7-5.el6_8.0.0.1645.x86_64
2017-05-17 12:35:33 Found package: MAKEDEV,3.24-6.el6.0.0.1645.x86_64
2017-05-17 12:35:33 Found package: MySQL-client,5.1.73-3.rhel5.0.0.1645.i686
2017-05-17 12:35:33 Found package: MySQL-server,5.1.73-3.rhel5.2.0.1671.i686
2017-05-17 12:35:33 Found package: MySQL-shared,5.1.73-3.rhel5.0.0.1645.i686
2017-05-17 12:35:33 Found package: MySQL-shared,5.1.73-3.rhel5.0.0.1645.x86_64
2017-05-17 12:35:33 Found package: ORBit2,2.14.17-5.el6.i686
2017-05-17 12:35:33 Found package: ORBit2,2.14.17-5.el6.x86_64
2017-05-17 12:35:33 Found package: TS-asm-config,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: TS-asm-config,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:33 Found package: TS-asm-config-rest,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: TS-bd,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:33 Found package: TS-cspm,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: TS-database,13.0.0-2.0.1671.noarch
2017-05-17 12:35:33 Found package: TS-efoxy,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: TS-jsepee,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: TS-mng-asmcsd,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: TS-mng-correlation,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: TS-mng-dcc,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: TS-mng-idl,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:33 Found package: TS-mng-install,13.0.0-0.0.1645.noarch
2017-05-17 12:35:33 Found package: TS-mng-scripts,13.0.0-2.0.1671.i686
2017-05-17 12:35:33 Found package: TS-negsig,13.0.0-0.0.1645.noarch
2017-05-17 12:35:33 Found package: TS-pabnagd,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:33 Found package: TS-tsui,13.0.0-2.0.1671.noarch
2017-05-17 12:35:33 Found package: TS-xml-processor,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:33 Found package: WA,13.0.0-2.0.1671.i686

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:33 Found package: Xerces-c,2.8.0-1.0.0.1645.i686


2017-05-17 12:35:33 Found package: Xerces-c,2.8.0-1.0.0.1645.x86_64
2017-05-17 12:35:33 Found package: ZThread,2.3.2-0.0.1645.i686
2017-05-17 12:35:33 Found package: ZThread,2.3.2-0.0.1645.x86_64
2017-05-17 12:35:33 Found package: ZebOS,7.10.6-2.0.1671.i686
2017-05-17 12:35:33 Found package: acctd,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: ace,1.1.7-0.0.1645.i686
2017-05-17 12:35:33 Found package: aceagentsdk,8.1-0.0.1645.i686
2017-05-17 12:35:33 Found package: aceagentsdk,8.1-0.0.1645.x86_64
2017-05-17 12:35:33 Found package: aced,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: adm,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:33 Found package: agentvisibility,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: alertd,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: alertd-config,13.0.0-0.0.1645.noarch
2017-05-17 12:35:33 Found package: angular,1.2.8-0.0.1645.i686
2017-05-17 12:35:33 Found package: angular-ui,0.11.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: antlr3-C,3.4-1.0.0.1645.i686
2017-05-17 12:35:33 Found package: antserver,1.0.6-0.0.1645.x86_64
2017-05-17 12:35:33 Found package: antserver_f5,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:33 Found package: apache-ant,1.9.2-0.0.1645.i686
2017-05-17 12:35:33 Found package: apache-tomcat-apis,0.1-1.el6.noarch
2017-05-17 12:35:33 Found package: apache_auth_token_mod,13.0.0-2.0.1671.i686
2017-05-17 12:35:33 Found package: apl_parser,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: apm-linux-all,13.0.0-3563.0.i686
2017-05-17 12:35:33 Found package: apm-mac-all,13.0.0-3563.0.i686
2017-05-17 12:35:33 Found package: apm-windows-all,13.0.0-3563.0.i686
2017-05-17 12:35:33 Found package: apm_logging_v2,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: apm_logging_v2,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:33 Found package: apm_websso,13.0.0-0.0.1645.i686
2017-05-17 12:35:33 Found package: apmd,13.0.0-0.0.1645.noarch
2017-05-17 12:35:33 Found package: apmd-32,13.0.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: apmd-64,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:34 Found package: apmpolicysync,13.0.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: apmpolicysync,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:34 Found package: app-template-java,13.0.0-0.0.1645.noarch
2017-05-17 12:35:34 Found package: apr,1.3.9-5.el6_2.i686
2017-05-17 12:35:34 Found package: apr,1.3.9-5.el6_2.x86_64
2017-05-17 12:35:34 Found package: apr-util,1.3.9-3.el6_0.1.0.0.1645.i686
2017-05-17 12:35:34 Found package: apr-util-ldap,1.3.9-3.el6_0.1.0.0.1645.i686
2017-05-17 12:35:34 Found package: audit,2.3.7-5.el6.0.0.1645.x86_64
2017-05-17 12:35:34 Found package: audit-libs,2.3.7-5.el6.0.0.1645.i686
2017-05-17 12:35:34 Found package: audit-libs,2.3.7-5.el6.0.0.1645.x86_64
2017-05-17 12:35:34 Found package: audit-libs-python,2.3.7-5.el6.0.0.1645.i686
2017-05-17 12:35:34 Found package: audit-libs-python,2.3.7-5.el6.0.0.1645.x86_64
2017-05-17 12:35:34 Found package: audit_forwarder,13.0.0-0.0.1645.i686

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:34 Found package: auto-lasthop,13.0.0-2.0.1671.x86_64


2017-05-17 12:35:34 Found package: autodosd,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:34 Found package: avahi-libs,0.6.25-15.el6.i686
2017-05-17 12:35:34 Found package: avahi-libs,0.6.25-15.el6.x86_64
2017-05-17 12:35:34 Found package: avr,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:34 Found package: avr_client,13.0.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: avr_client,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:34 Found package: avr_common,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:34 Found package: avr_mysql_udf,13.0.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: avr_scripts,13.0.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: avrdb,13.0.0-2.0.1671.noarch
2017-05-17 12:35:34 Found package: avrui,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:34 Found package: axis,1.2.1-7.5.el6_5.0.0.1645.noarch
2017-05-17 12:35:34 Found package: axs2,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:34 Found package: basesystem,10.0-4.el6.0.0.1645.noarch
2017-05-17 12:35:34 Found package: bash,4.1.2-29.el6.0.0.1645.x86_64
2017-05-17 12:35:34 Found package: bdosd,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:34 Found package: beecrypt,4.2.1-1.el6.i686
2017-05-17 12:35:34 Found package: big3d,13.0.0-2.0.1671.i686
2017-05-17 12:35:34 Found package: bigd,13.0.0-2.0.1671.i686
2017-05-17 12:35:34 Found package: bigdb,13.0.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: bigdb,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:34 Found package: bigdbd,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:34 Found package: bigstart,13.0.0-2.0.1671.i686
2017-05-17 12:35:34 Found package: bigstart,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:34 Found package: bigstart-bin,13.0.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: bigstart-bin,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:34 Found package: bigtop,13.0.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: bind,9.9.9.P6-2.0.1671.i686
2017-05-17 12:35:34 Found package: bind-libs,9.9.9.P6-2.0.1671.i686
2017-05-17 12:35:34 Found package: bind-utils,9.9.9.P6-2.0.1671.i686
2017-05-17 12:35:34 Found package: binutils,2.20.51.0.2-5.42.el6.x86_64
2017-05-17 12:35:34 Found package: boost-date-time,1.41.0-25.el6.0.0.1645.i686
2017-05-17 12:35:34 Found package: boost-filesystem,1.41.0-25.el6.0.0.1645.i686
2017-05-17 12:35:34 Found package: boost-filesystem,1.41.0-25.el6.0.0.1645.x86_64
2017-05-17 12:35:34 Found package: boost-iostreams,1.41.0-25.el6.0.0.1645.i686
2017-05-17 12:35:34 Found package: boost-program-options,1.41.0-25.el6.0.0.1645.x86_64
2017-05-17 12:35:34 Found package: boost-regex,1.41.0-25.el6.0.0.1645.i686
2017-05-17 12:35:34 Found package: boost-regex,1.41.0-25.el6.0.0.1645.x86_64
2017-05-17 12:35:34 Found package: boost-system,1.41.0-25.el6.0.0.1645.i686
2017-05-17 12:35:34 Found package: boost-system,1.41.0-25.el6.0.0.1645.x86_64
2017-05-17 12:35:34 Found package: boost-thread,1.41.0-25.el6.0.0.1645.i686
2017-05-17 12:35:34 Found package: boost-thread,1.41.0-25.el6.0.0.1645.x86_64
2017-05-17 12:35:34 Found package: boost155,1.55-0.0.1645.i686
2017-05-17 12:35:34 Found package: boost155,1.55-0.0.1645.x86_64

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:34 Found package: bootstrap,3.1.1-0.0.1645.i686


2017-05-17 12:35:34 Found package: bouncycastle,1.45-6.el5.0.0.1645.noarch
2017-05-17 12:35:34 Found package: bridge-utils,1.2-10.el6.x86_64
2017-05-17 12:35:34 Found package: bzip2,1.0.5-7.el6.x86_64
2017-05-17 12:35:34 Found package: bzip2-libs,1.0.5-7.el6.i686
2017-05-17 12:35:34 Found package: bzip2-libs,1.0.5-7.el6.x86_64
2017-05-17 12:35:34 Found package: ca-bundle,13.0.0-2.0.1671.noarch
2017-05-17 12:35:34 Found package: ca-certificates,2015.2.4-65.0.1.el6_6.0.0.1645.noarch
2017-05-17 12:35:34 Found package: captured,13.0.0-0.0.1645.noarch
2017-05-17 12:35:34 Found package: cbrd,13.0.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: ccommon,13.0.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: ccommon,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:34 Found package: cec,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:34 Found package: centos-release,6-6.el6.centos.12.2.0.0.1645.x86_64
2017-05-17 12:35:34 Found package: checkcert,13.0.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: checkfiles,13.0.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: checkpolicy,2.0.22-1.el6.x86_64
2017-05-17 12:35:34 Found package: chkconfig,1.3.49.3-2.el6_4.1.x86_64
2017-05-17 12:35:34 Found package: chmand,13.0.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: cifs-utils,4.8.1-19.el6.0.0.1645.x86_64
2017-05-17 12:35:34 Found package: classpathx-jaf,1.0-15.4.el6.0.0.1645.noarch
2017-05-17 12:35:34 Found package: clientside-asm-dosl7,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:34 Found package: clientside-fpm,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:34 Found package: clusterd,13.0.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: codemirror,3.24.0-0.0.1645.i686
2017-05-17 12:35:34 Found package: commons-beanutils,1.8.3-0.0.1645.noarch
2017-05-17 12:35:34 Found package: commons-collections,3.2.2-0.0.1645.noarch
2017-05-17 12:35:34 Found package: commons-fileupload,1.3.2-0.0.1645.noarch
2017-05-17 12:35:34 Found package: commons-io,1.4-1.0.0.1645.noarch
2017-05-17 12:35:34 Found package: commons-lang,2.6-0.0.1645.noarch
2017-05-17 12:35:34 Found package: compat-db42,4.2.52-15.el6.x86_64
2017-05-17 12:35:35 Found package: compat-libtermcap,2.0.8-49.el6.x86_64
2017-05-17 12:35:35 Found package: compat-readline5,5.2-17.1.el6.x86_64
2017-05-17 12:35:35 Found package: compat-tcl,8.4.13-3.el5.0.0.1645.x86_64
2017-05-17 12:35:35 Found package: config-templates,13.0.0-2.0.1671.noarch
2017-05-17 12:35:35 Found package: coreutils,8.4-37.el6.0.0.1645.x86_64
2017-05-17 12:35:35 Found package: coreutils-libs,8.4-37.el6.0.0.1645.x86_64
2017-05-17 12:35:35 Found package: cpio,2.10-12.el6_5.x86_64
2017-05-17 12:35:35 Found package: cpldisp-tool,2.2-138.0.i686
2017-05-17 12:35:35 Found package: cppcommon,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: cppcommon,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: cracklib,2.8.16-4.el6.0.0.1645.i686
2017-05-17 12:35:35 Found package: cracklib,2.8.16-4.el6.0.0.1645.x86_64
2017-05-17 12:35:35 Found package: cracklib-dicts,2.8.16-4.el6.0.0.1645.x86_64
2017-05-17 12:35:35 Found package: cronie,1.4.4-12.el6.0.0.1645.x86_64

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:35 Found package: cronie-anacron,1.4.4-12.el6.0.0.1645.x86_64


2017-05-17 12:35:35 Found package: crontabs,1.10-33.el6.noarch
2017-05-17 12:35:35 Found package: crypto,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: crypto,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: cs,13.0.0-2.0.1671.i686
2017-05-17 12:35:35 Found package: cs-config,13.0.0-0.0.1645.noarch
2017-05-17 12:35:35 Found package: csyncd,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: cups-libs,1.4.2-67.el6.0.0.1645.i686
2017-05-17 12:35:35 Found package: cups-libs,1.4.2-67.el6.0.0.1645.x86_64
2017-05-17 12:35:35 Found package: curl,7.43.0-10.fc23.2.0.1671.x86_64
2017-05-17 12:35:35 Found package: cyrus-sasl-gssapi,2.1.23-15.el6_6.1.0.0.1645.x86_64
2017-05-17 12:35:35 Found package: cyrus-sasl-lib,2.1.23-15.el6_6.1.0.0.1645.i686
2017-05-17 12:35:35 Found package: cyrus-sasl-lib,2.1.23-15.el6_6.1.0.0.1645.x86_64
2017-05-17 12:35:35 Found package: daglib,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:35 Found package: dashboard,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: datastor,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: datastor-small,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: datasyncd,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: db4,4.7.25-18.el6_4.0.0.1645.i686
2017-05-17 12:35:35 Found package: db4,4.7.25-18.el6_4.0.0.1645.x86_64
2017-05-17 12:35:35 Found package: db4-utils,4.7.25-18.el6_4.0.0.1645.x86_64
2017-05-17 12:35:35 Found package: dbus,1.2.24-8.el6_6.0.0.1645.x86_64
2017-05-17 12:35:35 Found package: dbus-glib,0.86-6.el6.i686
2017-05-17 12:35:35 Found package: dbus-glib,0.86-6.el6.x86_64
2017-05-17 12:35:35 Found package: dbus-libs,1.2.24-8.el6_6.0.0.1645.i686
2017-05-17 12:35:35 Found package: dbus-libs,1.2.24-8.el6_6.0.0.1645.x86_64
2017-05-17 12:35:35 Found package: dcdb_convert,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: dco,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: dco-http-parser,1.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: dedup,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: dedup_admin,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: device-mapper,1.02.77-9.el6_4.3.0.0.1645.i686
2017-05-17 12:35:35 Found package: device-mapper-event,1.02.77-9.el6_4.3.0.0.1645.i686
2017-05-17 12:35:35 Found package: device-mapper-event-libs,1.02.77-9.el6_4.3.0.0.1645.i686
2017-05-17 12:35:35 Found package: device-mapper-libs,1.02.77-9.el6_4.3.0.0.1645.i686
2017-05-17 12:35:35 Found package: device-mapper-multipath,0.4.9-64.el6.i686
2017-05-17 12:35:35 Found package: device-mapper-multipath-libs,0.4.9-64.el6.i686
2017-05-17 12:35:35 Found package: device-mapper-persistent-data,0.1.4-1.el6.i686
2017-05-17 12:35:35 Found package: devmgmt_cpp_client,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: devmgmt_java_client,13.0.0-0.0.1645.noarch
2017-05-17 12:35:35 Found package: devmgmt_pipe,13.0.0-0.0.1645.noarch
2017-05-17 12:35:35 Found package: devmgmtd++,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: dhclient,4.1.1-43.P1.el6.centos.2.0.1671.x86_64
2017-05-17 12:35:35 Found package: dhcp-common,4.1.1-43.P1.el6.centos.2.0.1671.x86_64
2017-05-17 12:35:35 Found package: diadb,13.0.0-0.0.1645.x86_64

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:35 Found package: dialog,1.1-9.20080819.1.el6.0.0.1645.x86_64


2017-05-17 12:35:35 Found package: diffutils,2.8.1-28.el6.x86_64
2017-05-17 12:35:35 Found package: diskutil,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: diskutil-xml-data,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:35 Found package: dlsnmpd,13.0.0-2.0.1671.i686
2017-05-17 12:35:35 Found package: dmidecode,2.12-5.el6_5.x86_64
2017-05-17 12:35:35 Found package: dmon,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: dnatutil,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: dnatutil_archives,13.0.0-0.0.1645.noarch
2017-05-17 12:35:35 Found package: domaintool,13.0.0-0.0.1645.noarch
2017-05-17 12:35:35 Found package: dosfstools,3.0.9-4.el6.x86_64
2017-05-17 12:35:35 Found package: dosl7d,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: dropbear,2012.55-0.0.1645.i686
2017-05-17 12:35:35 Found package: dwblclass-app,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: dwblclass-lib,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: dwbld,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:35 Found package: dynad,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: e2fsprogs,1.41.12-21.el6.0.0.1645.x86_64
2017-05-17 12:35:35 Found package: e2fsprogs-libs,1.41.12-21.el6.0.0.1645.x86_64
2017-05-17 12:35:35 Found package: eam,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: eca,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: ecm_import_aws,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: ecm_import_vsphere,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: ecm_nda,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: ecm_register,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: ecm_thrift_command,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: ecmservice,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: ecmstart,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: ed,1.1-3.3.el6.x86_64
2017-05-17 12:35:35 Found package: eggdbus,0.6-3.el6.i686
2017-05-17 12:35:35 Found package: eggdbus,0.6-3.el6.x86_64
2017-05-17 12:35:35 Found package: elfcopy,1.0-1.f5.0.0.1645.i686
2017-05-17 12:35:35 Found package: elfutils-libelf,0.158-3.2.el6.i686
2017-05-17 12:35:35 Found package: elfutils-libelf,0.158-3.2.el6.x86_64
2017-05-17 12:35:35 Found package: emclient-cpp,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: epsec,1.0.0-489.0.i686
2017-05-17 12:35:35 Found package: errdefs,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: errdefs,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: errdefsd,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:35 Found package: ethconfig,13.0.0-0.0.1645.i686
2017-05-17 12:35:35 Found package: ethtool,3.5-5.el6.x86_64
2017-05-17 12:35:36 Found package: evrouted,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: expat,2.0.1-11.el6_2.i686
2017-05-17 12:35:36 Found package: expat,2.0.1-11.el6_2.x86_64
2017-05-17 12:35:36 Found package: expect,5.44.1.15-5.el6_4.0.0.1645.i686

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:36 Found package: extapps,13.0.0-0.0.1645.noarch


2017-05-17 12:35:36 Found package: f5-console-hwserial,13.0.0-0.0.1645.noarch
2017-05-17 12:35:36 Found package: f5-console-serial,13.0.0-0.0.1645.noarch
2017-05-17 12:35:36 Found package: f5-filesys,13.0.0-0.0.1645.noarch
2017-05-17 12:35:36 Found package: f5-iAppLX-bulk-api,13.0.0-0.0.1645.noarch
2017-05-17 12:35:36 Found package: f5-iappslx-dhd-archive,13.0.0-0.0.1645.noarch
2017-05-17 12:35:36 Found package: f5-iappslx-ssl-orchestrator-archive,13.0.0-0.0.1645.noarch
2017-05-17 12:35:36 Found package: f5-nodejs-libs,13.0.0-2.0.1671.i686
2017-05-17 12:35:36 Found package: f5-platform-common,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:36 Found package: f5-platform-common-PADC,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: f5-platform-common-kernel-physical,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: f5-platform-family-stratos,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: f5-platform-generation-bourne,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: f5-platform-id-C112,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: f5-release-info,13.0.0-0.0.1645.noarch
2017-05-17 12:35:36 Found package: f5-rest-auth-lib,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5-rest-java-host,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5-rest-java-libs,13.0.0-2.0.1671.i686
2017-05-17 12:35:36 Found package: f5-rest-java-libs-access-bigip,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5-rest-java-libs-adc,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5-rest-java-libs-adc-bigip,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5-rest-java-libs-indexing,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5-rest-java-libs-mam,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5-rest-mcp-schema,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5-rest-node,4.6.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: f5-rest-node-bigstart,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5-rest-node-libs,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5-rest-presentation-blocks,13.0.0-2.0.1671.i686
2017-05-17 12:35:36 Found package: f5-rest-presentation-libs,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5-rest-rpmbuild,4.11.1-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5_update_checker,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5base,13.0.0-2.0.1671.noarch
2017-05-17 12:35:36 Found package: f5config,13.0.0-2.0.1671.noarch
2017-05-17 12:35:36 Found package: f5config-lbh,13.0.0-0.0.1645.noarch
2017-05-17 12:35:36 Found package: f5km,13.0.0-2.0.1671.i686
2017-05-17 12:35:36 Found package: f5logging,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5mfg,13.0.0-0.0.1645.noarch
2017-05-17 12:35:36 Found package: f5mku,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5py,0.9-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5tcl,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5util,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: f5util,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: fcgi,2.4.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: fcgi,2.4.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: fdd-parser,1.0.5-0.0.30.noarch

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:36 Found package: fflag,13.0.0-0.0.1645.i686


2017-05-17 12:35:36 Found package: fflag-shlib,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: fflag-shlib,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: file,5.04-30.el6.0.0.1645.x86_64
2017-05-17 12:35:36 Found package: file-libs,5.04-30.el6.0.0.1645.i686
2017-05-17 12:35:36 Found package: file-libs,5.04-30.el6.0.0.1645.x86_64
2017-05-17 12:35:36 Found package: filesystem,2.4.30-3.el6.0.0.1645.x86_64
2017-05-17 12:35:36 Found package: findutils,4.4.2-6.el6.0.0.1645.x86_64
2017-05-17 12:35:36 Found package: fips_api,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: fips_api,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: fips_modules,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: fips_modules,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: fips_utils,13.0.0-2.0.1671.i686
2017-05-17 12:35:36 Found package: fipscheck,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: fipscheck,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: fipscheck-lib,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: fipscheck-lib,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: firmware,13.0.0-2.0.1671.i686
2017-05-17 12:35:36 Found package: firmware-generation-bourne,13.0.0-2.0.1671.i686
2017-05-17 12:35:36 Found package: firmware-tiusb,1.1-1.f5.0.0.1645.x86_64
2017-05-17 12:35:36 Found package: flashrom,0.9.5.1-138.0.i686
2017-05-17 12:35:36 Found package: fontconfig,2.8.0-5.el6.i686
2017-05-17 12:35:36 Found package: fontconfig,2.8.0-5.el6.x86_64
2017-05-17 12:35:36 Found package: fpdd,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: fpuserd,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: freetype,2.3.11-15.el6_6.1.0.0.1645.i686
2017-05-17 12:35:36 Found package: freetype,2.3.11-15.el6_6.1.0.0.1645.x86_64
2017-05-17 12:35:36 Found package: fslogd,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: ftp,0.17-54.el6.x86_64
2017-05-17 12:35:36 Found package: fwmgr,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: gamin,0.1.10-9.el6.i686
2017-05-17 12:35:36 Found package: gamin,0.1.10-9.el6.x86_64
2017-05-17 12:35:36 Found package: gawk,3.1.7-10.el6.x86_64
2017-05-17 12:35:36 Found package: gd,2.0.35-11.el6.0.0.1645.x86_64
2017-05-17 12:35:36 Found package: gdbm,1.8.0-36.el6.i686
2017-05-17 12:35:36 Found package: gdbm,1.8.0-36.el6.x86_64
2017-05-17 12:35:36 Found package: gencert,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: genisoimage,1.1.9-12.el6.x86_64
2017-05-17 12:35:36 Found package: geoip,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: geoip,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:36 Found package: geoip-data-v2,2.0.0-20170123.238.0.x86_64
2017-05-17 12:35:36 Found package: get_dossier,13.0.0-0.0.1645.i686
2017-05-17 12:35:36 Found package: glib2,2.28.8-4.el6.0.0.1645.i686
2017-05-17 12:35:36 Found package: glib2,2.28.8-4.el6.0.0.1645.x86_64
2017-05-17 12:35:36 Found package: glibc,2.12-1.149.el6_6.9x7.0.0.1645.i686

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:36 Found package: glibc,2.12-1.149.el6_6.9x7.0.0.1645.x86_64


2017-05-17 12:35:36 Found package: glibc-biarch,2.12-1.132.el6_5.4.0.0.1645.i686
2017-05-17 12:35:37 Found package: glibc-common,2.12-1.149.el6_6.9x7.0.0.1645.i686
2017-05-17 12:35:37 Found package: gmp,4.3.1-7.el6_2.2.x86_64
2017-05-17 12:35:37 Found package: gnupg2,2.0.14-8.el6.0.0.1645.x86_64
2017-05-17 12:35:37 Found package: gnuplot,4.2.6-2.el6.0.0.1645.x86_64
2017-05-17 12:35:37 Found package: gnuplot-common,4.2.6-2.el6.0.0.1645.x86_64
2017-05-17 12:35:37 Found package: gnutls,2.8.5-19.el6_7.i686
2017-05-17 12:35:37 Found package: gnutls,2.8.5-19.el6_7.x86_64
2017-05-17 12:35:37 Found package: google-gson,2.2.4-1.0.0.0.1645.noarch
2017-05-17 12:35:37 Found package: gpxe-bootimgs,0.9.7-0.0.1645.noarch
2017-05-17 12:35:37 Found package: grep,2.20-3.el6.0.0.1645.x86_64
2017-05-17 12:35:37 Found package: groff,1.18.1.4-21.el6.0.0.1645.x86_64
2017-05-17 12:35:37 Found package: grub,0.97-93.el6.0.0.1645.i686
2017-05-17 12:35:37 Found package: grub2,2.0-0.25.beta4.fc17.0.0.1645.i686
2017-05-17 12:35:37 Found package: gtm,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:37 Found package: guishell,13.0.0-0.0.1645.noarch
2017-05-17 12:35:37 Found package: guiutils,13.0.0-0.0.1645.i686
2017-05-17 12:35:37 Found package: gzip,1.3.12-22.el6.x86_64
2017-05-17 12:35:37 Found package: ha_table,13.0.0-2.0.1671.i686
2017-05-17 12:35:37 Found package: ha_table,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:37 Found package: halid,13.0.0-0.0.1645.i686
2017-05-17 12:35:37 Found package: halreboot,13.0.0-0.0.1645.i686
2017-05-17 12:35:37 Found package: haltools-stratos,13.0.0-0.0.1645.i686
2017-05-17 12:35:37 Found package: hdparm,9.27-1.0.0.1645.x86_64
2017-05-17 12:35:37 Found package: heapdump,0.3.7-0.0.1645.x86_64
2017-05-17 12:35:37 Found package: hesiod,3.1.0-19.el6.x86_64
2017-05-17 12:35:37 Found package: hmaccalc,0.9.12-2.el6.x86_64
2017-05-17 12:35:37 Found package: hsqldb,1.8.0.10-12.el6.0.0.1645.noarch
2017-05-17 12:35:37 Found package: httpd,2.2.15-54.el6.0.0.1645.i686
2017-05-17 12:35:37 Found package: httpd-tools,2.2.15-54.el6.0.0.1645.i686
2017-05-17 12:35:37 Found package: hwdata,0.233-11.1.el6.0.0.1645.noarch
2017-05-17 12:35:37 Found package: hwparse-daemon,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:37 Found package: iControl,13.0.0-2.0.1671.i686
2017-05-17 12:35:37 Found package: iControl-handlers,13.0.0-2.0.1671.i686
2017-05-17 12:35:37 Found package: iControl-modules,13.0.0-2.0.1671.i686
2017-05-17 12:35:37 Found package: iControl-wsdl,13.0.0-2.0.1671.i686
2017-05-17 12:35:37 Found package: iControl_java_client,13.0.0-0.0.1645.noarch
2017-05-17 12:35:37 Found package: icr_eventd,13.0.0-0.0.1645.i686
2017-05-17 12:35:37 Found package: icr_worker,13.0.0-0.0.1645.i686
2017-05-17 12:35:37 Found package: icrd,13.0.0-2.0.1671.i686
2017-05-17 12:35:37 Found package: icrd-jar,13.0.0-0.0.1645.i686
2017-05-17 12:35:37 Found package: idnkit,1.0-0.0.1645.i686
2017-05-17 12:35:37 Found package: igb,3.1.16-2.0.1671.x86_64
2017-05-17 12:35:37 Found package: ilx,13.0.0-2.0.1671.x86_64

