diff --git a/raw_scans/11_gcp_debian_9/lynis-console-1.log b/raw_scans/11_gcp_debian_9/lynis-console-1.log new file mode 100644 index 0000000..a90e717 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/lynis-console-1.log @@ -0,0 +1,670 @@ + +[ Lynis 3.0.3 ] + +################################################################################ + Lynis comes with ABSOLUTELY NO WARRANTY. This is free software, and you are + welcome to redistribute it under the terms of the GNU General Public License. + See the LICENSE file for details about using this software. + + 2007-2021, CISOfy - https://cisofy.com/lynis/ + Enterprise support available (compliance, plugins, interface and tools) +################################################################################ + + +[+] Initializing program +------------------------------------ +- Detecting OS...  [ DONE ] +- Checking profiles... [ DONE ] + + --------------------------------------------------- + Program version: 3.0.3 + Operating system: Linux + Operating system name: Debian + Operating system version: 9 + Kernel version: 4.9.0 + Hardware platform: x86_64 + Hostname: debian-9 + --------------------------------------------------- + Profiles: /home/ktdw73/scans/lynis/default.prf + Log file: /var/log/lynis.log + Report file: /var/log/lynis-report.dat + Report version: 1.0 + Plugin directory: ./plugins + --------------------------------------------------- + Auditor: [Not Specified] + Language: en + Test category: all + Test group: all + --------------------------------------------------- +- Program update status...  [ NO UPDATE ] + +[+] System tools +------------------------------------ +- Scanning available tools... +- Checking system binaries... + +[+] Plugins (phase 1) +------------------------------------ +Note: plugins have more extensive tests and may take several minutes to complete +  +- Plugin: pam + [..] +- Plugin: systemd + [................] + +[+] Boot and services +------------------------------------ +- Service Manager [ systemd ] +- Checking UEFI boot [ DISABLED ] +- Checking presence GRUB2 [ FOUND ] +- Checking for password protection [ NONE ] +- Check running services (systemctl) [ DONE ] +Result: found 16 running services +- Check enabled services at boot (systemctl) [ DONE ] +Result: found 17 enabled services +- Check startup files (permissions) [ OK ] + +[+] Kernel +------------------------------------ +- Checking default run level [ RUNLEVEL 5 ] +- Checking CPU support (NX/PAE) +CPU support: PAE and/or NoeXecute supported [ FOUND ] +- Checking kernel version and release [ DONE ] +- Checking kernel type [ DONE ] +- Checking loaded kernel modules [ DONE ] +Found 41 active modules +- Checking Linux kernel configuration file [ FOUND ] +- Checking default I/O kernel scheduler [ FOUND ] +- Checking for available kernel update [ UPDATE AVAILABLE ] +- Checking core dumps configuration +- configuration in systemd conf files [ DEFAULT ] +- configuration in etc/profile [ DEFAULT ] +- 'hard' configuration in security/limits.conf [ DEFAULT ] +- 'soft' configuration in security/limits.conf [ DEFAULT ] +- Checking setuid core dumps configuration [ DISABLED ] +- Check if reboot is needed [ NO ] + +[+] Memory and Processes +------------------------------------ +- Checking /proc/meminfo [ FOUND ] +- Searching for dead/zombie processes [ NOT FOUND ] +- Searching for IO waiting processes [ NOT FOUND ] +- Search prelink tooling [ NOT FOUND ] + +[+] Users, Groups and Authentication +------------------------------------ +- Administrator accounts [ OK ] +- Unique UIDs [ OK ] +- Consistency of group files (grpck) [ OK ] +- Unique group IDs [ OK ] +- Unique group names [ OK ] +- Password file consistency [ OK ] +- Password hashing methods [ OK ] +- Checking password hashing rounds [ DISABLED ] +- Query system users (non daemons) [ DONE ] +- NIS+ authentication support [ NOT ENABLED ] +- NIS authentication support [ NOT ENABLED ] +- Sudoers file(s) [ FOUND ] +- Permissions for directory: /etc/sudoers.d [ WARNING ] +- Permissions for: /etc/sudoers [ OK ] +- Permissions for: /etc/sudoers.d/google_sudoers [ OK ] +- Permissions for: /etc/sudoers.d/README [ OK ] +- PAM password strength tools [ SUGGESTION ] +- PAM configuration files (pam.conf) [ FOUND ] +- PAM configuration files (pam.d) [ FOUND ] +- PAM modules [ FOUND ] +- LDAP module in PAM [ NOT FOUND ] +- Accounts without expire date [ OK ] +- Accounts without password [ OK ] +- Locked accounts [ FOUND ] +- Checking user password aging (minimum) [ DISABLED ] +- User password aging (maximum) [ DISABLED ] +- Checking expired passwords [ OK ] +- Checking Linux single user mode authentication [ OK ] +- Determining default umask +- umask (/etc/profile) [ NOT FOUND ] +- umask (/etc/login.defs) [ SUGGESTION ] +- LDAP authentication support [ NOT ENABLED ] +- Logging failed login attempts [ ENABLED ] + +[+] Shells +------------------------------------ +- Checking shells from /etc/shells +Result: found 5 shells (valid shells: 5). +- Session timeout settings/tools [ NONE ] +- Checking default umask values +- Checking default umask in /etc/bash.bashrc [ NONE ] +- Checking default umask in /etc/profile [ NONE ] + +[+] File systems +------------------------------------ +- Checking mount points +- Checking /home mount point [ SUGGESTION ] +- Checking /tmp mount point [ SUGGESTION ] +- Checking /var mount point [ SUGGESTION ] +- Query swap partitions (fstab) [ NONE ] +- Testing swap partitions [ OK ] +- Testing /proc mount (hidepid) [ SUGGESTION ] +- Checking for old files in /tmp [ OK ] +- Checking /tmp sticky bit [ OK ] +- Checking /var/tmp sticky bit [ OK ] +- ACL support root file system [ ENABLED ] +- Mount options of / [ OK ] +- Mount options of /dev [ PARTIALLY HARDENED ] +- Mount options of /dev/shm [ PARTIALLY HARDENED ] +- Mount options of /run [ PARTIALLY HARDENED ] +- Total without nodev:8 noexec:7 nosuid:5 ro or noexec (W^X): 7 of total 25 +- Disable kernel support of some filesystems +- Discovered kernel modules: freevxfs hfs hfsplus jffs2 squashfs udf  + +[+] USB Devices +------------------------------------ +- Checking usb-storage driver (modprobe config) [ NOT DISABLED ] +- Checking USBGuard [ NOT FOUND ] + +[+] Storage +------------------------------------ +- Checking firewire ohci driver (modprobe config) [ NOT DISABLED ] + +[+] NFS +------------------------------------ +- Check running NFS daemon [ NOT FOUND ] + +[+] Name services +------------------------------------ +- Checking default DNS search domain [ FOUND ] +- Checking search domains [ FOUND ] +- Searching DNS domain name [ FOUND ] +Domain name: europe-west3-c.c.cc2020-tobiaswieck.internal +- Checking /etc/hosts +- Duplicate entries in hosts file [ NONE ] +- Presence of configured hostname in /etc/hosts [ FOUND ] +- Hostname mapped to localhost [ NOT FOUND ] +- Localhost mapping to IP address [ OK ] + +[+] Ports and packages +------------------------------------ +- Searching package managers +- Searching dpkg package manager [ FOUND ] +- Querying package manager +- Query unpurged packages [ NONE ] +- Checking security repository in sources.list file [ OK ] +- Checking APT package database [ OK ] +- Checking vulnerable packages [ WARNING ] +- Checking upgradeable packages [ SKIPPED ] +- Checking package audit tool [ INSTALLED ] +Found: apt-get +- Toolkit for automatic upgrades (unattended-upgrade) [ FOUND ] + +[+] Networking +------------------------------------ +- Checking IPv6 configuration [ ENABLED ] +Configuration method [ AUTO ] +IPv6 only [ NO ] +- Checking configured nameservers +- Testing nameservers +Nameserver: 169.254.169.254 [ SKIPPED ] +- Minimal of 2 responsive nameservers [ SKIPPED ] +- DNSSEC supported (systemd-resolved) [ UNKNOWN ] +- Checking default gateway [ DONE ] +- Getting listening ports (TCP/UDP) [ DONE ] +- Checking promiscuous interfaces [ OK ] +- Checking waiting connections [ OK ] +- Checking status DHCP client [ RUNNING ] +- Checking for ARP monitoring software [ NOT FOUND ] +- Uncommon network protocols [ 0 ] + +[+] Printers and Spools +------------------------------------ +- Checking cups daemon [ NOT FOUND ] +- Checking lp daemon [ NOT RUNNING ] + +[+] Software: e-mail and messaging +------------------------------------ + +[+] Software: firewalls +------------------------------------ +- Checking iptables kernel module [ FOUND ] +- Checking iptables policies of chains [ FOUND ] +- Checking for empty ruleset [ WARNING ] +- Checking for unused rules [ OK ] +- Checking host based firewall [ ACTIVE ] + +[+] Software: webserver +------------------------------------ +- Checking Apache [ NOT FOUND ] +- Checking nginx [ NOT FOUND ] + +[+] SSH Support +------------------------------------ +- Checking running SSH daemon [ FOUND ] +- Searching SSH configuration [ FOUND ] +- OpenSSH option: AllowTcpForwarding [ SUGGESTION ] +- OpenSSH option: ClientAliveCountMax [ SUGGESTION ] +- OpenSSH option: ClientAliveInterval [ OK ] +- OpenSSH option: Compression [ SUGGESTION ] +- OpenSSH option: FingerprintHash [ OK ] +- OpenSSH option: GatewayPorts [ OK ] +- OpenSSH option: IgnoreRhosts [ OK ] +- OpenSSH option: LoginGraceTime [ OK ] +- OpenSSH option: LogLevel [ SUGGESTION ] +- OpenSSH option: MaxAuthTries [ SUGGESTION ] +- OpenSSH option: MaxSessions [ SUGGESTION ] +- OpenSSH option: PermitRootLogin [ OK ] +- OpenSSH option: PermitUserEnvironment [ OK ] +- OpenSSH option: PermitTunnel [ OK ] +- OpenSSH option: Port [ SUGGESTION ] +- OpenSSH option: PrintLastLog [ OK ] +- OpenSSH option: StrictModes [ OK ] +- OpenSSH option: TCPKeepAlive [ SUGGESTION ] +- OpenSSH option: UseDNS [ OK ] +- OpenSSH option: X11Forwarding [ SUGGESTION ] +- OpenSSH option: AllowAgentForwarding [ SUGGESTION ] +- OpenSSH option: UsePrivilegeSeparation [ OK ] +- OpenSSH option: AllowUsers [ NOT FOUND ] +- OpenSSH option: AllowGroups [ NOT FOUND ] + +[+] SNMP Support +------------------------------------ +- Checking running SNMP daemon [ NOT FOUND ] + +[+] Databases +------------------------------------ +No database engines found + +[+] LDAP Services +------------------------------------ +- Checking OpenLDAP instance [ NOT FOUND ] + +[+] PHP +------------------------------------ +- Checking PHP [ NOT FOUND ] + +[+] Squid Support +------------------------------------ +- Checking running Squid daemon [ NOT FOUND ] + +[+] Logging and files +------------------------------------ +- Checking for a running log daemon [ OK ] +- Checking Syslog-NG status [ NOT FOUND ] +- Checking systemd journal status [ FOUND ] +- Checking Metalog status [ NOT FOUND ] +- Checking RSyslog status [ FOUND ] +- Checking RFC 3195 daemon status [ NOT FOUND ] +- Checking minilogd instances [ NOT FOUND ] +- Checking logrotate presence [ OK ] +- Checking remote logging [ NOT ENABLED ] +- Checking log directories (static list) [ DONE ] +- Checking open log files [ SKIPPED ] + +[+] Insecure services +------------------------------------ +- Installed inetd package [ NOT FOUND ] +- Installed xinetd package [ OK ] +- xinetd status +- Installed rsh client package [ OK ] +- Installed rsh server package [ OK ] +- Installed telnet client package [ OK ] +- Installed telnet server package [ NOT FOUND ] +- Checking NIS client installation [ OK ] +- Checking NIS server installation [ OK ] +- Checking TFTP client installation [ OK ] +- Checking TFTP server installation [ OK ] + +[+] Banners and identification +------------------------------------ +- /etc/issue [ FOUND ] +- /etc/issue contents [ WEAK ] +- /etc/issue.net [ FOUND ] +- /etc/issue.net contents [ WEAK ] + +[+] Scheduled tasks +------------------------------------ +- Checking crontab and cronjob files [ DONE ] + +[+] Accounting +------------------------------------ +- Checking accounting information [ NOT FOUND ] +- Checking sysstat accounting data [ NOT FOUND ] +- Checking auditd [ NOT FOUND ] + +[+] Time and Synchronization +------------------------------------ +- NTP daemon found: ntpd [ FOUND ] +- Checking for a running NTP daemon or client [ OK ] +- Checking valid association ID's [ FOUND ] +- Checking high stratum ntp peers [ OK ] +- Checking unreliable ntp peers [ NONE ] +- Checking selected time source [ OK ] +- Checking time source candidates [ NONE ] +- Checking falsetickers [ OK ] +- Checking NTP version [ FOUND ] + +[+] Cryptography +------------------------------------ +- Checking for expired SSL certificates [0/127] [ NONE ] +- Kernel entropy is sufficient [ YES ] +- HW RNG & rngd [ NO ] +- SW prng [ NO ] + +[+] Virtualization +------------------------------------ + +[+] Containers +------------------------------------ + +[+] Security frameworks +------------------------------------ +- Checking presence AppArmor [ NOT FOUND ] +- Checking presence SELinux [ NOT FOUND ] +- Checking presence TOMOYO Linux [ NOT FOUND ] +- Checking presence grsecurity [ NOT FOUND ] +- Checking for implemented MAC framework [ NONE ] + +[+] Software: file integrity +------------------------------------ +- Checking file integrity tools +- Checking presence integrity tool [ NOT FOUND ] + +[+] Software: System tooling +------------------------------------ +- Checking automation tooling +- Automation tooling [ NOT FOUND ] +- Checking for IDS/IPS tooling [ NONE ] + +[+] Software: Malware +------------------------------------ + +[+] File Permissions +------------------------------------ +- Starting file permissions check +File: /boot/grub/grub.cfg [ OK ] +File: /etc/crontab [ SUGGESTION ] +File: /etc/group [ OK ] +File: /etc/group- [ OK ] +File: /etc/hosts.allow [ OK ] +File: /etc/hosts.deny [ OK ] +File: /etc/issue [ OK ] +File: /etc/issue.net [ OK ] +File: /etc/motd [ OK ] +File: /etc/passwd [ OK ] +File: /etc/passwd- [ OK ] +File: /etc/ssh/sshd_config [ SUGGESTION ] +Directory: /etc/cron.d [ SUGGESTION ] +Directory: /etc/cron.daily [ SUGGESTION ] +Directory: /etc/cron.hourly [ SUGGESTION ] +Directory: /etc/cron.weekly [ SUGGESTION ] +Directory: /etc/cron.monthly [ SUGGESTION ] + +[+] Home directories +------------------------------------ +- Permissions of home directories [ WARNING ] +- Ownership of home directories [ OK ] +- Checking shell history files [ OK ] + +[+] Kernel Hardening +------------------------------------ +- Comparing sysctl key pairs with scan profile +- dev.tty.ldisc_autoload (exp: 0) [ DIFFERENT ] +- fs.protected_fifos (exp: 2) [ DIFFERENT ] +- fs.protected_hardlinks (exp: 1) [ OK ] +- fs.protected_regular (exp: 2) [ DIFFERENT ] +- fs.protected_symlinks (exp: 1) [ OK ] +- fs.suid_dumpable (exp: 0) [ OK ] +- kernel.core_uses_pid (exp: 1) [ DIFFERENT ] +- kernel.ctrl-alt-del (exp: 0) [ OK ] +- kernel.dmesg_restrict (exp: 1) [ OK ] +- kernel.kptr_restrict (exp: 2) [ DIFFERENT ] +- kernel.modules_disabled (exp: 1) [ DIFFERENT ] +- kernel.perf_event_paranoid (exp: 3) [ OK ] +- kernel.randomize_va_space (exp: 2) [ OK ] +- kernel.sysrq (exp: 0) [ DIFFERENT ] +- kernel.unprivileged_bpf_disabled (exp: 1) [ DIFFERENT ] +- kernel.yama.ptrace_scope (exp: 1 2 3) [ DIFFERENT ] +- net.core.bpf_jit_harden (exp: 2) [ DIFFERENT ] +- net.ipv4.conf.all.accept_redirects (exp: 0) [ OK ] +- net.ipv4.conf.all.accept_source_route (exp: 0) [ OK ] +- net.ipv4.conf.all.bootp_relay (exp: 0) [ OK ] +- net.ipv4.conf.all.forwarding (exp: 0) [ OK ] +- net.ipv4.conf.all.log_martians (exp: 1) [ OK ] +- net.ipv4.conf.all.mc_forwarding (exp: 0) [ OK ] +- net.ipv4.conf.all.proxy_arp (exp: 0) [ OK ] +- net.ipv4.conf.all.rp_filter (exp: 1) [ OK ] +- net.ipv4.conf.all.send_redirects (exp: 0) [ OK ] +- net.ipv4.conf.default.accept_redirects (exp: 0) [ OK ] +- net.ipv4.conf.default.accept_source_route (exp: 0) [ OK ] +- net.ipv4.conf.default.log_martians (exp: 1) [ OK ] +- net.ipv4.icmp_echo_ignore_broadcasts (exp: 1) [ OK ] +- net.ipv4.icmp_ignore_bogus_error_responses (exp: 1) [ OK ] +- net.ipv4.tcp_syncookies (exp: 1) [ OK ] +- net.ipv4.tcp_timestamps (exp: 0 1) [ OK ] +- net.ipv6.conf.all.accept_redirects (exp: 0) [ DIFFERENT ] +- net.ipv6.conf.all.accept_source_route (exp: 0) [ OK ] +- net.ipv6.conf.default.accept_redirects (exp: 0) [ DIFFERENT ] +- net.ipv6.conf.default.accept_source_route (exp: 0) [ OK ] + +[+] Hardening +------------------------------------ +- Installed compiler(s) [ NOT FOUND ] +- Installed malware scanner [ NOT FOUND ] +- Non-native binary formats [ NOT FOUND ] + +[+] Custom tests +------------------------------------ +- Running custom tests...  [ NONE ] + +[+] Plugins (phase 2) +------------------------------------ +- Plugins (phase 2) [ DONE ] + +================================================================================ + + -[ Lynis 3.0.3 Results ]- + + Warnings (2): + ---------------------------- + ! Found one or more vulnerable packages. [PKGS-7392] + https://cisofy.com/lynis/controls/PKGS-7392/ + + ! iptables module(s) loaded, but no rules active [FIRE-4512] + https://cisofy.com/lynis/controls/FIRE-4512/ + + Suggestions (45): + ---------------------------- + * Set a password on GRUB boot loader to prevent altering boot configuration (e.g. boot in single user mode without password) [BOOT-5122] + https://cisofy.com/lynis/controls/BOOT-5122/ + + * Determine priority for available kernel update [KRNL-5788] + https://cisofy.com/lynis/controls/KRNL-5788/ + + * If not required, consider explicit disabling of core dump in /etc/security/limits.conf file [KRNL-5820] + https://cisofy.com/lynis/controls/KRNL-5820/ + + * Configure password hashing rounds in /etc/login.defs [AUTH-9230] + https://cisofy.com/lynis/controls/AUTH-9230/ + + * Install a PAM module for password strength testing like pam_cracklib or pam_passwdqc [AUTH-9262] + https://cisofy.com/lynis/controls/AUTH-9262/ + + * Look at the locked accounts and consider removing them [AUTH-9284] + https://cisofy.com/lynis/controls/AUTH-9284/ + + * Configure minimum password age in /etc/login.defs [AUTH-9286] + https://cisofy.com/lynis/controls/AUTH-9286/ + + * Configure maximum password age in /etc/login.defs [AUTH-9286] + https://cisofy.com/lynis/controls/AUTH-9286/ + + * Default umask in /etc/login.defs could be more strict like 027 [AUTH-9328] + https://cisofy.com/lynis/controls/AUTH-9328/ + + * To decrease the impact of a full /home file system, place /home on a separate partition [FILE-6310] + https://cisofy.com/lynis/controls/FILE-6310/ + + * To decrease the impact of a full /tmp file system, place /tmp on a separate partition [FILE-6310] + https://cisofy.com/lynis/controls/FILE-6310/ + + * To decrease the impact of a full /var file system, place /var on a separate partition [FILE-6310] + https://cisofy.com/lynis/controls/FILE-6310/ + + * Consider disabling unused kernel modules [FILE-6430] + - Details : /etc/modprobe.d/blacklist.conf + - Solution : Add 'install MODULENAME /bin/true' (without quotes) + https://cisofy.com/lynis/controls/FILE-6430/ + + * Disable drivers like USB storage when not used, to prevent unauthorized storage or data theft [USB-1000] + https://cisofy.com/lynis/controls/USB-1000/ + + * Disable drivers like firewire storage when not used, to prevent unauthorized storage or data theft [STRG-1846] + https://cisofy.com/lynis/controls/STRG-1846/ + + * Install debsums utility for the verification of packages with known good database. [PKGS-7370] + https://cisofy.com/lynis/controls/PKGS-7370/ + + * Update your system with apt-get update, apt-get upgrade, apt-get dist-upgrade and/or unattended-upgrades [PKGS-7392] + https://cisofy.com/lynis/controls/PKGS-7392/ + + * Install package apt-show-versions for patch management purposes [PKGS-7394] + https://cisofy.com/lynis/controls/PKGS-7394/ + + * Determine if protocol 'dccp' is really needed on this system [NETW-3200] + https://cisofy.com/lynis/controls/NETW-3200/ + + * Determine if protocol 'sctp' is really needed on this system [NETW-3200] + https://cisofy.com/lynis/controls/NETW-3200/ + + * Determine if protocol 'rds' is really needed on this system [NETW-3200] + https://cisofy.com/lynis/controls/NETW-3200/ + + * Determine if protocol 'tipc' is really needed on this system [NETW-3200] + https://cisofy.com/lynis/controls/NETW-3200/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : AllowTcpForwarding (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : ClientAliveCountMax (set 3 to 2) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : Compression (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : LogLevel (set INFO to VERBOSE) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : MaxAuthTries (set 6 to 3) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : MaxSessions (set 10 to 2) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : Port (set 22 to ) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : TCPKeepAlive (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : X11Forwarding (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : AllowAgentForwarding (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Enable logging to an external logging host for archiving purposes and additional protection [LOGG-2154] + https://cisofy.com/lynis/controls/LOGG-2154/ + + * Add a legal banner to /etc/issue, to warn unauthorized users [BANN-7126] + https://cisofy.com/lynis/controls/BANN-7126/ + + * Add legal banner to /etc/issue.net, to warn unauthorized users [BANN-7130] + https://cisofy.com/lynis/controls/BANN-7130/ + + * Enable process accounting [ACCT-9622] + https://cisofy.com/lynis/controls/ACCT-9622/ + + * Enable sysstat to collect accounting (no results) [ACCT-9626] + https://cisofy.com/lynis/controls/ACCT-9626/ + + * Enable auditd to collect audit information [ACCT-9628] + https://cisofy.com/lynis/controls/ACCT-9628/ + + * Check ntpq peers output for time source candidates [TIME-3128] + https://cisofy.com/lynis/controls/TIME-3128/ + + * Install a file integrity tool to monitor changes to critical and sensitive files [FINT-4350] + https://cisofy.com/lynis/controls/FINT-4350/ + + * Determine if automation tools are present for system management [TOOL-5002] + https://cisofy.com/lynis/controls/TOOL-5002/ + + * Consider restricting file permissions [FILE-7524] + - Details : See screen output or log file + - Solution : Use chmod to change file permissions + https://cisofy.com/lynis/controls/FILE-7524/ + + * Double check the permissions of home directories as some might be not strict enough. [HOME-9304] + https://cisofy.com/lynis/controls/HOME-9304/ + + * One or more sysctl values differ from the scan profile and could be tweaked [KRNL-6000] + - Solution : Change sysctl value or disable test (skip-test=KRNL-6000:) + https://cisofy.com/lynis/controls/KRNL-6000/ + + * Harden the system by installing at least one malware scanner, to perform periodic file system scans [HRDN-7230] + - Solution : Install a tool like rkhunter, chkrootkit, OSSEC + https://cisofy.com/lynis/controls/HRDN-7230/ + + Follow-up: + ---------------------------- + - Show details of a test (lynis show details TEST-ID) + - Check the logfile for all details (less /var/log/lynis.log) + - Read security controls texts (https://cisofy.com) + - Use --upload to upload data to central system (Lynis Enterprise users) + +================================================================================ + + Lynis security scan details: + + Hardening index : 65 [############# ] + Tests performed : 259 + Plugins enabled : 2 + + Components: + - Firewall [V] + - Malware scanner [X] + + Scan mode: + Normal [V] Forensics [ ] Integration [ ] Pentest [ ] + + Lynis modules: + - Compliance status [?] + - Security audit [V] + - Vulnerability scan [V] + + Files: + - Test and debug information : /var/log/lynis.log + - Report data : /var/log/lynis-report.dat + +================================================================================ + + Lynis 3.0.3 + + Auditing, system hardening, and compliance for UNIX-based systems + (Linux, macOS, BSD, and others) + + 2007-2021, CISOfy - https://cisofy.com/lynis/ + Enterprise support available (compliance, plugins, interface and tools) + +================================================================================ + + [TIP]: Enhance Lynis audits by adding your settings to custom.prf (see /home/ktdw73/scans/lynis/default.prf for all settings) + diff --git a/raw_scans/11_gcp_debian_9/lynis-console-2.log b/raw_scans/11_gcp_debian_9/lynis-console-2.log new file mode 100644 index 0000000..c9068ea --- /dev/null +++ b/raw_scans/11_gcp_debian_9/lynis-console-2.log @@ -0,0 +1,661 @@ + +[ Lynis 3.0.3 ] + +################################################################################ + Lynis comes with ABSOLUTELY NO WARRANTY. This is free software, and you are + welcome to redistribute it under the terms of the GNU General Public License. + See the LICENSE file for details about using this software. + + 2007-2021, CISOfy - https://cisofy.com/lynis/ + Enterprise support available (compliance, plugins, interface and tools) +################################################################################ + + +[+] Initializing program +------------------------------------ +- Detecting OS...  [ DONE ] +- Checking profiles... [ DONE ] + + --------------------------------------------------- + Program version: 3.0.3 + Operating system: Linux + Operating system name: Debian + Operating system version: 9 + Kernel version: 4.9.0 + Hardware platform: x86_64 + Hostname: debian-9 + --------------------------------------------------- + Profiles: /home/ktdw73/scans/lynis/default.prf + Log file: /var/log/lynis.log + Report file: /var/log/lynis-report.dat + Report version: 1.0 + Plugin directory: ./plugins + --------------------------------------------------- + Auditor: [Not Specified] + Language: en + Test category: all + Test group: all + --------------------------------------------------- +- Program update status...  [ NO UPDATE ] + +[+] System tools +------------------------------------ +- Scanning available tools... +- Checking system binaries... + +[+] Plugins (phase 1) +------------------------------------ +Note: plugins have more extensive tests and may take several minutes to complete +  +- Plugin: pam + [..] +- Plugin: systemd + [................] + +[+] Boot and services +------------------------------------ +- Service Manager [ systemd ] +- Checking UEFI boot [ DISABLED ] +- Checking presence GRUB2 [ FOUND ] +- Checking for password protection [ NONE ] +- Check running services (systemctl) [ DONE ] +Result: found 16 running services +- Check enabled services at boot (systemctl) [ DONE ] +Result: found 17 enabled services +- Check startup files (permissions) [ OK ] + +[+] Kernel +------------------------------------ +- Checking default run level [ RUNLEVEL 5 ] +- Checking CPU support (NX/PAE) +CPU support: PAE and/or NoeXecute supported [ FOUND ] +- Checking kernel version and release [ DONE ] +- Checking kernel type [ DONE ] +- Checking loaded kernel modules [ DONE ] +Found 53 active modules +- Checking Linux kernel configuration file [ FOUND ] +- Checking default I/O kernel scheduler [ FOUND ] +- Checking for available kernel update [ OK ] +- Checking core dumps configuration +- configuration in systemd conf files [ DEFAULT ] +- configuration in etc/profile [ DEFAULT ] +- 'hard' configuration in security/limits.conf [ DEFAULT ] +- 'soft' configuration in security/limits.conf [ DEFAULT ] +- Checking setuid core dumps configuration [ DISABLED ] +- Check if reboot is needed [ NO ] + +[+] Memory and Processes +------------------------------------ +- Checking /proc/meminfo [ FOUND ] +- Searching for dead/zombie processes [ NOT FOUND ] +- Searching for IO waiting processes [ NOT FOUND ] +- Search prelink tooling [ NOT FOUND ] + +[+] Users, Groups and Authentication +------------------------------------ +- Administrator accounts [ OK ] +- Unique UIDs [ OK ] +- Consistency of group files (grpck) [ OK ] +- Unique group IDs [ OK ] +- Unique group names [ OK ] +- Password file consistency [ OK ] +- Password hashing methods [ OK ] +- Checking password hashing rounds [ DISABLED ] +- Query system users (non daemons) [ DONE ] +- NIS+ authentication support [ NOT ENABLED ] +- NIS authentication support [ NOT ENABLED ] +- Sudoers file(s) [ FOUND ] +- Permissions for directory: /etc/sudoers.d [ WARNING ] +- Permissions for: /etc/sudoers [ OK ] +- Permissions for: /etc/sudoers.d/google_sudoers [ OK ] +- Permissions for: /etc/sudoers.d/README [ OK ] +- PAM password strength tools [ SUGGESTION ] +- PAM configuration files (pam.conf) [ FOUND ] +- PAM configuration files (pam.d) [ FOUND ] +- PAM modules [ FOUND ] +- LDAP module in PAM [ NOT FOUND ] +- Accounts without expire date [ OK ] +- Accounts without password [ OK ] +- Locked accounts [ FOUND ] +- Checking user password aging (minimum) [ DISABLED ] +- User password aging (maximum) [ DISABLED ] +- Checking expired passwords [ OK ] +- Checking Linux single user mode authentication [ OK ] +- Determining default umask +- umask (/etc/profile) [ NOT FOUND ] +- umask (/etc/login.defs) [ SUGGESTION ] +- LDAP authentication support [ NOT ENABLED ] +- Logging failed login attempts [ ENABLED ] + +[+] Shells +------------------------------------ +- Checking shells from /etc/shells +Result: found 5 shells (valid shells: 5). +- Session timeout settings/tools [ NONE ] +- Checking default umask values +- Checking default umask in /etc/bash.bashrc [ NONE ] +- Checking default umask in /etc/profile [ NONE ] + +[+] File systems +------------------------------------ +- Checking mount points +- Checking /home mount point [ SUGGESTION ] +- Checking /tmp mount point [ SUGGESTION ] +- Checking /var mount point [ SUGGESTION ] +- Query swap partitions (fstab) [ NONE ] +- Testing swap partitions [ OK ] +- Testing /proc mount (hidepid) [ SUGGESTION ] +- Checking for old files in /tmp [ OK ] +- Checking /tmp sticky bit [ OK ] +- Checking /var/tmp sticky bit [ OK ] +- ACL support root file system [ ENABLED ] +- Mount options of / [ OK ] +- Mount options of /dev [ PARTIALLY HARDENED ] +- Mount options of /dev/shm [ PARTIALLY HARDENED ] +- Mount options of /run [ PARTIALLY HARDENED ] +- Total without nodev:9 noexec:8 nosuid:6 ro or noexec (W^X): 8 of total 26 +- Disable kernel support of some filesystems +- Discovered kernel modules: freevxfs hfs hfsplus jffs2 squashfs udf  + +[+] USB Devices +------------------------------------ +- Checking usb-storage driver (modprobe config) [ NOT DISABLED ] +- Checking USBGuard [ NOT FOUND ] + +[+] Storage +------------------------------------ +- Checking firewire ohci driver (modprobe config) [ NOT DISABLED ] + +[+] NFS +------------------------------------ +- Check running NFS daemon [ NOT FOUND ] + +[+] Name services +------------------------------------ +- Checking default DNS search domain [ FOUND ] +- Checking search domains [ FOUND ] +- Searching DNS domain name [ FOUND ] +Domain name: europe-west3-c.c.cc2020-tobiaswieck.internal +- Checking /etc/hosts +- Duplicate entries in hosts file [ NONE ] +- Presence of configured hostname in /etc/hosts [ FOUND ] +- Hostname mapped to localhost [ NOT FOUND ] +- Localhost mapping to IP address [ OK ] + +[+] Ports and packages +------------------------------------ +- Searching package managers +- Searching dpkg package manager [ FOUND ] +- Querying package manager +- Query unpurged packages [ NONE ] +- Checking security repository in sources.list file [ OK ] +- Checking APT package database [ OK ] +- Checking vulnerable packages (apt-get only) [ DONE ] +- Checking upgradeable packages [ SKIPPED ] +- Checking package audit tool [ INSTALLED ] +Found: apt-get +- Toolkit for automatic upgrades (unattended-upgrade) [ FOUND ] + +[+] Networking +------------------------------------ +- Checking IPv6 configuration [ ENABLED ] +Configuration method [ AUTO ] +IPv6 only [ NO ] +- Checking configured nameservers +- Testing nameservers +Nameserver: 169.254.169.254 [ SKIPPED ] +- Minimal of 2 responsive nameservers [ SKIPPED ] +- DNSSEC supported (systemd-resolved) [ UNKNOWN ] +- Checking default gateway [ DONE ] +- Getting listening ports (TCP/UDP) [ DONE ] +- Checking promiscuous interfaces [ OK ] +- Checking waiting connections [ OK ] +- Checking status DHCP client [ RUNNING ] +- Checking for ARP monitoring software [ NOT FOUND ] +- Uncommon network protocols [ 0 ] + +[+] Printers and Spools +------------------------------------ +- Checking cups daemon [ NOT FOUND ] +- Checking lp daemon [ NOT RUNNING ] + +[+] Software: e-mail and messaging +------------------------------------ + +[+] Software: firewalls +------------------------------------ +- Checking iptables kernel module [ FOUND ] +- Checking iptables policies of chains [ FOUND ] +- Checking for empty ruleset [ WARNING ] +- Checking for unused rules [ OK ] +- Checking host based firewall [ ACTIVE ] + +[+] Software: webserver +------------------------------------ +- Checking Apache [ NOT FOUND ] +- Checking nginx [ NOT FOUND ] + +[+] SSH Support +------------------------------------ +- Checking running SSH daemon [ FOUND ] +- Searching SSH configuration [ FOUND ] +- OpenSSH option: AllowTcpForwarding [ SUGGESTION ] +- OpenSSH option: ClientAliveCountMax [ SUGGESTION ] +- OpenSSH option: ClientAliveInterval [ OK ] +- OpenSSH option: Compression [ SUGGESTION ] +- OpenSSH option: FingerprintHash [ OK ] +- OpenSSH option: GatewayPorts [ OK ] +- OpenSSH option: IgnoreRhosts [ OK ] +- OpenSSH option: LoginGraceTime [ OK ] +- OpenSSH option: LogLevel [ SUGGESTION ] +- OpenSSH option: MaxAuthTries [ SUGGESTION ] +- OpenSSH option: MaxSessions [ SUGGESTION ] +- OpenSSH option: PermitRootLogin [ OK ] +- OpenSSH option: PermitUserEnvironment [ OK ] +- OpenSSH option: PermitTunnel [ OK ] +- OpenSSH option: Port [ SUGGESTION ] +- OpenSSH option: PrintLastLog [ OK ] +- OpenSSH option: StrictModes [ OK ] +- OpenSSH option: TCPKeepAlive [ SUGGESTION ] +- OpenSSH option: UseDNS [ OK ] +- OpenSSH option: X11Forwarding [ SUGGESTION ] +- OpenSSH option: AllowAgentForwarding [ SUGGESTION ] +- OpenSSH option: UsePrivilegeSeparation [ OK ] +- OpenSSH option: AllowUsers [ NOT FOUND ] +- OpenSSH option: AllowGroups [ NOT FOUND ] + +[+] SNMP Support +------------------------------------ +- Checking running SNMP daemon [ NOT FOUND ] + +[+] Databases +------------------------------------ +No database engines found + +[+] LDAP Services +------------------------------------ +- Checking OpenLDAP instance [ NOT FOUND ] + +[+] PHP +------------------------------------ +- Checking PHP [ NOT FOUND ] + +[+] Squid Support +------------------------------------ +- Checking running Squid daemon [ NOT FOUND ] + +[+] Logging and files +------------------------------------ +- Checking for a running log daemon [ OK ] +- Checking Syslog-NG status [ NOT FOUND ] +- Checking systemd journal status [ FOUND ] +- Checking Metalog status [ NOT FOUND ] +- Checking RSyslog status [ FOUND ] +- Checking RFC 3195 daemon status [ NOT FOUND ] +- Checking minilogd instances [ NOT FOUND ] +- Checking logrotate presence [ OK ] +- Checking remote logging [ NOT ENABLED ] +- Checking log directories (static list) [ DONE ] +- Checking open log files [ SKIPPED ] + +[+] Insecure services +------------------------------------ +- Installed inetd package [ NOT FOUND ] +- Installed xinetd package [ OK ] +- xinetd status +- Installed rsh client package [ OK ] +- Installed rsh server package [ OK ] +- Installed telnet client package [ OK ] +- Installed telnet server package [ NOT FOUND ] +- Checking NIS client installation [ OK ] +- Checking NIS server installation [ OK ] +- Checking TFTP client installation [ OK ] +- Checking TFTP server installation [ OK ] + +[+] Banners and identification +------------------------------------ +- /etc/issue [ FOUND ] +- /etc/issue contents [ WEAK ] +- /etc/issue.net [ FOUND ] +- /etc/issue.net contents [ WEAK ] + +[+] Scheduled tasks +------------------------------------ +- Checking crontab and cronjob files [ DONE ] + +[+] Accounting +------------------------------------ +- Checking accounting information [ NOT FOUND ] +- Checking sysstat accounting data [ NOT FOUND ] +- Checking auditd [ NOT FOUND ] + +[+] Time and Synchronization +------------------------------------ +- NTP daemon found: ntpd [ FOUND ] +- Checking for a running NTP daemon or client [ OK ] +- Checking valid association ID's [ FOUND ] +- Checking high stratum ntp peers [ OK ] +- Checking unreliable ntp peers [ NONE ] +- Checking selected time source [ OK ] +- Checking time source candidates [ NONE ] +- Checking falsetickers [ OK ] +- Checking NTP version [ FOUND ] + +[+] Cryptography +------------------------------------ +- Checking for expired SSL certificates [0/127] [ NONE ] +- Kernel entropy is sufficient [ YES ] +- HW RNG & rngd [ NO ] +- SW prng [ NO ] + +[+] Virtualization +------------------------------------ + +[+] Containers +------------------------------------ + +[+] Security frameworks +------------------------------------ +- Checking presence AppArmor [ NOT FOUND ] +- Checking presence SELinux [ NOT FOUND ] +- Checking presence TOMOYO Linux [ NOT FOUND ] +- Checking presence grsecurity [ NOT FOUND ] +- Checking for implemented MAC framework [ NONE ] + +[+] Software: file integrity +------------------------------------ +- Checking file integrity tools +- Checking presence integrity tool [ NOT FOUND ] + +[+] Software: System tooling +------------------------------------ +- Checking automation tooling +- Automation tooling [ NOT FOUND ] +- Checking for IDS/IPS tooling [ NONE ] + +[+] Software: Malware +------------------------------------ + +[+] File Permissions +------------------------------------ +- Starting file permissions check +File: /boot/grub/grub.cfg [ OK ] +File: /etc/crontab [ SUGGESTION ] +File: /etc/group [ OK ] +File: /etc/group- [ OK ] +File: /etc/hosts.allow [ OK ] +File: /etc/hosts.deny [ OK ] +File: /etc/issue [ OK ] +File: /etc/issue.net [ OK ] +File: /etc/motd [ OK ] +File: /etc/passwd [ OK ] +File: /etc/passwd- [ OK ] +File: /etc/ssh/sshd_config [ SUGGESTION ] +Directory: /etc/cron.d [ SUGGESTION ] +Directory: /etc/cron.daily [ SUGGESTION ] +Directory: /etc/cron.hourly [ SUGGESTION ] +Directory: /etc/cron.weekly [ SUGGESTION ] +Directory: /etc/cron.monthly [ SUGGESTION ] + +[+] Home directories +------------------------------------ +- Permissions of home directories [ WARNING ] +- Ownership of home directories [ OK ] +- Checking shell history files [ OK ] + +[+] Kernel Hardening +------------------------------------ +- Comparing sysctl key pairs with scan profile +- dev.tty.ldisc_autoload (exp: 0) [ DIFFERENT ] +- fs.protected_fifos (exp: 2) [ DIFFERENT ] +- fs.protected_hardlinks (exp: 1) [ OK ] +- fs.protected_regular (exp: 2) [ DIFFERENT ] +- fs.protected_symlinks (exp: 1) [ OK ] +- fs.suid_dumpable (exp: 0) [ OK ] +- kernel.core_uses_pid (exp: 1) [ DIFFERENT ] +- kernel.ctrl-alt-del (exp: 0) [ OK ] +- kernel.dmesg_restrict (exp: 1) [ OK ] +- kernel.kptr_restrict (exp: 2) [ DIFFERENT ] +- kernel.modules_disabled (exp: 1) [ DIFFERENT ] +- kernel.perf_event_paranoid (exp: 3) [ OK ] +- kernel.randomize_va_space (exp: 2) [ OK ] +- kernel.sysrq (exp: 0) [ DIFFERENT ] +- kernel.unprivileged_bpf_disabled (exp: 1) [ DIFFERENT ] +- kernel.yama.ptrace_scope (exp: 1 2 3) [ DIFFERENT ] +- net.core.bpf_jit_harden (exp: 2) [ DIFFERENT ] +- net.ipv4.conf.all.accept_redirects (exp: 0) [ OK ] +- net.ipv4.conf.all.accept_source_route (exp: 0) [ OK ] +- net.ipv4.conf.all.bootp_relay (exp: 0) [ OK ] +- net.ipv4.conf.all.forwarding (exp: 0) [ OK ] +- net.ipv4.conf.all.log_martians (exp: 1) [ OK ] +- net.ipv4.conf.all.mc_forwarding (exp: 0) [ OK ] +- net.ipv4.conf.all.proxy_arp (exp: 0) [ OK ] +- net.ipv4.conf.all.rp_filter (exp: 1) [ OK ] +- net.ipv4.conf.all.send_redirects (exp: 0) [ OK ] +- net.ipv4.conf.default.accept_redirects (exp: 0) [ OK ] +- net.ipv4.conf.default.accept_source_route (exp: 0) [ OK ] +- net.ipv4.conf.default.log_martians (exp: 1) [ OK ] +- net.ipv4.icmp_echo_ignore_broadcasts (exp: 1) [ OK ] +- net.ipv4.icmp_ignore_bogus_error_responses (exp: 1) [ OK ] +- net.ipv4.tcp_syncookies (exp: 1) [ OK ] +- net.ipv4.tcp_timestamps (exp: 0 1) [ OK ] +- net.ipv6.conf.all.accept_redirects (exp: 0) [ DIFFERENT ] +- net.ipv6.conf.all.accept_source_route (exp: 0) [ OK ] +- net.ipv6.conf.default.accept_redirects (exp: 0) [ DIFFERENT ] +- net.ipv6.conf.default.accept_source_route (exp: 0) [ OK ] + +[+] Hardening +------------------------------------ +- Installed compiler(s) [ NOT FOUND ] +- Installed malware scanner [ NOT FOUND ] +- Non-native binary formats [ NOT FOUND ] + +[+] Custom tests +------------------------------------ +- Running custom tests...  [ NONE ] + +[+] Plugins (phase 2) +------------------------------------ +- Plugins (phase 2) [ DONE ] + +================================================================================ + + -[ Lynis 3.0.3 Results ]- + + Warnings (1): + ---------------------------- + ! iptables module(s) loaded, but no rules active [FIRE-4512] + https://cisofy.com/lynis/controls/FIRE-4512/ + + Suggestions (43): + ---------------------------- + * Set a password on GRUB boot loader to prevent altering boot configuration (e.g. boot in single user mode without password) [BOOT-5122] + https://cisofy.com/lynis/controls/BOOT-5122/ + + * If not required, consider explicit disabling of core dump in /etc/security/limits.conf file [KRNL-5820] + https://cisofy.com/lynis/controls/KRNL-5820/ + + * Configure password hashing rounds in /etc/login.defs [AUTH-9230] + https://cisofy.com/lynis/controls/AUTH-9230/ + + * Install a PAM module for password strength testing like pam_cracklib or pam_passwdqc [AUTH-9262] + https://cisofy.com/lynis/controls/AUTH-9262/ + + * Look at the locked accounts and consider removing them [AUTH-9284] + https://cisofy.com/lynis/controls/AUTH-9284/ + + * Configure minimum password age in /etc/login.defs [AUTH-9286] + https://cisofy.com/lynis/controls/AUTH-9286/ + + * Configure maximum password age in /etc/login.defs [AUTH-9286] + https://cisofy.com/lynis/controls/AUTH-9286/ + + * Default umask in /etc/login.defs could be more strict like 027 [AUTH-9328] + https://cisofy.com/lynis/controls/AUTH-9328/ + + * To decrease the impact of a full /home file system, place /home on a separate partition [FILE-6310] + https://cisofy.com/lynis/controls/FILE-6310/ + + * To decrease the impact of a full /tmp file system, place /tmp on a separate partition [FILE-6310] + https://cisofy.com/lynis/controls/FILE-6310/ + + * To decrease the impact of a full /var file system, place /var on a separate partition [FILE-6310] + https://cisofy.com/lynis/controls/FILE-6310/ + + * Consider disabling unused kernel modules [FILE-6430] + - Details : /etc/modprobe.d/blacklist.conf + - Solution : Add 'install MODULENAME /bin/true' (without quotes) + https://cisofy.com/lynis/controls/FILE-6430/ + + * Disable drivers like USB storage when not used, to prevent unauthorized storage or data theft [USB-1000] + https://cisofy.com/lynis/controls/USB-1000/ + + * Disable drivers like firewire storage when not used, to prevent unauthorized storage or data theft [STRG-1846] + https://cisofy.com/lynis/controls/STRG-1846/ + + * Install debsums utility for the verification of packages with known good database. [PKGS-7370] + https://cisofy.com/lynis/controls/PKGS-7370/ + + * Install package apt-show-versions for patch management purposes [PKGS-7394] + https://cisofy.com/lynis/controls/PKGS-7394/ + + * Determine if protocol 'dccp' is really needed on this system [NETW-3200] + https://cisofy.com/lynis/controls/NETW-3200/ + + * Determine if protocol 'sctp' is really needed on this system [NETW-3200] + https://cisofy.com/lynis/controls/NETW-3200/ + + * Determine if protocol 'rds' is really needed on this system [NETW-3200] + https://cisofy.com/lynis/controls/NETW-3200/ + + * Determine if protocol 'tipc' is really needed on this system [NETW-3200] + https://cisofy.com/lynis/controls/NETW-3200/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : AllowTcpForwarding (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : ClientAliveCountMax (set 3 to 2) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : Compression (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : LogLevel (set INFO to VERBOSE) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : MaxAuthTries (set 6 to 3) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : MaxSessions (set 10 to 2) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : Port (set 22 to ) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : TCPKeepAlive (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : X11Forwarding (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : AllowAgentForwarding (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Enable logging to an external logging host for archiving purposes and additional protection [LOGG-2154] + https://cisofy.com/lynis/controls/LOGG-2154/ + + * Add a legal banner to /etc/issue, to warn unauthorized users [BANN-7126] + https://cisofy.com/lynis/controls/BANN-7126/ + + * Add legal banner to /etc/issue.net, to warn unauthorized users [BANN-7130] + https://cisofy.com/lynis/controls/BANN-7130/ + + * Enable process accounting [ACCT-9622] + https://cisofy.com/lynis/controls/ACCT-9622/ + + * Enable sysstat to collect accounting (no results) [ACCT-9626] + https://cisofy.com/lynis/controls/ACCT-9626/ + + * Enable auditd to collect audit information [ACCT-9628] + https://cisofy.com/lynis/controls/ACCT-9628/ + + * Check ntpq peers output for time source candidates [TIME-3128] + https://cisofy.com/lynis/controls/TIME-3128/ + + * Install a file integrity tool to monitor changes to critical and sensitive files [FINT-4350] + https://cisofy.com/lynis/controls/FINT-4350/ + + * Determine if automation tools are present for system management [TOOL-5002] + https://cisofy.com/lynis/controls/TOOL-5002/ + + * Consider restricting file permissions [FILE-7524] + - Details : See screen output or log file + - Solution : Use chmod to change file permissions + https://cisofy.com/lynis/controls/FILE-7524/ + + * Double check the permissions of home directories as some might be not strict enough. [HOME-9304] + https://cisofy.com/lynis/controls/HOME-9304/ + + * One or more sysctl values differ from the scan profile and could be tweaked [KRNL-6000] + - Solution : Change sysctl value or disable test (skip-test=KRNL-6000:) + https://cisofy.com/lynis/controls/KRNL-6000/ + + * Harden the system by installing at least one malware scanner, to perform periodic file system scans [HRDN-7230] + - Solution : Install a tool like rkhunter, chkrootkit, OSSEC + https://cisofy.com/lynis/controls/HRDN-7230/ + + Follow-up: + ---------------------------- + - Show details of a test (lynis show details TEST-ID) + - Check the logfile for all details (less /var/log/lynis.log) + - Read security controls texts (https://cisofy.com) + - Use --upload to upload data to central system (Lynis Enterprise users) + +================================================================================ + + Lynis security scan details: + + Hardening index : 65 [############# ] + Tests performed : 259 + Plugins enabled : 2 + + Components: + - Firewall [V] + - Malware scanner [X] + + Scan mode: + Normal [V] Forensics [ ] Integration [ ] Pentest [ ] + + Lynis modules: + - Compliance status [?] + - Security audit [V] + - Vulnerability scan [V] + + Files: + - Test and debug information : /var/log/lynis.log + - Report data : /var/log/lynis-report.dat + +================================================================================ + + Lynis 3.0.3 + + Auditing, system hardening, and compliance for UNIX-based systems + (Linux, macOS, BSD, and others) + + 2007-2021, CISOfy - https://cisofy.com/lynis/ + Enterprise support available (compliance, plugins, interface and tools) + +================================================================================ + + [TIP]: Enhance Lynis audits by adding your settings to custom.prf (see /home/ktdw73/scans/lynis/default.prf for all settings) + diff --git a/raw_scans/11_gcp_debian_9/lynis-console-3.log b/raw_scans/11_gcp_debian_9/lynis-console-3.log new file mode 100644 index 0000000..319e6a7 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/lynis-console-3.log @@ -0,0 +1,641 @@ + +[ Lynis 3.0.3 ] + +################################################################################ + Lynis comes with ABSOLUTELY NO WARRANTY. This is free software, and you are + welcome to redistribute it under the terms of the GNU General Public License. + See the LICENSE file for details about using this software. + + 2007-2021, CISOfy - https://cisofy.com/lynis/ + Enterprise support available (compliance, plugins, interface and tools) +################################################################################ + + +[+] Initializing program +------------------------------------ +- Detecting OS...  [ DONE ] +- Checking profiles... [ DONE ] + + --------------------------------------------------- + Program version: 3.0.3 + Operating system: Linux + Operating system name: Debian + Operating system version: 9 + Kernel version: 4.9.0 + Hardware platform: x86_64 + Hostname: debian-9 + --------------------------------------------------- + Profiles: /home/ktdw73/scans/lynis/default.prf + Log file: /var/log/lynis.log + Report file: /var/log/lynis-report.dat + Report version: 1.0 + Plugin directory: ./plugins + --------------------------------------------------- + Auditor: [Not Specified] + Language: en + Test category: all + Test group: all + --------------------------------------------------- +- Program update status...  [ NO UPDATE ] + +[+] System tools +------------------------------------ +- Scanning available tools... +- Checking system binaries... + +[+] Plugins (phase 1) +------------------------------------ +Note: plugins have more extensive tests and may take several minutes to complete +  +- Plugin: pam + [..] +- Plugin: systemd + [................] + +[+] Boot and services +------------------------------------ +- Service Manager [ systemd ] +- Checking UEFI boot [ DISABLED ] +- Checking presence GRUB2 [ FOUND ] +- Checking for password protection [ NONE ] +- Check running services (systemctl) [ DONE ] +Result: found 19 running services +- Check enabled services at boot (systemctl) [ DONE ] +Result: found 18 enabled services +- Check startup files (permissions) [ OK ] + +[+] Kernel +------------------------------------ +- Checking default run level [ RUNLEVEL 5 ] +- Checking CPU support (NX/PAE) +CPU support: PAE and/or NoeXecute supported [ FOUND ] +- Checking kernel version and release [ DONE ] +- Checking kernel type [ DONE ] +- Checking loaded kernel modules [ DONE ] +Found 54 active modules +- Checking Linux kernel configuration file [ FOUND ] +- Checking default I/O kernel scheduler [ FOUND ] +- Checking for available kernel update [ OK ] +- Checking core dumps configuration +- configuration in systemd conf files [ DEFAULT ] +- configuration in etc/profile [ DEFAULT ] +- 'hard' configuration in security/limits.conf [ DISABLED ] +- 'soft' config in security/limits.conf (implicit) [ DISABLED ] +- Checking setuid core dumps configuration [ DISABLED ] +- Check if reboot is needed [ NO ] + +[+] Memory and Processes +------------------------------------ +- Checking /proc/meminfo [ FOUND ] +- Searching for dead/zombie processes [ NOT FOUND ] +- Searching for IO waiting processes [ NOT FOUND ] +- Search prelink tooling [ NOT FOUND ] + +[+] Users, Groups and Authentication +------------------------------------ +- Administrator accounts [ OK ] +- Unique UIDs [ OK ] +- Consistency of group files (grpck) [ OK ] +- Unique group IDs [ OK ] +- Unique group names [ OK ] +- Password file consistency [ OK ] +- Password hashing methods [ OK ] +- Checking password hashing rounds [ DISABLED ] +- Query system users (non daemons) [ DONE ] +- NIS+ authentication support [ NOT ENABLED ] +- NIS authentication support [ NOT ENABLED ] +- Sudoers file(s) [ FOUND ] +- Permissions for directory: /etc/sudoers.d [ WARNING ] +- Permissions for: /etc/sudoers [ OK ] +- Permissions for: /etc/sudoers.d/google_sudoers [ OK ] +- Permissions for: /etc/sudoers.d/README [ OK ] +- PAM password strength tools [ OK ] +- PAM configuration files (pam.conf) [ FOUND ] +- PAM configuration files (pam.d) [ FOUND ] +- PAM modules [ FOUND ] +- LDAP module in PAM [ NOT FOUND ] +- Accounts without expire date [ OK ] +- Accounts without password [ OK ] +- Locked accounts [ FOUND ] +- User password aging (minimum) [ CONFIGURED ] +- User password aging (maximum) [ CONFIGURED ] +- Checking expired passwords [ OK ] +- Checking Linux single user mode authentication [ OK ] +- Determining default umask +- umask (/etc/profile) [ NOT FOUND ] +- umask (/etc/login.defs) [ OK ] +- LDAP authentication support [ NOT ENABLED ] +- Logging failed login attempts [ ENABLED ] + +[+] Shells +------------------------------------ +- Checking shells from /etc/shells +Result: found 5 shells (valid shells: 5). +- Session timeout settings/tools [ NONE ] +- Checking default umask values +- Checking default umask in /etc/bash.bashrc [ NONE ] +- Checking default umask in /etc/profile [ NONE ] + +[+] File systems +------------------------------------ +- Checking mount points +- Checking /home mount point [ SUGGESTION ] +- Checking /tmp mount point [ OK ] +- Checking /var mount point [ SUGGESTION ] +- Query swap partitions (fstab) [ NONE ] +- Testing swap partitions [ OK ] +- Testing /proc mount (hidepid) [ SUGGESTION ] +- Checking for old files in /tmp [ OK ] +- Checking /tmp sticky bit [ OK ] +- Checking /var/tmp sticky bit [ OK ] +- ACL support root file system [ ENABLED ] +- Mount options of / [ OK ] +- Mount options of /dev [ PARTIALLY HARDENED ] +- Mount options of /dev/shm [ PARTIALLY HARDENED ] +- Mount options of /run [ PARTIALLY HARDENED ] +- Mount options of /tmp [ HARDENED ] +- Total without nodev:9 noexec:8 nosuid:6 ro or noexec (W^X): 8 of total 27 +- Disable kernel support of some filesystems +- Discovered kernel modules: freevxfs hfs hfsplus jffs2 squashfs udf  + +[+] USB Devices +------------------------------------ +- Checking usb-storage driver (modprobe config) [ DISABLED ] +- Checking USBGuard [ NOT FOUND ] + +[+] Storage +------------------------------------ +- Checking firewire ohci driver (modprobe config) [ NOT DISABLED ] + +[+] NFS +------------------------------------ +- Check running NFS daemon [ NOT FOUND ] + +[+] Name services +------------------------------------ +- Checking default DNS search domain [ FOUND ] +- Checking search domains [ FOUND ] +- Searching DNS domain name [ FOUND ] +Domain name: europe-west3-c.c.cc2020-tobiaswieck.internal +- Checking /etc/hosts +- Duplicate entries in hosts file [ NONE ] +- Presence of configured hostname in /etc/hosts [ FOUND ] +- Hostname mapped to localhost [ NOT FOUND ] +- Localhost mapping to IP address [ OK ] + +[+] Ports and packages +------------------------------------ +- Searching package managers +- Searching dpkg package manager [ FOUND ] +- Querying package manager +- Query unpurged packages [ NONE ] +- Checking security repository in sources.list file [ OK ] +- Checking APT package database [ OK ] +- Checking vulnerable packages (apt-get only) [ DONE ] +- Checking upgradeable packages [ SKIPPED ] +- Checking package audit tool [ INSTALLED ] +Found: apt-get +- Toolkit for automatic upgrades (unattended-upgrade) [ FOUND ] + +[+] Networking +------------------------------------ +- Checking IPv6 configuration [ ENABLED ] +Configuration method [ AUTO ] +IPv6 only [ NO ] +- Checking configured nameservers +- Testing nameservers +Nameserver: 169.254.169.254 [ SKIPPED ] +- Minimal of 2 responsive nameservers [ SKIPPED ] +- DNSSEC supported (systemd-resolved) [ UNKNOWN ] +- Checking default gateway [ DONE ] +- Getting listening ports (TCP/UDP) [ DONE ] +- Checking promiscuous interfaces [ OK ] +- Checking waiting connections [ OK ] +- Checking status DHCP client [ RUNNING ] +- Checking for ARP monitoring software [ NOT FOUND ] +- Uncommon network protocols [ 0 ] + +[+] Printers and Spools +------------------------------------ +- Checking cups daemon [ NOT FOUND ] +- Checking lp daemon [ NOT RUNNING ] + +[+] Software: e-mail and messaging +------------------------------------ + +[+] Software: firewalls +------------------------------------ +- Checking iptables kernel module [ FOUND ] +- Checking iptables policies of chains [ FOUND ] +- Checking for empty ruleset [ WARNING ] +- Checking for unused rules [ FOUND ] +- Checking host based firewall [ ACTIVE ] + +[+] Software: webserver +------------------------------------ +- Checking Apache [ NOT FOUND ] +- Checking nginx [ NOT FOUND ] + +[+] SSH Support +------------------------------------ +- Checking running SSH daemon [ FOUND ] +- Searching SSH configuration [ FOUND ] +- OpenSSH option: AllowTcpForwarding [ SUGGESTION ] +- OpenSSH option: ClientAliveCountMax [ SUGGESTION ] +- OpenSSH option: ClientAliveInterval [ OK ] +- OpenSSH option: Compression [ SUGGESTION ] +- OpenSSH option: FingerprintHash [ OK ] +- OpenSSH option: GatewayPorts [ OK ] +- OpenSSH option: IgnoreRhosts [ OK ] +- OpenSSH option: LoginGraceTime [ OK ] +- OpenSSH option: LogLevel [ SUGGESTION ] +- OpenSSH option: MaxAuthTries [ SUGGESTION ] +- OpenSSH option: MaxSessions [ SUGGESTION ] +- OpenSSH option: PermitRootLogin [ OK ] +- OpenSSH option: PermitUserEnvironment [ OK ] +- OpenSSH option: PermitTunnel [ OK ] +- OpenSSH option: Port [ SUGGESTION ] +- OpenSSH option: PrintLastLog [ OK ] +- OpenSSH option: StrictModes [ OK ] +- OpenSSH option: TCPKeepAlive [ SUGGESTION ] +- OpenSSH option: UseDNS [ OK ] +- OpenSSH option: X11Forwarding [ SUGGESTION ] +- OpenSSH option: AllowAgentForwarding [ SUGGESTION ] +- OpenSSH option: UsePrivilegeSeparation [ OK ] +- OpenSSH option: AllowUsers [ NOT FOUND ] +- OpenSSH option: AllowGroups [ NOT FOUND ] + +[+] SNMP Support +------------------------------------ +- Checking running SNMP daemon [ NOT FOUND ] + +[+] Databases +------------------------------------ +No database engines found + +[+] LDAP Services +------------------------------------ +- Checking OpenLDAP instance [ NOT FOUND ] + +[+] PHP +------------------------------------ +- Checking PHP [ NOT FOUND ] + +[+] Squid Support +------------------------------------ +- Checking running Squid daemon [ NOT FOUND ] + +[+] Logging and files +------------------------------------ +- Checking for a running log daemon [ OK ] +- Checking Syslog-NG status [ NOT FOUND ] +- Checking systemd journal status [ FOUND ] +- Checking Metalog status [ NOT FOUND ] +- Checking RSyslog status [ FOUND ] +- Checking RFC 3195 daemon status [ NOT FOUND ] +- Checking minilogd instances [ NOT FOUND ] +- Checking logrotate presence [ OK ] +- Checking remote logging [ NOT ENABLED ] +- Checking log directories (static list) [ DONE ] +- Checking open log files [ SKIPPED ] + +[+] Insecure services +------------------------------------ +- Installed inetd package [ NOT FOUND ] +- Installed xinetd package [ OK ] +- xinetd status +- Installed rsh client package [ OK ] +- Installed rsh server package [ OK ] +- Installed telnet client package [ OK ] +- Installed telnet server package [ NOT FOUND ] +- Checking NIS client installation [ OK ] +- Checking NIS server installation [ OK ] +- Checking TFTP client installation [ OK ] +- Checking TFTP server installation [ OK ] + +[+] Banners and identification +------------------------------------ +- /etc/issue [ FOUND ] +- /etc/issue contents [ WEAK ] +- /etc/issue.net [ FOUND ] +- /etc/issue.net contents [ WEAK ] + +[+] Scheduled tasks +------------------------------------ +- Checking crontab and cronjob files [ DONE ] + +[+] Accounting +------------------------------------ +- Checking accounting information [ OK ] +- Checking sysstat accounting data [ NOT FOUND ] +- Checking auditd [ NOT FOUND ] + +[+] Time and Synchronization +------------------------------------ +- NTP daemon found: ntpd [ FOUND ] +- Checking for a running NTP daemon or client [ OK ] +- Checking valid association ID's [ FOUND ] +- Checking high stratum ntp peers [ OK ] +- Checking unreliable ntp peers [ NONE ] +- Checking selected time source [ OK ] +- Checking time source candidates [ NONE ] +- Checking falsetickers [ OK ] +- Checking NTP version [ FOUND ] + +[+] Cryptography +------------------------------------ +- Checking for expired SSL certificates [0/127] [ NONE ] +- Kernel entropy is sufficient [ YES ] +- HW RNG & rngd [ NO ] +- SW prng [ NO ] + +[+] Virtualization +------------------------------------ + +[+] Containers +------------------------------------ + +[+] Security frameworks +------------------------------------ +- Checking presence AppArmor [ NOT FOUND ] +- Checking presence SELinux [ NOT FOUND ] +- Checking presence TOMOYO Linux [ NOT FOUND ] +- Checking presence grsecurity [ NOT FOUND ] +- Checking for implemented MAC framework [ NONE ] + +[+] Software: file integrity +------------------------------------ +- Checking file integrity tools +- Tripwire [ FOUND ] +- Checking presence integrity tool [ FOUND ] + +[+] Software: System tooling +------------------------------------ +- Checking automation tooling +- Automation tooling [ NOT FOUND ] +- Checking presence of Fail2ban [ FOUND ] +- Checking Fail2ban jails [ ENABLED ] +- Checking for IDS/IPS tooling [ FOUND ] + +[+] Software: Malware +------------------------------------ +- Checking chkrootkit [ FOUND ] +- Checking Rootkit Hunter [ FOUND ] + +[+] File Permissions +------------------------------------ +- Starting file permissions check +File: /boot/grub/grub.cfg [ OK ] +File: /etc/cron.allow [ OK ] +File: /etc/cron.deny [ SUGGESTION ] +File: /etc/crontab [ SUGGESTION ] +File: /etc/group [ OK ] +File: /etc/group- [ OK ] +File: /etc/hosts.allow [ OK ] +File: /etc/hosts.deny [ OK ] +File: /etc/issue [ OK ] +File: /etc/issue.net [ OK ] +File: /etc/motd [ OK ] +File: /etc/passwd [ OK ] +File: /etc/passwd- [ OK ] +File: /etc/ssh/sshd_config [ SUGGESTION ] +Directory: /etc/cron.d [ SUGGESTION ] +Directory: /etc/cron.daily [ SUGGESTION ] +Directory: /etc/cron.hourly [ SUGGESTION ] +Directory: /etc/cron.weekly [ SUGGESTION ] +Directory: /etc/cron.monthly [ SUGGESTION ] + +[+] Home directories +------------------------------------ +- Permissions of home directories [ WARNING ] +- Ownership of home directories [ OK ] +- Checking shell history files [ OK ] + +[+] Kernel Hardening +------------------------------------ +- Comparing sysctl key pairs with scan profile +- dev.tty.ldisc_autoload (exp: 0) [ DIFFERENT ] +- fs.protected_fifos (exp: 2) [ DIFFERENT ] +- fs.protected_hardlinks (exp: 1) [ OK ] +- fs.protected_regular (exp: 2) [ DIFFERENT ] +- fs.protected_symlinks (exp: 1) [ OK ] +- fs.suid_dumpable (exp: 0) [ OK ] +- kernel.core_uses_pid (exp: 1) [ OK ] +- kernel.ctrl-alt-del (exp: 0) [ OK ] +- kernel.dmesg_restrict (exp: 1) [ OK ] +- kernel.kptr_restrict (exp: 2) [ OK ] +- kernel.modules_disabled (exp: 1) [ DIFFERENT ] +- kernel.perf_event_paranoid (exp: 3) [ OK ] +- kernel.randomize_va_space (exp: 2) [ OK ] +- kernel.sysrq (exp: 0) [ OK ] +- kernel.unprivileged_bpf_disabled (exp: 1) [ DIFFERENT ] +- kernel.yama.ptrace_scope (exp: 1 2 3) [ DIFFERENT ] +- net.core.bpf_jit_harden (exp: 2) [ DIFFERENT ] +- net.ipv4.conf.all.accept_redirects (exp: 0) [ OK ] +- net.ipv4.conf.all.accept_source_route (exp: 0) [ OK ] +- net.ipv4.conf.all.bootp_relay (exp: 0) [ OK ] +- net.ipv4.conf.all.forwarding (exp: 0) [ OK ] +- net.ipv4.conf.all.log_martians (exp: 1) [ OK ] +- net.ipv4.conf.all.mc_forwarding (exp: 0) [ OK ] +- net.ipv4.conf.all.proxy_arp (exp: 0) [ OK ] +- net.ipv4.conf.all.rp_filter (exp: 1) [ OK ] +- net.ipv4.conf.all.send_redirects (exp: 0) [ OK ] +- net.ipv4.conf.default.accept_redirects (exp: 0) [ OK ] +- net.ipv4.conf.default.accept_source_route (exp: 0) [ OK ] +- net.ipv4.conf.default.log_martians (exp: 1) [ OK ] +- net.ipv4.icmp_echo_ignore_broadcasts (exp: 1) [ OK ] +- net.ipv4.icmp_ignore_bogus_error_responses (exp: 1) [ OK ] +- net.ipv4.tcp_syncookies (exp: 1) [ OK ] +- net.ipv4.tcp_timestamps (exp: 0 1) [ OK ] +- net.ipv6.conf.all.accept_redirects (exp: 0) [ OK ] +- net.ipv6.conf.all.accept_source_route (exp: 0) [ OK ] +- net.ipv6.conf.default.accept_redirects (exp: 0) [ OK ] +- net.ipv6.conf.default.accept_source_route (exp: 0) [ OK ] + +[+] Hardening +------------------------------------ +- Installed compiler(s) [ FOUND ] +- Installed malware scanner [ FOUND ] +- Non-native binary formats [ NOT FOUND ] + +[+] Custom tests +------------------------------------ +- Running custom tests...  [ NONE ] + +[+] Plugins (phase 2) +------------------------------------ +- Plugins (phase 2) [ DONE ] + +================================================================================ + + -[ Lynis 3.0.3 Results ]- + + Warnings (1): + ---------------------------- + ! iptables module(s) loaded, but no rules active [FIRE-4512] + https://cisofy.com/lynis/controls/FIRE-4512/ + + Suggestions (34): + ---------------------------- + * Set a password on GRUB boot loader to prevent altering boot configuration (e.g. boot in single user mode without password) [BOOT-5122] + https://cisofy.com/lynis/controls/BOOT-5122/ + + * Configure password hashing rounds in /etc/login.defs [AUTH-9230] + https://cisofy.com/lynis/controls/AUTH-9230/ + + * Look at the locked accounts and consider removing them [AUTH-9284] + https://cisofy.com/lynis/controls/AUTH-9284/ + + * To decrease the impact of a full /home file system, place /home on a separate partition [FILE-6310] + https://cisofy.com/lynis/controls/FILE-6310/ + + * To decrease the impact of a full /var file system, place /var on a separate partition [FILE-6310] + https://cisofy.com/lynis/controls/FILE-6310/ + + * Consider disabling unused kernel modules [FILE-6430] + - Details : /etc/modprobe.d/blacklist.conf + - Solution : Add 'install MODULENAME /bin/true' (without quotes) + https://cisofy.com/lynis/controls/FILE-6430/ + + * Disable drivers like firewire storage when not used, to prevent unauthorized storage or data theft [STRG-1846] + https://cisofy.com/lynis/controls/STRG-1846/ + + * Install debsums utility for the verification of packages with known good database. [PKGS-7370] + https://cisofy.com/lynis/controls/PKGS-7370/ + + * Install package apt-show-versions for patch management purposes [PKGS-7394] + https://cisofy.com/lynis/controls/PKGS-7394/ + + * Determine if protocol 'dccp' is really needed on this system [NETW-3200] + https://cisofy.com/lynis/controls/NETW-3200/ + + * Determine if protocol 'sctp' is really needed on this system [NETW-3200] + https://cisofy.com/lynis/controls/NETW-3200/ + + * Determine if protocol 'rds' is really needed on this system [NETW-3200] + https://cisofy.com/lynis/controls/NETW-3200/ + + * Determine if protocol 'tipc' is really needed on this system [NETW-3200] + https://cisofy.com/lynis/controls/NETW-3200/ + + * Check iptables rules to see which rules are currently not used [FIRE-4513] + https://cisofy.com/lynis/controls/FIRE-4513/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : AllowTcpForwarding (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : ClientAliveCountMax (set 3 to 2) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : Compression (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : LogLevel (set INFO to VERBOSE) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : MaxAuthTries (set 6 to 3) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : MaxSessions (set 10 to 2) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : Port (set 22 to ) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : TCPKeepAlive (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : X11Forwarding (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Consider hardening SSH configuration [SSH-7408] + - Details : AllowAgentForwarding (set YES to NO) + https://cisofy.com/lynis/controls/SSH-7408/ + + * Enable logging to an external logging host for archiving purposes and additional protection [LOGG-2154] + https://cisofy.com/lynis/controls/LOGG-2154/ + + * Add a legal banner to /etc/issue, to warn unauthorized users [BANN-7126] + https://cisofy.com/lynis/controls/BANN-7126/ + + * Add legal banner to /etc/issue.net, to warn unauthorized users [BANN-7130] + https://cisofy.com/lynis/controls/BANN-7130/ + + * Enable sysstat to collect accounting (no results) [ACCT-9626] + https://cisofy.com/lynis/controls/ACCT-9626/ + + * Enable auditd to collect audit information [ACCT-9628] + https://cisofy.com/lynis/controls/ACCT-9628/ + + * Check ntpq peers output for time source candidates [TIME-3128] + https://cisofy.com/lynis/controls/TIME-3128/ + + * Determine if automation tools are present for system management [TOOL-5002] + https://cisofy.com/lynis/controls/TOOL-5002/ + + * Consider restricting file permissions [FILE-7524] + - Details : See screen output or log file + - Solution : Use chmod to change file permissions + https://cisofy.com/lynis/controls/FILE-7524/ + + * Double check the permissions of home directories as some might be not strict enough. [HOME-9304] + https://cisofy.com/lynis/controls/HOME-9304/ + + * One or more sysctl values differ from the scan profile and could be tweaked [KRNL-6000] + - Solution : Change sysctl value or disable test (skip-test=KRNL-6000:) + https://cisofy.com/lynis/controls/KRNL-6000/ + + Follow-up: + ---------------------------- + - Show details of a test (lynis show details TEST-ID) + - Check the logfile for all details (less /var/log/lynis.log) + - Read security controls texts (https://cisofy.com) + - Use --upload to upload data to central system (Lynis Enterprise users) + +================================================================================ + + Lynis security scan details: + + Hardening index : 75 [############### ] + Tests performed : 260 + Plugins enabled : 2 + + Components: + - Firewall [V] + - Malware scanner [V] + + Scan mode: + Normal [V] Forensics [ ] Integration [ ] Pentest [ ] + + Lynis modules: + - Compliance status [?] + - Security audit [V] + - Vulnerability scan [V] + + Files: + - Test and debug information : /var/log/lynis.log + - Report data : /var/log/lynis-report.dat + +================================================================================ + + Lynis 3.0.3 + + Auditing, system hardening, and compliance for UNIX-based systems + (Linux, macOS, BSD, and others) + + 2007-2021, CISOfy - https://cisofy.com/lynis/ + Enterprise support available (compliance, plugins, interface and tools) + +================================================================================ + + [TIP]: Enhance Lynis audits by adding your settings to custom.prf (see /home/ktdw73/scans/lynis/default.prf for all settings) + diff --git a/raw_scans/11_gcp_debian_9/lynis-log-1.log b/raw_scans/11_gcp_debian_9/lynis-log-1.log new file mode 100644 index 0000000..3349db4 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/lynis-log-1.log @@ -0,0 +1,4614 @@ +2021-01-07 17:37:52 Starting Lynis 3.0.3 with PID 2849, build date 2021-01-07 +2021-01-07 17:37:52 ==== +2021-01-07 17:37:52 ### 2007-2021, CISOfy - https://cisofy.com/lynis/ ### +2021-01-07 17:37:52 Checking permissions of /home/ktdw73/scans/lynis/include/profiles +2021-01-07 17:37:52 File permissions are OK +2021-01-07 17:37:52 Reading profile/configuration /home/ktdw73/scans/lynis/default.prf +2021-01-07 17:37:52 Action: created temporary file /tmp/lynis.k321Oiersr +2021-01-07 17:37:52 Language set via profile to '' +2021-01-07 17:37:52 Plugin 'authentication' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'compliance' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'configuration' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'control-panels' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'crypto' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'dns' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'docker' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'file-integrity' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'file-systems' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'firewalls' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'forensics' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'hardware' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'intrusion-detection' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'intrusion-prevention' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'kernel' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'malware' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'memory' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'nginx' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'pam' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'processes' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'security-modules' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'software' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'system-integrity' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'systemd' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Plugin 'users' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:52 Set option to default value: NTPD_ROLE --> client +2021-01-07 17:37:52 ==== +2021-01-07 17:37:52 EOL check: 255 +2021-01-07 17:37:52 Note: the end-of-life of 'Debian GNU/Linux 9 (stretch)' could not be checked. Entry missing in software-eol.db? +2021-01-07 17:37:52 Program version: 3.0.3 +2021-01-07 17:37:52 Operating system: Linux +2021-01-07 17:37:52 Operating system name: Debian +2021-01-07 17:37:52 Operating system version: 9 +2021-01-07 17:37:52 Kernel version: 4.9.0 +2021-01-07 17:37:52 Kernel version (full): 4.9.0-14-amd64 +2021-01-07 17:37:52 Hardware platform: x86_64 +2021-01-07 17:37:52 ----------------------------------------------------- +2021-01-07 17:37:52 Hostname: debian-9 +2021-01-07 17:37:52 Auditor: [Not Specified] +2021-01-07 17:37:52 Profiles: /home/ktdw73/scans/lynis/default.prf +2021-01-07 17:37:52 Work directory: /home/ktdw73/scans/lynis +2021-01-07 17:37:52 Include directory: /home/ktdw73/scans/lynis/include +2021-01-07 17:37:52 Plugin directory: ./plugins +2021-01-07 17:37:52 ----------------------------------------------------- +2021-01-07 17:37:52 Log file: /var/log/lynis.log +2021-01-07 17:37:52 Report file: /var/log/lynis-report.dat +2021-01-07 17:37:52 Report version: 1.0 +2021-01-07 17:37:52 ----------------------------------------------------- +2021-01-07 17:37:52 Test category: all +2021-01-07 17:37:52 Test group: all +2021-01-07 17:37:52 BusyBox used: 0 +2021-01-07 17:37:52 ==== +2021-01-07 17:37:52 Test: Checking for program update... +2021-01-07 17:37:52 Current installed version : 303 +2021-01-07 17:37:52 Latest stable version : 303 +2021-01-07 17:37:52 No Lynis update available. +2021-01-07 17:37:52 ==== +2021-01-07 17:37:52 Checking permissions of /home/ktdw73/scans/lynis/include/binaries +2021-01-07 17:37:52 File permissions are OK +2021-01-07 17:37:52 ==== +2021-01-07 17:37:52 Action: Performing tests from category: System tools +2021-01-07 17:37:52 Start scanning for available audit binaries and tools... +2021-01-07 17:37:52 ==== +2021-01-07 17:37:52 Performing test ID CORE-1000 (Check all system binaries) +2021-01-07 17:37:52 Status: Starting binary scan... +2021-01-07 17:37:52 Test: Checking binaries in directory /bin +2021-01-07 17:37:52 Directory /bin exists. Starting directory scanning... +2021-01-07 17:37:52 Found known binary: cat (generic file handling) - /bin/cat +2021-01-07 17:37:52 Found known binary: dnsdomainname (DNS domain) - /bin/dnsdomainname +2021-01-07 17:37:52 Found known binary: domainname (NIS domain) - /bin/domainname +2021-01-07 17:37:52 Found known binary: egrep (text search) - /bin/egrep +2021-01-07 17:37:52 Found known binary: grep (text search) - /bin/grep +2021-01-07 17:37:52 Found known binary: gzip (compressing utility) - /bin/gzip +2021-01-07 17:37:52 Found known binary: ip (IP configuration) - /bin/ip +2021-01-07 17:37:52 Found known binary: journalctl (systemd journal) - /bin/journalctl +2021-01-07 17:37:52 Found known binary: ls (file listing) - /bin/ls +2021-01-07 17:37:52 Found known binary: lsblk (block devices) - /bin/lsblk +2021-01-07 17:37:52 Found known binary: lsmod (kernel modules) - /bin/lsmod +2021-01-07 17:37:52 Found known binary: mount (disk utility) - /bin/mount +2021-01-07 17:37:52 Found known binary: netstat (network statistics) - /bin/netstat +2021-01-07 17:37:52 Found known binary: ps (process listing) - /bin/ps +2021-01-07 17:37:52 Found known binary: readlink (follows symlinks) - /bin/readlink +2021-01-07 17:37:52 Found known binary: sed (text stream editor) - /bin/sed +2021-01-07 17:37:52 Found known binary: ss (show sockets) - /bin/ss +2021-01-07 17:37:52 Found known binary: systemctl (client to systemd) - /bin/systemctl +2021-01-07 17:37:52 Found known binary: uname (operating system details) - /bin/uname +2021-01-07 17:37:52 Found known binary: zgrep (text search for compressed files) - /bin/zgrep +2021-01-07 17:37:52 Test: Checking binaries in directory /sbin +2021-01-07 17:37:52 Directory /sbin exists. Starting directory scanning... +2021-01-07 17:37:52 Found known binary: blkid (information about block devices) - /sbin/blkid +2021-01-07 17:37:52 Found known binary: ipconfig (IP configuration) - /sbin/ifconfig +2021-01-07 17:37:52 Found known binary: ip (IP configuration) - /sbin/ip +2021-01-07 17:37:52 Found known binary: iptables (firewall) - /sbin/iptables +2021-01-07 17:37:52 Found known binary: iptables-save (firewall) - /sbin/iptables-save +2021-01-07 17:37:52 Found known binary: lsmod (kernel modules) - /sbin/lsmod +2021-01-07 17:37:52 Found known binary: modprobe (kernel modules) - /sbin/modprobe +2021-01-07 17:37:52 Found known binary: runlevel (system utility) - /sbin/runlevel +2021-01-07 17:37:52 Found known binary: swapon (swap device tool) - /sbin/swapon +2021-01-07 17:37:52 Found known binary: sysctl (kernel parameters) - /sbin/sysctl +2021-01-07 17:37:52 Found known binary: tune2fs (file system tool) - /sbin/tune2fs +2021-01-07 17:37:52 Test: Checking binaries in directory /usr/bin +2021-01-07 17:37:52 Directory /usr/bin exists. Starting directory scanning... +2021-01-07 17:37:52 Found known binary: apt (package manager) - /usr/bin/apt +2021-01-07 17:37:52 Found known binary: awk (string tool) - /usr/bin/awk +2021-01-07 17:37:52 Found known binary: base64 (encoding tool) - /usr/bin/base64 +2021-01-07 17:37:52 Found known binary: bootctl (systemd-boot manager utility) - /usr/bin/bootctl +2021-01-07 17:37:52 Found known binary: comm (file compare) - /usr/bin/comm +2021-01-07 17:37:52 Found known binary: curl (browser, download utility) - /usr/bin/curl +2021-01-07 17:37:52 Found known binary: cut (text stream editor) - /usr/bin/cut +2021-01-07 17:37:52 Found known binary: dpkg (package management) - /usr/bin/dpkg +2021-01-07 17:37:52 Found known binary: file (file type detection) - /usr/bin/file +2021-01-07 17:37:52 Found known binary: find (search tool) - /usr/bin/find +2021-01-07 17:37:52 Found known binary: getent (query tool for name service switch libraries) - /usr/bin/getent +2021-01-07 17:37:52 Found known binary: head (text filter) - /usr/bin/head +2021-01-07 17:37:52 Found known binary: lsattr (file attributes) - /usr/bin/lsattr +2021-01-07 17:37:52 Found known binary: md5sum (hash tool) - /usr/bin/md5sum +2021-01-07 17:37:52 Found known binary ntpq (time daemon client) - /usr/bin/ntpq +2021-01-07 17:37:52 Found /usr/bin/openssl (version 1.1.0l) +2021-01-07 17:37:52 Found /usr/bin/perl (version 5.24.1) +2021-01-07 17:37:52 Found known binary: pgrep (search in process list) - /usr/bin/pgrep +2021-01-07 17:37:52 Found known binary: python (programming language interpreter) - /usr/bin/python (version 2.7.13) +2021-01-07 17:37:52 Found known binary: python2 (programming language interpreter) - /usr/bin/python2 (version 2.7.13) +2021-01-07 17:37:52 Found known binary: python3 (programming language interpreter) - /usr/bin/python3 (version 3.5.3) +2021-01-07 17:37:52 Found known binary: sha1/sha1sum/shasum (crypto hashing) - /usr/bin/sha1sum +2021-01-07 17:37:52 Found known binary: sha256/sha256sum (crypto hashing) - /usr/bin/sha256sum +2021-01-07 17:37:52 Found known binary: sha1/sha1sum/shasum (crypto hashing) - /usr/bin/shasum +2021-01-07 17:37:52 Found known binary: sort (sort data streams) - /usr/bin/sort +2021-01-07 17:37:52 Found known binary: ssh-keyscan (scanner for SSH keys) - /usr/bin/ssh-keyscan +2021-01-07 17:37:52 Found known binary: stat (file information) - /usr/bin/stat +2021-01-07 17:37:52 Found known binary: systemd-analyze (systemd service analysis tool) - /usr/bin/systemd-analyze +2021-01-07 17:37:52 Found known binary: tail (text filter) - /usr/bin/tail +2021-01-07 17:37:52 Found known binary: timedatectl (timedate client) - /usr/bin/timedatectl +2021-01-07 17:37:52 Found known binary: tr (text transformation) - /usr/bin/tr +2021-01-07 17:37:52 Found known binary: uniq (text manipulation utility) - /usr/bin/uniq +2021-01-07 17:37:52 Found known binary: wc (word count) - /usr/bin/wc +2021-01-07 17:37:52 Found /usr/bin/wget (version 1.18) +2021-01-07 17:37:52 Found known binary: xargs (command output redirection) - /usr/bin/xargs +2021-01-07 17:37:52 Test: Checking binaries in directory /usr/sbin +2021-01-07 17:37:52 Directory /usr/sbin exists. Starting directory scanning... +2021-01-07 17:37:52 Found known binary: dmidecode (hardware collector tool) - /usr/sbin/dmidecode +2021-01-07 17:37:52 Found known binary: grpck (consistency checker) - /usr/sbin/grpck +2021-01-07 17:37:52 Found known binary: logrotate (log rotation tool) - /usr/sbin/logrotate +2021-01-07 17:37:52 Found known binary: service (system services) - /usr/sbin/service +2021-01-07 17:37:52 Found /usr/sbin/sshd (version 7.4) +2021-01-07 17:37:52 Test: Checking binaries in directory /usr/local/bin +2021-01-07 17:37:53 Directory /usr/local/bin exists. Starting directory scanning... +2021-01-07 17:37:53 Test: Checking binaries in directory /usr/local/sbin +2021-01-07 17:37:53 Directory /usr/local/sbin exists. Starting directory scanning... +2021-01-07 17:37:53 Discovered directories: /bin,/sbin,/usr/bin,/usr/sbin,/usr/local/bin,/usr/local/sbin +2021-01-07 17:37:53 Result: found 834 binaries including 14 set-uid and 9 set-gid +2021-01-07 17:37:53 Result: set-uid binaries: /bin/mount /bin/ping /bin/ping4 /bin/ping6 /bin/su /bin/umount /usr/bin/chfn /usr/bin/chsh /usr/bin/gpasswd /usr/bin/newgrp /usr/bin/passwd /usr/bin/sg /usr/bin/sudo /usr/bin/sudoedit +2021-01-07 17:37:53 Result: set-gid binaries: /sbin/unix_chkpwd /usr/bin/bsd-write /usr/bin/chage /usr/bin/crontab /usr/bin/expiry /usr/bin/screen /usr/bin/ssh-agent /usr/bin/wall /usr/bin/write +2021-01-07 17:37:53 ==== +2021-01-07 17:37:53 Informational: package manager is used +2021-01-07 17:37:53 Test: Determine if this system is a virtual machine +2021-01-07 17:37:53 Result: facter utility not found +2021-01-07 17:37:53 Test: trying to guess virtualization technology with systemd-detect-virt +2021-01-07 17:37:53 Result: found kvm +2021-01-07 17:37:53 Result: skipped lscpu test, as we already found machine type +2021-01-07 17:37:53 Result: skipped dmidecode test, as we already found machine type +2021-01-07 17:37:53 Result: skipped processes test, as we already found platform +2021-01-07 17:37:53 Result: skipped Amazon EC2 test, as we already found platform +2021-01-07 17:37:53 Result: skipped sysctl test, as we already found platform +2021-01-07 17:37:53 Result: skipped lshw test, as we already found machine type +2021-01-07 17:37:53 Result: found virtual machine (type: kvm, KVM) +2021-01-07 17:37:53 Result: Lynis is not running in container +2021-01-07 17:37:53 Result: system is using systemd +2021-01-07 17:37:53 ==== +2021-01-07 17:37:53 Action: Performing plugin tests +2021-01-07 17:37:53 Searching plugins... +2021-01-07 17:37:53 Found plugin file: ./plugins/plugin_pam_phase1 +2021-01-07 17:37:53 Action: checking plugin status in profile: /home/ktdw73/scans/lynis/default.prf +2021-01-07 17:37:53 Result: plugin enabled in profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:53 Result: plugin pam is enabled +2021-01-07 17:37:53 Checking permissions of ./plugins/plugin_pam_phase1 +2021-01-07 17:37:53 File permissions are OK +2021-01-07 17:37:53 Including plugin file: ./plugins/plugin_pam_phase1 (version: 1.0.5) +2021-01-07 17:37:53 ==== +2021-01-07 17:37:53 Skipped test PLGN-0008 (Check PAM configuration (pwquality.conf)) +2021-01-07 17:37:53 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:53 ==== +2021-01-07 17:37:53 Performing test ID PLGN-0010 (Check PAM configuration) +2021-01-07 17:37:53 Result: /etc/pam.d exists +2021-01-07 17:37:53 Now checking PAM file /etc/pam.d/common-password +2021-01-07 17:37:53 Result: Found brackets in line, indicating multiple options for control flags: success=1 default=ignore +2021-01-07 17:37:53 Result: brackets used, ignoring control flags +2021-01-07 17:37:53 Result: using module pam_unix.so (other) with options obscure sha512 +2021-01-07 17:37:53 Result: found pam_unix.so module (generic) +2021-01-07 17:37:53 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:37:53 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:37:53 Now checking PAM file /etc/pam.d/chsh +2021-01-07 17:37:53 Result: using module pam_shells.so (required) without options configured +2021-01-07 17:37:53 Result: using module pam_rootok.so (sufficient) without options configured +2021-01-07 17:37:53 Now checking PAM file /etc/pam.d/sudo +2021-01-07 17:37:53 Now checking PAM file /etc/pam.d/sshd +2021-01-07 17:37:53 Result: using module pam_nologin.so (required) without options configured +2021-01-07 17:37:53 Result: Found brackets in line, indicating multiple options for control flags: success=ok ignore=ignore module_unknown=ignore default=bad +2021-01-07 17:37:53 Result: brackets used, ignoring control flags +2021-01-07 17:37:53 Result: using module pam_selinux.so (other) with options close +2021-01-07 17:37:53 Result: using module pam_loginuid.so (required) without options configured +2021-01-07 17:37:53 Result: using module pam_keyinit.so (optional) with options force revoke +2021-01-07 17:37:53 Result: using module pam_motd.so (optional) with options motd=/run/motd.dynamic +2021-01-07 17:37:53 Result: using module pam_motd.so (optional) with options noupdate +2021-01-07 17:37:53 Result: using module pam_mail.so (optional) with options standard noenv +2021-01-07 17:37:53 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:37:53 Result: using module pam_env.so (required) without options configured +2021-01-07 17:37:53 Result: using module pam_env.so (required) with options user_readenv=1 envfile=/etc/default/locale +2021-01-07 17:37:53 Result: Found brackets in line, indicating multiple options for control flags: success=ok ignore=ignore module_unknown=ignore default=bad +2021-01-07 17:37:53 Result: brackets used, ignoring control flags +2021-01-07 17:37:53 Result: using module pam_selinux.so (other) with options open +2021-01-07 17:37:53 Now checking PAM file /etc/pam.d/runuser +2021-01-07 17:37:53 Result: using module pam_rootok.so (sufficient) without options configured +2021-01-07 17:37:53 Result: using module pam_keyinit.so (optional) with options revoke +2021-01-07 17:37:53 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:37:53 Result: using module pam_unix.so (required) without options configured +2021-01-07 17:37:53 Result: found pam_unix.so module (generic) +2021-01-07 17:37:53 Now checking PAM file /etc/pam.d/newusers +2021-01-07 17:37:53 Now checking PAM file /etc/pam.d/other +2021-01-07 17:37:53 Now checking PAM file /etc/pam.d/systemd-user +2021-01-07 17:37:53 Result: using module pam_selinux.so (required) with options close +2021-01-07 17:37:53 Result: using module pam_selinux.so (required) with options nottys open +2021-01-07 17:37:53 Result: using module pam_loginuid.so (required) without options configured +2021-01-07 17:37:54 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:37:54 Result: using module pam_systemd.so (optional) without options configured +2021-01-07 17:37:54 Now checking PAM file /etc/pam.d/cron +2021-01-07 17:37:54 Result: using module pam_loginuid.so (required) without options configured +2021-01-07 17:37:54 Result: using module pam_env.so (required) without options configured +2021-01-07 17:37:54 Result: using module pam_env.so (required) with options envfile=/etc/default/locale +2021-01-07 17:37:54 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:37:54 Now checking PAM file /etc/pam.d/common-session +2021-01-07 17:37:54 Result: Found brackets in line, indicating multiple options for control flags: default=1 +2021-01-07 17:37:54 Result: brackets used, ignoring control flags +2021-01-07 17:37:54 Result: using module pam_permit.so (other) without options configured +2021-01-07 17:37:54 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:37:54 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:37:54 Result: using module pam_unix.so (required) without options configured +2021-01-07 17:37:54 Result: found pam_unix.so module (generic) +2021-01-07 17:37:54 Now checking PAM file /etc/pam.d/chfn +2021-01-07 17:37:54 Result: using module pam_rootok.so (sufficient) without options configured +2021-01-07 17:37:54 Now checking PAM file /etc/pam.d/su +2021-01-07 17:37:54 Result: using module pam_rootok.so (sufficient) without options configured +2021-01-07 17:37:54 Result: using module pam_env.so (required) with options readenv=1 +2021-01-07 17:37:54 Result: using module pam_env.so (required) with options readenv=1 envfile=/etc/default/locale +2021-01-07 17:37:54 Result: using module pam_mail.so (optional) with options nopen +2021-01-07 17:37:54 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:37:54 Now checking PAM file /etc/pam.d/chpasswd +2021-01-07 17:37:54 Now checking PAM file /etc/pam.d/passwd +2021-01-07 17:37:54 Now checking PAM file /etc/pam.d/common-session-noninteractive +2021-01-07 17:37:54 Result: Found brackets in line, indicating multiple options for control flags: default=1 +2021-01-07 17:37:54 Result: brackets used, ignoring control flags +2021-01-07 17:37:54 Result: using module pam_permit.so (other) without options configured +2021-01-07 17:37:54 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:37:54 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:37:54 Result: using module pam_unix.so (required) without options configured +2021-01-07 17:37:54 Result: found pam_unix.so module (generic) +2021-01-07 17:37:54 Now checking PAM file /etc/pam.d/common-auth +2021-01-07 17:37:54 Result: Found brackets in line, indicating multiple options for control flags: success=1 default=ignore +2021-01-07 17:37:54 Result: brackets used, ignoring control flags +2021-01-07 17:37:54 Result: using module pam_unix.so (other) with options nullok_secure +2021-01-07 17:37:54 Result: found pam_unix.so module (generic) +2021-01-07 17:37:55 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:37:55 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:37:55 Now checking PAM file /etc/pam.d/common-account +2021-01-07 17:37:55 Result: Found brackets in line, indicating multiple options for control flags: success=1 new_authtok_reqd=done default=ignore +2021-01-07 17:37:55 Result: brackets used, ignoring control flags +2021-01-07 17:37:55 Result: using module pam_unix.so (other) without options configured +2021-01-07 17:37:55 Result: found pam_unix.so module (generic) +2021-01-07 17:37:55 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:37:55 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:37:55 Now checking PAM file /etc/pam.d/login +2021-01-07 17:37:55 Result: using module pam_faildelay.so (optional) with options delay=3000000 +2021-01-07 17:37:55 Result: Found brackets in line, indicating multiple options for control flags: success=ok new_authtok_reqd=ok ignore=ignore user_unknown=bad default=die +2021-01-07 17:37:55 Result: brackets used, ignoring control flags +2021-01-07 17:37:55 Result: using module pam_securetty.so (other) without options configured +2021-01-07 17:37:55 Result: using module pam_nologin.so (requisite) without options configured +2021-01-07 17:37:55 Result: Found brackets in line, indicating multiple options for control flags: success=ok ignore=ignore module_unknown=ignore default=bad +2021-01-07 17:37:55 Result: brackets used, ignoring control flags +2021-01-07 17:37:55 Result: using module pam_selinux.so (other) with options close +2021-01-07 17:37:55 Result: using module pam_loginuid.so (required) without options configured +2021-01-07 17:37:55 Result: Found brackets in line, indicating multiple options for control flags: success=ok ignore=ignore module_unknown=ignore default=bad +2021-01-07 17:37:55 Result: brackets used, ignoring control flags +2021-01-07 17:37:55 Result: using module pam_selinux.so (other) with options open +2021-01-07 17:37:55 Result: using module pam_env.so (required) with options readenv=1 +2021-01-07 17:37:55 Result: using module pam_env.so (required) with options readenv=1 envfile=/etc/default/locale +2021-01-07 17:37:55 Result: using module pam_group.so (optional) without options configured +2021-01-07 17:37:55 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:37:55 Result: using module pam_lastlog.so (optional) without options configured +2021-01-07 17:37:55 Result: using module pam_motd.so (optional) with options motd=/run/motd.dynamic +2021-01-07 17:37:55 Result: using module pam_motd.so (optional) with options noupdate +2021-01-07 17:37:55 Result: using module pam_mail.so (optional) with options standard +2021-01-07 17:37:55 Result: using module pam_keyinit.so (optional) with options force revoke +2021-01-07 17:37:55 Now checking PAM file /etc/pam.d/runuser-l +2021-01-07 17:37:55 Result: using module pam_keyinit.so (optional) with options force revoke +2021-01-07 17:37:55 Result: using module pam_systemd.so (optional) without options configured +2021-01-07 17:37:55 [PAM] PAM 2F authentication enabled: 0 +2021-01-07 17:37:55 [PAM] PAM 2F authentication required: 0 +2021-01-07 17:37:55 [PAM] Authentication unlock time: not configured +2021-01-07 17:37:55 [PAM] Password brute force protection: 0 +2021-01-07 17:37:55 [PAM] Minimum password length: not configured +2021-01-07 17:37:55 [PAM] Password strength testing enabled: 0 +2021-01-07 17:37:55 [PAM] Password maximum retry: Not configured +2021-01-07 17:37:55 [PAM] Password history with pam_pwhistory IS NOT enabled +2021-01-07 17:37:55 [PAM] Password history with pam_unix IS NOT enabled +2021-01-07 17:37:55 ==== +2021-01-07 17:37:55 Result: pam plugin (phase 1) finished +2021-01-07 17:37:55 -- +2021-01-07 17:37:55 Found plugin file: ./plugins/plugin_systemd_phase1 +2021-01-07 17:37:55 Action: checking plugin status in profile: /home/ktdw73/scans/lynis/default.prf +2021-01-07 17:37:55 Result: plugin enabled in profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:37:55 Result: plugin systemd is enabled +2021-01-07 17:37:55 Checking permissions of ./plugins/plugin_systemd_phase1 +2021-01-07 17:37:55 File permissions are OK +2021-01-07 17:37:55 Including plugin file: ./plugins/plugin_systemd_phase1 (version: 1.0.4) +2021-01-07 17:37:55 ==== +2021-01-07 17:37:55 Performing test ID PLGN-3800 (Gather systemctl exit code) +2021-01-07 17:37:55 ==== +2021-01-07 17:37:55 Performing test ID PLGN-3802 (Query systemd version and options) +2021-01-07 17:37:55 Result: found systemd version 232 +2021-01-07 17:37:55 Result: found builtin components list +2021-01-07 17:37:55 ==== +2021-01-07 17:37:55 Performing test ID PLGN-3804 (Gather systemd unit files and their status) +2021-01-07 17:37:56 Result: found systemd unit files via systemctl list-unit-files +2021-01-07 17:37:56 Output: proc-sys-fs-binfmt_misc.automount|static| +2021-01-07 17:37:56 Output: -.mount|generated| +2021-01-07 17:37:56 Output: dev-hugepages.mount|static| +2021-01-07 17:37:56 Output: dev-mqueue.mount|static| +2021-01-07 17:37:56 Output: proc-sys-fs-binfmt_misc.mount|static| +2021-01-07 17:37:56 Output: sys-fs-fuse-connections.mount|static| +2021-01-07 17:37:56 Output: sys-kernel-config.mount|static| +2021-01-07 17:37:56 Output: sys-kernel-debug.mount|static| +2021-01-07 17:37:56 Output: acpid.path|enabled| +2021-01-07 17:37:56 Output: systemd-ask-password-console.path|static| +2021-01-07 17:37:56 Output: systemd-ask-password-wall.path|static| +2021-01-07 17:37:56 Output: acpid.service|disabled| +2021-01-07 17:37:56 Output: apt-daily-upgrade.service|static| +2021-01-07 17:37:56 Output: apt-daily.service|static| +2021-01-07 17:37:56 Output: autovt@.service|enabled| +2021-01-07 17:37:56 Output: bootlogd.service|masked| +2021-01-07 17:37:56 Output: bootlogs.service|masked| +2021-01-07 17:37:56 Output: bootmisc.service|masked| +2021-01-07 17:37:56 Output: checkfs.service|masked| +2021-01-07 17:37:56 Output: checkroot-bootclean.service|masked| +2021-01-07 17:37:56 Output: checkroot.service|masked| +2021-01-07 17:37:56 Output: console-getty.service|disabled| +2021-01-07 17:37:56 Output: container-getty@.service|static| +2021-01-07 17:37:56 Output: cron.service|enabled| +2021-01-07 17:37:56 Output: cryptdisks-early.service|masked| +2021-01-07 17:37:56 Output: cryptdisks.service|masked| +2021-01-07 17:37:56 Output: dbus-org.freedesktop.hostname1.service|static| +2021-01-07 17:37:56 Output: dbus-org.freedesktop.locale1.service|static| +2021-01-07 17:37:56 Output: dbus-org.freedesktop.login1.service|static| +2021-01-07 17:37:56 Output: dbus-org.freedesktop.network1.service|disabled| +2021-01-07 17:37:56 Output: dbus-org.freedesktop.resolve1.service|disabled| +2021-01-07 17:37:56 Output: dbus-org.freedesktop.timedate1.service|static| +2021-01-07 17:37:56 Output: debug-shell.service|disabled| +2021-01-07 17:37:56 Output: emergency.service|static| +2021-01-07 17:37:56 Output: expand-root.service|enabled| +2021-01-07 17:37:56 Output: fuse.service|masked| +2021-01-07 17:37:56 Output: getty-static.service|static| +2021-01-07 17:37:56 Output: getty@.service|enabled| +2021-01-07 17:37:56 Output: google-guest-agent.service|enabled| +2021-01-07 17:37:56 Output: google-osconfig-agent.service|enabled| +2021-01-07 17:37:56 Output: google-oslogin-cache.service|static| +2021-01-07 17:37:56 Output: google-shutdown-scripts.service|enabled| +2021-01-07 17:37:56 Output: google-startup-scripts.service|enabled| +2021-01-07 17:37:56 Output: halt.service|masked| +2021-01-07 17:37:56 Output: hostname.service|masked| +2021-01-07 17:37:56 Output: hwclock.service|masked| +2021-01-07 17:37:56 Output: ifup@.service|static| +2021-01-07 17:37:56 Output: initrd-cleanup.service|static| +2021-01-07 17:37:56 Output: initrd-parse-etc.service|static| +2021-01-07 17:37:56 Output: initrd-switch-root.service|static| +2021-01-07 17:37:56 Output: initrd-udevadm-cleanup-db.service|static| +2021-01-07 17:37:56 Output: killprocs.service|masked| +2021-01-07 17:37:56 Output: kmod-static-nodes.service|static| +2021-01-07 17:37:56 Output: kmod.service|static| +2021-01-07 17:37:56 Output: module-init-tools.service|static| +2021-01-07 17:37:56 Output: motd.service|masked| +2021-01-07 17:37:56 Output: mountall-bootclean.service|masked| +2021-01-07 17:37:56 Output: mountall.service|masked| +2021-01-07 17:37:56 Output: mountdevsubfs.service|masked| +2021-01-07 17:37:56 Output: mountkernfs.service|masked| +2021-01-07 17:37:56 Output: mountnfs-bootclean.service|masked| +2021-01-07 17:37:56 Output: mountnfs.service|masked| +2021-01-07 17:37:56 Output: networking.service|enabled| +2021-01-07 17:37:56 Output: ntp.service|generated| +2021-01-07 17:37:56 Output: procps.service|static| +2021-01-07 17:37:56 Output: quotaon.service|static| +2021-01-07 17:37:56 Output: rc-local.service|static| +2021-01-07 17:37:56 Output: rc.local.service|static| +2021-01-07 17:37:56 Output: rc.service|masked| +2021-01-07 17:37:56 Output: rcS.service|masked| +2021-01-07 17:37:56 Output: reboot.service|masked| +2021-01-07 17:37:56 Output: rescue.service|static| +2021-01-07 17:37:56 Output: rmnologin.service|masked| +2021-01-07 17:37:56 Output: rsync.service|enabled| +2021-01-07 17:37:56 Output: rsyslog.service|enabled| +2021-01-07 17:37:56 Output: screen-cleanup.service|masked| +2021-01-07 17:37:56 Output: sendsigs.service|masked| +2021-01-07 17:37:56 Output: serial-getty@.service|disabled| +2021-01-07 17:37:56 Output: single.service|masked| +2021-01-07 17:37:56 Output: ssh-generate-hostkeys.service|enabled| +2021-01-07 17:37:56 Output: ssh.service|enabled| +2021-01-07 17:37:56 Output: ssh@.service|static| +2021-01-07 17:37:56 Output: sshd.service|enabled| +2021-01-07 17:37:56 Output: stop-bootlogd-single.service|masked| +2021-01-07 17:37:56 Output: stop-bootlogd.service|masked| +2021-01-07 17:37:56 Output: sudo.service|disabled| +2021-01-07 17:37:56 Output: syslog.service|enabled| +2021-01-07 17:37:56 Output: systemd-ask-password-console.service|static| +2021-01-07 17:37:56 Output: systemd-ask-password-wall.service|static| +2021-01-07 17:37:56 Output: systemd-backlight@.service|static| +2021-01-07 17:37:56 Output: systemd-binfmt.service|static| +2021-01-07 17:37:56 Output: systemd-exit.service|static| +2021-01-07 17:37:56 Output: systemd-fsck-root.service|static| +2021-01-07 17:37:56 Output: systemd-fsck@.service|static| +2021-01-07 17:37:56 Output: systemd-fsckd.service|static| +2021-01-07 17:37:56 Output: systemd-halt.service|static| +2021-01-07 17:37:56 Output: systemd-hibernate-resume@.service|static| +2021-01-07 17:37:56 Output: systemd-hibernate.service|static| +2021-01-07 17:37:56 Output: systemd-hostnamed.service|static| +2021-01-07 17:37:56 Output: systemd-hwdb-update.service|static| +2021-01-07 17:37:56 Output: systemd-hybrid-sleep.service|static| +2021-01-07 17:37:56 Output: systemd-initctl.service|static| +2021-01-07 17:37:56 Output: systemd-journal-flush.service|static| +2021-01-07 17:37:56 Output: systemd-journald.service|static| +2021-01-07 17:37:56 Output: systemd-kexec.service|static| +2021-01-07 17:37:56 Output: systemd-localed.service|static| +2021-01-07 17:37:56 Output: systemd-logind.service|static| +2021-01-07 17:37:56 Output: systemd-machine-id-commit.service|static| +2021-01-07 17:37:56 Output: systemd-modules-load.service|static| +2021-01-07 17:37:56 Output: systemd-networkd-wait-online.service|disabled| +2021-01-07 17:37:56 Output: systemd-networkd.service|disabled| +2021-01-07 17:37:56 Output: systemd-poweroff.service|static| +2021-01-07 17:37:56 Output: systemd-quotacheck.service|static| +2021-01-07 17:37:56 Output: systemd-random-seed.service|static| +2021-01-07 17:37:56 Output: systemd-reboot.service|static| +2021-01-07 17:37:56 Output: systemd-remount-fs.service|static| +2021-01-07 17:37:56 Output: systemd-resolved.service|disabled| +2021-01-07 17:37:56 Output: systemd-rfkill.service|static| +2021-01-07 17:37:56 Output: systemd-suspend.service|static| +2021-01-07 17:37:56 Output: systemd-sysctl.service|static| +2021-01-07 17:37:56 Output: systemd-timedated.service|static| +2021-01-07 17:37:56 Output: systemd-timesyncd.service|enabled| +2021-01-07 17:37:56 Output: systemd-tmpfiles-clean.service|static| +2021-01-07 17:37:56 Output: systemd-tmpfiles-setup-dev.service|static| +2021-01-07 17:37:56 Output: systemd-tmpfiles-setup.service|static| +2021-01-07 17:37:56 Output: systemd-udev-settle.service|static| +2021-01-07 17:37:56 Output: systemd-udev-trigger.service|static| +2021-01-07 17:37:56 Output: systemd-udevd.service|static| +2021-01-07 17:37:56 Output: systemd-update-utmp-runlevel.service|static| +2021-01-07 17:37:56 Output: systemd-update-utmp.service|static| +2021-01-07 17:37:56 Output: systemd-user-sessions.service|static| +2021-01-07 17:37:56 Output: udev.service|static| +2021-01-07 17:37:56 Output: umountfs.service|masked| +2021-01-07 17:37:56 Output: umountnfs.service|masked| +2021-01-07 17:37:56 Output: umountroot.service|masked| +2021-01-07 17:37:56 Output: unattended-upgrades.service|enabled| +2021-01-07 17:37:56 Output: urandom.service|static| +2021-01-07 17:37:56 Output: user@.service|static| +2021-01-07 17:37:56 Output: uuidd.service|indirect| +2021-01-07 17:37:56 Output: x11-common.service|masked| +2021-01-07 17:37:56 Output: machine.slice|static| +2021-01-07 17:37:56 Output: system.slice|static| +2021-01-07 17:37:56 Output: user.slice|static| +2021-01-07 17:37:56 Output: acpid.socket|enabled| +2021-01-07 17:37:56 Output: ssh.socket|disabled| +2021-01-07 17:37:56 Output: syslog.socket|static| +2021-01-07 17:37:56 Output: systemd-fsckd.socket|static| +2021-01-07 17:37:56 Output: systemd-initctl.socket|static| +2021-01-07 17:37:56 Output: systemd-journald-audit.socket|static| +2021-01-07 17:37:56 Output: systemd-journald-dev-log.socket|static| +2021-01-07 17:37:56 Output: systemd-journald.socket|static| +2021-01-07 17:37:56 Output: systemd-networkd.socket|disabled| +2021-01-07 17:37:56 Output: systemd-rfkill.socket|static| +2021-01-07 17:37:56 Output: systemd-udevd-control.socket|static| +2021-01-07 17:37:56 Output: systemd-udevd-kernel.socket|static| +2021-01-07 17:37:56 Output: uuidd.socket|enabled| +2021-01-07 17:37:56 Output: basic.target|static| +2021-01-07 17:37:56 Output: bluetooth.target|static| +2021-01-07 17:37:56 Output: busnames.target|static| +2021-01-07 17:37:56 Output: cryptsetup-pre.target|static| +2021-01-07 17:37:56 Output: cryptsetup.target|static| +2021-01-07 17:37:56 Output: ctrl-alt-del.target|disabled| +2021-01-07 17:37:56 Output: default.target|static| +2021-01-07 17:37:56 Output: emergency.target|static| +2021-01-07 17:37:56 Output: exit.target|disabled| +2021-01-07 17:37:56 Output: final.target|static| +2021-01-07 17:37:56 Output: getty.target|static| +2021-01-07 17:37:56 Output: graphical.target|static| +2021-01-07 17:37:56 Output: halt.target|disabled| +2021-01-07 17:37:56 Output: hibernate.target|static| +2021-01-07 17:37:56 Output: hybrid-sleep.target|static| +2021-01-07 17:37:56 Output: initrd-fs.target|static| +2021-01-07 17:37:56 Output: initrd-root-device.target|static| +2021-01-07 17:37:56 Output: initrd-root-fs.target|static| +2021-01-07 17:37:56 Output: initrd-switch-root.target|static| +2021-01-07 17:37:56 Output: initrd.target|static| +2021-01-07 17:37:56 Output: kexec.target|disabled| +2021-01-07 17:37:56 Output: local-fs-pre.target|static| +2021-01-07 17:37:56 Output: local-fs.target|static| +2021-01-07 17:37:56 Output: multi-user.target|static| +2021-01-07 17:37:56 Output: network-online.target|static| +2021-01-07 17:37:56 Output: network-pre.target|static| +2021-01-07 17:37:56 Output: network.target|static| +2021-01-07 17:37:56 Output: nss-lookup.target|static| +2021-01-07 17:37:56 Output: nss-user-lookup.target|static| +2021-01-07 17:37:56 Output: paths.target|static| +2021-01-07 17:37:56 Output: poweroff.target|disabled| +2021-01-07 17:37:56 Output: printer.target|static| +2021-01-07 17:37:56 Output: reboot.target|disabled| +2021-01-07 17:37:56 Output: remote-fs-pre.target|static| +2021-01-07 17:37:56 Output: remote-fs.target|enabled| +2021-01-07 17:37:56 Output: rescue.target|disabled| +2021-01-07 17:37:56 Output: rpcbind.target|static| +2021-01-07 17:37:56 Output: runlevel0.target|disabled| +2021-01-07 17:37:56 Output: runlevel1.target|disabled| +2021-01-07 17:37:56 Output: runlevel2.target|static| +2021-01-07 17:37:56 Output: runlevel3.target|static| +2021-01-07 17:37:56 Output: runlevel4.target|static| +2021-01-07 17:37:56 Output: runlevel5.target|static| +2021-01-07 17:37:56 Output: runlevel6.target|disabled| +2021-01-07 17:37:56 Output: shutdown.target|static| +2021-01-07 17:37:56 Output: sigpwr.target|static| +2021-01-07 17:37:56 Output: sleep.target|static| +2021-01-07 17:37:56 Output: slices.target|static| +2021-01-07 17:37:56 Output: smartcard.target|static| +2021-01-07 17:37:56 Output: sockets.target|static| +2021-01-07 17:37:56 Output: sound.target|static| +2021-01-07 17:37:56 Output: suspend.target|static| +2021-01-07 17:37:56 Output: swap.target|static| +2021-01-07 17:37:56 Output: sysinit.target|static| +2021-01-07 17:37:56 Output: system-update.target|static| +2021-01-07 17:37:56 Output: time-sync.target|static| +2021-01-07 17:37:56 Output: timers.target|static| +2021-01-07 17:37:56 Output: umount.target|static| +2021-01-07 17:37:56 Output: apt-daily-upgrade.timer|enabled| +2021-01-07 17:37:56 Output: apt-daily.timer|enabled| +2021-01-07 17:37:56 Output: google-oslogin-cache.timer|enabled| +2021-01-07 17:37:56 Output: systemd-tmpfiles-clean.timer|static| +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID PLGN-3806 (Gather failed systemd units) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID PLGN-3808 (Gather systemd machine ID) +2021-01-07 17:37:56 Result: found machine ID: a66b25c544c2fc51bc4a5dae2b809331 +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID PLGN-3810 (Query main systemd binaries) +2021-01-07 17:37:56 Result: no binaries found in /usr/lib/systemd +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID PLGN-3812 (Query journal for boot related information) +2021-01-07 17:37:56 Output: number of boots listed in journal is 1 +2021-01-07 17:37:56 Output: oldest boot date in journal is 2021-01-07 +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID PLGN-3814 (Verify journal integrity) +2021-01-07 17:37:56 Result: systemd journal has no errors +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID PLGN-3816 (Query journal for boot related information) +2021-01-07 17:37:56 Result: journals are 4.9M in size +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID PLGN-3818 (Query journal meta data) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID PLGN-3820 (Check for journal FSS configuration) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID PLGN-3830 (Query systemd status) +2021-01-07 17:37:56 Result: found systemd status = running +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID PLGN-3832 (Query systemd status for processes which can not be found) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID PLGN-3834 (Collect service units which can not be found in systemd) +2021-01-07 17:37:56 Result: found one or more services with faulty state +2021-01-07 17:37:56 Result: service seems to be faulty (not-found) apparmor.service +2021-01-07 17:37:56 Result: service seems to be faulty (not-found) auditd.service +2021-01-07 17:37:56 Result: service seems to be faulty (not-found) display-manager.service +2021-01-07 17:37:56 Result: service seems to be faulty (not-found) network.service +2021-01-07 17:37:56 Result: service seems to be faulty (not-found) NetworkManager.service +2021-01-07 17:37:56 Result: service seems to be faulty (not-found) plymouth-quit-wait.service +2021-01-07 17:37:56 Result: service seems to be faulty (not-found) plymouth-start.service +2021-01-07 17:37:56 Result: service seems to be faulty (not-found) systemd-sysusers.service +2021-01-07 17:37:56 Result: service seems to be faulty (not-found) systemd-update-done.service +2021-01-07 17:37:56 Result: service seems to be faulty (not-found) systemd-vconsole-setup.service +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID PLGN-3856 (Check if systemd-coredump is used) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID PLGN-3860 (Query coredumps from journals since Yesterday) +2021-01-07 17:37:56 Result: found no coredumps +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Result: systemd plugin (phase 1) finished +2021-01-07 17:37:56 -- +2021-01-07 17:37:56 Result: Found 2 plugins of which 2 are enabled +2021-01-07 17:37:56 Result: Plugins phase 1 finished +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Info: using hardware address 42:01:0a:9c:00:06 to create ID +2021-01-07 17:37:56 Result: Found HostID: 466ad4432c544245a47e41f2a41d247da252b5ad +2021-01-07 17:37:56 Info: creating a HostID (version 2) +2021-01-07 17:37:56 Result: found file ssh_host_ed25519_key.pub in /etc/ssh, using that to create host identifier +2021-01-07 17:37:56 Using SSH public key to create the second host identifier +2021-01-07 17:37:56 Hash (hostname): 90252b286478f264c25d2c2658e6e43ef1051eddb6581b4bbfb6ee2ba8356d71 +2021-01-07 17:37:56 Hash (ssh or machineid): 3ecc6b2399833ea32698bac064848b8804f3ad85ccd0987d01ced99b6335024b +2021-01-07 17:37:56 Info: found valid HostID 466ad4432c544245a47e41f2a41d247da252b5ad +2021-01-07 17:37:56 Info: no machine ID found +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Info: perform tests from all categories +2021-01-07 17:37:56 Security check: file is normal +2021-01-07 17:37:56 Checking permissions of /home/ktdw73/scans/lynis/include/tests_boot_services +2021-01-07 17:37:56 File permissions are OK +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Action: Performing tests from category: Boot and services +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Skipped test BOOT-5102 (Check for AIX boot device) +2021-01-07 17:37:56 Reason to skip: Incorrect guest OS (AIX only) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID BOOT-5104 (Determine service manager) +2021-01-07 17:37:56 Result: cmdline found = /sbin/init +2021-01-07 17:37:56 Result: file on disk = /sbin/init +2021-01-07 17:37:56 Action: checking symlink for file /sbin/init +2021-01-07 17:37:56 Note: Using real readlink binary to determine symlink on /sbin/init +2021-01-07 17:37:56 Result: readlink shows /lib/systemd/systemd as output +2021-01-07 17:37:56 Result: symlink found, pointing to file /lib/systemd/systemd +2021-01-07 17:37:56 Found: systemd +2021-01-07 17:37:56 Result: service manager found = systemd +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Skipped test BOOT-5106 (Check EFI boot file on Mac OS X/macOS) +2021-01-07 17:37:56 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID BOOT-5108 (Check Syslinux as bootloader) +2021-01-07 17:37:56 Test: checking if file /boot/syslinux/syslinux.cfg exists +2021-01-07 17:37:56 Result: file /boot/syslinux/syslinux.cfg NOT found +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID BOOT-5109 (Check rEFInd as bootloader) +2021-01-07 17:37:56 Test: checking if file /boot/refind_linux.conf exists +2021-01-07 17:37:56 Result: file /boot/refind_linux.conf NOT found +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID BOOT-5116 (Check if system is booted in UEFI mode) +2021-01-07 17:37:56 Test: checking if UEFI is used +2021-01-07 17:37:56 Result: UEFI not used, can't find /sys/firmware/efi directory +2021-01-07 17:37:56 Test: determine if Secure Boot is used +2021-01-07 17:37:56 Result: system not booted with Secure Boot (no SecureBoot file found) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Skipped test BOOT-5117 (Check for systemd-boot bootloader presence) +2021-01-07 17:37:56 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID BOOT-5121 (Check for GRUB boot loader presence) +2021-01-07 17:37:56 Test: Checking for presence GRUB conf file (/boot/grub/grub.conf or /boot/grub/menu.lst) +2021-01-07 17:37:56 Result: found GRUB2 configuration file (/boot/grub/grub.cfg) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID BOOT-5122 (Check for GRUB boot password) +2021-01-07 17:37:56 Found file /boot/grub/grub.cfg, proceeding with tests. +2021-01-07 17:37:56 Test: check if we can access /boot/grub/grub.cfg (escaped: /boot/grub/grub.cfg) +2021-01-07 17:37:56 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:37:56 Result: file /boot/grub/grub.cfg is readable (or directory accessible). +2021-01-07 17:37:56 Result: did not find hashed password line in this file +2021-01-07 17:37:56 Result: File '/boot/grub/custom.cfg' does not exist +2021-01-07 17:37:56 Found file /etc/grub.d/00_header, proceeding with tests. +2021-01-07 17:37:56 Test: check if we can access /etc/grub.d/00_header (escaped: /etc/grub.d/00_header) +2021-01-07 17:37:56 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:37:56 Result: file /etc/grub.d/00_header is readable (or directory accessible). +2021-01-07 17:37:56 Result: did not find hashed password line in this file +2021-01-07 17:37:56 Found file /etc/grub.d/40_custom, proceeding with tests. +2021-01-07 17:37:56 Test: check if we can access /etc/grub.d/40_custom (escaped: /etc/grub.d/40_custom) +2021-01-07 17:37:56 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:37:56 Result: file /etc/grub.d/40_custom is readable (or directory accessible). +2021-01-07 17:37:56 Result: did not find hashed password line in this file +2021-01-07 17:37:56 Found file /etc/grub.d/05_debian_theme, proceeding with tests. +2021-01-07 17:37:56 Test: check if we can access /etc/grub.d/05_debian_theme (escaped: /etc/grub.d/05_debian_theme) +2021-01-07 17:37:56 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:37:56 Result: file /etc/grub.d/05_debian_theme is readable (or directory accessible). +2021-01-07 17:37:56 Result: did not find hashed password line in this file +2021-01-07 17:37:56 Found file /etc/grub.d/30_os-prober, proceeding with tests. +2021-01-07 17:37:56 Test: check if we can access /etc/grub.d/30_os-prober (escaped: /etc/grub.d/30_os-prober) +2021-01-07 17:37:56 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:37:56 Result: file /etc/grub.d/30_os-prober is readable (or directory accessible). +2021-01-07 17:37:56 Result: did not find hashed password line in this file +2021-01-07 17:37:56 Found file /etc/grub.d/10_linux, proceeding with tests. +2021-01-07 17:37:56 Test: check if we can access /etc/grub.d/10_linux (escaped: /etc/grub.d/10_linux) +2021-01-07 17:37:56 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:37:56 Result: file /etc/grub.d/10_linux is readable (or directory accessible). +2021-01-07 17:37:56 Result: did not find hashed password line in this file +2021-01-07 17:37:56 Found file /etc/grub.d/41_custom, proceeding with tests. +2021-01-07 17:37:56 Test: check if we can access /etc/grub.d/41_custom (escaped: /etc/grub.d/41_custom) +2021-01-07 17:37:56 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:37:56 Result: file /etc/grub.d/41_custom is readable (or directory accessible). +2021-01-07 17:37:56 Result: did not find hashed password line in this file +2021-01-07 17:37:56 Found file /etc/grub.d/30_uefi-firmware, proceeding with tests. +2021-01-07 17:37:56 Test: check if we can access /etc/grub.d/30_uefi-firmware (escaped: /etc/grub.d/30_uefi-firmware) +2021-01-07 17:37:56 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:37:56 Result: file /etc/grub.d/30_uefi-firmware is readable (or directory accessible). +2021-01-07 17:37:56 Result: did not find hashed password line in this file +2021-01-07 17:37:56 Found file /etc/grub.d/20_linux_xen, proceeding with tests. +2021-01-07 17:37:56 Test: check if we can access /etc/grub.d/20_linux_xen (escaped: /etc/grub.d/20_linux_xen) +2021-01-07 17:37:56 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:37:56 Result: file /etc/grub.d/20_linux_xen is readable (or directory accessible). +2021-01-07 17:37:56 Result: did not find hashed password line in this file +2021-01-07 17:37:56 Result: Didn't find hashed password line in GRUB configuration +2021-01-07 17:37:56 Suggestion: Set a password on GRUB boot loader to prevent altering boot configuration (e.g. boot in single user mode without password) [test:BOOT-5122] [details:-] [solution:-] +2021-01-07 17:37:56 Hardening: assigned partial number of hardening points (0 of 2). Currently having 0 points (out of 2) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Skipped test BOOT-5124 (Check for FreeBSD boot loader presence) +2021-01-07 17:37:56 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Skipped test BOOT-5261 (Check for DragonFly boot loader presence) +2021-01-07 17:37:56 Reason to skip: Incorrect guest OS (DragonFly only) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Skipped test BOOT-5126 (Check for NetBSD boot loader presence) +2021-01-07 17:37:56 Reason to skip: Incorrect guest OS (NetBSD only) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID BOOT-5139 (Check for LILO boot loader presence) +2021-01-07 17:37:56 Test: checking for presence LILO configuration file +2021-01-07 17:37:56 Result: LILO configuration file not found +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID BOOT-5142 (Check SPARC Improved boot loader (SILO)) +2021-01-07 17:37:56 Result: no SILO configuration file found. +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID BOOT-5155 (Check for YABOOT boot loader configuration file) +2021-01-07 17:37:56 Test: Check for /etc/yaboot.conf +2021-01-07 17:37:56 Result: no YABOOT configuration file found. +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Skipped test BOOT-5159 (Check for OpenBSD boot loader presence) +2021-01-07 17:37:56 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Skipped test BOOT-5165 (Check for FreeBSD boot services) +2021-01-07 17:37:56 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Skipped test BOOT-5170 (Check for Solaris boot daemons) +2021-01-07 17:37:56 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID BOOT-5177 (Check for Linux boot and running services) +2021-01-07 17:37:56 Test: checking presence systemctl binary +2021-01-07 17:37:56 Result: systemctl binary found, trying that to discover information +2021-01-07 17:37:56 Searching for running services (systemctl services only) +2021-01-07 17:37:56 Found running service: acpid +2021-01-07 17:37:56 Found running service: cron +2021-01-07 17:37:56 Found running service: getty@tty1 +2021-01-07 17:37:56 Found running service: getty@tty2 +2021-01-07 17:37:56 Found running service: getty@tty3 +2021-01-07 17:37:56 Found running service: getty@tty4 +2021-01-07 17:37:56 Found running service: getty@tty5 +2021-01-07 17:37:56 Found running service: getty@tty6 +2021-01-07 17:37:56 Found running service: google-guest-agent +2021-01-07 17:37:56 Found running service: google-osconfig-agent +2021-01-07 17:37:56 Found running service: ntp +2021-01-07 17:37:56 Found running service: rsyslog +2021-01-07 17:37:56 Found running service: serial-getty@ttyS0 +2021-01-07 17:37:56 Found running service: ssh +2021-01-07 17:37:56 Found running service: systemd-journald +2021-01-07 17:37:56 Found running service: systemd-udevd +2021-01-07 17:37:56 Hint: Run systemctl --full --type=service to see all services +2021-01-07 17:37:56 Result: Found 16 running services +2021-01-07 17:37:56 Searching for enabled services (systemctl services only) +2021-01-07 17:37:56 Found enabled service at boot: autovt@ +2021-01-07 17:37:56 Found enabled service at boot: cron +2021-01-07 17:37:56 Found enabled service at boot: expand-root +2021-01-07 17:37:56 Found enabled service at boot: getty@ +2021-01-07 17:37:56 Found enabled service at boot: google-guest-agent +2021-01-07 17:37:56 Found enabled service at boot: google-osconfig-agent +2021-01-07 17:37:56 Found enabled service at boot: google-shutdown-scripts +2021-01-07 17:37:56 Found enabled service at boot: google-startup-scripts +2021-01-07 17:37:56 Found enabled service at boot: networking +2021-01-07 17:37:56 Found enabled service at boot: rsync +2021-01-07 17:37:56 Found enabled service at boot: rsyslog +2021-01-07 17:37:56 Found enabled service at boot: ssh-generate-hostkeys +2021-01-07 17:37:56 Found enabled service at boot: ssh +2021-01-07 17:37:56 Found enabled service at boot: sshd +2021-01-07 17:37:56 Found enabled service at boot: syslog +2021-01-07 17:37:56 Found enabled service at boot: systemd-timesyncd +2021-01-07 17:37:56 Found enabled service at boot: unattended-upgrades +2021-01-07 17:37:56 Hint: Run systemctl list-unit-files --type=service to see all services +2021-01-07 17:37:56 Result: Found 17 enabled services +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID BOOT-5180 (Check for Linux boot services (Debian style)) +2021-01-07 17:37:56 Result: found runlevel 5 +2021-01-07 17:37:56 Result: skipping further actions +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID BOOT-5184 (Check permissions for boot files/scripts) +2021-01-07 17:37:56 Result: checking /etc/init.d scripts for writable bit +2021-01-07 17:37:56 Test: checking if directory /etc/init.d exists +2021-01-07 17:37:56 Result: directory /etc/init.d found +2021-01-07 17:37:56 Test: checking for available files in directory +2021-01-07 17:37:56 Result: found files in directory, checking permissions now +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/acpid +2021-01-07 17:37:56 Result: good, file /etc/init.d/acpid not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/cron +2021-01-07 17:37:56 Result: good, file /etc/init.d/cron not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/hwclock.sh +2021-01-07 17:37:56 Result: good, file /etc/init.d/hwclock.sh not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/kmod +2021-01-07 17:37:56 Result: good, file /etc/init.d/kmod not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/networking +2021-01-07 17:37:56 Result: good, file /etc/init.d/networking not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/ntp +2021-01-07 17:37:56 Result: good, file /etc/init.d/ntp not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/procps +2021-01-07 17:37:56 Result: good, file /etc/init.d/procps not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/rsync +2021-01-07 17:37:56 Result: good, file /etc/init.d/rsync not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/rsyslog +2021-01-07 17:37:56 Result: good, file /etc/init.d/rsyslog not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/screen-cleanup +2021-01-07 17:37:56 Result: good, file /etc/init.d/screen-cleanup not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/ssh +2021-01-07 17:37:56 Result: good, file /etc/init.d/ssh not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/ssh-generate-hostkeys +2021-01-07 17:37:56 Result: good, file /etc/init.d/ssh-generate-hostkeys not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/sudo +2021-01-07 17:37:56 Result: good, file /etc/init.d/sudo not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/udev +2021-01-07 17:37:56 Result: good, file /etc/init.d/udev not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/unattended-upgrades +2021-01-07 17:37:56 Result: good, file /etc/init.d/unattended-upgrades not world writable +2021-01-07 17:37:56 Test: checking permissions of file /etc/init.d/uuidd +2021-01-07 17:37:56 Result: good, file /etc/init.d/uuidd not world writable +2021-01-07 17:37:56 Test: checking if directory /etc/rc.d exists +2021-01-07 17:37:56 Result: directory /etc/rc.d not found. Skipping.. +2021-01-07 17:37:56 Test: checking if directory /etc/rcS.d exists +2021-01-07 17:37:56 Result: directory /etc/rcS.d found +2021-01-07 17:37:56 Test: checking for available files in directory +2021-01-07 17:37:56 Result: found no files in directory. +2021-01-07 17:37:56 Test: Checking /etc/rc0.d scripts for writable bit +2021-01-07 17:37:56 Test: Checking /etc/rc1.d scripts for writable bit +2021-01-07 17:37:56 Test: Checking /etc/rc2.d scripts for writable bit +2021-01-07 17:37:56 Test: Checking /etc/rc3.d scripts for writable bit +2021-01-07 17:37:56 Test: Checking /etc/rc4.d scripts for writable bit +2021-01-07 17:37:56 Test: Checking /etc/rc5.d scripts for writable bit +2021-01-07 17:37:56 Test: Checking /etc/rc6.d scripts for writable bit +2021-01-07 17:37:56 Hardening: assigned maximum number of hardening points for this item (3). Currently having 3 points (out of 5) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID BOOT-5202 (Check uptime of system) +2021-01-07 17:37:56 Uptime (in seconds): 1064 +2021-01-07 17:37:56 Uptime (in days): 0 +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID BOOT-5260 (Check single user mode for systemd) +2021-01-07 17:37:56 Test: Searching /usr/lib/systemd/system/rescue.service +2021-01-07 17:37:56 Result: file /usr/lib/systemd/system/rescue.service does not exist +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Skipped test BOOT-5262 (Check for OpenBSD boot daemons) +2021-01-07 17:37:56 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Skipped test BOOT-5263 (Check permissions for boot files/scripts) +2021-01-07 17:37:56 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Skipped test BOOT-5264 (Run systemd-analyze security) +2021-01-07 17:37:56 Reason to skip: systemd-analyze too old (v232), need at least v240 +2021-01-07 17:37:56 Security check: file is normal +2021-01-07 17:37:56 Checking permissions of /home/ktdw73/scans/lynis/include/tests_kernel +2021-01-07 17:37:56 File permissions are OK +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Action: Performing tests from category: Kernel +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID KRNL-5622 (Determine Linux default run level) +2021-01-07 17:37:56 Test: Checking for systemd default.target +2021-01-07 17:37:56 Result: no systemd found, so trying inittab +2021-01-07 17:37:56 Test: Checking /etc/inittab +2021-01-07 17:37:56 Result: file /etc/inittab not found +2021-01-07 17:37:56 Test: Checking run level with who -r, for Debian based systems +2021-01-07 17:37:56 Result: Found default run level '5' +2021-01-07 17:37:56 ==== +2021-01-07 17:37:56 Performing test ID KRNL-5677 (Check CPU options and support) +2021-01-07 17:37:56 Test: Checking /proc/cpuinfo +2021-01-07 17:37:56 Result: found /proc/cpuinfo +2021-01-07 17:37:56 Test: Checking CPU options (XD/NX/PAE) +2021-01-07 17:37:57 PAE: Yes +2021-01-07 17:37:57 NX: Yes +2021-01-07 17:37:57 Result: PAE or No eXecute option(s) both found +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID KRNL-5695 (Determine Linux kernel version and release number) +2021-01-07 17:37:57 Result: found kernel release 4.9.0-14-amd64 +2021-01-07 17:37:57 Result: found kernel version #1 SMP Debian 4.9.240-2 (2020-10-30) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID KRNL-5723 (Determining if Linux kernel is monolithic) +2021-01-07 17:37:57 Test: checking if kernel is monolithic or modular +2021-01-07 17:37:57 Result: Found modular kernel +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID KRNL-5726 (Checking Linux loaded kernel modules) +2021-01-07 17:37:57 Loaded modules according lsmod: +2021-01-07 17:37:57 Loaded module: ablk_helper +2021-01-07 17:37:57 Loaded module: aes_x86_64 +2021-01-07 17:37:57 Loaded module: aesni_intel +2021-01-07 17:37:57 Loaded module: autofs4 +2021-01-07 17:37:57 Loaded module: button +2021-01-07 17:37:57 Loaded module: crc16 +2021-01-07 17:37:57 Loaded module: crc32_pclmul +2021-01-07 17:37:57 Loaded module: crc32c_generic +2021-01-07 17:37:57 Loaded module: crc32c_intel +2021-01-07 17:37:57 Loaded module: crct10dif_pclmul +2021-01-07 17:37:57 Loaded module: cryptd +2021-01-07 17:37:57 Loaded module: ecb +2021-01-07 17:37:57 Loaded module: edac_core +2021-01-07 17:37:57 Loaded module: evdev +2021-01-07 17:37:57 Loaded module: ext4 +2021-01-07 17:37:57 Loaded module: fscrypto +2021-01-07 17:37:57 Loaded module: gf128mul +2021-01-07 17:37:57 Loaded module: ghash_clmulni_intel +2021-01-07 17:37:57 Loaded module: glue_helper +2021-01-07 17:37:57 Loaded module: i2c_piix4 +2021-01-07 17:37:57 Loaded module: intel_rapl_perf +2021-01-07 17:37:57 Loaded module: ip_tables +2021-01-07 17:37:57 Loaded module: jbd2 +2021-01-07 17:37:57 Loaded module: lrw +2021-01-07 17:37:57 Loaded module: mbcache +2021-01-07 17:37:57 Loaded module: psmouse +2021-01-07 17:37:57 Loaded module: pvpanic +2021-01-07 17:37:57 Loaded module: rng_core +2021-01-07 17:37:57 Loaded module: sb_edac +2021-01-07 17:37:57 Loaded module: scsi_mod +2021-01-07 17:37:57 Loaded module: sd_mod +2021-01-07 17:37:57 Loaded module: serio_raw +2021-01-07 17:37:57 Loaded module: sg +2021-01-07 17:37:57 Loaded module: virtio +2021-01-07 17:37:57 Loaded module: virtio_balloon +2021-01-07 17:37:57 Loaded module: virtio_net +2021-01-07 17:37:57 Loaded module: virtio_pci +2021-01-07 17:37:57 Loaded module: virtio_ring +2021-01-07 17:37:57 Loaded module: virtio_rng +2021-01-07 17:37:57 Loaded module: virtio_scsi +2021-01-07 17:37:57 Loaded module: x_tables +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID KRNL-5728 (Checking Linux kernel config) +2021-01-07 17:37:57 Result: found config (/boot/config-4.9.0-14-amd64) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID KRNL-5730 (Checking disk I/O kernel scheduler) +2021-01-07 17:37:57 Test: Checking the default I/O kernel scheduler +2021-01-07 17:37:57 Result: found IO scheduler 'cfq' +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Skipped test KRNL-5745 (Checking FreeBSD loaded kernel modules) +2021-01-07 17:37:57 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Skipped test KRNL-5831 (Checking DragonFly loaded kernel modules) +2021-01-07 17:37:57 Reason to skip: Incorrect guest OS (DragonFly only) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Skipped test KRNL-5770 (Checking active kernel modules) +2021-01-07 17:37:57 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID KRNL-5788 (Checking availability new Linux kernel) +2021-01-07 17:37:57 Test: Searching apt-cache, to determine if a newer kernel is available +2021-01-07 17:37:57 Result: found /usr/bin/apt-cache +2021-01-07 17:37:57 Test: checking presence of /vmlinuz or /boot/vmlinuz +2021-01-07 17:37:57 Result: found /vmlinuz +2021-01-07 17:37:57 Test: checking readlink location of /vmlinuz +2021-01-07 17:37:57 Output: readlink reported file /boot/vmlinuz-4.9.0-14-amd64 +2021-01-07 17:37:57 Test: checking package from dpkg -S +2021-01-07 17:37:57 Output: dpkg -S reported package linux-image-4.9.0-14-amd64 +2021-01-07 17:37:57 Test: Using apt-cache policy to determine if there is an update available +2021-01-07 17:37:57 Kernel installed: 4.9.240-2 +2021-01-07 17:37:57 Kernel candidate: 4.9.246-2 +2021-01-07 17:37:57 Result: kernel update available according 'apt-cache policy'. +2021-01-07 17:37:57 Suggestion: Determine priority for available kernel update [test:KRNL-5788] [details:-] [solution:-] +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID KRNL-5820 (Checking core dumps configuration) +2021-01-07 17:37:57 Test: Checking presence of systemd +2021-01-07 17:37:57 Result: systemd is present on this system +2021-01-07 17:37:57 Test: Checking if core dumps are disabled in /etc/systemd/coredump.conf and /etc/systemd/coredump.conf.d/*.conf +2021-01-07 17:37:57 Result: core dumps are not disabled in systemd configuration. Didn't find settings 'ProcessSizeMax=0' and 'Storage=none' +2021-01-07 17:37:57 Hardening: assigned partial number of hardening points (0 of 1). Currently having 3 points (out of 6) +2021-01-07 17:37:57 Test: Checking presence /etc/profile +2021-01-07 17:37:57 Test: Checking if 'ulimit -c 0' exists in /etc/profile or /etc/profile.d/*.sh +2021-01-07 17:37:57 Result: core dumps are not disabled in /etc/profile or /etc/profile.d/*.sh config files. Didn't find setting 'ulimit -c 0' +2021-01-07 17:37:57 Hardening: assigned partial number of hardening points (0 of 1). Currently having 3 points (out of 7) +2021-01-07 17:37:57 Test: Checking presence /etc/security/limits.conf +2021-01-07 17:37:57 Result: file /etc/security/limits.conf exists +2021-01-07 17:37:57 Test: Checking if core dumps are disabled in /etc/security/limits.conf and /etc/security/limits.d/* +2021-01-07 17:37:57 Result: core dumps are not explicitly disabled +2021-01-07 17:37:57 Suggestion: If not required, consider explicit disabling of core dump in /etc/security/limits.conf file [test:KRNL-5820] [details:-] [solution:-] +2021-01-07 17:37:57 Hardening: assigned partial number of hardening points (1 of 3). Currently having 4 points (out of 10) +2021-01-07 17:37:57 Test: Checking sysctl value of fs.suid_dumpable +2021-01-07 17:37:57 Result: value 0 found +2021-01-07 17:37:57 Result: found default option (0), no execute only program or program with changed privilege levels can dump +2021-01-07 17:37:57 Hardening: assigned maximum number of hardening points for this item (1). Currently having 5 points (out of 11) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID KRNL-5830 (Checking if system is running on the latest installed kernel) +2021-01-07 17:37:57 Test: Checking presence /var/run/reboot-required.pkgs +2021-01-07 17:37:57 Result: file /var/run/reboot-required.pkgs not found +2021-01-07 17:37:57 Result: /boot exists, performing more tests from here +2021-01-07 17:37:57 Result: found /boot/vmlinuz-4.9.0-14-amd64 +2021-01-07 17:37:57 Result: version derived from file name is '4.9.0-14-amd64' +2021-01-07 17:37:57 Result: found version 4.9.0-14-amd64 +2021-01-07 17:37:57 Result: active kernel version 4.9.0-14-amd64 +2021-01-07 17:37:57 Result: no reboot needed, active kernel is the same version as the one on disk +2021-01-07 17:37:57 Result: /var/cache/apt/archives/ does not exist +2021-01-07 17:37:57 Hardening: assigned maximum number of hardening points for this item (5). Currently having 10 points (out of 16) +2021-01-07 17:37:57 Security check: file is normal +2021-01-07 17:37:57 Checking permissions of /home/ktdw73/scans/lynis/include/tests_memory_processes +2021-01-07 17:37:57 File permissions are OK +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Action: Performing tests from category: Memory and Processes +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID PROC-3602 (Checking /proc/meminfo for memory details) +2021-01-07 17:37:57 Result: found /proc/meminfo +2021-01-07 17:37:57 Result: Found 4050856 kB memory +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Skipped test PROC-3604 (Query prtconf for memory details) +2021-01-07 17:37:57 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID PROC-3612 (Check dead or zombie processes) +2021-01-07 17:37:57 Result: no zombie processes found +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID PROC-3614 (Check heavy IO waiting based processes) +2021-01-07 17:37:57 Result: No processes were waiting for IO requests to be handled first +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID PROC-3802 (Check presence of prelink tooling) +2021-01-07 17:37:57 Result: prelink package is NOT installed +2021-01-07 17:37:57 Hardening: assigned maximum number of hardening points for this item (3). Currently having 13 points (out of 19) +2021-01-07 17:37:57 Security check: file is normal +2021-01-07 17:37:57 Checking permissions of /home/ktdw73/scans/lynis/include/tests_authentication +2021-01-07 17:37:57 File permissions are OK +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Action: Performing tests from category: Users, Groups and Authentication +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9204 (Check users with an UID of zero) +2021-01-07 17:37:57 Test: Searching accounts with UID 0 +2021-01-07 17:37:57 Result: No accounts found with UID 0 other than root. +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9208 (Check non-unique accounts in passwd file) +2021-01-07 17:37:57 Test: Checking for non-unique accounts +2021-01-07 17:37:57 Result: all accounts found in /etc/passwd are unique +2021-01-07 17:37:57 Remarks: Non unique UIDs can be a risk for the system or part of a configuration mistake +2021-01-07 17:37:57 Prerequisite test: /usr/sbin/chkgrp +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Skipped test AUTH-9212 (Test group file) +2021-01-07 17:37:57 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9216 (Check group and shadow group files) +2021-01-07 17:37:57 Test: Checking for grpck binary output +2021-01-07 17:37:57 Result: grpck binary didn't find any errors in the group files +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Skipped test AUTH-9218 (Check login shells for passwordless accounts) +2021-01-07 17:37:57 Reason to skip: Incorrect guest OS (DragonFly FreeBSD NetBSD OpenBSD only) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9222 (Check unique groups (IDs)) +2021-01-07 17:37:57 Test: Checking for non unique group ID's in /etc/group +2021-01-07 17:37:57 Result: All group ID's are unique +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9226 (Check unique group names) +2021-01-07 17:37:57 Test: Checking for non unique group names in /etc/group +2021-01-07 17:37:57 Result: All group names are unique +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9228 (Check password file consistency with pwck) +2021-01-07 17:37:57 Test: Checking password file consistency (pwck) +2021-01-07 17:37:57 Result: pwck check didn't find any problems +2021-01-07 17:37:57 Hardening: assigned maximum number of hardening points for this item (2). Currently having 15 points (out of 21) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9229 (Check password hashing methods) +2021-01-07 17:37:57 Test: Checking password hashing methods +2021-01-07 17:37:57 Result: no poor password hashing methods found +2021-01-07 17:37:57 Hardening: assigned maximum number of hardening points for this item (2). Currently having 17 points (out of 23) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9230 (Check password hashing rounds) +2021-01-07 17:37:57 Test: Checking SHA_CRYPT_{MIN,MAX}_ROUNDS option in /etc/login.defs +2021-01-07 17:37:57 Result: number of password hashing rounds is not configured +2021-01-07 17:37:57 Suggestion: Configure password hashing rounds in /etc/login.defs [test:AUTH-9230] [details:-] [solution:-] +2021-01-07 17:37:57 Hardening: assigned partial number of hardening points (0 of 2). Currently having 17 points (out of 25) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9234 (Query user accounts) +2021-01-07 17:37:57 Test: Read system users (including root user) from password database (e.g. /etc/passwd) +2021-01-07 17:37:57 Result: found minimal user id specified: 1000 +2021-01-07 17:37:57 Linux real users output (ID = 0, or 1000+, but not 65534): +2021-01-07 17:37:57 Real user: root,0 +2021-01-07 17:37:57 Real user: Tobias,1000 +2021-01-07 17:37:57 Real user: ktdw73,1001 +2021-01-07 17:37:57 Real user: ftpuser,1002 +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9240 (Query NIS+ authentication support) +2021-01-07 17:37:57 Result: NIS+ authentication not enabled +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9242 (Query NIS authentication support) +2021-01-07 17:37:57 Result: NIS authentication not enabled +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9250 (Checking sudoers file) +2021-01-07 17:37:57 Test: checking presence /etc/sudoers +2021-01-07 17:37:57 Result: found file (/etc/sudoers) +2021-01-07 17:37:57 Test: checking presence /usr/local/etc/sudoers +2021-01-07 17:37:57 Result: file /usr/local/etc/sudoers not found +2021-01-07 17:37:57 Test: checking presence /usr/pkg/etc/sudoers +2021-01-07 17:37:57 Result: file /usr/pkg/etc/sudoers not found +2021-01-07 17:37:57 Result: sudoers file found (/etc/sudoers) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9252 (Check ownership and permissions for sudo configuration files) +2021-01-07 17:37:57 Test: checking drop-in directory (/etc/sudoers.d) +2021-01-07 17:37:57 Result: Found directory permissions: rwxr-xr-x and owner UID GID: 00 +2021-01-07 17:37:57 Result: directory /etc/sudoers.d has possibly unsafe permissions +2021-01-07 17:37:57 Result: directory /etc/sudoers.d ownership OK +2021-01-07 17:37:57 Test: checking file (/etc/sudoers) +2021-01-07 17:37:57 Result: Found file permissions: r--r----- and owner UID GID: 00 +2021-01-07 17:37:57 Result: file /etc/sudoers permissions OK +2021-01-07 17:37:57 Result: file /etc/sudoers ownership OK +2021-01-07 17:37:57 Test: checking file (/etc/sudoers.d/google_sudoers) +2021-01-07 17:37:57 Result: Found file permissions: r--r----- and owner UID GID: 00 +2021-01-07 17:37:57 Result: file /etc/sudoers.d/google_sudoers permissions OK +2021-01-07 17:37:57 Result: file /etc/sudoers.d/google_sudoers ownership OK +2021-01-07 17:37:57 Test: checking file (/etc/sudoers.d/README) +2021-01-07 17:37:57 Result: Found file permissions: r--r----- and owner UID GID: 00 +2021-01-07 17:37:57 Result: file /etc/sudoers.d/README permissions OK +2021-01-07 17:37:57 Result: file /etc/sudoers.d/README ownership OK +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Skipped test AUTH-9254 (Solaris passwordless accounts) +2021-01-07 17:37:57 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9262 (Checking presence password strength testing tools (PAM)) +2021-01-07 17:37:57 Searching PAM password testing modules (cracklib, passwdqc, pwquality) +2021-01-07 17:37:57 Result: pam_cracklib.so NOT found (crack library PAM) +2021-01-07 17:37:57 Result: pam_passwdqc.so NOT found (passwd quality control PAM) +2021-01-07 17:37:57 Result: pam_pwquality.so NOT found (pwquality control PAM) +2021-01-07 17:37:57 Result: no PAM modules for password strength testing found +2021-01-07 17:37:57 Suggestion: Install a PAM module for password strength testing like pam_cracklib or pam_passwdqc [test:AUTH-9262] [details:-] [solution:-] +2021-01-07 17:37:57 Hardening: assigned partial number of hardening points (0 of 3). Currently having 17 points (out of 28) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9264 (Checking presence pam.conf) +2021-01-07 17:37:57 Test: Checking file /etc/pam.conf +2021-01-07 17:37:57 Result: file /etc/pam.conf exists +2021-01-07 17:37:57 Test: searching PAM configuration files +2021-01-07 17:37:57 Result: File has no configuration options defined (empty, or only filled with comments and empty lines) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9266 (Checking presence pam.d files) +2021-01-07 17:37:57 Test: Checking directory /etc/pam.d +2021-01-07 17:37:57 Result: directory /etc/pam.d exists +2021-01-07 17:37:57 Test: searching PAM configuration files +2021-01-07 17:37:57 Found file: /etc/pam.d/chfn +2021-01-07 17:37:57 Found file: /etc/pam.d/chpasswd +2021-01-07 17:37:57 Found file: /etc/pam.d/chsh +2021-01-07 17:37:57 Found file: /etc/pam.d/common-account +2021-01-07 17:37:57 Found file: /etc/pam.d/common-auth +2021-01-07 17:37:57 Found file: /etc/pam.d/common-password +2021-01-07 17:37:57 Found file: /etc/pam.d/common-session +2021-01-07 17:37:57 Found file: /etc/pam.d/common-session-noninteractive +2021-01-07 17:37:57 Found file: /etc/pam.d/cron +2021-01-07 17:37:57 Found file: /etc/pam.d/login +2021-01-07 17:37:57 Found file: /etc/pam.d/newusers +2021-01-07 17:37:57 Found file: /etc/pam.d/other +2021-01-07 17:37:57 Found file: /etc/pam.d/passwd +2021-01-07 17:37:57 Found file: /etc/pam.d/runuser +2021-01-07 17:37:57 Found file: /etc/pam.d/runuser-l +2021-01-07 17:37:57 Found file: /etc/pam.d/sshd +2021-01-07 17:37:57 Found file: /etc/pam.d/su +2021-01-07 17:37:57 Found file: /etc/pam.d/sudo +2021-01-07 17:37:57 Found file: /etc/pam.d/systemd-user +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9268 (Checking presence pam.d files) +2021-01-07 17:37:57 Test: Searching pam modules +2021-01-07 17:37:57 Test: Checking /lib/arm-linux-gnueabihf/security +2021-01-07 17:37:57 Result: directory /lib/arm-linux-gnueabihf/security could not be found or is a symlink to another directory +2021-01-07 17:37:57 Test: Checking /lib/i386-linux-gnu/security +2021-01-07 17:37:57 Result: directory /lib/i386-linux-gnu/security could not be found or is a symlink to another directory +2021-01-07 17:37:57 Test: Checking /lib/security +2021-01-07 17:37:57 Result: directory /lib/security could not be found or is a symlink to another directory +2021-01-07 17:37:57 Test: Checking /lib/x86_64-linux-gnu/security +2021-01-07 17:37:57 Result: directory /lib/x86_64-linux-gnu/security exists +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_access.