From owner-freebsd-security@FreeBSD.ORG Thu Dec 9 02:46:07 2004 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id D0F0416A4CE for ; Thu, 9 Dec 2004 02:46:07 +0000 (GMT) Received: from srv1a-cta.bs2.com.br (srv1a-cta.bs2.com.br [200.203.183.35]) by mx1.FreeBSD.org (Postfix) with ESMTP id 3AD2443D55 for ; Thu, 9 Dec 2004 02:46:07 +0000 (GMT) (envelope-from gpt@tirloni.org) Received: from localhost (srv1a-cta.bs2.com.br [200.203.183.35]) by srv1a-cta.bs2.com.br (Postfix) with ESMTP id B62DF1C5F77; Thu, 9 Dec 2004 00:46:04 -0200 (BRDT) Received: from [201.10.97.123] (201-010-097-123.mganm7016.dsl.brasiltelecom.net.br [201.10.97.123]) by srv1a-cta.bs2.com.br (Postfix) with ESMTP id 2D23A1C5F7F; Thu, 9 Dec 2004 00:46:04 -0200 (BRDT) Message-ID: <41B7BC69.2010904@tirloni.org> Date: Thu, 09 Dec 2004 00:46:01 -0200 From: "Giovanni P. Tirloni" User-Agent: Mozilla Thunderbird 0.9 (Windows/20041103) X-Accept-Language: en-us, en MIME-Version: 1.0 To: stheg olloydson References: <20041209015618.69267.qmail@web53908.mail.yahoo.com> In-Reply-To: <20041209015618.69267.qmail@web53908.mail.yahoo.com> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit cc: freebsd-security@freebsd.org Subject: Re: Center for Internet Security "scoring tool" X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Security issues [members-only posting] List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 09 Dec 2004 02:46:07 -0000 stheg olloydson wrote: > Hello, > > Has anyone tried out the security scoring tool at > http://www.cisecurity.org/bench_freebsd.html? > Any thoughts or opinions? I tried it some weeks ago on 5.3-RC1. It's a good tool to use as a checklist but don't use the score to rank your systems. It said a default install scored 5.88 and after fixing some things I increase it to 8.0 but it didn't tweaked the system too much because I hadn't much time. I'm going to play with it again next week. -- Giovanni P. Tirloni