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:37 Found package: increase_entropy,13.0.0-0.0.1645.x86_64


2017-05-17 12:35:37 Found package: info,4.13a-8.el6.x86_64
2017-05-17 12:35:37 Found package: initscripts,9.03.46-1.el6.centos.1.2.0.1671.i686
2017-05-17 12:35:37 Found package: installer,13.0.0-0.0.1645.noarch
2017-05-17 12:35:37 Found package: intel-pcm,2.6-0.0.1645.i686
2017-05-17 12:35:37 Found package: ipfixdocs,13.0.0-0.0.1645.noarch
2017-05-17 12:35:37 Found package: ipmiutil-libs,2.9.4-1.0.0.1645.i686
2017-05-17 12:35:37 Found package: iprep,1.0-0.0.1645.x86_64
2017-05-17 12:35:37 Found package: iprepd,13.0.0-0.0.1645.i686
2017-05-17 12:35:37 Found package: iproute,2.6.32-33.el6_6.0.0.1645.x86_64
2017-05-17 12:35:37 Found package: ipsec-tools,0.7.3-4.fc12.0.0.1645.i686
2017-05-17 12:35:37 Found package: ipsecalgutil,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:37 Found package: iptables,1.4.7-14.el6.x86_64
2017-05-17 12:35:37 Found package: iptables-ipv6,1.4.7-14.el6.x86_64
2017-05-17 12:35:37 Found package: iputils,20071127-17.el6_4.2.0.0.1645.x86_64
2017-05-17 12:35:37 Found package: irqbalance,1.0.4-10.el6.x86_64
2017-05-17 12:35:37 Found package: isc,13.0.0-0.0.1645.i686
2017-05-17 12:35:37 Found package: isc,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:37 Found package: isomd5sum,11.1.0.95-0.0.1645.x86_64
2017-05-17 12:35:37 Found package: ixgbe,3.4.24-2.0.1671.x86_64
2017-05-17 12:35:37 Found package: jacl,1.4.1-0.0.1645.noarch
2017-05-17 12:35:37 Found package: jakarta-commons-codec,1.3-11.7.el6.0.0.1645.noarch
2017-05-17 12:35:37 Found package: jakarta-commons-discovery,0.4-5.4.el6.noarch
2017-05-17 12:35:37 Found package: jakarta-commons-httpclient,3.1-0.9.el6_5.0.0.1645.noarch
2017-05-17 12:35:37 Found package: jakarta-commons-logging,1.0.4-10.el6.0.0.1645.noarch
2017-05-17 12:35:37 Found package: jakarta-oro,2.0.8-6.6.el6.0.0.1645.noarch
2017-05-17 12:35:37 Found package: java-shell,13.0.0-0.0.1645.noarch
2017-05-17 12:35:37 Found package: javamail,13.0.0-0.0.1645.noarch
2017-05-17 12:35:37 Found package: jclouds,1.8.1-0.0.1645.x86_64
2017-05-17 12:35:37 Found package: jclouds-vsphere,1.8.0-0.0.1645.x86_64
2017-05-17 12:35:37 Found package: jcommon,1.0.16-2.el6.0.0.1645.noarch
2017-05-17 12:35:37 Found package: jersey,1.5-0.0.1645.noarch
2017-05-17 12:35:37 Found package: jfreechart,1.0.13-3.fc16.0.0.1645.noarch
2017-05-17 12:35:37 Found package: jiffies,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:37 Found package: jilt,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:37 Found package: jitterentropy-rngd,1.0.3-0.0.1645.x86_64
2017-05-17 12:35:37 Found package: jpackage-utils,1.7.5-3.12.el6.0.0.1645.noarch
2017-05-17 12:35:37 Found package: jq,1.4-0.0.1645.x86_64
2017-05-17 12:35:37 Found package: jquery,1.10.2-0.0.1645.i686
2017-05-17 12:35:37 Found package: jshint,2.9.3-0.0.1645.i686
2017-05-17 12:35:37 Found package: json-c,0.11-12.el6.i686
2017-05-17 12:35:37 Found package: json-lib,2.4-0.0.1645.noarch
2017-05-17 12:35:37 Found package: json_simple,1.1-0.0.1645.noarch
2017-05-17 12:35:37 Found package: jsoup,1.3.3-0.0.1645.noarch
2017-05-17 12:35:37 Found package: jxrlib,1.1-0.0.1645.x86_64

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:37 Found package: jython,2.2.1-4.8.el6.0.0.1645.x86_64


2017-05-17 12:35:37 Found package: kernel,3.10.0-327.36.3.el7.2.0.1671.x86_64
2017-05-17 12:35:37 Found package: keymgmtd,13.0.0-0.0.1645.i686
2017-05-17 12:35:37 Found package: keyutils,1.4-5.el6.0.0.1645.x86_64
2017-05-17 12:35:37 Found package: keyutils-libs,1.4-5.el6.0.0.1645.i686
2017-05-17 12:35:37 Found package: keyutils-libs,1.4-5.el6.0.0.1645.x86_64
2017-05-17 12:35:38 Found package: kpartx,0.4.9-64.el6.i686
2017-05-17 12:35:38 Found package: krb5-libs,1.10.3-42z1.el6_7.0.0.1645.i686
2017-05-17 12:35:38 Found package: krb5-libs,1.10.3-42z1.el6_7.0.0.1645.x86_64
2017-05-17 12:35:38 Found package: krb5-workstation,1.10.3-42z1.el6_7.0.0.1645.x86_64
2017-05-17 12:35:38 Found package: lacpd,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: lcdproc,0.5.2-4.fc9.2.0.1671.i686
2017-05-17 12:35:38 Found package: lcdproc-stratos,0.5.2-4.fc9.0.0.1645.i686
2017-05-17 12:35:38 Found package: lcms-libs,1.19-1.el6.0.0.1645.x86_64
2017-05-17 12:35:38 Found package: less,436-13.el6.0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libIDL,0.8.13-2.1.el6.i686
2017-05-17 12:35:38 Found package: libIDL,0.8.13-2.1.el6.x86_64
2017-05-17 12:35:38 Found package: libacl,2.2.49-6.el6.i686
2017-05-17 12:35:38 Found package: libacl,2.2.49-6.el6.x86_64
2017-05-17 12:35:38 Found package: libacp,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: libacp,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libaio,0.3.107-10.el6.i686
2017-05-17 12:35:38 Found package: libaio,0.3.107-10.el6.x86_64
2017-05-17 12:35:38 Found package: libapmutil,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libart,2.3.17-0.0.1645.i686
2017-05-17 12:35:38 Found package: libattr,2.4.44-7.el6.i686
2017-05-17 12:35:38 Found package: libattr,2.4.44-7.el6.x86_64
2017-05-17 12:35:38 Found package: libbigpacket,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: libbigpacket,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libblkid,2.17.2-12.18.el6.0.0.1645.i686
2017-05-17 12:35:38 Found package: libblkid,2.17.2-12.18.el6.0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libcap,2.16-5.5.el6.i686
2017-05-17 12:35:38 Found package: libcap,2.16-5.5.el6.x86_64
2017-05-17 12:35:38 Found package: libcap-ng,0.6.4-3.el6_0.1.x86_64
2017-05-17 12:35:38 Found package: libcave,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: libcave,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libcavecommon,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: libcavecommon,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libccdb,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libcgroup,0.40.rc1-15.el6_6.x86_64
2017-05-17 12:35:38 Found package: libcoapi,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: libcoapi,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libcom_err,1.41.12-21.el6.0.0.1645.i686
2017-05-17 12:35:38 Found package: libcom_err,1.41.12-21.el6.0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libconnapi,13.0.0-0.0.1645.i686

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:38 Found package: libconnapi,13.0.0-0.0.1645.x86_64


2017-05-17 12:35:38 Found package: libcpp,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: libcpp,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libcurl,7.43.0-10.fc23.2.0.1671.i686
2017-05-17 12:35:38 Found package: libcurl,7.43.0-10.fc23.2.0.1671.x86_64
2017-05-17 12:35:38 Found package: libdatastor-small,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: libdatastor-small,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libdatasync,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libdatasync-i686,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: libdcdb,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libdnsshim,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: libdnsshim,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libeam_asdk_preload,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: libedit,2.11-4.20080712cvs.1.el6.i686
2017-05-17 12:35:38 Found package: libedit,2.11-4.20080712cvs.1.el6.x86_64
2017-05-17 12:35:38 Found package: libffi,3.0.5-3.2.el6.i686
2017-05-17 12:35:38 Found package: libffi,3.0.5-3.2.el6.x86_64
2017-05-17 12:35:38 Found package: libfilemgmt,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: libgcc,4.4.7-11.el6.0.0.1645.i686
2017-05-17 12:35:38 Found package: libgcc,4.4.7-11.el6.0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libgcrypt,1.4.5-11.el6_4.i686
2017-05-17 12:35:38 Found package: libgcrypt,1.4.5-11.el6_4.x86_64
2017-05-17 12:35:38 Found package: libgpg-error,1.7-4.el6.i686
2017-05-17 12:35:38 Found package: libgpg-error,1.7-4.el6.x86_64
2017-05-17 12:35:38 Found package: libgssglue,0.1-11.el6.x86_64
2017-05-17 12:35:38 Found package: libhal,13.0.0-2.0.1671.i686
2017-05-17 12:35:38 Found package: libhal,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:38 Found package: libhal_internal,13.0.0-2.0.1671.i686
2017-05-17 12:35:38 Found package: libhalmsg,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: libhalmsg,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libhugetlbfs,2.16-2.el6.0.0.1645.i686
2017-05-17 12:35:38 Found package: libhugetlbfs,2.16-2.el6.0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libicu,4.2.1-9.1.el6_2.0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libidn,1.18-2.el6.i686
2017-05-17 12:35:38 Found package: libidn,1.18-2.el6.x86_64
2017-05-17 12:35:38 Found package: libjpeg-turbo,1.2.1-3.el6_5.i686
2017-05-17 12:35:38 Found package: libjpeg-turbo,1.2.1-3.el6_5.x86_64
2017-05-17 12:35:38 Found package: libjudy,1.0.5-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: liblocaldb,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: liblocaldb,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: liblogsetting,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: liblogsetting,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libmagic,11.6.0-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: libmcp_cpp,13.0.0-0.0.1645.i686
2017-05-17 12:35:38 Found package: libmcp_cpp,13.0.0-0.0.1645.x86_64

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:38 Found package: libmcpquery,13.0.0-0.0.1645.i686


2017-05-17 12:35:38 Found package: libnih,1.0.1-7.el6.x86_64
2017-05-17 12:35:38 Found package: libparted,2.1-25.el6.0.0.1645.i686
2017-05-17 12:35:38 Found package: libpng,1.2.49-2.el6_7.i686
2017-05-17 12:35:38 Found package: libpng,1.2.49-2.el6_7.x86_64
2017-05-17 12:35:38 Found package: libqt-min,4.8.4-0.0.1645.x86_64
2017-05-17 12:35:38 Found package: librd,13.0.0-0.0.1645.i686
2017-05-17 12:35:39 Found package: librd,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libreadline-java,0.8.0-24.3.el6.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libschemadata,13.0.0-0.0.1645.i686
2017-05-17 12:35:39 Found package: libschemadata,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libselinux,2.0.94-5.8.el6.0.0.1645.i686
2017-05-17 12:35:39 Found package: libselinux,2.0.94-5.8.el6.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libselinux-python,2.0.94-5.8.el6.0.0.1645.i686
2017-05-17 12:35:39 Found package: libselinux-python,2.0.94-5.8.el6.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libselinux-utils,2.0.94-5.8.el6.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libsemanage,2.0.43-4.2.el6.i686
2017-05-17 12:35:39 Found package: libsemanage-python,2.0.43-4.2.el6.i686
2017-05-17 12:35:39 Found package: libsepol,2.0.41-4.el6.0.0.1645.i686
2017-05-17 12:35:39 Found package: libsepol,2.0.41-4.el6.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libss,1.41.12-21.el6.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libssh,0.7.3-1.el7.f5.1.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libssh2,1.4.2-2.el6_7.1.0.0.1645.i686
2017-05-17 12:35:39 Found package: libssh2,1.4.2-2.el6_7.1.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libstdc++,4.4.7-11.el6.0.0.1645.i686
2017-05-17 12:35:39 Found package: libstdc++,4.4.7-11.el6.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libtalloc,2.0.7-2.el6.x86_64
2017-05-17 12:35:39 Found package: libtar,1.2.11-17.el6_4.1.2.0.1671.i686
2017-05-17 12:35:39 Found package: libtasn1,2.3-6.el6_5.i686
2017-05-17 12:35:39 Found package: libtasn1,2.3-6.el6_5.x86_64
2017-05-17 12:35:39 Found package: libtdb,1.2.10-1.el6.x86_64
2017-05-17 12:35:39 Found package: libtiff,3.9.4-18.el6_8.0.0.1645.i686
2017-05-17 12:35:39 Found package: libtiff,3.9.4-18.el6_8.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libtirpc,0.2.1-10.el6.x86_64
2017-05-17 12:35:39 Found package: libudev,147-2.57.el6.0.0.1645.i686
2017-05-17 12:35:39 Found package: libusb,0.1.12-23.el6.i686
2017-05-17 12:35:39 Found package: libusb,0.1.12-23.el6.x86_64
2017-05-17 12:35:39 Found package: libusb1,1.0.9-0.6.rc1.el6.x86_64
2017-05-17 12:35:39 Found package: libuser,0.56.13-8.el6_7.0.0.1645.i686
2017-05-17 12:35:39 Found package: libuser,0.56.13-8.el6_7.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libuuid,2.17.2-12.18.el6.0.0.1645.i686
2017-05-17 12:35:39 Found package: libuuid,2.17.2-12.18.el6.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libuv,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libwebp,0.3.0-1.fc20.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libxml2,2.7.6-21.el6_8.1.0.0.1645.i686

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:39 Found package: libxml2,2.7.6-21.el6_8.1.0.0.1645.x86_64


2017-05-17 12:35:39 Found package: libxpath,13.0.0-0.0.1645.i686
2017-05-17 12:35:39 Found package: libxpath,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:39 Found package: libxslt,1.1.26-2.el6_3.1.i686
2017-05-17 12:35:39 Found package: libxslt,1.1.26-2.el6_3.1.x86_64
2017-05-17 12:35:39 Found package: licensediff,13.0.0-0.0.1645.i686
2017-05-17 12:35:39 Found package: lind,13.0.0-2.0.1671.i686
2017-05-17 12:35:39 Found package: lldpd,13.0.0-0.0.1645.i686
2017-05-17 12:35:39 Found package: lm_sensors,3.1.1-17.el6.x86_64
2017-05-17 12:35:39 Found package: lm_sensors-libs,3.1.1-17.el6.x86_64
2017-05-17 12:35:39 Found package: localdbmgr,13.0.0-0.0.1645.i686
2017-05-17 12:35:39 Found package: log4c,1.2.1-0.0.1645.i686
2017-05-17 12:35:39 Found package: log4c,1.2.1-0.0.1645.x86_64
2017-05-17 12:35:39 Found package: log4j,1.2.14-6.4.el6.0.0.1645.noarch
2017-05-17 12:35:39 Found package: logmysqld,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:39 Found package: logrotate,3.7.8-17.el6.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: logstatd,13.0.0-0.0.1645.i686
2017-05-17 12:35:39 Found package: loki-lib,0.1.6-6.fc9.0.0.1645.i686
2017-05-17 12:35:39 Found package: loki-lib,0.1.6-6.fc9.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: lopd,13.0.0-0.0.1645.i686
2017-05-17 12:35:39 Found package: lsnutil,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:39 Found package: lsof,4.82-4.el6.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: lssa,13.0.0-0.0.1645.noarch
2017-05-17 12:35:39 Found package: ltm-application,13.0.0-0.0.1645.noarch
2017-05-17 12:35:39 Found package: ltm-plugins,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:39 Found package: lua,5.1.4-4.1.el6.0.0.1645.i686
2017-05-17 12:35:39 Found package: lua,5.1.4-4.1.el6.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: luajit,2.0.1-0.0.1645.x86_64
2017-05-17 12:35:39 Found package: lucene5,5.5.0-0.0.1645.noarch
2017-05-17 12:35:39 Found package: lvm2,2.02.98-9.el6_4.3.0.0.1645.i686
2017-05-17 12:35:39 Found package: lvm2-libs,2.02.98-9.el6_4.3.0.0.1645.i686
2017-05-17 12:35:39 Found package: m4,1.4.13-5.el6.x86_64
2017-05-17 12:35:39 Found package: mailcap,2.1.31-2.el6.0.0.1645.noarch
2017-05-17 12:35:39 Found package: mailx,12.4-8.el6_6.x86_64
2017-05-17 12:35:39 Found package: make,3.81-20.el6.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: man,1.6f-32.el6.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: man-pages-f5man,3.22-20.el6.0.0.1645.noarch
2017-05-17 12:35:39 Found package: marketing-names,1-1.0.0.328.0.noarch
2017-05-17 12:35:39 Found package: master_key,13.0.0-0.0.1645.i686
2017-05-17 12:35:39 Found package: mcp_auto,13.0.0-0.0.1645.i686
2017-05-17 12:35:39 Found package: mcp_auto,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:39 Found package: mcpd,13.0.0-2.0.1671.i686
2017-05-17 12:35:39 Found package: mcpj,13.0.0-0.0.1645.noarch
2017-05-17 12:35:39 Found package: mcplib,13.0.0-0.0.1645.i686
2017-05-17 12:35:39 Found package: mcplib,13.0.0-0.0.1645.x86_64

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:39 Found package: mcpq,13.0.0-0.0.1645.i686


2017-05-17 12:35:39 Found package: mdadm,3.2.5-4.el6.0.0.1645.x86_64
2017-05-17 12:35:39 Found package: mdadm32,3.2.5-4.el6.0.0.1645.i686
2017-05-17 12:35:39 Found package: mdmsyncmgr,13.0.0-0.0.1645.i686
2017-05-17 12:35:39 Found package: mgmt_acld,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:39 Found package: mibs_pack,13.0.0-0.0.1645.i686
2017-05-17 12:35:39 Found package: mingetty,1.08-5.el6.x86_64
2017-05-17 12:35:39 Found package: mkelfImage,2.7-0.0.1645.x86_64
2017-05-17 12:35:40 Found package: mkinitrd,5.1.19.6-68.el5_6.1.2.0.1671.i686
2017-05-17 12:35:40 Found package: mod_auth_pam,1.1.1-5.fc9.0.0.1645.i686
2017-05-17 12:35:40 Found package: mod_f5_auth_cookie,13.0.0-0.0.1645.i686
2017-05-17 12:35:40 Found package: mod_fastcgi,2.4.0-0.0.1645.i686
2017-05-17 12:35:40 Found package: mod_ssl,2.2.15-54.el6.0.0.1645.i686
2017-05-17 12:35:40 Found package: module-init-tools,3.9-24.el6.i686
2017-05-17 12:35:40 Found package: monitors,13.0.0-0.0.1645.i686
2017-05-17 12:35:40 Found package: monitors-genericdb,13.0.0-0.0.1645.i686
2017-05-17 12:35:40 Found package: monpd,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:40 Found package: mpidump,13.0.0-0.0.1645.i686
2017-05-17 12:35:40 Found package: msgbusd-extras,13.0.0-0.0.1645.i686
2017-05-17 12:35:40 Found package: msktutil,0.3.16-0.0.1645.x86_64
2017-05-17 12:35:40 Found package: mtools,4.0.12-1.el6.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: mysql-connector-java,5.1.18-0.0.1645.noarch
2017-05-17 12:35:40 Found package: mysql-connector-python,2.1.4-1.el6.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: nano,2.0.9-7.el6.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: nasend,13.0.0-0.0.1645.i686
2017-05-17 12:35:40 Found package: nash,5.1.19.6-68.el5_6.1.2.0.1671.i686
2017-05-17 12:35:40 Found package: nc,1.84-22.el6.x86_64
2017-05-17 12:35:40 Found package: ncurses,5.7-3.20090208.el6.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: ncurses-base,5.7-3.20090208.el6.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: ncurses-libs,5.7-3.20090208.el6.0.0.1645.i686
2017-05-17 12:35:40 Found package: ncurses-libs,5.7-3.20090208.el6.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: ndisc6,1.0.1-1.el5.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: net-snmp,5.7.2-0.0.1645.i686
2017-05-17 12:35:40 Found package: net-snmp-libs,5.7.2-0.0.1645.i686
2017-05-17 12:35:40 Found package: net-tools,1.60-110.el6_2.x86_64
2017-05-17 12:35:40 Found package: node-inspector,0.8.1-0.0.1645.x86_64
2017-05-17 12:35:40 Found package: nodejs,0.12.15-0.0.1645.x86_64
2017-05-17 12:35:40 Found package: nokiasnmpd,13.0.0-0.0.1645.i686
2017-05-17 12:35:40 Found package: nspr,4.11.0-1.el6.2.0.1671.i686
2017-05-17 12:35:40 Found package: nspr,4.11.0-1.el6.2.0.1671.x86_64
2017-05-17 12:35:40 Found package: nss,3.21.3-2.el6_8.2.0.1671.i686
2017-05-17 12:35:40 Found package: nss,3.21.3-2.el6_8.2.0.1671.x86_64
2017-05-17 12:35:40 Found package: nss-softokn,3.14.3-23.el6_7.0.0.1645.i686
2017-05-17 12:35:40 Found package: nss-softokn,3.14.3-23.el6_7.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: nss-softokn-freebl,3.14.3-23.el6_7.0.0.1645.i686

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:40 Found package: nss-softokn-freebl,3.14.3-23.el6_7.0.0.1645.x86_64


2017-05-17 12:35:40 Found package: nss-sysinit,3.21.3-2.el6_8.2.0.1671.x86_64
2017-05-17 12:35:40 Found package: nss-tools,3.21.3-2.el6_8.2.0.1671.x86_64
2017-05-17 12:35:40 Found package: nss-util,3.21.3-1.el6_8.2.0.1671.i686
2017-05-17 12:35:40 Found package: nss-util,3.21.3-1.el6_8.2.0.1671.x86_64
2017-05-17 12:35:40 Found package: ntlmconnpool,13.0.0-0.0.1645.i686
2017-05-17 12:35:40 Found package: ntp,4.2.6p5-10.el6.centos.1.f5.2.2.0.1671.i686
2017-05-17 12:35:40 Found package: ntpdate,4.2.6p5-10.el6.centos.1.f5.2.2.0.1671.i686
2017-05-17 12:35:40 Found package: numactl,2.0.7-6.el6.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: numactl5,0.9.8-11.el5.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: oam,10.1.4.3-0.0.1645.i686
2017-05-17 12:35:40 Found package: oauth,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:40 Found package: obfuscator,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:40 Found package: octeon,13.0.0-0.0.1645.i686
2017-05-17 12:35:40 Found package: omapd,0.9.2-0.0.1645.x86_64
2017-05-17 12:35:40 Found package: openjdk,1.7.0-111.0.0.1645.i686
2017-05-17 12:35:40 Found package: openjdk,1.7.0-111.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: openjdk-charsets,1.7.0-111.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: openldap,2.4.40-6.el6_7.0.0.1645.i686
2017-05-17 12:35:40 Found package: openldap,2.4.40-6.el6_7.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: openldap-clients,2.4.40-6.el6_7.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: openssh,5.3p1-118.1.el6_8.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: openssh-clients,5.3p1-118.1.el6_8.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: openssh-server,5.3p1-118.1.el6_8.0.0.1645.x86_64 Comment [12]: Outdated
2017-05-17 12:35:40 Found package: openssl,1.0.1l-1.f5.8.2.0.1671.x86_64 Vulnerable: The resend_bytes function in roaming_common.c
2017-05-17 12:35:40 Found package: openssl-libs,1.0.1l-1.f5.8.2.0.1671.i686
in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2 allows
2017-05-17 12:35:40 Found package: openssl-libs,1.0.1l-1.f5.8.2.0.1671.x86_64
remote servers to obtain sensitive information from process
2017-05-17 12:35:40 Found package: openvswitch-ovsdb,2.3.0-1.fc20.2.0.1671.i686
memory by requesting transmission of an entire buffer, as
2017-05-17 12:35:40 Found package: oprofile,0.9.7-1.el6.0.0.1645.x86_64
demonstrated by reading a private key.
2017-05-17 12:35:40 Found package: p11-kit,0.18.5-2.el6_5.2.x86_64
2017-05-17 12:35:40 Found package: p11-kit-trust,0.18.5-2.el6_5.2.x86_64
2017-05-17 12:35:40 Found package: pam,1.1.1-20.el6_7.1.0.0.1645.i686 CVE-2016-0777
2017-05-17 12:35:40 Found package: pam,1.1.1-20.el6_7.1.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: pam_apm,13.0.0-0.0.1645.i686 Comment [13]: Multiple vulnerabilities:
2017-05-17 12:35:40 Found package: pam_apm,13.0.0-0.0.1645.x86_64 https://www.cvedetails.com/vulnerability-list/vendor_id-
2017-05-17 12:35:40 Found package: pam_audit,13.0.0-0.0.1645.i686 217/product_id-383/version_id-180646/Openssl-Openssl-
2017-05-17 12:35:40 Found package: pam_audit,13.0.0-0.0.1645.x86_64 1.0.1l.html
2017-05-17 12:35:40 Found package: pam_bigip_authz,13.0.0-2.0.1671.i686
2017-05-17 12:35:40 Found package: pam_bigip_authz,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:40 Found package: pam_krbdelegate,13.0.0-0.0.1645.i686
2017-05-17 12:35:40 Found package: pam_krbdelegate,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:40 Found package: pam_ldap,185-11.el6.0.0.1645.i686
2017-05-17 12:35:40 Found package: pam_ldap,185-11.el6.0.0.1645.x86_64
2017-05-17 12:35:40 Found package: pam_radius_auth,1.3.17-0.0.1645.i686
2017-05-17 12:35:40 Found package: pam_radius_auth,1.3.17-0.0.1645.x86_64

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:40 Found package: pam_tacplus,1.2.9-0.0.1645.i686