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_debug.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_deny.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_echo.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_env.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_exec.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_faildelay.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_filter.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_ftp.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_group.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_issue.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_keyinit.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_lastlog.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_limits.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_listfile.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_localuser.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_loginuid.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_mail.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_mkhomedir.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_motd.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_namespace.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_nologin.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_oslogin_admin.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_oslogin_login.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_permit.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_pwhistory.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_rhosts.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_rootok.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_securetty.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_selinux.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_sepermit.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_shells.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_stress.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_succeed_if.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_tally.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_tally2.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_time.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_timestamp.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_tty_audit.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_umask.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_unix.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_userdb.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_warn.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_wheel.so +2021-01-07 17:37:57 Found file: /lib/x86_64-linux-gnu/security/pam_xauth.so +2021-01-07 17:37:57 Test: Checking /lib64/security +2021-01-07 17:37:57 Result: directory /lib64/security could not be found or is a symlink to another directory +2021-01-07 17:37:57 Test: Checking /usr/lib +2021-01-07 17:37:57 Result: directory /usr/lib exists +2021-01-07 17:37:57 Test: Checking /usr/lib/security +2021-01-07 17:37:57 Result: directory /usr/lib/security could not be found or is a symlink to another directory +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9278 (Determine LDAP support in PAM files) +2021-01-07 17:37:57 Test: checking presence /etc/pam.d/common-auth +2021-01-07 17:37:57 Result: file /etc/pam.d/common-auth exists +2021-01-07 17:37:57 Test: checking presence LDAP module +2021-01-07 17:37:57 Result: LDAP module not found +2021-01-07 17:37:57 Test: checking presence /etc/pam.d/system-auth +2021-01-07 17:37:57 Result: file /etc/pam.d/system-auth not found, skipping test +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9282 (Checking password protected account without expire date) +2021-01-07 17:37:57 Test: Checking Linux version and password expire date status +2021-01-07 17:37:57 Result: all accounts seem to have an expire date +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9283 (Checking accounts without password) +2021-01-07 17:37:57 Test: Checking passwordless accounts +2021-01-07 17:37:57 Result: all accounts seem to have a password +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9284 (Check locked user accounts in /etc/passwd) +2021-01-07 17:37:57 Test: Checking locked accounts +2021-01-07 17:37:57 Result: found one or more locked accounts +2021-01-07 17:37:57 Locked account: Tobias +2021-01-07 17:37:57 Locked account: ftpuser +2021-01-07 17:37:57 Locked account: ktdw73 +2021-01-07 17:37:57 Suggestion: Look at the locked accounts and consider removing them [test:AUTH-9284] [details:-] [solution:-] +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9286 (Checking user password aging) +2021-01-07 17:37:57 Test: Checking PASS_MIN_DAYS option in /etc/login.defs +2021-01-07 17:37:57 Result: password minimum age is not configured +2021-01-07 17:37:57 Suggestion: Configure minimum password age in /etc/login.defs [test:AUTH-9286] [details:-] [solution:-] +2021-01-07 17:37:57 Hardening: assigned partial number of hardening points (0 of 1). Currently having 17 points (out of 29) +2021-01-07 17:37:57 Test: Checking PASS_MAX_DAYS option in /etc/login.defs +2021-01-07 17:37:57 Result: password aging limits are not configured +2021-01-07 17:37:57 Suggestion: Configure maximum password age in /etc/login.defs [test:AUTH-9286] [details:-] [solution:-] +2021-01-07 17:37:57 Hardening: assigned partial number of hardening points (0 of 1). Currently having 17 points (out of 30) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9288 (Checking for expired passwords) +2021-01-07 17:37:57 Test: check if we can access /etc/shadow (escaped: /etc/shadow) +2021-01-07 17:37:57 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:37:57 Result: file /etc/shadow is readable (or directory accessible). +2021-01-07 17:37:57 Data: Days since epoch is 18634 +2021-01-07 17:37:57 Test: collecting accounts which have an expired password (last day changed + maximum change time) +2021-01-07 17:37:57 Result: good, no passwords have been expired +2021-01-07 17:37:57 Hardening: assigned maximum number of hardening points for this item (10). Currently having 27 points (out of 40) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Skipped test AUTH-9304 (Check single user login configuration) +2021-01-07 17:37:57 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Skipped test AUTH-9306 (Check single boot authentication) +2021-01-07 17:37:57 Reason to skip: Incorrect guest OS (HP-UX only) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:57 Performing test ID AUTH-9308 (Check single user login configuration) +2021-01-07 17:37:57 Test: going to check several systemd targets now +2021-01-07 17:37:57 Test: checking if target console-shell.service is available (/lib/systemd/system/console-shell.service) +2021-01-07 17:37:57 Result: target console-shell.service not found +2021-01-07 17:37:57 Test: checking if target emergency.service is available (/lib/systemd/system/emergency.service) +2021-01-07 17:37:57 Result: found target emergency.service +2021-01-07 17:37:57 Result: sulogin was found, which is a good measure to protect single user mode +2021-01-07 17:37:57 Test: checking if target rescue.service is available (/lib/systemd/system/rescue.service) +2021-01-07 17:37:57 Result: found target rescue.service +2021-01-07 17:37:57 Result: sulogin was found, which is a good measure to protect single user mode +2021-01-07 17:37:57 Result: option set, password is needed at single user mode boot +2021-01-07 17:37:57 Hardening: assigned maximum number of hardening points for this item (2). Currently having 29 points (out of 42) +2021-01-07 17:37:57 ==== +2021-01-07 17:37:58 Performing test ID AUTH-9328 (Default umask values) +2021-01-07 17:37:58 Test: Checking /etc/profile.d directory +2021-01-07 17:37:58 Result: found /etc/profile.d, but it does not contain any files +2021-01-07 17:37:58 Test: Checking /etc/profile +2021-01-07 17:37:58 Result: file /etc/profile exists +2021-01-07 17:37:58 Test: Checking umask value in /etc/profile +2021-01-07 17:37:58 Result: did not find umask in /etc/profile +2021-01-07 17:37:58 Result: found no umask. Please check if this is correct +2021-01-07 17:37:58 Test: Checking umask entries in /etc/passwd (pam_umask) +2021-01-07 17:37:58 Result: file /etc/passwd exists +2021-01-07 17:37:58 Test: Checking umask value in /etc/passwd +2021-01-07 17:37:58 Manual: one or more manual actions are required for further testing of this control/plugin +2021-01-07 17:37:58 Test: Checking /etc/login.defs +2021-01-07 17:37:58 Result: file /etc/login.defs exists +2021-01-07 17:37:58 Test: Checking umask value in /etc/login.defs +2021-01-07 17:37:58 Result: found umask 022, which could be improved +2021-01-07 17:37:58 Suggestion: Default umask in /etc/login.defs could be more strict like 027 [test:AUTH-9328] [details:-] [solution:-] +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (0 of 2). Currently having 29 points (out of 44) +2021-01-07 17:37:58 Test: Checking /etc/init.d/functions +2021-01-07 17:37:58 Result: file /etc/init.d/functions does not exist +2021-01-07 17:37:58 Test: Checking /etc/init.d/rc +2021-01-07 17:37:58 Result: file /etc/init.d/rc does not exist +2021-01-07 17:37:58 Test: Checking /etc/init.d/rcS +2021-01-07 17:37:58 Result: file /etc/init.d/rcS does not exist +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test AUTH-9340 (Solaris account locking) +2021-01-07 17:37:58 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID AUTH-9402 (Query LDAP authentication support) +2021-01-07 17:37:58 Result: LDAP authentication not enabled +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test AUTH-9406 (Query LDAP servers in client configuration) +2021-01-07 17:37:58 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID AUTH-9408 (Logging of failed login attempts) +2021-01-07 17:37:58 Result: did not find /var/log/tallylog on disk or its file size is zero bytes +2021-01-07 17:37:58 Result: found pam_tally2 module on disk +2021-01-07 17:37:58 Outcome: it looks like pam_tally2 is not configured to log failed login attempts +2021-01-07 17:37:58 Test: Checking FAILLOG_ENAB option in /etc/login.defs +2021-01-07 17:37:58 Result: FAILLOG_ENAB is set to 'yes' +2021-01-07 17:37:58 Outcome: failed login attempts are logged in /var/log/faillog +2021-01-07 17:37:58 Hardening: assigned maximum number of hardening points for this item (3). Currently having 32 points (out of 47) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test AUTH-9409 (Checking /etc/doas.conf file) +2021-01-07 17:37:58 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test AUTH-9410 (Check /etc/doas.conf file permissions) +2021-01-07 17:37:58 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:37:58 Security check: file is normal +2021-01-07 17:37:58 Checking permissions of /home/ktdw73/scans/lynis/include/tests_shells +2021-01-07 17:37:58 File permissions are OK +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Action: Performing tests from category: Shells +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test SHLL-6202 (Check console TTYs) +2021-01-07 17:37:58 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID SHLL-6211 (Available and valid shells) +2021-01-07 17:37:58 Test: Searching for /etc/shells +2021-01-07 17:37:58 Result: Found /etc/shells file +2021-01-07 17:37:58 Test: Reading available shells from /etc/shells +2021-01-07 17:37:58 Found installed shell: /bin/sh +2021-01-07 17:37:58 Found installed shell: /bin/dash +2021-01-07 17:37:58 Found installed shell: /bin/bash +2021-01-07 17:37:58 Found installed shell: /bin/rbash +2021-01-07 17:37:58 Found installed shell: /usr/bin/screen +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID SHLL-6220 (Idle session killing tools or settings) +2021-01-07 17:37:58 Test: Search for session timeout tools or settings in shell +2021-01-07 17:37:58 Performing pgrep scan without uid +2021-01-07 17:37:58 IsRunning: process 'timeoutd' not found +2021-01-07 17:37:58 Performing pgrep scan without uid +2021-01-07 17:37:58 IsRunning: process 'autolog' not found +2021-01-07 17:37:58 Result: could not find TMOUT setting in /etc/profile +2021-01-07 17:37:58 Result: could not find export, readonly or typeset -r in /etc/profile +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (1 of 3). Currently having 33 points (out of 50) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID SHLL-6230 (Perform umask check for shell configurations) +2021-01-07 17:37:58 Result: file /etc/bashrc not found +2021-01-07 17:37:58 Result: file /etc/bash.bashrc exists +2021-01-07 17:37:58 Result: did not find umask configured in /etc/bash.bashrc +2021-01-07 17:37:58 Result: file /etc/bash.bashrc.local not found +2021-01-07 17:37:58 Result: file /etc/csh.cshrc not found +2021-01-07 17:37:58 Result: file /etc/profile exists +2021-01-07 17:37:58 Result: did not find umask configured in /etc/profile +2021-01-07 17:37:58 Security check: file is normal +2021-01-07 17:37:58 Checking permissions of /home/ktdw73/scans/lynis/include/tests_filesystems +2021-01-07 17:37:58 File permissions are OK +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Action: Performing tests from category: File systems +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6310 (Checking /tmp, /home and /var directory) +2021-01-07 17:37:58 Test: Checking if /home is mounted separately or mounted on / file system +2021-01-07 17:37:58 Result: directory /home exists +2021-01-07 17:37:58 Result: /home not found in mount list. Directory most likely stored on / file system +2021-01-07 17:37:58 Suggestion: To decrease the impact of a full /home file system, place /home on a separate partition [test:FILE-6310] [details:-] [solution:-] +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (9 of 10). Currently having 42 points (out of 60) +2021-01-07 17:37:58 Test: Checking if /tmp is mounted separately or mounted on / file system +2021-01-07 17:37:58 Result: directory /tmp exists +2021-01-07 17:37:58 Result: /tmp not found in mount list. Directory most likely stored on / file system +2021-01-07 17:37:58 Suggestion: To decrease the impact of a full /tmp file system, place /tmp on a separate partition [test:FILE-6310] [details:-] [solution:-] +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (9 of 10). Currently having 51 points (out of 70) +2021-01-07 17:37:58 Test: Checking if /var is mounted separately or mounted on / file system +2021-01-07 17:37:58 Result: directory /var exists +2021-01-07 17:37:58 Result: /var not found in mount list. Directory most likely stored on / file system +2021-01-07 17:37:58 Suggestion: To decrease the impact of a full /var file system, place /var on a separate partition [test:FILE-6310] [details:-] [solution:-] +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (9 of 10). Currently having 60 points (out of 80) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test FILE-6311 (Checking LVM volume groups) +2021-01-07 17:37:58 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test FILE-6312 (Checking LVM volumes) +2021-01-07 17:37:58 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6323 (Checking EXT file systems) +2021-01-07 17:37:58 Test: Checking for Linux EXT file systems +2021-01-07 17:37:58 Result: found one or more EXT file systems +2021-01-07 17:37:58 File system: / (type: ext4) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6324 (Checking XFS file systems) +2021-01-07 17:37:58 Test: Checking for Linux XFS file systems +2021-01-07 17:37:58 Result: no XFS file systems found +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6329 (Checking FFS/UFS file systems) +2021-01-07 17:37:58 Test: Query /etc/fstab for available FFS/UFS mount points +2021-01-07 17:37:58 Result: unable to find any single mount point (FFS/UFS) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test FILE-6330 (Checking ZFS file systems) +2021-01-07 17:37:58 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test FILE-6439 (Checking HAMMER PFS mounts) +2021-01-07 17:37:58 Reason to skip: Incorrect guest OS (DragonFly only) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6332 (Checking swap partitions) +2021-01-07 17:37:58 Test: query swap partitions from /etc/fstab file +2021-01-07 17:37:58 Result: no swap partitions found in /etc/fstab +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6336 (Checking swap mount options) +2021-01-07 17:37:58 Test: check swap partitions with incorrect mount options +2021-01-07 17:37:58 Result: all swap partitions have correct options (sw or swap) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6344 (Checking proc mount options) +2021-01-07 17:37:58 Test: check proc mount with incorrect mount options +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (0 of 3). Currently having 60 points (out of 83) +2021-01-07 17:37:58 Result: /proc filesystem is not mounted with option hidepid=1 or hidepid=2 +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6354 (Searching for old files in /tmp) +2021-01-07 17:37:58 Test: Searching for old files in /tmp +2021-01-07 17:37:58 Result: no files found in /tmp which are older than 3 months +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6362 (Checking /tmp sticky bit) +2021-01-07 17:37:58 Result: sticky bit found on /tmp directory +2021-01-07 17:37:58 Hardening: assigned maximum number of hardening points for this item (3). Currently having 63 points (out of 86) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6363 (Checking /var/tmp sticky bit) +2021-01-07 17:37:58 Result: sticky bit found on /var/tmp directory +2021-01-07 17:37:58 Hardening: assigned maximum number of hardening points for this item (3). Currently having 66 points (out of 89) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6368 (Checking ACL support on root file system) +2021-01-07 17:37:58 Test: Checking acl option on ext[2-4] root file system +2021-01-07 17:37:58 Result: mount point probably mounted with defaults +2021-01-07 17:37:58 Test: Checking device which holds root file system +2021-01-07 17:37:58 Result: found /dev/sda1 +2021-01-07 17:37:58 Test: Checking default options on /dev/sda1 +2021-01-07 17:37:58 Result: found ACL option in default mount options +2021-01-07 17:37:58 Test: Checking acl option on xfs root file system +2021-01-07 17:37:58 Result: ACL option enabled on root file system +2021-01-07 17:37:58 Hardening: assigned maximum number of hardening points for this item (3). Currently having 69 points (out of 92) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6372 (Checking / mount options) +2021-01-07 17:37:58 Result: mount system / is configured with options: defaults +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6374 (Linux mount options) +2021-01-07 17:37:58 Result: file system /boot not found in /etc/fstab +2021-01-07 17:37:58 File system: /dev +2021-01-07 17:37:58 Expected flags: noexec nosuid +2021-01-07 17:37:58 Found flags: (rw nosuid relatime size=2014280k nr_inodes=503570 mode=755) +2021-01-07 17:37:58 Result: Could not find mount option noexec on file system /dev +2021-01-07 17:37:58 Result: GOOD, found mount option nosuid on file system /dev +2021-01-07 17:37:58 Result: marked /dev as partially hardened +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (4 of 5). Currently having 73 points (out of 97) +2021-01-07 17:37:58 File system: /dev/shm +2021-01-07 17:37:58 Expected flags: nosuid nodev noexec +2021-01-07 17:37:58 Found flags: (rw nosuid nodev) +2021-01-07 17:37:58 Result: GOOD, found mount option nosuid on file system /dev/shm +2021-01-07 17:37:58 Result: GOOD, found mount option nodev on file system /dev/shm +2021-01-07 17:37:58 Result: Could not find mount option noexec on file system /dev/shm +2021-01-07 17:37:58 Result: marked /dev/shm as partially hardened +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (4 of 5). Currently having 77 points (out of 102) +2021-01-07 17:37:58 Result: file system /home not found in /etc/fstab +2021-01-07 17:37:58 File system: /run +2021-01-07 17:37:58 Expected flags: nodev nosuid +2021-01-07 17:37:58 Found flags: (rw nosuid noexec relatime size=405088k mode=755) +2021-01-07 17:37:58 Result: Could not find mount option nodev on file system /run +2021-01-07 17:37:58 Result: GOOD, found mount option nosuid on file system /run +2021-01-07 17:37:58 Result: marked /run as partially hardened +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (4 of 5). Currently having 81 points (out of 107) +2021-01-07 17:37:58 Result: file system /tmp not found in /etc/fstab +2021-01-07 17:37:58 Result: file system /var not found in /etc/fstab +2021-01-07 17:37:58 Result: file system /var/log not found in /etc/fstab +2021-01-07 17:37:58 Result: file system /var/log/audit not found in /etc/fstab +2021-01-07 17:37:58 Result: file system /var/tmp not found in /etc/fstab +2021-01-07 17:37:58 Result: Total without nodev:8 noexec:7 nosuid:5 ro or noexec (W^X): 7, of total 25 +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6376 (Determine if /var/tmp is bound to /tmp) +2021-01-07 17:37:58 Result: no mount point /var/tmp or expected options found +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6394 (Determine level of swappiness.) +2021-01-07 17:37:58 Test: checking level of vm.swappiness: 60 +2021-01-07 17:37:58 Result: vm.swappiness=60 which is the standard level of swappiness and works well for desktop systems. +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test FILE-6410 (Checking Locate database) +2021-01-07 17:37:58 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID FILE-6430 (Disable mounting of some filesystems) +2021-01-07 17:37:58 Hardening: assigned maximum number of hardening points for this item (3). Currently having 84 points (out of 110) +2021-01-07 17:37:58 Result: found freevxfs support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/freevxfs/freevxfs.ko ) +2021-01-07 17:37:58 Test: Checking if freevxfs is active +2021-01-07 17:37:58 Result: module freevxfs is currently not loaded in the kernel. +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (2 of 3). Currently having 86 points (out of 113) +2021-01-07 17:37:58 Result: found hfs support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/hfs/hfs.ko ) +2021-01-07 17:37:58 Test: Checking if hfs is active +2021-01-07 17:37:58 Result: module hfs is currently not loaded in the kernel. +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (2 of 3). Currently having 88 points (out of 116) +2021-01-07 17:37:58 Result: found hfsplus support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/hfsplus/hfsplus.ko ) +2021-01-07 17:37:58 Test: Checking if hfsplus is active +2021-01-07 17:37:58 Result: module hfsplus is currently not loaded in the kernel. +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (2 of 3). Currently having 90 points (out of 119) +2021-01-07 17:37:58 Result: found jffs2 support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/jffs2/jffs2.ko ) +2021-01-07 17:37:58 Test: Checking if jffs2 is active +2021-01-07 17:37:58 Result: module jffs2 is currently not loaded in the kernel. +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (2 of 3). Currently having 92 points (out of 122) +2021-01-07 17:37:58 Result: found squashfs support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/squashfs/squashfs.ko ) +2021-01-07 17:37:58 Test: Checking if squashfs is active +2021-01-07 17:37:58 Result: module squashfs is currently not loaded in the kernel. +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (2 of 3). Currently having 94 points (out of 125) +2021-01-07 17:37:58 Result: found udf support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/udf/udf.ko ) +2021-01-07 17:37:58 Test: Checking if udf is active +2021-01-07 17:37:58 Result: module udf is currently not loaded in the kernel. +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (2 of 3). Currently having 96 points (out of 128) +2021-01-07 17:37:58 Suggestion: Consider disabling unused kernel modules [test:FILE-6430] [details:/etc/modprobe.d/blacklist.conf] [solution:Add 'install MODULENAME /bin/true' (without quotes)] +2021-01-07 17:37:58 Security check: file is normal +2021-01-07 17:37:58 Checking permissions of /home/ktdw73/scans/lynis/include/tests_usb +2021-01-07 17:37:58 File permissions are OK +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Action: Performing tests from category: USB Devices +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID USB-1000 (Check if USB storage is disabled) +2021-01-07 17:37:58 Test: Checking USB storage driver in directory /etc/modprobe.d and configuration file /etc/modprobe.conf +2021-01-07 17:37:58 Result: usb-storage driver is not explicitly disabled +2021-01-07 17:37:58 Suggestion: Disable drivers like USB storage when not used, to prevent unauthorized storage or data theft [test:USB-1000] [details:-] [solution:-] +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (2 of 3). Currently having 98 points (out of 131) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID USB-2000 (Check USB authorizations) +2021-01-07 17:37:58 Test: checking presence of USB devices path (/sys/bus/usb/devices) +2021-01-07 17:37:58 Result: devices path does not exist +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID USB-3000 (Check for presence of USBGuard) +2021-01-07 17:37:58 Result: USBGuard not found +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (0 of 8). Currently having 98 points (out of 139) +2021-01-07 17:37:58 Security check: file is normal +2021-01-07 17:37:58 Checking permissions of /home/ktdw73/scans/lynis/include/tests_storage +2021-01-07 17:37:58 File permissions are OK +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Action: Performing tests from category: Storage +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID STRG-1846 (Check if firewire storage is disabled) +2021-01-07 17:37:58 Test: Checking firewire storage driver in directory /etc/modprobe.d and configuration file /etc/modprobe.conf +2021-01-07 17:37:58 Result: firewire ohci driver is not explicitly disabled +2021-01-07 17:37:58 Suggestion: Disable drivers like firewire storage when not used, to prevent unauthorized storage or data theft [test:STRG-1846] [details:-] [solution:-] +2021-01-07 17:37:58 Hardening: assigned partial number of hardening points (2 of 3). Currently having 100 points (out of 142) +2021-01-07 17:37:58 Security check: file is normal +2021-01-07 17:37:58 Checking permissions of /home/ktdw73/scans/lynis/include/tests_storage_nfs +2021-01-07 17:37:58 File permissions are OK +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Action: Performing tests from category: NFS +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test STRG-1902 (Check rpcinfo registered programs) +2021-01-07 17:37:58 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test STRG-1904 (Check nfs rpc) +2021-01-07 17:37:58 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test STRG-1906 (Check nfs rpc) +2021-01-07 17:37:58 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID STRG-1920 (Checking NFS daemon) +2021-01-07 17:37:58 Test: Checking running NFS daemon +2021-01-07 17:37:58 Output: NFS daemon is not running +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test STRG-1926 (Checking NFS exports) +2021-01-07 17:37:58 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test STRG-1928 (Checking empty /etc/exports) +2021-01-07 17:37:58 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test STRG-1930 (Check client access to nfs share) +2021-01-07 17:37:58 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:58 Security check: file is normal +2021-01-07 17:37:58 Checking permissions of /home/ktdw73/scans/lynis/include/tests_nameservices +2021-01-07 17:37:58 File permissions are OK +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Action: Performing tests from category: Name services +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID NAME-4016 (Check /etc/resolv.conf default domain) +2021-01-07 17:37:58 Test: check /etc/resolv.conf for default domain +2021-01-07 17:37:58 Result: /etc/resolv.conf found +2021-01-07 17:37:58 Result: found default domain +2021-01-07 17:37:58 Output: europe-west3-c.c.cc2020-tobiaswieck.internal +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID NAME-4018 (Check /etc/resolv.conf search domains) +2021-01-07 17:37:58 Test: check /etc/resolv.conf for search domains +2021-01-07 17:37:58 Result: /etc/resolv.conf found +2021-01-07 17:37:58 Found search domain: europe-west3-c.c.cc2020-tobiaswieck.internal. +2021-01-07 17:37:58 Result: Found 1 search domains +2021-01-07 17:37:58 Result: found 1 line(s) with a search statement (expecting less than 2 lines) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID NAME-4020 (Check non default options) +2021-01-07 17:37:58 Test: check /etc/resolv.conf for non default options +2021-01-07 17:37:58 Result: /etc/resolv.conf found +2021-01-07 17:37:58 Result: no specific other options configured in /etc/resolv.conf +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test NAME-4024 (Solaris uname -n output) +2021-01-07 17:37:58 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test NAME-4026 (Check /etc/nodename) +2021-01-07 17:37:58 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID NAME-4028 (Check domain name) +2021-01-07 17:37:58 Test: Checking if dnsdomainname command is available +2021-01-07 17:37:58 Result: dnsdomainname command returned a value +2021-01-07 17:37:58 Found domain name: europe-west3-c.c.cc2020-tobiaswieck.internal +2021-01-07 17:37:58 Result: found domain name +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID NAME-4032 (Check nscd status) +2021-01-07 17:37:58 Test: checking nscd status +2021-01-07 17:37:58 Performing pgrep scan without uid +2021-01-07 17:37:58 IsRunning: process 'nscd' not found +2021-01-07 17:37:58 Result: nscd is not running +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID NAME-4034 (Check Unbound status) +2021-01-07 17:37:58 Test: checking Unbound (unbound) status +2021-01-07 17:37:58 Performing pgrep scan without uid +2021-01-07 17:37:58 IsRunning: process 'unbound' not found +2021-01-07 17:37:58 Result: Unbound daemon is not running +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test NAME-4036 (Check Unbound configuration file) +2021-01-07 17:37:58 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Performing test ID NAME-4202 (Check BIND status) +2021-01-07 17:37:58 Test: Checking for running BIND instance +2021-01-07 17:37:58 Performing pgrep scan without uid +2021-01-07 17:37:58 IsRunning: process 'named' not found +2021-01-07 17:37:58 Result: BIND not running +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test NAME-4204 (Search BIND configuration file) +2021-01-07 17:37:58 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test NAME-4206 (Check BIND configuration consistency) +2021-01-07 17:37:58 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:58 Skipped test NAME-4210 (Check DNS banner) +2021-01-07 17:37:58 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:58 ==== +2021-01-07 17:37:59 Performing test ID NAME-4230 (Check PowerDNS status) +2021-01-07 17:37:59 Test: Checking for running PowerDNS instance +2021-01-07 17:37:59 Performing pgrep scan without uid +2021-01-07 17:37:59 IsRunning: process 'pdns_server' not found +2021-01-07 17:37:59 Result: PowerDNS not running +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test NAME-4232 (Search PowerDNS configuration file) +2021-01-07 17:37:59 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test NAME-4236 (Check PowerDNS backends) +2021-01-07 17:37:59 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test NAME-4238 (Check PowerDNS authoritative status) +2021-01-07 17:37:59 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Performing test ID NAME-4304 (Check NIS ypbind status) +2021-01-07 17:37:59 Test: Checking status of ypbind daemon +2021-01-07 17:37:59 Performing pgrep scan without uid +2021-01-07 17:37:59 IsRunning: process 'ypbind' not found +2021-01-07 17:37:59 Result: ypbind is not active +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test NAME-4306 (Check NIS domain) +2021-01-07 17:37:59 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Performing test ID NAME-4402 (Check duplicate line in /etc/hosts) +2021-01-07 17:37:59 Test: check duplicate line in /etc/hosts +2021-01-07 17:37:59 Result: OK, no duplicate lines found +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Performing test ID NAME-4404 (Check /etc/hosts contains an entry for this server name) +2021-01-07 17:37:59 Test: Check /etc/hosts contains an entry for this server name +2021-01-07 17:37:59 Result: Found entry for debian-9 in /etc/hosts +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Performing test ID NAME-4406 (Check server hostname mapping) +2021-01-07 17:37:59 Test: Check server hostname not locally mapped in /etc/hosts +2021-01-07 17:37:59 Result: this server hostname is not mapped to a local address +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Performing test ID NAME-4408 (Check localhost entry) +2021-01-07 17:37:59 Test: Check server hostname not locally mapped in /etc/hosts +2021-01-07 17:37:59 Result: localhost mapped to ::1 +2021-01-07 17:37:59 Security check: file is normal +2021-01-07 17:37:59 Checking permissions of /home/ktdw73/scans/lynis/include/tests_dns +2021-01-07 17:37:59 File permissions are OK +2021-01-07 17:37:59 Security check: file is normal +2021-01-07 17:37:59 Checking permissions of /home/ktdw73/scans/lynis/include/tests_ports_packages +2021-01-07 17:37:59 File permissions are OK +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Action: Performing tests from category: Ports and packages +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7301 (Query FreeBSD pkg) +2021-01-07 17:37:59 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7302 (Query FreeBSD/NetBSD pkg_info) +2021-01-07 17:37:59 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7303 (Query brew package manager) +2021-01-07 17:37:59 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:59 Result: brew can NOT be found on this system +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7304 (Querying Gentoo packages) +2021-01-07 17:37:59 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:59 Result: emerge can NOT be found on this system +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7306 (Querying Solaris packages) +2021-01-07 17:37:59 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:37:59 Result: pkginfo can NOT be found on this system +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7308 (Checking package list with RPM) +2021-01-07 17:37:59 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:59 Result: RPM binary NOT found on this system, test skipped +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7310 (Checking package list with pacman) +2021-01-07 17:37:59 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7312 (Checking available updates for pacman based system) +2021-01-07 17:37:59 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:59 Result: pacman binary NOT found on this system, test skipped +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7314 (Checking pacman configuration options) +2021-01-07 17:37:59 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7320 (Checking for arch-audit tooling) +2021-01-07 17:37:59 Reason to skip: Test only applies to Arch Linux +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7322 (Discover vulnerable packages with arch-audit) +2021-01-07 17:37:59 Reason to skip: arch-audit not found +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7328 (Querying Zypper for installed packages) +2021-01-07 17:37:59 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7330 (Querying Zypper for vulnerable packages) +2021-01-07 17:37:59 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7332 (Query macOS ports) +2021-01-07 17:37:59 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Skipped test PKGS-7334 (Query port for port upgrades) +2021-01-07 17:37:59 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:37:59 ==== +2021-01-07 17:37:59 Performing test ID PKGS-7345 (Querying dpkg) +2021-01-07 17:37:59 Result: Found dpkg binary +2021-01-07 17:37:59 Test: Querying dpkg -l to get package list +2021-01-07 17:37:59 Output: +2021-01-07 17:37:59 Found package: acpi-support-base (version: 0.142-8) +2021-01-07 17:37:59 Found package: acpid (version: 1:2.0.28-1+b1) +2021-01-07 17:37:59 Found package: adduser (version: 3.115) +2021-01-07 17:37:59 Found package: apt (version: 1.4.11) +2021-01-07 17:37:59 Found package: apt-utils (version: 1.4.11) +2021-01-07 17:37:59 Found package: base-files (version: 9.9+deb9u13) +2021-01-07 17:37:59 Found package: base-passwd (version: 3.5.43) +2021-01-07 17:37:59 Found package: bash (version: 4.4-5) +2021-01-07 17:37:59 Found package: bind9-host (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:37:59 Found package: bsdmainutils (version: 9.0.12+nmu1) +2021-01-07 17:37:59 Found package: bsdutils (version: 1:2.29.2-1+deb9u1) +2021-01-07 17:37:59 Found package: busybox (version: 1:1.22.0-19+b3) +2021-01-07 17:37:59 Found package: ca-certificates (version: 20200601~deb9u1) +2021-01-07 17:37:59 Found package: cloud-guest-utils (version: 0.29-1) +2021-01-07 17:37:59 Found package: coreutils (version: 8.26-3) +2021-01-07 17:37:59 Found package: cpio (version: 2.11+dfsg-6) +2021-01-07 17:37:59 Found package: cron (version: 3.0pl1-128+deb9u1) +2021-01-07 17:37:59 Found package: curl (version: 7.52.1-5+deb9u12) +2021-01-07 17:37:59 Found package: dash (version: 0.5.8-2.4) +2021-01-07 17:37:59 Found package: debconf (version: 1.5.61) +2021-01-07 17:37:59 Found package: debconf-i18n (version: 1.5.61) +2021-01-07 17:37:59 Found package: debian-archive-keyring (version: 2017.5+deb9u1) +2021-01-07 17:37:59 Found package: debianutils (version: 4.8.1.1) +2021-01-07 17:37:59 Found package: dh-python (version: 2.20170125) +2021-01-07 17:37:59 Found package: diffutils (version: 1:3.5-3) +2021-01-07 17:37:59 Found package: distro-info-data (version: 0.36) +2021-01-07 17:37:59 Found package: dmidecode (version: 3.0-4) +2021-01-07 17:37:59 Found package: dmsetup (version: 2:1.02.137-2) +2021-01-07 17:37:59 Found package: dpkg (version: 1.18.25) +2021-01-07 17:37:59 Found package: e2fslibs:amd64 (version: 1.43.4-2+deb9u2) +2021-01-07 17:37:59 Found package: e2fsprogs (version: 1.43.4-2+deb9u2) +2021-01-07 17:37:59 Found package: ethtool (version: 1:4.8-1+b1) +2021-01-07 17:37:59 Found package: file (version: 1:5.30-1+deb9u3) +2021-01-07 17:37:59 Found package: findutils (version: 4.6.0+git+20161106-2) +2021-01-07 17:37:59 Found package: gcc-6-base:amd64 (version: 6.3.0-18+deb9u1) +2021-01-07 17:37:59 Found package: gdisk (version: 1.0.1-1) +2021-01-07 17:37:59 Found package: geoip-database (version: 20170512-1) +2021-01-07 17:37:59 Found package: gettext-base (version: 0.19.8.1-2+deb9u1) +2021-01-07 17:37:59 Found package: git (version: 1:2.11.0-3+deb9u7) +2021-01-07 17:37:59 Found package: git-man (version: 1:2.11.0-3+deb9u7) +2021-01-07 17:37:59 Found package: gnupg (version: 2.1.18-8~deb9u4) +2021-01-07 17:37:59 Found package: gnupg-agent (version: 2.1.18-8~deb9u4) +2021-01-07 17:37:59 Found package: google-cloud-packages-archive-keyring (version: 1.2-347415788) +2021-01-07 17:37:59 Found package: google-cloud-sdk (version: 321.0.0-0) +2021-01-07 17:37:59 Found package: google-compute-engine (version: 1:20201207.00-g1) +2021-01-07 17:37:59 Found package: google-compute-engine-oslogin (version: 1:20200925.00-g1+deb9) +2021-01-07 17:37:59 Found package: google-guest-agent (version: 1:20201214.00-g1) +2021-01-07 17:37:59 Found package: google-osconfig-agent (version: 1:20201214.00-g1) +2021-01-07 17:37:59 Found package: gpgv (version: 2.1.18-8~deb9u4) +2021-01-07 17:37:59 Found package: grep (version: 2.27-2) +2021-01-07 17:37:59 Found package: groff-base (version: 1.22.3-9) +2021-01-07 17:37:59 Found package: grub-common (version: 2.02~beta3-5+deb9u2) +2021-01-07 17:37:59 Found package: grub-pc (version: 2.02~beta3-5+deb9u2) +2021-01-07 17:37:59 Found package: grub-pc-bin (version: 2.02~beta3-5+deb9u2) +2021-01-07 17:37:59 Found package: grub2-common (version: 2.02~beta3-5+deb9u2) +2021-01-07 17:37:59 Found package: gzip (version: 1.6-5+b1) +2021-01-07 17:37:59 Found package: host (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:37:59 Found package: hostname (version: 3.18+b1) +2021-01-07 17:37:59 Found package: ifupdown (version: 0.8.19) +2021-01-07 17:37:59 Found package: init (version: 1.48) +2021-01-07 17:37:59 Found package: init-system-helpers (version: 1.48) +2021-01-07 17:37:59 Found package: initramfs-tools (version: 0.130) +2021-01-07 17:37:59 Found package: initramfs-tools-core (version: 0.130) +2021-01-07 17:37:59 Found package: iproute2 (version: 4.9.0-1+deb9u1) +2021-01-07 17:37:59 Found package: iptables (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:37:59 Found package: iputils-ping (version: 3:20161105-1) +2021-01-07 17:37:59 Found package: isc-dhcp-client (version: 4.3.5-3+deb9u1) +2021-01-07 17:37:59 Found package: isc-dhcp-common (version: 4.3.5-3+deb9u1) +2021-01-07 17:37:59 Found package: klibc-utils (version: 2.0.4-9) +2021-01-07 17:37:59 Found package: kmod (version: 23-2) +2021-01-07 17:37:59 Found package: kpartx (version: 0.6.4-5+deb9u1) +2021-01-07 17:37:59 Found package: less (version: 481-2.1) +2021-01-07 17:37:59 Found package: libacl1:amd64 (version: 2.2.52-3+b1) +2021-01-07 17:37:59 Found package: libapparmor1:amd64 (version: 2.11.0-3+deb9u2) +2021-01-07 17:37:59 Found package: libapt-inst2.0:amd64 (version: 1.4.11) +2021-01-07 17:37:59 Found package: libapt-pkg5.0:amd64 (version: 1.4.11) +2021-01-07 17:37:59 Found package: libassuan0:amd64 (version: 2.4.3-2) +2021-01-07 17:37:59 Found package: libattr1:amd64 (version: 1:2.4.47-2+b2) +2021-01-07 17:37:59 Found package: libaudit-common (version: 1:2.6.7-2) +2021-01-07 17:37:59 Found package: libaudit1:amd64 (version: 1:2.6.7-2) +2021-01-07 17:37:59 Found package: libbind9-140:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:37:59 Found package: libblkid1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:37:59 Found package: libbsd0:amd64 (version: 0.8.3-1) +2021-01-07 17:37:59 Found package: libbz2-1.0:amd64 (version: 1.0.6-8.1) +2021-01-07 17:37:59 Found package: libc-bin (version: 2.24-11+deb9u4) +2021-01-07 17:37:59 Found package: libc-l10n (version: 2.24-11+deb9u4) +2021-01-07 17:37:59 Found package: libc6:amd64 (version: 2.24-11+deb9u4) +2021-01-07 17:37:59 Found package: libcap-ng0:amd64 (version: 0.7.7-3+b1) +2021-01-07 17:37:59 Found package: libcap2:amd64 (version: 1:2.25-1) +2021-01-07 17:37:59 Found package: libcomerr2:amd64 (version: 1.43.4-2+deb9u2) +2021-01-07 17:37:59 Found package: libcryptsetup4:amd64 (version: 2:1.7.3-4) +2021-01-07 17:37:59 Found package: libcurl3-gnutls:amd64 (version: 7.52.1-5+deb9u13) +2021-01-07 17:37:59 Found package: libcurl3:amd64 (version: 7.52.1-5+deb9u12) +2021-01-07 17:37:59 Found package: libdb5.3:amd64 (version: 5.3.28-12+deb9u1) +2021-01-07 17:37:59 Found package: libdebconfclient0:amd64 (version: 0.227) +2021-01-07 17:37:59 Found package: libdevmapper1.02.1:amd64 (version: 2:1.02.137-2) +2021-01-07 17:37:59 Found package: libdns-export162 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:37:59 Found package: libdns162:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:37:59 Found package: libedit2:amd64 (version: 3.1-20160903-3) +2021-01-07 17:37:59 Found package: libelf1:amd64 (version: 0.168-1) +2021-01-07 17:37:59 Found package: liberror-perl (version: 0.17024-1) +2021-01-07 17:37:59 Found package: libestr0 (version: 0.1.10-2) +2021-01-07 17:37:59 Found package: libexpat1:amd64 (version: 2.2.0-2+deb9u3) +2021-01-07 17:37:59 Found package: libfastjson4:amd64 (version: 0.99.4-1) +2021-01-07 17:37:59 Found package: libfdisk1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:37:59 Found package: libffi6:amd64 (version: 3.2.1-6) +2021-01-07 17:37:59 Found package: libfreetype6:amd64 (version: 2.6.3-3.2+deb9u2) +2021-01-07 17:37:59 Found package: libfuse2:amd64 (version: 2.9.7-1+deb9u2) +2021-01-07 17:37:59 Found package: libgcc1:amd64 (version: 1:6.3.0-18+deb9u1) +2021-01-07 17:37:59 Found package: libgcrypt20:amd64 (version: 1.7.6-2+deb9u3) +2021-01-07 17:37:59 Found package: libgdbm3:amd64 (version: 1.8.3-14) +2021-01-07 17:37:59 Found package: libgeoip1:amd64 (version: 1.6.9-4) +2021-01-07 17:37:59 Found package: libgmp10:amd64 (version: 2:6.1.2+dfsg-1) +2021-01-07 17:37:59 Found package: libgnutls30:amd64 (version: 3.5.8-5+deb9u5) +2021-01-07 17:37:59 Found package: libgpg-error0:amd64 (version: 1.26-2) +2021-01-07 17:37:59 Found package: libgpm2:amd64 (version: 1.20.4-6.2+b1) +2021-01-07 17:37:59 Found package: libgssapi-krb5-2:amd64 (version: 1.15-1+deb9u2) +2021-01-07 17:37:59 Found package: libhogweed4:amd64 (version: 3.3-1+b2) +2021-01-07 17:37:59 Found package: libicu57:amd64 (version: 57.1-6+deb9u4) +2021-01-07 17:37:59 Found package: libidn11:amd64 (version: 1.33-1+deb9u1) +2021-01-07 17:37:59 Found package: libidn2-0:amd64 (version: 0.16-1+deb9u1) +2021-01-07 17:37:59 Found package: libip4tc0:amd64 (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:37:59 Found package: libip6tc0:amd64 (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:37:59 Found package: libiptc0:amd64 (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:37:59 Found package: libisc-export160 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:37:59 Found package: libisc160:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:37:59 Found package: libisccc140:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:37:59 Found package: libisccfg140:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:37:59 Found package: libjson-c3:amd64 (version: 0.12.1-1.1+deb9u1) +2021-01-07 17:37:59 Found package: libk5crypto3:amd64 (version: 1.15-1+deb9u2) +2021-01-07 17:37:59 Found package: libkeyutils1:amd64 (version: 1.5.9-9) +2021-01-07 17:37:59 Found package: libklibc (version: 2.0.4-9) +2021-01-07 17:37:59 Found package: libkmod2:amd64 (version: 23-2) +2021-01-07 17:37:59 Found package: libkrb5-3:amd64 (version: 1.15-1+deb9u2) +2021-01-07 17:37:59 Found package: libkrb5support0:amd64 (version: 1.15-1+deb9u2) +2021-01-07 17:37:59 Found package: libksba8:amd64 (version: 1.3.5-2) +2021-01-07 17:37:59 Found package: libldap-2.4-2:amd64 (version: 2.4.44+dfsg-5+deb9u6) +2021-01-07 17:37:59 Found package: libldap-common (version: 2.4.44+dfsg-5+deb9u6) +2021-01-07 17:37:59 Found package: liblocale-gettext-perl (version: 1.07-3+b1) +2021-01-07 17:37:59 Found package: liblogging-stdlog0:amd64 (version: 1.0.5-2+b2) +2021-01-07 17:37:59 Found package: liblognorm5:amd64 (version: 2.0.1-1.1+b1) +2021-01-07 17:37:59 Found package: liblwres141:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:37:59 Found package: liblz4-1:amd64 (version: 0.0~r131-2+b1) +2021-01-07 17:37:59 Found package: liblzma5:amd64 (version: 5.2.2-1.2+b1) +2021-01-07 17:37:59 Found package: libmagic-mgc (version: 1:5.30-1+deb9u3) +2021-01-07 17:37:59 Found package: libmagic1:amd64 (version: 1:5.30-1+deb9u3) +2021-01-07 17:37:59 Found package: libmnl0:amd64 (version: 1.0.4-2) +2021-01-07 17:37:59 Found package: libmount1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:37:59 Found package: libmpdec2:amd64 (version: 2.4.2-1) +2021-01-07 17:37:59 Found package: libncurses5:amd64 (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:37:59 Found package: libncursesw5:amd64 (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:37:59 Found package: libnetfilter-conntrack3:amd64 (version: 1.0.6-2) +2021-01-07 17:37:59 Found package: libnettle6:amd64 (version: 3.3-1+b2) +2021-01-07 17:37:59 Found package: libnewt0.52:amd64 (version: 0.52.19-1+b1) +2021-01-07 17:37:59 Found package: libnfnetlink0:amd64 (version: 1.0.1-3) +2021-01-07 17:37:59 Found package: libnghttp2-14:amd64 (version: 1.18.1-1+deb9u1) +2021-01-07 17:37:59 Found package: libnpth0:amd64 (version: 1.3-1) +2021-01-07 17:37:59 Found package: libopts25:amd64 (version: 1:5.18.12-3) +2021-01-07 17:37:59 Found package: libp11-kit0:amd64 (version: 0.23.3-2) +2021-01-07 17:37:59 Found package: libpam-modules-bin (version: 1.1.8-3.6) +2021-01-07 17:37:59 Found package: libpam-modules:amd64 (version: 1.1.8-3.6) +2021-01-07 17:37:59 Found package: libpam-runtime (version: 1.1.8-3.6) +2021-01-07 17:37:59 Found package: libpam0g:amd64 (version: 1.1.8-3.6) +2021-01-07 17:37:59 Found package: libparted2:amd64 (version: 3.2-17) +2021-01-07 17:37:59 Found package: libpcre3:amd64 (version: 2:8.39-3) +2021-01-07 17:37:59 Found package: libperl5.24:amd64 (version: 5.24.1-3+deb9u7) +2021-01-07 17:37:59 Found package: libpipeline1:amd64 (version: 1.4.1-2) +2021-01-07 17:37:59 Found package: libpng16-16:amd64 (version: 1.6.28-1+deb9u1) +2021-01-07 17:37:59 Found package: libpopt0:amd64 (version: 1.16-10+b2) +2021-01-07 17:37:59 Found package: libprocps6:amd64 (version: 2:3.3.12-3+deb9u1) +2021-01-07 17:37:59 Found package: libpsl5:amd64 (version: 0.17.0-3) +2021-01-07 17:37:59 Found package: libpython-stdlib:amd64 (version: 2.7.13-2) +2021-01-07 17:37:59 Found package: libpython2.7-minimal:amd64 (version: 2.7.13-2+deb9u4) +2021-01-07 17:37:59 Found package: libpython2.7-stdlib:amd64 (version: 2.7.13-2+deb9u4) +2021-01-07 17:37:59 Found package: libpython3-stdlib:amd64 (version: 3.5.3-1) +2021-01-07 17:37:59 Found package: libpython3.5-minimal:amd64 (version: 3.5.3-1+deb9u3) +2021-01-07 17:37:59 Found package: libpython3.5-stdlib:amd64 (version: 3.5.3-1+deb9u3) +2021-01-07 17:37:59 Found package: libreadline7:amd64 (version: 7.0-3) +2021-01-07 17:37:59 Found package: librtmp1:amd64 (version: 2.4+20151223.gitfa8646d.1-1+b1) +2021-01-07 17:37:59 Found package: libsasl2-2:amd64 (version: 2.1.27~101-g0780600+dfsg-3+deb9u1) +2021-01-07 17:37:59 Found package: libsasl2-modules-db:amd64 (version: 2.1.27~101-g0780600+dfsg-3+deb9u1) +2021-01-07 17:37:59 Found package: libseccomp2:amd64 (version: 2.3.1-2.1+deb9u1) +2021-01-07 17:37:59 Found package: libselinux1:amd64 (version: 2.6-3+b3) +2021-01-07 17:37:59 Found package: libsemanage-common (version: 2.6-2) +2021-01-07 17:37:59 Found package: libsemanage1:amd64 (version: 2.6-2) +2021-01-07 17:37:59 Found package: libsepol1:amd64 (version: 2.6-2) +2021-01-07 17:37:59 Found package: libslang2:amd64 (version: 2.3.1-5) +2021-01-07 17:37:59 Found package: libsmartcols1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:37:59 Found package: libsqlite3-0:amd64 (version: 3.16.2-5+deb9u3) +2021-01-07 17:37:59 Found package: libss2:amd64 (version: 1.43.4-2+deb9u2) +2021-01-07 17:37:59 Found package: libssh2-1:amd64 (version: 1.7.0-1+deb9u1) +2021-01-07 17:37:59 Found package: libssl1.0.2:amd64 (version: 1.0.2u-1~deb9u3) +2021-01-07 17:37:59 Found package: libssl1.1:amd64 (version: 1.1.0l-1~deb9u2) +2021-01-07 17:37:59 Found package: libstdc++6:amd64 (version: 6.3.0-18+deb9u1) +2021-01-07 17:37:59 Found package: libsystemd0:amd64 (version: 232-25+deb9u12) +2021-01-07 17:37:59 Found package: libtasn1-6:amd64 (version: 4.10-1.1+deb9u1) +2021-01-07 17:37:59 Found package: libtext-charwidth-perl (version: 0.04-7+b5) +2021-01-07 17:37:59 Found package: libtext-iconv-perl (version: 1.7-5+b4) +2021-01-07 17:37:59 Found package: libtext-wrapi18n-perl (version: 0.06-7.1) +2021-01-07 17:37:59 Found package: libtinfo5:amd64 (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:37:59 Found package: libudev1:amd64 (version: 232-25+deb9u12) +2021-01-07 17:37:59 Found package: libunistring0:amd64 (version: 0.9.6+really0.9.3-0.1) +2021-01-07 17:37:59 Found package: libustr-1.0-1:amd64 (version: 1.0.4-6) +2021-01-07 17:37:59 Found package: libuuid1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:37:59 Found package: libwrap0:amd64 (version: 7.6.q-26) +2021-01-07 17:37:59 Found package: libxapian30:amd64 (version: 1.4.3-2+deb9u3) +2021-01-07 17:37:59 Found package: libxml2:amd64 (version: 2.9.4+dfsg1-2.2+deb9u3) +2021-01-07 17:37:59 Found package: libxtables12:amd64 (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:37:59 Found package: linux-base (version: 4.5) +2021-01-07 17:37:59 Found package: linux-image-4.9.0-14-amd64 (version: 4.9.240-2) +2021-01-07 17:37:59 Found package: linux-image-amd64 (version: 4.9+80+deb9u12) +2021-01-07 17:37:59 Found package: locales (version: 2.24-11+deb9u4) +2021-01-07 17:37:59 Found package: login (version: 1:4.4-4.1) +2021-01-07 17:37:59 Found package: logrotate (version: 3.11.0-0.1) +2021-01-07 17:37:59 Found package: lsb-base (version: 9.20161125) +2021-01-07 17:37:59 Found package: lsb-release (version: 9.20161125) +2021-01-07 17:37:59 Found package: man-db (version: 2.7.6.1-2) +2021-01-07 17:37:59 Found package: mawk (version: 1.3.3-17+b3) +2021-01-07 17:37:59 Found package: mime-support (version: 3.60) +2021-01-07 17:37:59 Found package: mount (version: 2.29.2-1+deb9u1) +2021-01-07 17:37:59 Found package: multiarch-support (version: 2.24-11+deb9u4) +2021-01-07 17:37:59 Found package: nano (version: 2.7.4-1) +2021-01-07 17:37:59 Found package: ncurses-base (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:37:59 Found package: ncurses-bin (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:37:59 Found package: net-tools (version: 1.60+git20161116.90da8a0-1) +2021-01-07 17:37:59 Found package: netbase (version: 5.4) +2021-01-07 17:37:59 Found package: ntp (version: 1:4.2.8p10+dfsg-3+deb9u2) +2021-01-07 17:37:59 Found package: nvme-cli (version: 1.0-3) +2021-01-07 17:37:59 Found package: openssh-client (version: 1:7.4p1-10+deb9u7) +2021-01-07 17:37:59 Found package: openssh-server (version: 1:7.4p1-10+deb9u7) +2021-01-07 17:37:59 Found package: openssh-sftp-server (version: 1:7.4p1-10+deb9u7) +2021-01-07 17:37:59 Found package: openssl (version: 1.1.0l-1~deb9u2) +2021-01-07 17:37:59 Found package: parted (version: 3.2-17) +2021-01-07 17:37:59 Found package: passwd (version: 1:4.4-4.1) +2021-01-07 17:37:59 Found package: patch (version: 2.7.5-1+deb9u2) +2021-01-07 17:37:59 Found package: perl (version: 5.24.1-3+deb9u7) +2021-01-07 17:37:59 Found package: perl-base (version: 5.24.1-3+deb9u7) +2021-01-07 17:37:59 Found package: perl-modules-5.24 (version: 5.24.1-3+deb9u7) +2021-01-07 17:37:59 Found package: pinentry-curses (version: 1.0.0-2) +2021-01-07 17:37:59 Found package: procps (version: 2:3.3.12-3+deb9u1) +2021-01-07 17:37:59 Found package: python (version: 2.7.13-2) +2021-01-07 17:37:59 Found package: python-apt-common (version: 1.4.2) +2021-01-07 17:37:59 Found package: python-crcmod (version: 1.7-2+b2) +2021-01-07 17:37:59 Found package: python-minimal (version: 2.7.13-2) +2021-01-07 17:37:59 Found package: python2.7 (version: 2.7.13-2+deb9u4) +2021-01-07 17:37:59 Found package: python2.7-minimal (version: 2.7.13-2+deb9u4) +2021-01-07 17:37:59 Found package: python3 (version: 3.5.3-1) +2021-01-07 17:37:59 Found package: python3-apt (version: 1.4.2) +2021-01-07 17:37:59 Found package: python3-minimal (version: 3.5.3-1) +2021-01-07 17:37:59 Found package: python3.5 (version: 3.5.3-1+deb9u3) +2021-01-07 17:37:59 Found package: python3.5-minimal (version: 3.5.3-1+deb9u3) +2021-01-07 17:37:59 Found package: readline-common (version: 7.0-3) +2021-01-07 17:37:59 Found package: rename (version: 0.20-4) +2021-01-07 17:37:59 Found package: rsync (version: 3.1.2-1+deb9u2) +2021-01-07 17:37:59 Found package: rsyslog (version: 8.24.0-1) +2021-01-07 17:37:59 Found package: screen (version: 4.5.0-6) +2021-01-07 17:37:59 Found package: sed (version: 4.4-1) +2021-01-07 17:37:59 Found package: sensible-utils (version: 0.0.9+deb9u1) +2021-01-07 17:37:59 Found package: sgml-base (version: 1.29) +2021-01-07 17:37:59 Found package: sudo (version: 1.8.19p1-2.1+deb9u2) +2021-01-07 17:37:59 Found package: systemd (version: 232-25+deb9u12) +2021-01-07 17:37:59 Found package: systemd-sysv (version: 232-25+deb9u12) +2021-01-07 17:37:59 Found package: sysvinit-utils (version: 2.88dsf-59.9) +2021-01-07 17:37:59 Found package: tar (version: 1.29b-1.1) +2021-01-07 17:37:59 Found package: tasksel (version: 3.39) +2021-01-07 17:37:59 Found package: tasksel-data (version: 3.39) +2021-01-07 17:37:59 Found package: tzdata (version: 2020d-0+deb9u1) +2021-01-07 17:37:59 Found package: ucf (version: 3.0036) +2021-01-07 17:37:59 Found package: udev (version: 232-25+deb9u12) +2021-01-07 17:37:59 Found package: unattended-upgrades (version: 0.93.1+nmu1) +2021-01-07 17:37:59 Found package: util-linux (version: 2.29.2-1+deb9u1) +2021-01-07 17:37:59 Found package: uuid-runtime (version: 2.29.2-1+deb9u1) +2021-01-07 17:37:59 Found package: vim (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:37:59 Found package: vim-common (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:37:59 Found package: vim-runtime (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:37:59 Found package: vim-tiny (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:38:00 Found package: wget (version: 1.18-5+deb9u3) +2021-01-07 17:38:00 Found package: whiptail (version: 0.52.19-1+b1) +2021-01-07 17:38:00 Found package: xml-core (version: 0.17) +2021-01-07 17:38:00 Found package: xxd (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:38:00 Found package: xz-utils (version: 5.2.2-1.2+b1) +2021-01-07 17:38:00 Found package: zlib1g:amd64 (version: 1:1.2.8.dfsg-5) +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Performing test ID PKGS-7346 (Search unpurged packages on system) +2021-01-07 17:38:00 Test: Querying dpkg -l to get unpurged packages +2021-01-07 17:38:00 Result: no packages found with left overs +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Skipped test PKGS-7348 (Check for old distfiles) +2021-01-07 17:38:00 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Skipped test PKGS-7350 (Checking for installed packages with DNF utility) +2021-01-07 17:38:00 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Skipped test PKGS-7352 (Checking for security updates with DNF utility) +2021-01-07 17:38:00 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Skipped test PKGS-7354 (Checking package database integrity) +2021-01-07 17:38:00 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Skipped test PKGS-7366 (Checking for debsecan utility) +2021-01-07 17:38:00 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Performing test ID PKGS-7370 (Checking for debsums utility) +2021-01-07 17:38:00 Result: debsums utility is not installed. +2021-01-07 17:38:00 Hardening: assigned partial number of hardening points (0 of 2). Currently having 100 points (out of 144) +2021-01-07 17:38:00 Suggestion: Install debsums utility for the verification of packages with known good database. [test:PKGS-7370] [details:-] [solution:-] +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Skipped test PKGS-7378 (Query portmaster for port upgrades) +2021-01-07 17:38:00 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Skipped test PKGS-7380 (Check for vulnerable NetBSD packages) +2021-01-07 17:38:00 Reason to skip: Incorrect guest OS (NetBSD only) +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Skipped test PKGS-7381 (Check for vulnerable FreeBSD packages with pkg) +2021-01-07 17:38:00 Reason to skip: pkg tool not available +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Skipped test PKGS-7382 (Check for vulnerable FreeBSD packages with portaudit) +2021-01-07 17:38:00 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Skipped test PKGS-7383 (Check for YUM package update management) +2021-01-07 17:38:00 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Skipped test PKGS-7384 (Check for YUM utils package) +2021-01-07 