Project

General

Profile

Actions

Support #379

open

Support #311: OAM - Security Hardening Auditing and Compliance

OAM: Compliance test lab (sectestbed-* vms)

Support #379: OAM: Compliance test lab (sectestbed-* vms)

Added by Charles N 1 day ago. Updated 1 day ago.

Status:
Feedback
Priority:
Normal
Assignee:
Target version:
-
Start date:
08/06/2026
Due date:
% Done:

0%

Estimated time:

Description

Parent/umbrella: #311 (OAM - Security Hardening Auditing and Compliance).

Stand up the sectestbed-* VMs that mirror production Debian 13 (trixie) systems. This is the gate every hardening role passes through before being deployed to production.

Scope

  • Define sectestbed-* VM spec (mirror prod Debian 13 trixie base)
  • Provision sectestbed-* VMs
  • Enroll sectestbed-* in Wazuh for SCA visibility
  • Document the test -> prod promotion process

Context

  • Every hardening/audit role is validated here before prod.
  • Wazuh VM is stood up.
  • Roles are executed via tsys-awx (AWX).

Dependencies

No dependencies. Blocks all hardening/audit children (3, 4, 5, 6, 7, 8, 9, 10, 11).


Related issues 4 (4 open0 closed)

Blocks Known Element Enterprises - Technology & Facility Services - Support #381: OAM: CIS Benchmark hardening (Debian 13 trixie)FeedbackCharles N08/06/2026

Actions
Blocks Known Element Enterprises - Technology & Facility Services - Support #384: OAM: 2FA (SSH/Cockpit/Webmin)FeedbackCharles N08/06/2026

Actions
Blocks Known Element Enterprises - Technology & Facility Services - Support #386: OAM: Atuin for root (centralized shell history)FeedbackCharles N08/06/2026

Actions
Blocks Known Element Enterprises - Technology & Facility Services - Support #387: OAM: OIDC auth via Cloudron (IDP)FeedbackCharles N08/06/2026

Actions
Actions

Also available in: PDF Atom