2017-05-17 12:35:40 Found package: pam_tacplus,1.2.9-0.0.1645.x86_64
2017-05-17 12:35:40 Found package: passwd,0.77-4.el6_2.2.0.0.1645.x86_64
2017-05-17 12:35:41 Found package: pbzip2,1.1.6-1.el6.x86_64
2017-05-17 12:35:41 Found package: pciutils,3.1.10-4.el6.x86_64
2017-05-17 12:35:41 Found package: pciutils-libs,3.1.10-4.el6.i686
2017-05-17 12:35:41 Found package: pciutils-libs,3.1.10-4.el6.x86_64
2017-05-17 12:35:41 Found package: pcre,7.8-7.el6.f5.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: pcre,7.8-7.el6.f5.1.0.0.1645.x86_64
2017-05-17 12:35:41 Found package: pem_dtoslib,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:41 Found package: pemlib,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:41 Found package: pendsect,13.0.0-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl,5.10.1-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Apache-Admin-Config,0.91-0.0.1645.noarch
2017-05-17 12:35:41 Found package: perl-Bit-Vector,7.1-2.el6.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-C-Include,1.40-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Carp-Clan,6.03-2.el6.noarch
2017-05-17 12:35:41 Found package: perl-Class-Accessor,0.31-6.1.el6.0.0.1645.noarch
2017-05-17 12:35:41 Found package: perl-Class-DBI,3.0.14-0.0.1645.noarch
2017-05-17 12:35:41 Found package: perl-Class-DBI-mysql,1.00-0.0.1645.noarch
2017-05-17 12:35:41 Found package: perl-Class-Data-Inheritable,0.08-3.1.el6.0.0.1645.noarch
2017-05-17 12:35:41 Found package: perl-Class-Trigger,0.13-2.1.el6.0.0.1645.noarch
2017-05-17 12:35:41 Found package: perl-Clone,0.31-3.1.el6.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Compress-Raw-Zlib,2.023-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Compress-Zlib,2.020-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Config-Crontab,1.03-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Config-General,2.52-1.el6.noarch
2017-05-17 12:35:41 Found package: perl-Config-IniFiles,2.39-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Crypt-SSLeay,0.57-17.el6.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-DBD-MySQL,4.013-3.el6.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-DBI,1.609-4.el6.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-DBIx-ContextualFetch,1.03-0.0.1645.noarch
2017-05-17 12:35:41 Found package: perl-Date-Manip,6.24-1.el6.noarch
2017-05-17 12:35:41 Found package: perl-Devel-Symdump,2.08-2.el6.noarch
2017-05-17 12:35:41 Found package: perl-Digest-HMAC,1.01-22.el6.noarch
2017-05-17 12:35:41 Found package: perl-Digest-SHA,5.47-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Digest-SHA1,2.12-2.el6.i686
2017-05-17 12:35:41 Found package: perl-Email-Date-Format,1.002-5.el6.noarch
2017-05-17 12:35:41 Found package: perl-Encode-HanExtra,0.23-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-ExtUtils-MakeMaker,6.55-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-ExtUtils-ParseXS,2.2003.0-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-File-FnMatch,0.02-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-File-Slurp,9999.19-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Google-ProtocolBuffers,0.11-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-HTML-Parser,3.64-2.el6.i686

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:41 Found package: perl-HTML-Tagset,3.20-4.el6.noarch


2017-05-17 12:35:41 Found package: perl-IO-Compress-Base,2.021-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-IO-Compress-Zlib,2.021-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-IO-Socket-INET6,2.56-4.el6.noarch
2017-05-17 12:35:41 Found package: perl-IO-Socket-SSL,1.74-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-IO-stringy,2.110-10.1.el6.noarch
2017-05-17 12:35:41 Found package: perl-IPC-ShareLite,0.17-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Ima-DBI,0.34-0.0.1645.noarch
2017-05-17 12:35:41 Found package: perl-JSON,2.15-5.el6.0.0.1645.noarch
2017-05-17 12:35:41 Found package: perl-JSON-RPC,0.96-0.0.1645.noarch
2017-05-17 12:35:41 Found package: perl-JSON-XS,2.24-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-JSON-XS,2.24-0.0.1645.x86_64
2017-05-17 12:35:41 Found package: perl-Log-Log4perl,1.43-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-MIME-Lite,3.027-2.el6.0.0.1645.noarch
2017-05-17 12:35:41 Found package: perl-MIME-Types,1.28-2.el6.noarch
2017-05-17 12:35:41 Found package: perl-MailTools,2.04-4.el6.noarch
2017-05-17 12:35:41 Found package: perl-Memoize-ExpireLRU,0.55-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Module-Pluggable,3.90-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Net-DNS,0.65-5.el6.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Net-SSLeay,1.48-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-PHP-Serialization,0.34-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Parse-RecDescent,1.967009-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Pod-Escapes,1.04-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Pod-Simple,3.13-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Proc-ProcessTable,0.42-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-RPM2,1.0-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-SOAP-Lite,0.710.10-3.el6.noarch
2017-05-17 12:35:41 Found package: perl-Socket6,0.23-4.el6.i686
2017-05-17 12:35:41 Found package: perl-Storable,2.51-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Test-Class,0.28-0.0.1645.noarch
2017-05-17 12:35:41 Found package: perl-Test-Harness,3.17-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Test-Simple,0.92-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Text-Iconv,1.7-6.el6.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Thrift-XS,1.04-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Thrift-XS,1.04-0.0.1645.x86_64
2017-05-17 12:35:41 Found package: perl-Tie-ShareLite,0.03-0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-Time-HiRes,1.9721-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:41 Found package: perl-TimeDate,1.16-13.el6.noarch
2017-05-17 12:35:41 Found package: perl-UNIVERSAL-moniker,0.08-0.0.1645.noarch
2017-05-17 12:35:41 Found package: perl-URI,1.40-2.el6.noarch
2017-05-17 12:35:41 Found package: perl-XML-DOM,1.44-7.el6.noarch
2017-05-17 12:35:41 Found package: perl-XML-Encoding,1.01-23.noarch
2017-05-17 12:35:42 Found package: perl-XML-Hash-LX,0.0603-0.0.1645.i686
2017-05-17 12:35:42 Found package: perl-XML-LibXML,1.70-5.el6.i686
2017-05-17 12:35:42 Found package: perl-XML-LibXML,1.70-5.el6.x86_64

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:42 Found package: perl-XML-NamespaceSupport,1.10-3.el6.0.0.1645.noarch


2017-05-17 12:35:42 Found package: perl-XML-Parser,2.36-7.el6.i686
2017-05-17 12:35:42 Found package: perl-XML-RegExp,0.03-7.el6.noarch
2017-05-17 12:35:42 Found package: perl-XML-SAX,0.96-7.el6.noarch
2017-05-17 12:35:42 Found package: perl-XML-Simple,2.18-6.el6.0.0.1645.noarch
2017-05-17 12:35:42 Found package: perl-XML-Twig,3.34-1.el6.0.0.1645.noarch
2017-05-17 12:35:42 Found package: perl-XML-XPath,1.13-10.el6.0.0.1645.noarch
2017-05-17 12:35:42 Found package: perl-YAML-LibYAML,0.52-0.0.1645.i686
2017-05-17 12:35:42 Found package: perl-YAML-LibYAML,0.52-0.0.1645.x86_64
2017-05-17 12:35:42 Found package: perl-YAML-Syck,1.07-4.el6.i686
2017-05-17 12:35:42 Found package: perl-bigip,13.0.0-0.0.1645.i686
2017-05-17 12:35:42 Found package: perl-devel,5.10.1-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:42 Found package: perl-lib-abs,0.93-0.0.1645.i686
2017-05-17 12:35:42 Found package: perl-libs,5.10.1-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:42 Found package: perl-libwww-perl,5.833-3.el6.noarch
2017-05-17 12:35:42 Found package: perl-parent,0.221-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:42 Found package: perl-version,0.77-136.el6_6.1.0.0.1645.i686
2017-05-17 12:35:42 Found package: pfmand,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:42 Found package: pgadmind,13.0.0-0.0.1645.i686
2017-05-17 12:35:42 Found package: phonehome,13.0.0-0.0.1645.noarch
2017-05-17 12:35:42 Found package: php,5.4.45-1.f5.4.0.0.1645.i686 Comment [14]: Directory traversal
2017-05-17 12:35:42 Found package: php-hsl,13.0.0-0.0.1645.i686 vulnerability
2017-05-17 12:35:42 Found package: php-mcp,13.0.0-0.0.1645.i686
CVE-2014-9767
2017-05-17 12:35:42 Found package: physmem,1.0-0.0.1645.i686
2017-05-17 12:35:42 Found package: pigz,2.3.3-1.el6.x86_64
2017-05-17 12:35:42 Found package: pinentry,0.7.6-6.el6.x86_64
2017-05-17 12:35:42 Found package: ping-access-agent,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:42 Found package: ping-access-sdk,1.0.0-0.0.1645.x86_64
2017-05-17 12:35:42 Found package: pkcs11d,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:42 Found package: pkg-tools,13.0.0-0.0.1645.noarch
2017-05-17 12:35:42 Found package: pkgconfig,0.23-9.1.el6.x86_64
2017-05-17 12:35:42 Found package: pktclass-daemon,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:42 Found package: pktclass-lib,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:42 Found package: platform_check,13.0.0-0.0.1645.noarch
2017-05-17 12:35:42 Found package: platform_diag,13.0.0-0.0.1645.noarch
2017-05-17 12:35:42 Found package: plymouth-core-libs,0.8.3-27.el6_5.1.0.0.1645.x86_64
2017-05-17 12:35:42 Found package: plymouth-minimal,0.8.3-27.el6_5.1.0.0.1645.x86_64
2017-05-17 12:35:42 Found package: policycoreutils,2.0.83-19.47.el6_6.1.0.0.1645.i686
2017-05-17 12:35:42 Found package: policycoreutils-python,2.0.83-19.47.el6_6.1.0.0.1645.i686
2017-05-17 12:35:42 Found package: polkit,0.96-7.el6.0.0.1645.i686
2017-05-17 12:35:42 Found package: polkit,0.96-7.el6.0.0.1645.x86_64
2017-05-17 12:35:42 Found package: popt,1.13-7.el6.i686
2017-05-17 12:35:42 Found package: popt,1.13-7.el6.x86_64
2017-05-17 12:35:42 Found package: postgresql,9.3.2-0.0.1645.i686
2017-05-17 12:35:42 Found package: postgresql-jdbc,9.3-1101.0.0.1645.noarch

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:42 Found package: postgresql-libs,9.3.2-0.0.1645.i686


2017-05-17 12:35:42 Found package: postgresql-share,9.3.2-0.0.1645.i686
2017-05-17 12:35:42 Found package: predis,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:42 Found package: procps,3.2.8-30.el6.x86_64
2017-05-17 12:35:42 Found package: promptstatusd,13.0.0-0.0.1645.i686
2017-05-17 12:35:42 Found package: protobuf,2.3.0-0.0.1645.i686
2017-05-17 12:35:42 Found package: protobuf,2.3.0-0.0.1645.x86_64
2017-05-17 12:35:42 Found package: protobuf-c,0.15-2.el6.0.0.1645.x86_64
2017-05-17 12:35:42 Found package: psmisc,22.6-19.el6_5.x86_64
2017-05-17 12:35:42 Found package: pth,2.0.7-9.3.el6.x86_64
2017-05-17 12:35:42 Found package: python,2.6.6-66.el6_8.0.0.1645.i686
2017-05-17 12:35:42 Found package: python-libs,2.6.6-66.el6_8.0.0.1645.i686
2017-05-17 12:35:42 Found package: python-libs,2.6.6-66.el6_8.0.0.1645.x86_64
2017-05-17 12:35:42 Found package: python-lxml,2.2.3-1.1.el6.0.0.1645.i686
2017-05-17 12:35:42 Found package: python-lxml,2.2.3-1.1.el6.0.0.1645.x86_64
2017-05-17 12:35:42 Found package: q,1.1.2-0.0.1645.i686
2017-05-17 12:35:42 Found package: qifmap,1.0.0-0.0.1645.x86_64
2017-05-17 12:35:42 Found package: qpdf,2.2.2-0.0.1645.x86_64
2017-05-17 12:35:42 Found package: quickassist,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:42 Found package: rba,13.0.0-0.0.1645.i686
2017-05-17 12:35:42 Found package: rd_utils,13.0.0-0.0.1645.i686
2017-05-17 12:35:42 Found package: re2,16.6-0.0.1645.i686
2017-05-17 12:35:42 Found package: re2,16.6-0.0.1645.x86_64
2017-05-17 12:35:42 Found package: readline,6.0-4.el6.i686
2017-05-17 12:35:42 Found package: readline,6.0-4.el6.x86_64
2017-05-17 12:35:42 Found package: rewrite-plugin,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:42 Found package: rewrite-tmjail,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:42 Found package: rmonsnmpd,13.0.0-0.0.1645.i686
2017-05-17 12:35:42 Found package: rootfiles,8.1-6.1.el6.0.0.1645.noarch
2017-05-17 12:35:42 Found package: ros-application,13.0.0-0.0.1645.noarch
2017-05-17 12:35:42 Found package: rpcbind,0.2.0-11.el6_7.0.0.1645.x86_64
2017-05-17 12:35:42 Found package: rpm,4.8.0-38.el6_6.0.0.1645.x86_64
2017-05-17 12:35:42 Found package: rpm-back,4.4.2.3-36.el5_11.x86_64
2017-05-17 12:35:42 Found package: rpm-back-libs,4.4.2.3-36.el5_11.x86_64
2017-05-17 12:35:42 Found package: rpm-libs,4.8.0-38.el6_6.0.0.1645.i686
2017-05-17 12:35:42 Found package: rpm-libs,4.8.0-38.el6_6.0.0.1645.x86_64
2017-05-17 12:35:42 Found package: rrdshim,13.0.0-0.0.1645.i686
2017-05-17 12:35:42 Found package: rrdstats,13.0.0-0.0.1645.i686
2017-05-17 12:35:42 Found package: rrdtool,1.2.27-0.0.1645.i686
2017-05-17 12:35:42 Found package: rrdtool-perl,1.2.27-0.0.1645.i686
2017-05-17 12:35:43 Found package: rsync,3.0.6-12.el6.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: rtstats,13.0.0-0.0.1645.i686
2017-05-17 12:35:43 Found package: runit,1.0.4-0.0.1645.i686
2017-05-17 12:35:43 Found package: sam-main,13.0.0-0.0.1645.noarch
2017-05-17 12:35:43 Found package: sam-www,13.0.0-2.0.1671.i686

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:43 Found package: samba-client,3.6.23-30.el6_7.0.0.1645.x86_64


2017-05-17 12:35:43 Found package: samba-common,3.6.23-30.el6_7.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: samba-nlad,3.4.17-13.0.0.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: samba-winbind,3.6.23-30.el6_7.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: samba-winbind-clients,3.6.23-30.el6_7.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: samlidpd,13.0.0-0.0.1645.i686
2017-05-17 12:35:43 Found package: schema-java,13.0.0-0.0.1645.noarch
2017-05-17 12:35:43 Found package: scim,13.0.0-0.0.1645.i686
2017-05-17 12:35:43 Found package: scriptd,13.0.0-0.0.1645.i686
2017-05-17 12:35:43 Found package: sdmd,13.0.0-2.0.1671.i686
2017-05-17 12:35:43 Found package: sed,4.2.1-10.el6.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: selinux-policy,3.7.19-260.el6_6.3.0.0.1645.noarch
2017-05-17 12:35:43 Found package: selinux-policy-targeted,3.7.19-260.el6_6.3.0.0.1645.noarch
2017-05-17 12:35:43 Found package: setools-libs,3.3.7-4.el6.i686
2017-05-17 12:35:43 Found package: setools-libs-python,3.3.7-4.el6.i686
2017-05-17 12:35:43 Found package: setserial,2.17-25.el6.x86_64
2017-05-17 12:35:43 Found package: setup,2.8.14-20.el6_4.1.0.0.1645.noarch
2017-05-17 12:35:43 Found package: sflow_agent,13.0.0-0.0.1645.i686
2017-05-17 12:35:43 Found package: sg3_utils-libs,1.28-6.el6.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: sgml-common,0.6.3-33.el6.noarch
2017-05-17 12:35:43 Found package: shadow-utils,4.1.4.2-19.el6.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: shared-mime-info,0.70-6.el6.x86_64
2017-05-17 12:35:43 Found package: shell,13.0.0-0.0.1645.i686
2017-05-17 12:35:43 Found package: shmmapd,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:43 Found package: sipdb,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:43 Found package: slf4j,1.5.8-8.el6.0.0.1645.noarch
2017-05-17 12:35:43 Found package: smartmontools,6.5.0-20160416.r4302.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: smp_utils,0.97-0.0.1645.x86_64
2017-05-17 12:35:43 Found package: smp_utils-libs,0.97-0.0.1645.x86_64
2017-05-17 12:35:43 Found package: socat,1.7.2.3-1.el6.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: sod,13.0.0-2.0.1671.i686
2017-05-17 12:35:43 Found package: sqlite,3.6.20-1.el6.2.i686
2017-05-17 12:35:43 Found package: sqlite,3.6.20-1.el6.2.x86_64
2017-05-17 12:35:43 Found package: srm,1.2.8-0.0.1645.x86_64
2017-05-17 12:35:43 Found package: sshplugin,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:43 Found package: ssldump,0.9b3-0.0.1645.x86_64
2017-05-17 12:35:43 Found package: ssmtp,2.61-14.el5.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: sso-plugin,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:43 Found package: startstat,13.0.0-2.0.1671.i686
2017-05-17 12:35:43 Found package: stat_auto,13.0.0-0.0.1645.i686
2017-05-17 12:35:43 Found package: stat_auto,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:43 Found package: statsd,13.0.0-0.0.1645.i686
2017-05-17 12:35:43 Found package: stpd,13.0.0-2.0.1671.i686
2017-05-17 12:35:43 Found package: strace,4.5.19-1.19.el6.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: syscalld,13.0.0-0.0.1645.i686

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:43 Found package: syslinux,4.04-3.el6.0.0.1645.i686


2017-05-17 12:35:43 Found package: syslinux-extlinux,4.04-3.el6.0.0.1645.i686
2017-05-17 12:35:43 Found package: syslinux-extlinux-nonlinux,4.04-3.el6.0.0.1645.noarch
2017-05-17 12:35:43 Found package: syslinux-nonlinux,4.04-3.el6.0.0.1645.noarch
2017-05-17 12:35:43 Found package: syslog-ng,2.1.4-9.el5.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: sysstat,9.0.4-27.el6.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: system_check,13.0.0-2.0.1671.i686
2017-05-17 12:35:43 Found package: sysvinit-tools,2.87-5.dsf.el6.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: tamd,13.0.0-0.0.1645.i686
2017-05-17 12:35:43 Found package: tar,1.23-11.el6.x86_64
2017-05-17 12:35:43 Found package: tcl,8.5.7-6.el6.0.0.1645.i686
2017-05-17 12:35:43 Found package: tclcurl,7.22.0-1.i686
2017-05-17 12:35:43 Found package: tcllib,1.13-1.i686
2017-05-17 12:35:43 Found package: tclperl,3.1-0.fdr.1.i686
2017-05-17 12:35:43 Found package: tclxml,3.2-1.i686
2017-05-17 12:35:43 Found package: tcp_wrappers,7.6-57.el6.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: tcp_wrappers-libs,7.6-57.el6.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: tcpdump,4.0.0-3.20090921gitdf3cb4.2.el6.0.0.1645.x86_64
2017-05-17 12:35:43 Found package: telnet,0.17-48.el6.x86_64
2017-05-17 12:35:43 Found package: tftp-hpa,0.48-0.0.1645.i686
2017-05-17 12:35:43 Found package: thrift,0.9.1-0.0.1645.i686
2017-05-17 12:35:43 Found package: thrift,0.9.1-0.0.1645.x86_64
2017-05-17 12:35:43 Found package: tiles,2.2.0-1.0.0.1645.noarch
2017-05-17 12:35:43 Found package: time,1.7-37.1.el6.x86_64
2017-05-17 12:35:43 Found package: tls,1.6-0.0.1645.i686
2017-05-17 12:35:43 Found package: tm_install,2.9.1-4.0.noarch
2017-05-17 12:35:43 Found package: tm_sys,13.0.0-0.0.1645.i686
2017-05-17 12:35:43 Found package: tm_sys,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:43 Found package: tmconf,13.0.0-0.0.1645.i686
2017-05-17 12:35:43 Found package: tmconf,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:44 Found package: tmdb,13.0.0-0.0.1645.noarch
2017-05-17 12:35:44 Found package: tmipsecd,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: tmjail,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:44 Found package: tmm,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:44 Found package: tmm-padc,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:44 Found package: tmm-padc-debug,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:44 Found package: tmm_pci,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: tmm_pci,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:44 Found package: tmplugin,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: tmplugin,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:44 Found package: tmpwatch,2.9.16-4.el6.0.0.1645.x86_64
2017-05-17 12:35:44 Found package: tmrate,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:44 Found package: tmrouted,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:44 Found package: tmsh,13.0.0-2.0.1671.i686
2017-05-17 12:35:44 Found package: tmstat,13.0.0-0.0.1645.x86_64

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:44 Found package: tmui,13.0.0-2.0.1671.noarch


2017-05-17 12:35:44 Found package: tomcat,6.0.48-1.0.0.1645.noarch
Comment [15]: 2015-06-03 End of life for
2017-05-17 12:35:44 Found package: traceroute,2.0.14-2.el6.x86_64 Apache Tomcat 6.0.x. The Apache Tomcat team announces
2017-05-17 12:35:44 Found package: ts-application,13.0.0-0.0.1645.noarch
that support for Apache Tomcat 6.0.x will end on 31
2017-05-17 12:35:44 Found package: tunctl,1.5-3.el6.x86_64
December 2016
2017-05-17 12:35:44 Found package: tzdata,2016j-1.el6.2.0.1671.noarch
2017-05-17 12:35:44 Found package: tzdata-java,2016j-1.el6.2.0.1671.noarch
2017-05-17 12:35:44 Found package: udev,147-2.57.el6.0.0.1645.i686
2017-05-17 12:35:44 Found package: umem,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: unzip,6.0-2.el6_6.0.0.1645.x86_64
2017-05-17 12:35:44 Found package: upgrade-selector,13.0.0-0.0.1645.noarch
2017-05-17 12:35:44 Found package: upstart,0.6.5-13.el6_5.3.0.0.1645.x86_64
2017-05-17 12:35:44 Found package: urldb,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:44 Found package: urldbmgrd,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:44 Found package: usbflush,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: usbutils,003-4.el6.x86_64
2017-05-17 12:35:44 Found package: ustr,1.0.4-9.1.el6.i686
2017-05-17 12:35:44 Found package: util-linux-ng,2.17.2-12.18.el6.0.0.1645.x86_64
2017-05-17 12:35:44 Found package: vcmp_shm,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: vconfig,1.9-8.1.el6.x86_64
2017-05-17 12:35:44 Found package: vdi,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:44 Found package: vijava,55b20130927-0.0.1645.x86_64
2017-05-17 12:35:44 Found package: vim-common,7.2.411-1.8.el6.0.0.1645.i686
2017-05-17 12:35:44 Found package: vim-enhanced,7.2.411-1.8.el6.0.0.1645.i686
2017-05-17 12:35:44 Found package: vim-minimal,7.2.411-1.8.el6.0.0.1645.i686
2017-05-17 12:35:44 Found package: vnic,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:44 Found package: vxland,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: wa-master,13.0.0-2.0.1671.noarch
2017-05-17 12:35:44 Found package: wa-plugins,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:44 Found package: wainfodecode,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: wccpd,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: wdiag,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: websense,5.4.2-0.0.1645.x86_64
2017-05-17 12:35:44 Found package: websso,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: which,2.19-6.el6.x86_64
2017-05-17 12:35:44 Found package: windlls,1.0-1.0.6.3.0.noarch
2017-05-17 12:35:44 Found package: wireshark,1.8.10-17.el6.0.0.1645.x86_64
2017-05-17 12:35:44 Found package: woc-application-lm,13.0.0-0.0.1645.noarch
2017-05-17 12:35:44 Found package: woc-utils,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: wocd,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: wocplugin,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: womdict-drv,13.0.0-2.0.1671.x86_64
2017-05-17 12:35:44 Found package: words,3.0-17.el6.noarch
2017-05-17 12:35:44 Found package: work,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: work,13.0.0-0.0.1645.x86_64

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:44 Found package: wr_urldbd,13.0.0-0.0.1645.x86_64


2017-05-17 12:35:44 Found package: wsdl4j,1.5.2-7.8.el6.noarch
2017-05-17 12:35:44 Found package: xalan-c,1.10.0-4.0.0.1645.i686
2017-05-17 12:35:44 Found package: xalan-c,1.10.0-4.0.0.1645.x86_64
2017-05-17 12:35:44 Found package: xconfig,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: xerces-j2,2.7.1-12.7.el6_5.0.0.1645.noarch
2017-05-17 12:35:44 Found package: xfsprogs,3.1.1-16.el6.x86_64
2017-05-17 12:35:44 Found package: xml-commons-apis,13.0.0-0.0.1645.noarch
2017-05-17 12:35:44 Found package: xml-commons-resolver,1.1-4.18.el6.0.0.1645.noarch
2017-05-17 12:35:44 Found package: xml-security-c,1.6.1-1.0.0.1645.i686
2017-05-17 12:35:44 Found package: xui,13.0.0-0.0.1645.i686
2017-05-17 12:35:44 Found package: xz,4.999.9-0.5.beta.20091007git.el6.x86_64
2017-05-17 12:35:44 Found package: xz-libs,4.999.9-0.5.beta.20091007git.el6.i686
2017-05-17 12:35:44 Found package: xz-libs,4.999.9-0.5.beta.20091007git.el6.x86_64
2017-05-17 12:35:44 Found package: xz-lzma-compat,4.999.9-0.5.beta.20091007git.el6.x86_64
2017-05-17 12:35:44 Found package: zeromq,2.0.7-2.el5.0.0.1645.i686
2017-05-17 12:35:44 Found package: zeromq,2.0.7-2.el5.0.0.1645.x86_64
2017-05-17 12:35:45 Found package: zlib,1.2.3-29.el6.i686
2017-05-17 12:35:45 Found package: zlib,1.2.3-29.el6.x86_64
2017-05-17 12:35:45 Found package: zrd,13.0.0-2.0.1671.i686
2017-05-17 12:35:45 Found package: zxfrd,13.0.0-0.0.1645.x86_64
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7310 (Checking package list with pacman)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7312 (Checking available updates for pacman based system)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 Result: pacman binary NOT found on this system, test skipped
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7314 (Checking pacman configuration options)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7320 (Checking for arch-audit tooling)
2017-05-17 12:35:45 Reason to skip: Test only applies to Arch Linux
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7322 (Discover vulnerable packages with arch-audit)
2017-05-17 12:35:45 Reason to skip: arch-audit not found
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7328 (Querying Zypper for installed packages)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7330 (Querying Zypper for vulnerable packages)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7332 (Query macOS ports)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:45 Reason to skip: Incorrect guest OS (macOS only)


2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7334 (Query port for port upgrades)
2017-05-17 12:35:45 Reason to skip: Incorrect guest OS (macOS only)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7345 (Querying dpkg)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 Result: dpkg can NOT be found on this system, test skipped
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7346 (Search unpurged packages on system)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 Result: dpkg can NOT be found on this system, test skipped
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7348 (Check for old distfiles)
2017-05-17 12:35:45 Reason to skip: Incorrect guest OS (FreeBSD only)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7350 (Checking for installed packages with DNF utility)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7352 (Checking for security updates with DNF utility)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7354 (Checking package database integrity)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7366 (Checking for debsecan utility)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7370 (Checking for debsums utility)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7378 (Query portmaster for port upgrades)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7380 (Check for vulnerable NetBSD packages)
2017-05-17 12:35:45 Reason to skip: Incorrect guest OS (NetBSD only)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7381 (Check for vulnerable FreeBSD packages with pkg)
2017-05-17 12:35:45 Reason to skip: pkg tool not available
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7382 (Check for vulnerable FreeBSD packages with portaudit)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7383 (Check for YUM package update management)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:45 ===---------------------------------------------------------------===