17:38:00 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Skipped test PKGS-7386 (Check for YUM security package) +2021-01-07 17:38:00 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Skipped test PKGS-7387 (Check for GPG signing in YUM security package) +2021-01-07 17:38:00 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Performing test ID PKGS-7388 (Check security repository in apt sources.list file) +2021-01-07 17:38:00 Searching for security.debian.org/security.ubuntu.com or security repositories in /etc/apt/sources.list file +2021-01-07 17:38:00 Result: Found security repository in /etc/apt/sources.list +2021-01-07 17:38:00 Output: deb http://security.debian.org/ stretch/updates main +2021-01-07 17:38:00 Output: deb-src http://security.debian.org/ stretch/updates main +2021-01-07 17:38:00 Searching for security.debian.org/security.ubuntu.com or security repositories in /etc/apt/sources.list.d directory +2021-01-07 17:38:00 Result: security repository was found +2021-01-07 17:38:00 Hardening: assigned maximum number of hardening points for this item (3). Currently having 103 points (out of 147) +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Performing test ID PKGS-7390 (Check Ubuntu database consistency) +2021-01-07 17:38:00 Test: Package database consistency by running apt-get check +2021-01-07 17:38:00 Result: package database seems to be consistent. +2021-01-07 17:38:00 ==== +2021-01-07 17:38:00 Performing test ID PKGS-7392 (Check for Debian/Ubuntu security updates) +2021-01-07 17:38:00 Action: updating package repository with apt-get +2021-01-07 17:38:01 Result: apt-get finished +2021-01-07 17:38:01 Test: Checking if /usr/lib/update-notifier/apt-check exists +2021-01-07 17:38:01 Result: apt-check (update-notifier-common) not found +2021-01-07 17:38:02 Result: found vulnerable package(s) via apt-get (-security channel) +2021-01-07 17:38:02 Found vulnerable package: curl +2021-01-07 17:38:02 Found vulnerable package: libcurl3 +2021-01-07 17:38:02 Found vulnerable package: libp11-kit0 +2021-01-07 17:38:02 Found vulnerable package: linux-image-4.9.0-14-amd64 +2021-01-07 17:38:02 Found vulnerable package: python-apt-common +2021-01-07 17:38:02 Found vulnerable package: python3-apt +2021-01-07 17:38:02 Found vulnerable package: tzdata +2021-01-07 17:38:02 Warning: Found one or more vulnerable packages. [test:PKGS-7392] [details:-] [solution:-] +2021-01-07 17:38:02 Suggestion: Update your system with apt-get update, apt-get upgrade, apt-get dist-upgrade and/or unattended-upgrades [test:PKGS-7392] [details:-] [solution:-] +2021-01-07 17:38:02 ==== +2021-01-07 17:38:02 Skipped test PKGS-7393 (Check for Gentoo vulnerable packages) +2021-01-07 17:38:02 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:02 ==== +2021-01-07 17:38:02 Performing test ID PKGS-7394 (Check for Ubuntu updates) +2021-01-07 17:38:02 Test: checking /usr/bin/apt-show-versions +2021-01-07 17:38:02 Result: /usr/bin/apt-show-versions not found +2021-01-07 17:38:02 Suggestion: Install package apt-show-versions for patch management purposes [test:PKGS-7394] [details:-] [solution:-] +2021-01-07 17:38:02 ==== +2021-01-07 17:38:02 Performing test ID PKGS-7398 (Check for package audit tool) +2021-01-07 17:38:02 Test: checking for package audit tool +2021-01-07 17:38:02 Result: found package audit tool: apt-get +2021-01-07 17:38:02 ==== +2021-01-07 17:38:02 Performing test ID PKGS-7410 (Count installed kernel packages) +2021-01-07 17:38:02 Test: Checking how many kernel packages are installed +2021-01-07 17:38:02 Result: found 1 kernel packages on the system, which is fine +2021-01-07 17:38:02 ==== +2021-01-07 17:38:02 Performing test ID PKGS-7420 (Detect toolkit to automatically download and apply upgrades) +2021-01-07 17:38:02 Result: found unattended-upgrade +2021-01-07 17:38:02 Hardening: assigned maximum number of hardening points for this item (5). Currently having 108 points (out of 152) +2021-01-07 17:38:02 Security check: file is normal +2021-01-07 17:38:02 Checking permissions of /home/ktdw73/scans/lynis/include/tests_networking +2021-01-07 17:38:02 File permissions are OK +2021-01-07 17:38:02 ==== +2021-01-07 17:38:02 Action: Performing tests from category: Networking +2021-01-07 17:38:02 ==== +2021-01-07 17:38:02 Performing test ID NETW-2400 (Hostname length and value check) +2021-01-07 17:38:02 Result: FQDN is defined and not longer than 253 characters (53 characters) +2021-01-07 17:38:02 Result: hostnamed is defined and not longer than 63 characters +2021-01-07 17:38:02 Result: good, no unexpected characters discovered in hostname +2021-01-07 17:38:02 ==== +2021-01-07 17:38:02 Performing test ID NETW-2600 (Checking IPv6 configuration) +2021-01-07 17:38:03 Result: IPV6 mode is auto +2021-01-07 17:38:03 Result: IPv6 only configuration: NO +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID NETW-2704 (Basic nameserver configuration tests) +2021-01-07 17:38:03 Test: Checking /etc/resolv.conf file +2021-01-07 17:38:03 Result: Found /etc/resolv.conf file +2021-01-07 17:38:03 Test: Querying nameservers +2021-01-07 17:38:03 Found nameserver: 169.254.169.254 +2021-01-07 17:38:03 Result: Nameserver test for 169.254.169.254 skipped, 'dig' not installed +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID NETW-2705 (Check availability two nameservers) +2021-01-07 17:38:03 Result: dig not installed, test can't be fully performed +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID NETW-2706 (Check systemd-resolved and upstream DNSSEC status) +2021-01-07 17:38:03 Result: command '/usr/bin/systemd-resolve --statistics' returned an error. Please run command manually to check for details. +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID NETW-3001 (Find default gateway (route)) +2021-01-07 17:38:03 Test: Searching default gateway(s) +2021-01-07 17:38:03 Result: Found default gateway 10.156.0.1 +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID NETW-3004 (Search for available network interfaces) +2021-01-07 17:38:03 Found network interface: lo +2021-01-07 17:38:03 Found network interface: eth0 +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID NETW-3006 (Get network MAC addresses) +2021-01-07 17:38:03 Found MAC address: 42:01:0a:9c:00:06 +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID NETW-3008 (Get network IP addresses) +2021-01-07 17:38:03 Found IPv4 address: 10.156.0.6 +2021-01-07 17:38:03 Found IPv4 address: 127.0.0.1 +2021-01-07 17:38:03 Found IPv6 address: fe80::4001:aff:fe9c:6 +2021-01-07 17:38:03 Found IPv6 address: ::1 +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID NETW-3012 (Check listening ports) +2021-01-07 17:38:03 Test: Retrieving ss information to find listening ports +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test NETW-3014 (Checking promiscuous interfaces (BSD)) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID NETW-3015 (Checking promiscuous interfaces (Linux)) +2021-01-07 17:38:03 Test: Using ip binary to retrieve network interfaces +2021-01-07 17:38:03 Test: Checking all interfaces to discover any with promiscuous mode enabled +2021-01-07 17:38:03 Result: No promiscuous interfaces found +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID NETW-3028 (Checking connections in WAIT state) +2021-01-07 17:38:03 Test: Using netstat for check for connections in WAIT state +2021-01-07 17:38:03 Result: currently 3 connections are in a waiting state (max configured: 5000). +2021-01-07 17:38:03 Result: 3 connections are in WAIT state +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID NETW-3030 (Checking DHCP client status) +2021-01-07 17:38:03 Performing pgrep scan without uid +2021-01-07 17:38:03 IsRunning: process 'dhclient' found (598 ) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID NETW-3032 (Checking for ARP monitoring software) +2021-01-07 17:38:03 Performing pgrep scan without uid +2021-01-07 17:38:03 IsRunning: process 'addrwatch' not found +2021-01-07 17:38:03 Performing pgrep scan without uid +2021-01-07 17:38:03 IsRunning: process 'arpwatch' not found +2021-01-07 17:38:03 Performing pgrep scan without uid +2021-01-07 17:38:03 IsRunning: process 'arpon' not found +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID NETW-3200 (Determine available network protocols) +2021-01-07 17:38:03 Test: checking the status of some network protocols that typically are not used +2021-01-07 17:38:03 Test: now checking module 'dccp' +2021-01-07 17:38:03 Suggestion: Determine if protocol 'dccp' is really needed on this system [test:NETW-3200] [details:-] [solution:-] +2021-01-07 17:38:03 Test: now checking module 'sctp' +2021-01-07 17:38:03 Suggestion: Determine if protocol 'sctp' is really needed on this system [test:NETW-3200] [details:-] [solution:-] +2021-01-07 17:38:03 Test: now checking module 'rds' +2021-01-07 17:38:03 Suggestion: Determine if protocol 'rds' is really needed on this system [test:NETW-3200] [details:-] [solution:-] +2021-01-07 17:38:03 Test: now checking module 'tipc' +2021-01-07 17:38:03 Suggestion: Determine if protocol 'tipc' is really needed on this system [test:NETW-3200] [details:-] [solution:-] +2021-01-07 17:38:03 Security check: file is normal +2021-01-07 17:38:03 Checking permissions of /home/ktdw73/scans/lynis/include/tests_printers_spoolers +2021-01-07 17:38:03 File permissions are OK +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Action: Performing tests from category: Printers and Spools +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test PRNT-2302 (Check for printcap consistency) +2021-01-07 17:38:03 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID PRNT-2304 (Check cupsd status) +2021-01-07 17:38:03 Test: Checking cupsd status +2021-01-07 17:38:03 Performing pgrep scan without uid +2021-01-07 17:38:03 IsRunning: process 'cupsd' not found +2021-01-07 17:38:03 Result: cups daemon not running, cups daemon tests skipped +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test PRNT-2306 (Check CUPSd configuration file) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test PRNT-2307 (Check CUPSd configuration file permissions) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test PRNT-2308 (Check CUPSd network configuration) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID PRNT-2314 (Check lpd status) +2021-01-07 17:38:03 Test: Checking lpd status +2021-01-07 17:38:03 Performing pgrep scan without uid +2021-01-07 17:38:03 IsRunning: process 'lpd' not found +2021-01-07 17:38:03 Result: lp daemon not running +2021-01-07 17:38:03 Hardening: assigned maximum number of hardening points for this item (4). Currently having 112 points (out of 156) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test PRNT-2316 (Checking /etc/qconfig file) +2021-01-07 17:38:03 Reason to skip: Incorrect guest OS (AIX only) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test PRNT-2418 (Checking qdaemon printer spooler status) +2021-01-07 17:38:03 Reason to skip: Incorrect guest OS (AIX only) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test PRNT-2420 (Checking old print jobs) +2021-01-07 17:38:03 Reason to skip: Incorrect guest OS (AIX only) +2021-01-07 17:38:03 Security check: file is normal +2021-01-07 17:38:03 Checking permissions of /home/ktdw73/scans/lynis/include/tests_mail_messaging +2021-01-07 17:38:03 File permissions are OK +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Action: Performing tests from category: Software: e-mail and messaging +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID MAIL-8802 (Check Exim status) +2021-01-07 17:38:03 Test: check Exim status +2021-01-07 17:38:03 Performing pgrep scan without uid +2021-01-07 17:38:03 IsRunning: process 'exim4' not found +2021-01-07 17:38:03 Performing pgrep scan without uid +2021-01-07 17:38:03 IsRunning: process 'exim' not found +2021-01-07 17:38:03 Result: no running Exim processes found +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test MAIL-8804 (Exim configuration options) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID MAIL-8814 (Check postfix process status) +2021-01-07 17:38:03 Test: check Postfix status +2021-01-07 17:38:03 Result: no running Postfix processes found +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test MAIL-8816 (Check Postfix configuration) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test MAIL-8817 (Check Postfix configuration errors) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test MAIL-8818 (Check Postfix configuration: banner) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID MAIL-8820 (Postfix configuration scan) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID MAIL-8838 (Check dovecot process) +2021-01-07 17:38:03 Test: check dovecot status +2021-01-07 17:38:03 Performing pgrep scan without uid +2021-01-07 17:38:03 IsRunning: process 'dovecot' not found +2021-01-07 17:38:03 Result: dovecot not found +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID MAIL-8860 (Check Qmail status) +2021-01-07 17:38:03 Test: check Qmail status +2021-01-07 17:38:03 Performing pgrep scan without uid +2021-01-07 17:38:03 IsRunning: process 'qmail-smtpd' not found +2021-01-07 17:38:03 Result: no running Qmail processes found +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID MAIL-8880 (Check Sendmail status) +2021-01-07 17:38:03 Test: check sendmail status +2021-01-07 17:38:03 Performing pgrep scan without uid +2021-01-07 17:38:03 IsRunning: process 'sendmail' not found +2021-01-07 17:38:03 Result: no running Sendmail processes found +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test MAIL-8920 (Check OpenSMTPD status) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 Security check: file is normal +2021-01-07 17:38:03 Checking permissions of /home/ktdw73/scans/lynis/include/tests_firewalls +2021-01-07 17:38:03 File permissions are OK +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Action: Performing tests from category: Software: firewalls +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID FIRE-4502 (Check iptables kernel module) +2021-01-07 17:38:03 Result: Found iptables in loaded kernel modules +2021-01-07 17:38:03 Found module: ip_tables +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID FIRE-4508 (Check used policies of iptables chains) +2021-01-07 17:38:03 Test: gathering information from table filter +2021-01-07 17:38:03 Result: iptables -- policy is . +2021-01-07 17:38:03 Result: +2021-01-07 17:38:03 Result: iptables filter -- INPUTACCEPTFORWARDACCEPTOUTPUTACCEPT policy is . +2021-01-07 17:38:03 Result: +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID FIRE-4512 (Check iptables for empty ruleset) +2021-01-07 17:38:03 Result: iptables ruleset seems to be empty (found 0 rules) +2021-01-07 17:38:03 Warning: iptables module(s) loaded, but no rules active [test:FIRE-4512] [details:-] [solution:-] +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID FIRE-4513 (Check iptables for unused rules) +2021-01-07 17:38:03 Result: There are no unused rules present +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test FIRE-4518 (Check pf firewall components) +2021-01-07 17:38:03 Reason to skip: No /dev/pf device +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test FIRE-4520 (Check pf configuration consistency) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID FIRE-4524 (Check for CSF presence) +2021-01-07 17:38:03 Test: check /etc/csf/csf.conf +2021-01-07 17:38:03 Result: /etc/csf/csf.conf does NOT exist +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test FIRE-4526 (Check ipf status) +2021-01-07 17:38:03 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test FIRE-4530 (Check IPFW status) +2021-01-07 17:38:03 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test FIRE-4532 (Check macOS application firewall) +2021-01-07 17:38:03 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test FIRE-4534 (Check for presence of outbound firewalls on macOS) +2021-01-07 17:38:03 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test FIRE-4536 (Check nftables status) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test FIRE-4538 (Check nftables basic configuration) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test FIRE-4540 (Check for empty nftables configuration) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID FIRE-4586 (Check firewall logging) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID FIRE-4590 (Check firewall status) +2021-01-07 17:38:03 Result: host based firewall or packet filter is active +2021-01-07 17:38:03 Hardening: assigned maximum number of hardening points for this item (5). Currently having 117 points (out of 161) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID FIRE-4594 (Check for APF presence) +2021-01-07 17:38:03 Test: check /etc/apf/conf.apf +2021-01-07 17:38:03 Result: /etc/apf/conf.apf does NOT exist +2021-01-07 17:38:03 Security check: file is normal +2021-01-07 17:38:03 Checking permissions of /home/ktdw73/scans/lynis/include/tests_webservers +2021-01-07 17:38:03 File permissions are OK +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Action: Performing tests from category: Software: webserver +2021-01-07 17:38:03 Action: created temporary file /tmp/lynis.DJTAEuj8KT +2021-01-07 17:38:03 Action: created temporary file /tmp/lynis.SGFZjaVLjs +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID HTTP-6622 (Checking Apache presence) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test HTTP-6624 (Testing main Apache configuration file) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test HTTP-6626 (Testing other Apache configuration file) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test HTTP-6632 (Determining all available Apache modules) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test HTTP-6640 (Determining existence of specific Apache modules) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test HTTP-6641 (Determining existence of specific Apache modules) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test HTTP-6643 (Determining existence of specific Apache modules) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID HTTP-6702 (Check nginx process) +2021-01-07 17:38:03 Test: searching running nginx process +2021-01-07 17:38:03 Performing pgrep scan without uid +2021-01-07 17:38:03 IsRunning: process 'nginx' not found +2021-01-07 17:38:03 Result: no running nginx process found +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test HTTP-6704 (Check nginx configuration file) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test HTTP-6706 (Check for additional nginx configuration files) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test HTTP-6708 (Check discovered nginx configuration settings) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test HTTP-6710 (Check nginx SSL configuration settings) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test HTTP-6712 (Check nginx access logging) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test HTTP-6714 (Check for missing error logs in nginx) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test HTTP-6716 (Check for debug mode on error log in nginx) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Skipped test HTTP-6720 (Check Nginx log files) +2021-01-07 17:38:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:03 Security check: file is normal +2021-01-07 17:38:03 Checking permissions of /home/ktdw73/scans/lynis/include/tests_ssh +2021-01-07 17:38:03 File permissions are OK +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Action: Performing tests from category: SSH Support +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID SSH-7402 (Check for running SSH daemon) +2021-01-07 17:38:03 Test: Searching for a SSH daemon +2021-01-07 17:38:03 Performing pgrep scan without uid +2021-01-07 17:38:03 IsRunning: process 'sshd' found (793 911 917 ) +2021-01-07 17:38:03 Action: created temporary file /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID SSH-7404 (Check SSH daemon file location) +2021-01-07 17:38:03 Test: searching for sshd_config file +2021-01-07 17:38:03 Result: /etc/ssh/sshd_config exists +2021-01-07 17:38:03 Test: check if we can access /etc/ssh/sshd_config (escaped: /etc/ssh/sshd_config) +2021-01-07 17:38:03 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:03 Result: file /etc/ssh/sshd_config is readable (or directory accessible). +2021-01-07 17:38:03 Result: using last found configuration file: /etc/ssh/sshd_config +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID SSH-7406 (Determine OpenSSH version) +2021-01-07 17:38:03 Result: discovered OpenSSH version is 7.4 +2021-01-07 17:38:03 Result: OpenSSH major version: 7 +2021-01-07 17:38:03 Result: OpenSSH minor version: 4 +2021-01-07 17:38:03 ==== +2021-01-07 17:38:03 Performing test ID SSH-7408 (Check SSH specific defined options) +2021-01-07 17:38:03 Test: Checking specific defined options in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:03 Result: added additional options for OpenSSH < 7.5 +2021-01-07 17:38:03 Test: Checking AllowTcpForwarding in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:03 Result: Option AllowTcpForwarding found +2021-01-07 17:38:03 Result: Option AllowTcpForwarding value is YES +2021-01-07 17:38:03 Result: OpenSSH option AllowTcpForwarding is in a weak configuration state and should be fixed +2021-01-07 17:38:03 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:AllowTcpForwarding (set YES to NO)] [solution:-] +2021-01-07 17:38:03 Hardening: assigned partial number of hardening points (0 of 3). Currently having 117 points (out of 164) +2021-01-07 17:38:03 Test: Checking ClientAliveCountMax in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:03 Result: Option ClientAliveCountMax found +2021-01-07 17:38:03 Result: Option ClientAliveCountMax value is 3 +2021-01-07 17:38:03 Result: OpenSSH option ClientAliveCountMax is configured reasonably +2021-01-07 17:38:03 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:ClientAliveCountMax (set 3 to 2)] [solution:-] +2021-01-07 17:38:03 Hardening: assigned partial number of hardening points (1 of 3). Currently having 118 points (out of 167) +2021-01-07 17:38:04 Test: Checking ClientAliveInterval in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option ClientAliveInterval found +2021-01-07 17:38:04 Result: Option ClientAliveInterval value is 0 +2021-01-07 17:38:04 Result: OpenSSH option ClientAliveInterval is configured very well +2021-01-07 17:38:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 121 points (out of 170) +2021-01-07 17:38:04 Test: Checking Compression in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option Compression found +2021-01-07 17:38:04 Result: Option Compression value is YES +2021-01-07 17:38:04 Result: OpenSSH option Compression is in a weak configuration state and should be fixed +2021-01-07 17:38:04 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:Compression (set YES to NO)] [solution:-] +2021-01-07 17:38:04 Hardening: assigned partial number of hardening points (0 of 3). Currently having 121 points (out of 173) +2021-01-07 17:38:04 Test: Checking FingerprintHash in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option FingerprintHash found +2021-01-07 17:38:04 Result: Option FingerprintHash value is SHA256 +2021-01-07 17:38:04 Result: OpenSSH option FingerprintHash is configured very well +2021-01-07 17:38:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 124 points (out of 176) +2021-01-07 17:38:04 Test: Checking GatewayPorts in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option GatewayPorts found +2021-01-07 17:38:04 Result: Option GatewayPorts value is NO +2021-01-07 17:38:04 Result: OpenSSH option GatewayPorts is configured very well +2021-01-07 17:38:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 127 points (out of 179) +2021-01-07 17:38:04 Test: Checking IgnoreRhosts in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option IgnoreRhosts found +2021-01-07 17:38:04 Result: Option IgnoreRhosts value is YES +2021-01-07 17:38:04 Result: OpenSSH option IgnoreRhosts is configured very well +2021-01-07 17:38:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 130 points (out of 182) +2021-01-07 17:38:04 Test: Checking LoginGraceTime in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option LoginGraceTime found +2021-01-07 17:38:04 Result: Option LoginGraceTime value is 120 +2021-01-07 17:38:04 Result: OpenSSH option LoginGraceTime is configured very well +2021-01-07 17:38:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 133 points (out of 185) +2021-01-07 17:38:04 Test: Checking LogLevel in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option LogLevel found +2021-01-07 17:38:04 Result: Option LogLevel value is INFO +2021-01-07 17:38:04 Result: OpenSSH option LogLevel is configured reasonably +2021-01-07 17:38:04 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:LogLevel (set INFO to VERBOSE)] [solution:-] +2021-01-07 17:38:04 Hardening: assigned partial number of hardening points (1 of 3). Currently having 134 points (out of 188) +2021-01-07 17:38:04 Test: Checking MaxAuthTries in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option MaxAuthTries found +2021-01-07 17:38:04 Result: Option MaxAuthTries value is 6 +2021-01-07 17:38:04 Result: OpenSSH option MaxAuthTries is configured reasonably +2021-01-07 17:38:04 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:MaxAuthTries (set 6 to 3)] [solution:-] +2021-01-07 17:38:04 Hardening: assigned partial number of hardening points (1 of 3). Currently having 135 points (out of 191) +2021-01-07 17:38:04 Test: Checking MaxSessions in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option MaxSessions found +2021-01-07 17:38:04 Result: Option MaxSessions value is 10 +2021-01-07 17:38:04 Result: OpenSSH option MaxSessions is in a weak configuration state and should be fixed +2021-01-07 17:38:04 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:MaxSessions (set 10 to 2)] [solution:-] +2021-01-07 17:38:04 Hardening: assigned partial number of hardening points (0 of 3). Currently having 135 points (out of 194) +2021-01-07 17:38:04 Test: Checking PermitRootLogin in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option PermitRootLogin found +2021-01-07 17:38:04 Result: Option PermitRootLogin value is NO +2021-01-07 17:38:04 Expected value has multiple values, testing if active value is in list ((FORCED-COMMANDS-ONLY|NO|PROHIBIT-PASSWORD|WITHOUT-PASSWORD)) +2021-01-07 17:38:04 Result: found +2021-01-07 17:38:04 Result: OpenSSH option PermitRootLogin is configured very well +2021-01-07 17:38:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 138 points (out of 197) +2021-01-07 17:38:04 Test: Checking PermitUserEnvironment in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option PermitUserEnvironment found +2021-01-07 17:38:04 Result: Option PermitUserEnvironment value is NO +2021-01-07 17:38:04 Result: OpenSSH option PermitUserEnvironment is configured very well +2021-01-07 17:38:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 141 points (out of 200) +2021-01-07 17:38:04 Test: Checking PermitTunnel in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option PermitTunnel found +2021-01-07 17:38:04 Result: Option PermitTunnel value is NO +2021-01-07 17:38:04 Result: OpenSSH option PermitTunnel is configured very well +2021-01-07 17:38:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 144 points (out of 203) +2021-01-07 17:38:04 Test: Checking Port in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option Port found +2021-01-07 17:38:04 Result: Option Port value is 22 +2021-01-07 17:38:04 Result: OpenSSH option Port is in a weak configuration state and should be fixed +2021-01-07 17:38:04 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:Port (set 22 to )] [solution:-] +2021-01-07 17:38:04 Hardening: assigned partial number of hardening points (0 of 3). Currently having 144 points (out of 206) +2021-01-07 17:38:04 Test: Checking PrintLastLog in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option PrintLastLog found +2021-01-07 17:38:04 Result: Option PrintLastLog value is YES +2021-01-07 17:38:04 Result: OpenSSH option PrintLastLog is configured very well +2021-01-07 17:38:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 147 points (out of 209) +2021-01-07 17:38:04 Test: Checking StrictModes in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option StrictModes found +2021-01-07 17:38:04 Result: Option StrictModes value is YES +2021-01-07 17:38:04 Result: OpenSSH option StrictModes is configured very well +2021-01-07 17:38:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 150 points (out of 212) +2021-01-07 17:38:04 Test: Checking TCPKeepAlive in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option TCPKeepAlive found +2021-01-07 17:38:04 Result: Option TCPKeepAlive value is YES +2021-01-07 17:38:04 Result: OpenSSH option TCPKeepAlive is in a weak configuration state and should be fixed +2021-01-07 17:38:04 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:TCPKeepAlive (set YES to NO)] [solution:-] +2021-01-07 17:38:04 Hardening: assigned partial number of hardening points (0 of 3). Currently having 150 points (out of 215) +2021-01-07 17:38:04 Test: Checking UseDNS in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option UseDNS found +2021-01-07 17:38:04 Result: Option UseDNS value is NO +2021-01-07 17:38:04 Result: OpenSSH option UseDNS is configured very well +2021-01-07 17:38:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 153 points (out of 218) +2021-01-07 17:38:04 Test: Checking X11Forwarding in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option X11Forwarding found +2021-01-07 17:38:04 Result: Option X11Forwarding value is YES +2021-01-07 17:38:04 Result: OpenSSH option X11Forwarding is in a weak configuration state and should be fixed +2021-01-07 17:38:04 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:X11Forwarding (set YES to NO)] [solution:-] +2021-01-07 17:38:04 Hardening: assigned partial number of hardening points (0 of 3). Currently having 153 points (out of 221) +2021-01-07 17:38:04 Test: Checking AllowAgentForwarding in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option AllowAgentForwarding found +2021-01-07 17:38:04 Result: Option AllowAgentForwarding value is YES +2021-01-07 17:38:04 Result: OpenSSH option AllowAgentForwarding is in a weak configuration state and should be fixed +2021-01-07 17:38:04 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:AllowAgentForwarding (set YES to NO)] [solution:-] +2021-01-07 17:38:04 Hardening: assigned partial number of hardening points (0 of 3). Currently having 153 points (out of 224) +2021-01-07 17:38:04 Test: Checking UsePrivilegeSeparation in /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:04 Result: Option UsePrivilegeSeparation found +2021-01-07 17:38:04 Result: Option UsePrivilegeSeparation value is SANDBOX +2021-01-07 17:38:04 Result: OpenSSH option UsePrivilegeSeparation is configured very well +2021-01-07 17:38:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 156 points (out of 227) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Performing test ID SSH-7440 (Check OpenSSH option: AllowUsers and AllowGroups) +2021-01-07 17:38:04 Result: AllowUsers is not set +2021-01-07 17:38:04 Result: AllowGroups is not set +2021-01-07 17:38:04 Result: SSH has no specific user or group limitation. Most likely all valid users can SSH to this machine. +2021-01-07 17:38:04 Hardening: assigned partial number of hardening points (0 of 1). Currently having 156 points (out of 228) +2021-01-07 17:38:04 Security check: file is normal +2021-01-07 17:38:04 Checking permissions of /home/ktdw73/scans/lynis/include/tests_snmp +2021-01-07 17:38:04 File permissions are OK +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Action: Performing tests from category: SNMP Support +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Performing test ID SNMP-3302 (Check for running SNMP daemon) +2021-01-07 17:38:04 Test: Searching for a SNMP daemon +2021-01-07 17:38:04 Performing pgrep scan without uid +2021-01-07 17:38:04 IsRunning: process 'snmpd' not found +2021-01-07 17:38:04 Result: No running SNMP daemon found +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test SNMP-3304 (Check SNMP daemon file location) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test SNMP-3306 (Check SNMP communities) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 Security check: file is normal +2021-01-07 17:38:04 Checking permissions of /home/ktdw73/scans/lynis/include/tests_databases +2021-01-07 17:38:04 File permissions are OK +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Action: Performing tests from category: Databases +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Performing test ID DBS-1804 (Checking active MySQL process) +2021-01-07 17:38:04 Result: MySQL process not active +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test DBS-1816 (Checking MySQL root password) +2021-01-07 17:38:04 Reason to skip: MySQL not installed, or not running +2021-01-07 17:38:04 Test skipped, MySQL daemon not running or no MySQL client available +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Performing test ID DBS-1818 (Check status of MongoDB server) +2021-01-07 17:38:04 Performing pgrep scan without uid +2021-01-07 17:38:04 IsRunning: process 'mongod' not found +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Performing test ID DBS-1820 (Check for authorization in MongoDB) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Performing test ID DBS-1826 (Checking active PostgreSQL processes) +2021-01-07 17:38:04 Performing pgrep scan without uid +2021-01-07 17:38:04 IsRunning: process 'postgres:' not found +2021-01-07 17:38:04 Result: PostgreSQL process not active +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test DBS-1828 (Test PostgreSQL configuration) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Performing test ID DBS-1840 (Checking active Oracle processes) +2021-01-07 17:38:04 Result: Oracle process(es) not active +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Performing test ID DBS-1860 (Checking active DB2 instances) +2021-01-07 17:38:04 Performing pgrep scan without uid +2021-01-07 17:38:04 IsRunning: process 'db2sysc' not found +2021-01-07 17:38:04 Result: No DB2 instances are running +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Performing test ID DBS-1880 (Check for active Redis server) +2021-01-07 17:38:04 Performing pgrep scan without uid +2021-01-07 17:38:04 IsRunning: process 'redis-server' not found +2021-01-07 17:38:04 Result: No Redis processes are running +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test DBS-1882 (Redis configuration file) +2021-01-07 17:38:04 Reason to skip: Redis not running +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test DBS-1884 (Redis: requirepass option configured) +2021-01-07 17:38:04 Reason to skip: Redis not running, or no configuration file found +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test DBS-1886 (Redis: rename-command CONFIG used) +2021-01-07 17:38:04 Reason to skip: Redis not running, or no configuration found +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test DBS-1888 (Redis: bind on localhost) +2021-01-07 17:38:04 Reason to skip: Redis not running, or no configuration found +2021-01-07 17:38:04 Security check: file is normal +2021-01-07 17:38:04 Checking permissions of /home/ktdw73/scans/lynis/include/tests_ldap +2021-01-07 17:38:04 File permissions are OK +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Action: Performing tests from category: LDAP Services +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Performing test ID LDAP-2219 (Check running OpenLDAP instance) +2021-01-07 17:38:04 Performing pgrep scan without uid +2021-01-07 17:38:04 IsRunning: process 'slapd' not found +2021-01-07 17:38:04 Result: No running slapd process found. +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test LDAP-2224 (Check presence slapd.conf) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 Security check: file is normal +2021-01-07 17:38:04 Checking permissions of /home/ktdw73/scans/lynis/include/tests_php +2021-01-07 17:38:04 File permissions are OK +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Action: Performing tests from category: PHP +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Performing test ID PHP-2211 (Check php.ini presence) +2021-01-07 17:38:04 Test: Checking for presence php.ini +2021-01-07 17:38:04 Test: checking presence /etc/php.ini +2021-01-07 17:38:04 Result: file /etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php.ini.default +2021-01-07 17:38:04 Result: file /etc/php.ini.default not found +2021-01-07 17:38:04 Test: checking presence /etc/php/php.ini +2021-01-07 17:38:04 Result: file /etc/php/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php5.5/php.ini +2021-01-07 17:38:04 Result: file /etc/php5.5/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php5.6/php.ini +2021-01-07 17:38:04 Result: file /etc/php5.6/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php7.0/php.ini +2021-01-07 17:38:04 Result: file /etc/php7.0/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php7.1/php.ini +2021-01-07 17:38:04 Result: file /etc/php7.1/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php7.2/php.ini +2021-01-07 17:38:04 Result: file /etc/php7.2/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php7.3/php.ini +2021-01-07 17:38:04 Result: file /etc/php7.3/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php7.4/php.ini +2021-01-07 17:38:04 Result: file /etc/php7.4/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cgi-php5/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cgi-php5/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cli-php5/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cli-php5/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/apache2-php5/php.ini +2021-01-07 17:38:04 Result: file /etc/php/apache2-php5/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/apache2-php5.5/php.ini +2021-01-07 17:38:04 Result: file /etc/php/apache2-php5.5/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/apache2-php5.6/php.ini +2021-01-07 17:38:04 Result: file /etc/php/apache2-php5.6/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/apache2-php7.0/php.ini +2021-01-07 17:38:04 Result: file /etc/php/apache2-php7.0/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/apache2-php7.1/php.ini +2021-01-07 17:38:04 Result: file /etc/php/apache2-php7.1/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/apache2-php7.2/php.ini +2021-01-07 17:38:04 Result: file /etc/php/apache2-php7.2/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/apache2-php7.3/php.ini +2021-01-07 17:38:04 Result: file /etc/php/apache2-php7.3/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/apache2-php7.4/php.ini +2021-01-07 17:38:04 Result: file /etc/php/apache2-php7.4/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cgi-php5.5/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cgi-php5.5/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cgi-php5.6/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cgi-php5.6/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cgi-php7.0/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cgi-php7.0/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cgi-php7.1/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cgi-php7.1/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cgi-php7.2/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cgi-php7.2/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cgi-php7.3/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cgi-php7.3/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cgi-php7.4/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cgi-php7.4/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cli-php5.5/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cli-php5.5/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cli-php5.6/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cli-php5.6/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cli-php7.0/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cli-php7.0/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cli-php7.1/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cli-php7.1/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cli-php7.2/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cli-php7.2/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cli-php7.3/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cli-php7.3/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/cli-php7.4/php.ini +2021-01-07 17:38:04 Result: file /etc/php/cli-php7.4/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/embed-php5.5/php.ini +2021-01-07 17:38:04 Result: file /etc/php/embed-php5.5/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/embed-php5.6/php.ini +2021-01-07 17:38:04 Result: file /etc/php/embed-php5.6/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/embed-php7.0/php.ini +2021-01-07 17:38:04 Result: file /etc/php/embed-php7.0/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/embed-php7.1/php.ini +2021-01-07 17:38:04 Result: file /etc/php/embed-php7.1/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/embed-php7.2/php.ini +2021-01-07 17:38:04 Result: file /etc/php/embed-php7.2/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/embed-php7.3/php.ini +2021-01-07 17:38:04 Result: file /etc/php/embed-php7.3/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/embed-php7.4/php.ini +2021-01-07 17:38:04 Result: file /etc/php/embed-php7.4/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/fpm-php7.4/php.ini +2021-01-07 17:38:04 Result: file /etc/php/fpm-php7.4/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/fpm-php7.3/php.ini +2021-01-07 17:38:04 Result: file /etc/php/fpm-php7.3/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/fpm-php7.2/php.ini +2021-01-07 17:38:04 Result: file /etc/php/fpm-php7.2/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/fpm-php7.1/php.ini +2021-01-07 17:38:04 Result: file /etc/php/fpm-php7.1/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/fpm-php7.0/php.ini +2021-01-07 17:38:04 Result: file /etc/php/fpm-php7.0/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/fpm-php5.5/php.ini +2021-01-07 17:38:04 Result: file /etc/php/fpm-php5.5/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/fpm-php5.6/php.ini +2021-01-07 17:38:04 Result: file /etc/php/fpm-php5.6/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php5/cgi/php.ini +2021-01-07 17:38:04 Result: file /etc/php5/cgi/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php5/cli/php.ini +2021-01-07 17:38:04 Result: file /etc/php5/cli/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php5/cli-php5.4/php.ini +2021-01-07 17:38:04 Result: file /etc/php5/cli-php5.4/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php5/cli-php5.5/php.ini +2021-01-07 17:38:04 Result: file /etc/php5/cli-php5.5/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php5/cli-php5.6/php.ini +2021-01-07 17:38:04 Result: file /etc/php5/cli-php5.6/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php5/apache2/php.ini +2021-01-07 17:38:04 Result: file /etc/php5/apache2/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php5/fpm/php.ini +2021-01-07 17:38:04 Result: file /etc/php5/fpm/php.ini not found +2021-01-07 17:38:04 Test: checking presence /private/etc/php.ini +2021-01-07 17:38:04 Result: file /private/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.0/apache2/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.0/apache2/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.1/apache2/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.1/apache2/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.2/apache2/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.2/apache2/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.3/apache2/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.3/apache2/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.4/apache2/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.4/apache2/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.0/cli/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.0/cli/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.0/fpm/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.0/fpm/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.1/cli/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.1/cli/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.1/fpm/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.1/fpm/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.2/cli/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.2/cli/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.2/fpm/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.2/fpm/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.3/cli/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.3/cli/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.3/fpm/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.3/fpm/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.4/cli/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.4/cli/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php/7.4/fpm/php.ini +2021-01-07 17:38:04 Result: file /etc/php/7.4/fpm/php.ini not found +2021-01-07 17:38:04 Test: checking presence /var/www/conf/php.ini +2021-01-07 17:38:04 Result: file /var/www/conf/php.ini not found +2021-01-07 17:38:04 Test: checking presence /usr/local/etc/php.ini +2021-01-07 17:38:04 Result: file /usr/local/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /usr/local/lib/php.ini +2021-01-07 17:38:04 Result: file /usr/local/lib/php.ini not found +2021-01-07 17:38:04 Test: checking presence /usr/local/etc/php5/cgi/php.ini +2021-01-07 17:38:04 Result: file /usr/local/etc/php5/cgi/php.ini not found +2021-01-07 17:38:04 Test: checking presence /usr/local/php54/lib/php.ini +2021-01-07 17:38:04 Result: file /usr/local/php54/lib/php.ini not found +2021-01-07 17:38:04 Test: checking presence /usr/local/php56/lib/php.ini +2021-01-07 17:38:04 Result: file /usr/local/php56/lib/php.ini not found +2021-01-07 17:38:04 Test: checking presence /usr/local/php70/lib/php.ini +2021-01-07 17:38:04 Result: file /usr/local/php70/lib/php.ini not found +2021-01-07 17:38:04 Test: checking presence /usr/local/php71/lib/php.ini +2021-01-07 17:38:04 Result: file /usr/local/php71/lib/php.ini not found +2021-01-07 17:38:04 Test: checking presence /usr/local/php72/lib/php.ini +2021-01-07 17:38:04 Result: file /usr/local/php72/lib/php.ini not found +2021-01-07 17:38:04 Test: checking presence /usr/local/php73/lib/php.ini +2021-01-07 17:38:04 Result: file /usr/local/php73/lib/php.ini not found +2021-01-07 17:38:04 Test: checking presence /usr/local/php74/lib/php.ini +2021-01-07 17:38:04 Result: file /usr/local/php74/lib/php.ini not found +2021-01-07 17:38:04 Test: checking presence /usr/local/zend/etc/php.ini +2021-01-07 17:38:04 Result: file /usr/local/zend/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /usr/pkg/etc/php.ini +2021-01-07 17:38:04 Result: file /usr/pkg/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/cpanel/ea-php54/root/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/cpanel/ea-php54/root/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/cpanel/ea-php55/root/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/cpanel/ea-php55/root/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/cpanel/ea-php56/root/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/cpanel/ea-php56/root/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/cpanel/ea-php70/root/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/cpanel/ea-php70/root/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/cpanel/ea-php71/root/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/cpanel/ea-php71/root/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/cpanel/ea-php72/root/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/cpanel/ea-php72/root/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/cpanel/ea-php73/root/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/cpanel/ea-php73/root/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/cpanel/ea-php74/root/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/cpanel/ea-php74/root/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/alt/php44/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/alt/php44/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/alt/php51/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/alt/php51/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/alt/php52/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/alt/php52/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/alt/php53/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/alt/php53/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/alt/php54/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/alt/php54/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/alt/php55/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/alt/php55/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/alt/php56/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/alt/php56/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/alt/php70/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/alt/php70/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/alt/php71/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/alt/php71/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/alt/php72/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/alt/php72/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/alt/php73/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/alt/php73/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /opt/alt/php74/etc/php.ini +2021-01-07 17:38:04 Result: file /opt/alt/php74/etc/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/opt/remi/php56/php.ini +2021-01-07 17:38:04 Result: file /etc/opt/remi/php56/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/opt/remi/php70/php.ini +2021-01-07 17:38:04 Result: file /etc/opt/remi/php70/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/opt/remi/php71/php.ini +2021-01-07 17:38:04 Result: file /etc/opt/remi/php71/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/opt/remi/php72/php.ini +2021-01-07 17:38:04 Result: file /etc/opt/remi/php72/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/opt/remi/php73/php.ini +2021-01-07 17:38:04 Result: file /etc/opt/remi/php73/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/opt/remi/php74/php.ini +2021-01-07 17:38:04 Result: file /etc/opt/remi/php74/php.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php-5.6.ini +2021-01-07 17:38:04 Result: file /etc/php-5.6.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php-7.0.ini +2021-01-07 17:38:04 Result: file /etc/php-7.0.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php-7.1.ini +2021-01-07 17:38:04 Result: file /etc/php-7.1.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php-7.2.ini +2021-01-07 17:38:04 Result: file /etc/php-7.2.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php-7.3.ini +2021-01-07 17:38:04 Result: file /etc/php-7.3.ini not found +2021-01-07 17:38:04 Test: checking presence /etc/php-7.4.ini +2021-01-07 17:38:04 Result: file /etc/php-7.4.ini not found +2021-01-07 17:38:04 Result: no files found for /etc/php5/conf.d +2021-01-07 17:38:04 Result: no files found for /etc/php/7.0/cli/conf.d +2021-01-07 17:38:04 Result: no files found for /etc/php/7.1/cli/conf.d +2021-01-07 17:38:04 Result: no files found for /etc/php/7.2/cli/conf.d +2021-01-07 17:38:04 Result: no files found for /etc/php/7.3/cli/conf.d +2021-01-07 17:38:04 Result: no files found for /etc/php/7.4/cli/conf.d +2021-01-07 17:38:04 Result: no files found for /etc/php/7.0/fpm/conf.d +2021-01-07 17:38:04 Result: no files found for /etc/php/7.1/fpm/conf.d +2021-01-07 17:38:04 Result: no files found for /etc/php/7.2/fpm/conf.d +2021-01-07 17:38:04 Result: no files found for /etc/php/7.3/fpm/conf.d +2021-01-07 17:38:04 Result: no files found for /etc/php/7.4/fpm/conf.d +2021-01-07 17:38:04 Result: no files found for /etc/php.d +2021-01-07 17:38:04 Result: no files found for /opt/cpanel/ea-php54/root/etc/php.d +2021-01-07 17:38:04 Result: no files found for /opt/cpanel/ea-php55/root/etc/php.d +2021-01-07 17:38:04 Result: no files found for /opt/cpanel/ea-php56/root/etc/php.d +2021-01-07 17:38:04 Result: no files found for /opt/cpanel/ea-php70/root/etc/php.d +2021-01-07 17:38:04 Result: no files found for /opt/cpanel/ea-php71/root/etc/php.d +2021-01-07 17:38:04 Result: no files found for /opt/cpanel/ea-php72/root/etc/php.d +2021-01-07 17:38:04 Result: no files found for /opt/cpanel/ea-php73/root/etc/php.d +2021-01-07 17:38:04 Result: no files found for /opt/cpanel/ea-php74/root/etc/php.d +2021-01-07 17:38:04 Result: no files found for /opt/alt/php44/etc/php.d.all +2021-01-07 17:38:04 Result: no files found for /opt/alt/php51/etc/php.d.all +2021-01-07 17:38:04 Result: no files found for /opt/alt/php52/etc/php.d.all +2021-01-07 17:38:04 Result: no files found for /opt/alt/php53/etc/php.d.all +2021-01-07 17:38:04 Result: no files found for /opt/alt/php54/etc/php.d.all +2021-01-07 17:38:04 Result: no files found for /opt/alt/php55/etc/php.d.all +2021-01-07 17:38:04 Result: no files found for /opt/alt/php56/etc/php.d.all +2021-01-07 17:38:04 Result: no files found for /opt/alt/php70/etc/php.d.all +2021-01-07 17:38:04 Result: no files found for /opt/alt/php71/etc/php.d.all +2021-01-07 17:38:04 Result: no files found for /opt/alt/php72/etc/php.d.all +2021-01-07 17:38:04 Result: no files found for /opt/alt/php73/etc/php.d.all +2021-01-07 17:38:04 Result: no files found for /opt/alt/php74/etc/php.d.all +2021-01-07 17:38:04 Result: no files found for /usr/local/lib/php.conf.d +2021-01-07 17:38:04 Result: no files found for /usr/local/php70/lib/php.conf.d +2021-01-07 17:38:04 Result: no files found for /usr/local/php71/lib/php.conf.d +2021-01-07 17:38:04 Result: no files found for /usr/local/php72/lib/php.conf.d +2021-01-07 17:38:04 Result: no files found for /usr/local/php73/lib/php.conf.d +2021-01-07 17:38:04 Result: no files found for /usr/local/php74/lib/php.conf.d +2021-01-07 17:38:04 Result: no files found for /etc/php-5.6 +2021-01-07 17:38:04 Result: no files found for /etc/php-7.0 +2021-01-07 17:38:04 Result: no files found for /etc/php-7.1 +2021-01-07 17:38:04 Result: no files found for /etc/php-7.2 +2021-01-07 17:38:04 Result: no files found for /etc/php-7.3 +2021-01-07 17:38:04 Result: no files found for /etc/php-7.4 +2021-01-07 17:38:04 Result: no php.ini file found +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test PHP-2320 (Check PHP disabled functions) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test PHP-2368 (Check PHP register_globals option) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test PHP-2372 (Check PHP expose_php option) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test PHP-2374 (Check PHP enable_dl option) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test PHP-2376 (Check PHP allow_url_fopen option) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test PHP-2378 (Check PHP allow_url_include option) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test PHP-2382 (Check PHP expose_php option) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 Security check: file is normal +2021-01-07 17:38:04 Checking permissions of /home/ktdw73/scans/lynis/include/tests_squid +2021-01-07 17:38:04 File permissions are OK +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Action: Performing tests from category: Squid Support +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Performing test ID SQD-3602 (Check for running Squid daemon) +2021-01-07 17:38:04 Test: Searching for a Squid daemon +2021-01-07 17:38:04 Result: No running Squid daemon found +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test SQD-3604 (Check Squid daemon file location) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test SQD-3606 (Check Squid version) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test SQD-3610 (Gather Squid settings) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test SQD-3613 (Check Squid file permissions) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test SQD-3614 (Check Squid authentication methods) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test SQD-3616 (Check external Squid authentication) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test SQD-3620 (Check Squid access control lists) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test SQD-3624 (Check Squid safe ports) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test SQD-3630 (Check Squid reply_body_max_size option) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Skipped test SQD-3680 (Check Squid version suppression) +2021-01-07 17:38:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:04 Security check: file is normal +2021-01-07 17:38:04 Checking permissions of /home/ktdw73/scans/lynis/include/tests_logging +2021-01-07 17:38:04 File permissions are OK +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Action: Performing tests from category: Logging and files +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Performing test ID LOGG-2130 (Check for running syslog daemon) +2021-01-07 17:38:04 Test: Searching for a logging daemon +2021-01-07 17:38:04 Result: Found a logging daemon +2021-01-07 17:38:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 159 points (out of 231) +2021-01-07 17:38:04 ==== +2021-01-07 17:38:04 Performing test ID LOGG-2132 (Check for running syslog-ng daemon) +2021-01-07 17:38:04 Test: Searching for syslog-ng daemon in process list +2021-01-07 17:38:04 Performing pgrep scan without uid +2021-01-07 17:38:04 IsRunning: process 'syslog-ng' not found +2021-01-07 17:38:04 Result: Syslog-ng NOT found in process list +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test LOGG-2134 (Checking Syslog-NG configuration file consistency) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID LOGG-2136 (Check for running systemd journal daemon) +2021-01-07 17:38:05 Test: Searching for systemd journal daemon in process list +2021-01-07 17:38:05 Performing pgrep scan without uid +2021-01-07 17:38:05 IsRunning: process 'systemd-journal' found (421 ) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID LOGG-2210 (Check for running metalog daemon) +2021-01-07 17:38:05 Test: Searching for metalog daemon in process list +2021-01-07 17:38:05 Performing pgrep scan without uid +2021-01-07 17:38:05 IsRunning: process 'metalog' not found +2021-01-07 17:38:05 Result: metalog NOT found in process list +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID LOGG-2230 (Check for running RSyslog daemon) +2021-01-07 17:38:05 Test: Searching for RSyslog daemon in process list +2021-01-07 17:38:05 Performing pgrep scan without uid +2021-01-07 17:38:05 IsRunning: process 'rsyslogd' found (590 ) +2021-01-07 17:38:05 Result: Found rsyslogd in process list +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID LOGG-2240 (Check for running RFC 3195 compliant daemon) +2021-01-07 17:38:05 Test: Searching for RFC 3195 daemon (alias syslog reliable) in process list +2021-01-07 17:38:05 Performing pgrep scan without uid +2021-01-07 17:38:05 IsRunning: process 'rfc3195d' not found +2021-01-07 17:38:05 Result: rfc3195d NOT found in process list +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID LOGG-2138 (Checking kernel logger daemon on Linux) +2021-01-07 17:38:05 Test: Searching kernel logger daemon (klogd) +2021-01-07 17:38:05 Result: test skipped, because other facility is being used to log kernel messages +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID LOGG-2142 (Checking minilog daemon) +2021-01-07 17:38:05 Result: Checking for unkilled minilogd instances +2021-01-07 17:38:05 Performing pgrep scan without uid +2021-01-07 17:38:05 IsRunning: process 'minilogd' not found +2021-01-07 17:38:05 Result: No minilogd is running +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID LOGG-2146 (Checking logrotate.conf and logrotate.d) +2021-01-07 17:38:05 Test: Checking for /etc/logrotate.conf +2021-01-07 17:38:05 Result: /etc/logrotate.conf found (file) +2021-01-07 17:38:05 Test: Checking for /etc/logrotate.d (directory) +2021-01-07 17:38:05 Result: /etc/logrotate.d found +2021-01-07 17:38:05 Result: logrotate configuration found +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID LOGG-2148 (Checking logrotated files) +2021-01-07 17:38:05 Test: Checking which files are rotated with logrotate and if they exist +2021-01-07 17:38:05 Result: found one or more files which are rotated via logrotate +2021-01-07 17:38:05 Output: File:/var/log/cron.log:does_not_exist +2021-01-07 17:38:05 Output: File:/var/log/lpr.log:does_not_exist +2021-01-07 17:38:05 Output: File:/var/log/mail.err:does_not_exist +2021-01-07 17:38:05 Output: File:/var/log/mail.info:does_not_exist +2021-01-07 17:38:05 Output: File:/var/log/mail.log:does_not_exist +2021-01-07 17:38:05 Output: File:/var/log/mail.warn:does_not_exist +2021-01-07 17:38:05 Output: File:/var/log/unattended-upgrades/unattended-upgrades-dpkg.log:does_not_exist +2021-01-07 17:38:05 Output: File:/var/log/unattended-upgrades/unattended-upgrades-shutdown.log:does_not_exist +2021-01-07 17:38:05 Output: File:/var/log/unattended-upgrades/unattended-upgrades.log:does_not_exist +2021-01-07 17:38:05 Output: File:/var/log/user.log:does_not_exist +2021-01-07 17:38:05 Output: File:/var/log/alternatives.log:exists +2021-01-07 17:38:05 Output: File:/var/log/apt/history.log:exists +2021-01-07 17:38:05 Output: File:/var/log/apt/term.log:exists +2021-01-07 17:38:05 Output: File:/var/log/auth.log:exists +2021-01-07 17:38:05 Output: File:/var/log/btmp:exists +2021-01-07 17:38:05 Output: File:/var/log/cron.log:exists +2021-01-07 17:38:05 Output: File:/var/log/daemon.log:exists +2021-01-07 17:38:05 Output: File:/var/log/debug:exists +2021-01-07 17:38:05 Output: File:/var/log/dpkg.log:exists +2021-01-07 17:38:05 Output: File:/var/log/kern.log:exists +2021-01-07 17:38:05 Output: File:/var/log/lpr.log:exists +2021-01-07 17:38:05 Output: File:/var/log/mail.err:exists +2021-01-07 17:38:05 Output: File:/var/log/mail.info:exists +2021-01-07 17:38:05 Output: File:/var/log/mail.log:exists +2021-01-07 17:38:05 Output: File:/var/log/mail.warn:exists +2021-01-07 17:38:05 Output: File:/var/log/messages:exists +2021-01-07 17:38:05 Output: File:/var/log/syslog:exists +2021-01-07 17:38:05 Output: File:/var/log/unattended-upgrades/unattended-upgrades-dpkg.log:exists +2021-01-07 17:38:05 Output: File:/var/log/unattended-upgrades/unattended-upgrades-shutdown.log:exists +2021-01-07 17:38:05 Output: File:/var/log/unattended-upgrades/unattended-upgrades.log:exists +2021-01-07 17:38:05 Output: File:/var/log/user.log:exists +2021-01-07 17:38:05 Output: File:/var/log/wtmp:exists +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID LOGG-2150 (Checking directories in logrotate configuration) +2021-01-07 17:38:05 Test: Checking which directories can be found in logrotate configuration +2021-01-07 17:38:05 Result: found one or more directories (via logrotate configuration) +2021-01-07 17:38:05 Directory found: /var/log +2021-01-07 17:38:05 Directory found: /var/log/apt +2021-01-07 17:38:05 Directory found: /var/log/unattended-upgrades +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test LOGG-2152 (Checking loghost) +2021-01-07 17:38:05 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test LOGG-2153 (Checking loghost is localhost) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID LOGG-2154 (Checking syslog configuration file) +2021-01-07 17:38:05 Test: analyzing file /etc/rsyslog.conf for remote target +2021-01-07 17:38:05 Result: no remote target found +2021-01-07 17:38:05 Test: analyzing file /etc/rsyslog.d/90-google.conf for remote target +2021-01-07 17:38:05 Result: no remote target found +2021-01-07 17:38:05 Result: no remote logging found +2021-01-07 17:38:05 Suggestion: Enable logging to an external logging host for archiving purposes and additional protection [test:LOGG-2154] [details:-] [solution:-] +2021-01-07 17:38:05 Hardening: assigned partial number of hardening points (1 of 3). Currently having 160 points (out of 234) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test LOGG-2160 (Checking /etc/newsyslog.conf) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test LOGG-2162 (Checking directories in /etc/newsyslog.conf) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test LOGG-2164 (Checking files specified /etc/newsyslog.conf) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID LOGG-2170 (Checking log paths) +2021-01-07 17:38:05 Test: Searching log paths +2021-01-07 17:38:05 Result: directory /var/log exists +2021-01-07 17:38:05 Result: directory /var/adm can't be found +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID LOGG-2180 (Checking open log files) +2021-01-07 17:38:05 Test: checking open log files with lsof +2021-01-07 17:38:05 Result: lsof not installed, skipping test +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test LOGG-2190 (Checking for deleted files in use) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test LOGG-2192 (Checking for open log files that are empty) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 Security check: file is normal +2021-01-07 17:38:05 Checking permissions of /home/ktdw73/scans/lynis/include/tests_insecure_services +2021-01-07 17:38:05 File permissions are OK +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Action: Performing tests from category: Insecure services +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID INSE-8000 (Installed inetd package) +2021-01-07 17:38:05 Test: Checking if inetd is installed +2021-01-07 17:38:05 Result: inetd is NOT installed +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test INSE-8002 (Check for enabled inet daemon) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test INSE-8004 (Presence of inetd configuration file) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test INSE-8006 (Check configuration of inetd when disabled) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test INSE-8016 (Check for telnet via inetd) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID INSE-8100 (Check for installed xinetd daemon) +2021-01-07 17:38:05 Test: Checking for installed xinetd daemon +2021-01-07 17:38:05 Result: xinetd is NOT installed +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID INSE-8102 (Check for active xinet daemon) +2021-01-07 17:38:05 Test: Searching for active extended internet services daemon (xinetd) +2021-01-07 17:38:05 Performing pgrep scan without uid +2021-01-07 17:38:05 IsRunning: process 'xinetd' not found +2021-01-07 17:38:05 Result: xinetd is NOT running +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test INSE-8104 (Check for enabled xinet daemon) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test INSE-8106 (Check configuration of xinetd when disabled) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test INSE-8116 (Insecure services enabled via xinetd) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test INSE-8200 (Check if tcp_wrappers is installed when inetd/xinetd is active) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID INSE-8300 (Check if rsh client is installed) +2021-01-07 17:38:05 Test: Checking if rsh client is installed +2021-01-07 17:38:05 Result: rsh client is NOT installed +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID INSE-8304 (Check if rsh server is installed) +2021-01-07 17:38:05 Test: Checking if rsh server is installed +2021-01-07 17:38:05 Result: rsh server is NOT installed +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID INSE-8310 (Check if telnet client is installed) +2021-01-07 17:38:05 Test: Checking if telnet client is installed +2021-01-07 17:38:05 Result: telnet client is NOT installed +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID INSE-8322 (Check if telnet server is installed) +2021-01-07 17:38:05 Test: Checking if telnet server is installed +2021-01-07 17:38:05 Result: telnet server is NOT installed +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID INSE-8314 (Check if NIS client is installed) +2021-01-07 17:38:05 Test: Checking if NIS client is installed +2021-01-07 17:38:05 Result: NIS client is NOT installed +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID INSE-8316 (Check if NIS server is installed) +2021-01-07 17:38:05 Test: Checking if NIS server is installed +2021-01-07 17:38:05 Result: NIS server is NOT installed +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID INSE-8318 (Check if TFTP client is installed) +2021-01-07 17:38:05 