2017-05-17 12:35:45 Skipped test PKGS-7384 (Check for YUM utils package)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7386 (Check for YUM security package)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7387 (Check for GPG signing in YUM security package)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7388 (Check security repository in Debian/ubuntu apt sources.list file)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7390 (Check Ubuntu database consistency)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7392 (Check for Debian/Ubuntu security updates)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7393 (Check for Gentoo vulnerable packages)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Skipped test PKGS-7394 (Check for Ubuntu updates)
2017-05-17 12:35:45 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Performing test ID PKGS-7398 (Check for package audit tool)
2017-05-17 12:35:45 Test: checking for package audit tool
2017-05-17 12:35:45 Suggestion: Install a package audit tool to determine vulnerable packages [test:PKGS-7398]
[details:-] [solution:-]
2017-05-17 12:35:45 Result: no package audit tool found Comment [16]: Packages could be audited by
2017-05-17 12:35:45 ===---------------------------------------------------------------=== vulnerabilities. Easy implementation.
2017-05-17 12:35:45 Performing test ID PKGS-7410 (Count installed kernel packages)
2017-05-17 12:35:45 Test: Checking how many kernel packages are installed
2017-05-17 12:35:45 Result: found 1 on the system, which is fine
2017-05-17 12:35:45 Hardening: assigned maximum number of hardening points for this item (1). Currently having 105
points (out of 139)
2017-05-17 12:35:45 Checking permissions of /home/admin/assess/include/tests_networking
2017-05-17 12:35:45 File permissions are OK
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Action: Performing tests from category: Networking
2017-05-17 12:35:45 ===---------------------------------------------------------------===
2017-05-17 12:35:45 Performing test ID NETW-2600 (Checking IPv6 configuration)
2017-05-17 12:35:51 Result: IPV6 mode is manual
2017-05-17 12:35:51 Result: IPv6 only configuration: NO
2017-05-17 12:35:51 ===---------------------------------------------------------------===

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:51 Performing test ID NETW-2704 (Basic nameserver configuration tests)


2017-05-17 12:35:51 Test: Checking /etc/resolv.conf file
2017-05-17 12:35:51 Result: Found /etc/resolv.conf file
2017-05-17 12:35:51 Test: Querying nameservers
2017-05-17 12:35:51 Found nameserver: <anonimized>
2017-05-17 12:35:52 Nameserver <anonimized> seems to respond to queries from this host.
2017-05-17 12:35:52 Found nameserver: <anonimized>
2017-05-17 12:35:52 Nameserver <anonimized> seems to respond to queries from this host.
2017-05-17 12:35:52 ===---------------------------------------------------------------===
2017-05-17 12:35:52 Performing test ID NETW-2705 (Check availability two nameservers)
2017-05-17 12:35:52 Result: found at least 2 responsive nameservers
2017-05-17 12:35:52 Hardening: assigned maximum number of hardening points for this item (3). Currently having 108
points (out of 142)
2017-05-17 12:35:52 ===---------------------------------------------------------------===
2017-05-17 12:35:52 Performing test ID NETW-3001 (Find default gateway (route))
2017-05-17 12:35:52 Test: Searching default gateway(s)
2017-05-17 12:35:52 Result: Found default gateway <anonimized>
2017-05-17 12:35:52 Result: Found default gateway <anonimized>
2017-05-17 12:35:52 ===---------------------------------------------------------------===
2017-05-17 12:35:52 Performing test ID NETW-3004 (Search for available network interfaces)
2017-05-17 12:35:52 Found network interface: lo
2017-05-17 12:35:52 Found network interface: eth0
2017-05-17 12:35:52 Found network interface: pf2-1
2017-05-17 12:35:52 Found network interface: pf2-2
2017-05-17 12:35:52 Found network interface: pf1-1
2017-05-17 12:35:52 Found network interface: pf1-2
2017-05-17 12:35:52 Found network interface: pf1-3
2017-05-17 12:35:52 Found network interface: pf1-4
2017-05-17 12:35:52 Found network interface: pf1-5
2017-05-17 12:35:52 Found network interface: pf1-6
2017-05-17 12:35:52 Found network interface: pf1-7
2017-05-17 12:35:52 Found network interface: pf1-8
2017-05-17 12:35:52 Found network interface: mgmt
2017-05-17 12:35:52 Found network interface: mgmt.1@mgmt
2017-05-17 12:35:52 Found network interface: tmm
2017-05-17 12:35:52 Found network interface: vlan_dmz
2017-05-17 12:35:52 Found network interface: tmm_bp
2017-05-17 12:35:52 ===---------------------------------------------------------------===
2017-05-17 12:35:52 Performing test ID NETW-3006 (Get network MAC addresses)
2017-05-17 12:35:52 Found MAC address: <anonimized>
2017-05-17 12:35:52 Found MAC address: <anonimized>
2017-05-17 12:35:52 Found MAC address: <anonimized>
2017-05-17 12:35:52 Found MAC address: <anonimized>
2017-05-17 12:35:52 Found MAC address: <anonimized>
2017-05-17 12:35:52 Found MAC address: <anonimized>

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:52 Found MAC address: <anonimized>


2017-05-17 12:35:52 Found MAC address: <anonimized>
2017-05-17 12:35:52 Found MAC address: <anonimized>
2017-05-17 12:35:52 Found MAC address: <anonimized>
2017-05-17 12:35:52 Found MAC address: <anonimized>
2017-05-17 12:35:52 Found MAC address: <anonimized>
2017-05-17 12:35:52 Found MAC address: <anonimized>
2017-05-17 12:35:52 ===---------------------------------------------------------------===
2017-05-17 12:35:52 Performing test ID NETW-3008 (Get network IP addresses)
2017-05-17 12:35:52 Found IPv4 address: 127.0.0.1
2017-05-17 12:35:52 Found IPv4 address: <anonimized>
2017-05-17 12:35:52 Found IPv4 address: 127.2.0.2
2017-05-17 12:35:52 Found IPv4 address: 127.1.1.254
2017-05-17 12:35:52 Found IPv4 address: 127.20.0.254
2017-05-17 12:35:52 Found IPv4 address: <anonimized>
2017-05-17 12:35:52 Found IPv6 address: <anonimized>
2017-05-17 12:35:52 Found IPv6 address: ::1/128
2017-05-17 12:35:52 Found IPv6 address: <anonimized>
2017-05-17 12:35:52 Found IPv6 address: <anonimized>
2017-05-17 12:35:52 Found IPv6 address: <anonimized>
2017-05-17 12:35:52 Found IPv6 address: <anonimized>
2017-05-17 12:35:52 Found IPv6 address: <anonimized>
2017-05-17 12:35:52 Found IPv6 address: <anonimized>
2017-05-17 12:35:52 ===---------------------------------------------------------------===
2017-05-17 12:35:52 Performing test ID NETW-3012 (Check listening ports)
2017-05-17 12:35:52 Test: Retrieving sockstat information to find listening ports
2017-05-17 12:35:52 Found listening info: 127.0.0.1:43974|udp|lacpd|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:52904|udp|stpd|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:3793|udp|alertd|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:3794|udp|errdefsd|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:53|udp|named|
2017-05-17 12:35:52 Found listening info: 127.20.0.254:123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: <anonimized>:123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: 127.1.1.254:123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: 127.2.0.2:123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: <anonimized>:123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: 0.0.0.0:123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:4500|udp|racoon|
2017-05-17 12:35:52 Found listening info: 0.0.0.0:4500|udp|racoon| Comment [17]: IKE manager. Why is this
2017-05-17 12:35:52 Found listening info: 127.0.0.1:500|udp|racoon| remotely accessable?
2017-05-17 12:35:52 Found listening info: 0.0.0.0:500|udp|racoon|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:514|udp|syslog-ng|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:46404|udp|lldpd|
2017-05-17 12:35:52 Found listening info: ::1:53|udp|named|

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:52 Found listening info: <anonimized>:123|udp|ntpd|


2017-05-17 12:35:52 Found listening info: <anonimized>:123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: <anonimized>:123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: <anonimized>:123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: <anonimized>:123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: <anonimized>:123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: <anonimized>:123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: ::1:123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: :::123|udp|ntpd|
2017-05-17 12:35:52 Found listening info: :::161|udp|snmpd|
2017-05-17 12:35:52 Found listening info: ::1:4500|udp|racoon|
2017-05-17 12:35:52 Found listening info: :::4500|udp|racoon|
Comment [18]: IKE manager. Why is this
2017-05-17 12:35:52 Found listening info: ::1:500|udp|racoon| remotely accessable?
2017-05-17 12:35:52 Found listening info: :::500|udp|racoon|
2017-05-17 12:35:52 Found listening info: ::1:514|udp|syslog-ng|
2017-05-17 12:35:52 Found listening info: ::1:5353|udp|zxfrd|
2017-05-17 12:35:52 Found listening info: 127.2.0.2:1030|tcp|sod|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:520|tcp|tmrouted|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:8105|tcp|f5-rest-node|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:6889|tcp|fslogd|
2017-05-17 12:35:52 Found listening info: 0.0.0.0:3306|tcp|mysqld|
2017-05-17 12:35:52 Found listening info: 127.1.1.254:6666|tcp|mcpd|
2017-05-17 12:35:52 Found listening info: 127.2.0.2:6666|tcp|mcpd|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:6666|tcp|mcpd|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:7820|tcp|./bd|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:7790|tcp|./bd|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:18766|tcp|tmipsecd|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:9167|tcp|evrouted|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:5200|tcp|tmrouted|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:5555|tcp|admd|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:4884|tcp|pabnagd|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:5556|tcp|admd|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:9781|tcp|perl|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:44917|tcp|icrd_child|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:53|tcp|named|
2017-05-17 12:35:52 Found listening info: 127.0.0.1:7830|tcp|pabnagd|
2017-05-17 12:35:52 Found listening info: 0.0.0.0:22|tcp|sshd|
2017-05-17 12:35:53 Found listening info: 127.0.0.1:5432|tcp|postgres|
2017-05-17 12:35:53 Found listening info: 127.0.0.1:953|tcp|named|
2017-05-17 12:35:53 Found listening info: 127.0.0.1:12345|tcp|pfmand|
2017-05-17 12:35:53 Found listening info: 127.0.0.1:7770|tcp|./bd|
2017-05-17 12:35:53 Found listening info: 127.0.0.1:9786|tcp|perl|
2017-05-17 12:35:53 Found listening info: 127.0.0.1:6011|tcp|devmgmtd|
2017-05-17 12:35:53 Found listening info: 127.0.0.1:7777|tcp|tmipsecd|
2017-05-17 12:35:53 Found listening info: 127.0.0.1:7810|tcp|./bd|

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:53 Found listening info: 127.0.0.1:9090|tcp|monpd|


2017-05-17 12:35:53 Found listening info: 127.0.0.1:13666|tcp|LCDd|
2017-05-17 12:35:53 Found listening info: 127.0.0.1:9091|tcp|monpd|
2017-05-17 12:35:53 Found listening info: 127.0.0.1:7780|tcp|./bd|
2017-05-17 12:35:53 Found listening info: 127.0.0.1:9092|tcp|avrd|
2017-05-17 12:35:53 Found listening info: ::ffff:127.0.0.1:8005|tcp|java|
2017-05-17 12:35:53 Found listening info: ::ffff:127.0.0.1:8009|tcp|java|
2017-05-17 12:35:53 Found listening info: :::80|tcp|httpd|
2017-05-17 12:35:53 Found listening info: ::1:53|tcp|named|
2017-05-17 12:35:53 Found listening info: :::22|tcp|sshd|
2017-05-17 12:35:53 Found listening info: :::9783|tcp|perl|
2017-05-17 12:35:53 Found listening info: :::9784|tcp|perl|
2017-05-17 12:35:53 Found listening info: :::443|tcp|httpd|
2017-05-17 12:35:53 Found listening info: :::161|tcp|snmpd|
2017-05-17 12:35:53 Found listening info: :::4353|tcp|big3d|
2017-05-17 12:35:53 Found listening info: ::ffff:127.0.0.1:8100|tcp|java|
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Skipped test NETW-3014 (Checking promiscuous interfaces (BSD))
2017-05-17 12:35:53 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Performing test ID NETW-3015 (Checking promiscuous interfaces (Linux))
2017-05-17 12:35:53 Test: Checking promiscuous interfaces (Linux)
2017-05-17 12:35:53 Result: Promiscuous interface: pf1-1
2017-05-17 12:35:53 Warning: Found promiscuous interface (pf1-1) [test:NETW-3015] [details:-] [solution:-]
2017-05-17 12:35:53 Note: some tools put an interface into promiscuous mode, to capture/log network traffic
2017-05-17 12:35:53 Result: Promiscuous interface: pf1-2
2017-05-17 12:35:53 Warning: Found promiscuous interface (pf1-2) [test:NETW-3015] [details:-] [solution:-]
2017-05-17 12:35:53 Note: some tools put an interface into promiscuous mode, to capture/log network traffic
2017-05-17 12:35:53 Result: Promiscuous interface: pf1-3
2017-05-17 12:35:53 Warning: Found promiscuous interface (pf1-3) [test:NETW-3015] [details:-] [solution:-]
2017-05-17 12:35:53 Note: some tools put an interface into promiscuous mode, to capture/log network traffic
2017-05-17 12:35:53 Result: Promiscuous interface: pf1-4
2017-05-17 12:35:53 Warning: Found promiscuous interface (pf1-4) [test:NETW-3015] [details:-] [solution:-]
2017-05-17 12:35:53 Note: some tools put an interface into promiscuous mode, to capture/log network traffic
2017-05-17 12:35:53 Result: Promiscuous interface: pf1-5
2017-05-17 12:35:53 Warning: Found promiscuous interface (pf1-5) [test:NETW-3015] [details:-] [solution:-]
2017-05-17 12:35:53 Note: some tools put an interface into promiscuous mode, to capture/log network traffic
2017-05-17 12:35:53 Result: Promiscuous interface: pf1-6
2017-05-17 12:35:53 Warning: Found promiscuous interface (pf1-6) [test:NETW-3015] [details:-] [solution:-]
2017-05-17 12:35:53 Note: some tools put an interface into promiscuous mode, to capture/log network traffic
2017-05-17 12:35:53 Result: Promiscuous interface: pf1-7
2017-05-17 12:35:53 Warning: Found promiscuous interface (pf1-7) [test:NETW-3015] [details:-] [solution:-]
2017-05-17 12:35:53 Note: some tools put an interface into promiscuous mode, to capture/log network traffic
2017-05-17 12:35:53 Result: Promiscuous interface: pf1-8
2017-05-17 12:35:53 Warning: Found promiscuous interface (pf1-8) [test:NETW-3015] [details:-] [solution:-]

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:53 Note: some tools put an interface into promiscuous mode, to capture/log network traffic
2017-05-17 12:35:53 Result: Promiscuous interface: pf2-1
2017-05-17 12:35:53 Warning: Found promiscuous interface (pf2-1) [test:NETW-3015] [details:-] [solution:-]
2017-05-17 12:35:53 Note: some tools put an interface into promiscuous mode, to capture/log network traffic
2017-05-17 12:35:53 Result: Promiscuous interface: pf2-2
2017-05-17 12:35:53 Warning: Found promiscuous interface (pf2-2) [test:NETW-3015] [details:-] [solution:-]
2017-05-17 12:35:53 Note: some tools put an interface into promiscuous mode, to capture/log network traffic
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Performing test ID NETW-3028 (Checking connections in WAIT state)
2017-05-17 12:35:53 Test: Using netstat for check for connections in WAIT state
2017-05-17 12:35:53 Result: currently 83 connections are in a waiting state (max configured: 5000).
2017-05-17 12:35:53 Result: 83 connections are in WAIT state
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Performing test ID NETW-3030 (Checking DHCP client status)
2017-05-17 12:35:53 IsRunning: process 'dhclient' not found
2017-05-17 12:35:53 IsRunning: process 'dhcpd' not found
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Performing test ID NETW-3032 (Checking for ARP monitoring software)
2017-05-17 12:35:53 IsRunning: process 'arpwatch' not found
2017-05-17 12:35:53 IsRunning: process 'arpon' not found
2017-05-17 12:35:53 Suggestion: Consider running ARP monitoring software (arpwatch,arpon) [test:NETW-3032] [details:-]
[solution:-]
2017-05-17 12:35:53 Checking permissions of /home/admin/assess/include/tests_printers_spools
2017-05-17 12:35:53 File permissions are OK
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Action: Performing tests from category: Printers and Spools
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Skipped test PRNT-2302 (Check for printcap consistency)
2017-05-17 12:35:53 Reason to skip: Incorrect guest OS (FreeBSD only)
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Performing test ID PRNT-2304 (Check cupsd status)
2017-05-17 12:35:53 Test: Checking cupsd status
2017-05-17 12:35:53 IsRunning: process 'cupsd' not found
2017-05-17 12:35:53 Result: cups daemon not running, cups daemon tests skipped
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Skipped test PRNT-2306 (Check CUPSd configuration file)
2017-05-17 12:35:53 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Skipped test PRNT-2307 (Check CUPSd configuration file permissions)
2017-05-17 12:35:53 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Skipped test PRNT-2308 (Check CUPSd network configuration)
2017-05-17 12:35:53 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Performing test ID PRNT-2314 (Check lpd status)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:53 Test: Checking lpd status


2017-05-17 12:35:53 IsRunning: process 'lpd' not found
2017-05-17 12:35:53 Result: lp daemon not running
2017-05-17 12:35:53 Hardening: assigned maximum number of hardening points for this item (4). Currently having 112
points (out of 146)
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Skipped test PRNT-2316 (Checking /etc/qconfig file)
2017-05-17 12:35:53 Reason to skip: Incorrect guest OS (AIX only)
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Skipped test PRNT-2418 (Checking qdaemon printer spooler status)
2017-05-17 12:35:53 Reason to skip: Incorrect guest OS (AIX only)
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Skipped test PRNT-2420 (Checking old print jobs)
2017-05-17 12:35:53 Reason to skip: Incorrect guest OS (AIX only)
2017-05-17 12:35:53 Checking permissions of /home/admin/assess/include/tests_mail_messaging
2017-05-17 12:35:53 File permissions are OK
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:53 Action: Performing tests from category: Software: e-mail and messaging
2017-05-17 12:35:53 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Performing test ID MAIL-8802 (Check Exim status)
2017-05-17 12:35:54 Test: check Exim status
2017-05-17 12:35:54 IsRunning: process 'exim' not found
2017-05-17 12:35:54 Result: no running Exim processes found
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Performing test ID MAIL-8814 (Check postfix process status)
2017-05-17 12:35:54 Test: check Postfix status
2017-05-17 12:35:54 Result: no running Postfix processes found
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Skipped test MAIL-8816 (Check Postfix configuration)
2017-05-17 12:35:54 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Skipped test MAIL-8817 (Check Postfix configuration errors)
2017-05-17 12:35:54 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Skipped test MAIL-8818 (Check Postfix configuration: banner)
2017-05-17 12:35:54 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Performing test ID MAIL-8820 (Postfix configuration scan)
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Performing test ID MAIL-8838 (Check dovecot process)
2017-05-17 12:35:54 Test: check dovecot status
2017-05-17 12:35:54 IsRunning: process 'dovecot' not found
2017-05-17 12:35:54 Result: dovecot not found
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Performing test ID MAIL-8860 (Check Qmail status)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:54 Test: check Qmail status


2017-05-17 12:35:54 IsRunning: process 'qmail-smtpd' not found
2017-05-17 12:35:54 Result: no running Qmail processes found
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Performing test ID MAIL-8880 (Check Sendmail status)
2017-05-17 12:35:54 Test: check sendmail status
2017-05-17 12:35:54 IsRunning: process 'sendmail' not found
2017-05-17 12:35:54 Result: no running Sendmail processes found
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Skipped test MAIL-8920 (Check OpenSMTPD status)
2017-05-17 12:35:54 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:54 Checking permissions of /home/admin/assess/include/tests_firewalls
2017-05-17 12:35:54 File permissions are OK
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Action: Performing tests from category: Software: firewalls
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Performing test ID FIRE-4502 (Check iptables kernel module)
2017-05-17 12:35:54 Result: Found iptables in loaded kernel modules
2017-05-17 12:35:54 Found module: ip_tables
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Performing test ID FIRE-4508 (Check used policies of iptables chains)
2017-05-17 12:35:54 Test: gathering information from table filter
2017-05-17 12:35:54 Result: iptables nfilter -- INPUT policy is ACCEPT.
2017-05-17 12:35:54 Result: ACCEPT
2017-05-17 12:35:54 Result: Found ACCEPT for INPUT (table: nfilter)
2017-05-17 12:35:54 Hardening: assigned partial number of hardening points (1 of 3). Currently having 113 points (out of
149)
2017-05-17 12:35:54 Result: iptables filter -- PHYSDEV policy is ACCEPT.
2017-05-17 12:35:54 Result: ACCEPT
2017-05-17 12:35:54 Result: iptables filter -- INPUT policy is ACCEPT. Comment [19]: Firewall config should be
2017-05-17 12:35:54 Result: ACCEPT reconsidered.
2017-05-17 12:35:54 Result: iptables filter -- ACCEPT policy is DROP.
2017-05-17 12:35:54 Result: DROP
2017-05-17 12:35:54 Result: iptables filter -- DROP policy is ACCEPT.
2017-05-17 12:35:54 Result: ACCEPT
2017-05-17 12:35:54 Result: iptables filter -- ACCEPT policy is REJECT.
2017-05-17 12:35:54 Result: REJECT
2017-05-17 12:35:54 Result: iptables filter -- FORWARD policy is ACCEPT.
2017-05-17 12:35:54 Result: ACCEPT
2017-05-17 12:35:54 Result: iptables filter -- OUTPUT policy is ACCEPT.
2017-05-17 12:35:54 Result: ACCEPT
2017-05-17 12:35:54 Result: iptables filter -- DROP policy is GID.
2017-05-17 12:35:54 Result: GID
2017-05-17 12:35:54 Result: iptables filter -- DROP policy is DROP.
2017-05-17 12:35:54 Result: DROP

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:54 Result: iptables filter -- ACCEPT policy is ACCEPT.


2017-05-17 12:35:54 Result: ACCEPT
2017-05-17 12:35:54 Result: iptables filter -- RELATED policy is ESTABLISHED.
2017-05-17 12:35:54 Result: ESTABLISHED
2017-05-17 12:35:54 Result: iptables filter -- REJECT policy is DROP.
2017-05-17 12:35:54 Result: DROP
2017-05-17 12:35:54 Result: iptables filter -- ACCEPT policy is ACCEPT.
2017-05-17 12:35:54 Result: ACCEPT
2017-05-17 12:35:54 Result: iptables filter -- ACCEPT policy is RELATED.
2017-05-17 12:35:54 Result: RELATED
2017-05-17 12:35:54 Result: iptables filter -- ESTABLISHED policy is DROP.
2017-05-17 12:35:54 Result: DROP
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Performing test ID FIRE-4512 (Check iptables for empty ruleset)
2017-05-17 12:35:54 Result: one or more rules are available (23 rules)
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Performing test ID FIRE-4513 (Check iptables for unused rules)
2017-05-17 12:35:54 Result: Found one or more possible unused rules
2017-05-17 12:35:54 Description: Unused rules can be a sign that the firewall rules aren't optimized or up-to-date Comment [20]: This should be cleaned up.
2017-05-17 12:35:54 Note: Sometimes rules aren't triggered but still in use. Keep this in mind before cleaning up rules. Unused firewall rules are a great danger. Again, firewall rules
2017-05-17 12:35:54 Output: iptables rule numbers: 2 3 6 7 8 9 11 12 1 1 2 3 4 5 6 1 2 3 4 should be reconsidered.
2017-05-17 12:35:54 Suggestion: Check iptables rules to see which rules are currently not used [test:FIRE-4513]
[details:-] [solution:-]
2017-05-17 12:35:54 Tip: iptables --list --numeric --line-numbers --verbose
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Skipped test FIRE-4518 (Check pf firewall components)
2017-05-17 12:35:54 Reason to skip: No /dev/pf device
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Skipped test FIRE-4520 (Check pf configuration consistency)
2017-05-17 12:35:54 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:54 ===---------------------------------------------------------------===
2017-05-17 12:35:54 Performing test ID FIRE-4524 (Check for CSF presence)
2017-05-17 12:35:54 Test: check /etc/csf/csf.conf
2017-05-17 12:35:54 Result: /etc/csf/csf.conf does NOT exist
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Skipped test FIRE-4526 (Check ipf status)
2017-05-17 12:35:55 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Skipped test FIRE-4530 (Check IPFW status)
2017-05-17 12:35:55 Reason to skip: Incorrect guest OS (FreeBSD only)
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Skipped test FIRE-4532 (Check macOS application firewall)
2017-05-17 12:35:55 Reason to skip: Incorrect guest OS (macOS only)
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Skipped test FIRE-4534 (Check for presence of Little Snitch on macOS)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:55 Reason to skip: Incorrect guest OS (macOS only)


2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Skipped test FIRE-4536 (Check nftables status)
2017-05-17 12:35:55 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Skipped test FIRE-4538 (Check nftables basic configuration)
2017-05-17 12:35:55 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Skipped test FIRE-4540 (Check for empty nftables configuration)
2017-05-17 12:35:55 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Performing test ID FIRE-4586 (Check firewall logging)
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Performing test ID FIRE-4590 (Check firewall status)
2017-05-17 12:35:55 Result: host based firewall or packet filter is active
2017-05-17 12:35:55 Hardening: assigned maximum number of hardening points for this item (5). Currently having 117
points (out of 151)
2017-05-17 12:35:55 Checking permissions of /home/admin/assess/include/tests_webservers
2017-05-17 12:35:55 File permissions are OK
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Action: Performing tests from category: Software: webserver
2017-05-17 12:35:55 Action: created temporary file /tmp/assess.X2RDUZOm92
2017-05-17 12:35:55 Action: created temporary file /tmp/assess.tXk6UFudPi
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Performing test ID HTTP-6622 (Checking Apache presence)
2017-05-17 12:35:55 Test: Scanning for Apache binary
2017-05-17 12:35:55 Result: /usr/sbin/httpd seems to be Apache HTTP daemon
2017-05-17 12:35:55 Apache version:
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Performing test ID HTTP-6624 (Testing main Apache configuration file)
2017-05-17 12:35:55 Result: Configuration file found (/etc/httpd/conf/httpd.conf)
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Performing test ID HTTP-6626 (Testing other Apache configuration file)
2017-05-17 12:35:55 Result: found 0 virtual hosts
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Performing test ID HTTP-6632 (Determining all available Apache modules)
2017-05-17 12:35:55 Test: searching available Apache modules
2017-05-17 12:35:55 Test: checking if directory /etc/httpd/modules exists
2017-05-17 12:35:55 Result: directory /etc/httpd/modules exists
2017-05-17 12:35:55 Test: checking if directory /opt/local/apache2/modules exists
2017-05-17 12:35:55 Result: directory /opt/local/apache2/modules NOT found
2017-05-17 12:35:55 Test: checking if directory /usr/lib/apache2 exists
2017-05-17 12:35:55 Result: directory /usr/lib/apache2 NOT found
2017-05-17 12:35:55 Test: checking if directory /usr/lib/httpd/modules exists
2017-05-17 12:35:55 Result: directory /usr/lib/httpd/modules exists

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_actions.so


2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_alias.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_asis.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_auth_basic.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_auth_f5_auth_token.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_auth_pam.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_auth_sys_group.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_authn_alias.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_authn_anon.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_authn_dbd.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_authn_dbm.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_authn_default.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_authn_file.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_authnz_ldap.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_authz_dbm.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_authz_default.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_authz_groupfile.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_authz_host.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_authz_owner.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_authz_user.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_cache.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_cgi.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_cgid.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_dbd.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_deflate.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_dir.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_disk_cache.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_dumpio.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_env.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_expires.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_f5_auth_cookie.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_fastcgi.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_filter.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_headers.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_ident.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_include.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_info.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_ldap.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_log_config.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_logio.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_mem_cache.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_mime.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_negotiation.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_proxy.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_proxy_ajp.so

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_proxy_balancer.so


2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_proxy_connect.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_proxy_ftp.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_proxy_http.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_proxy_scgi.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_reqtimeout.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_rewrite.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_setenvif.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_speling.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_ssl.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_status.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_substitute.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_version.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_vhost_alias.so
2017-05-17 12:35:55 Result: found Apache module /usr/lib/httpd/modules/mod_xui.so
2017-05-17 12:35:55 Test: checking if directory /usr/libexec/apache2 exists
2017-05-17 12:35:55 Result: directory /usr/libexec/apache2 NOT found
2017-05-17 12:35:55 Test: checking if directory /usr/lib64/apache2 exists
2017-05-17 12:35:55 Result: directory /usr/lib64/apache2 NOT found
2017-05-17 12:35:55 Test: checking if directory /usr/lib64/apache2/modules exists
2017-05-17 12:35:55 Result: directory /usr/lib64/apache2/modules NOT found
2017-05-17 12:35:55 Test: checking if directory /usr/lib64/httpd/modules exists
2017-05-17 12:35:55 Result: directory /usr/lib64/httpd/modules NOT found
2017-05-17 12:35:55 Test: checking if directory /usr/local/libexec/apache exists
2017-05-17 12:35:55 Result: directory /usr/local/libexec/apache NOT found
2017-05-17 12:35:55 Test: checking if directory /usr/local/libexec/apache22 exists
2017-05-17 12:35:55 Result: directory /usr/local/libexec/apache22 NOT found
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Performing test ID HTTP-6640 (Determining existence of specific Apache modules)
2017-05-17 12:35:55 Test: search string /mod_evasive([0-9][0-9])?.so in earlier discovered results
2017-05-17 12:35:55 Result: search string NOT found
2017-05-17 12:35:55 Hardening: assigned partial number of hardening points (2 of 3). Currently having 119 points (out of
154)
2017-05-17 12:35:55 Suggestion: Install Apache mod_evasive to guard webserver against DoS/brute force attempts
[test:HTTP-6640] [details:-] [solution:-]
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Performing test ID HTTP-6641 (Determining existence of specific Apache modules)
2017-05-17 12:35:55 Test: search string /mod_(reqtimeout|qos).so in earlier discovered results
2017-05-17 12:35:55 Result: found search string (result: apache_module[]=/usr/lib/httpd/modules/mod_reqtimeout.so)
2017-05-17 12:35:55 Hardening: assigned maximum number of hardening points for this item (3). Currently having 122
points (out of 157)
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Performing test ID HTTP-6643 (Determining existence of specific Apache modules)
2017-05-17 12:35:55 Test: search string /mod_security2.so in earlier discovered results
2017-05-17 12:35:55 Result: search string NOT found

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:55 Hardening: assigned partial number of hardening points (2 of 3). Currently having 124 points (out of
160)
2017-05-17 12:35:55 Suggestion: Install Apache modsecurity to guard webserver against web application attacks
[test:HTTP-6643] [details:-] [solution:-]
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:55 Performing test ID HTTP-6702 (Check nginx process)
2017-05-17 12:35:55 Test: searching running nginx process
2017-05-17 12:35:55 Result: no running nginx process found
2017-05-17 12:35:55 ===---------------------------------------------------------------===
2017-05-17 12:35:56 Skipped test HTTP-6704 (Check nginx configuration file)
2017-05-17 12:35:56 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:56 ===---------------------------------------------------------------===
2017-05-17 12:35:56 Skipped test HTTP-6706 (Check for additional nginx configuration files)
2017-05-17 12:35:56 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:56 ===---------------------------------------------------------------===
2017-05-17 12:35:56 Skipped test HTTP-6708 (Check discovered nginx configuration settings)
2017-05-17 12:35:56 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:56 ===---------------------------------------------------------------===
2017-05-17 12:35:56 Skipped test HTTP-6710 (Check nginx SSL configuration settings)
2017-05-17 12:35:56 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:56 ===---------------------------------------------------------------===
2017-05-17 12:35:56 Skipped test HTTP-6712 (Check nginx access logging)
2017-05-17 12:35:56 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:56 ===---------------------------------------------------------------===
2017-05-17 12:35:56 Skipped test HTTP-6714 (Check for missing error logs in nginx)
2017-05-17 12:35:56 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:56 ===---------------------------------------------------------------===
2017-05-17 12:35:56 Skipped test HTTP-6716 (Check for debug mode on error log in nginx)
2017-05-17 12:35:56 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:56 ===---------------------------------------------------------------===
2017-05-17 12:35:56 Skipped test HTTP-6720 (Check Nginx log files)
2017-05-17 12:35:56 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:56 Checking permissions of /home/admin/assess/include/tests_ssh
2017-05-17 12:35:56 File permissions are OK
2017-05-17 12:35:56 ===---------------------------------------------------------------===
2017-05-17 12:35:56 Action: Performing tests from category: SSH Support
2017-05-17 12:35:56 ===---------------------------------------------------------------===
2017-05-17 12:35:56 Performing test ID SSH-7402 (Check for running SSH daemon)
2017-05-17 12:35:56 Test: Searching for a SSH daemon
2017-05-17 12:35:56 IsRunning: process 'sshd' found ( 3910 ? Ss 0:00 /usr/sbin/sshd
31309 ? Ss 0:00 sshd: admin@pts/0)
2017-05-17 12:35:56 Action: created temporary file /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:56 ===---------------------------------------------------------------===
2017-05-17 12:35:56 Performing test ID SSH-7404 (Check SSH daemon file location)
2017-05-17 12:35:56 Test: searching for sshd_config file

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:56 Result: No sshd configuration found


2017-05-17 12:35:56 Exception: test has an exceptional event (SSH-7404:1) with text SSH daemon is running, but no
readable configuration file found Comment [21]: Typical, but could be a
2017-05-17 12:35:56 ===---------------------------------------------------------------=== architecture thing.
2017-05-17 12:35:56 Performing test ID SSH-7408 (Check SSH specific defined options)
2017-05-17 12:35:56 Test: Checking specific defined options in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:56 Test: Checking AllowTcpForwarding in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:56 Result: Option AllowTcpForwarding found
2017-05-17 12:35:56 Result: Option AllowTcpForwarding value is NO
2017-05-17 12:35:56 Result: SSH option AllowTcpForwarding is configured very well
2017-05-17 12:35:56 Hardening: assigned maximum number of hardening points for this item (3). Currently having 127
points (out of 163)
2017-05-17 12:35:56 Test: Checking ClientAliveCountMax in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:56 Result: Option ClientAliveCountMax found
2017-05-17 12:35:56 Result: Option ClientAliveCountMax value is 10
2017-05-17 12:35:56 Result: SSH option ClientAliveCountMax is in a weak configuration state and should be fixed
2017-05-17 12:35:56 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:ClientAliveCountMax (10 --
> 2)] [solution:-]
2017-05-17 12:35:56 Hardening: assigned partial number of hardening points (0 of 3). Currently having 127 points (out of
166)
2017-05-17 12:35:56 Test: Checking ClientAliveInterval in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:56 Result: Option ClientAliveInterval found
2017-05-17 12:35:56 Result: Option ClientAliveInterval value is 60
2017-05-17 12:35:56 Result: SSH option ClientAliveInterval is configured very well
2017-05-17 12:35:56 Hardening: assigned maximum number of hardening points for this item (3). Currently having 130
points (out of 169)
2017-05-17 12:35:56 Test: Checking Compression in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:56 Result: Option Compression found
2017-05-17 12:35:56 Result: Option Compression value is DELAYED
2017-05-17 12:35:56 Result: SSH option Compression is configured reasonably
2017-05-17 12:35:56 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:Compression (DELAYED -->
NO)] [solution:-]
2017-05-17 12:35:56 Hardening: assigned partial number of hardening points (1 of 3). Currently having 131 points (out of
172)
2017-05-17 12:35:56 Test: Checking FingerprintHash in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:56 Result: Option FingerprintHash not found in output
2017-05-17 12:35:56 Test: Checking GatewayPorts in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:56 Result: Option GatewayPorts found
2017-05-17 12:35:56 Result: Option GatewayPorts value is NO
2017-05-17 12:35:56 Result: SSH option GatewayPorts is configured very well
2017-05-17 12:35:56 Hardening: assigned maximum number of hardening points for this item (3). Currently having 134
points (out of 175)
2017-05-17 12:35:56 Test: Checking IgnoreRhosts in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:56 Result: Option IgnoreRhosts found
2017-05-17 12:35:56 Result: Option IgnoreRhosts value is NO

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:56 Result: SSH option IgnoreRhosts is in a weak configuration state and should be fixed
2017-05-17 12:35:56 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:IgnoreRhosts (NO --> YES)]
[solution:-]
2017-05-17 12:35:56 Hardening: assigned partial number of hardening points (0 of 3). Currently having 134 points (out of
178)
2017-05-17 12:35:56 Test: Checking LoginGraceTime in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:56 Result: Option LoginGraceTime found
2017-05-17 12:35:56 Result: Option LoginGraceTime value is 120
2017-05-17 12:35:56 Result: SSH option LoginGraceTime is configured very well
2017-05-17 12:35:56 Hardening: assigned maximum number of hardening points for this item (3). Currently having 137
points (out of 181)
2017-05-17 12:35:56 Test: Checking LogLevel in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:56 Result: Option LogLevel found
2017-05-17 12:35:56 Result: Option LogLevel value is INFO
2017-05-17 12:35:56 Result: SSH option LogLevel is configured reasonably
2017-05-17 12:35:56 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:LogLevel (INFO -->
VERBOSE)] [solution:-]
2017-05-17 12:35:56 Hardening: assigned partial number of hardening points (1 of 3). Currently having 138 points (out of
184)
2017-05-17 12:35:56 Test: Checking MaxAuthTries in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:56 Result: Option MaxAuthTries found
2017-05-17 12:35:56 Result: Option MaxAuthTries value is 6
2017-05-17 12:35:56 Result: SSH option MaxAuthTries is in a weak configuration state and should be fixed
2017-05-17 12:35:56 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:MaxAuthTries (6 --> 2)]
[solution:-]
2017-05-17 12:35:56 Hardening: assigned partial number of hardening points (0 of 3). Currently having 138 points (out of
187)
2017-05-17 12:35:56 Test: Checking MaxSessions in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:56 Result: Option MaxSessions found
2017-05-17 12:35:56 Result: Option MaxSessions value is 10
2017-05-17 12:35:56 Result: SSH option MaxSessions is in a weak configuration state and should be fixed
2017-05-17 12:35:56 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:MaxSessions (10 --> 2)]
[solution:-]
2017-05-17 12:35:57 Hardening: assigned partial number of hardening points (0 of 3). Currently having 138 points (out of
190)
2017-05-17 12:35:57 Test: Checking PermitRootLogin in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:57 Result: Option PermitRootLogin found
2017-05-17 12:35:57 Result: Option PermitRootLogin value is YES
2017-05-17 12:35:57 Result: SSH option PermitRootLogin is in a weak configuration state and should be fixed
2017-05-17 12:35:57 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:PermitRootLogin (YES -->
NO)] [solution:-]
2017-05-17 12:35:57 Hardening: assigned partial number of hardening points (0 of 3). Currently having 138 points (out of
193)
2017-05-17 12:35:57 Test: Checking PermitUserEnvironment in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:57 Result: Option PermitUserEnvironment found

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:57 Result: Option PermitUserEnvironment value is NO


2017-05-17 12:35:57 Result: SSH option PermitUserEnvironment is configured very well
2017-05-17 12:35:57 Hardening: assigned maximum number of hardening points for this item (3). Currently having 141
points (out of 196)
2017-05-17 12:35:57 Test: Checking PermitTunnel in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:57 Result: Option PermitTunnel found
2017-05-17 12:35:57 Result: Option PermitTunnel value is NO
2017-05-17 12:35:57 Result: SSH option PermitTunnel is configured very well
2017-05-17 12:35:57 Hardening: assigned maximum number of hardening points for this item (3). Currently having 144
points (out of 199)
2017-05-17 12:35:57 Test: Checking Port in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:57 Result: Option Port found
2017-05-17 12:35:57 Result: Option Port value is 22
2017-05-17 12:35:57 Result: SSH option Port is in a weak configuration state and should be fixed
2017-05-17 12:35:57 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:Port (22 --> )]
[solution:-]
2017-05-17 12:35:57 Hardening: assigned partial number of hardening points (0 of 3). Currently having 144 points (out of
202)
2017-05-17 12:35:57 Test: Checking PrintLastLog in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:57 Result: Option PrintLastLog found
2017-05-17 12:35:57 Result: Option PrintLastLog value is YES
2017-05-17 12:35:57 Result: SSH option PrintLastLog is configured very well
2017-05-17 12:35:57 Hardening: assigned maximum number of hardening points for this item (3). Currently having 147
points (out of 205)
2017-05-17 12:35:57 Test: Checking Protocol in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:57 Result: Option Protocol found
2017-05-17 12:35:57 Result: Option Protocol value is 2
2017-05-17 12:35:57 Result: SSH option Protocol is configured very well
2017-05-17 12:35:57 Hardening: assigned maximum number of hardening points for this item (3). Currently having 150
points (out of 208)
2017-05-17 12:35:57 Test: Checking StrictModes in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:57 Result: Option StrictModes found
2017-05-17 12:35:57 Result: Option StrictModes value is YES
2017-05-17 12:35:57 Result: SSH option StrictModes is configured very well
2017-05-17 12:35:57 Hardening: assigned maximum number of hardening points for this item (3). Currently having 153
points (out of 211)
2017-05-17 12:35:57 Test: Checking TCPKeepAlive in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:57 Result: Option TCPKeepAlive found
2017-05-17 12:35:57 Result: Option TCPKeepAlive value is YES
2017-05-17 12:35:57 Result: SSH option TCPKeepAlive is in a weak configuration state and should be fixed
2017-05-17 12:35:57 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:TCPKeepAlive (YES --> NO)]
[solution:-]
2017-05-17 12:35:57 Hardening: assigned partial number of hardening points (0 of 3). Currently having 153 points (out of
214)
2017-05-17 12:35:57 Test: Checking UseDNS in /tmp/assess.C3UnHl5Pvf

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:57 Result: Option UseDNS found


2017-05-17 12:35:57 Result: Option UseDNS value is NO
2017-05-17 12:35:57 Result: SSH option UseDNS is configured very well
2017-05-17 12:35:57 Hardening: assigned maximum number of hardening points for this item (3). Currently having 156
points (out of 217)
2017-05-17 12:35:57 Test: Checking UsePrivilegeSeparation in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:57 Result: Option UsePrivilegeSeparation found
2017-05-17 12:35:57 Result: Option UsePrivilegeSeparation value is YES
2017-05-17 12:35:57 Result: SSH option UsePrivilegeSeparation is configured reasonably
2017-05-17 12:35:57 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:UsePrivilegeSeparation
(YES --> SANDBOX)] [solution:-]
2017-05-17 12:35:57 Hardening: assigned partial number of hardening points (1 of 3). Currently having 157 points (out of
220)
2017-05-17 12:35:57 Test: Checking VerifyReverseMapping in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:57 Result: Option VerifyReverseMapping not found in output
2017-05-17 12:35:57 Test: Checking X11Forwarding in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:57 Result: Option X11Forwarding found
2017-05-17 12:35:57 Result: Option X11Forwarding value is NO
2017-05-17 12:35:57 Result: SSH option X11Forwarding is configured very well
2017-05-17 12:35:57 Hardening: assigned maximum number of hardening points for this item (3). Currently having 160
points (out of 223)
2017-05-17 12:35:57 Test: Checking AllowAgentForwarding in /tmp/assess.C3UnHl5Pvf
2017-05-17 12:35:57 Result: Option AllowAgentForwarding found
2017-05-17 12:35:57 Result: Option AllowAgentForwarding value is YES
2017-05-17 12:35:57 Result: SSH option AllowAgentForwarding is in a weak configuration state and should be fixed Comment [22]: Easy fix.
2017-05-17 12:35:57 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:AllowAgentForwarding (YES
--> NO)] [solution:-]
2017-05-17 12:35:57 Hardening: assigned partial number of hardening points (0 of 3). Currently having 160 points (out of
226)
2017-05-17 12:35:57 ===---------------------------------------------------------------===
2017-05-17 12:35:57 Performing test ID SSH-7440 (Check SSH option: AllowUsers and AllowGroups)
2017-05-17 12:35:57 Result: AllowUsers is not set
2017-05-17 12:35:57 Result: AllowGroups is not set Comment [23]: Why would you not specify
2017-05-17 12:35:57 Result: SSH has no specific user or group limitation. Most likely all valid users can SSH to this
this?
machine.
2017-05-17 12:35:57 Hardening: assigned partial number of hardening points (0 of 1). Currently having 160 points (out of
227)
2017-05-17 12:35:57 Checking permissions of /home/admin/assess/include/tests_snmp
2017-05-17 12:35:57 File permissions are OK
2017-05-17 12:35:57 ===---------------------------------------------------------------===
2017-05-17 12:35:57 Action: Performing tests from category: SNMP Support
2017-05-17 12:35:57 ===---------------------------------------------------------------===
2017-05-17 12:35:57 Performing test ID SNMP-3302 (Check for running SNMP daemon)
2017-05-17 12:35:57 Test: Searching for a SNMP daemon
2017-05-17 12:35:57 IsRunning: process 'snmpd' found ( 5697 ? S 0:00 runsv snmpd

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

5714 ? Sl 3:17 /usr/sbin/snmpd -f -c /config/snmp/snmpd.conf -Lsd -LF 6 /var/log/snmpd.log -p


/var/run/snmpd.pid)
2017-05-17 12:35:57 Result: SNMP daemon is running
2017-05-17 12:35:57 ===---------------------------------------------------------------===
2017-05-17 12:35:57 Performing test ID SNMP-3304 (Check SNMP daemon file location)
2017-05-17 12:35:57 Test: searching for snmpd.conf file
2017-05-17 12:35:57 Result: No snmpd configuration found
2017-05-17 12:35:57 ===---------------------------------------------------------------===
2017-05-17 12:35:57 Skipped test SNMP-3306 (Check SNMP communities)
2017-05-17 12:35:57 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:57 Checking permissions of /home/admin/assess/include/tests_databases
2017-05-17 12:35:57 File permissions are OK
2017-05-17 12:35:57 ===---------------------------------------------------------------===
2017-05-17 12:35:57 Action: Performing tests from category: Databases
2017-05-17 12:35:57 ===---------------------------------------------------------------===
2017-05-17 12:35:57 Performing test ID DBS-1804 (Checking active MySQL process)
2017-05-17 12:35:58 Result: MySQL is active
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Performing test ID DBS-1816 (Checking MySQL root password)
2017-05-17 12:35:58 Test: Trying to login to local MySQL server without password
2017-05-17 12:35:58 Result: Login did not succeed, so a MySQL root password is set
2017-05-17 12:35:58 Hardening: assigned maximum number of hardening points for this item (2). Currently having 162
points (out of 229)
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Performing test ID DBS-1818 (Check status of MongoDB server)
2017-05-17 12:35:58 IsRunning: process 'mongod' not found
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Performing test ID DBS-1820 (Check for authorization in MongoDB)
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Performing test ID DBS-1826 (Checking active PostgreSQL processes)
2017-05-17 12:35:58 IsRunning: process 'postgres:' found ( 6066 ? Ss 0:00 postgres: checkpointer process
6067 ? Ss 0:02 postgres: writer process
6068 ? Ss 0:02 postgres: wal writer process
6069 ? Ss 0:08 postgres: autovacuum launcher process
6070 ? Ss 0:18 postgres: stats collector process
7338 ? Ss 0:01 postgres: postgres tmdb [local] idle
)
2017-05-17 12:35:58 Result: PostgreSQL is active
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Performing test ID DBS-1840 (Checking active Oracle processes)
2017-05-17 12:35:58 Result: Oracle process(es) not active
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Performing test ID DBS-1860 (Checking active DB2 instances)
2017-05-17 12:35:58 IsRunning: process 'db2sysc' not found
2017-05-17 12:35:58 Result: No DB2 instances are running

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:58 ===---------------------------------------------------------------===


2017-05-17 12:35:58 Performing test ID DBS-1880 (Check for active Redis server)
2017-05-17 12:35:58 IsRunning: process 'redis-server' not found
2017-05-17 12:35:58 Result: No Redis processes are running
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Skipped test DBS-1882 (Redis configuration file)
2017-05-17 12:35:58 Reason to skip: Redis not running
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Skipped test DBS-1884 (Redis: requirepass option configured)
2017-05-17 12:35:58 Reason to skip: Redis not running, or no configuration file found
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Skipped test DBS-1886 (Redis: rename-command CONFIG used)
2017-05-17 12:35:58 Reason to skip: Redis not running, or no configuration found
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Skipped test DBS-1888 (Redis: bind on localhost)
2017-05-17 12:35:58 Reason to skip: Redis not running, or no configuration found
2017-05-17 12:35:58 Checking permissions of /home/admin/assess/include/tests_ldap
2017-05-17 12:35:58 File permissions are OK
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Action: Performing tests from category: LDAP Services
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Performing test ID LDAP-2219 (Check running OpenLDAP instance)
2017-05-17 12:35:58 IsRunning: process 'slapd' not found
2017-05-17 12:35:58 Result: No running slapd process found.
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Skipped test LDAP-2224 (Check presence slapd.conf)
2017-05-17 12:35:58 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:58 Checking permissions of /home/admin/assess/include/tests_php
2017-05-17 12:35:58 File permissions are OK
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Action: Performing tests from category: PHP
2017-05-17 12:35:58 ===---------------------------------------------------------------===
2017-05-17 12:35:58 Performing test ID PHP-2211 (Check php.ini presence)
2017-05-17 12:35:58 Test: Checking for presence php.ini
2017-05-17 12:35:58 Test: checking presence /etc/php.ini
2017-05-17 12:35:58 Result: file /etc/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php.ini.default
2017-05-17 12:35:58 Result: file /etc/php.ini.default not found
2017-05-17 12:35:58 Test: checking presence /etc/php/php.ini
2017-05-17 12:35:58 Result: file /etc/php/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php5.5/php.ini
2017-05-17 12:35:58 Result: file /etc/php5.5/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php5.6/php.ini
2017-05-17 12:35:58 Result: file /etc/php5.6/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php7.0/php.ini

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:58 Result: file /etc/php7.0/php.ini not found


2017-05-17 12:35:58 Test: checking presence /etc/php7.1/php.ini
2017-05-17 12:35:58 Result: file /etc/php7.1/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php7.2/php.ini
2017-05-17 12:35:58 Result: file /etc/php7.2/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/cgi-php5/php.ini
2017-05-17 12:35:58 Result: file /etc/php/cgi-php5/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/cli-php5/php.ini
2017-05-17 12:35:58 Result: file /etc/php/cli-php5/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/apache2-php5/php.ini
2017-05-17 12:35:58 Result: file /etc/php/apache2-php5/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/apache2-php5.5/php.ini
2017-05-17 12:35:58 Result: file /etc/php/apache2-php5.5/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/apache2-php5.6/php.ini
2017-05-17 12:35:58 Result: file /etc/php/apache2-php5.6/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/apache2-php7.0/php.ini
2017-05-17 12:35:58 Result: file /etc/php/apache2-php7.0/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/apache2-php7.1/php.ini
2017-05-17 12:35:58 Result: file /etc/php/apache2-php7.1/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/cgi-php7.1/php.ini
2017-05-17 12:35:58 Result: file /etc/php/cgi-php7.1/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/apache2-php7.1/php.inietc/php/cgi-php5.5/php.ini
2017-05-17 12:35:58 Result: file /etc/php/apache2-php7.1/php.inietc/php/cgi-php5.5/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/cgi-php5.6/php.ini
2017-05-17 12:35:58 Result: file /etc/php/cgi-php5.6/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/cgi-php7.0/php.ini
2017-05-17 12:35:58 Result: file /etc/php/cgi-php7.0/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/cli-php7.1/php.ini
2017-05-17 12:35:58 Result: file /etc/php/cli-php7.1/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/cli-php5.5/php.ini
2017-05-17 12:35:58 Result: file /etc/php/cli-php5.5/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/cli-php5.6/php.ini
2017-05-17 12:35:58 Result: file /etc/php/cli-php5.6/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/cli-php7.0/php.ini
2017-05-17 12:35:58 Result: file /etc/php/cli-php7.0/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/embed-php7.1/php.ini
2017-05-17 12:35:58 Result: file /etc/php/embed-php7.1/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/embed-php5.5/php.ini
2017-05-17 12:35:58 Result: file /etc/php/embed-php5.5/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/embed-php5.6/php.ini
2017-05-17 12:35:58 Result: file /etc/php/embed-php5.6/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/embed-php7.0/php.ini
2017-05-17 12:35:58 Result: file /etc/php/embed-php7.0/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/fpm-php7.1/php.ini
2017-05-17 12:35:58 Result: file /etc/php/fpm-php7.1/php.ini not found

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:58 Test: checking presence /etc/php/fpm-php5.5/php.ini


2017-05-17 12:35:58 Result: file /etc/php/fpm-php5.5/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/fpm-php5.6/php.ini
2017-05-17 12:35:58 Result: file /etc/php/fpm-php5.6/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php/fpm-php7.0/php.ini
2017-05-17 12:35:58 Result: file /etc/php/fpm-php7.0/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php5/cgi/php.ini
2017-05-17 12:35:58 Result: file /etc/php5/cgi/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php5/cli/php.ini
2017-05-17 12:35:58 Result: file /etc/php5/cli/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php5/cli-php5.4/php.ini
2017-05-17 12:35:58 Result: file /etc/php5/cli-php5.4/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php5/cli-php5.5/php.ini
2017-05-17 12:35:58 Result: file /etc/php5/cli-php5.5/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php5/cli-php5.6/php.ini
2017-05-17 12:35:58 Result: file /etc/php5/cli-php5.6/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php5/apache2/php.ini
2017-05-17 12:35:58 Result: file /etc/php5/apache2/php.ini not found
2017-05-17 12:35:58 Test: checking presence /etc/php5/fpm/php.ini
2017-05-17 12:35:58 Result: file /etc/php5/fpm/php.ini not found
2017-05-17 12:35:58 Test: checking presence /private/etc/php.ini
2017-05-17 12:35:58 Result: file /private/etc/php.ini not found
2017-05-17 12:35:58 Test: checking presence /var/www/conf/php.ini
2017-05-17 12:35:58 Result: file /var/www/conf/php.ini not found
2017-05-17 12:35:58 Test: checking presence /usr/local/etc/php.ini
2017-05-17 12:35:58 Result: file /usr/local/etc/php.ini not found
2017-05-17 12:35:58 Test: checking presence /usr/local/lib/php.ini
2017-05-17 12:35:58 Result: Found php.ini file (/usr/local/lib/php.ini)
2017-05-17 12:35:58 Note: Adding file to php.ini array
2017-05-17 12:35:58 Test: checking presence /usr/local/zend/etc/php.ini
2017-05-17 12:35:58 Result: file /usr/local/zend/etc/php.ini not found
2017-05-17 12:35:58 Test: checking presence /usr/pkg/etc/php.ini
2017-05-17 12:35:58 Result: file /usr/pkg/etc/php.ini not found
2017-05-17 12:35:58 Test: checking presence /opt/cpanel/ea-php54/root/etc/php.ini
2017-05-17 12:35:58 Result: file /opt/cpanel/ea-php54/root/etc/php.ini not found
2017-05-17 12:35:58 Test: checking presence /opt/cpanel/ea-php55/root/etc/php.ini
2017-05-17 12:35:58 Result: file /opt/cpanel/ea-php55/root/etc/php.ini not found
2017-05-17 12:35:58 Test: checking presence /opt/cpanel/ea-php56/root/etc/php.ini
2017-05-17 12:35:58 Result: file /opt/cpanel/ea-php56/root/etc/php.ini not found
2017-05-17 12:35:58 Test: checking presence /opt/cpanel/ea-php70/root/etc/php.ini
2017-05-17 12:35:58 Result: file /opt/cpanel/ea-php70/root/etc/php.ini not found
2017-05-17 12:35:58 Test: checking presence /opt/cpanel/ea-php71/root/etc/php.ini
2017-05-17 12:35:58 Result: file /opt/cpanel/ea-php71/root/etc/php.ini not found
2017-05-17 12:35:58 Result: no files found for /etc/php5/conf.d
2017-05-17 12:35:58 Result: no files found for /etc/php.d

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:58 Result: no files found for /opt/cpanel/ea-php54/root/etc/php.d


2017-05-17 12:35:59 Result: no files found for /opt/cpanel/ea-php55/root/etc/php.d
2017-05-17 12:35:59 Result: no files found for /opt/cpanel/ea-php56/root/etc/php.d
2017-05-17 12:35:59 Result: no files found for /opt/cpanel/ea-php70/root/etc/php.d
2017-05-17 12:35:59 Result: no files found for /opt/cpanel/ea-php71/root/etc/php.d
2017-05-17 12:35:59 Result: using single file /usr/local/lib/php.ini for main php.ini tests
2017-05-17 12:35:59 Result: using php.ini array /usr/local/lib/php.ini for further tests
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Performing test ID PHP-2320 (Check PHP disabled functions)
2017-05-17 12:35:59 Test: Checking for PHP function hardening disabled_functions or suhosin.executor.func.blacklist in
file /usr/local/lib/php.ini
2017-05-17 12:35:59 Result: /usr/local/lib/php.ini: found disabled_functions
2017-05-17 12:35:59 Result: /usr/local/lib/php.ini: suhosin.executor.func.blacklist not found
2017-05-17 12:35:59 Result: one or more PHP functions are disabled/blacklisted
2017-05-17 12:35:59 Hardening: assigned maximum number of hardening points for this item (3). Currently having 165
points (out of 232)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Skipped test PHP-2368 (Check PHP register_globals option)
2017-05-17 12:35:59 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Performing test ID PHP-2372 (Check PHP expose_php option)
2017-05-17 12:35:59 Test: Checking expose_php option
2017-05-17 12:35:59 Result: Found 'expose_php' in disabled state (0, no, or off)
2017-05-17 12:35:59 Hardening: assigned maximum number of hardening points for this item (2). Currently having 167
points (out of 234)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Performing test ID PHP-2374 (Check PHP enable_dl option)
2017-05-17 12:35:59 Test: Checking PHP enable_dl option
2017-05-17 12:35:59 Result: Found 'enable_dl' in disabled state (not present, 0, no, or off)
2017-05-17 12:35:59 Hardening: assigned maximum number of hardening points for this item (2). Currently having 169
points (out of 236)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Performing test ID PHP-2376 (Check PHP allow_url_fopen option)
2017-05-17 12:35:59 Test: Checking PHP allow_url_fopen option
2017-05-17 12:35:59 Result: allow_url_fopen option is turned on, which can be used for riskful downloads via PHP Comment [24]: I wouldt expect this on a
2017-05-17 12:35:59 Suggestion: Change the allow_url_fopen line to: allow_url_fopen = Off, to disable downloads via PHP security device.
[test:PHP-2376] [details:-] [solution:-]
2017-05-17 12:35:59 Hardening: assigned partial number of hardening points (0 of 1). Currently having 169 points (out of
237)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Performing test ID PHP-2378 (Check PHP allow_url_include option)
2017-05-17 12:35:59 Test: Checking PHP allow_url_include option
2017-05-17 12:35:59 Result: Found 'allow_url_include' in disabled state (0, no, or off)
2017-05-17 12:35:59 Hardening: assigned maximum number of hardening points for this item (2). Currently having 171
points (out of 239)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:59 Checking permissions of /home/admin/assess/include/tests_squid


2017-05-17 12:35:59 File permissions are OK
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Action: Performing tests from category: Squid Support
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Performing test ID SQD-3602 (Check for running Squid daemon)
2017-05-17 12:35:59 Test: Searching for a Squid daemon
2017-05-17 12:35:59 Result: No running Squid daemon found
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Skipped test SQD-3604 (Check Squid daemon file location)
2017-05-17 12:35:59 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Skipped test SQD-3606 (Check Squid version)
2017-05-17 12:35:59 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Skipped test SQD-3610 (Check Squid version)
2017-05-17 12:35:59 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Skipped test SQD-3613 (Check Squid file permissions)
2017-05-17 12:35:59 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Skipped test SQD-3614 (Check Squid authentication methods)
2017-05-17 12:35:59 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Skipped test SQD-3616 (Check external Squid authentication)
2017-05-17 12:35:59 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Skipped test SQD-3620 (Check Squid access control lists)
2017-05-17 12:35:59 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Skipped test SQD-3624 (Check Squid safe ports)
2017-05-17 12:35:59 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Skipped test SQD-3630 (Check Squid reply_body_max_size option)
2017-05-17 12:35:59 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Skipped test SQD-3680 (Check Squid version suppresion)
2017-05-17 12:35:59 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:35:59 Checking permissions of /home/admin/assess/include/tests_logging
2017-05-17 12:35:59 File permissions are OK
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Action: Performing tests from category: Logging and files
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Performing test ID LOGG-2130 (Check for running syslog daemon)
2017-05-17 12:35:59 Test: Searching for a logging daemon

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:35:59 Result: Found a logging daemon


2017-05-17 12:35:59 Hardening: assigned maximum number of hardening points for this item (3). Currently having 174
points (out of 242)
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Performing test ID LOGG-2132 (Check for running syslog-ng daemon)
2017-05-17 12:35:59 Test: Searching for syslog-ng daemon in process list
2017-05-17 12:35:59 IsRunning: process 'syslog-ng' found ( 1658 ? Ss 0:53 /usr/sbin/syslog-ng -p
/var/run/syslog-ng.pid)
2017-05-17 12:35:59 Result: Found syslog-ng in process list
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Performing test ID LOGG-2134 (Checking Syslog-NG configuration file consistency)
2017-05-17 12:35:59 Result: Syslog-NG configuration file seems to be consistent
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Performing test ID LOGG-2136 (Check for running systemd journal daemon)
2017-05-17 12:35:59 Test: Searching for systemd journal daemon in process list
2017-05-17 12:35:59 IsRunning: process 'systemd-journal' not found
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Performing test ID LOGG-2210 (Check for running metalog daemon)
2017-05-17 12:35:59 Test: Searching for metalog daemon in process list
2017-05-17 12:35:59 IsRunning: process 'metalog' not found
2017-05-17 12:35:59 Result: metalog NOT found in process list
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Performing test ID LOGG-2230 (Check for running RSyslog daemon)
2017-05-17 12:35:59 Test: Searching for RSyslog daemon in process list
2017-05-17 12:35:59 IsRunning: process 'rsyslogd' not found
2017-05-17 12:35:59 Result: rsyslogd NOT found in process list
2017-05-17 12:35:59 ===---------------------------------------------------------------===
2017-05-17 12:35:59 Performing test ID LOGG-2240 (Check for running RFC 3195 compliant daemon)
2017-05-17 12:35:59 Test: Searching for RFC 3195 daemon (alias syslog reliable) in process list
2017-05-17 12:36:00 IsRunning: process 'rfc3195d' not found
2017-05-17 12:36:00 Result: rfc3195d NOT found in process list
2017-05-17 12:36:00 ===---------------------------------------------------------------===
2017-05-17 12:36:00 Performing test ID LOGG-2138 (Checking kernel logger daemon on Linux)
2017-05-17 12:36:00 Test: Searching kernel logger daemon (klogd)
2017-05-17 12:36:00 IsRunning: process 'klogd' not found
2017-05-17 12:36:00 Result: No klogd found
2017-05-17 12:36:00 Warning: klogd is not running, which could lead to missing kernel messages in log files [test:LOGG-
2138] [details:-] [solution:-]
2017-05-17 12:36:00 ===---------------------------------------------------------------===
2017-05-17 12:36:00 Performing test ID LOGG-2142 (Checking minilog daemon)
2017-05-17 12:36:00 Result: Checking for unkilled minilogd instances
2017-05-17 12:36:00 IsRunning: process 'minilogd' not found
2017-05-17 12:36:00 Result: No minilogd is running
2017-05-17 12:36:00 ===---------------------------------------------------------------===
2017-05-17 12:36:00 Performing test ID LOGG-2146 (Checking logrotate.conf and logrotate.d)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:00 Test: Checking for /etc/logrotate.conf


2017-05-17 12:36:00 Result: /etc/logrotate.conf found (file)
2017-05-17 12:36:00 Test: Checking for /etc/logrotate.d (directory)
2017-05-17 12:36:00 Result: /etc/logrotate.d found
2017-05-17 12:36:00 Result: logrotate configuration found
2017-05-17 12:36:00 ===---------------------------------------------------------------===
2017-05-17 12:36:00 Performing test ID LOGG-2148 (Checking logrotated files)
2017-05-17 12:36:00 Test: Checking which files are rotated with logrotate and if they exist
2017-05-17 12:36:00 Result: found one or more files which are rotated via logrotate
2017-05-17 12:36:00 Output: File:/var/log/ICSA:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/bcm56xxd:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/bigdlog:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/cron:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/ecm.log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/em:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/httpd/ssl_access_log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/httpd/ssl_request_log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/hup_syslog:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/ipsec.log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/logd.log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/msgbusd:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/paa:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/pktfilter:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/platform_diag:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/racoon6553[0-6].log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/racoon655[0-2][0-9].log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/racoon65[0-4][0-9][0-9].log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/racoon6[0-4][0-9][0-9][0-9].log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/racoon[0-9].log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/racoon[1-5][0-9][0-9][0-9][0-9].log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/racoon[1-9][0-9].log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/racoon[1-9][0-9][0-9].log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/racoon[1-9][0-9][0-9][0-9].log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/rewrite[1-9][0-9]:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/sa6/saxml:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/sel:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/sshplugin:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/tam_cp:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/tam_dp:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/tmm[1-9][0-9]:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/touchscreen_lcd:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/urlfilter.log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/vcmp:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/vcmp_disk_statistics.log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/wa/hds_prune.log:does_not_exist

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:00 Output: File:/var/log/wa/pvacLog_8081:does_not_exist


2017-05-17 12:36:00 Output: File:/var/log/wa/symmetrical.log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/wa/wam.provisioning.log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/wa/wamd.log:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/wocd:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/wocplugin:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/wocplugin[0-9]:does_not_exist
2017-05-17 12:36:00 Output: File:/var/log/wocplugin[1-9][0-9]:does_not_exist
2017-05-17 12:36:00 Output: File:/var/lib/mysql/mysqld.err:exists
2017-05-17 12:36:00 Output: File:/var/lib/mysql/mysqld.log:exists
2017-05-17 12:36:00 Output: File:/var/log/ICSA:exists
2017-05-17 12:36:00 Output: File:/var/log/apm:exists
2017-05-17 12:36:00 Output: File:/var/log/asm:exists
2017-05-17 12:36:00 Output: File:/var/log/audit:exists
2017-05-17 12:36:00 Output: File:/var/log/bcm56xxd:exists
2017-05-17 12:36:00 Output: File:/var/log/bdosd.log:exists
2017-05-17 12:36:00 Output: File:/var/log/bigdlog:exists
2017-05-17 12:36:00 Output: File:/var/log/boot.log:exists
2017-05-17 12:36:00 Output: File:/var/log/confpp.log:exists
2017-05-17 12:36:00 Output: File:/var/log/cron:exists
2017-05-17 12:36:00 Output: File:/var/log/daemon.log:exists
2017-05-17 12:36:00 Output: File:/var/log/datastor:exists
2017-05-17 12:36:00 Output: File:/var/log/datastor.provision:exists
2017-05-17 12:36:00 Output: File:/var/log/dedup_admin:exists
2017-05-17 12:36:00 Output: File:/var/log/disk_latency.log:exists
2017-05-17 12:36:00 Output: File:/var/log/disk_statistics.log:exists
2017-05-17 12:36:00 Output: File:/var/log/ecm.log:exists
2017-05-17 12:36:00 Output: File:/var/log/em:exists
2017-05-17 12:36:00 Output: File:/var/log/gtm:exists
2017-05-17 12:36:00 Output: File:/var/log/httpd/access_log:exists
2017-05-17 12:36:00 Output: File:/var/log/httpd/agent_log:exists
2017-05-17 12:36:00 Output: File:/var/log/httpd/httpd_errors:exists
2017-05-17 12:36:00 Output: File:/var/log/httpd/referer_log:exists
2017-05-17 12:36:00 Output: File:/var/log/httpd/ssl_access_log:exists
2017-05-17 12:36:00 Output: File:/var/log/httpd/ssl_request_log:exists
2017-05-17 12:36:00 Output: File:/var/log/hup_syslog:exists
2017-05-17 12:36:00 Output: File:/var/log/icrd:exists
2017-05-17 12:36:00 Output: File:/var/log/ipsec.log:exists
2017-05-17 12:36:00 Output: File:/var/log/kern.log:exists
2017-05-17 12:36:00 Output: File:/var/log/logd.log:exists
2017-05-17 12:36:00 Output: File:/var/log/ltm:exists
2017-05-17 12:36:00 Output: File:/var/log/maillog:exists
2017-05-17 12:36:00 Output: File:/var/log/messages:exists
2017-05-17 12:36:00 Output: File:/var/log/monitors/Common_tcp-Common_sccmdmz.zorgnetonline.nl-10123.log:exists
2017-05-17 12:36:00 Output: File:/var/log/monitors/Common_tcp-Common_sccmdmz.zorgnetonline.nl-443.log:exists

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:00 Output: File:/var/log/msgbusd:exists


2017-05-17 12:36:00 Output: File:/var/log/paa:exists
2017-05-17 12:36:00 Output: File:/var/log/pktfilter:exists
2017-05-17 12:36:00 Output: File:/var/log/platform_check:exists
2017-05-17 12:36:00 Output: File:/var/log/platform_diag:exists
2017-05-17 12:36:00 Output: File:/var/log/racoon.log:exists
2017-05-17 12:36:00 Output: File:/var/log/racoon6553[0-6].log:exists
2017-05-17 12:36:00 Output: File:/var/log/racoon655[0-2][0-9].log:exists
2017-05-17 12:36:00 Output: File:/var/log/racoon65[0-4][0-9][0-9].log:exists
2017-05-17 12:36:00 Output: File:/var/log/racoon6[0-4][0-9][0-9][0-9].log:exists
2017-05-17 12:36:00 Output: File:/var/log/racoon[0-9].log:exists
2017-05-17 12:36:00 Output: File:/var/log/racoon[1-5][0-9][0-9][0-9][0-9].log:exists
2017-05-17 12:36:00 Output: File:/var/log/racoon[1-9][0-9].log:exists
2017-05-17 12:36:00 Output: File:/var/log/racoon[1-9][0-9][0-9].log:exists
2017-05-17 12:36:00 Output: File:/var/log/racoon[1-9][0-9][0-9][0-9].log:exists
2017-05-17 12:36:00 Output: File:/var/log/rewrite:exists
2017-05-17 12:36:00 Output: File:/var/log/rewrite1:exists
2017-05-17 12:36:00 Output: File:/var/log/rewrite[1-9][0-9]:exists
2017-05-17 12:36:00 Output: File:/var/log/sa6/sa:exists
2017-05-17 12:36:00 Output: File:/var/log/sa6/saxml:exists
2017-05-17 12:36:00 Output: File:/var/log/secure:exists
2017-05-17 12:36:00 Output: File:/var/log/sel:exists
2017-05-17 12:36:00 Output: File:/var/log/sshplugin:exists
2017-05-17 12:36:00 Output: File:/var/log/tam_cp:exists
2017-05-17 12:36:00 Output: File:/var/log/tam_dp:exists
2017-05-17 12:36:00 Output: File:/var/log/tmipsecd:exists
2017-05-17 12:36:00 Output: File:/var/log/tmm:exists
2017-05-17 12:36:00 Output: File:/var/log/tmm1:exists
2017-05-17 12:36:00 Output: File:/var/log/tmm[1-9][0-9]:exists
2017-05-17 12:36:00 Output: File:/var/log/tomcat/catalina.out:exists
2017-05-17 12:36:00 Output: File:/var/log/touchscreen_lcd:exists
2017-05-17 12:36:00 Output: File:/var/log/urlfilter.log:exists
2017-05-17 12:36:00 Output: File:/var/log/user.log:exists
2017-05-17 12:36:00 Output: File:/var/log/vcmp:exists
2017-05-17 12:36:00 Output: File:/var/log/vcmp_disk_statistics.log:exists
2017-05-17 12:36:00 Output: File:/var/log/wa/hds_prune.log:exists
2017-05-17 12:36:00 Output: File:/var/log/wa/pvacLog_8081:exists
2017-05-17 12:36:00 Output: File:/var/log/wa/symmetrical.log:exists
2017-05-17 12:36:00 Output: File:/var/log/wa/wam.provisioning.log:exists
2017-05-17 12:36:00 Output: File:/var/log/wa/wamd.log:exists
2017-05-17 12:36:00 Output: File:/var/log/wccpd.log:exists
2017-05-17 12:36:00 Output: File:/var/log/wocd:exists
2017-05-17 12:36:00 Output: File:/var/log/wocplugin:exists
2017-05-17 12:36:00 Output: File:/var/log/wocplugin[0-9]:exists
2017-05-17 12:36:00 Output: File:/var/log/wocplugin[1-9][0-9]:exists

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:00 Output: File:/var/log/wtmp:exists


2017-05-17 12:36:00 ===---------------------------------------------------------------===
2017-05-17 12:36:00 Performing test ID LOGG-2150 (Checking directories in logrotate configuration)
2017-05-17 12:36:00 Test: Checking which directories can be found in logrotate configuration
2017-05-17 12:36:00 Result: found one or more directories (via logrotate configuration)
2017-05-17 12:36:00 Directory found: /var/lib/mysql
2017-05-17 12:36:00 Directory found: /var/log
2017-05-17 12:36:00 Directory found: /var/log/httpd
2017-05-17 12:36:00 Directory found: /var/log/monitors
2017-05-17 12:36:00 Directory found: /var/log/sa6
2017-05-17 12:36:00 Directory found: /var/log/tomcat
2017-05-17 12:36:00 Directory found: /var/log/wa
2017-05-17 12:36:00 ===---------------------------------------------------------------===
2017-05-17 12:36:00 Skipped test LOGG-2152 (Checking loghost)
2017-05-17 12:36:00 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:36:00 ===---------------------------------------------------------------===
2017-05-17 12:36:00 Performing test ID LOGG-2154 (Checking syslog configuration file)
2017-05-17 12:36:00 Test: check if logs are also logged to a remote logging host
2017-05-17 12:36:00 Result: no remote logging found
2017-05-17 12:36:00 Suggestion: Enable logging to an external logging host for archiving purposes and additional
protection [test:LOGG-2154] [details:-] [solution:-]
2017-05-17 12:36:00 Hardening: assigned partial number of hardening points (1 of 3). Currently having 175 points (out of
245)
2017-05-17 12:36:00 ===---------------------------------------------------------------===
2017-05-17 12:36:00 Skipped test LOGG-2160 (Checking /etc/newsyslog.conf)
2017-05-17 12:36:00 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:00 ===---------------------------------------------------------------===
2017-05-17 12:36:00 Skipped test LOGG-2162 (Checking directories in /etc/newsyslog.conf)
2017-05-17 12:36:00 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:00 ===---------------------------------------------------------------===
2017-05-17 12:36:00 Skipped test LOGG-2164 (Checking files specified /etc/newsyslog.conf)
2017-05-17 12:36:00 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:00 ===---------------------------------------------------------------===
2017-05-17 12:36:00 Performing test ID LOGG-2170 (Checking log paths)
2017-05-17 12:36:00 Test: Searching log paths
2017-05-17 12:36:00 Result: directory /var/log exists
2017-05-17 12:36:00 Result: directory /var/adm can't be found
2017-05-17 12:36:00 ===---------------------------------------------------------------===
2017-05-17 12:36:00 Performing test ID LOGG-2180 (Checking open log files)
2017-05-17 12:36:00 Test: checking open log files with lsof
2017-05-17 12:36:01 Found logfile: /shared/tmp/logstatd.log
2017-05-17 12:36:01 Found logfile: /shared/tmp/mcpq.log
2017-05-17 12:36:01 Found logfile: /shared/tmp/rrdstats.log
2017-05-17 12:36:01 Found logfile: /var/fslog/tmp/170517-115314-007.log
2017-05-17 12:36:01 Found logfile: /var/lib/mysql/ddl_log.log

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:01 Found logfile: /var/log/adm/admd.log


2017-05-17 12:36:01 Found logfile: /var/log/auditd/audit.log
2017-05-17 12:36:01 Found logfile: /var/log/avr/avrd.log
2017-05-17 12:36:01 Found logfile: /var/log/avr/monpd.log
2017-05-17 12:36:01 Found logfile: /var/log/bdosd.log
2017-05-17 12:36:01 Found logfile: /var/log/capture/captured.log
2017-05-17 12:36:01 Found logfile: /var/log/cbr/cbrd.log
2017-05-17 12:36:01 Found logfile: /var/log/daemon.log
2017-05-17 12:36:01 Found logfile: /var/log/datasync/datasyncd.log
2017-05-17 12:36:01 Found logfile: /var/log/dosl7/dosl7d.log
2017-05-17 12:36:01 Found logfile: /var/log/dosl7/dosl7d_attack_monitor.log
2017-05-17 12:36:01 Found logfile: /var/log/dwbl/dwbld.log
2017-05-17 12:36:01 Found logfile: /var/log/iprepd/iprepd.log
2017-05-17 12:36:01 Found logfile: /var/log/kern.log
2017-05-17 12:36:01 Found logfile: /var/log/maillog
2017-05-17 12:36:01 Found logfile: /var/log/restjavad-audit.0.log
2017-05-17 12:36:01 Found logfile: /var/log/restjavad.0.log
2017-05-17 12:36:01 Found logfile: /var/log/restnoded/restnoded.log
2017-05-17 12:36:01 Found logfile: /var/log/sflow_agent.log
2017-05-17 12:36:01 Found logfile: /var/log/snmpd.log
2017-05-17 12:36:01 Found logfile: /var/log/ts/asmcsd.log
2017-05-17 12:36:01 Found logfile: /var/log/ts/bd.log
2017-05-17 12:36:01 Found logfile: /var/log/ts/correlation.log
2017-05-17 12:36:02 Found logfile: /var/log/ts/dcc.log
2017-05-17 12:36:02 Found logfile: /var/log/ts/pabnagd.log
2017-05-17 12:36:02 Found logfile: /var/log/ts/ts_debug.log
2017-05-17 12:36:02 Found logfile: /var/log/user.log
2017-05-17 12:36:02 Found logfile: /var/log/wccpd.log
2017-05-17 12:36:02 Found logfile: /var/log/webui.log
2017-05-17 12:36:02 ===---------------------------------------------------------------===
2017-05-17 12:36:02 Performing test ID LOGG-2190 (Checking for deleted files in use)
2017-05-17 12:36:02 Test: checking deleted files that are still in use
2017-05-17 12:36:02 Result: found one or more files which are deleted, but still in use
2017-05-17 12:36:02 Found deleted file: /dev/mprov/tmm/libhugetlbfs.tmp.MsCl4n(tmm.0)
2017-05-17 12:36:02 Found deleted file: /shared/tmp/ib0MriEN(mysqld)
2017-05-17 12:36:02 Found deleted file: /shared/tmp/ib88aTyV(mysqld)
2017-05-17 12:36:02 Found deleted file: /shared/tmp/ibEBoR75(mysqld)
2017-05-17 12:36:02 Found deleted file: /shared/tmp/ibGTHxxu(mysqld)
2017-05-17 12:36:02 Found deleted file: /shared/tmp/ibO7uABm(mysqld)
2017-05-17 12:36:02 Found deleted file: /var/asmdata1/request_log/0000008279(asm_confi)
2017-05-17 12:36:02 Found deleted file: /var/asmdata1/request_log/0000008328(asm_confi)
2017-05-17 12:36:02 Found deleted file: /var/run/httpd_ssl_mutex(httpd)
2017-05-17 12:36:02 Found deleted file: /var/tmstat/avr_cluster/avr_blade0(avrd)
2017-05-17 12:36:02 Found deleted file: /var/tmstat/private/blade0-performance(avrd)
2017-05-17 12:36:02 Found deleted file: /var/tmstat/private/blade0-public(avrd)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:02 Found deleted file: /var/tmstat/private/dwbl_scrubber(dwbld)


2017-05-17 12:36:02 Found deleted file: /var/tmstat/private/istats(avrd)
2017-05-17 12:36:02 Suggestion: Check what deleted files are still in use and why. [test:LOGG-2190] [details:-]
[solution:-]
2017-05-17 12:36:02 ===---------------------------------------------------------------===
2017-05-17 12:36:02 Performing test ID LOGG-2192 (Checking for open log files that are empty)
2017-05-17 12:36:03 Found an opened logfile that is empty: mcpq,/shared/tmp/mcpq.log
2017-05-17 12:36:03 Found an opened logfile that is empty: rrdstats,/shared/tmp/rrdstats.log
2017-05-17 12:36:03 Found an opened logfile that is empty: syslog-ng,/var/log/bdosd.log
2017-05-17 12:36:03 Found an opened logfile that is empty: syslog-ng,/var/log/daemon.log
2017-05-17 12:36:03 Found an opened logfile that is empty: syslog-ng,/var/log/wccpd.log
2017-05-17 12:36:03 Checking permissions of /home/admin/assess/include/tests_insecure_services
2017-05-17 12:36:03 File permissions are OK
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Action: Performing tests from category: Insecure services
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Performing test ID INSE-8002 (Check for enabled inet daemon)
2017-05-17 12:36:03 Test: Searching for active inet daemon
2017-05-17 12:36:03 IsRunning: process 'inetd' not found
2017-05-17 12:36:03 Result: inetd is NOT running
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Skipped test INSE-8004 (Check for enabled inet daemon)
2017-05-17 12:36:03 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Skipped test INSE-8006 (Check configuration of inetd when disabled)
2017-05-17 12:36:03 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Skipped test INSE-8016 (Check for telnet via inetd)
2017-05-17 12:36:03 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Skipped test INSE-8050 (Check for insecure services on macOS)
2017-05-17 12:36:03 Reason to skip: Incorrect guest OS (macOS only)
2017-05-17 12:36:03 Checking permissions of /home/admin/assess/include/tests_banners
2017-05-17 12:36:03 File permissions are OK
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Action: Performing tests from category: Banners and identification
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Skipped test BANN-7113 (Check COPYRIGHT banner file)
2017-05-17 12:36:03 Reason to skip: Incorrect guest OS (FreeBSD only)
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Performing test ID BANN-7124 (Check issue banner file)
2017-05-17 12:36:03 Test: Checking file /etc/issue
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Performing test ID BANN-7126 (Check issue banner file contents)
2017-05-17 12:36:03 Test: Checking file /etc/issue contents for legal key words

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:03 Result: Found only 0 key words (5 or more suggested), to warn unauthorized users and could be
increased
2017-05-17 12:36:03 Suggestion: Add a legal banner to /etc/issue, to warn unauthorized users [test:BANN-7126] [details:-
] [solution:-]
2017-05-17 12:36:03 Hardening: assigned partial number of hardening points (0 of 1). Currently having 175 points (out of
246)
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Performing test ID BANN-7128 (Check issue.net banner file)
2017-05-17 12:36:03 Test: Checking file /etc/issue.net
2017-05-17 12:36:03 Result: file /etc/issue.net exists
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Performing test ID BANN-7130 (Check issue.net banner file contents)
2017-05-17 12:36:03 Test: Checking file /etc/issue.net contents for legal key words
2017-05-17 12:36:03 Result: Found only 0 key words, to warn unauthorized users and could be increased
2017-05-17 12:36:03 Suggestion: Add legal banner to /etc/issue.net, to warn unauthorized users [test:BANN-7130]
[details:-] [solution:-]
2017-05-17 12:36:03 Hardening: assigned partial number of hardening points (0 of 1). Currently having 175 points (out of
247)
2017-05-17 12:36:03 Checking permissions of /home/admin/assess/include/tests_scheduling
2017-05-17 12:36:03 File permissions are OK
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Action: Performing tests from category: Scheduled tasks
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Performing test ID SCHD-7702 (Check status of cron daemon)
2017-05-17 12:36:03 Result: no cron daemon found
2017-05-17 12:36:03 Hardening: assigned maximum number of hardening points for this item (3). Currently having 178
points (out of 250)
2017-05-17 12:36:03 ===---------------------------------------------------------------===
2017-05-17 12:36:03 Performing test ID SCHD-7704 (Check crontab/cronjobs)
2017-05-17 12:36:03 Test: checking directory /etc/cron.d
2017-05-17 12:36:03 Test: check if we can access /etc/cron.d (escaped: /etc/cron.d)
2017-05-17 12:36:03 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:03 Result: file /etc/cron.d is readable (or directory accessible).
2017-05-17 12:36:03 Result: found directory /etc/cron.d
2017-05-17 12:36:03 Test: searching files in /etc/cron.d
2017-05-17 12:36:03 Result: found one or more files in /etc/cron.d. Analyzing files..
2017-05-17 12:36:03 Result: Found cronjob (/etc/cron.d/adm_logrotate): */5,*,*,*,*,root,nice,-n,19,ionice,-
c,3,/usr/sbin/logrotate,-s,/var/lib/logrotate-adm.status,/etc/adm/adm_logrotate.conf
2017-05-17 12:36:03 Result: Found cronjob (/etc/cron.d/asm_logrotate.cron): */5,*,*,*,*,root,nice,-n,19,ionice,-
c,3,/usr/share/ts/bin/asm_logrotate
2017-05-17 12:36:04 Result: Found cronjob (/etc/cron.d/sysstat): */5,*,*,*,*,root,/usr/lib64/sa/sa1,1,1
2017-05-17 12:36:04 Result: Found cronjob (/etc/cron.d/monitors_logrotate): */5,*,*,*,*,root,nice,-n,19,ionice,-
c,3,/usr/sbin/logrotate,-s,/var/lib/logrotate-monitors.status,/etc/monitors/monitors_logrotate.conf
2017-05-17 12:36:04 Result: Found cronjob (/etc/cron.d/0hourly): 01,*,*,*,*,root,run-parts,/etc/cron.hourly
2017-05-17 12:36:04 Result: done with analyzing files in /etc/cron.d

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:04 Test: checking directory /etc/cron.hourly


2017-05-17 12:36:04 Result: found directory /etc/cron.hourly
2017-05-17 12:36:04 Test: check if we can access /etc/cron.hourly (escaped: /etc/cron.hourly)
2017-05-17 12:36:04 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:04 Result: file /etc/cron.hourly is readable (or directory accessible).
2017-05-17 12:36:04 Test: searching files in /etc/cron.hourly
2017-05-17 12:36:04 Result: found one or more files in /etc/cron.hourly. Analyzing files..
2017-05-17 12:36:04 Result: Found cronjob (/etc/cron.hourly): /etc/cron.hourly/0anacron
2017-05-17 12:36:04 Result: Found cronjob (/etc/cron.hourly): /etc/cron.hourly/pwdcheck
2017-05-17 12:36:04 Result: Found cronjob (/etc/cron.hourly): /etc/cron.hourly/genkeys-1024
2017-05-17 12:36:04 Result: Found cronjob (/etc/cron.hourly): /etc/cron.hourly/genkeys
2017-05-17 12:36:04 Result: Found cronjob (/etc/cron.hourly): /etc/cron.hourly/avr_run_scheduled_reports
2017-05-17 12:36:04 Result: done with analyzing files in /etc/cron.hourly
2017-05-17 12:36:04 Test: checking directory /etc/cron.daily
2017-05-17 12:36:04 Result: found directory /etc/cron.daily
2017-05-17 12:36:04 Test: check if we can access /etc/cron.daily (escaped: /etc/cron.daily)
2017-05-17 12:36:04 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:04 Result: file /etc/cron.daily is readable (or directory accessible).
2017-05-17 12:36:04 Test: searching files in /etc/cron.daily
2017-05-17 12:36:04 Result: found one or more files in /etc/cron.daily. Analyzing files..
2017-05-17 12:36:04 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/logrotate
2017-05-17 12:36:04 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/clean_oblog
2017-05-17 12:36:04 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/tmpwatch
2017-05-17 12:36:04 Result: done with analyzing files in /etc/cron.daily
2017-05-17 12:36:04 Test: checking directory /etc/cron.weekly
2017-05-17 12:36:04 Result: found directory /etc/cron.weekly
2017-05-17 12:36:04 Test: check if we can access /etc/cron.weekly (escaped: /etc/cron.weekly)
2017-05-17 12:36:04 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:04 Result: file /etc/cron.weekly is readable (or directory accessible).
2017-05-17 12:36:04 Test: searching files in /etc/cron.weekly
2017-05-17 12:36:04 Result: found one or more files in /etc/cron.weekly. Analyzing files..
2017-05-17 12:36:04 Result: Found cronjob (/etc/cron.weekly): /etc/cron.weekly/5checkcert
2017-05-17 12:36:04 Result: done with analyzing files in /etc/cron.weekly
2017-05-17 12:36:04 Test: checking directory /etc/cron.monthly
2017-05-17 12:36:04 Result: found directory /etc/cron.monthly
2017-05-17 12:36:04 Test: check if we can access /etc/cron.monthly (escaped: /etc/cron.monthly)
2017-05-17 12:36:04 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:04 Result: file /etc/cron.monthly is readable (or directory accessible).
2017-05-17 12:36:04 Test: searching files in /etc/cron.monthly
2017-05-17 12:36:04 Result: no files found in /etc/cron.monthly
2017-05-17 12:36:04 Test: check if we can access /var/spool/cron/syscheck (escaped: /var/spool/cron/syscheck)
2017-05-17 12:36:04 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:04 Result: file /var/spool/cron/syscheck is readable (or directory accessible).
2017-05-17 12:36:04 Found cronjob (/var/spool/cron): /var/spool/cron/syscheck (*/2,*,*,*,*,/usr/bin/system_check,-q)
2017-05-17 12:36:04 cronjob[]=/var/spool/cron/syscheck

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:04 Test: check if we can access /var/spool/cron/root (escaped: /var/spool/cron/root)


2017-05-17 12:36:04 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:04 Result: file /var/spool/cron/root is readable (or directory accessible).
2017-05-17 12:36:04 Found cronjob (/var/spool/cron): /var/spool/cron/root (40,00,*,*,*,/usr/bin/updatecheck,-a,)
2017-05-17 12:36:04 cronjob[]=/var/spool/cron/root
2017-05-17 12:36:04 Found cronjob (/var/spool/cron): /var/spool/cron/root (40,00,11,*,*,/usr/bin/phonehome_upload,)
2017-05-17 12:36:04 cronjob[]=/var/spool/cron/root
2017-05-17 12:36:04 Found cronjob (/var/spool/cron): /var/spool/cron/root (1-59/10,*,*,*,*,/usr/bin/diskmonitor)
2017-05-17 12:36:04 cronjob[]=/var/spool/cron/root
2017-05-17 12:36:04 Found cronjob (/var/spool/cron): /var/spool/cron/root (0,*/4,*,*,*,/usr/bin/diskwearoutstat)
2017-05-17 12:36:04 cronjob[]=/var/spool/cron/root
2017-05-17 12:36:04 Found cronjob (/var/spool/cron): /var/spool/cron/root (*/1,*,*,*,*,/usr/sbin/lsusb,-v,-
d,0451:3410,>/dev/null)
2017-05-17 12:36:04 cronjob[]=/var/spool/cron/root
2017-05-17 12:36:04 Found cronjob (/var/spool/cron): /var/spool/cron/root (29,*,*,*,*,/usr/bin/copy_rrd,save)
2017-05-17 12:36:04 cronjob[]=/var/spool/cron/root
2017-05-17 12:36:04 Test: checking anacrontab
2017-05-17 12:36:04 Found anacron job (/etc/anacrontab): 1,5,cron.daily,nice,run-parts,/etc/cron.daily
2017-05-17 12:36:04 Found anacron job (/etc/anacrontab): 7,25,cron.weekly,nice,run-parts,/etc/cron.weekly
2017-05-17 12:36:04 Found anacron job (/etc/anacrontab): @monthly,45,cron.monthly,nice,run-parts,/etc/cron.monthly
2017-05-17 12:36:04 ===---------------------------------------------------------------===
2017-05-17 12:36:04 Performing test ID SCHD-7718 (Check at users)
2017-05-17 12:36:04 Test: Checking atd status
2017-05-17 12:36:04 Result: at daemon not active
2017-05-17 12:36:04 ===---------------------------------------------------------------===
2017-05-17 12:36:04 Skipped test SCHD-7720 (Check at users)
2017-05-17 12:36:04 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:04 ===---------------------------------------------------------------===
2017-05-17 12:36:04 Skipped test SCHD-7724 (Check at jobs)
2017-05-17 12:36:04 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:04 Checking permissions of /home/admin/assess/include/tests_accounting
2017-05-17 12:36:04 File permissions are OK
2017-05-17 12:36:04 ===---------------------------------------------------------------===
2017-05-17 12:36:04 Action: Performing tests from category: Accounting
2017-05-17 12:36:04 ===---------------------------------------------------------------===
2017-05-17 12:36:04 Skipped test ACCT-2754 (Check for available FreeBSD accounting information)
2017-05-17 12:36:04 Reason to skip: Incorrect guest OS (FreeBSD only)
2017-05-17 12:36:04 ===---------------------------------------------------------------===
2017-05-17 12:36:04 Skipped test ACCT-2760 (Check for available OpenBSD accounting information)
2017-05-17 12:36:04 Reason to skip: Incorrect guest OS (OpenBSD only)
2017-05-17 12:36:04 ===---------------------------------------------------------------===
2017-05-17 12:36:04 Performing test ID ACCT-9622 (Check for available Linux accounting information)
2017-05-17 12:36:04 Test: Check accounting information
2017-05-17 12:36:04 Result: No accounting information available (/var/account/pacct, /var/log/account/pact nor
/var/log/pact exist)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:04 Remark: Possibly there is another location where the accounting data is stored
2017-05-17 12:36:04 Suggestion: Enable process accounting [test:ACCT-9622] [details:-] [solution:-]
2017-05-17 12:36:04 Hardening: assigned partial number of hardening points (2 of 3). Currently having 180 points (out of
253)
2017-05-17 12:36:04 ===---------------------------------------------------------------===
2017-05-17 12:36:04 Performing test ID ACCT-9626 (Check for sysstat accounting data)
2017-05-17 12:36:04 Test: check /etc/default/sysstat presence
2017-05-17 12:36:04 Result: sysstat enabled via /etc/cron.d/sysstat
2017-05-17 12:36:04 ===---------------------------------------------------------------===
2017-05-17 12:36:04 Performing test ID ACCT-9628 (Check for auditd)
2017-05-17 12:36:04 Test: Check auditd status
2017-05-17 12:36:04 IsRunning: process 'auditd' found ( 3617 ? S<sl 0:21 auditd)
2017-05-17 12:36:04 Result: auditd running
2017-05-17 12:36:04 Hardening: assigned maximum number of hardening points for this item (4). Currently having 184
points (out of 257)
2017-05-17 12:36:04 ===---------------------------------------------------------------===
2017-05-17 12:36:04 Performing test ID ACCT-9630 (Check for auditd rules)
2017-05-17 12:36:04 Test: Checking auditd rules
2017-05-17 12:36:05 Result: auditd rules empty
2017-05-17 12:36:05 Hardening: assigned partial number of hardening points (0 of 2). Currently having 184 points (out of
259)
2017-05-17 12:36:05 Suggestion: Audit daemon is enabled with an empty ruleset. Disable the daemon or define rules
[test:ACCT-9630] [details:-] [solution:-]
2017-05-17 12:36:05 ===---------------------------------------------------------------===
2017-05-17 12:36:05 Performing test ID ACCT-9632 (Check for auditd configuration file)
2017-05-17 12:36:05 Test: Checking auditd configuration file
2017-05-17 12:36:05 Result: /etc/auditd.conf not found
2017-05-17 12:36:05 Result: Found /etc/audit/auditd.conf
2017-05-17 12:36:05 ===---------------------------------------------------------------===
2017-05-17 12:36:05 Performing test ID ACCT-9634 (Check for auditd log file)
2017-05-17 12:36:05 Test: Checking auditd log file
2017-05-17 12:36:05 Result: log file is defined
2017-05-17 12:36:05 Defined value: /var/log/auditd/audit.log
2017-05-17 12:36:05 Result: log file /var/log/auditd/audit.log exists on disk
2017-05-17 12:36:05 ===---------------------------------------------------------------===
2017-05-17 12:36:05 Performing test ID ACCT-9636 (Check for Snoopy wrapper and logger)
2017-05-17 12:36:05 ===---------------------------------------------------------------===
2017-05-17 12:36:05 Skipped test ACCT-9650 (Check Solaris audit daemon)
2017-05-17 12:36:05 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:36:05 ===---------------------------------------------------------------===
2017-05-17 12:36:05 Skipped test ACCT-9652 (Check auditd SMF status)
2017-05-17 12:36:05 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:36:05 ===---------------------------------------------------------------===
2017-05-17 12:36:05 Skipped test ACCT-9654 (Check BSM auditing in /etc/system)
2017-05-17 12:36:05 Reason to skip: Incorrect guest OS (Solaris only)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:05 ===---------------------------------------------------------------===


2017-05-17 12:36:05 Skipped test ACCT-9656 (Check BSM auditing in module list)
2017-05-17 12:36:05 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:36:05 ===---------------------------------------------------------------===
2017-05-17 12:36:05 Skipped test ACCT-9660 (Check location of audit events)
2017-05-17 12:36:05 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:36:05 ===---------------------------------------------------------------===
2017-05-17 12:36:05 Skipped test ACCT-9662 (Check Solaris auditing stats)
2017-05-17 12:36:05 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:36:05 Checking permissions of /home/admin/assess/include/tests_time
2017-05-17 12:36:05 File permissions are OK
2017-05-17 12:36:05 ===---------------------------------------------------------------===
2017-05-17 12:36:05 Action: Performing tests from category: Time and Synchronization
2017-05-17 12:36:05 ===---------------------------------------------------------------===
2017-05-17 12:36:05 Performing test ID TIME-3104 (Check for running NTP daemon or client)
2017-05-17 12:36:05 Test: Searching for a running NTP daemon or available client
2017-05-17 12:36:05 Result: no chrony configuration found
2017-05-17 12:36:05 IsRunning: process 'dntpd' not found
2017-05-17 12:36:05 Result: found running NTP daemon in process list
2017-05-17 12:36:05 IsRunning: process 'timed' not found
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in crontab file /etc/anacrontab
2017-05-17 12:36:05 Result: no ntpdate or rdate reference found in crontab file /etc/anacrontab
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in crontab file /etc/crontab
2017-05-17 12:36:05 Result: no ntpdate or rdate reference found in crontab file /etc/crontab
2017-05-17 12:36:05 Test: check if we can access /etc/cron.d (escaped: /etc/cron.d)
2017-05-17 12:36:05 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:05 Result: file /etc/cron.d is readable (or directory accessible).
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.d/0hourly
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.d/adm_logrotate
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.d/asm_logrotate.cron
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.d/monitors_logrotate
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.d/sysstat
2017-05-17 12:36:05 Test: check if we can access /etc/cron.hourly (escaped: /etc/cron.hourly)
2017-05-17 12:36:05 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:05 Result: file /etc/cron.hourly is readable (or directory accessible).
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/0anacron
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/autodosd_logrotate
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/avr_logrotate
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/avr_run_scheduled_reports
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/captured_logrotate
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/cbr_logrotate
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/datasyncd_logrotate
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/dosl7d_logrotate
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/dosl7d_tcpdumps_cleaner
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/dwbld_logrotate

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/fpuserd_logrotate


2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/genkeys
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/genkeys-1024
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/iprepd_logrotate
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/purge_mysql_logs.pl
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/pwdcheck
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/save_cores.pl
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/send_sync.pl
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/update_scanner_site_map.pl
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/wa_logrotate
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.hourly/wr_urldbd_logrotate
2017-05-17 12:36:05 Test: check if we can access /etc/cron.daily (escaped: /etc/cron.daily)
2017-05-17 12:36:05 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:05 Result: file /etc/cron.daily is readable (or directory accessible).
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.daily/asm_update_sigfile
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.daily/clean_oblog
2017-05-17 12:36:05 Test: checking for ntpdate or rdate in /etc/cron.daily/logrotate
2017-05-17 12:36:06 Test: checking for ntpdate or rdate in /etc/cron.daily/pendsect
2017-05-17 12:36:06 Test: checking for ntpdate or rdate in /etc/cron.daily/tmpwatch
2017-05-17 12:36:06 Test: checking for ntpdate or rdate in /etc/cron.daily/update_dpi_sigfile
2017-05-17 12:36:06 Test: checking for ntpdate or rdate in /etc/cron.daily/update_fps_engine
2017-05-17 12:36:06 Test: checking for ntpdate or rdate in /etc/cron.daily/update_fps_signatures
2017-05-17 12:36:06 Test: checking for ntpdate or rdate in /etc/cron.daily/update_pem_tacdb
2017-05-17 12:36:06 Test: check if we can access /etc/cron.weekly (escaped: /etc/cron.weekly)
2017-05-17 12:36:06 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:06 Result: file /etc/cron.weekly is readable (or directory accessible).
2017-05-17 12:36:06 Test: checking for ntpdate or rdate in /etc/cron.weekly/5checkcert
2017-05-17 12:36:06 Test: check if we can access /etc/cron.monthly (escaped: /etc/cron.monthly)
2017-05-17 12:36:06 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:06 Result: file /etc/cron.monthly is readable (or directory accessible).
2017-05-17 12:36:06 Result: /etc/cron.monthly is empty, skipping search in directory
2017-05-17 12:36:06 Result: no ntpdate or rdate found in cron directories
2017-05-17 12:36:06 Test: checking for file /etc/network/if-up.d/ntpdate
2017-05-17 12:36:06 Result: file /etc/network/if-up.d/ntpdate does not exist
2017-05-17 12:36:06 Result: Found a time syncing daemon/client.
2017-05-17 12:36:06 Hardening: assigned maximum number of hardening points for this item (3). Currently having 187
points (out of 262)
2017-05-17 12:36:06 ===---------------------------------------------------------------===
2017-05-17 12:36:06 Skipped test TIME-3106 (Check systemd NTP time synchronization status)
2017-05-17 12:36:06 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:06 ===---------------------------------------------------------------===
2017-05-17 12:36:06 Performing test ID TIME-3112 (Check active NTP associations ID's)
2017-05-17 12:36:06 Test: Checking for NTP association ID's from ntpq peers list
2017-05-17 12:36:06 Result: Found one or more association ID's
2017-05-17 12:36:06 ===---------------------------------------------------------------===

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:06 Performing test ID TIME-3116 (Check peers with stratum value of 16)
2017-05-17 12:36:06 Test: Checking stratum 16 sources from ntpq peers list
2017-05-17 12:36:06 Result: All peers are lower than stratum 16
2017-05-17 12:36:06 ===---------------------------------------------------------------===
2017-05-17 12:36:06 Performing test ID TIME-3120 (Check unreliable NTP peers)
2017-05-17 12:36:06 Test: Checking unreliable ntp peers
2017-05-17 12:36:06 Result: No unreliable peers found
2017-05-17 12:36:06 ===---------------------------------------------------------------===
2017-05-17 12:36:06 Performing test ID TIME-3124 (Check selected time source)
2017-05-17 12:36:06 Test: Checking selected time source
2017-05-17 12:36:06 Result: Found selected time source (value: 172.16.100.81)
2017-05-17 12:36:06 ===---------------------------------------------------------------===
2017-05-17 12:36:06 Performing test ID TIME-3128 (Check preferred time source)
2017-05-17 12:36:06 Test: Checking preferred time source
2017-05-17 12:36:06 Result: Found one or more candidates to synchronize time with.
2017-05-17 12:36:06 Candidate found: 172.16.100.82
2017-05-17 12:36:06 ===---------------------------------------------------------------===
2017-05-17 12:36:06 Performing test ID TIME-3132 (Check NTP falsetickers)
2017-05-17 12:36:06 Test: Checking preferred time source
2017-05-17 12:36:06 Result: No falsetickers found (items preceeding with an 'x')
2017-05-17 12:36:06 ===---------------------------------------------------------------===
2017-05-17 12:36:06 Performing test ID TIME-3136 (Check NTP protocol version)
2017-05-17 12:36:06 Test: Checking NTP protocol version (ntpq -c ntpversion)
2017-05-17 12:36:06 Result: Found NTP version 2
2017-05-17 12:36:06 ===---------------------------------------------------------------===
2017-05-17 12:36:06 Performing test ID TIME-3148 (Check TZ variable)
2017-05-17 12:36:06 Test: testing for TZ variable
2017-05-17 12:36:06 Result: found TZ variable with value notset
2017-05-17 12:36:06 ===---------------------------------------------------------------===
2017-05-17 12:36:06 Performing test ID TIME-3160 (Check empty NTP step-tickers)
2017-05-17 12:36:06 Result: /etc/ntp/step-tickers is not empty, which is fine
2017-05-17 12:36:06 Result: 172.16.100.81 does NOT exist in /etc/ntp/step-tickers
2017-05-17 12:36:06 Result: 172.16.100.82 does NOT exist in /etc/ntp/step-tickers
2017-05-17 12:36:06 Suggestion: Some time servers missing in step-tickers file [test:TIME-3160] [details:-] [solution:-]
2017-05-17 12:36:06 Hardening: assigned partial number of hardening points (3 of 4). Currently having 190 points (out of
266)
2017-05-17 12:36:06 Information: step-tickers is used by ntpdate where as ntp.conf is the configuration file for the
ntpd daemon. ntpdate is initially run to set the clock before ntpd to make sure time is within 1000 sec.
2017-05-17 12:36:06 Risk: ntp will not run at boot if the time difference between the server and client by more then
1000 sec.
2017-05-17 12:36:06 ===---------------------------------------------------------------===
2017-05-17 12:36:06 Performing test ID TIME-3170 (Check configuration files)
2017-05-17 12:36:06 Result: found /etc/ntp.conf
2017-05-17 12:36:06 Warning: Found world writable configuration file [test:TIME-3170] [details:/etc/ntp.conf]
[solution:]

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:06 Checking permissions of /home/admin/assess/include/tests_crypto


2017-05-17 12:36:07 File permissions are OK
2017-05-17 12:36:07 ===---------------------------------------------------------------===
2017-05-17 12:36:07 Action: Performing tests from category: Cryptography
2017-05-17 12:36:07 ===---------------------------------------------------------------===
2017-05-17 12:36:07 Performing test ID CRYP-7902 (Check expire date of SSL certificates)
2017-05-17 12:36:07 Paths to scan: /etc/apache2 /etc/dovecot /etc/httpd /etc/letsencrypt /etc/pki /etc/postfix /etc/ssl
/opt/psa/var/certificates /srv/www /usr/local/psa/var/certificates /usr/local/share/ca-certificates /var/www
2017-05-17 12:36:07 Result: SSL path /etc/apache2 does not exist
2017-05-17 12:36:07 Result: SSL path /etc/dovecot does not exist
2017-05-17 12:36:07 Test: check if we can access /etc/httpd (escaped: /etc/httpd)
2017-05-17 12:36:07 Action: checking symlink for file /etc/httpd
2017-05-17 12:36:07 Note: Using real readlink binary to determine symlink on /etc/httpd
2017-05-17 12:36:07 Result: readlink shows /config/httpd as output
2017-05-17 12:36:07 Result: symlink found, pointing to directory /config/httpd
2017-05-17 12:36:07 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:07 Result: file /config/httpd is readable (or directory accessible).
2017-05-17 12:36:07 Result: found directory /etc/httpd
2017-05-17 12:36:07 Result: no certificates found in directory /etc/httpd
2017-05-17 12:36:07 Result: found 0 certificates in /etc/httpd
2017-05-17 12:36:07 Result: SSL path /etc/letsencrypt does not exist
2017-05-17 12:36:07 Test: check if we can access /etc/pki (escaped: /etc/pki)
2017-05-17 12:36:07 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:07 Result: file /etc/pki is readable (or directory accessible).
2017-05-17 12:36:07 Result: found directory /etc/pki
2017-05-17 12:36:07 Test: check if we can access /etc/pki/nssdb/cert8.db (escaped: /etc/pki/nssdb/cert8.db)
2017-05-17 12:36:07 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:07 Result: file /etc/pki/nssdb/cert8.db is readable (or directory accessible).
2017-05-17 12:36:07 Result: file /etc/pki/nssdb/cert8.db belongs to package (nss
nss)
2017-05-17 12:36:07 Test: check if we can access /etc/pki/nssdb/cert9.db (escaped: /etc/pki/nssdb/cert9.db)
2017-05-17 12:36:07 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:07 Result: file /etc/pki/nssdb/cert9.db is readable (or directory accessible).
2017-05-17 12:36:07 Result: file /etc/pki/nssdb/cert9.db belongs to package (nss)
2017-05-17 12:36:07 Result: found 0 certificates in /etc/pki
2017-05-17 12:36:07 Result: SSL path /etc/postfix does not exist
2017-05-17 12:36:07 Test: check if we can access /etc/ssl (escaped: /etc/ssl)
2017-05-17 12:36:07 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:07 Result: file /etc/ssl is readable (or directory accessible).
2017-05-17 12:36:07 Result: found directory /etc/ssl
2017-05-17 12:36:07 Result: no certificates found in directory /etc/ssl
2017-05-17 12:36:07 Result: found 0 certificates in /etc/ssl
2017-05-17 12:36:07 Result: SSL path /opt/psa/var/certificates does not exist
2017-05-17 12:36:07 Result: SSL path /srv/www does not exist
2017-05-17 12:36:07 Result: SSL path /usr/local/psa/var/certificates does not exist

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:07 Result: SSL path /usr/local/share/ca-certificates does not exist


2017-05-17 12:36:07 Test: check if we can access /var/www (escaped: /var/www)
2017-05-17 12:36:07 Result: file is owned by our current user ID (0), checking if it is readable
2017-05-17 12:36:07 Result: file /var/www is readable (or directory accessible).
2017-05-17 12:36:07 Result: found directory /var/www
2017-05-17 12:36:07 Result: no certificates found in directory /var/www
2017-05-17 12:36:07 Result: found 0 certificates in /var/www
2017-05-17 12:36:07 Result: found a total of 0 certificates
2017-05-17 12:36:07 Checking permissions of /home/admin/assess/include/tests_virtualization
2017-05-17 12:36:07 File permissions are OK
2017-05-17 12:36:07 ===---------------------------------------------------------------===
2017-05-17 12:36:07 Action: Performing tests from category: Virtualization
2017-05-17 12:36:07 Checking permissions of /home/admin/assess/include/tests_containers
2017-05-17 12:36:07 File permissions are OK
2017-05-17 12:36:07 ===---------------------------------------------------------------===
2017-05-17 12:36:07 Action: Performing tests from category: Containers
2017-05-17 12:36:07 ===---------------------------------------------------------------===
2017-05-17 12:36:07 Skipped test CONT-8004 (Query running Solaris zones)
2017-05-17 12:36:07 Reason to skip: Incorrect guest OS (Solaris only)
2017-05-17 12:36:07 ===---------------------------------------------------------------===
2017-05-17 12:36:07 Performing test ID CONT-8102 (Checking Docker status and information)
2017-05-17 12:36:07 IsRunning: process 'docker -d' not found
2017-05-17 12:36:07 ===---------------------------------------------------------------===
2017-05-17 12:36:07 Skipped test CONT-8104 (Checking Docker info for any warnings)
2017-05-17 12:36:07 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:07 ===---------------------------------------------------------------===
2017-05-17 12:36:07 Skipped test CONT-8106 (Gather basic stats from Docker)
2017-05-17 12:36:07 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:07 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Skipped test CONT-8107 (Check number of Docker containers)
2017-05-17 12:36:08 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Skipped test CONT-8108 (Check file permissions for Docker files)
2017-05-17 12:36:08 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:08 Checking permissions of /home/admin/assess/include/tests_mac_frameworks
2017-05-17 12:36:08 File permissions are OK
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Action: Performing tests from category: Security frameworks
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID MACF-6204 (Check AppArmor presence)
2017-05-17 12:36:08 Result: aa-status binary not found, AppArmor not installed
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Skipped test MACF-6208 (Check if AppArmor is enabled)
2017-05-17 12:36:08 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:08 ===---------------------------------------------------------------===

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:08 Performing test ID MACF-6232 (Check SELINUX presence)


2017-05-17 12:36:08 Test: checking if we have sestatus binary
2017-05-17 12:36:08 Result: found sestatus binary (/usr/sbin/sestatus)
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID MACF-6234 (Check SELINUX status)
2017-05-17 12:36:08 Result: SELinux framework is enabled
2017-05-17 12:36:08 Result: current SELinux mode is enforcing
2017-05-17 12:36:08 Result: mode configured in config file is enforcing
2017-05-17 12:36:08 Result: Current SELinux mode is the same as in config file.
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID RBAC-6272 (Check grsecurity presence)
2017-05-17 12:36:08 Result: no grsecurity found in kernel config
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID MACF-6290 (Check for implemented MAC framework)
2017-05-17 12:36:08 Hardening: assigned maximum number of hardening points for this item (3). Currently having 193
points (out of 269)
2017-05-17 12:36:08 Result: found implemented MAC framework
2017-05-17 12:36:08 Checking permissions of /home/admin/assess/include/tests_file_integrity
2017-05-17 12:36:08 File permissions are OK
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Action: Performing tests from category: Software: file integrity
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID FINT-4310 (AFICK availability)
2017-05-17 12:36:08 Test: Checking AFICK binary
2017-05-17 12:36:08 Result: AFICK is not installed
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID FINT-4314 (AIDE availability)
2017-05-17 12:36:08 Test: Checking AIDE binary
2017-05-17 12:36:08 Result: AIDE is not installed
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Skipped test FINT-4315 (Check AIDE configuration file)
2017-05-17 12:36:08 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID FINT-4318 (Osiris availability)
2017-05-17 12:36:08 Test: Checking Osiris binary
2017-05-17 12:36:08 Result: Osiris is not installed
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID FINT-4322 (Samhain availability)
2017-05-17 12:36:08 Test: Checking Samhain binary
2017-05-17 12:36:08 Result: Samhain is not installed
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID FINT-4326 (Tripwire availability)
2017-05-17 12:36:08 Test: Checking Tripwire binary
2017-05-17 12:36:08 Result: Tripwire is not installed
2017-05-17 12:36:08 ===---------------------------------------------------------------===

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:08 Performing test ID FINT-4328 (OSSEC syscheck daemon running)


2017-05-17 12:36:08 Test: Checking if OSSEC syscheck daemon is running
2017-05-17 12:36:08 IsRunning: process 'ossec-syscheckd' not found
2017-05-17 12:36:08 Result: syscheck (OSSEC) not installed
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID FINT-4330 (mtree availability)
2017-05-17 12:36:08 Test: Checking mtree binary
2017-05-17 12:36:08 Result: mtree is not installed
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Skipped test FINT-4334 (Check lfd daemon status)
2017-05-17 12:36:08 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Skipped test FINT-4336 (Check lfd configuration status)
2017-05-17 12:36:08 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID FINT-4338 (osqueryd syscheck daemon running)
2017-05-17 12:36:08 Test: Checking if osqueryd syscheck daemon is running
2017-05-17 12:36:08 IsRunning: process 'osqueryd' not found
2017-05-17 12:36:08 Result: syscheck (osquery) not installed
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Skipped test FINT-4402 (AIDE configuration: Checksums (SHA256 or SHA512))
2017-05-17 12:36:08 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID FINT-4350 (File integrity software installed)
2017-05-17 12:36:08 Test: Check if at least on file integrity tool is available/installed
2017-05-17 12:36:08 Result: No file integrity tools found
2017-05-17 12:36:08 Suggestion: Install a file integrity tool to monitor changes to critical and sensitive files
[test:FINT-4350] [details:-] [solution:-]
2017-05-17 12:36:08 Hardening: assigned partial number of hardening points (0 of 5). Currently having 193 points (out of
274)
2017-05-17 12:36:08 Checking permissions of /home/admin/assess/include/tests_tooling
2017-05-17 12:36:08 File permissions are OK
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Action: Performing tests from category: Software: System tooling
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID TOOL-5002 (Checking for automation tools)
2017-05-17 12:36:08 IsRunning: process 'puppet master' not found
2017-05-17 12:36:08 IsRunning: process 'salt-master' not found
2017-05-17 12:36:08 Suggestion: Determine if automation tools are present for system management [test:TOOL-5002]
[details:-] [solution:-]
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID TOOL-5102 (Check for presence of Fail2ban)
2017-05-17 12:36:08 Result: Fail2ban not present (fail2ban-server not found)
2017-05-17 12:36:08 Checking Fail2ban configuration file
2017-05-17 12:36:08 ===---------------------------------------------------------------===

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:08 Skipped test TOOL-5104 (Enabled tests in Fail2ban)


2017-05-17 12:36:08 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID TOOL-5120 (Check for presence of Snort)
2017-05-17 12:36:08 IsRunning: process 'snort' not found
2017-05-17 12:36:08 Result: Snort not present (Snort not running)
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID TOOL-5122 (Check Snort configuration file)
2017-05-17 12:36:08 ===---------------------------------------------------------------===
2017-05-17 12:36:08 Performing test ID TOOL-5190 (Check presence of IDS/IPS tool)
2017-05-17 12:36:09 Hardening: assigned partial number of hardening points (0 of 2). Currently having 193 points (out of
276)
2017-05-17 12:36:09 Checking permissions of /home/admin/assess/include/tests_malware
2017-05-17 12:36:09 File permissions are OK
2017-05-17 12:36:09 ===---------------------------------------------------------------===
2017-05-17 12:36:09 Action: Performing tests from category: Software: Malware
2017-05-17 12:36:09 ===---------------------------------------------------------------===
2017-05-17 12:36:09 Performing test ID MALW-3275 (Check for chkrootkit)
2017-05-17 12:36:09 Test: checking presence chkrootkit
2017-05-17 12:36:09 Result: chkrootkit not found
2017-05-17 12:36:09 ===---------------------------------------------------------------===
2017-05-17 12:36:09 Performing test ID MALW-3276 (Check for Rootkit Hunter)
2017-05-17 12:36:09 Test: checking presence Rootkit Hunter
2017-05-17 12:36:09 Result: Rootkit Hunter not found
2017-05-17 12:36:09 ===---------------------------------------------------------------===
2017-05-17 12:36:09 Performing test ID MALW-3278 (Check for LMD)
2017-05-17 12:36:09 Test: checking presence LMD
2017-05-17 12:36:09 Result: LMD not found
2017-05-17 12:36:09 ===---------------------------------------------------------------===
2017-05-17 12:36:09 Performing test ID MALW-3280 (Check if anti-virus tool is installed)
2017-05-17 12:36:09 Test: checking process esets_daemon
2017-05-17 12:36:09 IsRunning: process 'esets_daemon' not found
2017-05-17 12:36:09 Test: checking process bdagentd
2017-05-17 12:36:09 IsRunning: process 'bdagentd' not found
2017-05-17 12:36:09 Test: checking process com.avast.daemon
2017-05-17 12:36:09 IsRunning: process 'com.avast.daemon' not found
2017-05-17 12:36:09 Test: checking process Avira daemon
2017-05-17 12:36:09 IsRunning: process 'avqmd' not found
2017-05-17 12:36:09 Test: checking process CylanceSvc
2017-05-17 12:36:09 IsRunning: process 'CylanceSvc' not found
2017-05-17 12:36:09 Test: checking process cma or cmdagent (McAfee)
2017-05-17 12:36:09 IsRunning: process 'cmdagent' not found
2017-05-17 12:36:09 Test: checking process savscand
2017-05-17 12:36:09 IsRunning: process 'savscand' not found
2017-05-17 12:36:09 Test: checking process SophosScanD

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:09 IsRunning: process 'SophosScanD' not found


2017-05-17 12:36:09 Test: checking process rtvscand
2017-05-17 12:36:09 IsRunning: process 'rtvscand' not found
2017-05-17 12:36:09 Test: checking process Symantec management client service
2017-05-17 12:36:09 IsRunning: process 'smcd' not found
2017-05-17 12:36:09 Test: checking process Symantec Endpoint Protection configuration service
2017-05-17 12:36:09 IsRunning: process 'symcfgd' not found
2017-05-17 12:36:09 Test: checking process TmccMac to test for Trend Micro anti-virus (macOS)
2017-05-17 12:36:09 IsRunning: process 'TmccMac' not found
2017-05-17 12:36:09 Result: no commercial anti-virus tools found
2017-05-17 12:36:09 Hardening: assigned partial number of hardening points (0 of 3). Currently having 193 points (out of
279)
2017-05-17 12:36:09 ===---------------------------------------------------------------===
2017-05-17 12:36:09 Performing test ID MALW-3282 (Check for clamscan)
2017-05-17 12:36:09 Test: checking presence clamscan
2017-05-17 12:36:09 Result: clamscan couldn't be found
2017-05-17 12:36:09 ===---------------------------------------------------------------===
2017-05-17 12:36:09 Performing test ID MALW-3284 (Check for clamd)
2017-05-17 12:36:09 Test: checking running ClamAV daemon (clamd)
2017-05-17 12:36:09 IsRunning: process 'clamd' not found
2017-05-17 12:36:09 Result: clamd not running
2017-05-17 12:36:09 ===---------------------------------------------------------------===
2017-05-17 12:36:09 Skipped test MALW-3286 (Check for freshclam)
2017-05-17 12:36:09 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:09 ===---------------------------------------------------------------===
2017-05-17 12:36:09 Skipped test MALW-3288 (Check for ClamXav)
2017-05-17 12:36:09 Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
2017-05-17 12:36:09 Checking permissions of /home/admin/assess/include/tests_file_permissions
2017-05-17 12:36:09 File permissions are OK
2017-05-17 12:36:09 ===---------------------------------------------------------------===
2017-05-17 12:36:09 Action: Performing tests from category: File Permissions
2017-05-17 12:36:09 ===---------------------------------------------------------------===
2017-05-17 12:36:09 Performing test ID FILE-7524 (Perform file permissions check)
2017-05-17 12:36:09 Test: Checking file permissions
2017-05-17 12:36:09 Using profile /home/admin/assess/default.prf for baseline.
2017-05-17 12:36:09 Checking /etc/lilo.conf
2017-05-17 12:36:09 Expected permissions:
2017-05-17 12:36:09 Actual permissions:
2017-05-17 12:36:09 Result: FILE_NOT_FOUND
2017-05-17 12:36:09 Checking /root/.ssh
2017-05-17 12:36:09 Expected permissions: rwx------
2017-05-17 12:36:09 Actual permissions: rwxr-xr-x
2017-05-17 12:36:09 Result: BAD
2017-05-17 12:36:09 Warning: Incorrect permissions for file /root/.ssh [test:FILE-7524] [details:-] [solution:-]
2017-05-17 12:36:09 Checking permissions of /home/admin/assess/include/tests_homedirs

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:09 File permissions are OK


2017-05-17 12:36:09 ===---------------------------------------------------------------===
2017-05-17 12:36:09 Action: Performing tests from category: Home directories
2017-05-17 12:36:09 ===---------------------------------------------------------------===
2017-05-17 12:36:09 Performing test ID HOME-9302 (Create list with home directories)
2017-05-17 12:36:09 Test: query /etc/passwd to obtain home directories
2017-05-17 12:36:09 Result: found home directory: / (directory exists)
2017-05-17 12:36:09 Result: found home directory: /bin (directory exists)
2017-05-17 12:36:09 Result: found home directory: /dev (directory exists)
2017-05-17 12:36:10 Result: found home directory: /etc/ntp (directory exists)
2017-05-17 12:36:10 Result: found home directory: /home/admin (directory exists)
2017-05-17 12:36:10 Result: found home directory: /home/f5_remoteuser (directory exists)
2017-05-17 12:36:10 Result: found home directory: /home/qsight (directory exists)
2017-05-17 12:36:10 Result: found home directory: /root (directory exists)
2017-05-17 12:36:10 Result: found home directory: /sbin (directory exists)
2017-05-17 12:36:10 Result: found home directory: /usr/local/www (directory exists)
2017-05-17 12:36:10 Result: found home directory: /usr/share/tomcat (directory exists)
2017-05-17 12:36:10 Result: found home directory: /var/adm (directory does not exist)
2017-05-17 12:36:10 Result: found home directory: /var/cache/rpcbind (directory exists)
2017-05-17 12:36:10 Result: found home directory: /var/empty/sshd (directory exists)
2017-05-17 12:36:10 Result: found home directory: /var/lib/hsqldb (directory exists)
2017-05-17 12:36:10 Result: found home directory: /var/lib/mysql (directory exists)
2017-05-17 12:36:10 Result: found home directory: /var/local/pgsql/data (directory exists)
2017-05-17 12:36:10 Result: found home directory: /var/named (directory exists)
2017-05-17 12:36:10 Result: found home directory: /var/sdm (directory exists)
2017-05-17 12:36:10 Result: found home directory: /var/spool/lpd (directory exists)
2017-05-17 12:36:10 Result: found home directory: /var/spool/mail (directory exists)
2017-05-17 12:36:10 Result: found home directory: /var/spool/uucp (directory does not exist)
2017-05-17 12:36:10 ===---------------------------------------------------------------===
2017-05-17 12:36:10 Performing test ID HOME-9310 (Checking for suspicious shell history files)
2017-05-17 12:36:10 Result: Ok, history files are type 'file'.
2017-05-17 12:36:10 Remarks: History files are normally of the type 'file'. Symbolic links and other types can be
riskful.
2017-05-17 12:36:10 ===---------------------------------------------------------------===
2017-05-17 12:36:10 Performing test ID HOME-9350 (Collecting information from home directories)
2017-05-17 12:36:10 Result: IGNORE_HOME_DIRS empty, no paths excluded
2017-05-17 12:36:10 Checking permissions of /home/admin/assess/include/tests_kernel_hardening
2017-05-17 12:36:10 File permissions are OK
2017-05-17 12:36:10 ===---------------------------------------------------------------===
2017-05-17 12:36:10 Action: Performing tests from category: Kernel Hardening
2017-05-17 12:36:10 ===---------------------------------------------------------------===
2017-05-17 12:36:10 Performing test ID KRNL-6000 (Check sysctl key pairs in scan profile)
2017-05-17 12:36:10 Result: sysctl key fs.protected_hardlinks has a different value than expected in scan profile.
Expected=1, Real=0

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:10 Hardening: assigned partial number of hardening points (0 of 1). Currently having 193 points (out of
280)
2017-05-17 12:36:10 Result: sysctl key fs.protected_symlinks has a different value than expected in scan profile.
Expected=1, Real=0
2017-05-17 12:36:10 Hardening: assigned partial number of hardening points (0 of 1). Currently having 193 points (out of
281)
2017-05-17 12:36:10 Result: sysctl key fs.suid_dumpable contains equal expected and current value (0)
2017-05-17 12:36:10 Hardening: assigned maximum number of hardening points for this item (1). Currently having 194
points (out of 282)
2017-05-17 12:36:10 Result: key hw.kbd.keymap_restrict_change does not exist on this machine
2017-05-17 12:36:10 Result: key kern.sugid_coredump does not exist on this machine
2017-05-17 12:36:11 Result: key kernel.core_setuid_ok does not exist on this machine
2017-05-17 12:36:11 Result: sysctl key kernel.core_uses_pid has a different value than expected in scan profile.
Expected=1, Real=0
2017-05-17 12:36:11 Hardening: assigned partial number of hardening points (0 of 1). Currently having 194 points (out of
283)
2017-05-17 12:36:11 Result: sysctl key kernel.ctrl-alt-del contains equal expected and current value (0)
2017-05-17 12:36:11 Hardening: assigned maximum number of hardening points for this item (1). Currently having 195
points (out of 284)
2017-05-17 12:36:11 Result: key kernel.exec-shield-randomize does not exist on this machine
2017-05-17 12:36:11 Result: key kernel.exec-shield does not exist on this machine
2017-05-17 12:36:11 Result: sysctl key kernel.kptr_restrict has a different value than expected in scan profile.
Expected=2, Real=0
2017-05-17 12:36:11 Hardening: assigned partial number of hardening points (0 of 1). Currently having 195 points (out of
285)
2017-05-17 12:36:11 Result: key kernel.maps_protect does not exist on this machine
2017-05-17 12:36:11 Result: sysctl key kernel.randomize_va_space contains equal expected and current value (2)
2017-05-17 12:36:11 Hardening: assigned maximum number of hardening points for this item (1). Currently having 196
points (out of 286)
2017-05-17 12:36:11 Result: key kernel.suid_dumpable does not exist on this machine
2017-05-17 12:36:11 Result: sysctl key kernel.sysrq contains equal expected and current value (0)
2017-05-17 12:36:11 Hardening: assigned maximum number of hardening points for this item (1). Currently having 197
points (out of 287)
2017-05-17 12:36:11 Result: key kernel.use-nx does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.icmp.bmcastecho does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.icmp.drop_redirect does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.icmp.rediraccept does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.icmp.timestamp does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.ip.accept_sourceroute does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.ip.check_interface does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.ip.forwarding does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.ip.linklocal.in.allowbadttl does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.ip.process_options does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.ip.random_id does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.ip.redirect does not exist on this machine

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:11 Result: key net.inet.ip.sourceroute does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.ip6.redirect does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.tcp.always_keepalive does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.tcp.blackhole does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.tcp.drop_synfin does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.tcp.icmp_may_rst does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.tcp.nolocaltimewait does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.tcp.path_mtu_discovery does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet.udp.blackhole does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet6.icmp6.rediraccept does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet6.ip6.forwarding does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet6.ip6.fw.enable does not exist on this machine
2017-05-17 12:36:11 Result: key net.inet6.ip6.redirect does not exist on this machine
2017-05-17 12:36:11 Result: sysctl key net.ipv4.conf.all.accept_redirects has a different value than expected in scan
profile. Expected=0, Real=1
2017-05-17 12:36:11 Hardening: assigned partial number of hardening points (0 of 1). Currently having 197 points (out of
288)
2017-05-17 12:36:11 Result: sysctl key net.ipv4.conf.all.accept_source_route contains equal expected and current value
(0)
2017-05-17 12:36:11 Hardening: assigned maximum number of hardening points for this item (1). Currently having 198
points (out of 289)
2017-05-17 12:36:11 Result: sysctl key net.ipv4.conf.all.bootp_relay contains equal expected and current value (0)
2017-05-17 12:36:11 Hardening: assigned maximum number of hardening points for this item (1). Currently having 199
points (out of 290)
2017-05-17 12:36:11 Result: sysctl key net.ipv4.conf.all.forwarding contains equal expected and current value (0)
2017-05-17 12:36:11 Hardening: assigned maximum number of hardening points for this item (1). Currently having 200
points (out of 291)
2017-05-17 12:36:11 Result: sysctl key net.ipv4.conf.all.log_martians has a different value than expected in scan
profile. Expected=1, Real=0
2017-05-17 12:36:11 Hardening: assigned partial number of hardening points (0 of 1). Currently having 200 points (out of
292)
2017-05-17 12:36:12 Result: sysctl key net.ipv4.conf.all.mc_forwarding contains equal expected and current value (0)
2017-05-17 12:36:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 201
points (out of 293)
2017-05-17 12:36:12 Result: sysctl key net.ipv4.conf.all.proxy_arp contains equal expected and current value (0)
2017-05-17 12:36:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 202
points (out of 294)
2017-05-17 12:36:12 Result: sysctl key net.ipv4.conf.all.rp_filter contains equal expected and current value (1)
2017-05-17 12:36:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 203
points (out of 295)
2017-05-17 12:36:12 Result: sysctl key net.ipv4.conf.all.send_redirects has a different value than expected in scan
profile. Expected=0, Real=1
2017-05-17 12:36:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 203 points (out of
296)

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:12 Result: sysctl key net.ipv4.conf.default.accept_redirects has a different value than expected in
scan profile. Expected=0, Real=1
2017-05-17 12:36:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 203 points (out of
297)
2017-05-17 12:36:12 Result: sysctl key net.ipv4.conf.default.accept_source_route contains equal expected and current
value (0)
2017-05-17 12:36:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 204
points (out of 298)
2017-05-17 12:36:12 Result: sysctl key net.ipv4.conf.default.log_martians has a different value than expected in scan
profile. Expected=1, Real=0
2017-05-17 12:36:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 204 points (out of
299)
2017-05-17 12:36:12 Result: sysctl key net.ipv4.icmp_echo_ignore_broadcasts contains equal expected and current value
(1)
2017-05-17 12:36:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 205
points (out of 300)
2017-05-17 12:36:12 Result: sysctl key net.ipv4.icmp_ignore_bogus_error_responses contains equal expected and current
value (1)
2017-05-17 12:36:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 206
points (out of 301)
2017-05-17 12:36:12 Result: sysctl key net.ipv4.tcp_syncookies contains equal expected and current value (1)
2017-05-17 12:36:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 207
points (out of 302)
2017-05-17 12:36:12 Result: sysctl key net.ipv4.tcp_timestamps has a different value than expected in scan profile.
Expected=0, Real=1
2017-05-17 12:36:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 207 points (out of
303)
2017-05-17 12:36:12 Result: sysctl key net.ipv6.conf.all.accept_redirects contains equal expected and current value (0)
2017-05-17 12:36:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 208
points (out of 304)
2017-05-17 12:36:12 Result: sysctl key net.ipv6.conf.all.accept_source_route contains equal expected and current value
(0)
2017-05-17 12:36:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 209
points (out of 305)
2017-05-17 12:36:12 Result: key net.ipv6.conf.all.send_redirects does not exist on this machine
2017-05-17 12:36:12 Result: sysctl key net.ipv6.conf.default.accept_redirects contains equal expected and current value
(0)
2017-05-17 12:36:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 210
points (out of 306)
2017-05-17 12:36:12 Result: sysctl key net.ipv6.conf.default.accept_source_route contains equal expected and current
value (0)
2017-05-17 12:36:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 211
points (out of 307)
2017-05-17 12:36:12 Result: key security.bsd.hardlink_check_gid does not exist on this machine
2017-05-17 12:36:12 Result: key security.bsd.hardlink_check_uid does not exist on this machine

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:12 Result: key security.bsd.see_other_gids does not exist on this machine
2017-05-17 12:36:12 Result: key security.bsd.see_other_uids does not exist on this machine
2017-05-17 12:36:12 Result: key security.bsd.stack_guard_page does not exist on this machine
2017-05-17 12:36:12 Result: key security.bsd.unprivileged_proc_debug does not exist on this machine
2017-05-17 12:36:12 Result: key security.bsd.unprivileged_read_msgbuf does not exist on this machine
2017-05-17 12:36:12 Result: found 10 keys that can use tuning, according scan profile
2017-05-17 12:36:12 Suggestion: One or more sysctl values differ from the scan profile and could be tweaked [test:KRNL-
6000] [details:-] [solution:-]
2017-05-17 12:36:12 Checking permissions of /home/admin/assess/include/tests_hardening
2017-05-17 12:36:12 File permissions are OK
2017-05-17 12:36:12 ===---------------------------------------------------------------===
2017-05-17 12:36:12 Action: Performing tests from category: Hardening
2017-05-17 12:36:12 ===---------------------------------------------------------------===
2017-05-17 12:36:12 Performing test ID HRDN-7220 (Check if one or more compilers are installed)
2017-05-17 12:36:12 Test: Check if one or more compilers can be found on the system
2017-05-17 12:36:12 Result: found installed compiler. See top of logfile which compilers have been found or use
/bin/grep to filter on 'compiler'
2017-05-17 12:36:12 Hardening: assigned partial number of hardening points (1 of 3). Currently having 212 points (out of
310)
2017-05-17 12:36:12 ===---------------------------------------------------------------===
2017-05-17 12:36:12 Performing test ID HRDN-7222 (Check compiler permissions)
2017-05-17 12:36:12 Test: Check if one or more compilers can be found on the system
2017-05-17 12:36:12 Test: Check file permissions for as (Assembler)
2017-05-17 12:36:12 Binary: found /usr/bin/as (world executable)
2017-05-17 12:36:12 Hardening: assigned partial number of hardening points (2 of 3). Currently having 214 points (out of
313)
2017-05-17 12:36:12 Result: at least one compiler could be better hardened by restricting executable access to root or
group only
2017-05-17 12:36:12 Suggestion: Harden compilers like restricting access to root user only [test:HRDN-7222] [details:-]
[solution:-]
2017-05-17 12:36:12 ===---------------------------------------------------------------===
2017-05-17 12:36:12 Performing test ID HRDN-7230 (Check for malware scanner)
2017-05-17 12:36:12 Test: Check if a malware scanner is installed
2017-05-17 12:36:12 Result: no malware scanner found
2017-05-17 12:36:12 Suggestion: Harden the system by installing at least one malware scanner, to perform periodic file Comment [25]: Easy fix, no reason not to do
system scans [test:HRDN-7230] [details:-] [solution:Install a tool like rkhunter, chkrootkit, OSSEC] it.
2017-05-17 12:36:12 Hardening: assigned partial number of hardening points (1 of 3). Currently having 215 points (out of
316)
2017-05-17 12:36:12 Result: no malware scanner found
2017-05-17 12:36:12 ===---------------------------------------------------------------===
2017-05-17 12:36:12 Action: Performing tests from category: Custom Tests
2017-05-17 12:36:12 Test: Checking for tests_custom file
2017-05-17 12:36:12 ===---------------------------------------------------------------===
2017-05-17 12:36:12 Action: Performing plugin tests
2017-05-17 12:36:12 Result: Found 0 plugins of which 0 are enabled

Analysis done by bttrngrm, bttrngrm@yandex.com


F5 BIG-IP v13.0.0 (Build 2.0.1671) QUICK SECURITY ASSESSMENT

2017-05-17 12:36:12 Result: Plugins phase 2 finished


2017-05-17 12:36:12 Checking permissions of /home/admin/assess/include/report
2017-05-17 12:36:12 File permissions are OK
2017-05-17 12:36:12 Hardening index : [68] [############# ] Comment [26]: The final (automated) verdict.
2017-05-17 12:36:12 Hardening strength: System has been hardened, but could use additional hardening In my opinion it should be lower score, based on my manual
2017-05-17 12:36:12 ===---------------------------------------------------------------===
reviewing. F5 has a lot to reconsider.
2017-05-17 12:36:15 ================================================================================
2017-05-17 12:36:15 Tests performed: 222

Analysis done by bttrngrm, bttrngrm@yandex.com

You might also like