Test: Checking if TFTP client is installed +2021-01-07 17:38:05 Result: TFTP client is NOT installed +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID INSE-8320 (Check if TFTP server is installed) +2021-01-07 17:38:05 Test: Checking if TFTP server is installed +2021-01-07 17:38:05 Result: TFTP server is NOT installed +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test INSE-8050 (Check for insecure services on macOS) +2021-01-07 17:38:05 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:38:05 Security check: file is normal +2021-01-07 17:38:05 Checking permissions of /home/ktdw73/scans/lynis/include/tests_banners +2021-01-07 17:38:05 File permissions are OK +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Action: Performing tests from category: Banners and identification +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test BANN-7113 (Check COPYRIGHT banner file) +2021-01-07 17:38:05 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID BANN-7124 (Check issue banner file) +2021-01-07 17:38:05 Test: Checking file /etc/issue +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID BANN-7126 (Check issue banner file contents) +2021-01-07 17:38:05 Test: Checking file /etc/issue contents for legal key words +2021-01-07 17:38:05 Result: Found only 0 key words (5 or more suggested), to warn unauthorized users and could be increased +2021-01-07 17:38:05 Suggestion: Add a legal banner to /etc/issue, to warn unauthorized users [test:BANN-7126] [details:-] [solution:-] +2021-01-07 17:38:05 Hardening: assigned partial number of hardening points (0 of 1). Currently having 160 points (out of 235) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID BANN-7128 (Check issue.net banner file) +2021-01-07 17:38:05 Test: Checking file /etc/issue.net +2021-01-07 17:38:05 Result: file /etc/issue.net exists +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID BANN-7130 (Check issue.net banner file contents) +2021-01-07 17:38:05 Test: Checking file /etc/issue.net contents for legal key words +2021-01-07 17:38:05 Result: Found only 0 key words, to warn unauthorized users and could be increased +2021-01-07 17:38:05 Suggestion: Add legal banner to /etc/issue.net, to warn unauthorized users [test:BANN-7130] [details:-] [solution:-] +2021-01-07 17:38:05 Hardening: assigned partial number of hardening points (0 of 1). Currently having 160 points (out of 236) +2021-01-07 17:38:05 Security check: file is normal +2021-01-07 17:38:05 Checking permissions of /home/ktdw73/scans/lynis/include/tests_scheduling +2021-01-07 17:38:05 File permissions are OK +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Action: Performing tests from category: Scheduled tasks +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID SCHD-7702 (Check status of cron daemon) +2021-01-07 17:38:05 Result: cron daemon running +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID SCHD-7704 (Check crontab/cronjobs) +2021-01-07 17:38:05 Found cronjob (/etc/crontab): 17,*,*,*,*,root,cd,/,&&,run-parts,--report,/etc/cron.hourly +2021-01-07 17:38:05 Found cronjob (/etc/crontab): 25,6,*,*,*,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.daily,) +2021-01-07 17:38:05 Found cronjob (/etc/crontab): 47,6,*,*,7,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.weekly,) +2021-01-07 17:38:05 Found cronjob (/etc/crontab): 52,6,1,*,*,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.monthly,) +2021-01-07 17:38:05 Test: checking directory /etc/cron.d +2021-01-07 17:38:05 Test: check if we can access /etc/cron.d (escaped: /etc/cron.d) +2021-01-07 17:38:05 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:05 Result: file /etc/cron.d is readable (or directory accessible). +2021-01-07 17:38:05 Result: found directory /etc/cron.d +2021-01-07 17:38:05 Test: searching files in /etc/cron.d +2021-01-07 17:38:05 Result: no files found in /etc/cron.d +2021-01-07 17:38:05 Test: checking directory /etc/cron.hourly +2021-01-07 17:38:05 Result: found directory /etc/cron.hourly +2021-01-07 17:38:05 Test: check if we can access /etc/cron.hourly (escaped: /etc/cron.hourly) +2021-01-07 17:38:05 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:05 Result: file /etc/cron.hourly is readable (or directory accessible). +2021-01-07 17:38:05 Test: searching files in /etc/cron.hourly +2021-01-07 17:38:05 Result: no files found in /etc/cron.hourly +2021-01-07 17:38:05 Test: checking directory /etc/cron.daily +2021-01-07 17:38:05 Result: found directory /etc/cron.daily +2021-01-07 17:38:05 Test: check if we can access /etc/cron.daily (escaped: /etc/cron.daily) +2021-01-07 17:38:05 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:05 Result: file /etc/cron.daily is readable (or directory accessible). +2021-01-07 17:38:05 Test: searching files in /etc/cron.daily +2021-01-07 17:38:05 Result: found one or more files in /etc/cron.daily. Analyzing files.. +2021-01-07 17:38:05 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/logrotate +2021-01-07 17:38:05 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/ntp +2021-01-07 17:38:05 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/apt-compat +2021-01-07 17:38:05 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/man-db +2021-01-07 17:38:05 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/dpkg +2021-01-07 17:38:05 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/bsdmainutils +2021-01-07 17:38:05 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/passwd +2021-01-07 17:38:05 Result: done with analyzing files in /etc/cron.daily +2021-01-07 17:38:05 Test: checking directory /etc/cron.weekly +2021-01-07 17:38:05 Result: found directory /etc/cron.weekly +2021-01-07 17:38:05 Test: check if we can access /etc/cron.weekly (escaped: /etc/cron.weekly) +2021-01-07 17:38:05 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:05 Result: file /etc/cron.weekly is readable (or directory accessible). +2021-01-07 17:38:05 Test: searching files in /etc/cron.weekly +2021-01-07 17:38:05 Result: found one or more files in /etc/cron.weekly. Analyzing files.. +2021-01-07 17:38:05 Result: Found cronjob (/etc/cron.weekly): /etc/cron.weekly/man-db +2021-01-07 17:38:05 Result: done with analyzing files in /etc/cron.weekly +2021-01-07 17:38:05 Test: checking directory /etc/cron.monthly +2021-01-07 17:38:05 Result: found directory /etc/cron.monthly +2021-01-07 17:38:05 Test: check if we can access /etc/cron.monthly (escaped: /etc/cron.monthly) +2021-01-07 17:38:05 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:05 Result: file /etc/cron.monthly is readable (or directory accessible). +2021-01-07 17:38:05 Test: searching files in /etc/cron.monthly +2021-01-07 17:38:05 Result: no files found in /etc/cron.monthly +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID SCHD-7718 (Check at users) +2021-01-07 17:38:05 Test: Checking atd status +2021-01-07 17:38:05 Result: at daemon not active +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test SCHD-7720 (Check at users) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test SCHD-7724 (Check at jobs) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 Result: no scheduled Lynis execution found (e.g. crontab, cronjob) +2021-01-07 17:38:05 Security check: file is normal +2021-01-07 17:38:05 Checking permissions of /home/ktdw73/scans/lynis/include/tests_accounting +2021-01-07 17:38:05 File permissions are OK +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Action: Performing tests from category: Accounting +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test ACCT-2754 (Check for available FreeBSD accounting information) +2021-01-07 17:38:05 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test ACCT-2760 (Check for available OpenBSD accounting information) +2021-01-07 17:38:05 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID ACCT-9622 (Check for available Linux accounting information) +2021-01-07 17:38:05 Test: Check accounting information +2021-01-07 17:38:05 Result: No accounting information available (/var/account/pacct, /var/log/account/pact nor /var/log/pact exist) +2021-01-07 17:38:05 Remark: Possibly there is another location where the accounting data is stored +2021-01-07 17:38:05 Suggestion: Enable process accounting [test:ACCT-9622] [details:-] [solution:-] +2021-01-07 17:38:05 Hardening: assigned partial number of hardening points (2 of 3). Currently having 162 points (out of 239) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID ACCT-9626 (Check for sysstat accounting data) +2021-01-07 17:38:05 Test: check /etc/default/sysstat presence +2021-01-07 17:38:05 Result: sysstat not found via /etc/default/sysstat or /etc/cron.d/sysstat or as a systemd unit +2021-01-07 17:38:05 Suggestion: Enable sysstat to collect accounting (no results) [test:ACCT-9626] [details:-] [solution:-] +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID ACCT-9628 (Check for auditd) +2021-01-07 17:38:05 Test: Check auditd status +2021-01-07 17:38:05 Performing pgrep scan without uid +2021-01-07 17:38:05 IsRunning: process 'auditd' not found +2021-01-07 17:38:05 Result: auditd not active +2021-01-07 17:38:05 Suggestion: Enable auditd to collect audit information [test:ACCT-9628] [details:-] [solution:-] +2021-01-07 17:38:05 Hardening: assigned partial number of hardening points (0 of 1). Currently having 162 points (out of 240) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test ACCT-9630 (Check for auditd rules) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test ACCT-9632 (Check for auditd configuration file) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test ACCT-9634 (Check for auditd log file) +2021-01-07 17:38:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Performing test ID ACCT-9636 (Check for Snoopy wrapper and logger) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:05 Skipped test ACCT-9650 (Check Solaris audit daemon) +2021-01-07 17:38:05 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:38:05 ==== +2021-01-07 17:38:06 Skipped test ACCT-9652 (Check auditd SMF status) +2021-01-07 17:38:06 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Skipped test ACCT-9654 (Check BSM auditing in /etc/system) +2021-01-07 17:38:06 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Skipped test ACCT-9656 (Check BSM auditing in module list) +2021-01-07 17:38:06 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Skipped test ACCT-9660 (Check location of audit events) +2021-01-07 17:38:06 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Skipped test ACCT-9662 (Check Solaris auditing stats) +2021-01-07 17:38:06 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:38:06 Security check: file is normal +2021-01-07 17:38:06 Checking permissions of /home/ktdw73/scans/lynis/include/tests_time +2021-01-07 17:38:06 File permissions are OK +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Action: Performing tests from category: Time and Synchronization +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Performing test ID TIME-3104 (Check for running NTP daemon or client) +2021-01-07 17:38:06 Test: Searching for a running NTP daemon or available client +2021-01-07 17:38:06 Result: no chrony configuration found +2021-01-07 17:38:06 Performing pgrep scan without uid +2021-01-07 17:38:06 IsRunning: process 'dntpd' not found +2021-01-07 17:38:06 Result: found running NTP daemon in process list +2021-01-07 17:38:06 Performing pgrep scan without uid +2021-01-07 17:38:06 IsRunning: process 'timed' not found +2021-01-07 17:38:06 Result: crontab file /etc/anacrontab not found +2021-01-07 17:38:06 Test: checking for ntpdate, rdate, sntp or ntpdig in crontab file /etc/crontab +2021-01-07 17:38:06 Result: no ntpdate, rdate, sntp or ntpdig reference found in crontab file /etc/crontab +2021-01-07 17:38:06 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/apt-compat +2021-01-07 17:38:06 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/bsdmainutils +2021-01-07 17:38:06 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/dpkg +2021-01-07 17:38:06 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/logrotate +2021-01-07 17:38:06 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/man-db +2021-01-07 17:38:06 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/ntp +2021-01-07 17:38:06 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/passwd +2021-01-07 17:38:06 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.weekly/man-db +2021-01-07 17:38:06 Result: no ntpdate or rdate found in cron directories +2021-01-07 17:38:06 Test: checking for file /etc/network/if-up.d/ntpdate +2021-01-07 17:38:06 Result: file /etc/network/if-up.d/ntpdate does not exist +2021-01-07 17:38:06 Result: Found a time syncing daemon/client. +2021-01-07 17:38:06 Hardening: assigned maximum number of hardening points for this item (3). Currently having 165 points (out of 243) +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Skipped test TIME-3106 (Check systemd NTP time synchronization status) +2021-01-07 17:38:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Performing test ID TIME-3112 (Check active NTP associations ID's) +2021-01-07 17:38:06 Test: Checking for NTP association ID's from ntpq peers list +2021-01-07 17:38:06 Result: Found one or more association ID's +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Performing test ID TIME-3116 (Check peers with stratum value of 16) +2021-01-07 17:38:06 Test: Checking stratum 16 sources from ntpq peers list +2021-01-07 17:38:06 Result: All peers are lower than stratum 16 +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Performing test ID TIME-3120 (Check unreliable NTP peers) +2021-01-07 17:38:06 Test: Checking unreliable ntp peers +2021-01-07 17:38:06 Result: No unreliable peers found +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Performing test ID TIME-3124 (Check selected time source) +2021-01-07 17:38:06 Test: Checking selected time source +2021-01-07 17:38:06 Result: Found selected time source (value: 169.254.169.254) +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Performing test ID TIME-3128 (Check preferred time source) +2021-01-07 17:38:06 Test: Checking preferred time source +2021-01-07 17:38:06 Result: No other time source candidates found +2021-01-07 17:38:06 Suggestion: Check ntpq peers output for time source candidates [test:TIME-3128] [details:-] [solution:-] +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Performing test ID TIME-3132 (Check NTP falsetickers) +2021-01-07 17:38:06 Test: Checking preferred time source +2021-01-07 17:38:06 Result: No falsetickers found (items preceding with an 'x') +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Performing test ID TIME-3136 (Check NTP protocol version) +2021-01-07 17:38:06 Test: Checking NTP protocol version (ntpq -c ntpversion) +2021-01-07 17:38:06 Result: Found NTP version 2 +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Performing test ID TIME-3148 (Check TZ variable) +2021-01-07 17:38:06 Test: testing for TZ variable +2021-01-07 17:38:06 Result: found TZ variable with value notset +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Skipped test TIME-3160 (Check empty NTP step-tickers) +2021-01-07 17:38:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Performing test ID TIME-3170 (Check configuration files) +2021-01-07 17:38:06 Result: found /etc/ntp.conf +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Skipped test TIME-3180 (Report if ntpctl cannot communicate with OpenNTPD) +2021-01-07 17:38:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Skipped test TIME-3181 (Check status of OpenNTPD time synchronisation) +2021-01-07 17:38:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Skipped test TIME-3182 (Check OpenNTPD has working peers) +2021-01-07 17:38:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Skipped test TIME-3185 (Check systemd-timesyncd synchronized time) +2021-01-07 17:38:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:06 Security check: file is normal +2021-01-07 17:38:06 Checking permissions of /home/ktdw73/scans/lynis/include/tests_crypto +2021-01-07 17:38:06 File permissions are OK +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Action: Performing tests from category: Cryptography +2021-01-07 17:38:06 ==== +2021-01-07 17:38:06 Performing test ID CRYP-7902 (Check expire date of SSL certificates) +2021-01-07 17:38:06 Paths to scan: /etc/apache2 /etc/dovecot /etc/httpd /etc/letsencrypt /etc/pki /etc/postfix /etc/refind.d/keys /etc/ssl /opt/psa/var/certificates /usr/local/psa/var/certificates /usr/local/share/ca-certificates /usr/share/ca-certificates /usr/share/gnupg /var/www /srv/www +2021-01-07 17:38:06 Paths to ignore: /etc/letsencrypt/archive +2021-01-07 17:38:06 Result: SSL path /etc/apache2 does not exist +2021-01-07 17:38:06 Result: SSL path /etc/dovecot does not exist +2021-01-07 17:38:06 Result: SSL path /etc/httpd does not exist +2021-01-07 17:38:06 Result: SSL path /etc/letsencrypt does not exist +2021-01-07 17:38:06 Result: SSL path /etc/pki does not exist +2021-01-07 17:38:06 Result: SSL path /etc/postfix does not exist +2021-01-07 17:38:06 Result: SSL path /etc/refind.d/keys does not exist +2021-01-07 17:38:06 Test: check if we can access /etc/ssl (escaped: /etc/ssl) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /etc/ssl is readable (or directory accessible). +2021-01-07 17:38:06 Result: found directory /etc/ssl +2021-01-07 17:38:06 Test: check if we can access /etc/ssl/certs/ca-certificates.crt (escaped: /etc/ssl/certs/ca-certificates.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /etc/ssl/certs/ca-certificates.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/etc/ssl/certs/ca-certificates.crt' does most likely not belong to a package +2021-01-07 17:38:06 Result: file is a certificate file +2021-01-07 17:38:06 Result: certificate /etc/ssl/certs/ca-certificates.crt seems to be correct and still valid +2021-01-07 17:38:06 Result: found 1 certificates in /etc/ssl +2021-01-07 17:38:06 Result: SSL path /opt/psa/var/certificates does not exist +2021-01-07 17:38:06 Result: SSL path /usr/local/psa/var/certificates does not exist +2021-01-07 17:38:06 Test: check if we can access /usr/local/share/ca-certificates (escaped: /usr/local/share/ca-certificates) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/local/share/ca-certificates is readable (or directory accessible). +2021-01-07 17:38:06 Result: found directory /usr/local/share/ca-certificates +2021-01-07 17:38:06 Result: found 0 certificates in /usr/local/share/ca-certificates +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates (escaped: /usr/share/ca-certificates) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates is readable (or directory accessible). +2021-01-07 17:38:06 Result: found directory /usr/share/ca-certificates +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/ACCVRAIZ1.crt (escaped: /usr/share/ca-certificates/mozilla/ACCVRAIZ1.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/ACCVRAIZ1.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/usr/share/ca-certificates/mozilla/ACCVRAIZ1.crt' belongs to package (ca-certificates) +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/AC_RAIZ_FNMT-RCM.crt (escaped: /usr/share/ca-certificates/mozilla/AC_RAIZ_FNMT-RCM.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/AC_RAIZ_FNMT-RCM.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/usr/share/ca-certificates/mozilla/AC_RAIZ_FNMT-RCM.crt' belongs to package (ca-certificates) +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/Actalis_Authentication_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Actalis_Authentication_Root_CA.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/Actalis_Authentication_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/usr/share/ca-certificates/mozilla/Actalis_Authentication_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/AffirmTrust_Commercial.crt (escaped: /usr/share/ca-certificates/mozilla/AffirmTrust_Commercial.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/AffirmTrust_Commercial.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/usr/share/ca-certificates/mozilla/AffirmTrust_Commercial.crt' belongs to package (ca-certificates) +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/AffirmTrust_Networking.crt (escaped: /usr/share/ca-certificates/mozilla/AffirmTrust_Networking.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/AffirmTrust_Networking.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/usr/share/ca-certificates/mozilla/AffirmTrust_Networking.crt' belongs to package (ca-certificates) +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/AffirmTrust_Premium.crt (escaped: /usr/share/ca-certificates/mozilla/AffirmTrust_Premium.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/AffirmTrust_Premium.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/usr/share/ca-certificates/mozilla/AffirmTrust_Premium.crt' belongs to package (ca-certificates) +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/AffirmTrust_Premium_ECC.crt (escaped: /usr/share/ca-certificates/mozilla/AffirmTrust_Premium_ECC.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/AffirmTrust_Premium_ECC.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/usr/share/ca-certificates/mozilla/AffirmTrust_Premium_ECC.crt' belongs to package (ca-certificates) +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/Amazon_Root_CA_1.crt (escaped: /usr/share/ca-certificates/mozilla/Amazon_Root_CA_1.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/Amazon_Root_CA_1.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/usr/share/ca-certificates/mozilla/Amazon_Root_CA_1.crt' belongs to package (ca-certificates) +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/Amazon_Root_CA_2.crt (escaped: /usr/share/ca-certificates/mozilla/Amazon_Root_CA_2.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/Amazon_Root_CA_2.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/usr/share/ca-certificates/mozilla/Amazon_Root_CA_2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/Amazon_Root_CA_3.crt (escaped: /usr/share/ca-certificates/mozilla/Amazon_Root_CA_3.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/Amazon_Root_CA_3.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/usr/share/ca-certificates/mozilla/Amazon_Root_CA_3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/Amazon_Root_CA_4.crt (escaped: /usr/share/ca-certificates/mozilla/Amazon_Root_CA_4.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/Amazon_Root_CA_4.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/usr/share/ca-certificates/mozilla/Amazon_Root_CA_4.crt' belongs to package (ca-certificates) +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/Atos_TrustedRoot_2011.crt (escaped: /usr/share/ca-certificates/mozilla/Atos_TrustedRoot_2011.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/Atos_TrustedRoot_2011.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/usr/share/ca-certificates/mozilla/Atos_TrustedRoot_2011.crt' belongs to package (ca-certificates) +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.crt (escaped: /usr/share/ca-certificates/mozilla/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/usr/share/ca-certificates/mozilla/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.crt' belongs to package (ca-certificates) +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/Baltimore_CyberTrust_Root.crt (escaped: /usr/share/ca-certificates/mozilla/Baltimore_CyberTrust_Root.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/Baltimore_CyberTrust_Root.crt is readable (or directory accessible). +2021-01-07 17:38:06 Result: file '/usr/share/ca-certificates/mozilla/Baltimore_CyberTrust_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:38:06 Test: check if we can access /usr/share/ca-certificates/mozilla/Buypass_Class_2_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Buypass_Class_2_Root_CA.crt) +2021-01-07 17:38:06 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:06 Result: file /usr/share/ca-certificates/mozilla/Buypass_Class_2_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/Buypass_Class_2_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/Buypass_Class_3_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Buypass_Class_3_Root_CA.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/Buypass_Class_3_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/Buypass_Class_3_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/CA_Disig_Root_R2.crt (escaped: /usr/share/ca-certificates/mozilla/CA_Disig_Root_R2.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/CA_Disig_Root_R2.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/CA_Disig_Root_R2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/CFCA_EV_ROOT.crt (escaped: /usr/share/ca-certificates/mozilla/CFCA_EV_ROOT.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/CFCA_EV_ROOT.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/CFCA_EV_ROOT.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/COMODO_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/COMODO_Certification_Authority.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/COMODO_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/COMODO_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/COMODO_ECC_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/COMODO_ECC_Certification_Authority.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/COMODO_ECC_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/COMODO_ECC_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/COMODO_RSA_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/COMODO_RSA_Certification_Authority.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/COMODO_RSA_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/COMODO_RSA_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/Certigna.crt (escaped: /usr/share/ca-certificates/mozilla/Certigna.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/Certigna.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/Certigna.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/Certigna_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Certigna_Root_CA.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/Certigna_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/Certigna_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA_2.crt (escaped: /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA_2.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA_2.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA_2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/Chambers_of_Commerce_Root_-_2008.crt (escaped: /usr/share/ca-certificates/mozilla/Chambers_of_Commerce_Root_-_2008.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/Chambers_of_Commerce_Root_-_2008.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/Chambers_of_Commerce_Root_-_2008.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/Comodo_AAA_Services_root.crt (escaped: /usr/share/ca-certificates/mozilla/Comodo_AAA_Services_root.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/Comodo_AAA_Services_root.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/Comodo_AAA_Services_root.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/Cybertrust_Global_Root.crt (escaped: /usr/share/ca-certificates/mozilla/Cybertrust_Global_Root.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/Cybertrust_Global_Root.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/Cybertrust_Global_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_2009.crt (escaped: /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_2009.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_2009.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_2009.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_EV_2009.crt (escaped: /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_EV_2009.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_EV_2009.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_EV_2009.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/DST_Root_CA_X3.crt (escaped: /usr/share/ca-certificates/mozilla/DST_Root_CA_X3.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/DST_Root_CA_X3.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/DST_Root_CA_X3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_CA.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G2.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G2.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G2.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G3.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G3.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G3.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_CA.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Global_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G2.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G2.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G2.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G3.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G3.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G3.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_High_Assurance_EV_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_High_Assurance_EV_Root_CA.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/DigiCert_High_Assurance_EV_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_High_Assurance_EV_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Trusted_Root_G4.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Trusted_Root_G4.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Trusted_Root_G4.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Trusted_Root_G4.crt' belongs to package (ca-certificates) +2021-01-07 17:38:07 Test: check if we can access /usr/share/ca-certificates/mozilla/E-Tugra_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/E-Tugra_Certification_Authority.crt) +2021-01-07 17:38:07 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:07 Result: file /usr/share/ca-certificates/mozilla/E-Tugra_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:38:07 Result: file '/usr/share/ca-certificates/mozilla/E-Tugra_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/EC-ACC.crt (escaped: /usr/share/ca-certificates/mozilla/EC-ACC.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/EC-ACC.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/EC-ACC.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/EE_Certification_Centre_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/EE_Certification_Centre_Root_CA.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/EE_Certification_Centre_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/EE_Certification_Centre_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust.net_Premium_2048_Secure_Server_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust.net_Premium_2048_Secure_Server_CA.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/Entrust.net_Premium_2048_Secure_Server_CA.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/Entrust.net_Premium_2048_Secure_Server_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_EC1.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_EC1.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_EC1.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_EC1.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G2.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G2.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G4.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G4.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G4.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G4.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/GDCA_TrustAUTH_R5_ROOT.crt (escaped: /usr/share/ca-certificates/mozilla/GDCA_TrustAUTH_R5_ROOT.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/GDCA_TrustAUTH_R5_ROOT.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/GDCA_TrustAUTH_R5_ROOT.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/GTS_Root_R1.crt (escaped: /usr/share/ca-certificates/mozilla/GTS_Root_R1.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/GTS_Root_R1.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/GTS_Root_R1.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/GTS_Root_R2.crt (escaped: /usr/share/ca-certificates/mozilla/GTS_Root_R2.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/GTS_Root_R2.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/GTS_Root_R2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/GTS_Root_R3.crt (escaped: /usr/share/ca-certificates/mozilla/GTS_Root_R3.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/GTS_Root_R3.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/GTS_Root_R3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/GTS_Root_R4.crt (escaped: /usr/share/ca-certificates/mozilla/GTS_Root_R4.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/GTS_Root_R4.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/GTS_Root_R4.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/GeoTrust_Universal_CA_2.crt (escaped: /usr/share/ca-certificates/mozilla/GeoTrust_Universal_CA_2.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/GeoTrust_Universal_CA_2.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/GeoTrust_Universal_CA_2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R4.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R4.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R4.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R4.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R5.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R5.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R5.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R5.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R2.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R2.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R2.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R3.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R3.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R3.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R6.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R6.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R6.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R6.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/Global_Chambersign_Root_-_2008.crt (escaped: /usr/share/ca-certificates/mozilla/Global_Chambersign_Root_-_2008.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/Global_Chambersign_Root_-_2008.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/Global_Chambersign_Root_-_2008.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/Go_Daddy_Class_2_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Go_Daddy_Class_2_CA.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/Go_Daddy_Class_2_CA.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/Go_Daddy_Class_2_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/Go_Daddy_Root_Certificate_Authority_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Go_Daddy_Root_Certificate_Authority_-_G2.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/Go_Daddy_Root_Certificate_Authority_-_G2.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/Go_Daddy_Root_Certificate_Authority_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.crt (escaped: /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2011.crt (escaped: /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2011.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2011.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2011.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2015.crt (escaped: /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2015.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2015.crt is readable (or directory accessible). +2021-01-07 17:38:08 Result: file '/usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2015.crt' belongs to package (ca-certificates) +2021-01-07 17:38:08 Test: check if we can access /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_1.crt (escaped: /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_1.crt) +2021-01-07 17:38:08 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:08 Result: file /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_1.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_1.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_3.crt (escaped: /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_3.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_3.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/ISRG_Root_X1.crt (escaped: /usr/share/ca-certificates/mozilla/ISRG_Root_X1.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/ISRG_Root_X1.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/ISRG_Root_X1.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/IdenTrust_Commercial_Root_CA_1.crt (escaped: /usr/share/ca-certificates/mozilla/IdenTrust_Commercial_Root_CA_1.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/IdenTrust_Commercial_Root_CA_1.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/IdenTrust_Commercial_Root_CA_1.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/IdenTrust_Public_Sector_Root_CA_1.crt (escaped: /usr/share/ca-certificates/mozilla/IdenTrust_Public_Sector_Root_CA_1.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/IdenTrust_Public_Sector_Root_CA_1.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/IdenTrust_Public_Sector_Root_CA_1.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/Izenpe.com.crt (escaped: /usr/share/ca-certificates/mozilla/Izenpe.com.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/Izenpe.com.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/Izenpe.com.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/LuxTrust_Global_Root_2.crt (escaped: /usr/share/ca-certificates/mozilla/LuxTrust_Global_Root_2.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/LuxTrust_Global_Root_2.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/LuxTrust_Global_Root_2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/Microsec_e-Szigno_Root_CA_2009.crt (escaped: /usr/share/ca-certificates/mozilla/Microsec_e-Szigno_Root_CA_2009.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/Microsec_e-Szigno_Root_CA_2009.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/Microsec_e-Szigno_Root_CA_2009.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/NetLock_Arany_=Class_Gold=_Főtanúsítvány.crt (escaped: /usr/share/ca-certificates/mozilla/NetLock_Arany_=Class_Gold=_Főtanúsítvány.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/NetLock_Arany_=Class_Gold=_Főtanúsítvány.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/NetLock_Arany_=Class_Gold=_Főtanúsítvány.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/Network_Solutions_Certificate_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/Network_Solutions_Certificate_Authority.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/Network_Solutions_Certificate_Authority.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/Network_Solutions_Certificate_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GA_CA.crt (escaped: /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GA_CA.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GA_CA.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GA_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GB_CA.crt (escaped: /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GB_CA.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GB_CA.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GB_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GC_CA.crt (escaped: /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GC_CA.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GC_CA.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GC_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_1_G3.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_1_G3.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_1_G3.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_1_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2_G3.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2_G3.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2_G3.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3_G3.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3_G3.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3_G3.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_ECC.crt (escaped: /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_ECC.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_ECC.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_ECC.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_RSA_R2.crt (escaped: /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_RSA_R2.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_RSA_R2.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_RSA_R2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_ECC.crt (escaped: /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_ECC.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_ECC.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_ECC.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_RSA.crt (escaped: /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_RSA.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_RSA.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_RSA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/SZAFIR_ROOT_CA2.crt (escaped: /usr/share/ca-certificates/mozilla/SZAFIR_ROOT_CA2.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/SZAFIR_ROOT_CA2.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/SZAFIR_ROOT_CA2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/SecureSign_RootCA11.crt (escaped: /usr/share/ca-certificates/mozilla/SecureSign_RootCA11.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/SecureSign_RootCA11.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/SecureSign_RootCA11.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/SecureTrust_CA.crt (escaped: /usr/share/ca-certificates/mozilla/SecureTrust_CA.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/SecureTrust_CA.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/SecureTrust_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/Secure_Global_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Secure_Global_CA.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:09 Result: file /usr/share/ca-certificates/mozilla/Secure_Global_CA.crt is readable (or directory accessible). +2021-01-07 17:38:09 Result: file '/usr/share/ca-certificates/mozilla/Secure_Global_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:09 Test: check if we can access /usr/share/ca-certificates/mozilla/Security_Communication_RootCA2.crt (escaped: /usr/share/ca-certificates/mozilla/Security_Communication_RootCA2.crt) +2021-01-07 17:38:09 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/Security_Communication_RootCA2.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/Security_Communication_RootCA2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/Security_Communication_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Security_Communication_Root_CA.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/Security_Communication_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/Security_Communication_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/Sonera_Class_2_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Sonera_Class_2_Root_CA.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/Sonera_Class_2_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/Sonera_Class_2_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_EV_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_EV_Root_CA.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_EV_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_EV_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G2.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G2.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G3.crt (escaped: /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G3.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G3.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/Starfield_Class_2_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Starfield_Class_2_CA.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/Starfield_Class_2_CA.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/Starfield_Class_2_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/Starfield_Root_Certificate_Authority_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Starfield_Root_Certificate_Authority_-_G2.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/Starfield_Root_Certificate_Authority_-_G2.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/Starfield_Root_Certificate_Authority_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/Starfield_Services_Root_Certificate_Authority_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Starfield_Services_Root_Certificate_Authority_-_G2.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/Starfield_Services_Root_Certificate_Authority_-_G2.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/Starfield_Services_Root_Certificate_Authority_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/SwissSign_Gold_CA_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/SwissSign_Gold_CA_-_G2.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/SwissSign_Gold_CA_-_G2.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/SwissSign_Gold_CA_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/SwissSign_Silver_CA_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/SwissSign_Silver_CA_-_G2.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/SwissSign_Silver_CA_-_G2.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/SwissSign_Silver_CA_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_2.crt (escaped: /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_2.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_2.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_3.crt (escaped: /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_3.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_3.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.crt (escaped: /usr/share/ca-certificates/mozilla/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/TWCA_Global_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/TWCA_Global_Root_CA.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/TWCA_Global_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/TWCA_Global_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/TWCA_Root_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/TWCA_Root_Certification_Authority.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/TWCA_Root_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/TWCA_Root_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/Taiwan_GRCA.crt (escaped: /usr/share/ca-certificates/mozilla/Taiwan_GRCA.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/Taiwan_GRCA.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/Taiwan_GRCA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/TeliaSonera_Root_CA_v1.crt (escaped: /usr/share/ca-certificates/mozilla/TeliaSonera_Root_CA_v1.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/TeliaSonera_Root_CA_v1.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/TeliaSonera_Root_CA_v1.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/TrustCor_ECA-1.crt (escaped: /usr/share/ca-certificates/mozilla/TrustCor_ECA-1.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/TrustCor_ECA-1.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/TrustCor_ECA-1.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-1.crt (escaped: /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-1.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-1.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-1.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-2.crt (escaped: /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-2.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-2.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-2.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/Trustis_FPS_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Trustis_FPS_Root_CA.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/Trustis_FPS_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/Trustis_FPS_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/UCA_Extended_Validation_Root.crt (escaped: /usr/share/ca-certificates/mozilla/UCA_Extended_Validation_Root.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/UCA_Extended_Validation_Root.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/UCA_Extended_Validation_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/UCA_Global_G2_Root.crt (escaped: /usr/share/ca-certificates/mozilla/UCA_Global_G2_Root.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/UCA_Global_G2_Root.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/UCA_Global_G2_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/USERTrust_ECC_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/USERTrust_ECC_Certification_Authority.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/USERTrust_ECC_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/USERTrust_ECC_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/USERTrust_RSA_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/USERTrust_RSA_Certification_Authority.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/USERTrust_RSA_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:38:10 Result: file '/usr/share/ca-certificates/mozilla/USERTrust_RSA_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:38:10 Test: check if we can access /usr/share/ca-certificates/mozilla/Verisign_Class_3_Public_Primary_Certification_Authority_-_G3.crt (escaped: /usr/share/ca-certificates/mozilla/Verisign_Class_3_Public_Primary_Certification_Authority_-_G3.crt) +2021-01-07 17:38:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:10 Result: file /usr/share/ca-certificates/mozilla/Verisign_Class_3_Public_Primary_Certification_Authority_-_G3.crt is readable (or directory accessible). +2021-01-07 17:38:11 Result: file '/usr/share/ca-certificates/mozilla/Verisign_Class_3_Public_Primary_Certification_Authority_-_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:11 Test: check if we can access /usr/share/ca-certificates/mozilla/XRamp_Global_CA_Root.crt (escaped: /usr/share/ca-certificates/mozilla/XRamp_Global_CA_Root.crt) +2021-01-07 17:38:11 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:11 Result: file /usr/share/ca-certificates/mozilla/XRamp_Global_CA_Root.crt is readable (or directory accessible). +2021-01-07 17:38:11 Result: file '/usr/share/ca-certificates/mozilla/XRamp_Global_CA_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:38:11 Test: check if we can access /usr/share/ca-certificates/mozilla/certSIGN_ROOT_CA.crt (escaped: /usr/share/ca-certificates/mozilla/certSIGN_ROOT_CA.crt) +2021-01-07 17:38:11 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:11 Result: file /usr/share/ca-certificates/mozilla/certSIGN_ROOT_CA.crt is readable (or directory accessible). +2021-01-07 17:38:11 Result: file '/usr/share/ca-certificates/mozilla/certSIGN_ROOT_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:38:11 Test: check if we can access /usr/share/ca-certificates/mozilla/ePKI_Root_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/ePKI_Root_Certification_Authority.crt) +2021-01-07 17:38:11 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:11 Result: file /usr/share/ca-certificates/mozilla/ePKI_Root_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:38:11 Result: file '/usr/share/ca-certificates/mozilla/ePKI_Root_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:38:11 Test: check if we can access /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_C3.crt (escaped: /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_C3.crt) +2021-01-07 17:38:11 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:11 Result: file /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_C3.crt is readable (or directory accessible). +2021-01-07 17:38:11 Result: file '/usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_C3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:11 Test: check if we can access /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_G3.crt (escaped: /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_G3.crt) +2021-01-07 17:38:11 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:11 Result: file /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_G3.crt is readable (or directory accessible). +2021-01-07 17:38:11 Result: file '/usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:38:11 Test: check if we can access /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_C1.crt (escaped: /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_C1.crt) +2021-01-07 17:38:11 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:11 Result: file /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_C1.crt is readable (or directory accessible). +2021-01-07 17:38:11 Result: file '/usr/share/ca-certificates/mozilla/emSign_Root_CA_-_C1.crt' belongs to package (ca-certificates) +2021-01-07 17:38:11 Test: check if we can access /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_G1.crt (escaped: /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_G1.crt) +2021-01-07 17:38:11 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:11 Result: file /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_G1.crt is readable (or directory accessible). +2021-01-07 17:38:11 Result: file '/usr/share/ca-certificates/mozilla/emSign_Root_CA_-_G1.crt' belongs to package (ca-certificates) +2021-01-07 17:38:11 Result: found 126 certificates in /usr/share/ca-certificates +2021-01-07 17:38:11 Test: check if we can access /usr/share/gnupg (escaped: /usr/share/gnupg) +2021-01-07 17:38:11 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:38:11 Result: file /usr/share/gnupg is readable (or directory accessible). +2021-01-07 17:38:11 Result: found directory /usr/share/gnupg +2021-01-07 17:38:11 Result: found 0 certificates in /usr/share/gnupg +2021-01-07 17:38:11 Result: SSL path /var/www does not exist +2021-01-07 17:38:11 Result: SSL path /srv/www does not exist +2021-01-07 17:38:11 Result: found a total of 127 certificates +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID CRYP-7930 (Determine if system uses LUKS block device encryption) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test CRYP-7931 (Determine if system uses encrypted swap) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID CRYP-8002 (Gather available kernel entropy) +2021-01-07 17:38:11 Result: found kernel entropy value of 1095 +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID CRYP-8004 (Presence of hardware random number generators) +2021-01-07 17:38:11 Test: looking for /sys/class/misc/hw_random/rng_current +2021-01-07 17:38:11 Result: positive match, found RNG: virtio_rng.0 +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'rngd' not found +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID CRYP-8005 (Presence of software pseudo random number generators) +2021-01-07 17:38:11 Test: looking for software pseudo random number generators +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'audio-entropyd' not found +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'haveged' not found +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'jitterentropy-rngd' not found +2021-01-07 17:38:11 Security check: file is normal +2021-01-07 17:38:11 Checking permissions of /home/ktdw73/scans/lynis/include/tests_virtualization +2021-01-07 17:38:11 File permissions are OK +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Action: Performing tests from category: Virtualization +2021-01-07 17:38:11 Security check: file is normal +2021-01-07 17:38:11 Checking permissions of /home/ktdw73/scans/lynis/include/tests_containers +2021-01-07 17:38:11 File permissions are OK +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Action: Performing tests from category: Containers +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test CONT-8004 (Query running Solaris zones) +2021-01-07 17:38:11 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID CONT-8102 (Checking Docker status and information) +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'dockerd' not found +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test CONT-8104 (Checking Docker info for any warnings) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test CONT-8106 (Gather basic stats from Docker) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test CONT-8107 (Check number of Docker containers) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test CONT-8108 (Check file permissions for Docker files) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 Security check: file is normal +2021-01-07 17:38:11 Checking permissions of /home/ktdw73/scans/lynis/include/tests_mac_frameworks +2021-01-07 17:38:11 File permissions are OK +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Action: Performing tests from category: Security frameworks +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID MACF-6204 (Check AppArmor presence) +2021-01-07 17:38:11 Result: aa-status binary not found, AppArmor not installed +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test MACF-6208 (Check if AppArmor is enabled) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID MACF-6232 (Check SELINUX presence) +2021-01-07 17:38:11 Test: checking if we have sestatus binary +2021-01-07 17:38:11 Result: sestatus binary NOT found +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test MACF-6234 (Check SELINUX status) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID MACF-6240 (Check TOMOYO Linux presence) +2021-01-07 17:38:11 Test: checking if we have tomoyo-init binary +2021-01-07 17:38:11 Result: tomoyo-init binary not found +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test MACF-6242 (Check TOMOYO Linux status) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID RBAC-6272 (Check grsecurity presence) +2021-01-07 17:38:11 Result: no grsecurity found in kernel config +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID MACF-6290 (Check for implemented MAC framework) +2021-01-07 17:38:11 Hardening: assigned partial number of hardening points (2 of 3). Currently having 167 points (out of 246) +2021-01-07 17:38:11 Result: found no implemented MAC framework +2021-01-07 17:38:11 Security check: file is normal +2021-01-07 17:38:11 Checking permissions of /home/ktdw73/scans/lynis/include/tests_file_integrity +2021-01-07 17:38:11 File permissions are OK +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Action: Performing tests from category: Software: file integrity +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID FINT-4310 (AFICK availability) +2021-01-07 17:38:11 Test: Checking AFICK binary +2021-01-07 17:38:11 Result: AFICK is not installed +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID FINT-4314 (AIDE availability) +2021-01-07 17:38:11 Test: Checking AIDE binary +2021-01-07 17:38:11 Result: AIDE is not installed +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test FINT-4315 (Check AIDE configuration file) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test FINT-4316 (Presence of AIDE database and size check) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID FINT-4318 (Osiris availability) +2021-01-07 17:38:11 Test: Checking Osiris binary +2021-01-07 17:38:11 Result: Osiris is not installed +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID FINT-4322 (Samhain availability) +2021-01-07 17:38:11 Test: Checking Samhain binary +2021-01-07 17:38:11 Result: Samhain is not installed +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID FINT-4326 (Tripwire availability) +2021-01-07 17:38:11 Test: Checking Tripwire binary +2021-01-07 17:38:11 Result: Tripwire is not installed +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID FINT-4328 (OSSEC syscheck daemon running) +2021-01-07 17:38:11 Test: Checking if OSSEC syscheck daemon is running +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'ossec-syscheckd' not found +2021-01-07 17:38:11 Result: syscheck (OSSEC) is not active +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID FINT-4330 (mtree availability) +2021-01-07 17:38:11 Test: Checking mtree binary +2021-01-07 17:38:11 Result: mtree is not installed +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test FINT-4334 (Check lfd daemon status) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test FINT-4336 (Check lfd configuration status) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID FINT-4338 (osqueryd syscheck daemon running) +2021-01-07 17:38:11 Test: Checking if osqueryd syscheck daemon is running +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'osqueryd' not found +2021-01-07 17:38:11 Result: syscheck (osquery) not installed +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test FINT-4339 (Check IMA/EVM status) +2021-01-07 17:38:11 Reason to skip: No evmctl binary found +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test FINT-4340 (Check dm-integrity status) +2021-01-07 17:38:11 Reason to skip: No integritysetup binary found +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test FINT-4341 (Check dm-verity status) +2021-01-07 17:38:11 Reason to skip: No veritysetup binary found +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test FINT-4402 (AIDE configuration: Checksums (SHA256 or SHA512)) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID FINT-4350 (File integrity software installed) +2021-01-07 17:38:11 Test: Check if at least on file integrity tool is available/installed +2021-01-07 17:38:11 Result: No file integrity tools found +2021-01-07 17:38:11 Suggestion: Install a file integrity tool to monitor changes to critical and sensitive files [test:FINT-4350] [details:-] [solution:-] +2021-01-07 17:38:11 Hardening: assigned partial number of hardening points (0 of 5). Currently having 167 points (out of 251) +2021-01-07 17:38:11 Security check: file is normal +2021-01-07 17:38:11 Checking permissions of /home/ktdw73/scans/lynis/include/tests_tooling +2021-01-07 17:38:11 File permissions are OK +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Action: Performing tests from category: Software: System tooling +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID TOOL-5002 (Checking for automation tools) +2021-01-07 17:38:11 Test: checking if directory /root/.ansible exists +2021-01-07 17:38:11 Result: directory /root/.ansible NOT found +2021-01-07 17:38:11 Test: checking if directory /etc/ansible exists +2021-01-07 17:38:11 Result: directory /etc/ansible NOT found +2021-01-07 17:38:11 Test: checking if directory /root/.ansible exists +2021-01-07 17:38:11 Result: directory /root/.ansible NOT found +2021-01-07 17:38:11 Test: checking if directory /tmp/.ansible exists +2021-01-07 17:38:11 Result: directory /tmp/.ansible NOT found +2021-01-07 17:38:11 Test: checking if file /var/log/ansible.log exists +2021-01-07 17:38:11 Result: file /var/log/ansible.log NOT found +2021-01-07 17:38:11 Test: checking if file ~/.ansible-retry exists +2021-01-07 17:38:11 Result: file ~/.ansible-retry NOT found +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'puppet master' not found +2021-01-07 17:38:11 Suggestion: Determine if automation tools are present for system management [test:TOOL-5002] [details:-] [solution:-] +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID TOOL-5102 (Check for presence of Fail2ban) +2021-01-07 17:38:11 Result: Fail2ban not present (fail2ban-server not found) +2021-01-07 17:38:11 Checking Fail2ban configuration file +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test TOOL-5104 (Enabled tests in Fail2ban) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID TOOL-5120 (Check for presence of Snort) +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'snort' not found +2021-01-07 17:38:11 Result: Snort not present (Snort not running) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID TOOL-5122 (Check Snort configuration file) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID TOOL-5130 (Check for active Suricata daemon) +2021-01-07 17:38:11 Result: Suricata not installed (suricata not found) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID TOOL-5126 (Check for active OSSEC daemon) +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'ossec-analysisd' not found +2021-01-07 17:38:11 Result: OSSEC analysis daemon not active +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'ossec-agentd' not found +2021-01-07 17:38:11 Result: OSSEC agent daemon not active +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID TOOL-5190 (Check presence of IDS/IPS tool) +2021-01-07 17:38:11 Hardening: assigned partial number of hardening points (0 of 2). Currently having 167 points (out of 253) +2021-01-07 17:38:11 Security check: file is normal +2021-01-07 17:38:11 Checking permissions of /home/ktdw73/scans/lynis/include/tests_malware +2021-01-07 17:38:11 File permissions are OK +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Action: Performing tests from category: Software: Malware +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID MALW-3275 (Check for chkrootkit) +2021-01-07 17:38:11 Test: checking presence chkrootkit +2021-01-07 17:38:11 Result: chkrootkit not found +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID MALW-3276 (Check for Rootkit Hunter) +2021-01-07 17:38:11 Test: checking presence Rootkit Hunter +2021-01-07 17:38:11 Result: Rootkit Hunter not found +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID MALW-3278 (Check for LMD) +2021-01-07 17:38:11 Test: checking presence LMD +2021-01-07 17:38:11 Result: LMD not found +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID MALW-3280 (Check if anti-virus tool is installed) +2021-01-07 17:38:11 Test: checking process com.avast.daemon +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'com.avast.daemon' not found +2021-01-07 17:38:11 Test: checking process Avira daemon +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'avqmd' not found +2021-01-07 17:38:11 Test: checking process epagd +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'bdagentd' not found +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'epagd' not found +2021-01-07 17:38:11 Test: checking process falcon-sensor (CrowdStrike) +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'falcon-sensor' not found +2021-01-07 17:38:11 Test: checking process CylanceSvc +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'CylanceSvc' not found +2021-01-07 17:38:11 Test: checking process esets_daemon +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'esets_daemon' not found +2021-01-07 17:38:11 Test: checking process wdserver or klnagent (Kaspersky) +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'klnagent' not found +2021-01-07 17:38:11 Test: checking process cma or cmdagent (McAfee) +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'cmdagent' not found +2021-01-07 17:38:11 Test: checking process savscand +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'savscand' not found +2021-01-07 17:38:11 Test: checking process SophosScanD +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'SophosScanD' not found +2021-01-07 17:38:11 Test: checking process rtvscand +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'rtvscand' not found +2021-01-07 17:38:11 Test: checking process Symantec management client service +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'smcd' not found +2021-01-07 17:38:11 Test: checking process Symantec Endpoint Protection configuration service +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'symcfgd' not found +2021-01-07 17:38:11 Test: checking process synoavd +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'synoavd' not found +2021-01-07 17:38:11 Test: checking process TmccMac to test for Trend Micro anti-virus (macOS) +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'TmccMac' not found +2021-01-07 17:38:11 Result: no commercial anti-virus tools found +2021-01-07 17:38:11 Hardening: assigned partial number of hardening points (0 of 3). Currently having 167 points (out of 256) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID MALW-3282 (Check for clamscan) +2021-01-07 17:38:11 Test: checking presence clamscan +2021-01-07 17:38:11 Result: clamscan couldn't be found +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID MALW-3284 (Check for clamd) +2021-01-07 17:38:11 Test: checking running ClamAV daemon (clamd) +2021-01-07 17:38:11 Performing pgrep scan without uid +2021-01-07 17:38:11 IsRunning: process 'clamd' not found +2021-01-07 17:38:11 Result: clamd not running +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test MALW-3286 (Check for freshclam) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Skipped test MALW-3288 (Check for ClamXav) +2021-01-07 17:38:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:38:11 Security check: file is normal +2021-01-07 17:38:11 Checking permissions of /home/ktdw73/scans/lynis/include/tests_file_permissions +2021-01-07 17:38:11 File permissions are OK +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Action: Performing tests from category: File Permissions +2021-01-07 17:38:11 ==== +2021-01-07 17:38:11 Performing test ID FILE-7524 (Perform file permissions check) +2021-01-07 17:38:11 Test: Checking file permissions +2021-01-07 17:38:11 Using profile /home/ktdw73/scans/lynis/default.prf for baseline. +2021-01-07 17:38:11 Test: checking file/directory /boot/grub/grub.cfg +2021-01-07 17:38:11 Test: checking if file /boot/grub/grub.cfg has the permissions set to 600 or more restrictive +2021-01-07 17:38:11 Outcome: correct permissions (444) +2021-01-07 17:38:11 Test: checking file/directory /boot/grub2/grub.cfg +2021-01-07 17:38:11 Skipping file/directory /boot/grub2/grub.cfg as it does not exist on this system +2021-01-07 17:38:11 Test: checking file/directory /boot/grub2/user.cfg +2021-01-07 17:38:11 Skipping file/directory /boot/grub2/user.cfg as it does not exist on this system +2021-01-07 17:38:11 Test: checking file/directory /etc/at.allow +2021-01-07 17:38:11 Skipping file/directory /etc/at.allow as it does not exist on this system +2021-01-07 17:38:11 Test: checking file/directory /etc/at.deny +2021-01-07 17:38:11 Skipping file/directory /etc/at.deny as it does not exist on this system +2021-01-07 17:38:11 Test: checking file/directory /etc/cron.allow +2021-01-07 17:38:11 Skipping file/directory /etc/cron.allow as it does not exist on this system +2021-01-07 17:38:11 Test: checking file/directory /etc/cron.deny +2021-01-07 17:38:11 Skipping file/directory /etc/cron.deny as it does not exist on this system +2021-01-07 17:38:11 Test: checking file/directory /etc/crontab +2021-01-07 17:38:12 Test: checking if file /etc/crontab has the permissions set to 600 or more restrictive +2021-01-07 17:38:12 Outcome: permissions of file /etc/crontab are not matching expected value (644 != rw-------) +2021-01-07 17:38:12 Test: checking file/directory /etc/group +2021-01-07 17:38:12 Test: checking if file /etc/group has the permissions set to 644 or more restrictive +2021-01-07 17:38:12 Outcome: correct permissions (644) +2021-01-07 17:38:12 Test: checking file/directory /etc/group- +2021-01-07 17:38:12 Test: checking if file /etc/group- has the permissions set to 644 or more restrictive +2021-01-07 17:38:12 Outcome: correct permissions (600) +2021-01-07 17:38:12 Test: checking file/directory /etc/hosts.allow +2021-01-07 17:38:12 Test: checking if file /etc/hosts.allow has the permissions set to 644 or more restrictive +2021-01-07 17:38:12 Outcome: correct permissions (644) +2021-01-07 17:38:12 Test: checking file/directory /etc/hosts.deny +2021-01-07 17:38:12 Test: checking if file /etc/hosts.deny has the permissions set to 644 or more restrictive +2021-01-07 17:38:12 Outcome: correct permissions (644) +2021-01-07 17:38:12 Test: checking file/directory /etc/issue +2021-01-07 17:38:12 Test: checking if file /etc/issue has the permissions set to 644 or more restrictive +2021-01-07 17:38:12 Outcome: correct permissions (644) +2021-01-07 17:38:12 Test: checking file/directory /etc/issue.net +2021-01-07 17:38:12 Test: checking if file /etc/issue.net has the permissions set to 644 or more restrictive +2021-01-07 17:38:12 Outcome: correct permissions (644) +2021-01-07 17:38:12 Test: checking file/directory /etc/lilo.conf +2021-01-07 17:38:12 Skipping file/directory /etc/lilo.conf as it does not exist on this system +2021-01-07 17:38:12 Test: checking file/directory /etc/motd +2021-01-07 17:38:12 Test: checking if file /etc/motd has the permissions set to 644 or more restrictive +2021-01-07 17:38:12 Outcome: correct permissions (644) +2021-01-07 17:38:12 Test: checking file/directory /etc/passwd +2021-01-07 17:38:12 Test: checking if file /etc/passwd has the permissions set to 644 or more restrictive +2021-01-07 17:38:12 Outcome: correct permissions (644) +2021-01-07 17:38:12 Test: checking file/directory /etc/passwd- +2021-01-07 17:38:12 Test: checking if file /etc/passwd- has the permissions set to 644 or more restrictive +2021-01-07 17:38:12 Outcome: correct permissions (600) +2021-01-07 17:38:12 Test: checking file/directory /etc/ssh/sshd_config +2021-01-07 17:38:12 Test: checking if file /etc/ssh/sshd_config has the permissions set to 600 or more restrictive +2021-01-07 17:38:12 Outcome: permissions of file /etc/ssh/sshd_config are not matching expected value (644 != rw-------) +2021-01-07 17:38:12 Test: checking file/directory /etc/hosts.equiv +2021-01-07 17:38:12 Skipping file/directory /etc/hosts.equiv as it does not exist on this system +2021-01-07 17:38:12 Test: checking file/directory /etc/shosts.equiv +2021-01-07 17:38:12 Skipping file/directory /etc/shosts.equiv as it does not exist on this system +2021-01-07 17:38:12 Test: checking file/directory /root/.rhosts +2021-01-07 17:38:12 Skipping file/directory /root/.rhosts as it does not exist on this system +2021-01-07 17:38:12 Test: checking file/directory /root/.rlogin +2021-01-07 17:38:12 Skipping file/directory /root/.rlogin as it does not exist on this system +2021-01-07 17:38:12 Test: checking file/directory /root/.shosts +2021-01-07 17:38:12 Skipping file/directory /root/.shosts as it does not exist on this system +2021-01-07 17:38:12 Test: checking file/directory /root/.ssh +2021-01-07 17:38:12 Skipping file/directory /root/.ssh as it does not exist on this system +2021-01-07 17:38:12 Test: checking file/directory /etc/cron.d +2021-01-07 17:38:12 Test: checking if file /etc/cron.d has the permissions set to 700 or more restrictive +2021-01-07 17:38:12 Outcome: permissions of file /etc/cron.d are not matching expected value (755 != rwx------) +2021-01-07 17:38:12 Test: checking file/directory /etc/cron.daily +2021-01-07 17:38:12 Test: checking if file /etc/cron.daily has the permissions set to 700 or more restrictive +2021-01-07 17:38:12 Outcome: permissions of file /etc/cron.daily are not matching expected value (755 != rwx------) +2021-01-07 17:38:12 Test: checking file/directory /etc/cron.hourly +2021-01-07 17:38:12 Test: checking if file /etc/cron.hourly has the permissions set to 700 or more restrictive +2021-01-07 17:38:12 Outcome: permissions of file /etc/cron.hourly are not matching expected value (755 != rwx------) +2021-01-07 17:38:12 Test: checking file/directory /etc/cron.weekly +2021-01-07 17:38:12 Test: checking if file /etc/cron.weekly has the permissions set to 700 or more restrictive +2021-01-07 17:38:12 Outcome: permissions of file /etc/cron.weekly are not matching expected value (755 != rwx------) +2021-01-07 17:38:12 Test: checking file/directory /etc/cron.monthly +2021-01-07 17:38:12 Test: checking if file /etc/cron.monthly has the permissions set to 700 or more restrictive +2021-01-07 17:38:12 Outcome: permissions of file /etc/cron.monthly are not matching expected value (755 != rwx------) +2021-01-07 17:38:12 Suggestion: Consider restricting file permissions [test:FILE-7524] [details:See screen output or log file] [solution:text:Use chmod to change file permissions] +2021-01-07 17:38:12 Security check: file is normal +2021-01-07 17:38:12 Checking permissions of /home/ktdw73/scans/lynis/include/tests_homedirs +2021-01-07 17:38:12 File permissions are OK +2021-01-07 17:38:12 ==== +2021-01-07 17:38:12 Action: Performing tests from category: Home directories +2021-01-07 17:38:12 ==== +2021-01-07 17:38:12 Performing test ID HOME-9302 (Create list with home directories) +2021-01-07 17:38:12 Test: query /etc/passwd to obtain home directories +2021-01-07 17:38:12 Result: found home directory: /bin (directory exists) +2021-01-07 17:38:12 Result: found home directory: /dev (directory exists) +2021-01-07 17:38:12 Result: found home directory: /home/Tobias (directory exists) +2021-01-07 17:38:12 Result: found home directory: /home/ftpuser (directory exists) +2021-01-07 17:38:12 Result: found home directory: /home/ktdw73 (directory exists) +2021-01-07 17:38:12 Result: found home directory: /home/ntp (directory does not exist) +2021-01-07 17:38:12 Result: found home directory: /nonexistent (directory does not exist) +2021-01-07 17:38:12 Result: found home directory: /root (directory exists) +2021-01-07 17:38:12 Result: found home directory: /run/sshd (directory exists) +2021-01-07 17:38:12 Result: found home directory: /run/systemd (directory exists) +2021-01-07 17:38:12 Result: found home directory: /run/systemd/netif (directory exists) +2021-01-07 17:38:12 Result: found home directory: /run/systemd/resolve (directory does not exist) +2021-01-07 17:38:12 Result: found home directory: /run/uuidd (directory exists) +2021-01-07 17:38:12 Result: found home directory: /usr/games (directory exists) +2021-01-07 17:38:12 Result: found home directory: /usr/sbin (directory exists) +2021-01-07 17:38:12 Result: found home directory: /var/backups (directory exists) +2021-01-07 17:38:12 Result: found home directory: /var/cache/man (directory exists) +2021-01-07 17:38:12 Result: found home directory: /var/lib/gnats (directory does not exist) +2021-01-07 17:38:12 Result: found home directory: /var/list (directory does not exist) +2021-01-07 17:38:12 Result: found home directory: /var/mail (directory exists) +2021-01-07 17:38:12 Result: found home directory: /var/run/ircd (directory does not exist) +2021-01-07 17:38:12 Result: found home directory: /var/spool/lpd (directory does not exist) +2021-01-07 17:38:12 Result: found home directory: /var/spool/news (directory does not exist) +2021-01-07 17:38:12 Result: found home directory: /var/spool/uucp (directory does not exist) +2021-01-07 17:38:12 Result: found home directory: /var/www (directory does not exist) +2021-01-07 17:38:12 ==== +2021-01-07 17:38:12 Performing test ID HOME-9304 (Check if users' home directories permissions are 750 or more restrictive) +2021-01-07 17:38:12 Test: checking directory '/home/Tobias' for user 'Tobias' +2021-01-07 17:38:12 Result: permissions of home directory /home/Tobias of user Tobias are not strict enough. Should be 750 or more restrictive. Change with: chmod 750 /home/Tobias +2021-01-07 17:38:12 Test: checking directory '/home/ktdw73' for user 'ktdw73' +2021-01-07 17:38:12 Result: permissions of home directory /home/ktdw73 of user ktdw73 are not strict enough. Should be 750 or more restrictive. Change with: chmod 750 /home/ktdw73 +2021-01-07 17:38:12 Test: checking directory '/home/ftpuser' for user 'ftpuser' +2021-01-07 17:38:12 Result: permissions of home directory /home/ftpuser of user ftpuser are not strict enough. Should be 750 or more restrictive. Change with: chmod 750 /home/ftpuser +2021-01-07 17:38:12 Suggestion: Double check the permissions of home directories as some might be not strict enough. [test:HOME-9304] [details:-] [solution:-] +2021-01-07 17:38:12 ==== +2021-01-07 17:38:12 Performing test ID HOME-9306 (Check if users own their home directories) +2021-01-07 17:38:12 Test: checking directory '/home/Tobias' for user 'Tobias' +2021-01-07 17:38:12 Result: ownership of home directory /home/Tobias for user Tobias looks to be correct +2021-01-07 17:38:12 Test: checking directory '/home/ktdw73' for user 'ktdw73' +2021-01-07 17:38:12 Result: ownership of home directory /home/ktdw73 for user ktdw73 looks to be correct +2021-01-07 17:38:12 Test: checking directory '/home/ftpuser' for user 'ftpuser' +2021-01-07 17:38:12 Result: ownership of home directory /home/ftpuser for user ftpuser looks to be correct +2021-01-07 17:38:12 Result: OK, all users own their home directories +2021-01-07 17:38:12 ==== +2021-01-07 17:38:12 Performing test ID HOME-9310 (Checking for suspicious shell history files) +2021-01-07 17:38:12 Result: Ok, history files are type 'file'. +2021-01-07 17:38:12 Remark: History files are normally of the type 'file'. Symbolic links and other types are suspicious. +2021-01-07 17:38:12 ==== +2021-01-07 17:38:12 Performing test ID HOME-9350 (Collecting information from home directories) +2021-01-07 17:38:12 Result: IGNORE_HOME_DIRS empty, no paths excluded +2021-01-07 17:38:12 Security check: file is normal +2021-01-07 17:38:12 Checking permissions of /home/ktdw73/scans/lynis/include/tests_kernel_hardening +2021-01-07 17:38:12 File permissions are OK +2021-01-07 17:38:12 ==== +2021-01-07 17:38:12 Action: Performing tests from category: Kernel Hardening +2021-01-07 17:38:12 ==== +2021-01-07 17:38:12 Performing test ID KRNL-6000 (Check sysctl key pairs in scan profile) +2021-01-07 17:38:12 Result: sysctl key dev.tty.ldisc_autoload has a different value than expected in scan profile. Expected=0, Real=1 +2021-01-07 17:38:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 167 points (out of 257) +2021-01-07 17:38:12 Result: sysctl key fs.protected_fifos has a different value than expected in scan profile. Expected=2, Real=0 +2021-01-07 17:38:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 167 points (out of 258) +2021-01-07 17:38:12 Result: sysctl key fs.protected_hardlinks contains equal expected and current value (1) +2021-01-07 17:38:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 168 points (out of 259) +2021-01-07 17:38:12 Result: sysctl key fs.protected_regular has a different value than expected in scan profile. Expected=2, Real=0 +2021-01-07 17:38:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 168 points (out of 260) +2021-01-07 17:38:12 Result: sysctl key fs.protected_symlinks contains equal expected and current value (1) +2021-01-07 17:38:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 169 points (out of 261) +2021-01-07 17:38:12 Result: sysctl key fs.suid_dumpable contains equal expected and current value (0) +2021-01-07 17:38:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 170 points (out of 262) +2021-01-07 17:38:12 Result: key hw.kbd.keymap_restrict_change does not exist on this machine +2021-01-07 17:38:12 Result: key kern.sugid_coredump does not exist on this machine +2021-01-07 17:38:12 Result: key kernel.core_setuid_ok does not exist on this machine +2021-01-07 17:38:12 Result: sysctl key kernel.core_uses_pid has a different value than expected in scan profile. Expected=1, Real=0 +2021-01-07 17:38:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 170 points (out of 263) +2021-01-07 17:38:12 Result: sysctl key kernel.ctrl-alt-del contains equal expected and current value (0) +2021-01-07 17:38:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 171 points (out of 264) +2021-01-07 17:38:12 Result: sysctl key kernel.dmesg_restrict contains equal expected and current value (1) +2021-01-07 17:38:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 172 points (out of 265) +2021-01-07 17:38:12 Result: key kernel.exec-shield-randomize does not exist on this machine +2021-01-07 17:38:12 Result: key kernel.exec-shield does not exist on this machine +2021-01-07 17:38:12 Result: sysctl key kernel.kptr_restrict has a different value than expected in scan profile. Expected=2, Real=0 +2021-01-07 17:38:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 172 points (out of 266) +2021-01-07 17:38:12 Result: key kernel.maps_protect does not exist on this machine +2021-01-07 17:38:12 Result: sysctl key kernel.modules_disabled has a different value than expected in scan profile. Expected=1, Real=0 +2021-01-07 17:38:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 172 points (out of 267) +2021-01-07 17:38:12 Result: sysctl key kernel.perf_event_paranoid contains equal expected and current value (3) +2021-01-07 17:38:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 173 points (out of 268) +2021-01-07 17:38:12 Result: sysctl key kernel.randomize_va_space contains equal expected and current value (2) +2021-01-07 17:38:12 Hardening: assigned maximum number of hardening points for this item (1). Currently having 174 points (out of 269) +2021-01-07 17:38:12 Result: key kernel.suid_dumpable does not exist on this machine +2021-01-07 17:38:12 Result: sysctl key kernel.sysrq has a different value than expected in scan profile. Expected=0, Real=438 +2021-01-07 17:38:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 174 points (out of 270) +2021-01-07 17:38:12 Result: sysctl key kernel.unprivileged_bpf_disabled has a different value than expected in scan profile. Expected=1, Real=0 +2021-01-07 17:38:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 174 points (out of 271) +2021-01-07 17:38:12 Result: key kernel.use-nx does not exist on this machine +2021-01-07 17:38:12 Result: sysctl key kernel.yama.ptrace_scope has a different value than expected in scan profile. Expected=1 2 3, Real=0 +2021-01-07 17:38:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 174 points (out of 272) +2021-01-07 17:38:12 Result: sysctl key net.core.bpf_jit_harden has a different value than expected in scan profile. Expected=2, Real=0 +2021-01-07 17:38:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 174 points (out of 273) +2021-01-07 17:38:12 Result: key net.inet.icmp.bmcastecho does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.icmp.drop_redirect does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.icmp.rediraccept does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.icmp.timestamp does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.ip.accept_sourceroute does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.ip.check_interface does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.ip.forwarding does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.ip.linklocal.in.allowbadttl does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.ip.process_options does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.ip.random_id does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.ip.redirect does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.ip.sourceroute does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.ip6.redirect does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.tcp.always_keepalive does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.tcp.blackhole does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.tcp.drop_synfin does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.tcp.icmp_may_rst does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.tcp.nolocaltimewait does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.tcp.path_mtu_discovery does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet.udp.blackhole does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet6.icmp6.rediraccept does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet6.ip6.forwarding does not exist on this machine +2021-01-07 17:38:12 Result: key net.inet6.ip6.fw.enable does not exist on this machine +2021-01-07 17:38:13 Result: key net.inet6.ip6.redirect does not exist on this machine +2021-01-07 17:38:13 Result: sysctl key net.ipv4.conf.all.accept_redirects contains equal expected and current value (0) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 175 points (out of 274) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.conf.all.accept_source_route contains equal expected and current value (0) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 176 points (out of 275) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.conf.all.bootp_relay contains equal expected and current value (0) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 177 points (out of 276) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.conf.all.forwarding contains equal expected and current value (0) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 178 points (out of 277) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.conf.all.log_martians contains equal expected and current value (1) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 179 points (out of 278) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.conf.all.mc_forwarding contains equal expected and current value (0) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 180 points (out of 279) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.conf.all.proxy_arp contains equal expected and current value (0) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 181 points (out of 280) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.conf.all.rp_filter contains equal expected and current value (1) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 182 points (out of 281) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.conf.all.send_redirects contains equal expected and current value (0) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 183 points (out of 282) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.conf.default.accept_redirects contains equal expected and current value (0) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 184 points (out of 283) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.conf.default.accept_source_route contains equal expected and current value (0) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 185 points (out of 284) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.conf.default.log_martians contains equal expected and current value (1) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 186 points (out of 285) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.icmp_echo_ignore_broadcasts contains equal expected and current value (1) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 187 points (out of 286) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.icmp_ignore_bogus_error_responses contains equal expected and current value (1) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 188 points (out of 287) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.tcp_syncookies contains equal expected and current value (1) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 189 points (out of 288) +2021-01-07 17:38:13 Result: sysctl key net.ipv4.tcp_timestamps contains equal expected and current value (0 1) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 190 points (out of 289) +2021-01-07 17:38:13 Result: sysctl key net.ipv6.conf.all.accept_redirects has a different value than expected in scan profile. Expected=0, Real=1 +2021-01-07 17:38:13 Hardening: assigned partial number of hardening points (0 of 1). Currently having 190 points (out of 290) +2021-01-07 17:38:13 Result: sysctl key net.ipv6.conf.all.accept_source_route contains equal expected and current value (0) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 191 points (out of 291) +2021-01-07 17:38:13 Result: key net.ipv6.conf.all.send_redirects does not exist on this machine +2021-01-07 17:38:13 Result: sysctl key net.ipv6.conf.default.accept_redirects has a different value than expected in scan profile. Expected=0, Real=1 +2021-01-07 17:38:13 Hardening: assigned partial number of hardening points (0 of 1). Currently having 191 points (out of 292) +2021-01-07 17:38:13 Result: sysctl key net.ipv6.conf.default.accept_source_route contains equal expected and current value (0) +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (1). Currently having 192 points (out of 293) +2021-01-07 17:38:13 Result: key security.bsd.hardlink_check_gid does not exist on this machine +2021-01-07 17:38:13 Result: key security.bsd.hardlink_check_uid does not exist on this machine +2021-01-07 17:38:13 Result: key security.bsd.see_other_gids does not exist on this machine +2021-01-07 17:38:13 Result: key security.bsd.see_other_uids does not exist on this machine +2021-01-07 17:38:13 Result: key security.bsd.stack_guard_page does not exist on this machine +2021-01-07 17:38:13 Result: key security.bsd.unprivileged_proc_debug does not exist on this machine +2021-01-07 17:38:13 Result: key security.bsd.unprivileged_read_msgbuf does not exist on this machine +2021-01-07 17:38:13 Result: found 12 keys that can use tuning, according scan profile +2021-01-07 17:38:13 Suggestion: One or more sysctl values differ from the scan profile and could be tweaked [test:KRNL-6000] [details:] [solution:Change sysctl value or disable test (skip-test=KRNL-6000:)] +2021-01-07 17:38:13 Security check: file is normal +2021-01-07 17:38:13 Checking permissions of /home/ktdw73/scans/lynis/include/tests_hardening +2021-01-07 17:38:13 File permissions are OK +2021-01-07 17:38:13 ==== +2021-01-07 17:38:13 Action: Performing tests from category: Hardening +2021-01-07 17:38:13 ==== +2021-01-07 17:38:13 Performing test ID HRDN-7220 (Check if one or more compilers are installed) +2021-01-07 17:38:13 Test: Check if one or more compilers can be found on the system +2021-01-07 17:38:13 Result: no compilers found +2021-01-07 17:38:13 Hardening: assigned maximum number of hardening points for this item (3). Currently having 195 points (out of 296) +2021-01-07 17:38:13 ==== +2021-01-07 17:38:13 Performing test ID HRDN-7222 (Check compiler permissions) +2021-01-07 17:38:13 Test: Check if one or more compilers can be found on the system +2021-01-07 17:38:13 Result: no compilers found +2021-01-07 17:38:13 ==== +2021-01-07 17:38:13 Performing test ID HRDN-7230 (Check for malware scanner) +2021-01-07 17:38:13 Test: Check if a malware scanner is installed +2021-01-07 17:38:13 Result: no malware scanner found +2021-01-07 17:38:13 Suggestion: Harden the system by installing at least one malware scanner, to perform periodic file system scans [test:HRDN-7230] [details:-] [solution:Install a tool like rkhunter, chkrootkit, OSSEC] +2021-01-07 17:38:13 Hardening: assigned partial number of hardening points (1 of 3). Currently having 196 points (out of 299) +2021-01-07 17:38:13 Result: no malware scanner found +2021-01-07 17:38:13 ==== +2021-01-07 17:38:13 Performing test ID HRDN-7231 (Check for registered non-native binary formats) +2021-01-07 17:38:13 Test: Check for registered non-native binary formats +2021-01-07 17:38:13 Result: no non-native binary formats found +2021-01-07 17:38:13 ==== +2021-01-07 17:38:13 Action: Performing tests from category: Custom tests +2021-01-07 17:38:13 Test: Checking for tests_custom file +2021-01-07 17:38:13 ==== +2021-01-07 17:38:13 Action: Performing plugin tests +2021-01-07 17:38:13 Result: Found 2 plugins of which 2 are enabled +2021-01-07 17:38:13 Result: Plugins phase 2 finished +2021-01-07 17:38:13 Checking permissions of /home/ktdw73/scans/lynis/include/report +2021-01-07 17:38:13 File permissions are OK +2021-01-07 17:38:13 Hardening index : [65] [############# ] +2021-01-07 17:38:13 Hardening strength: System has been hardened, but could use additional hardening +2021-01-07 17:38:13 ==== +2021-01-07 17:38:14 Checking permissions of /home/ktdw73/scans/lynis/include/tool_tips +2021-01-07 17:38:14 File permissions are OK +2021-01-07 17:38:14 Tool tips: enabled +2021-01-07 17:38:14 ================================================================================ +2021-01-07 17:38:14 Tests performed: 259 +2021-01-07 17:38:14 Total tests: 455 +2021-01-07 17:38:14 Active plugins: 2 +2021-01-07 17:38:14 Total plugins: 2 +2021-01-07 17:38:14 ================================================================================ +2021-01-07 17:38:14 Lynis 3.0.3 +2021-01-07 17:38:14 2007-2021, CISOfy - https://cisofy.com/lynis/ +2021-01-07 17:38:14 Enterprise support available (compliance, plugins, interface and tools) +2021-01-07 17:38:14 Program ended successfully +2021-01-07 17:38:14 ================================================================================ +2021-01-07 17:38:14 PID file removed (/var/run/lynis.pid) +2021-01-07 17:38:14 Temporary files: /tmp/lynis.k321Oiersr /tmp/lynis.DJTAEuj8KT /tmp/lynis.SGFZjaVLjs /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:14 Action: removing temporary file /tmp/lynis.k321Oiersr +2021-01-07 17:38:14 Info: temporary file /tmp/lynis.DJTAEuj8KT was already removed +2021-01-07 17:38:14 Info: temporary file /tmp/lynis.SGFZjaVLjs was already removed +2021-01-07 17:38:14 Action: removing temporary file /tmp/lynis.8AIckrYkHA +2021-01-07 17:38:14 Lynis ended successfully. diff --git a/raw_scans/11_gcp_debian_9/lynis-log-2.log b/raw_scans/11_gcp_debian_9/lynis-log-2.log new file mode 100644 index 0000000..b45b8e6 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/lynis-log-2.log @@ -0,0 +1,4616 @@ +2021-01-07 17:44:59 Starting Lynis 3.0.3 with PID 4926, build date 2021-01-07 +2021-01-07 17:44:59 ==== +2021-01-07 17:44:59 ### 2007-2021, CISOfy - https://cisofy.com/lynis/ ### +2021-01-07 17:44:59 Checking permissions of /home/ktdw73/scans/lynis/include/profiles +2021-01-07 17:44:59 File permissions are OK +2021-01-07 17:44:59 Reading profile/configuration /home/ktdw73/scans/lynis/default.prf +2021-01-07 17:44:59 Action: created temporary file /tmp/lynis.9t076oLeqJ +2021-01-07 17:44:59 Language set via profile to '' +2021-01-07 17:44:59 Plugin 'authentication' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'compliance' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'configuration' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'control-panels' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'crypto' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'dns' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'docker' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'file-integrity' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'file-systems' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'firewalls' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'forensics' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'hardware' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'intrusion-detection' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'intrusion-prevention' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'kernel' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'malware' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'memory' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'nginx' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'pam' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'processes' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'security-modules' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'software' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'system-integrity' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'systemd' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Plugin 'users' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:44:59 Set option to default value: NTPD_ROLE --> client +2021-01-07 17:44:59 ==== +2021-01-07 17:44:59 EOL check: 255 +2021-01-07 17:44:59 Note: the end-of-life of 'Debian GNU/Linux 9 (stretch)' could not be checked. Entry missing in software-eol.db? +2021-01-07 17:44:59 Program version: 3.0.3 +2021-01-07 17:44:59 Operating system: Linux +2021-01-07 17:44:59 Operating system name: Debian +2021-01-07 17:44:59 Operating system version: 9 +2021-01-07 17:44:59 Kernel version: 4.9.0 +2021-01-07 17:44:59 Kernel version (full): 4.9.0-14-amd64 +2021-01-07 17:44:59 Hardware platform: x86_64 +2021-01-07 17:44:59 ----------------------------------------------------- +2021-01-07 17:44:59 Hostname: debian-9 +2021-01-07 17:44:59 Auditor: [Not Specified] +2021-01-07 17:44:59 Profiles: /home/ktdw73/scans/lynis/default.prf +2021-01-07 17:44:59 Work directory: /home/ktdw73/scans/lynis +2021-01-07 17:44:59 Include directory: /home/ktdw73/scans/lynis/include +2021-01-07 17:44:59 Plugin directory: ./plugins +2021-01-07 17:44:59 ----------------------------------------------------- +2021-01-07 17:44:59 Log file: /var/log/lynis.log +2021-01-07 17:44:59 Report file: /var/log/lynis-report.dat +2021-01-07 17:44:59 Report version: 1.0 +2021-01-07 17:44:59 ----------------------------------------------------- +2021-01-07 17:44:59 Test category: all +2021-01-07 17:44:59 Test group: all +2021-01-07 17:44:59 BusyBox used: 0 +2021-01-07 17:44:59 ==== +2021-01-07 17:44:59 Test: Checking for program update... +2021-01-07 17:44:59 Current installed version : 303 +2021-01-07 17:44:59 Latest stable version : 303 +2021-01-07 17:44:59 No Lynis update available. +2021-01-07 17:44:59 ==== +2021-01-07 17:44:59 Checking permissions of /home/ktdw73/scans/lynis/include/binaries +2021-01-07 17:44:59 File permissions are OK +2021-01-07 17:44:59 ==== +2021-01-07 17:44:59 Action: Performing tests from category: System tools +2021-01-07 17:44:59 Start scanning for available audit binaries and tools... +2021-01-07 17:44:59 ==== +2021-01-07 17:44:59 Performing test ID CORE-1000 (Check all system binaries) +2021-01-07 17:44:59 Status: Starting binary scan... +2021-01-07 17:44:59 Test: Checking binaries in directory /bin +2021-01-07 17:44:59 Directory /bin exists. Starting directory scanning... +2021-01-07 17:44:59 Found known binary: cat (generic file handling) - /bin/cat +2021-01-07 17:44:59 Found known binary: dnsdomainname (DNS domain) - /bin/dnsdomainname +2021-01-07 17:44:59 Found known binary: domainname (NIS domain) - /bin/domainname +2021-01-07 17:44:59 Found known binary: egrep (text search) - /bin/egrep +2021-01-07 17:44:59 Found known binary: grep (text search) - /bin/grep +2021-01-07 17:44:59 Found known binary: gzip (compressing utility) - /bin/gzip +2021-01-07 17:44:59 Found known binary: ip (IP configuration) - /bin/ip +2021-01-07 17:44:59 Found known binary: journalctl (systemd journal) - /bin/journalctl +2021-01-07 17:44:59 Found known binary: ls (file listing) - /bin/ls +2021-01-07 17:44:59 Found known binary: lsblk (block devices) - /bin/lsblk +2021-01-07 17:44:59 Found known binary: lsmod (kernel modules) - /bin/lsmod +2021-01-07 17:44:59 Found known binary: mount (disk utility) - /bin/mount +2021-01-07 17:44:59 Found known binary: netstat (network statistics) - /bin/netstat +2021-01-07 17:44:59 Found known binary: ps (process listing) - /bin/ps +2021-01-07 17:44:59 Found known binary: readlink (follows symlinks) - /bin/readlink +2021-01-07 17:44:59 Found known binary: sed (text stream editor) - /bin/sed +2021-01-07 17:44:59 Found known binary: ss (show sockets) - /bin/ss +2021-01-07 17:44:59 Found known binary: systemctl (client to systemd) - /bin/systemctl +2021-01-07 17:44:59 Found known binary: uname (operating system details) - /bin/uname +2021-01-07 17:44:59 Found known binary: zgrep (text search for compressed files) - /bin/zgrep +2021-01-07 17:44:59 Test: Checking binaries in directory /sbin +2021-01-07 17:44:59 Directory /sbin exists. Starting directory scanning... +2021-01-07 17:44:59 Found known binary: blkid (information about block devices) - /sbin/blkid +2021-01-07 17:44:59 Found known binary: ipconfig (IP configuration) - /sbin/ifconfig +2021-01-07 17:44:59 Found known binary: ip (IP configuration) - /sbin/ip +2021-01-07 17:44:59 Found known binary: iptables (firewall) - /sbin/iptables +2021-01-07 17:44:59 Found known binary: iptables-save (firewall) - /sbin/iptables-save +2021-01-07 17:44:59 Found known binary: lsmod (kernel modules) - /sbin/lsmod +2021-01-07 17:44:59 Found known binary: modprobe (kernel modules) - /sbin/modprobe +2021-01-07 17:44:59 Found known binary: runlevel (system utility) - /sbin/runlevel +2021-01-07 17:44:59 Found known binary: swapon (swap device tool) - /sbin/swapon +2021-01-07 17:44:59 Found known binary: sysctl (kernel parameters) - /sbin/sysctl +2021-01-07 17:44:59 Found known binary: tune2fs (file system tool) - /sbin/tune2fs +2021-01-07 17:44:59 Test: Checking binaries in directory /usr/bin +2021-01-07 17:44:59 Directory /usr/bin exists. Starting directory scanning... +2021-01-07 17:44:59 Found known binary: apt (package manager) - /usr/bin/apt +2021-01-07 17:44:59 Found known binary: awk (string tool) - /usr/bin/awk +2021-01-07 17:44:59 Found known binary: base64 (encoding tool) - /usr/bin/base64 +2021-01-07 17:44:59 Found known binary: bootctl (systemd-boot manager utility) - /usr/bin/bootctl +2021-01-07 17:44:59 Found known binary: comm (file compare) - /usr/bin/comm +2021-01-07 17:44:59 Found known binary: curl (browser, download utility) - /usr/bin/curl +2021-01-07 17:44:59 Found known binary: cut (text stream editor) - /usr/bin/cut +2021-01-07 17:44:59 Found known binary: dpkg (package management) - /usr/bin/dpkg +2021-01-07 17:44:59 Found known binary: file (file type detection) - /usr/bin/file +2021-01-07 17:44:59 Found known binary: find (search tool) - /usr/bin/find +2021-01-07 17:44:59 Found known binary: getent (query tool for name service switch libraries) - /usr/bin/getent +2021-01-07 17:44:59 Found known binary: head (text filter) - /usr/bin/head +2021-01-07 17:44:59 Found known binary: lsattr (file attributes) - /usr/bin/lsattr +2021-01-07 17:44:59 Found known binary: md5sum (hash tool) - /usr/bin/md5sum +2021-01-07 17:44:59 Found known binary ntpq (time daemon client) - /usr/bin/ntpq +2021-01-07 17:45:00 Found /usr/bin/openssl (version 1.1.0l) +2021-01-07 17:45:00 Found /usr/bin/perl (version 5.24.1) +2021-01-07 17:45:00 Found known binary: pgrep (search in process list) - /usr/bin/pgrep +2021-01-07 17:45:00 Found known binary: python (programming language interpreter) - /usr/bin/python (version 2.7.13) +2021-01-07 17:45:00 Found known binary: python2 (programming language interpreter) - /usr/bin/python2 (version 2.7.13) +2021-01-07 17:45:00 Found known binary: python3 (programming language interpreter) - /usr/bin/python3 (version 3.5.3) +2021-01-07 17:45:00 Found known binary: sha1/sha1sum/shasum (crypto hashing) - /usr/bin/sha1sum +2021-01-07 17:45:00 Found known binary: sha256/sha256sum (crypto hashing) - /usr/bin/sha256sum +2021-01-07 17:45:00 Found known binary: sha1/sha1sum/shasum (crypto hashing) - /usr/bin/shasum +2021-01-07 17:45:00 Found known binary: sort (sort data streams) - /usr/bin/sort +2021-01-07 17:45:00 Found known binary: ssh-keyscan (scanner for SSH keys) - /usr/bin/ssh-keyscan +2021-01-07 17:45:00 Found known binary: stat (file information) - /usr/bin/stat +2021-01-07 17:45:00 Found known binary: systemd-analyze (systemd service analysis tool) - /usr/bin/systemd-analyze +2021-01-07 17:45:00 Found known binary: tail (text filter) - /usr/bin/tail +2021-01-07 17:45:00 Found known binary: timedatectl (timedate client) - /usr/bin/timedatectl +2021-01-07 17:45:00 Found known binary: tr (text transformation) - /usr/bin/tr +2021-01-07 17:45:00 Found known binary: uniq (text manipulation utility) - /usr/bin/uniq +2021-01-07 17:45:00 Found known binary: wc (word count) - /usr/bin/wc +2021-01-07 17:45:00 Found /usr/bin/wget (version 1.18) +2021-01-07 17:45:00 Found known binary: xargs (command output redirection) - /usr/bin/xargs +2021-01-07 17:45:00 Test: Checking binaries in directory /usr/sbin +2021-01-07 17:45:00 Directory /usr/sbin exists. Starting directory scanning... +2021-01-07 17:45:00 Found known binary: dmidecode (hardware collector tool) - /usr/sbin/dmidecode +2021-01-07 17:45:00 Found known binary: grpck (consistency checker) - /usr/sbin/grpck +2021-01-07 17:45:00 Found known binary: logrotate (log rotation tool) - /usr/sbin/logrotate +2021-01-07 17:45:00 Found known binary: service (system services) - /usr/sbin/service +2021-01-07 17:45:00 Found /usr/sbin/sshd (version 7.4) +2021-01-07 17:45:00 Test: Checking binaries in directory /usr/local/bin +2021-01-07 17:45:00 Directory /usr/local/bin exists. Starting directory scanning... +2021-01-07 17:45:00 Test: Checking binaries in directory /usr/local/sbin +2021-01-07 17:45:00 Directory /usr/local/sbin exists. Starting directory scanning... +2021-01-07 17:45:00 Discovered directories: /bin,/sbin,/usr/bin,/usr/sbin,/usr/local/bin,/usr/local/sbin +2021-01-07 17:45:00 Result: found 834 binaries including 14 set-uid and 9 set-gid +2021-01-07 17:45:00 Result: set-uid binaries: /bin/mount /bin/ping /bin/ping4 /bin/ping6 /bin/su /bin/umount /usr/bin/chfn /usr/bin/chsh /usr/bin/gpasswd /usr/bin/newgrp /usr/bin/passwd /usr/bin/sg /usr/bin/sudo /usr/bin/sudoedit +2021-01-07 17:45:00 Result: set-gid binaries: /sbin/unix_chkpwd /usr/bin/bsd-write /usr/bin/chage /usr/bin/crontab /usr/bin/expiry /usr/bin/screen /usr/bin/ssh-agent /usr/bin/wall /usr/bin/write +2021-01-07 17:45:00 ==== +2021-01-07 17:45:00 Informational: package manager is used +2021-01-07 17:45:00 Test: Determine if this system is a virtual machine +2021-01-07 17:45:00 Result: facter utility not found +2021-01-07 17:45:00 Test: trying to guess virtualization technology with systemd-detect-virt +2021-01-07 17:45:00 Result: found kvm +2021-01-07 17:45:00 Result: skipped lscpu test, as we already found machine type +2021-01-07 17:45:00 Result: skipped dmidecode test, as we already found machine type +2021-01-07 17:45:00 Result: skipped processes test, as we already found platform +2021-01-07 17:45:00 Result: skipped Amazon EC2 test, as we already found platform +2021-01-07 17:45:00 Result: skipped sysctl test, as we already found platform +2021-01-07 17:45:00 Result: skipped lshw test, as we already found machine type +2021-01-07 17:45:00 Result: found virtual machine (type: kvm, KVM) +2021-01-07 17:45:00 Result: Lynis is not running in container +2021-01-07 17:45:00 Result: system is using systemd +2021-01-07 17:45:00 ==== +2021-01-07 17:45:00 Action: Performing plugin tests +2021-01-07 17:45:00 Searching plugins... +2021-01-07 17:45:00 Found plugin file: ./plugins/plugin_pam_phase1 +2021-01-07 17:45:00 Action: checking plugin status in profile: /home/ktdw73/scans/lynis/default.prf +2021-01-07 17:45:00 Result: plugin enabled in profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:45:00 Result: plugin pam is enabled +2021-01-07 17:45:00 Checking permissions of ./plugins/plugin_pam_phase1 +2021-01-07 17:45:00 File permissions are OK +2021-01-07 17:45:00 Including plugin file: ./plugins/plugin_pam_phase1 (version: 1.0.5) +2021-01-07 17:45:00 ==== +2021-01-07 17:45:00 Skipped test PLGN-0008 (Check PAM configuration (pwquality.conf)) +2021-01-07 17:45:00 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:00 ==== +2021-01-07 17:45:00 Performing test ID PLGN-0010 (Check PAM configuration) +2021-01-07 17:45:00 Result: /etc/pam.d exists +2021-01-07 17:45:00 Now checking PAM file /etc/pam.d/common-password +2021-01-07 17:45:00 Result: Found brackets in line, indicating multiple options for control flags: success=1 default=ignore +2021-01-07 17:45:00 Result: brackets used, ignoring control flags +2021-01-07 17:45:00 Result: using module pam_unix.so (other) with options obscure sha512 +2021-01-07 17:45:00 Result: found pam_unix.so module (generic) +2021-01-07 17:45:00 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:45:00 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:45:00 Now checking PAM file /etc/pam.d/chsh +2021-01-07 17:45:00 Result: using module pam_shells.so (required) without options configured +2021-01-07 17:45:00 Result: using module pam_rootok.so (sufficient) without options configured +2021-01-07 17:45:00 Now checking PAM file /etc/pam.d/sudo +2021-01-07 17:45:00 Now checking PAM file /etc/pam.d/sshd +2021-01-07 17:45:00 Result: using module pam_nologin.so (required) without options configured +2021-01-07 17:45:00 Result: Found brackets in line, indicating multiple options for control flags: success=ok ignore=ignore module_unknown=ignore default=bad +2021-01-07 17:45:00 Result: brackets used, ignoring control flags +2021-01-07 17:45:00 Result: using module pam_selinux.so (other) with options close +2021-01-07 17:45:00 Result: using module pam_loginuid.so (required) without options configured +2021-01-07 17:45:00 Result: using module pam_keyinit.so (optional) with options force revoke +2021-01-07 17:45:00 Result: using module pam_motd.so (optional) with options motd=/run/motd.dynamic +2021-01-07 17:45:00 Result: using module pam_motd.so (optional) with options noupdate +2021-01-07 17:45:00 Result: using module pam_mail.so (optional) with options standard noenv +2021-01-07 17:45:00 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:45:00 Result: using module pam_env.so (required) without options configured +2021-01-07 17:45:00 Result: using module pam_env.so (required) with options user_readenv=1 envfile=/etc/default/locale +2021-01-07 17:45:00 Result: Found brackets in line, indicating multiple options for control flags: success=ok ignore=ignore module_unknown=ignore default=bad +2021-01-07 17:45:00 Result: brackets used, ignoring control flags +2021-01-07 17:45:00 Result: using module pam_selinux.so (other) with options open +2021-01-07 17:45:00 Now checking PAM file /etc/pam.d/runuser +2021-01-07 17:45:00 Result: using module pam_rootok.so (sufficient) without options configured +2021-01-07 17:45:00 Result: using module pam_keyinit.so (optional) with options revoke +2021-01-07 17:45:00 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:45:00 Result: using module pam_unix.so (required) without options configured +2021-01-07 17:45:00 Result: found pam_unix.so module (generic) +2021-01-07 17:45:00 Now checking PAM file /etc/pam.d/newusers +2021-01-07 17:45:00 Now checking PAM file /etc/pam.d/other +2021-01-07 17:45:01 Now checking PAM file /etc/pam.d/systemd-user +2021-01-07 17:45:01 Result: using module pam_selinux.so (required) with options close +2021-01-07 17:45:01 Result: using module pam_selinux.so (required) with options nottys open +2021-01-07 17:45:01 Result: using module pam_loginuid.so (required) without options configured +2021-01-07 17:45:01 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:45:01 Result: using module pam_systemd.so (optional) without options configured +2021-01-07 17:45:01 Now checking PAM file /etc/pam.d/cron +2021-01-07 17:45:01 Result: using module pam_loginuid.so (required) without options configured +2021-01-07 17:45:01 Result: using module pam_env.so (required) without options configured +2021-01-07 17:45:01 Result: using module pam_env.so (required) with options envfile=/etc/default/locale +2021-01-07 17:45:01 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:45:01 Now checking PAM file /etc/pam.d/common-session +2021-01-07 17:45:01 Result: Found brackets in line, indicating multiple options for control flags: default=1 +2021-01-07 17:45:01 Result: brackets used, ignoring control flags +2021-01-07 17:45:01 Result: using module pam_permit.so (other) without options configured +2021-01-07 17:45:01 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:45:01 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:45:01 Result: using module pam_unix.so (required) without options configured +2021-01-07 17:45:01 Result: found pam_unix.so module (generic) +2021-01-07 17:45:01 Now checking PAM file /etc/pam.d/chfn +2021-01-07 17:45:01 Result: using module pam_rootok.so (sufficient) without options configured +2021-01-07 17:45:01 Now checking PAM file /etc/pam.d/su +2021-01-07 17:45:01 Result: using module pam_rootok.so (sufficient) without options configured +2021-01-07 17:45:01 Result: using module pam_env.so (required) with options readenv=1 +2021-01-07 17:45:01 Result: using module pam_env.so (required) with options readenv=1 envfile=/etc/default/locale +2021-01-07 17:45:01 Result: using module pam_mail.so (optional) with options nopen +2021-01-07 17:45:01 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:45:01 Now checking PAM file /etc/pam.d/chpasswd +2021-01-07 17:45:01 Now checking PAM file /etc/pam.d/passwd +2021-01-07 17:45:01 Now checking PAM file /etc/pam.d/common-session-noninteractive +2021-01-07 17:45:01 Result: Found brackets in line, indicating multiple options for control flags: default=1 +2021-01-07 17:45:01 Result: brackets used, ignoring control flags +2021-01-07 17:45:01 Result: using module pam_permit.so (other) without options configured +2021-01-07 17:45:01 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:45:02 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:45:02 Result: using module pam_unix.so (required) without options configured +2021-01-07 17:45:02 Result: found pam_unix.so module (generic) +2021-01-07 17:45:02 Now checking PAM file /etc/pam.d/common-auth +2021-01-07 17:45:02 Result: Found brackets in line, indicating multiple options for control flags: success=1 default=ignore +2021-01-07 17:45:02 Result: brackets used, ignoring control flags +2021-01-07 17:45:02 Result: using module pam_unix.so (other) with options nullok_secure +2021-01-07 17:45:02 Result: found pam_unix.so module (generic) +2021-01-07 17:45:02 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:45:02 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:45:02 Now checking PAM file /etc/pam.d/common-account +2021-01-07 17:45:02 Result: Found brackets in line, indicating multiple options for control flags: success=1 new_authtok_reqd=done default=ignore +2021-01-07 17:45:02 Result: brackets used, ignoring control flags +2021-01-07 17:45:02 Result: using module pam_unix.so (other) without options configured +2021-01-07 17:45:02 Result: found pam_unix.so module (generic) +2021-01-07 17:45:02 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:45:02 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:45:02 Now checking PAM file /etc/pam.d/login +2021-01-07 17:45:02 Result: using module pam_faildelay.so (optional) with options delay=3000000 +2021-01-07 17:45:02 Result: Found brackets in line, indicating multiple options for control flags: success=ok new_authtok_reqd=ok ignore=ignore user_unknown=bad default=die +2021-01-07 17:45:02 Result: brackets used, ignoring control flags +2021-01-07 17:45:02 Result: using module pam_securetty.so (other) without options configured +2021-01-07 17:45:02 Result: using module pam_nologin.so (requisite) without options configured +2021-01-07 17:45:02 Result: Found brackets in line, indicating multiple options for control flags: success=ok ignore=ignore module_unknown=ignore default=bad +2021-01-07 17:45:02 Result: brackets used, ignoring control flags +2021-01-07 17:45:02 Result: using module pam_selinux.so (other) with options close +2021-01-07 17:45:02 Result: using module pam_loginuid.so (required) without options configured +2021-01-07 17:45:02 Result: Found brackets in line, indicating multiple options for control flags: success=ok ignore=ignore module_unknown=ignore default=bad +2021-01-07 17:45:02 Result: brackets used, ignoring control flags +2021-01-07 17:45:02 Result: using module pam_selinux.so (other) with options open +2021-01-07 17:45:02 Result: using module pam_env.so (required) with options readenv=1 +2021-01-07 17:45:02 Result: using module pam_env.so (required) with options readenv=1 envfile=/etc/default/locale +2021-01-07 17:45:02 Result: using module pam_group.so (optional) without options configured +2021-01-07 17:45:02 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:45:02 Result: using module pam_lastlog.so (optional) without options configured +2021-01-07 17:45:02 Result: using module pam_motd.so (optional) with options motd=/run/motd.dynamic +2021-01-07 17:45:02 Result: using module pam_motd.so (optional) with options noupdate +2021-01-07 17:45:02 Result: using module pam_mail.so (optional) with options standard +2021-01-07 17:45:02 Result: using module pam_keyinit.so (optional) with options force revoke +2021-01-07 17:45:02 Now checking PAM file /etc/pam.d/runuser-l +2021-01-07 17:45:03 Result: using module pam_keyinit.so (optional) with options force revoke +2021-01-07 17:45:03 Result: using module pam_systemd.so (optional) without options configured +2021-01-07 17:45:03 [PAM] PAM 2F authentication enabled: 0 +2021-01-07 17:45:03 [PAM] PAM 2F authentication required: 0 +2021-01-07 17:45:03 [PAM] Authentication unlock time: not configured +2021-01-07 17:45:03 [PAM] Password brute force protection: 0 +2021-01-07 17:45:03 [PAM] Minimum password length: not configured +2021-01-07 17:45:03 [PAM] Password strength testing enabled: 0 +2021-01-07 17:45:03 [PAM] Password maximum retry: Not configured +2021-01-07 17:45:03 [PAM] Password history with pam_pwhistory IS NOT enabled +2021-01-07 17:45:03 [PAM] Password history with pam_unix IS NOT enabled +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Result: pam plugin (phase 1) finished +2021-01-07 17:45:03 -- +2021-01-07 17:45:03 Found plugin file: ./plugins/plugin_systemd_phase1 +2021-01-07 17:45:03 Action: checking plugin status in profile: /home/ktdw73/scans/lynis/default.prf +2021-01-07 17:45:03 Result: plugin enabled in profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:45:03 Result: plugin systemd is enabled +2021-01-07 17:45:03 Checking permissions of ./plugins/plugin_systemd_phase1 +2021-01-07 17:45:03 File permissions are OK +2021-01-07 17:45:03 Including plugin file: ./plugins/plugin_systemd_phase1 (version: 1.0.4) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3800 (Gather systemctl exit code) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3802 (Query systemd version and options) +2021-01-07 17:45:03 Result: found systemd version 232 +2021-01-07 17:45:03 Result: found builtin components list +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3804 (Gather systemd unit files and their status) +2021-01-07 17:45:03 Result: found systemd unit files via systemctl list-unit-files +2021-01-07 17:45:03 Output: proc-sys-fs-binfmt_misc.automount|static| +2021-01-07 17:45:03 Output: -.mount|generated| +2021-01-07 17:45:03 Output: dev-hugepages.mount|static| +2021-01-07 17:45:03 Output: dev-mqueue.mount|static| +2021-01-07 17:45:03 Output: proc-sys-fs-binfmt_misc.mount|static| +2021-01-07 17:45:03 Output: sys-fs-fuse-connections.mount|static| +2021-01-07 17:45:03 Output: sys-kernel-config.mount|static| +2021-01-07 17:45:03 Output: sys-kernel-debug.mount|static| +2021-01-07 17:45:03 Output: acpid.path|enabled| +2021-01-07 17:45:03 Output: systemd-ask-password-console.path|static| +2021-01-07 17:45:03 Output: systemd-ask-password-wall.path|static| +2021-01-07 17:45:03 Output: acpid.service|disabled| +2021-01-07 17:45:03 Output: apt-daily-upgrade.service|static| +2021-01-07 17:45:03 Output: apt-daily.service|static| +2021-01-07 17:45:03 Output: autovt@.service|enabled| +2021-01-07 17:45:03 Output: bootlogd.service|masked| +2021-01-07 17:45:03 Output: bootlogs.service|masked| +2021-01-07 17:45:03 Output: bootmisc.service|masked| +2021-01-07 17:45:03 Output: checkfs.service|masked| +2021-01-07 17:45:03 Output: checkroot-bootclean.service|masked| +2021-01-07 17:45:03 Output: checkroot.service|masked| +2021-01-07 17:45:03 Output: console-getty.service|disabled| +2021-01-07 17:45:03 Output: container-getty@.service|static| +2021-01-07 17:45:03 Output: cron.service|enabled| +2021-01-07 17:45:03 Output: cryptdisks-early.service|masked| +2021-01-07 17:45:03 Output: cryptdisks.service|masked| +2021-01-07 17:45:03 Output: dbus-org.freedesktop.hostname1.service|static| +2021-01-07 17:45:03 Output: dbus-org.freedesktop.locale1.service|static| +2021-01-07 17:45:03 Output: dbus-org.freedesktop.login1.service|static| +2021-01-07 17:45:03 Output: dbus-org.freedesktop.network1.service|disabled| +2021-01-07 17:45:03 Output: dbus-org.freedesktop.resolve1.service|disabled| +2021-01-07 17:45:03 Output: dbus-org.freedesktop.timedate1.service|static| +2021-01-07 17:45:03 Output: debug-shell.service|disabled| +2021-01-07 17:45:03 Output: emergency.service|static| +2021-01-07 17:45:03 Output: expand-root.service|enabled| +2021-01-07 17:45:03 Output: fuse.service|masked| +2021-01-07 17:45:03 Output: getty-static.service|static| +2021-01-07 17:45:03 Output: getty@.service|enabled| +2021-01-07 17:45:03 Output: google-guest-agent.service|enabled| +2021-01-07 17:45:03 Output: google-osconfig-agent.service|enabled| +2021-01-07 17:45:03 Output: google-oslogin-cache.service|static| +2021-01-07 17:45:03 Output: google-shutdown-scripts.service|enabled| +2021-01-07 17:45:03 Output: google-startup-scripts.service|enabled| +2021-01-07 17:45:03 Output: halt.service|masked| +2021-01-07 17:45:03 Output: hostname.service|masked| +2021-01-07 17:45:03 Output: hwclock.service|masked| +2021-01-07 17:45:03 Output: ifup@.service|static| +2021-01-07 17:45:03 Output: initrd-cleanup.service|static| +2021-01-07 17:45:03 Output: initrd-parse-etc.service|static| +2021-01-07 17:45:03 Output: initrd-switch-root.service|static| +2021-01-07 17:45:03 Output: initrd-udevadm-cleanup-db.service|static| +2021-01-07 17:45:03 Output: killprocs.service|masked| +2021-01-07 17:45:03 Output: kmod-static-nodes.service|static| +2021-01-07 17:45:03 Output: kmod.service|static| +2021-01-07 17:45:03 Output: module-init-tools.service|static| +2021-01-07 17:45:03 Output: motd.service|masked| +2021-01-07 17:45:03 Output: mountall-bootclean.service|masked| +2021-01-07 17:45:03 Output: mountall.service|masked| +2021-01-07 17:45:03 Output: mountdevsubfs.service|masked| +2021-01-07 17:45:03 Output: mountkernfs.service|masked| +2021-01-07 17:45:03 Output: mountnfs-bootclean.service|masked| +2021-01-07 17:45:03 Output: mountnfs.service|masked| +2021-01-07 17:45:03 Output: networking.service|enabled| +2021-01-07 17:45:03 Output: ntp.service|generated| +2021-01-07 17:45:03 Output: procps.service|static| +2021-01-07 17:45:03 Output: quotaon.service|static| +2021-01-07 17:45:03 Output: rc-local.service|static| +2021-01-07 17:45:03 Output: rc.local.service|static| +2021-01-07 17:45:03 Output: rc.service|masked| +2021-01-07 17:45:03 Output: rcS.service|masked| +2021-01-07 17:45:03 Output: reboot.service|masked| +2021-01-07 17:45:03 Output: rescue.service|static| +2021-01-07 17:45:03 Output: rmnologin.service|masked| +2021-01-07 17:45:03 Output: rsync.service|enabled| +2021-01-07 17:45:03 Output: rsyslog.service|enabled| +2021-01-07 17:45:03 Output: screen-cleanup.service|masked| +2021-01-07 17:45:03 Output: sendsigs.service|masked| +2021-01-07 17:45:03 Output: serial-getty@.service|disabled| +2021-01-07 17:45:03 Output: single.service|masked| +2021-01-07 17:45:03 Output: ssh-generate-hostkeys.service|enabled| +2021-01-07 17:45:03 Output: ssh.service|enabled| +2021-01-07 17:45:03 Output: ssh@.service|static| +2021-01-07 17:45:03 Output: sshd.service|enabled| +2021-01-07 17:45:03 Output: stop-bootlogd-single.service|masked| +2021-01-07 17:45:03 Output: stop-bootlogd.service|masked| +2021-01-07 17:45:03 Output: sudo.service|disabled| +2021-01-07 17:45:03 Output: syslog.service|enabled| +2021-01-07 17:45:03 Output: systemd-ask-password-console.service|static| +2021-01-07 17:45:03 Output: systemd-ask-password-wall.service|static| +2021-01-07 17:45:03 Output: systemd-backlight@.service|static| +2021-01-07 17:45:03 Output: systemd-binfmt.service|static| +2021-01-07 17:45:03 Output: systemd-exit.service|static| +2021-01-07 17:45:03 Output: systemd-fsck-root.service|static| +2021-01-07 17:45:03 Output: systemd-fsck@.service|static| +2021-01-07 17:45:03 Output: systemd-fsckd.service|static| +2021-01-07 17:45:03 Output: systemd-halt.service|static| +2021-01-07 17:45:03 Output: systemd-hibernate-resume@.service|static| +2021-01-07 17:45:03 Output: systemd-hibernate.service|static| +2021-01-07 17:45:03 Output: systemd-hostnamed.service|static| +2021-01-07 17:45:03 Output: systemd-hwdb-update.service|static| +2021-01-07 17:45:03 Output: systemd-hybrid-sleep.service|static| +2021-01-07 17:45:03 Output: systemd-initctl.service|static| +2021-01-07 17:45:03 Output: systemd-journal-flush.service|static| +2021-01-07 17:45:03 Output: systemd-journald.service|static| +2021-01-07 17:45:03 Output: systemd-kexec.service|static| +2021-01-07 17:45:03 Output: systemd-localed.service|static| +2021-01-07 17:45:03 Output: systemd-logind.service|static| +2021-01-07 17:45:03 Output: systemd-machine-id-commit.service|static| +2021-01-07 17:45:03 Output: systemd-modules-load.service|static| +2021-01-07 17:45:03 Output: systemd-networkd-wait-online.service|disabled| +2021-01-07 17:45:03 Output: systemd-networkd.service|disabled| +2021-01-07 17:45:03 Output: systemd-poweroff.service|static| +2021-01-07 17:45:03 Output: systemd-quotacheck.service|static| +2021-01-07 17:45:03 Output: systemd-random-seed.service|static| +2021-01-07 17:45:03 Output: systemd-reboot.service|static| +2021-01-07 17:45:03 Output: systemd-remount-fs.service|static| +2021-01-07 17:45:03 Output: systemd-resolved.service|disabled| +2021-01-07 17:45:03 Output: systemd-rfkill.service|static| +2021-01-07 17:45:03 Output: systemd-suspend.service|static| +2021-01-07 17:45:03 Output: systemd-sysctl.service|static| +2021-01-07 17:45:03 Output: systemd-timedated.service|static| +2021-01-07 17:45:03 Output: systemd-timesyncd.service|enabled| +2021-01-07 17:45:03 Output: systemd-tmpfiles-clean.service|static| +2021-01-07 17:45:03 Output: systemd-tmpfiles-setup-dev.service|static| +2021-01-07 17:45:03 Output: systemd-tmpfiles-setup.service|static| +2021-01-07 17:45:03 Output: systemd-udev-settle.service|static| +2021-01-07 17:45:03 Output: systemd-udev-trigger.service|static| +2021-01-07 17:45:03 Output: systemd-udevd.service|static| +2021-01-07 17:45:03 Output: systemd-update-utmp-runlevel.service|static| +2021-01-07 17:45:03 Output: systemd-update-utmp.service|static| +2021-01-07 17:45:03 Output: systemd-user-sessions.service|static| +2021-01-07 17:45:03 Output: udev.service|static| +2021-01-07 17:45:03 Output: umountfs.service|masked| +2021-01-07 17:45:03 Output: umountnfs.service|masked| +2021-01-07 17:45:03 Output: umountroot.service|masked| +2021-01-07 17:45:03 Output: unattended-upgrades.service|enabled| +2021-01-07 17:45:03 Output: urandom.service|static| +2021-01-07 17:45:03 Output: user@.service|static| +2021-01-07 17:45:03 Output: uuidd.service|indirect| +2021-01-07 17:45:03 Output: x11-common.service|masked| +2021-01-07 17:45:03 Output: machine.slice|static| +2021-01-07 17:45:03 Output: system.slice|static| +2021-01-07 17:45:03 Output: user.slice|static| +2021-01-07 17:45:03 Output: acpid.socket|enabled| +2021-01-07 17:45:03 Output: ssh.socket|disabled| +2021-01-07 17:45:03 Output: syslog.socket|static| +2021-01-07 17:45:03 Output: systemd-fsckd.socket|static| +2021-01-07 17:45:03 Output: systemd-initctl.socket|static| +2021-01-07 17:45:03 Output: systemd-journald-audit.socket|static| +2021-01-07 17:45:03 Output: systemd-journald-dev-log.socket|static| +2021-01-07 17:45:03 Output: systemd-journald.socket|static| +2021-01-07 17:45:03 Output: systemd-networkd.socket|disabled| +2021-01-07 17:45:03 Output: systemd-rfkill.socket|static| +2021-01-07 17:45:03 Output: systemd-udevd-control.socket|static| +2021-01-07 17:45:03 Output: systemd-udevd-kernel.socket|static| +2021-01-07 17:45:03 Output: uuidd.socket|enabled| +2021-01-07 17:45:03 Output: basic.target|static| +2021-01-07 17:45:03 Output: bluetooth.target|static| +2021-01-07 17:45:03 Output: busnames.target|static| +2021-01-07 17:45:03 Output: cryptsetup-pre.target|static| +2021-01-07 17:45:03 Output: cryptsetup.target|static| +2021-01-07 17:45:03 Output: ctrl-alt-del.target|disabled| +2021-01-07 17:45:03 Output: default.target|static| +2021-01-07 17:45:03 Output: emergency.target|static| +2021-01-07 17:45:03 Output: exit.target|disabled| +2021-01-07 17:45:03 Output: final.target|static| +2021-01-07 17:45:03 Output: getty.target|static| +2021-01-07 17:45:03 Output: graphical.target|static| +2021-01-07 17:45:03 Output: halt.target|disabled| +2021-01-07 17:45:03 Output: hibernate.target|static| +2021-01-07 17:45:03 Output: hybrid-sleep.target|static| +2021-01-07 17:45:03 Output: initrd-fs.target|static| +2021-01-07 17:45:03 Output: initrd-root-device.target|static| +2021-01-07 17:45:03 Output: initrd-root-fs.target|static| +2021-01-07 17:45:03 Output: initrd-switch-root.target|static| +2021-01-07 17:45:03 Output: initrd.target|static| +2021-01-07 17:45:03 Output: kexec.target|disabled| +2021-01-07 17:45:03 Output: local-fs-pre.target|static| +2021-01-07 17:45:03 Output: local-fs.target|static| +2021-01-07 17:45:03 Output: multi-user.target|static| +2021-01-07 17:45:03 Output: network-online.target|static| +2021-01-07 17:45:03 Output: network-pre.target|static| +2021-01-07 17:45:03 Output: network.target|static| +2021-01-07 17:45:03 Output: nss-lookup.target|static| +2021-01-07 17:45:03 Output: nss-user-lookup.target|static| +2021-01-07 17:45:03 Output: paths.target|static| +2021-01-07 17:45:03 Output: poweroff.target|disabled| +2021-01-07 17:45:03 Output: printer.target|static| +2021-01-07 17:45:03 Output: reboot.target|disabled| +2021-01-07 17:45:03 Output: remote-fs-pre.target|static| +2021-01-07 17:45:03 Output: remote-fs.target|enabled| +2021-01-07 17:45:03 Output: rescue.target|disabled| +2021-01-07 17:45:03 Output: rpcbind.target|static| +2021-01-07 17:45:03 Output: runlevel0.target|disabled| +2021-01-07 17:45:03 Output: runlevel1.target|disabled| +2021-01-07 17:45:03 Output: runlevel2.target|static| +2021-01-07 17:45:03 Output: runlevel3.target|static| +2021-01-07 17:45:03 Output: runlevel4.target|static| +2021-01-07 17:45:03 Output: runlevel5.target|static| +2021-01-07 17:45:03 Output: runlevel6.target|disabled| +2021-01-07 17:45:03 Output: shutdown.target|static| +2021-01-07 17:45:03 Output: sigpwr.target|static| +2021-01-07 17:45:03 Output: sleep.target|static| +2021-01-07 17:45:03 Output: slices.target|static| +2021-01-07 17:45:03 Output: smartcard.target|static| +2021-01-07 17:45:03 Output: sockets.target|static| +2021-01-07 17:45:03 Output: sound.target|static| +2021-01-07 17:45:03 Output: suspend.target|static| +2021-01-07 17:45:03 Output: swap.target|static| +2021-01-07 17:45:03 Output: sysinit.target|static| +2021-01-07 17:45:03 Output: system-update.target|static| +2021-01-07 17:45:03 Output: time-sync.target|static| +2021-01-07 17:45:03 Output: timers.target|static| +2021-01-07 17:45:03 Output: umount.target|static| +2021-01-07 17:45:03 Output: apt-daily-upgrade.timer|enabled| +2021-01-07 17:45:03 Output: apt-daily.timer|enabled| +2021-01-07 17:45:03 Output: google-oslogin-cache.timer|enabled| +2021-01-07 17:45:03 Output: systemd-tmpfiles-clean.timer|static| +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3806 (Gather failed systemd units) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3808 (Gather systemd machine ID) +2021-01-07 17:45:03 Result: found machine ID: a66b25c544c2fc51bc4a5dae2b809331 +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3810 (Query main systemd binaries) +2021-01-07 17:45:03 Result: no binaries found in /usr/lib/systemd +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3812 (Query journal for boot related information) +2021-01-07 17:45:03 Output: number of boots listed in journal is 1 +2021-01-07 17:45:03 Output: oldest boot date in journal is 2021-01-07 +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3814 (Verify journal integrity) +2021-01-07 17:45:03 Result: systemd journal has no errors +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3816 (Query journal for boot related information) +2021-01-07 17:45:03 Result: journals are 4.9M in size +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3818 (Query journal meta data) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3820 (Check for journal FSS configuration) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3830 (Query systemd status) +2021-01-07 17:45:03 Result: found systemd status = running +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3832 (Query systemd status for processes which can not be found) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3834 (Collect service units which can not be found in systemd) +2021-01-07 17:45:03 Result: found one or more services with faulty state +2021-01-07 17:45:03 Result: service seems to be faulty (not-found) apparmor.service +2021-01-07 17:45:03 Result: service seems to be faulty (not-found) auditd.service +2021-01-07 17:45:03 Result: service seems to be faulty (not-found) display-manager.service +2021-01-07 17:45:03 Result: service seems to be faulty (not-found) network.service +2021-01-07 17:45:03 Result: service seems to be faulty (not-found) NetworkManager.service +2021-01-07 17:45:03 Result: service seems to be faulty (not-found) plymouth-quit-wait.service +2021-01-07 17:45:03 Result: service seems to be faulty (not-found) plymouth-start.service +2021-01-07 17:45:03 Result: service seems to be faulty (not-found) systemd-sysusers.service +2021-01-07 17:45:03 Result: service seems to be faulty (not-found) systemd-update-done.service +2021-01-07 17:45:03 Result: service seems to be faulty (not-found) systemd-vconsole-setup.service +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3856 (Check if systemd-coredump is used) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID PLGN-3860 (Query coredumps from journals since Yesterday) +2021-01-07 17:45:03 Result: found no coredumps +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Result: systemd plugin (phase 1) finished +2021-01-07 17:45:03 -- +2021-01-07 17:45:03 Result: Found 2 plugins of which 2 are enabled +2021-01-07 17:45:03 Result: Plugins phase 1 finished +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Info: using hardware address 42:01:0a:9c:00:06 to create ID +2021-01-07 17:45:03 Result: Found HostID: 466ad4432c544245a47e41f2a41d247da252b5ad +2021-01-07 17:45:03 Info: creating a HostID (version 2) +2021-01-07 17:45:03 Result: found file ssh_host_ed25519_key.pub in /etc/ssh, using that to create host identifier +2021-01-07 17:45:03 Using SSH public key to create the second host identifier +2021-01-07 17:45:03 Hash (hostname): 90252b286478f264c25d2c2658e6e43ef1051eddb6581b4bbfb6ee2ba8356d71 +2021-01-07 17:45:03 Hash (ssh or machineid): 3ecc6b2399833ea32698bac064848b8804f3ad85ccd0987d01ced99b6335024b +2021-01-07 17:45:03 Info: found valid HostID 466ad4432c544245a47e41f2a41d247da252b5ad +2021-01-07 17:45:03 Info: no machine ID found +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Info: perform tests from all categories +2021-01-07 17:45:03 Security check: file is normal +2021-01-07 17:45:03 Checking permissions of /home/ktdw73/scans/lynis/include/tests_boot_services +2021-01-07 17:45:03 File permissions are OK +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Action: Performing tests from category: Boot and services +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Skipped test BOOT-5102 (Check for AIX boot device) +2021-01-07 17:45:03 Reason to skip: Incorrect guest OS (AIX only) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID BOOT-5104 (Determine service manager) +2021-01-07 17:45:03 Result: cmdline found = /sbin/init +2021-01-07 17:45:03 Result: file on disk = /sbin/init +2021-01-07 17:45:03 Action: checking symlink for file /sbin/init +2021-01-07 17:45:03 Note: Using real readlink binary to determine symlink on /sbin/init +2021-01-07 17:45:03 Result: readlink shows /lib/systemd/systemd as output +2021-01-07 17:45:03 Result: symlink found, pointing to file /lib/systemd/systemd +2021-01-07 17:45:03 Found: systemd +2021-01-07 17:45:03 Result: service manager found = systemd +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Skipped test BOOT-5106 (Check EFI boot file on Mac OS X/macOS) +2021-01-07 17:45:03 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID BOOT-5108 (Check Syslinux as bootloader) +2021-01-07 17:45:03 Test: checking if file /boot/syslinux/syslinux.cfg exists +2021-01-07 17:45:03 Result: file /boot/syslinux/syslinux.cfg NOT found +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID BOOT-5109 (Check rEFInd as bootloader) +2021-01-07 17:45:03 Test: checking if file /boot/refind_linux.conf exists +2021-01-07 17:45:03 Result: file /boot/refind_linux.conf NOT found +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID BOOT-5116 (Check if system is booted in UEFI mode) +2021-01-07 17:45:03 Test: checking if UEFI is used +2021-01-07 17:45:03 Result: UEFI not used, can't find /sys/firmware/efi directory +2021-01-07 17:45:03 Test: determine if Secure Boot is used +2021-01-07 17:45:03 Result: system not booted with Secure Boot (no SecureBoot file found) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Skipped test BOOT-5117 (Check for systemd-boot bootloader presence) +2021-01-07 17:45:03 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID BOOT-5121 (Check for GRUB boot loader presence) +2021-01-07 17:45:03 Test: Checking for presence GRUB conf file (/boot/grub/grub.conf or /boot/grub/menu.lst) +2021-01-07 17:45:03 Result: found GRUB2 configuration file (/boot/grub/grub.cfg) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID BOOT-5122 (Check for GRUB boot password) +2021-01-07 17:45:03 Found file /boot/grub/grub.cfg, proceeding with tests. +2021-01-07 17:45:03 Test: check if we can access /boot/grub/grub.cfg (escaped: /boot/grub/grub.cfg) +2021-01-07 17:45:03 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:03 Result: file /boot/grub/grub.cfg is readable (or directory accessible). +2021-01-07 17:45:03 Result: did not find hashed password line in this file +2021-01-07 17:45:03 Result: File '/boot/grub/custom.cfg' does not exist +2021-01-07 17:45:03 Found file /etc/grub.d/00_header, proceeding with tests. +2021-01-07 17:45:03 Test: check if we can access /etc/grub.d/00_header (escaped: /etc/grub.d/00_header) +2021-01-07 17:45:03 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:03 Result: file /etc/grub.d/00_header is readable (or directory accessible). +2021-01-07 17:45:03 Result: did not find hashed password line in this file +2021-01-07 17:45:03 Found file /etc/grub.d/40_custom, proceeding with tests. +2021-01-07 17:45:03 Test: check if we can access /etc/grub.d/40_custom (escaped: /etc/grub.d/40_custom) +2021-01-07 17:45:03 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:03 Result: file /etc/grub.d/40_custom is readable (or directory accessible). +2021-01-07 17:45:03 Result: did not find hashed password line in this file +2021-01-07 17:45:03 Found file /etc/grub.d/05_debian_theme, proceeding with tests. +2021-01-07 17:45:03 Test: check if we can access /etc/grub.d/05_debian_theme (escaped: /etc/grub.d/05_debian_theme) +2021-01-07 17:45:03 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:03 Result: file /etc/grub.d/05_debian_theme is readable (or directory accessible). +2021-01-07 17:45:03 Result: did not find hashed password line in this file +2021-01-07 17:45:03 Found file /etc/grub.d/30_os-prober, proceeding with tests. +2021-01-07 17:45:03 Test: check if we can access /etc/grub.d/30_os-prober (escaped: /etc/grub.d/30_os-prober) +2021-01-07 17:45:03 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:03 Result: file /etc/grub.d/30_os-prober is readable (or directory accessible). +2021-01-07 17:45:03 Result: did not find hashed password line in this file +2021-01-07 17:45:03 Found file /etc/grub.d/10_linux, proceeding with tests. +2021-01-07 17:45:03 Test: check if we can access /etc/grub.d/10_linux (escaped: /etc/grub.d/10_linux) +2021-01-07 17:45:03 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:03 Result: file /etc/grub.d/10_linux is readable (or directory accessible). +2021-01-07 17:45:03 Result: did not find hashed password line in this file +2021-01-07 17:45:03 Found file /etc/grub.d/41_custom, proceeding with tests. +2021-01-07 17:45:03 Test: check if we can access /etc/grub.d/41_custom (escaped: /etc/grub.d/41_custom) +2021-01-07 17:45:03 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:03 Result: file /etc/grub.d/41_custom is readable (or directory accessible). +2021-01-07 17:45:03 Result: did not find hashed password line in this file +2021-01-07 17:45:03 Found file /etc/grub.d/30_uefi-firmware, proceeding with tests. +2021-01-07 17:45:03 Test: check if we can access /etc/grub.d/30_uefi-firmware (escaped: /etc/grub.d/30_uefi-firmware) +2021-01-07 17:45:03 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:03 Result: file /etc/grub.d/30_uefi-firmware is readable (or directory accessible). +2021-01-07 17:45:03 Result: did not find hashed password line in this file +2021-01-07 17:45:03 Found file /etc/grub.d/20_linux_xen, proceeding with tests. +2021-01-07 17:45:03 Test: check if we can access /etc/grub.d/20_linux_xen (escaped: /etc/grub.d/20_linux_xen) +2021-01-07 17:45:03 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:03 Result: file /etc/grub.d/20_linux_xen is readable (or directory accessible). +2021-01-07 17:45:03 Result: did not find hashed password line in this file +2021-01-07 17:45:03 Result: Didn't find hashed password line in GRUB configuration +2021-01-07 17:45:03 Suggestion: Set a password on GRUB boot loader to prevent altering boot configuration (e.g. boot in single user mode without password) [test:BOOT-5122] [details:-] [solution:-] +2021-01-07 17:45:03 Hardening: assigned partial number of hardening points (0 of 2). Currently having 0 points (out of 2) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Skipped test BOOT-5124 (Check for FreeBSD boot loader presence) +2021-01-07 17:45:03 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Skipped test BOOT-5261 (Check for DragonFly boot loader presence) +2021-01-07 17:45:03 Reason to skip: Incorrect guest OS (DragonFly only) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Skipped test BOOT-5126 (Check for NetBSD boot loader presence) +2021-01-07 17:45:03 Reason to skip: Incorrect guest OS (NetBSD only) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID BOOT-5139 (Check for LILO boot loader presence) +2021-01-07 17:45:03 Test: checking for presence LILO configuration file +2021-01-07 17:45:03 Result: LILO configuration file not found +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID BOOT-5142 (Check SPARC Improved boot loader (SILO)) +2021-01-07 17:45:03 Result: no SILO configuration file found. +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID BOOT-5155 (Check for YABOOT boot loader configuration file) +2021-01-07 17:45:03 Test: Check for /etc/yaboot.conf +2021-01-07 17:45:03 Result: no YABOOT configuration file found. +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Skipped test BOOT-5159 (Check for OpenBSD boot loader presence) +2021-01-07 17:45:03 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Skipped test BOOT-5165 (Check for FreeBSD boot services) +2021-01-07 17:45:03 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Skipped test BOOT-5170 (Check for Solaris boot daemons) +2021-01-07 17:45:03 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID BOOT-5177 (Check for Linux boot and running services) +2021-01-07 17:45:03 Test: checking presence systemctl binary +2021-01-07 17:45:03 Result: systemctl binary found, trying that to discover information +2021-01-07 17:45:03 Searching for running services (systemctl services only) +2021-01-07 17:45:03 Found running service: acpid +2021-01-07 17:45:03 Found running service: cron +2021-01-07 17:45:03 Found running service: getty@tty1 +2021-01-07 17:45:03 Found running service: getty@tty2 +2021-01-07 17:45:03 Found running service: getty@tty3 +2021-01-07 17:45:03 Found running service: getty@tty4 +2021-01-07 17:45:03 Found running service: getty@tty5 +2021-01-07 17:45:03 Found running service: getty@tty6 +2021-01-07 17:45:03 Found running service: google-guest-agent +2021-01-07 17:45:03 Found running service: google-osconfig-agent +2021-01-07 17:45:03 Found running service: ntp +2021-01-07 17:45:03 Found running service: rsyslog +2021-01-07 17:45:03 Found running service: serial-getty@ttyS0 +2021-01-07 17:45:03 Found running service: ssh +2021-01-07 17:45:03 Found running service: systemd-journald +2021-01-07 17:45:03 Found running service: systemd-udevd +2021-01-07 17:45:03 Hint: Run systemctl --full --type=service to see all services +2021-01-07 17:45:03 Result: Found 16 running services +2021-01-07 17:45:03 Searching for enabled services (systemctl services only) +2021-01-07 17:45:03 Found enabled service at boot: autovt@ +2021-01-07 17:45:03 Found enabled service at boot: cron +2021-01-07 17:45:03 Found enabled service at boot: expand-root +2021-01-07 17:45:03 Found enabled service at boot: getty@ +2021-01-07 17:45:03 Found enabled service at boot: google-guest-agent +2021-01-07 17:45:03 Found enabled service at boot: google-osconfig-agent +2021-01-07 17:45:03 Found enabled service at boot: google-shutdown-scripts +2021-01-07 17:45:03 Found enabled service at boot: google-startup-scripts +2021-01-07 17:45:03 Found enabled service at boot: networking +2021-01-07 17:45:03 Found enabled service at boot: rsync +2021-01-07 17:45:03 Found enabled service at boot: rsyslog +2021-01-07 17:45:03 Found enabled service at boot: ssh-generate-hostkeys +2021-01-07 17:45:03 Found enabled service at boot: ssh +2021-01-07 17:45:03 Found enabled service at boot: sshd +2021-01-07 17:45:03 Found enabled service at boot: syslog +2021-01-07 17:45:03 Found enabled service at boot: systemd-timesyncd +2021-01-07 17:45:03 Found enabled service at boot: unattended-upgrades +2021-01-07 17:45:03 Hint: Run systemctl list-unit-files --type=service to see all services +2021-01-07 17:45:03 Result: Found 17 enabled services +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID BOOT-5180 (Check for Linux boot services (Debian style)) +2021-01-07 17:45:03 Result: found runlevel 5 +2021-01-07 17:45:03 Result: skipping further actions +2021-01-07 17:45:03 ==== +2021-01-07 17:45:03 Performing test ID BOOT-5184 (Check permissions for boot files/scripts) +2021-01-07 17:45:03 Result: checking /etc/init.d scripts for writable bit +2021-01-07 17:45:03 Test: checking if directory /etc/init.d exists +2021-01-07 17:45:03 Result: directory /etc/init.d found +2021-01-07 17:45:03 Test: checking for available files in directory +2021-01-07 17:45:03 Result: found files in directory, checking permissions now +2021-01-07 17:45:03 Test: checking permissions of file /etc/init.d/acpid +2021-01-07 17:45:03 Result: good, file /etc/init.d/acpid not world writable +2021-01-07 17:45:03 Test: checking permissions of file /etc/init.d/cron +2021-01-07 17:45:03 Result: good, file /etc/init.d/cron not world writable +2021-01-07 17:45:03 Test: checking permissions of file /etc/init.d/hwclock.sh +2021-01-07 17:45:03 Result: good, file /etc/init.d/hwclock.sh not world writable +2021-01-07 17:45:03 Test: checking permissions of file /etc/init.d/kmod +2021-01-07 17:45:03 Result: good, file /etc/init.d/kmod not world writable +2021-01-07 17:45:03 Test: checking permissions of file /etc/init.d/networking +2021-01-07 17:45:04 Result: good, file /etc/init.d/networking not world writable +2021-01-07 17:45:04 Test: checking permissions of file /etc/init.d/ntp +2021-01-07 17:45:04 Result: good, file /etc/init.d/ntp not world writable +2021-01-07 17:45:04 Test: checking permissions of file /etc/init.d/procps +2021-01-07 17:45:04 Result: good, file /etc/init.d/procps not world writable +2021-01-07 17:45:04 Test: checking permissions of file /etc/init.d/rsync +2021-01-07 17:45:04 Result: good, file /etc/init.d/rsync not world writable +2021-01-07 17:45:04 Test: checking permissions of file /etc/init.d/rsyslog +2021-01-07 17:45:04 Result: good, file /etc/init.d/rsyslog not world writable +2021-01-07 17:45:04 Test: checking permissions of file /etc/init.d/screen-cleanup +2021-01-07 17:45:04 Result: good, file /etc/init.d/screen-cleanup not world writable +2021-01-07 17:45:04 Test: checking permissions of file /etc/init.d/ssh +2021-01-07 17:45:04 Result: good, file /etc/init.d/ssh not world writable +2021-01-07 17:45:04 Test: checking permissions of file /etc/init.d/ssh-generate-hostkeys +2021-01-07 17:45:04 Result: good, file /etc/init.d/ssh-generate-hostkeys not world writable +2021-01-07 17:45:04 Test: checking permissions of file /etc/init.d/sudo +2021-01-07 17:45:04 Result: good, file /etc/init.d/sudo not world writable +2021-01-07 17:45:04 Test: checking permissions of file /etc/init.d/udev +2021-01-07 17:45:04 Result: good, file /etc/init.d/udev not world writable +2021-01-07 17:45:04 Test: checking permissions of file /etc/init.d/unattended-upgrades +2021-01-07 17:45:04 Result: good, file /etc/init.d/unattended-upgrades not world writable +2021-01-07 17:45:04 Test: checking permissions of file /etc/init.d/uuidd +2021-01-07 17:45:04 Result: good, file /etc/init.d/uuidd not world writable +2021-01-07 17:45:04 Test: checking if directory /etc/rc.d exists +2021-01-07 17:45:04 Result: directory /etc/rc.d not found. Skipping.. +2021-01-07 17:45:04 Test: checking if directory /etc/rcS.d exists +2021-01-07 17:45:04 Result: directory /etc/rcS.d found +2021-01-07 17:45:04 Test: checking for available files in directory +2021-01-07 17:45:04 Result: found no files in directory. +2021-01-07 17:45:04 Test: Checking /etc/rc0.d scripts for writable bit +2021-01-07 17:45:04 Test: Checking /etc/rc1.d scripts for writable bit +2021-01-07 17:45:04 Test: Checking /etc/rc2.d scripts for writable bit +2021-01-07 17:45:04 Test: Checking /etc/rc3.d scripts for writable bit +2021-01-07 17:45:04 Test: Checking /etc/rc4.d scripts for writable bit +2021-01-07 17:45:04 Test: Checking /etc/rc5.d scripts for writable bit +2021-01-07 17:45:04 Test: Checking /etc/rc6.d scripts for writable bit +2021-01-07 17:45:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 3 points (out of 5) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID BOOT-5202 (Check uptime of system) +2021-01-07 17:45:04 Uptime (in seconds): 1491 +2021-01-07 17:45:04 Uptime (in days): 0 +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID BOOT-5260 (Check single user mode for systemd) +2021-01-07 17:45:04 Test: Searching /usr/lib/systemd/system/rescue.service +2021-01-07 17:45:04 Result: file /usr/lib/systemd/system/rescue.service does not exist +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Skipped test BOOT-5262 (Check for OpenBSD boot daemons) +2021-01-07 17:45:04 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Skipped test BOOT-5263 (Check permissions for boot files/scripts) +2021-01-07 17:45:04 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Skipped test BOOT-5264 (Run systemd-analyze security) +2021-01-07 17:45:04 Reason to skip: systemd-analyze too old (v232), need at least v240 +2021-01-07 17:45:04 Security check: file is normal +2021-01-07 17:45:04 Checking permissions of /home/ktdw73/scans/lynis/include/tests_kernel +2021-01-07 17:45:04 File permissions are OK +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Action: Performing tests from category: Kernel +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID KRNL-5622 (Determine Linux default run level) +2021-01-07 17:45:04 Test: Checking for systemd default.target +2021-01-07 17:45:04 Result: no systemd found, so trying inittab +2021-01-07 17:45:04 Test: Checking /etc/inittab +2021-01-07 17:45:04 Result: file /etc/inittab not found +2021-01-07 17:45:04 Test: Checking run level with who -r, for Debian based systems +2021-01-07 17:45:04 Result: Found default run level '5' +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID KRNL-5677 (Check CPU options and support) +2021-01-07 17:45:04 Test: Checking /proc/cpuinfo +2021-01-07 17:45:04 Result: found /proc/cpuinfo +2021-01-07 17:45:04 Test: Checking CPU options (XD/NX/PAE) +2021-01-07 17:45:04 PAE: Yes +2021-01-07 17:45:04 NX: Yes +2021-01-07 17:45:04 Result: PAE or No eXecute option(s) both found +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID KRNL-5695 (Determine Linux kernel version and release number) +2021-01-07 17:45:04 Result: found kernel release 4.9.0-14-amd64 +2021-01-07 17:45:04 Result: found kernel version #1 SMP Debian 4.9.240-2 (2020-10-30) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID KRNL-5723 (Determining if Linux kernel is monolithic) +2021-01-07 17:45:04 Test: checking if kernel is monolithic or modular +2021-01-07 17:45:04 Result: Found modular kernel +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID KRNL-5726 (Checking Linux loaded kernel modules) +2021-01-07 17:45:04 Loaded modules according lsmod: +2021-01-07 17:45:04 Loaded module: ablk_helper +2021-01-07 17:45:04 Loaded module: aes_x86_64 +2021-01-07 17:45:04 Loaded module: aesni_intel +2021-01-07 17:45:04 Loaded module: autofs4 +2021-01-07 17:45:04 Loaded module: binfmt_misc +2021-01-07 17:45:04 Loaded module: button +2021-01-07 17:45:04 Loaded module: crc16 +2021-01-07 17:45:04 Loaded module: crc32_pclmul +2021-01-07 17:45:04 Loaded module: crc32c_generic +2021-01-07 17:45:04 Loaded module: crc32c_intel +2021-01-07 17:45:04 Loaded module: crct10dif_pclmul +2021-01-07 17:45:04 Loaded module: cryptd +2021-01-07 17:45:04 Loaded module: dm_mod +2021-01-07 17:45:04 Loaded module: ecb +2021-01-07 17:45:04 Loaded module: edac_core +2021-01-07 17:45:04 Loaded module: evdev +2021-01-07 17:45:04 Loaded module: ext4 +2021-01-07 17:45:04 Loaded module: fscrypto +2021-01-07 17:45:04 Loaded module: gf128mul +2021-01-07 17:45:04 Loaded module: ghash_clmulni_intel +2021-01-07 17:45:04 Loaded module: glue_helper +2021-01-07 17:45:04 Loaded module: i2c_piix4 +2021-01-07 17:45:04 Loaded module: inet_diag +2021-01-07 17:45:04 Loaded module: intel_rapl_perf +2021-01-07 17:45:04 Loaded module: ip_tables +2021-01-07 17:45:04 Loaded module: iptable_filter +2021-01-07 17:45:04 Loaded module: iptable_nat +2021-01-07 17:45:04 Loaded module: jbd2 +2021-01-07 17:45:04 Loaded module: lrw +2021-01-07 17:45:04 Loaded module: mbcache +2021-01-07 17:45:04 Loaded module: nf_conntrack +2021-01-07 17:45:04 Loaded module: nf_conntrack_ipv4 +2021-01-07 17:45:04 Loaded module: nf_defrag_ipv4 +2021-01-07 17:45:04 Loaded module: nf_nat +2021-01-07 17:45:04 Loaded module: nf_nat_ipv4 +2021-01-07 17:45:04 Loaded module: psmouse +2021-01-07 17:45:04 Loaded module: pvpanic +2021-01-07 17:45:04 Loaded module: rng_core +2021-01-07 17:45:04 Loaded module: sb_edac +2021-01-07 17:45:04 Loaded module: scsi_mod +2021-01-07 17:45:04 Loaded module: sd_mod +2021-01-07 17:45:04 Loaded module: serio_raw +2021-01-07 17:45:04 Loaded module: sg +2021-01-07 17:45:04 Loaded module: tcp_diag +2021-01-07 17:45:04 Loaded module: udp_diag +2021-01-07 17:45:04 Loaded module: virtio +2021-01-07 17:45:04 Loaded module: virtio_balloon +2021-01-07 17:45:04 Loaded module: virtio_net +2021-01-07 17:45:04 Loaded module: virtio_pci +2021-01-07 17:45:04 Loaded module: virtio_ring +2021-01-07 17:45:04 Loaded module: virtio_rng +2021-01-07 17:45:04 Loaded module: virtio_scsi +2021-01-07 17:45:04 Loaded module: x_tables +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID KRNL-5728 (Checking Linux kernel config) +2021-01-07 17:45:04 Result: found config (/boot/config-4.9.0-14-amd64) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID KRNL-5730 (Checking disk I/O kernel scheduler) +2021-01-07 17:45:04 Test: Checking the default I/O kernel scheduler +2021-01-07 17:45:04 Result: found IO scheduler 'cfq' +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Skipped test KRNL-5745 (Checking FreeBSD loaded kernel modules) +2021-01-07 17:45:04 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Skipped test KRNL-5831 (Checking DragonFly loaded kernel modules) +2021-01-07 17:45:04 Reason to skip: Incorrect guest OS (DragonFly only) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Skipped test KRNL-5770 (Checking active kernel modules) +2021-01-07 17:45:04 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID KRNL-5788 (Checking availability new Linux kernel) +2021-01-07 17:45:04 Test: Searching apt-cache, to determine if a newer kernel is available +2021-01-07 17:45:04 Result: found /usr/bin/apt-cache +2021-01-07 17:45:04 Test: checking presence of /vmlinuz or /boot/vmlinuz +2021-01-07 17:45:04 Result: found /vmlinuz +2021-01-07 17:45:04 Test: checking readlink location of /vmlinuz +2021-01-07 17:45:04 Output: readlink reported file /boot/vmlinuz-4.9.0-14-amd64 +2021-01-07 17:45:04 Test: checking package from dpkg -S +2021-01-07 17:45:04 Output: dpkg -S reported package linux-image-4.9.0-14-amd64 +2021-01-07 17:45:04 Test: Using apt-cache policy to determine if there is an update available +2021-01-07 17:45:04 Kernel installed: 4.9.246-2 +2021-01-07 17:45:04 Kernel candidate: 4.9.246-2 +2021-01-07 17:45:04 Result: no kernel update available +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID KRNL-5820 (Checking core dumps configuration) +2021-01-07 17:45:04 Test: Checking presence of systemd +2021-01-07 17:45:04 Result: systemd is present on this system +2021-01-07 17:45:04 Test: Checking if core dumps are disabled in /etc/systemd/coredump.conf and /etc/systemd/coredump.conf.d/*.conf +2021-01-07 17:45:04 Result: core dumps are not disabled in systemd configuration. Didn't find settings 'ProcessSizeMax=0' and 'Storage=none' +2021-01-07 17:45:04 Hardening: assigned partial number of hardening points (0 of 1). Currently having 3 points (out of 6) +2021-01-07 17:45:04 Test: Checking presence /etc/profile +2021-01-07 17:45:04 Test: Checking if 'ulimit -c 0' exists in /etc/profile or /etc/profile.d/*.sh +2021-01-07 17:45:04 Result: core dumps are not disabled in /etc/profile or /etc/profile.d/*.sh config files. Didn't find setting 'ulimit -c 0' +2021-01-07 17:45:04 Hardening: assigned partial number of hardening points (0 of 1). Currently having 3 points (out of 7) +2021-01-07 17:45:04 Test: Checking presence /etc/security/limits.conf +2021-01-07 17:45:04 Result: file /etc/security/limits.conf exists +2021-01-07 17:45:04 Test: Checking if core dumps are disabled in /etc/security/limits.conf and /etc/security/limits.d/* +2021-01-07 17:45:04 Result: core dumps are not explicitly disabled +2021-01-07 17:45:04 Suggestion: If not required, consider explicit disabling of core dump in /etc/security/limits.conf file [test:KRNL-5820] [details:-] [solution:-] +2021-01-07 17:45:04 Hardening: assigned partial number of hardening points (1 of 3). Currently having 4 points (out of 10) +2021-01-07 17:45:04 Test: Checking sysctl value of fs.suid_dumpable +2021-01-07 17:45:04 Result: value 0 found +2021-01-07 17:45:04 Result: found default option (0), no execute only program or program with changed privilege levels can dump +2021-01-07 17:45:04 Hardening: assigned maximum number of hardening points for this item (1). Currently having 5 points (out of 11) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID KRNL-5830 (Checking if system is running on the latest installed kernel) +2021-01-07 17:45:04 Test: Checking presence /var/run/reboot-required.pkgs +2021-01-07 17:45:04 Result: file /var/run/reboot-required.pkgs not found +2021-01-07 17:45:04 Result: /boot exists, performing more tests from here +2021-01-07 17:45:04 Result: found /boot/vmlinuz-4.9.0-14-amd64 +2021-01-07 17:45:04 Result: version derived from file name is '4.9.0-14-amd64' +2021-01-07 17:45:04 Result: found version 4.9.0-14-amd64 +2021-01-07 17:45:04 Result: active kernel version 4.9.0-14-amd64 +2021-01-07 17:45:04 Result: no reboot needed, active kernel is the same version as the one on disk +2021-01-07 17:45:04 Result: /var/cache/apt/archives/ does not exist +2021-01-07 17:45:04 Hardening: assigned maximum number of hardening points for this item (5). Currently having 10 points (out of 16) +2021-01-07 17:45:04 Security check: file is normal +2021-01-07 17:45:04 Checking permissions of /home/ktdw73/scans/lynis/include/tests_memory_processes +2021-01-07 17:45:04 File permissions are OK +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Action: Performing tests from category: Memory and Processes +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID PROC-3602 (Checking /proc/meminfo for memory details) +2021-01-07 17:45:04 Result: found /proc/meminfo +2021-01-07 17:45:04 Result: Found 4050856 kB memory +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Skipped test PROC-3604 (Query prtconf for memory details) +2021-01-07 17:45:04 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID PROC-3612 (Check dead or zombie processes) +2021-01-07 17:45:04 Result: no zombie processes found +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID PROC-3614 (Check heavy IO waiting based processes) +2021-01-07 17:45:04 Result: No processes were waiting for IO requests to be handled first +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID PROC-3802 (Check presence of prelink tooling) +2021-01-07 17:45:04 Result: prelink package is NOT installed +2021-01-07 17:45:04 Hardening: assigned maximum number of hardening points for this item (3). Currently having 13 points (out of 19) +2021-01-07 17:45:04 Security check: file is normal +2021-01-07 17:45:04 Checking permissions of /home/ktdw73/scans/lynis/include/tests_authentication +2021-01-07 17:45:04 File permissions are OK +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Action: Performing tests from category: Users, Groups and Authentication +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9204 (Check users with an UID of zero) +2021-01-07 17:45:04 Test: Searching accounts with UID 0 +2021-01-07 17:45:04 Result: No accounts found with UID 0 other than root. +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9208 (Check non-unique accounts in passwd file) +2021-01-07 17:45:04 Test: Checking for non-unique accounts +2021-01-07 17:45:04 Result: all accounts found in /etc/passwd are unique +2021-01-07 17:45:04 Remarks: Non unique UIDs can be a risk for the system or part of a configuration mistake +2021-01-07 17:45:04 Prerequisite test: /usr/sbin/chkgrp +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Skipped test AUTH-9212 (Test group file) +2021-01-07 17:45:04 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9216 (Check group and shadow group files) +2021-01-07 17:45:04 Test: Checking for grpck binary output +2021-01-07 17:45:04 Result: grpck binary didn't find any errors in the group files +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Skipped test AUTH-9218 (Check login shells for passwordless accounts) +2021-01-07 17:45:04 Reason to skip: Incorrect guest OS (DragonFly FreeBSD NetBSD OpenBSD only) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9222 (Check unique groups (IDs)) +2021-01-07 17:45:04 Test: Checking for non unique group ID's in /etc/group +2021-01-07 17:45:04 Result: All group ID's are unique +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9226 (Check unique group names) +2021-01-07 17:45:04 Test: Checking for non unique group names in /etc/group +2021-01-07 17:45:04 Result: All group names are unique +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9228 (Check password file consistency with pwck) +2021-01-07 17:45:04 Test: Checking password file consistency (pwck) +2021-01-07 17:45:04 Result: pwck check didn't find any problems +2021-01-07 17:45:04 Hardening: assigned maximum number of hardening points for this item (2). Currently having 15 points (out of 21) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9229 (Check password hashing methods) +2021-01-07 17:45:04 Test: Checking password hashing methods +2021-01-07 17:45:04 Result: no poor password hashing methods found +2021-01-07 17:45:04 Hardening: assigned maximum number of hardening points for this item (2). Currently having 17 points (out of 23) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9230 (Check password hashing rounds) +2021-01-07 17:45:04 Test: Checking SHA_CRYPT_{MIN,MAX}_ROUNDS option in /etc/login.defs +2021-01-07 17:45:04 Result: number of password hashing rounds is not configured +2021-01-07 17:45:04 Suggestion: Configure password hashing rounds in /etc/login.defs [test:AUTH-9230] [details:-] [solution:-] +2021-01-07 17:45:04 Hardening: assigned partial number of hardening points (0 of 2). Currently having 17 points (out of 25) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9234 (Query user accounts) +2021-01-07 17:45:04 Test: Read system users (including root user) from password database (e.g. /etc/passwd) +2021-01-07 17:45:04 Result: found minimal user id specified: 1000 +2021-01-07 17:45:04 Linux real users output (ID = 0, or 1000+, but not 65534): +2021-01-07 17:45:04 Real user: root,0 +2021-01-07 17:45:04 Real user: Tobias,1000 +2021-01-07 17:45:04 Real user: ktdw73,1001 +2021-01-07 17:45:04 Real user: ftpuser,1002 +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9240 (Query NIS+ authentication support) +2021-01-07 17:45:04 Result: NIS+ authentication not enabled +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9242 (Query NIS authentication support) +2021-01-07 17:45:04 Result: NIS authentication not enabled +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9250 (Checking sudoers file) +2021-01-07 17:45:04 Test: checking presence /etc/sudoers +2021-01-07 17:45:04 Result: found file (/etc/sudoers) +2021-01-07 17:45:04 Test: checking presence /usr/local/etc/sudoers +2021-01-07 17:45:04 Result: file /usr/local/etc/sudoers not found +2021-01-07 17:45:04 Test: checking presence /usr/pkg/etc/sudoers +2021-01-07 17:45:04 Result: file /usr/pkg/etc/sudoers not found +2021-01-07 17:45:04 Result: sudoers file found (/etc/sudoers) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9252 (Check ownership and permissions for sudo configuration files) +2021-01-07 17:45:04 Test: checking drop-in directory (/etc/sudoers.d) +2021-01-07 17:45:04 Result: Found directory permissions: rwxr-xr-x and owner UID GID: 00 +2021-01-07 17:45:04 Result: directory /etc/sudoers.d has possibly unsafe permissions +2021-01-07 17:45:04 Result: directory /etc/sudoers.d ownership OK +2021-01-07 17:45:04 Test: checking file (/etc/sudoers) +2021-01-07 17:45:04 Result: Found file permissions: r--r----- and owner UID GID: 00 +2021-01-07 17:45:04 Result: file /etc/sudoers permissions OK +2021-01-07 17:45:04 Result: file /etc/sudoers ownership OK +2021-01-07 17:45:04 Test: checking file (/etc/sudoers.d/google_sudoers) +2021-01-07 17:45:04 Result: Found file permissions: r--r----- and owner UID GID: 00 +2021-01-07 17:45:04 Result: file /etc/sudoers.d/google_sudoers permissions OK +2021-01-07 17:45:04 Result: file /etc/sudoers.d/google_sudoers ownership OK +2021-01-07 17:45:04 Test: checking file (/etc/sudoers.d/README) +2021-01-07 17:45:04 Result: Found file permissions: r--r----- and owner UID GID: 00 +2021-01-07 17:45:04 Result: file /etc/sudoers.d/README permissions OK +2021-01-07 17:45:04 Result: file /etc/sudoers.d/README ownership OK +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Skipped test AUTH-9254 (Solaris passwordless accounts) +2021-01-07 17:45:04 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9262 (Checking presence password strength testing tools (PAM)) +2021-01-07 17:45:04 Searching PAM password testing modules (cracklib, passwdqc, pwquality) +2021-01-07 17:45:04 Result: pam_cracklib.so NOT found (crack library PAM) +2021-01-07 17:45:04 Result: pam_passwdqc.so NOT found (passwd quality control PAM) +2021-01-07 17:45:04 Result: pam_pwquality.so NOT found (pwquality control PAM) +2021-01-07 17:45:04 Result: no PAM modules for password strength testing found +2021-01-07 17:45:04 Suggestion: Install a PAM module for password strength testing like pam_cracklib or pam_passwdqc [test:AUTH-9262] [details:-] [solution:-] +2021-01-07 17:45:04 Hardening: assigned partial number of hardening points (0 of 3). Currently having 17 points (out of 28) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9264 (Checking presence pam.conf) +2021-01-07 17:45:04 Test: Checking file /etc/pam.conf +2021-01-07 17:45:04 Result: file /etc/pam.conf exists +2021-01-07 17:45:04 Test: searching PAM configuration files +2021-01-07 17:45:04 Result: File has no configuration options defined (empty, or only filled with comments and empty lines) +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9266 (Checking presence pam.d files) +2021-01-07 17:45:04 Test: Checking directory /etc/pam.d +2021-01-07 17:45:04 Result: directory /etc/pam.d exists +2021-01-07 17:45:04 Test: searching PAM configuration files +2021-01-07 17:45:04 Found file: /etc/pam.d/chfn +2021-01-07 17:45:04 Found file: /etc/pam.d/chpasswd +2021-01-07 17:45:04 Found file: /etc/pam.d/chsh +2021-01-07 17:45:04 Found file: /etc/pam.d/common-account +2021-01-07 17:45:04 Found file: /etc/pam.d/common-auth +2021-01-07 17:45:04 Found file: /etc/pam.d/common-password +2021-01-07 17:45:04 Found file: /etc/pam.d/common-session +2021-01-07 17:45:04 Found file: /etc/pam.d/common-session-noninteractive +2021-01-07 17:45:04 Found file: /etc/pam.d/cron +2021-01-07 17:45:04 Found file: /etc/pam.d/login +2021-01-07 17:45:04 Found file: /etc/pam.d/newusers +2021-01-07 17:45:04 Found file: /etc/pam.d/other +2021-01-07 17:45:04 Found file: /etc/pam.d/passwd +2021-01-07 17:45:04 Found file: /etc/pam.d/runuser +2021-01-07 17:45:04 Found file: /etc/pam.d/runuser-l +2021-01-07 17:45:04 Found file: /etc/pam.d/sshd +2021-01-07 17:45:04 Found file: /etc/pam.d/su +2021-01-07 17:45:04 Found file: /etc/pam.d/sudo +2021-01-07 17:45:04 Found file: /etc/pam.d/systemd-user +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9268 (Checking presence pam.d files) +2021-01-07 17:45:04 Test: Searching pam modules +2021-01-07 17:45:04 Test: Checking /lib/arm-linux-gnueabihf/security +2021-01-07 17:45:04 Result: directory /lib/arm-linux-gnueabihf/security could not be found or is a symlink to another directory +2021-01-07 17:45:04 Test: Checking /lib/i386-linux-gnu/security +2021-01-07 17:45:04 Result: directory /lib/i386-linux-gnu/security could not be found or is a symlink to another directory +2021-01-07 17:45:04 Test: Checking /lib/security +2021-01-07 17:45:04 Result: directory /lib/security could not be found or is a symlink to another directory +2021-01-07 17:45:04 Test: Checking /lib/x86_64-linux-gnu/security +2021-01-07 17:45:04 Result: directory /lib/x86_64-linux-gnu/security exists +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_access.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_debug.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_deny.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_echo.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_env.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_exec.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_faildelay.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_filter.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_ftp.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_group.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_issue.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_keyinit.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_lastlog.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_limits.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_listfile.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_localuser.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_loginuid.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_mail.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_mkhomedir.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_motd.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_namespace.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_nologin.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_oslogin_admin.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_oslogin_login.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_permit.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_pwhistory.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_rhosts.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_rootok.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_securetty.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_selinux.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_sepermit.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_shells.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_stress.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_succeed_if.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_tally.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_tally2.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_time.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_timestamp.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_tty_audit.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_umask.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_unix.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_userdb.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_warn.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_wheel.so +2021-01-07 17:45:04 Found file: /lib/x86_64-linux-gnu/security/pam_xauth.so +2021-01-07 17:45:04 Test: Checking /lib64/security +2021-01-07 17:45:04 Result: directory /lib64/security could not be found or is a symlink to another directory +2021-01-07 17:45:04 Test: Checking /usr/lib +2021-01-07 17:45:04 Result: directory /usr/lib exists +2021-01-07 17:45:04 Test: Checking /usr/lib/security +2021-01-07 17:45:04 Result: directory /usr/lib/security could not be found or is a symlink to another directory +2021-01-07 17:45:04 ==== +2021-01-07 17:45:04 Performing test ID AUTH-9278 (Determine LDAP support in PAM files) +2021-01-07 17:45:04 Test: checking presence /etc/pam.d/common-auth +2021-01-07 17:45:04 Result: file /etc/pam.d/common-auth exists +2021-01-07 17:45:04 Test: checking presence LDAP module +2021-01-07 17:45:04 Result: LDAP module not found +2021-01-07 17:45:04 Test: checking presence /etc/pam.d/system-auth +2021-01-07 17:45:04 Result: file /etc/pam.d/system-auth not found, skipping test +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID AUTH-9282 (Checking password protected account without expire date) +2021-01-07 17:45:05 Test: Checking Linux version and password expire date status +2021-01-07 17:45:05 Result: all accounts seem to have an expire date +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID AUTH-9283 (Checking accounts without password) +2021-01-07 17:45:05 Test: Checking passwordless accounts +2021-01-07 17:45:05 Result: all accounts seem to have a password +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID AUTH-9284 (Check locked user accounts in /etc/passwd) +2021-01-07 17:45:05 Test: Checking locked accounts +2021-01-07 17:45:05 Result: found one or more locked accounts +2021-01-07 17:45:05 Locked account: Tobias +2021-01-07 17:45:05 Locked account: ftpuser +2021-01-07 17:45:05 Locked account: ktdw73 +2021-01-07 17:45:05 Suggestion: Look at the locked accounts and consider removing them [test:AUTH-9284] [details:-] [solution:-] +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID AUTH-9286 (Checking user password aging) +2021-01-07 17:45:05 Test: Checking PASS_MIN_DAYS option in /etc/login.defs +2021-01-07 17:45:05 Result: password minimum age is not configured +2021-01-07 17:45:05 Suggestion: Configure minimum password age in /etc/login.defs [test:AUTH-9286] [details:-] [solution:-] +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (0 of 1). Currently having 17 points (out of 29) +2021-01-07 17:45:05 Test: Checking PASS_MAX_DAYS option in /etc/login.defs +2021-01-07 17:45:05 Result: password aging limits are not configured +2021-01-07 17:45:05 Suggestion: Configure maximum password age in /etc/login.defs [test:AUTH-9286] [details:-] [solution:-] +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (0 of 1). Currently having 17 points (out of 30) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID AUTH-9288 (Checking for expired passwords) +2021-01-07 17:45:05 Test: check if we can access /etc/shadow (escaped: /etc/shadow) +2021-01-07 17:45:05 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:05 Result: file /etc/shadow is readable (or directory accessible). +2021-01-07 17:45:05 Data: Days since epoch is 18634 +2021-01-07 17:45:05 Test: collecting accounts which have an expired password (last day changed + maximum change time) +2021-01-07 17:45:05 Result: good, no passwords have been expired +2021-01-07 17:45:05 Hardening: assigned maximum number of hardening points for this item (10). Currently having 27 points (out of 40) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Skipped test AUTH-9304 (Check single user login configuration) +2021-01-07 17:45:05 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Skipped test AUTH-9306 (Check single boot authentication) +2021-01-07 17:45:05 Reason to skip: Incorrect guest OS (HP-UX only) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID AUTH-9308 (Check single user login configuration) +2021-01-07 17:45:05 Test: going to check several systemd targets now +2021-01-07 17:45:05 Test: checking if target console-shell.service is available (/lib/systemd/system/console-shell.service) +2021-01-07 17:45:05 Result: target console-shell.service not found +2021-01-07 17:45:05 Test: checking if target emergency.service is available (/lib/systemd/system/emergency.service) +2021-01-07 17:45:05 Result: found target emergency.service +2021-01-07 17:45:05 Result: sulogin was found, which is a good measure to protect single user mode +2021-01-07 17:45:05 Test: checking if target rescue.service is available (/lib/systemd/system/rescue.service) +2021-01-07 17:45:05 Result: found target rescue.service +2021-01-07 17:45:05 Result: sulogin was found, which is a good measure to protect single user mode +2021-01-07 17:45:05 Result: option set, password is needed at single user mode boot +2021-01-07 17:45:05 Hardening: assigned maximum number of hardening points for this item (2). Currently having 29 points (out of 42) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID AUTH-9328 (Default umask values) +2021-01-07 17:45:05 Test: Checking /etc/profile.d directory +2021-01-07 17:45:05 Result: found /etc/profile.d, but it does not contain any files +2021-01-07 17:45:05 Test: Checking /etc/profile +2021-01-07 17:45:05 Result: file /etc/profile exists +2021-01-07 17:45:05 Test: Checking umask value in /etc/profile +2021-01-07 17:45:05 Result: did not find umask in /etc/profile +2021-01-07 17:45:05 Result: found no umask. Please check if this is correct +2021-01-07 17:45:05 Test: Checking umask entries in /etc/passwd (pam_umask) +2021-01-07 17:45:05 Result: file /etc/passwd exists +2021-01-07 17:45:05 Test: Checking umask value in /etc/passwd +2021-01-07 17:45:05 Manual: one or more manual actions are required for further testing of this control/plugin +2021-01-07 17:45:05 Test: Checking /etc/login.defs +2021-01-07 17:45:05 Result: file /etc/login.defs exists +2021-01-07 17:45:05 Test: Checking umask value in /etc/login.defs +2021-01-07 17:45:05 Result: found umask 022, which could be improved +2021-01-07 17:45:05 Suggestion: Default umask in /etc/login.defs could be more strict like 027 [test:AUTH-9328] [details:-] [solution:-] +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (0 of 2). Currently having 29 points (out of 44) +2021-01-07 17:45:05 Test: Checking /etc/init.d/functions +2021-01-07 17:45:05 Result: file /etc/init.d/functions does not exist +2021-01-07 17:45:05 Test: Checking /etc/init.d/rc +2021-01-07 17:45:05 Result: file /etc/init.d/rc does not exist +2021-01-07 17:45:05 Test: Checking /etc/init.d/rcS +2021-01-07 17:45:05 Result: file /etc/init.d/rcS does not exist +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Skipped test AUTH-9340 (Solaris account locking) +2021-01-07 17:45:05 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID AUTH-9402 (Query LDAP authentication support) +2021-01-07 17:45:05 Result: LDAP authentication not enabled +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Skipped test AUTH-9406 (Query LDAP servers in client configuration) +2021-01-07 17:45:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID AUTH-9408 (Logging of failed login attempts) +2021-01-07 17:45:05 Result: did not find /var/log/tallylog on disk or its file size is zero bytes +2021-01-07 17:45:05 Result: found pam_tally2 module on disk +2021-01-07 17:45:05 Outcome: it looks like pam_tally2 is not configured to log failed login attempts +2021-01-07 17:45:05 Test: Checking FAILLOG_ENAB option in /etc/login.defs +2021-01-07 17:45:05 Result: FAILLOG_ENAB is set to 'yes' +2021-01-07 17:45:05 Outcome: failed login attempts are logged in /var/log/faillog +2021-01-07 17:45:05 Hardening: assigned maximum number of hardening points for this item (3). Currently having 32 points (out of 47) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Skipped test AUTH-9409 (Checking /etc/doas.conf file) +2021-01-07 17:45:05 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Skipped test AUTH-9410 (Check /etc/doas.conf file permissions) +2021-01-07 17:45:05 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:45:05 Security check: file is normal +2021-01-07 17:45:05 Checking permissions of /home/ktdw73/scans/lynis/include/tests_shells +2021-01-07 17:45:05 File permissions are OK +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Action: Performing tests from category: Shells +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Skipped test SHLL-6202 (Check console TTYs) +2021-01-07 17:45:05 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID SHLL-6211 (Available and valid shells) +2021-01-07 17:45:05 Test: Searching for /etc/shells +2021-01-07 17:45:05 Result: Found /etc/shells file +2021-01-07 17:45:05 Test: Reading available shells from /etc/shells +2021-01-07 17:45:05 Found installed shell: /bin/sh +2021-01-07 17:45:05 Found installed shell: /bin/dash +2021-01-07 17:45:05 Found installed shell: /bin/bash +2021-01-07 17:45:05 Found installed shell: /bin/rbash +2021-01-07 17:45:05 Found installed shell: /usr/bin/screen +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID SHLL-6220 (Idle session killing tools or settings) +2021-01-07 17:45:05 Test: Search for session timeout tools or settings in shell +2021-01-07 17:45:05 Performing pgrep scan without uid +2021-01-07 17:45:05 IsRunning: process 'timeoutd' not found +2021-01-07 17:45:05 Performing pgrep scan without uid +2021-01-07 17:45:05 IsRunning: process 'autolog' not found +2021-01-07 17:45:05 Result: could not find TMOUT setting in /etc/profile +2021-01-07 17:45:05 Result: could not find export, readonly or typeset -r in /etc/profile +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (1 of 3). Currently having 33 points (out of 50) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID SHLL-6230 (Perform umask check for shell configurations) +2021-01-07 17:45:05 Result: file /etc/bashrc not found +2021-01-07 17:45:05 Result: file /etc/bash.bashrc exists +2021-01-07 17:45:05 Result: did not find umask configured in /etc/bash.bashrc +2021-01-07 17:45:05 Result: file /etc/bash.bashrc.local not found +2021-01-07 17:45:05 Result: file /etc/csh.cshrc not found +2021-01-07 17:45:05 Result: file /etc/profile exists +2021-01-07 17:45:05 Result: did not find umask configured in /etc/profile +2021-01-07 17:45:05 Security check: file is normal +2021-01-07 17:45:05 Checking permissions of /home/ktdw73/scans/lynis/include/tests_filesystems +2021-01-07 17:45:05 File permissions are OK +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Action: Performing tests from category: File systems +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6310 (Checking /tmp, /home and /var directory) +2021-01-07 17:45:05 Test: Checking if /home is mounted separately or mounted on / file system +2021-01-07 17:45:05 Result: directory /home exists +2021-01-07 17:45:05 Result: /home not found in mount list. Directory most likely stored on / file system +2021-01-07 17:45:05 Suggestion: To decrease the impact of a full /home file system, place /home on a separate partition [test:FILE-6310] [details:-] [solution:-] +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (9 of 10). Currently having 42 points (out of 60) +2021-01-07 17:45:05 Test: Checking if /tmp is mounted separately or mounted on / file system +2021-01-07 17:45:05 Result: directory /tmp exists +2021-01-07 17:45:05 Result: /tmp not found in mount list. Directory most likely stored on / file system +2021-01-07 17:45:05 Suggestion: To decrease the impact of a full /tmp file system, place /tmp on a separate partition [test:FILE-6310] [details:-] [solution:-] +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (9 of 10). Currently having 51 points (out of 70) +2021-01-07 17:45:05 Test: Checking if /var is mounted separately or mounted on / file system +2021-01-07 17:45:05 Result: directory /var exists +2021-01-07 17:45:05 Result: /var not found in mount list. Directory most likely stored on / file system +2021-01-07 17:45:05 Suggestion: To decrease the impact of a full /var file system, place /var on a separate partition [test:FILE-6310] [details:-] [solution:-] +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (9 of 10). Currently having 60 points (out of 80) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Skipped test FILE-6311 (Checking LVM volume groups) +2021-01-07 17:45:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Skipped test FILE-6312 (Checking LVM volumes) +2021-01-07 17:45:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6323 (Checking EXT file systems) +2021-01-07 17:45:05 Test: Checking for Linux EXT file systems +2021-01-07 17:45:05 Result: found one or more EXT file systems +2021-01-07 17:45:05 File system: / (type: ext4) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6324 (Checking XFS file systems) +2021-01-07 17:45:05 Test: Checking for Linux XFS file systems +2021-01-07 17:45:05 Result: no XFS file systems found +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6329 (Checking FFS/UFS file systems) +2021-01-07 17:45:05 Test: Query /etc/fstab for available FFS/UFS mount points +2021-01-07 17:45:05 Result: unable to find any single mount point (FFS/UFS) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Skipped test FILE-6330 (Checking ZFS file systems) +2021-01-07 17:45:05 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Skipped test FILE-6439 (Checking HAMMER PFS mounts) +2021-01-07 17:45:05 Reason to skip: Incorrect guest OS (DragonFly only) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6332 (Checking swap partitions) +2021-01-07 17:45:05 Test: query swap partitions from /etc/fstab file +2021-01-07 17:45:05 Result: no swap partitions found in /etc/fstab +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6336 (Checking swap mount options) +2021-01-07 17:45:05 Test: check swap partitions with incorrect mount options +2021-01-07 17:45:05 Result: all swap partitions have correct options (sw or swap) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6344 (Checking proc mount options) +2021-01-07 17:45:05 Test: check proc mount with incorrect mount options +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (0 of 3). Currently having 60 points (out of 83) +2021-01-07 17:45:05 Result: /proc filesystem is not mounted with option hidepid=1 or hidepid=2 +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6354 (Searching for old files in /tmp) +2021-01-07 17:45:05 Test: Searching for old files in /tmp +2021-01-07 17:45:05 Result: no files found in /tmp which are older than 3 months +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6362 (Checking /tmp sticky bit) +2021-01-07 17:45:05 Result: sticky bit found on /tmp directory +2021-01-07 17:45:05 Hardening: assigned maximum number of hardening points for this item (3). Currently having 63 points (out of 86) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6363 (Checking /var/tmp sticky bit) +2021-01-07 17:45:05 Result: sticky bit found on /var/tmp directory +2021-01-07 17:45:05 Hardening: assigned maximum number of hardening points for this item (3). Currently having 66 points (out of 89) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6368 (Checking ACL support on root file system) +2021-01-07 17:45:05 Test: Checking acl option on ext[2-4] root file system +2021-01-07 17:45:05 Result: mount point probably mounted with defaults +2021-01-07 17:45:05 Test: Checking device which holds root file system +2021-01-07 17:45:05 Result: found /dev/sda1 +2021-01-07 17:45:05 Test: Checking default options on /dev/sda1 +2021-01-07 17:45:05 Result: found ACL option in default mount options +2021-01-07 17:45:05 Test: Checking acl option on xfs root file system +2021-01-07 17:45:05 Result: ACL option enabled on root file system +2021-01-07 17:45:05 Hardening: assigned maximum number of hardening points for this item (3). Currently having 69 points (out of 92) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6372 (Checking / mount options) +2021-01-07 17:45:05 Result: mount system / is configured with options: defaults +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6374 (Linux mount options) +2021-01-07 17:45:05 Result: file system /boot not found in /etc/fstab +2021-01-07 17:45:05 File system: /dev +2021-01-07 17:45:05 Expected flags: noexec nosuid +2021-01-07 17:45:05 Found flags: (rw nosuid relatime size=2014280k nr_inodes=503570 mode=755) +2021-01-07 17:45:05 Result: Could not find mount option noexec on file system /dev +2021-01-07 17:45:05 Result: GOOD, found mount option nosuid on file system /dev +2021-01-07 17:45:05 Result: marked /dev as partially hardened +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (4 of 5). Currently having 73 points (out of 97) +2021-01-07 17:45:05 File system: /dev/shm +2021-01-07 17:45:05 Expected flags: nosuid nodev noexec +2021-01-07 17:45:05 Found flags: (rw nosuid nodev) +2021-01-07 17:45:05 Result: GOOD, found mount option nosuid on file system /dev/shm +2021-01-07 17:45:05 Result: GOOD, found mount option nodev on file system /dev/shm +2021-01-07 17:45:05 Result: Could not find mount option noexec on file system /dev/shm +2021-01-07 17:45:05 Result: marked /dev/shm as partially hardened +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (4 of 5). Currently having 77 points (out of 102) +2021-01-07 17:45:05 Result: file system /home not found in /etc/fstab +2021-01-07 17:45:05 File system: /run +2021-01-07 17:45:05 Expected flags: nodev nosuid +2021-01-07 17:45:05 Found flags: (rw nosuid noexec relatime size=405088k mode=755) +2021-01-07 17:45:05 Result: Could not find mount option nodev on file system /run +2021-01-07 17:45:05 Result: GOOD, found mount option nosuid on file system /run +2021-01-07 17:45:05 Result: marked /run as partially hardened +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (4 of 5). Currently having 81 points (out of 107) +2021-01-07 17:45:05 Result: file system /tmp not found in /etc/fstab +2021-01-07 17:45:05 Result: file system /var not found in /etc/fstab +2021-01-07 17:45:05 Result: file system /var/log not found in /etc/fstab +2021-01-07 17:45:05 Result: file system /var/log/audit not found in /etc/fstab +2021-01-07 17:45:05 Result: file system /var/tmp not found in /etc/fstab +2021-01-07 17:45:05 Result: Total without nodev:9 noexec:8 nosuid:6 ro or noexec (W^X): 8, of total 26 +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6376 (Determine if /var/tmp is bound to /tmp) +2021-01-07 17:45:05 Result: no mount point /var/tmp or expected options found +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6394 (Determine level of swappiness.) +2021-01-07 17:45:05 Test: checking level of vm.swappiness: 60 +2021-01-07 17:45:05 Result: vm.swappiness=60 which is the standard level of swappiness and works well for desktop systems. +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Skipped test FILE-6410 (Checking Locate database) +2021-01-07 17:45:05 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID FILE-6430 (Disable mounting of some filesystems) +2021-01-07 17:45:05 Hardening: assigned maximum number of hardening points for this item (3). Currently having 84 points (out of 110) +2021-01-07 17:45:05 Result: found freevxfs support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/freevxfs/freevxfs.ko ) +2021-01-07 17:45:05 Test: Checking if freevxfs is active +2021-01-07 17:45:05 Result: module freevxfs is currently not loaded in the kernel. +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (2 of 3). Currently having 86 points (out of 113) +2021-01-07 17:45:05 Result: found hfs support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/hfs/hfs.ko ) +2021-01-07 17:45:05 Test: Checking if hfs is active +2021-01-07 17:45:05 Result: module hfs is currently not loaded in the kernel. +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (2 of 3). Currently having 88 points (out of 116) +2021-01-07 17:45:05 Result: found hfsplus support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/hfsplus/hfsplus.ko ) +2021-01-07 17:45:05 Test: Checking if hfsplus is active +2021-01-07 17:45:05 Result: module hfsplus is currently not loaded in the kernel. +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (2 of 3). Currently having 90 points (out of 119) +2021-01-07 17:45:05 Result: found jffs2 support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/jffs2/jffs2.ko ) +2021-01-07 17:45:05 Test: Checking if jffs2 is active +2021-01-07 17:45:05 Result: module jffs2 is currently not loaded in the kernel. +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (2 of 3). Currently having 92 points (out of 122) +2021-01-07 17:45:05 Result: found squashfs support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/squashfs/squashfs.ko ) +2021-01-07 17:45:05 Test: Checking if squashfs is active +2021-01-07 17:45:05 Result: module squashfs is currently not loaded in the kernel. +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (2 of 3). Currently having 94 points (out of 125) +2021-01-07 17:45:05 Result: found udf support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/udf/udf.ko ) +2021-01-07 17:45:05 Test: Checking if udf is active +2021-01-07 17:45:05 Result: module udf is currently not loaded in the kernel. +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (2 of 3). Currently having 96 points (out of 128) +2021-01-07 17:45:05 Suggestion: Consider disabling unused kernel modules [test:FILE-6430] [details:/etc/modprobe.d/blacklist.conf] [solution:Add 'install MODULENAME /bin/true' (without quotes)] +2021-01-07 17:45:05 Security check: file is normal +2021-01-07 17:45:05 Checking permissions of /home/ktdw73/scans/lynis/include/tests_usb +2021-01-07 17:45:05 File permissions are OK +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Action: Performing tests from category: USB Devices +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID USB-1000 (Check if USB storage is disabled) +2021-01-07 17:45:05 Test: Checking USB storage driver in directory /etc/modprobe.d and configuration file /etc/modprobe.conf +2021-01-07 17:45:05 Result: usb-storage driver is not explicitly disabled +2021-01-07 17:45:05 Suggestion: Disable drivers like USB storage when not used, to prevent unauthorized storage or data theft [test:USB-1000] [details:-] [solution:-] +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (2 of 3). Currently having 98 points (out of 131) +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID USB-2000 (Check USB authorizations) +2021-01-07 17:45:05 Test: checking presence of USB devices path (/sys/bus/usb/devices) +2021-01-07 17:45:05 Result: devices path does not exist +2021-01-07 17:45:05 ==== +2021-01-07 17:45:05 Performing test ID USB-3000 (Check for presence of USBGuard) +2021-01-07 17:45:05 Result: USBGuard not found +2021-01-07 17:45:05 Hardening: assigned partial number of hardening points (0 of 8). Currently having 98 points (out of 139) +2021-01-07 17:45:05 Security check: file is normal +2021-01-07 17:45:05 Checking permissions of /home/ktdw73/scans/lynis/include/tests_storage +2021-01-07 17:45:06 File permissions are OK +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Action: Performing tests from category: Storage +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID STRG-1846 (Check if firewire storage is disabled) +2021-01-07 17:45:06 Test: Checking firewire storage driver in directory /etc/modprobe.d and configuration file /etc/modprobe.conf +2021-01-07 17:45:06 Result: firewire ohci driver is not explicitly disabled +2021-01-07 17:45:06 Suggestion: Disable drivers like firewire storage when not used, to prevent unauthorized storage or data theft [test:STRG-1846] [details:-] [solution:-] +2021-01-07 17:45:06 Hardening: assigned partial number of hardening points (2 of 3). Currently having 100 points (out of 142) +2021-01-07 17:45:06 Security check: file is normal +2021-01-07 17:45:06 Checking permissions of /home/ktdw73/scans/lynis/include/tests_storage_nfs +2021-01-07 17:45:06 File permissions are OK +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Action: Performing tests from category: NFS +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test STRG-1902 (Check rpcinfo registered programs) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test STRG-1904 (Check nfs rpc) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test STRG-1906 (Check nfs rpc) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID STRG-1920 (Checking NFS daemon) +2021-01-07 17:45:06 Test: Checking running NFS daemon +2021-01-07 17:45:06 Output: NFS daemon is not running +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test STRG-1926 (Checking NFS exports) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test STRG-1928 (Checking empty /etc/exports) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test STRG-1930 (Check client access to nfs share) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 Security check: file is normal +2021-01-07 17:45:06 Checking permissions of /home/ktdw73/scans/lynis/include/tests_nameservices +2021-01-07 17:45:06 File permissions are OK +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Action: Performing tests from category: Name services +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID NAME-4016 (Check /etc/resolv.conf default domain) +2021-01-07 17:45:06 Test: check /etc/resolv.conf for default domain +2021-01-07 17:45:06 Result: /etc/resolv.conf found +2021-01-07 17:45:06 Result: found default domain +2021-01-07 17:45:06 Output: europe-west3-c.c.cc2020-tobiaswieck.internal +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID NAME-4018 (Check /etc/resolv.conf search domains) +2021-01-07 17:45:06 Test: check /etc/resolv.conf for search domains +2021-01-07 17:45:06 Result: /etc/resolv.conf found +2021-01-07 17:45:06 Found search domain: europe-west3-c.c.cc2020-tobiaswieck.internal. +2021-01-07 17:45:06 Result: Found 1 search domains +2021-01-07 17:45:06 Result: found 1 line(s) with a search statement (expecting less than 2 lines) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID NAME-4020 (Check non default options) +2021-01-07 17:45:06 Test: check /etc/resolv.conf for non default options +2021-01-07 17:45:06 Result: /etc/resolv.conf found +2021-01-07 17:45:06 Result: no specific other options configured in /etc/resolv.conf +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test NAME-4024 (Solaris uname -n output) +2021-01-07 17:45:06 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test NAME-4026 (Check /etc/nodename) +2021-01-07 17:45:06 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID NAME-4028 (Check domain name) +2021-01-07 17:45:06 Test: Checking if dnsdomainname command is available +2021-01-07 17:45:06 Result: dnsdomainname command returned a value +2021-01-07 17:45:06 Found domain name: europe-west3-c.c.cc2020-tobiaswieck.internal +2021-01-07 17:45:06 Result: found domain name +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID NAME-4032 (Check nscd status) +2021-01-07 17:45:06 Test: checking nscd status +2021-01-07 17:45:06 Performing pgrep scan without uid +2021-01-07 17:45:06 IsRunning: process 'nscd' not found +2021-01-07 17:45:06 Result: nscd is not running +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID NAME-4034 (Check Unbound status) +2021-01-07 17:45:06 Test: checking Unbound (unbound) status +2021-01-07 17:45:06 Performing pgrep scan without uid +2021-01-07 17:45:06 IsRunning: process 'unbound' not found +2021-01-07 17:45:06 Result: Unbound daemon is not running +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test NAME-4036 (Check Unbound configuration file) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID NAME-4202 (Check BIND status) +2021-01-07 17:45:06 Test: Checking for running BIND instance +2021-01-07 17:45:06 Performing pgrep scan without uid +2021-01-07 17:45:06 IsRunning: process 'named' not found +2021-01-07 17:45:06 Result: BIND not running +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test NAME-4204 (Search BIND configuration file) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test NAME-4206 (Check BIND configuration consistency) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test NAME-4210 (Check DNS banner) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID NAME-4230 (Check PowerDNS status) +2021-01-07 17:45:06 Test: Checking for running PowerDNS instance +2021-01-07 17:45:06 Performing pgrep scan without uid +2021-01-07 17:45:06 IsRunning: process 'pdns_server' not found +2021-01-07 17:45:06 Result: PowerDNS not running +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test NAME-4232 (Search PowerDNS configuration file) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test NAME-4236 (Check PowerDNS backends) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test NAME-4238 (Check PowerDNS authoritative status) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID NAME-4304 (Check NIS ypbind status) +2021-01-07 17:45:06 Test: Checking status of ypbind daemon +2021-01-07 17:45:06 Performing pgrep scan without uid +2021-01-07 17:45:06 IsRunning: process 'ypbind' not found +2021-01-07 17:45:06 Result: ypbind is not active +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test NAME-4306 (Check NIS domain) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID NAME-4402 (Check duplicate line in /etc/hosts) +2021-01-07 17:45:06 Test: check duplicate line in /etc/hosts +2021-01-07 17:45:06 Result: OK, no duplicate lines found +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID NAME-4404 (Check /etc/hosts contains an entry for this server name) +2021-01-07 17:45:06 Test: Check /etc/hosts contains an entry for this server name +2021-01-07 17:45:06 Result: Found entry for debian-9 in /etc/hosts +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID NAME-4406 (Check server hostname mapping) +2021-01-07 17:45:06 Test: Check server hostname not locally mapped in /etc/hosts +2021-01-07 17:45:06 Result: this server hostname is not mapped to a local address +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID NAME-4408 (Check localhost entry) +2021-01-07 17:45:06 Test: Check server hostname not locally mapped in /etc/hosts +2021-01-07 17:45:06 Result: localhost mapped to ::1 +2021-01-07 17:45:06 Security check: file is normal +2021-01-07 17:45:06 Checking permissions of /home/ktdw73/scans/lynis/include/tests_dns +2021-01-07 17:45:06 File permissions are OK +2021-01-07 17:45:06 Security check: file is normal +2021-01-07 17:45:06 Checking permissions of /home/ktdw73/scans/lynis/include/tests_ports_packages +2021-01-07 17:45:06 File permissions are OK +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Action: Performing tests from category: Ports and packages +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7301 (Query FreeBSD pkg) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7302 (Query FreeBSD/NetBSD pkg_info) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7303 (Query brew package manager) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 Result: brew can NOT be found on this system +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7304 (Querying Gentoo packages) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 Result: emerge can NOT be found on this system +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7306 (Querying Solaris packages) +2021-01-07 17:45:06 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:06 Result: pkginfo can NOT be found on this system +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7308 (Checking package list with RPM) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 Result: RPM binary NOT found on this system, test skipped +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7310 (Checking package list with pacman) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7312 (Checking available updates for pacman based system) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 Result: pacman binary NOT found on this system, test skipped +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7314 (Checking pacman configuration options) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7320 (Checking for arch-audit tooling) +2021-01-07 17:45:06 Reason to skip: Test only applies to Arch Linux +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7322 (Discover vulnerable packages with arch-audit) +2021-01-07 17:45:06 Reason to skip: arch-audit not found +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7328 (Querying Zypper for installed packages) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7330 (Querying Zypper for vulnerable packages) +2021-01-07 17:45:06 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7332 (Query macOS ports) +2021-01-07 17:45:06 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Skipped test PKGS-7334 (Query port for port upgrades) +2021-01-07 17:45:06 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:45:06 ==== +2021-01-07 17:45:06 Performing test ID PKGS-7345 (Querying dpkg) +2021-01-07 17:45:06 Result: Found dpkg binary +2021-01-07 17:45:06 Test: Querying dpkg -l to get package list +2021-01-07 17:45:06 Output: +2021-01-07 17:45:06 Found package: acpi-support-base (version: 0.142-8) +2021-01-07 17:45:06 Found package: acpid (version: 1:2.0.28-1+b1) +2021-01-07 17:45:06 Found package: adduser (version: 3.115) +2021-01-07 17:45:06 Found package: apt (version: 1.4.11) +2021-01-07 17:45:06 Found package: apt-utils (version: 1.4.11) +2021-01-07 17:45:06 Found package: base-files (version: 9.9+deb9u13) +2021-01-07 17:45:06 Found package: base-passwd (version: 3.5.43) +2021-01-07 17:45:06 Found package: bash (version: 4.4-5) +2021-01-07 17:45:06 Found package: bind9-host (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:45:06 Found package: bsdmainutils (version: 9.0.12+nmu1) +2021-01-07 17:45:06 Found package: bsdutils (version: 1:2.29.2-1+deb9u1) +2021-01-07 17:45:06 Found package: busybox (version: 1:1.22.0-19+b3) +2021-01-07 17:45:06 Found package: ca-certificates (version: 20200601~deb9u1) +2021-01-07 17:45:06 Found package: cloud-guest-utils (version: 0.29-1) +2021-01-07 17:45:06 Found package: coreutils (version: 8.26-3) +2021-01-07 17:45:06 Found package: cpio (version: 2.11+dfsg-6) +2021-01-07 17:45:06 Found package: cron (version: 3.0pl1-128+deb9u1) +2021-01-07 17:45:06 Found package: curl (version: 7.52.1-5+deb9u13) +2021-01-07 17:45:06 Found package: dash (version: 0.5.8-2.4) +2021-01-07 17:45:06 Found package: debconf (version: 1.5.61) +2021-01-07 17:45:06 Found package: debconf-i18n (version: 1.5.61) +2021-01-07 17:45:06 Found package: debian-archive-keyring (version: 2017.5+deb9u1) +2021-01-07 17:45:06 Found package: debianutils (version: 4.8.1.1) +2021-01-07 17:45:06 Found package: dh-python (version: 2.20170125) +2021-01-07 17:45:06 Found package: diffutils (version: 1:3.5-3) +2021-01-07 17:45:06 Found package: distro-info-data (version: 0.36) +2021-01-07 17:45:06 Found package: dmidecode (version: 3.0-4) +2021-01-07 17:45:06 Found package: dmsetup (version: 2:1.02.137-2) +2021-01-07 17:45:06 Found package: dpkg (version: 1.18.25) +2021-01-07 17:45:06 Found package: e2fslibs:amd64 (version: 1.43.4-2+deb9u2) +2021-01-07 17:45:06 Found package: e2fsprogs (version: 1.43.4-2+deb9u2) +2021-01-07 17:45:06 Found package: ethtool (version: 1:4.8-1+b1) +2021-01-07 17:45:06 Found package: file (version: 1:5.30-1+deb9u3) +2021-01-07 17:45:06 Found package: findutils (version: 4.6.0+git+20161106-2) +2021-01-07 17:45:06 Found package: gcc-6-base:amd64 (version: 6.3.0-18+deb9u1) +2021-01-07 17:45:06 Found package: gdisk (version: 1.0.1-1) +2021-01-07 17:45:06 Found package: geoip-database (version: 20170512-1) +2021-01-07 17:45:06 Found package: gettext-base (version: 0.19.8.1-2+deb9u1) +2021-01-07 17:45:06 Found package: git (version: 1:2.11.0-3+deb9u7) +2021-01-07 17:45:06 Found package: git-man (version: 1:2.11.0-3+deb9u7) +2021-01-07 17:45:06 Found package: gnupg (version: 2.1.18-8~deb9u4) +2021-01-07 17:45:06 Found package: gnupg-agent (version: 2.1.18-8~deb9u4) +2021-01-07 17:45:06 Found package: google-cloud-packages-archive-keyring (version: 1.2-350029030) +2021-01-07 17:45:06 Found package: google-cloud-sdk (version: 322.0.0-0) +2021-01-07 17:45:06 Found package: google-compute-engine (version: 1:20201207.00-g1) +2021-01-07 17:45:06 Found package: google-compute-engine-oslogin (version: 1:20200925.00-g1+deb9) +2021-01-07 17:45:06 Found package: google-guest-agent (version: 1:20201214.00-g1) +2021-01-07 17:45:06 Found package: google-osconfig-agent (version: 1:20201214.00-g1) +2021-01-07 17:45:06 Found package: gpgv (version: 2.1.18-8~deb9u4) +2021-01-07 17:45:06 Found package: grep (version: 2.27-2) +2021-01-07 17:45:06 Found package: groff-base (version: 1.22.3-9) +2021-01-07 17:45:06 Found package: grub-common (version: 2.02~beta3-5+deb9u2) +2021-01-07 17:45:06 Found package: grub-pc (version: 2.02~beta3-5+deb9u2) +2021-01-07 17:45:06 Found package: grub-pc-bin (version: 2.02~beta3-5+deb9u2) +2021-01-07 17:45:06 Found package: grub2-common (version: 2.02~beta3-5+deb9u2) +2021-01-07 17:45:06 Found package: gzip (version: 1.6-5+b1) +2021-01-07 17:45:06 Found package: host (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:45:06 Found package: hostname (version: 3.18+b1) +2021-01-07 17:45:06 Found package: ifupdown (version: 0.8.19) +2021-01-07 17:45:06 Found package: init (version: 1.48) +2021-01-07 17:45:06 Found package: init-system-helpers (version: 1.48) +2021-01-07 17:45:06 Found package: initramfs-tools (version: 0.130) +2021-01-07 17:45:06 Found package: initramfs-tools-core (version: 0.130) +2021-01-07 17:45:06 Found package: iproute2 (version: 4.9.0-1+deb9u1) +2021-01-07 17:45:06 Found package: iptables (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:45:06 Found package: iputils-ping (version: 3:20161105-1) +2021-01-07 17:45:06 Found package: isc-dhcp-client (version: 4.3.5-3+deb9u1) +2021-01-07 17:45:06 Found package: isc-dhcp-common (version: 4.3.5-3+deb9u1) +2021-01-07 17:45:06 Found package: klibc-utils (version: 2.0.4-9) +2021-01-07 17:45:06 Found package: kmod (version: 23-2) +2021-01-07 17:45:06 Found package: kpartx (version: 0.6.4-5+deb9u1) +2021-01-07 17:45:06 Found package: less (version: 481-2.1) +2021-01-07 17:45:06 Found package: libacl1:amd64 (version: 2.2.52-3+b1) +2021-01-07 17:45:06 Found package: libapparmor1:amd64 (version: 2.11.0-3+deb9u2) +2021-01-07 17:45:06 Found package: libapt-inst2.0:amd64 (version: 1.4.11) +2021-01-07 17:45:06 Found package: libapt-pkg5.0:amd64 (version: 1.4.11) +2021-01-07 17:45:06 Found package: libassuan0:amd64 (version: 2.4.3-2) +2021-01-07 17:45:06 Found package: libattr1:amd64 (version: 1:2.4.47-2+b2) +2021-01-07 17:45:06 Found package: libaudit-common (version: 1:2.6.7-2) +2021-01-07 17:45:06 Found package: libaudit1:amd64 (version: 1:2.6.7-2) +2021-01-07 17:45:06 Found package: libbind9-140:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:45:06 Found package: libblkid1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:45:06 Found package: libbsd0:amd64 (version: 0.8.3-1) +2021-01-07 17:45:06 Found package: libbz2-1.0:amd64 (version: 1.0.6-8.1) +2021-01-07 17:45:06 Found package: libc-bin (version: 2.24-11+deb9u4) +2021-01-07 17:45:06 Found package: libc-l10n (version: 2.24-11+deb9u4) +2021-01-07 17:45:06 Found package: libc6:amd64 (version: 2.24-11+deb9u4) +2021-01-07 17:45:06 Found package: libcap-ng0:amd64 (version: 0.7.7-3+b1) +2021-01-07 17:45:06 Found package: libcap2:amd64 (version: 1:2.25-1) +2021-01-07 17:45:06 Found package: libcomerr2:amd64 (version: 1.43.4-2+deb9u2) +2021-01-07 17:45:06 Found package: libcryptsetup4:amd64 (version: 2:1.7.3-4) +2021-01-07 17:45:06 Found package: libcurl3-gnutls:amd64 (version: 7.52.1-5+deb9u13) +2021-01-07 17:45:06 Found package: libcurl3:amd64 (version: 7.52.1-5+deb9u13) +2021-01-07 17:45:06 Found package: libdb5.3:amd64 (version: 5.3.28-12+deb9u1) +2021-01-07 17:45:06 Found package: libdebconfclient0:amd64 (version: 0.227) +2021-01-07 17:45:06 Found package: libdevmapper1.02.1:amd64 (version: 2:1.02.137-2) +2021-01-07 17:45:06 Found package: libdns-export162 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:45:06 Found package: libdns162:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:45:06 Found package: libedit2:amd64 (version: 3.1-20160903-3) +2021-01-07 17:45:06 Found package: libelf1:amd64 (version: 0.168-1) +2021-01-07 17:45:06 Found package: liberror-perl (version: 0.17024-1) +2021-01-07 17:45:06 Found package: libestr0 (version: 0.1.10-2) +2021-01-07 17:45:06 Found package: libexpat1:amd64 (version: 2.2.0-2+deb9u3) +2021-01-07 17:45:06 Found package: libfastjson4:amd64 (version: 0.99.4-1) +2021-01-07 17:45:06 Found package: libfdisk1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:45:06 Found package: libffi6:amd64 (version: 3.2.1-6) +2021-01-07 17:45:06 Found package: libfreetype6:amd64 (version: 2.6.3-3.2+deb9u2) +2021-01-07 17:45:06 Found package: libfuse2:amd64 (version: 2.9.7-1+deb9u2) +2021-01-07 17:45:06 Found package: libgcc1:amd64 (version: 1:6.3.0-18+deb9u1) +2021-01-07 17:45:06 Found package: libgcrypt20:amd64 (version: 1.7.6-2+deb9u3) +2021-01-07 17:45:06 Found package: libgdbm3:amd64 (version: 1.8.3-14) +2021-01-07 17:45:06 Found package: libgeoip1:amd64 (version: 1.6.9-4) +2021-01-07 17:45:06 Found package: libgmp10:amd64 (version: 2:6.1.2+dfsg-1) +2021-01-07 17:45:06 Found package: libgnutls30:amd64 (version: 3.5.8-5+deb9u5) +2021-01-07 17:45:06 Found package: libgpg-error0:amd64 (version: 1.26-2) +2021-01-07 17:45:06 Found package: libgpm2:amd64 (version: 1.20.4-6.2+b1) +2021-01-07 17:45:06 Found package: libgssapi-krb5-2:amd64 (version: 1.15-1+deb9u2) +2021-01-07 17:45:06 Found package: libhogweed4:amd64 (version: 3.3-1+b2) +2021-01-07 17:45:06 Found package: libicu57:amd64 (version: 57.1-6+deb9u4) +2021-01-07 17:45:06 Found package: libidn11:amd64 (version: 1.33-1+deb9u1) +2021-01-07 17:45:06 Found package: libidn2-0:amd64 (version: 0.16-1+deb9u1) +2021-01-07 17:45:06 Found package: libip4tc0:amd64 (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:45:06 Found package: libip6tc0:amd64 (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:45:06 Found package: libiptc0:amd64 (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:45:06 Found package: libisc-export160 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:45:06 Found package: libisc160:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:45:06 Found package: libisccc140:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:45:06 Found package: libisccfg140:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:45:06 Found package: libjson-c3:amd64 (version: 0.12.1-1.1+deb9u1) +2021-01-07 17:45:06 Found package: libk5crypto3:amd64 (version: 1.15-1+deb9u2) +2021-01-07 17:45:06 Found package: libkeyutils1:amd64 (version: 1.5.9-9) +2021-01-07 17:45:06 Found package: libklibc (version: 2.0.4-9) +2021-01-07 17:45:06 Found package: libkmod2:amd64 (version: 23-2) +2021-01-07 17:45:06 Found package: libkrb5-3:amd64 (version: 1.15-1+deb9u2) +2021-01-07 17:45:06 Found package: libkrb5support0:amd64 (version: 1.15-1+deb9u2) +2021-01-07 17:45:06 Found package: libksba8:amd64 (version: 1.3.5-2) +2021-01-07 17:45:06 Found package: libldap-2.4-2:amd64 (version: 2.4.44+dfsg-5+deb9u6) +2021-01-07 17:45:06 Found package: libldap-common (version: 2.4.44+dfsg-5+deb9u6) +2021-01-07 17:45:06 Found package: liblocale-gettext-perl (version: 1.07-3+b1) +2021-01-07 17:45:06 Found package: liblogging-stdlog0:amd64 (version: 1.0.5-2+b2) +2021-01-07 17:45:06 Found package: liblognorm5:amd64 (version: 2.0.1-1.1+b1) +2021-01-07 17:45:06 Found package: liblwres141:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:45:06 Found package: liblz4-1:amd64 (version: 0.0~r131-2+b1) +2021-01-07 17:45:06 Found package: liblzma5:amd64 (version: 5.2.2-1.2+b1) +2021-01-07 17:45:06 Found package: libmagic-mgc (version: 1:5.30-1+deb9u3) +2021-01-07 17:45:06 Found package: libmagic1:amd64 (version: 1:5.30-1+deb9u3) +2021-01-07 17:45:06 Found package: libmnl0:amd64 (version: 1.0.4-2) +2021-01-07 17:45:06 Found package: libmount1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:45:06 Found package: libmpdec2:amd64 (version: 2.4.2-1) +2021-01-07 17:45:06 Found package: libncurses5:amd64 (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:45:06 Found package: libncursesw5:amd64 (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:45:06 Found package: libnetfilter-conntrack3:amd64 (version: 1.0.6-2) +2021-01-07 17:45:06 Found package: libnettle6:amd64 (version: 3.3-1+b2) +2021-01-07 17:45:06 Found package: libnewt0.52:amd64 (version: 0.52.19-1+b1) +2021-01-07 17:45:06 Found package: libnfnetlink0:amd64 (version: 1.0.1-3) +2021-01-07 17:45:06 Found package: libnghttp2-14:amd64 (version: 1.18.1-1+deb9u1) +2021-01-07 17:45:06 Found package: libnpth0:amd64 (version: 1.3-1) +2021-01-07 17:45:06 Found package: libopts25:amd64 (version: 1:5.18.12-3) +2021-01-07 17:45:06 Found package: libp11-kit0:amd64 (version: 0.23.3-2+deb9u1) +2021-01-07 17:45:06 Found package: libpam-modules-bin (version: 1.1.8-3.6) +2021-01-07 17:45:06 Found package: libpam-modules:amd64 (version: 1.1.8-3.6) +2021-01-07 17:45:06 Found package: libpam-runtime (version: 1.1.8-3.6) +2021-01-07 17:45:06 Found package: libpam0g:amd64 (version: 1.1.8-3.6) +2021-01-07 17:45:06 Found package: libparted2:amd64 (version: 3.2-17) +2021-01-07 17:45:06 Found package: libpcre3:amd64 (version: 2:8.39-3) +2021-01-07 17:45:06 Found package: libperl5.24:amd64 (version: 5.24.1-3+deb9u7) +2021-01-07 17:45:06 Found package: libpipeline1:amd64 (version: 1.4.1-2) +2021-01-07 17:45:06 Found package: libpng16-16:amd64 (version: 1.6.28-1+deb9u1) +2021-01-07 17:45:06 Found package: libpopt0:amd64 (version: 1.16-10+b2) +2021-01-07 17:45:06 Found package: libprocps6:amd64 (version: 2:3.3.12-3+deb9u1) +2021-01-07 17:45:06 Found package: libpsl5:amd64 (version: 0.17.0-3) +2021-01-07 17:45:06 Found package: libpython-stdlib:amd64 (version: 2.7.13-2) +2021-01-07 17:45:06 Found package: libpython2.7-minimal:amd64 (version: 2.7.13-2+deb9u4) +2021-01-07 17:45:06 Found package: libpython2.7-stdlib:amd64 (version: 2.7.13-2+deb9u4) +2021-01-07 17:45:06 Found package: libpython3-stdlib:amd64 (version: 3.5.3-1) +2021-01-07 17:45:06 Found package: libpython3.5-minimal:amd64 (version: 3.5.3-1+deb9u3) +2021-01-07 17:45:06 Found package: libpython3.5-stdlib:amd64 (version: 3.5.3-1+deb9u3) +2021-01-07 17:45:06 Found package: libreadline7:amd64 (version: 7.0-3) +2021-01-07 17:45:06 Found package: librtmp1:amd64 (version: 2.4+20151223.gitfa8646d.1-1+b1) +2021-01-07 17:45:06 Found package: libsasl2-2:amd64 (version: 2.1.27~101-g0780600+dfsg-3+deb9u1) +2021-01-07 17:45:06 Found package: libsasl2-modules-db:amd64 (version: 2.1.27~101-g0780600+dfsg-3+deb9u1) +2021-01-07 17:45:06 Found package: libseccomp2:amd64 (version: 2.3.1-2.1+deb9u1) +2021-01-07 17:45:06 Found package: libselinux1:amd64 (version: 2.6-3+b3) +2021-01-07 17:45:06 Found package: libsemanage-common (version: 2.6-2) +2021-01-07 17:45:07 Found package: libsemanage1:amd64 (version: 2.6-2) +2021-01-07 17:45:07 Found package: libsepol1:amd64 (version: 2.6-2) +2021-01-07 17:45:07 Found package: libslang2:amd64 (version: 2.3.1-5) +2021-01-07 17:45:07 Found package: libsmartcols1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:45:07 Found package: libsqlite3-0:amd64 (version: 3.16.2-5+deb9u3) +2021-01-07 17:45:07 Found package: libss2:amd64 (version: 1.43.4-2+deb9u2) +2021-01-07 17:45:07 Found package: libssh2-1:amd64 (version: 1.7.0-1+deb9u1) +2021-01-07 17:45:07 Found package: libssl1.0.2:amd64 (version: 1.0.2u-1~deb9u3) +2021-01-07 17:45:07 Found package: libssl1.1:amd64 (version: 1.1.0l-1~deb9u2) +2021-01-07 17:45:07 Found package: libstdc++6:amd64 (version: 6.3.0-18+deb9u1) +2021-01-07 17:45:07 Found package: libsystemd0:amd64 (version: 232-25+deb9u12) +2021-01-07 17:45:07 Found package: libtasn1-6:amd64 (version: 4.10-1.1+deb9u1) +2021-01-07 17:45:07 Found package: libtext-charwidth-perl (version: 0.04-7+b5) +2021-01-07 17:45:07 Found package: libtext-iconv-perl (version: 1.7-5+b4) +2021-01-07 17:45:07 Found package: libtext-wrapi18n-perl (version: 0.06-7.1) +2021-01-07 17:45:07 Found package: libtinfo5:amd64 (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:45:07 Found package: libudev1:amd64 (version: 232-25+deb9u12) +2021-01-07 17:45:07 Found package: libunistring0:amd64 (version: 0.9.6+really0.9.3-0.1) +2021-01-07 17:45:07 Found package: libustr-1.0-1:amd64 (version: 1.0.4-6) +2021-01-07 17:45:07 Found package: libuuid1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:45:07 Found package: libwrap0:amd64 (version: 7.6.q-26) +2021-01-07 17:45:07 Found package: libxapian30:amd64 (version: 1.4.3-2+deb9u3) +2021-01-07 17:45:07 Found package: libxml2:amd64 (version: 2.9.4+dfsg1-2.2+deb9u3) +2021-01-07 17:45:07 Found package: libxtables12:amd64 (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:45:07 Found package: linux-base (version: 4.5) +2021-01-07 17:45:07 Found package: linux-image-4.9.0-14-amd64 (version: 4.9.246-2) +2021-01-07 17:45:07 Found package: linux-image-amd64 (version: 4.9+80+deb9u12) +2021-01-07 17:45:07 Found package: locales (version: 2.24-11+deb9u4) +2021-01-07 17:45:07 Found package: login (version: 1:4.4-4.1) +2021-01-07 17:45:07 Found package: logrotate (version: 3.11.0-0.1) +2021-01-07 17:45:07 Found package: lsb-base (version: 9.20161125) +2021-01-07 17:45:07 Found package: lsb-release (version: 9.20161125) +2021-01-07 17:45:07 Found package: man-db (version: 2.7.6.1-2) +2021-01-07 17:45:07 Found package: mawk (version: 1.3.3-17+b3) +2021-01-07 17:45:07 Found package: mime-support (version: 3.60) +2021-01-07 17:45:07 Found package: mount (version: 2.29.2-1+deb9u1) +2021-01-07 17:45:07 Found package: multiarch-support (version: 2.24-11+deb9u4) +2021-01-07 17:45:07 Found package: nano (version: 2.7.4-1) +2021-01-07 17:45:07 Found package: ncurses-base (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:45:07 Found package: ncurses-bin (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:45:07 Found package: net-tools (version: 1.60+git20161116.90da8a0-1) +2021-01-07 17:45:07 Found package: netbase (version: 5.4) +2021-01-07 17:45:07 Found package: ntp (version: 1:4.2.8p10+dfsg-3+deb9u2) +2021-01-07 17:45:07 Found package: nvme-cli (version: 1.0-3) +2021-01-07 17:45:07 Found package: openssh-client (version: 1:7.4p1-10+deb9u7) +2021-01-07 17:45:07 Found package: openssh-server (version: 1:7.4p1-10+deb9u7) +2021-01-07 17:45:07 Found package: openssh-sftp-server (version: 1:7.4p1-10+deb9u7) +2021-01-07 17:45:07 Found package: openssl (version: 1.1.0l-1~deb9u2) +2021-01-07 17:45:07 Found package: parted (version: 3.2-17) +2021-01-07 17:45:07 Found package: passwd (version: 1:4.4-4.1) +2021-01-07 17:45:07 Found package: patch (version: 2.7.5-1+deb9u2) +2021-01-07 17:45:07 Found package: perl (version: 5.24.1-3+deb9u7) +2021-01-07 17:45:07 Found package: perl-base (version: 5.24.1-3+deb9u7) +2021-01-07 17:45:07 Found package: perl-modules-5.24 (version: 5.24.1-3+deb9u7) +2021-01-07 17:45:07 Found package: pinentry-curses (version: 1.0.0-2) +2021-01-07 17:45:07 Found package: procps (version: 2:3.3.12-3+deb9u1) +2021-01-07 17:45:07 Found package: python (version: 2.7.13-2) +2021-01-07 17:45:07 Found package: python-apt-common (version: 1.4.3) +2021-01-07 17:45:07 Found package: python-crcmod (version: 1.7-2+b2) +2021-01-07 17:45:07 Found package: python-minimal (version: 2.7.13-2) +2021-01-07 17:45:07 Found package: python2.7 (version: 2.7.13-2+deb9u4) +2021-01-07 17:45:07 Found package: python2.7-minimal (version: 2.7.13-2+deb9u4) +2021-01-07 17:45:07 Found package: python3 (version: 3.5.3-1) +2021-01-07 17:45:07 Found package: python3-apt (version: 1.4.3) +2021-01-07 17:45:07 Found package: python3-minimal (version: 3.5.3-1) +2021-01-07 17:45:07 Found package: python3.5 (version: 3.5.3-1+deb9u3) +2021-01-07 17:45:07 Found package: python3.5-minimal (version: 3.5.3-1+deb9u3) +2021-01-07 17:45:07 Found package: readline-common (version: 7.0-3) +2021-01-07 17:45:07 Found package: rename (version: 0.20-4) +2021-01-07 17:45:07 Found package: rsync (version: 3.1.2-1+deb9u2) +2021-01-07 17:45:07 Found package: rsyslog (version: 8.24.0-1) +2021-01-07 17:45:07 Found package: screen (version: 4.5.0-6) +2021-01-07 17:45:07 Found package: sed (version: 4.4-1) +2021-01-07 17:45:07 Found package: sensible-utils (version: 0.0.9+deb9u1) +2021-01-07 17:45:07 Found package: sgml-base (version: 1.29) +2021-01-07 17:45:07 Found package: sudo (version: 1.8.19p1-2.1+deb9u2) +2021-01-07 17:45:07 Found package: systemd (version: 232-25+deb9u12) +2021-01-07 17:45:07 Found package: systemd-sysv (version: 232-25+deb9u12) +2021-01-07 17:45:07 Found package: sysvinit-utils (version: 2.88dsf-59.9) +2021-01-07 17:45:07 Found package: tar (version: 1.29b-1.1) +2021-01-07 17:45:07 Found package: tasksel (version: 3.39) +2021-01-07 17:45:07 Found package: tasksel-data (version: 3.39) +2021-01-07 17:45:07 Found package: tzdata (version: 2020e-0+deb9u1) +2021-01-07 17:45:07 Found package: ucf (version: 3.0036) +2021-01-07 17:45:07 Found package: udev (version: 232-25+deb9u12) +2021-01-07 17:45:07 Found package: unattended-upgrades (version: 0.93.1+nmu1) +2021-01-07 17:45:07 Found package: util-linux (version: 2.29.2-1+deb9u1) +2021-01-07 17:45:07 Found package: uuid-runtime (version: 2.29.2-1+deb9u1) +2021-01-07 17:45:07 Found package: vim (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:45:07 Found package: vim-common (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:45:07 Found package: vim-runtime (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:45:07 Found package: vim-tiny (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:45:07 Found package: wget (version: 1.18-5+deb9u3) +2021-01-07 17:45:07 Found package: whiptail (version: 0.52.19-1+b1) +2021-01-07 17:45:07 Found package: xml-core (version: 0.17) +2021-01-07 17:45:07 Found package: xxd (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:45:07 Found package: xz-utils (version: 5.2.2-1.2+b1) +2021-01-07 17:45:07 Found package: zlib1g:amd64 (version: 1:1.2.8.dfsg-5) +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Performing test ID PKGS-7346 (Search unpurged packages on system) +2021-01-07 17:45:07 Test: Querying dpkg -l to get unpurged packages +2021-01-07 17:45:07 Result: no packages found with left overs +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Skipped test PKGS-7348 (Check for old distfiles) +2021-01-07 17:45:07 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Skipped test PKGS-7350 (Checking for installed packages with DNF utility) +2021-01-07 17:45:07 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Skipped test PKGS-7352 (Checking for security updates with DNF utility) +2021-01-07 17:45:07 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Skipped test PKGS-7354 (Checking package database integrity) +2021-01-07 17:45:07 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Skipped test PKGS-7366 (Checking for debsecan utility) +2021-01-07 17:45:07 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Performing test ID PKGS-7370 (Checking for debsums utility) +2021-01-07 17:45:07 Result: debsums utility is not installed. +2021-01-07 17:45:07 Hardening: assigned partial number of hardening points (0 of 2). Currently having 100 points (out of 144) +2021-01-07 17:45:07 Suggestion: Install debsums utility for the verification of packages with known good database. [test:PKGS-7370] [details:-] [solution:-] +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Skipped test PKGS-7378 (Query portmaster for port upgrades) +2021-01-07 17:45:07 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Skipped test PKGS-7380 (Check for vulnerable NetBSD packages) +2021-01-07 17:45:07 Reason to skip: Incorrect guest OS (NetBSD only) +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Skipped test PKGS-7381 (Check for vulnerable FreeBSD packages with pkg) +2021-01-07 17:45:07 Reason to skip: pkg tool not available +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Skipped test PKGS-7382 (Check for vulnerable FreeBSD packages with portaudit) +2021-01-07 17:45:07 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Skipped test PKGS-7383 (Check for YUM package update management) +2021-01-07 17:45:07 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Skipped test PKGS-7384 (Check for YUM utils package) +2021-01-07 17:45:07 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Skipped test PKGS-7386 (Check for YUM security package) +2021-01-07 17:45:07 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Skipped test PKGS-7387 (Check for GPG signing in YUM security package) +2021-01-07 17:45:07 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Performing test ID PKGS-7388 (Check security repository in apt sources.list file) +2021-01-07 17:45:07 Searching for security.debian.org/security.ubuntu.com or security repositories in /etc/apt/sources.list file +2021-01-07 17:45:07 Result: Found security repository in /etc/apt/sources.list +2021-01-07 17:45:07 Output: deb http://security.debian.org/ stretch/updates main +2021-01-07 17:45:07 Output: deb-src http://security.debian.org/ stretch/updates main +2021-01-07 17:45:07 Searching for security.debian.org/security.ubuntu.com or security repositories in /etc/apt/sources.list.d directory +2021-01-07 17:45:07 Result: security repository was found +2021-01-07 17:45:07 Hardening: assigned maximum number of hardening points for this item (3). Currently having 103 points (out of 147) +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Performing test ID PKGS-7390 (Check Ubuntu database consistency) +2021-01-07 17:45:07 Test: Package database consistency by running apt-get check +2021-01-07 17:45:07 Result: package database seems to be consistent. +2021-01-07 17:45:07 ==== +2021-01-07 17:45:07 Performing test ID PKGS-7392 (Check for Debian/Ubuntu security updates) +2021-01-07 17:45:07 Action: updating package repository with apt-get +2021-01-07 17:45:09 Result: apt-get finished +2021-01-07 17:45:09 Test: Checking if /usr/lib/update-notifier/apt-check exists +2021-01-07 17:45:09 Result: apt-check (update-notifier-common) not found +2021-01-07 17:45:09 Result: test not fully executed (missing apt-check output) +2021-01-07 17:45:09 ==== +2021-01-07 17:45:09 Skipped test PKGS-7393 (Check for Gentoo vulnerable packages) +2021-01-07 17:45:09 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:09 ==== +2021-01-07 17:45:09 Performing test ID PKGS-7394 (Check for Ubuntu updates) +2021-01-07 17:45:09 Test: checking /usr/bin/apt-show-versions +2021-01-07 17:45:09 Result: /usr/bin/apt-show-versions not found +2021-01-07 17:45:09 Suggestion: Install package apt-show-versions for patch management purposes [test:PKGS-7394] [details:-] [solution:-] +2021-01-07 17:45:09 ==== +2021-01-07 17:45:09 Performing test ID PKGS-7398 (Check for package audit tool) +2021-01-07 17:45:09 Test: checking for package audit tool +2021-01-07 17:45:09 Result: found package audit tool: apt-get +2021-01-07 17:45:09 ==== +2021-01-07 17:45:09 Performing test ID PKGS-7410 (Count installed kernel packages) +2021-01-07 17:45:09 Test: Checking how many kernel packages are installed +2021-01-07 17:45:09 Result: found 1 kernel packages on the system, which is fine +2021-01-07 17:45:09 ==== +2021-01-07 17:45:09 Performing test ID PKGS-7420 (Detect toolkit to automatically download and apply upgrades) +2021-01-07 17:45:09 Result: found unattended-upgrade +2021-01-07 17:45:09 Hardening: assigned maximum number of hardening points for this item (5). Currently having 108 points (out of 152) +2021-01-07 17:45:09 Security check: file is normal +2021-01-07 17:45:09 Checking permissions of /home/ktdw73/scans/lynis/include/tests_networking +2021-01-07 17:45:09 File permissions are OK +2021-01-07 17:45:09 ==== +2021-01-07 17:45:09 Action: Performing tests from category: Networking +2021-01-07 17:45:09 ==== +2021-01-07 17:45:09 Performing test ID NETW-2400 (Hostname length and value check) +2021-01-07 17:45:09 Result: FQDN is defined and not longer than 253 characters (53 characters) +2021-01-07 17:45:09 Result: hostnamed is defined and not longer than 63 characters +2021-01-07 17:45:09 Result: good, no unexpected characters discovered in hostname +2021-01-07 17:45:09 ==== +2021-01-07 17:45:09 Performing test ID NETW-2600 (Checking IPv6 configuration) +2021-01-07 17:45:10 Result: IPV6 mode is auto +2021-01-07 17:45:10 Result: IPv6 only configuration: NO +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID NETW-2704 (Basic nameserver configuration tests) +2021-01-07 17:45:10 Test: Checking /etc/resolv.conf file +2021-01-07 17:45:10 Result: Found /etc/resolv.conf file +2021-01-07 17:45:10 Test: Querying nameservers +2021-01-07 17:45:10 Found nameserver: 169.254.169.254 +2021-01-07 17:45:10 Result: Nameserver test for 169.254.169.254 skipped, 'dig' not installed +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID NETW-2705 (Check availability two nameservers) +2021-01-07 17:45:10 Result: dig not installed, test can't be fully performed +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID NETW-2706 (Check systemd-resolved and upstream DNSSEC status) +2021-01-07 17:45:10 Result: command '/usr/bin/systemd-resolve --statistics' returned an error. Please run command manually to check for details. +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID NETW-3001 (Find default gateway (route)) +2021-01-07 17:45:10 Test: Searching default gateway(s) +2021-01-07 17:45:10 Result: Found default gateway 10.156.0.1 +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID NETW-3004 (Search for available network interfaces) +2021-01-07 17:45:10 Found network interface: lo +2021-01-07 17:45:10 Found network interface: eth0 +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID NETW-3006 (Get network MAC addresses) +2021-01-07 17:45:10 Found MAC address: 42:01:0a:9c:00:06 +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID NETW-3008 (Get network IP addresses) +2021-01-07 17:45:10 Found IPv4 address: 10.156.0.6 +2021-01-07 17:45:10 Found IPv4 address: 127.0.0.1 +2021-01-07 17:45:10 Found IPv6 address: fe80::4001:aff:fe9c:6 +2021-01-07 17:45:10 Found IPv6 address: ::1 +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID NETW-3012 (Check listening ports) +2021-01-07 17:45:10 Test: Retrieving ss information to find listening ports +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test NETW-3014 (Checking promiscuous interfaces (BSD)) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID NETW-3015 (Checking promiscuous interfaces (Linux)) +2021-01-07 17:45:10 Test: Using ip binary to retrieve network interfaces +2021-01-07 17:45:10 Test: Checking all interfaces to discover any with promiscuous mode enabled +2021-01-07 17:45:10 Result: No promiscuous interfaces found +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID NETW-3028 (Checking connections in WAIT state) +2021-01-07 17:45:10 Test: Using netstat for check for connections in WAIT state +2021-01-07 17:45:10 Result: currently 5 connections are in a waiting state (max configured: 5000). +2021-01-07 17:45:10 Result: 5 connections are in WAIT state +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID NETW-3030 (Checking DHCP client status) +2021-01-07 17:45:10 Performing pgrep scan without uid +2021-01-07 17:45:10 IsRunning: process 'dhclient' found (598 ) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID NETW-3032 (Checking for ARP monitoring software) +2021-01-07 17:45:10 Performing pgrep scan without uid +2021-01-07 17:45:10 IsRunning: process 'addrwatch' not found +2021-01-07 17:45:10 Performing pgrep scan without uid +2021-01-07 17:45:10 IsRunning: process 'arpwatch' not found +2021-01-07 17:45:10 Performing pgrep scan without uid +2021-01-07 17:45:10 IsRunning: process 'arpon' not found +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID NETW-3200 (Determine available network protocols) +2021-01-07 17:45:10 Test: checking the status of some network protocols that typically are not used +2021-01-07 17:45:10 Test: now checking module 'dccp' +2021-01-07 17:45:10 Suggestion: Determine if protocol 'dccp' is really needed on this system [test:NETW-3200] [details:-] [solution:-] +2021-01-07 17:45:10 Test: now checking module 'sctp' +2021-01-07 17:45:10 Suggestion: Determine if protocol 'sctp' is really needed on this system [test:NETW-3200] [details:-] [solution:-] +2021-01-07 17:45:10 Test: now checking module 'rds' +2021-01-07 17:45:10 Suggestion: Determine if protocol 'rds' is really needed on this system [test:NETW-3200] [details:-] [solution:-] +2021-01-07 17:45:10 Test: now checking module 'tipc' +2021-01-07 17:45:10 Suggestion: Determine if protocol 'tipc' is really needed on this system [test:NETW-3200] [details:-] [solution:-] +2021-01-07 17:45:10 Security check: file is normal +2021-01-07 17:45:10 Checking permissions of /home/ktdw73/scans/lynis/include/tests_printers_spoolers +2021-01-07 17:45:10 File permissions are OK +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Action: Performing tests from category: Printers and Spools +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test PRNT-2302 (Check for printcap consistency) +2021-01-07 17:45:10 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID PRNT-2304 (Check cupsd status) +2021-01-07 17:45:10 Test: Checking cupsd status +2021-01-07 17:45:10 Performing pgrep scan without uid +2021-01-07 17:45:10 IsRunning: process 'cupsd' not found +2021-01-07 17:45:10 Result: cups daemon not running, cups daemon tests skipped +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test PRNT-2306 (Check CUPSd configuration file) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test PRNT-2307 (Check CUPSd configuration file permissions) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test PRNT-2308 (Check CUPSd network configuration) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID PRNT-2314 (Check lpd status) +2021-01-07 17:45:10 Test: Checking lpd status +2021-01-07 17:45:10 Performing pgrep scan without uid +2021-01-07 17:45:10 IsRunning: process 'lpd' not found +2021-01-07 17:45:10 Result: lp daemon not running +2021-01-07 17:45:10 Hardening: assigned maximum number of hardening points for this item (4). Currently having 112 points (out of 156) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test PRNT-2316 (Checking /etc/qconfig file) +2021-01-07 17:45:10 Reason to skip: Incorrect guest OS (AIX only) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test PRNT-2418 (Checking qdaemon printer spooler status) +2021-01-07 17:45:10 Reason to skip: Incorrect guest OS (AIX only) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test PRNT-2420 (Checking old print jobs) +2021-01-07 17:45:10 Reason to skip: Incorrect guest OS (AIX only) +2021-01-07 17:45:10 Security check: file is normal +2021-01-07 17:45:10 Checking permissions of /home/ktdw73/scans/lynis/include/tests_mail_messaging +2021-01-07 17:45:10 File permissions are OK +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Action: Performing tests from category: Software: e-mail and messaging +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID MAIL-8802 (Check Exim status) +2021-01-07 17:45:10 Test: check Exim status +2021-01-07 17:45:10 Performing pgrep scan without uid +2021-01-07 17:45:10 IsRunning: process 'exim4' not found +2021-01-07 17:45:10 Performing pgrep scan without uid +2021-01-07 17:45:10 IsRunning: process 'exim' not found +2021-01-07 17:45:10 Result: no running Exim processes found +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test MAIL-8804 (Exim configuration options) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID MAIL-8814 (Check postfix process status) +2021-01-07 17:45:10 Test: check Postfix status +2021-01-07 17:45:10 Result: no running Postfix processes found +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test MAIL-8816 (Check Postfix configuration) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test MAIL-8817 (Check Postfix configuration errors) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test MAIL-8818 (Check Postfix configuration: banner) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID MAIL-8820 (Postfix configuration scan) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID MAIL-8838 (Check dovecot process) +2021-01-07 17:45:10 Test: check dovecot status +2021-01-07 17:45:10 Performing pgrep scan without uid +2021-01-07 17:45:10 IsRunning: process 'dovecot' not found +2021-01-07 17:45:10 Result: dovecot not found +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID MAIL-8860 (Check Qmail status) +2021-01-07 17:45:10 Test: check Qmail status +2021-01-07 17:45:10 Performing pgrep scan without uid +2021-01-07 17:45:10 IsRunning: process 'qmail-smtpd' not found +2021-01-07 17:45:10 Result: no running Qmail processes found +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID MAIL-8880 (Check Sendmail status) +2021-01-07 17:45:10 Test: check sendmail status +2021-01-07 17:45:10 Performing pgrep scan without uid +2021-01-07 17:45:10 IsRunning: process 'sendmail' not found +2021-01-07 17:45:10 Result: no running Sendmail processes found +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test MAIL-8920 (Check OpenSMTPD status) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 Security check: file is normal +2021-01-07 17:45:10 Checking permissions of /home/ktdw73/scans/lynis/include/tests_firewalls +2021-01-07 17:45:10 File permissions are OK +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Action: Performing tests from category: Software: firewalls +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID FIRE-4502 (Check iptables kernel module) +2021-01-07 17:45:10 Result: Found iptables in loaded kernel modules +2021-01-07 17:45:10 Found module: ip_tables +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID FIRE-4508 (Check used policies of iptables chains) +2021-01-07 17:45:10 Test: gathering information from table filter +2021-01-07 17:45:10 Result: iptables -- policy is . +2021-01-07 17:45:10 Result: +2021-01-07 17:45:10 Result: iptables filter -- INPUTACCEPTFORWARDACCEPTOUTPUTACCEPT policy is . +2021-01-07 17:45:10 Result: +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID FIRE-4512 (Check iptables for empty ruleset) +2021-01-07 17:45:10 Result: iptables ruleset seems to be empty (found 0 rules) +2021-01-07 17:45:10 Warning: iptables module(s) loaded, but no rules active [test:FIRE-4512] [details:-] [solution:-] +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID FIRE-4513 (Check iptables for unused rules) +2021-01-07 17:45:10 Result: There are no unused rules present +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test FIRE-4518 (Check pf firewall components) +2021-01-07 17:45:10 Reason to skip: No /dev/pf device +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test FIRE-4520 (Check pf configuration consistency) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID FIRE-4524 (Check for CSF presence) +2021-01-07 17:45:10 Test: check /etc/csf/csf.conf +2021-01-07 17:45:10 Result: /etc/csf/csf.conf does NOT exist +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test FIRE-4526 (Check ipf status) +2021-01-07 17:45:10 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test FIRE-4530 (Check IPFW status) +2021-01-07 17:45:10 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test FIRE-4532 (Check macOS application firewall) +2021-01-07 17:45:10 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test FIRE-4534 (Check for presence of outbound firewalls on macOS) +2021-01-07 17:45:10 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test FIRE-4536 (Check nftables status) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test FIRE-4538 (Check nftables basic configuration) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test FIRE-4540 (Check for empty nftables configuration) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID FIRE-4586 (Check firewall logging) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID FIRE-4590 (Check firewall status) +2021-01-07 17:45:10 Result: host based firewall or packet filter is active +2021-01-07 17:45:10 Hardening: assigned maximum number of hardening points for this item (5). Currently having 117 points (out of 161) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID FIRE-4594 (Check for APF presence) +2021-01-07 17:45:10 Test: check /etc/apf/conf.apf +2021-01-07 17:45:10 Result: /etc/apf/conf.apf does NOT exist +2021-01-07 17:45:10 Security check: file is normal +2021-01-07 17:45:10 Checking permissions of /home/ktdw73/scans/lynis/include/tests_webservers +2021-01-07 17:45:10 File permissions are OK +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Action: Performing tests from category: Software: webserver +2021-01-07 17:45:10 Action: created temporary file /tmp/lynis.RxvEEsfj0f +2021-01-07 17:45:10 Action: created temporary file /tmp/lynis.P3I08vTOUK +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID HTTP-6622 (Checking Apache presence) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test HTTP-6624 (Testing main Apache configuration file) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test HTTP-6626 (Testing other Apache configuration file) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test HTTP-6632 (Determining all available Apache modules) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test HTTP-6640 (Determining existence of specific Apache modules) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test HTTP-6641 (Determining existence of specific Apache modules) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test HTTP-6643 (Determining existence of specific Apache modules) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID HTTP-6702 (Check nginx process) +2021-01-07 17:45:10 Test: searching running nginx process +2021-01-07 17:45:10 Performing pgrep scan without uid +2021-01-07 17:45:10 IsRunning: process 'nginx' not found +2021-01-07 17:45:10 Result: no running nginx process found +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test HTTP-6704 (Check nginx configuration file) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test HTTP-6706 (Check for additional nginx configuration files) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test HTTP-6708 (Check discovered nginx configuration settings) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test HTTP-6710 (Check nginx SSL configuration settings) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test HTTP-6712 (Check nginx access logging) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test HTTP-6714 (Check for missing error logs in nginx) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test HTTP-6716 (Check for debug mode on error log in nginx) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Skipped test HTTP-6720 (Check Nginx log files) +2021-01-07 17:45:10 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:10 Security check: file is normal +2021-01-07 17:45:10 Checking permissions of /home/ktdw73/scans/lynis/include/tests_ssh +2021-01-07 17:45:10 File permissions are OK +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Action: Performing tests from category: SSH Support +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID SSH-7402 (Check for running SSH daemon) +2021-01-07 17:45:10 Test: Searching for a SSH daemon +2021-01-07 17:45:10 Performing pgrep scan without uid +2021-01-07 17:45:10 IsRunning: process 'sshd' found (793 911 917 ) +2021-01-07 17:45:10 Action: created temporary file /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID SSH-7404 (Check SSH daemon file location) +2021-01-07 17:45:10 Test: searching for sshd_config file +2021-01-07 17:45:10 Result: /etc/ssh/sshd_config exists +2021-01-07 17:45:10 Test: check if we can access /etc/ssh/sshd_config (escaped: /etc/ssh/sshd_config) +2021-01-07 17:45:10 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:10 Result: file /etc/ssh/sshd_config is readable (or directory accessible). +2021-01-07 17:45:10 Result: using last found configuration file: /etc/ssh/sshd_config +2021-01-07 17:45:10 ==== +2021-01-07 17:45:10 Performing test ID SSH-7406 (Determine OpenSSH version) +2021-01-07 17:45:10 Result: discovered OpenSSH version is 7.4 +2021-01-07 17:45:10 Result: OpenSSH major version: 7 +2021-01-07 17:45:10 Result: OpenSSH minor version: 4 +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Performing test ID SSH-7408 (Check SSH specific defined options) +2021-01-07 17:45:11 Test: Checking specific defined options in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: added additional options for OpenSSH < 7.5 +2021-01-07 17:45:11 Test: Checking AllowTcpForwarding in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option AllowTcpForwarding found +2021-01-07 17:45:11 Result: Option AllowTcpForwarding value is YES +2021-01-07 17:45:11 Result: OpenSSH option AllowTcpForwarding is in a weak configuration state and should be fixed +2021-01-07 17:45:11 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:AllowTcpForwarding (set YES to NO)] [solution:-] +2021-01-07 17:45:11 Hardening: assigned partial number of hardening points (0 of 3). Currently having 117 points (out of 164) +2021-01-07 17:45:11 Test: Checking ClientAliveCountMax in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option ClientAliveCountMax found +2021-01-07 17:45:11 Result: Option ClientAliveCountMax value is 3 +2021-01-07 17:45:11 Result: OpenSSH option ClientAliveCountMax is configured reasonably +2021-01-07 17:45:11 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:ClientAliveCountMax (set 3 to 2)] [solution:-] +2021-01-07 17:45:11 Hardening: assigned partial number of hardening points (1 of 3). Currently having 118 points (out of 167) +2021-01-07 17:45:11 Test: Checking ClientAliveInterval in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option ClientAliveInterval found +2021-01-07 17:45:11 Result: Option ClientAliveInterval value is 0 +2021-01-07 17:45:11 Result: OpenSSH option ClientAliveInterval is configured very well +2021-01-07 17:45:11 Hardening: assigned maximum number of hardening points for this item (3). Currently having 121 points (out of 170) +2021-01-07 17:45:11 Test: Checking Compression in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option Compression found +2021-01-07 17:45:11 Result: Option Compression value is YES +2021-01-07 17:45:11 Result: OpenSSH option Compression is in a weak configuration state and should be fixed +2021-01-07 17:45:11 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:Compression (set YES to NO)] [solution:-] +2021-01-07 17:45:11 Hardening: assigned partial number of hardening points (0 of 3). Currently having 121 points (out of 173) +2021-01-07 17:45:11 Test: Checking FingerprintHash in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option FingerprintHash found +2021-01-07 17:45:11 Result: Option FingerprintHash value is SHA256 +2021-01-07 17:45:11 Result: OpenSSH option FingerprintHash is configured very well +2021-01-07 17:45:11 Hardening: assigned maximum number of hardening points for this item (3). Currently having 124 points (out of 176) +2021-01-07 17:45:11 Test: Checking GatewayPorts in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option GatewayPorts found +2021-01-07 17:45:11 Result: Option GatewayPorts value is NO +2021-01-07 17:45:11 Result: OpenSSH option GatewayPorts is configured very well +2021-01-07 17:45:11 Hardening: assigned maximum number of hardening points for this item (3). Currently having 127 points (out of 179) +2021-01-07 17:45:11 Test: Checking IgnoreRhosts in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option IgnoreRhosts found +2021-01-07 17:45:11 Result: Option IgnoreRhosts value is YES +2021-01-07 17:45:11 Result: OpenSSH option IgnoreRhosts is configured very well +2021-01-07 17:45:11 Hardening: assigned maximum number of hardening points for this item (3). Currently having 130 points (out of 182) +2021-01-07 17:45:11 Test: Checking LoginGraceTime in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option LoginGraceTime found +2021-01-07 17:45:11 Result: Option LoginGraceTime value is 120 +2021-01-07 17:45:11 Result: OpenSSH option LoginGraceTime is configured very well +2021-01-07 17:45:11 Hardening: assigned maximum number of hardening points for this item (3). Currently having 133 points (out of 185) +2021-01-07 17:45:11 Test: Checking LogLevel in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option LogLevel found +2021-01-07 17:45:11 Result: Option LogLevel value is INFO +2021-01-07 17:45:11 Result: OpenSSH option LogLevel is configured reasonably +2021-01-07 17:45:11 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:LogLevel (set INFO to VERBOSE)] [solution:-] +2021-01-07 17:45:11 Hardening: assigned partial number of hardening points (1 of 3). Currently having 134 points (out of 188) +2021-01-07 17:45:11 Test: Checking MaxAuthTries in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option MaxAuthTries found +2021-01-07 17:45:11 Result: Option MaxAuthTries value is 6 +2021-01-07 17:45:11 Result: OpenSSH option MaxAuthTries is configured reasonably +2021-01-07 17:45:11 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:MaxAuthTries (set 6 to 3)] [solution:-] +2021-01-07 17:45:11 Hardening: assigned partial number of hardening points (1 of 3). Currently having 135 points (out of 191) +2021-01-07 17:45:11 Test: Checking MaxSessions in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option MaxSessions found +2021-01-07 17:45:11 Result: Option MaxSessions value is 10 +2021-01-07 17:45:11 Result: OpenSSH option MaxSessions is in a weak configuration state and should be fixed +2021-01-07 17:45:11 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:MaxSessions (set 10 to 2)] [solution:-] +2021-01-07 17:45:11 Hardening: assigned partial number of hardening points (0 of 3). Currently having 135 points (out of 194) +2021-01-07 17:45:11 Test: Checking PermitRootLogin in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option PermitRootLogin found +2021-01-07 17:45:11 Result: Option PermitRootLogin value is NO +2021-01-07 17:45:11 Expected value has multiple values, testing if active value is in list ((FORCED-COMMANDS-ONLY|NO|PROHIBIT-PASSWORD|WITHOUT-PASSWORD)) +2021-01-07 17:45:11 Result: found +2021-01-07 17:45:11 Result: OpenSSH option PermitRootLogin is configured very well +2021-01-07 17:45:11 Hardening: assigned maximum number of hardening points for this item (3). Currently having 138 points (out of 197) +2021-01-07 17:45:11 Test: Checking PermitUserEnvironment in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option PermitUserEnvironment found +2021-01-07 17:45:11 Result: Option PermitUserEnvironment value is NO +2021-01-07 17:45:11 Result: OpenSSH option PermitUserEnvironment is configured very well +2021-01-07 17:45:11 Hardening: assigned maximum number of hardening points for this item (3). Currently having 141 points (out of 200) +2021-01-07 17:45:11 Test: Checking PermitTunnel in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option PermitTunnel found +2021-01-07 17:45:11 Result: Option PermitTunnel value is NO +2021-01-07 17:45:11 Result: OpenSSH option PermitTunnel is configured very well +2021-01-07 17:45:11 Hardening: assigned maximum number of hardening points for this item (3). Currently having 144 points (out of 203) +2021-01-07 17:45:11 Test: Checking Port in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option Port found +2021-01-07 17:45:11 Result: Option Port value is 22 +2021-01-07 17:45:11 Result: OpenSSH option Port is in a weak configuration state and should be fixed +2021-01-07 17:45:11 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:Port (set 22 to )] [solution:-] +2021-01-07 17:45:11 Hardening: assigned partial number of hardening points (0 of 3). Currently having 144 points (out of 206) +2021-01-07 17:45:11 Test: Checking PrintLastLog in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option PrintLastLog found +2021-01-07 17:45:11 Result: Option PrintLastLog value is YES +2021-01-07 17:45:11 Result: OpenSSH option PrintLastLog is configured very well +2021-01-07 17:45:11 Hardening: assigned maximum number of hardening points for this item (3). Currently having 147 points (out of 209) +2021-01-07 17:45:11 Test: Checking StrictModes in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option StrictModes found +2021-01-07 17:45:11 Result: Option StrictModes value is YES +2021-01-07 17:45:11 Result: OpenSSH option StrictModes is configured very well +2021-01-07 17:45:11 Hardening: assigned maximum number of hardening points for this item (3). Currently having 150 points (out of 212) +2021-01-07 17:45:11 Test: Checking TCPKeepAlive in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option TCPKeepAlive found +2021-01-07 17:45:11 Result: Option TCPKeepAlive value is YES +2021-01-07 17:45:11 Result: OpenSSH option TCPKeepAlive is in a weak configuration state and should be fixed +2021-01-07 17:45:11 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:TCPKeepAlive (set YES to NO)] [solution:-] +2021-01-07 17:45:11 Hardening: assigned partial number of hardening points (0 of 3). Currently having 150 points (out of 215) +2021-01-07 17:45:11 Test: Checking UseDNS in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option UseDNS found +2021-01-07 17:45:11 Result: Option UseDNS value is NO +2021-01-07 17:45:11 Result: OpenSSH option UseDNS is configured very well +2021-01-07 17:45:11 Hardening: assigned maximum number of hardening points for this item (3). Currently having 153 points (out of 218) +2021-01-07 17:45:11 Test: Checking X11Forwarding in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option X11Forwarding found +2021-01-07 17:45:11 Result: Option X11Forwarding value is YES +2021-01-07 17:45:11 Result: OpenSSH option X11Forwarding is in a weak configuration state and should be fixed +2021-01-07 17:45:11 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:X11Forwarding (set YES to NO)] [solution:-] +2021-01-07 17:45:11 Hardening: assigned partial number of hardening points (0 of 3). Currently having 153 points (out of 221) +2021-01-07 17:45:11 Test: Checking AllowAgentForwarding in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option AllowAgentForwarding found +2021-01-07 17:45:11 Result: Option AllowAgentForwarding value is YES +2021-01-07 17:45:11 Result: OpenSSH option AllowAgentForwarding is in a weak configuration state and should be fixed +2021-01-07 17:45:11 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:AllowAgentForwarding (set YES to NO)] [solution:-] +2021-01-07 17:45:11 Hardening: assigned partial number of hardening points (0 of 3). Currently having 153 points (out of 224) +2021-01-07 17:45:11 Test: Checking UsePrivilegeSeparation in /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:11 Result: Option UsePrivilegeSeparation found +2021-01-07 17:45:11 Result: Option UsePrivilegeSeparation value is SANDBOX +2021-01-07 17:45:11 Result: OpenSSH option UsePrivilegeSeparation is configured very well +2021-01-07 17:45:11 Hardening: assigned maximum number of hardening points for this item (3). Currently having 156 points (out of 227) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Performing test ID SSH-7440 (Check OpenSSH option: AllowUsers and AllowGroups) +2021-01-07 17:45:11 Result: AllowUsers is not set +2021-01-07 17:45:11 Result: AllowGroups is not set +2021-01-07 17:45:11 Result: SSH has no specific user or group limitation. Most likely all valid users can SSH to this machine. +2021-01-07 17:45:11 Hardening: assigned partial number of hardening points (0 of 1). Currently having 156 points (out of 228) +2021-01-07 17:45:11 Security check: file is normal +2021-01-07 17:45:11 Checking permissions of /home/ktdw73/scans/lynis/include/tests_snmp +2021-01-07 17:45:11 File permissions are OK +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Action: Performing tests from category: SNMP Support +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Performing test ID SNMP-3302 (Check for running SNMP daemon) +2021-01-07 17:45:11 Test: Searching for a SNMP daemon +2021-01-07 17:45:11 Performing pgrep scan without uid +2021-01-07 17:45:11 IsRunning: process 'snmpd' not found +2021-01-07 17:45:11 Result: No running SNMP daemon found +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test SNMP-3304 (Check SNMP daemon file location) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test SNMP-3306 (Check SNMP communities) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 Security check: file is normal +2021-01-07 17:45:11 Checking permissions of /home/ktdw73/scans/lynis/include/tests_databases +2021-01-07 17:45:11 File permissions are OK +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Action: Performing tests from category: Databases +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Performing test ID DBS-1804 (Checking active MySQL process) +2021-01-07 17:45:11 Result: MySQL process not active +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test DBS-1816 (Checking MySQL root password) +2021-01-07 17:45:11 Reason to skip: MySQL not installed, or not running +2021-01-07 17:45:11 Test skipped, MySQL daemon not running or no MySQL client available +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Performing test ID DBS-1818 (Check status of MongoDB server) +2021-01-07 17:45:11 Performing pgrep scan without uid +2021-01-07 17:45:11 IsRunning: process 'mongod' not found +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Performing test ID DBS-1820 (Check for authorization in MongoDB) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Performing test ID DBS-1826 (Checking active PostgreSQL processes) +2021-01-07 17:45:11 Performing pgrep scan without uid +2021-01-07 17:45:11 IsRunning: process 'postgres:' not found +2021-01-07 17:45:11 Result: PostgreSQL process not active +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test DBS-1828 (Test PostgreSQL configuration) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Performing test ID DBS-1840 (Checking active Oracle processes) +2021-01-07 17:45:11 Result: Oracle process(es) not active +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Performing test ID DBS-1860 (Checking active DB2 instances) +2021-01-07 17:45:11 Performing pgrep scan without uid +2021-01-07 17:45:11 IsRunning: process 'db2sysc' not found +2021-01-07 17:45:11 Result: No DB2 instances are running +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Performing test ID DBS-1880 (Check for active Redis server) +2021-01-07 17:45:11 Performing pgrep scan without uid +2021-01-07 17:45:11 IsRunning: process 'redis-server' not found +2021-01-07 17:45:11 Result: No Redis processes are running +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test DBS-1882 (Redis configuration file) +2021-01-07 17:45:11 Reason to skip: Redis not running +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test DBS-1884 (Redis: requirepass option configured) +2021-01-07 17:45:11 Reason to skip: Redis not running, or no configuration file found +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test DBS-1886 (Redis: rename-command CONFIG used) +2021-01-07 17:45:11 Reason to skip: Redis not running, or no configuration found +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test DBS-1888 (Redis: bind on localhost) +2021-01-07 17:45:11 Reason to skip: Redis not running, or no configuration found +2021-01-07 17:45:11 Security check: file is normal +2021-01-07 17:45:11 Checking permissions of /home/ktdw73/scans/lynis/include/tests_ldap +2021-01-07 17:45:11 File permissions are OK +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Action: Performing tests from category: LDAP Services +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Performing test ID LDAP-2219 (Check running OpenLDAP instance) +2021-01-07 17:45:11 Performing pgrep scan without uid +2021-01-07 17:45:11 IsRunning: process 'slapd' not found +2021-01-07 17:45:11 Result: No running slapd process found. +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test LDAP-2224 (Check presence slapd.conf) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 Security check: file is normal +2021-01-07 17:45:11 Checking permissions of /home/ktdw73/scans/lynis/include/tests_php +2021-01-07 17:45:11 File permissions are OK +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Action: Performing tests from category: PHP +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Performing test ID PHP-2211 (Check php.ini presence) +2021-01-07 17:45:11 Test: Checking for presence php.ini +2021-01-07 17:45:11 Test: checking presence /etc/php.ini +2021-01-07 17:45:11 Result: file /etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php.ini.default +2021-01-07 17:45:11 Result: file /etc/php.ini.default not found +2021-01-07 17:45:11 Test: checking presence /etc/php/php.ini +2021-01-07 17:45:11 Result: file /etc/php/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php5.5/php.ini +2021-01-07 17:45:11 Result: file /etc/php5.5/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php5.6/php.ini +2021-01-07 17:45:11 Result: file /etc/php5.6/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php7.0/php.ini +2021-01-07 17:45:11 Result: file /etc/php7.0/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php7.1/php.ini +2021-01-07 17:45:11 Result: file /etc/php7.1/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php7.2/php.ini +2021-01-07 17:45:11 Result: file /etc/php7.2/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php7.3/php.ini +2021-01-07 17:45:11 Result: file /etc/php7.3/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php7.4/php.ini +2021-01-07 17:45:11 Result: file /etc/php7.4/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cgi-php5/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cgi-php5/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cli-php5/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cli-php5/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/apache2-php5/php.ini +2021-01-07 17:45:11 Result: file /etc/php/apache2-php5/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/apache2-php5.5/php.ini +2021-01-07 17:45:11 Result: file /etc/php/apache2-php5.5/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/apache2-php5.6/php.ini +2021-01-07 17:45:11 Result: file /etc/php/apache2-php5.6/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/apache2-php7.0/php.ini +2021-01-07 17:45:11 Result: file /etc/php/apache2-php7.0/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/apache2-php7.1/php.ini +2021-01-07 17:45:11 Result: file /etc/php/apache2-php7.1/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/apache2-php7.2/php.ini +2021-01-07 17:45:11 Result: file /etc/php/apache2-php7.2/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/apache2-php7.3/php.ini +2021-01-07 17:45:11 Result: file /etc/php/apache2-php7.3/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/apache2-php7.4/php.ini +2021-01-07 17:45:11 Result: file /etc/php/apache2-php7.4/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cgi-php5.5/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cgi-php5.5/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cgi-php5.6/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cgi-php5.6/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cgi-php7.0/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cgi-php7.0/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cgi-php7.1/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cgi-php7.1/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cgi-php7.2/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cgi-php7.2/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cgi-php7.3/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cgi-php7.3/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cgi-php7.4/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cgi-php7.4/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cli-php5.5/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cli-php5.5/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cli-php5.6/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cli-php5.6/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cli-php7.0/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cli-php7.0/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cli-php7.1/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cli-php7.1/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cli-php7.2/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cli-php7.2/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cli-php7.3/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cli-php7.3/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/cli-php7.4/php.ini +2021-01-07 17:45:11 Result: file /etc/php/cli-php7.4/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/embed-php5.5/php.ini +2021-01-07 17:45:11 Result: file /etc/php/embed-php5.5/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/embed-php5.6/php.ini +2021-01-07 17:45:11 Result: file /etc/php/embed-php5.6/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/embed-php7.0/php.ini +2021-01-07 17:45:11 Result: file /etc/php/embed-php7.0/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/embed-php7.1/php.ini +2021-01-07 17:45:11 Result: file /etc/php/embed-php7.1/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/embed-php7.2/php.ini +2021-01-07 17:45:11 Result: file /etc/php/embed-php7.2/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/embed-php7.3/php.ini +2021-01-07 17:45:11 Result: file /etc/php/embed-php7.3/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/embed-php7.4/php.ini +2021-01-07 17:45:11 Result: file /etc/php/embed-php7.4/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/fpm-php7.4/php.ini +2021-01-07 17:45:11 Result: file /etc/php/fpm-php7.4/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/fpm-php7.3/php.ini +2021-01-07 17:45:11 Result: file /etc/php/fpm-php7.3/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/fpm-php7.2/php.ini +2021-01-07 17:45:11 Result: file /etc/php/fpm-php7.2/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/fpm-php7.1/php.ini +2021-01-07 17:45:11 Result: file /etc/php/fpm-php7.1/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/fpm-php7.0/php.ini +2021-01-07 17:45:11 Result: file /etc/php/fpm-php7.0/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/fpm-php5.5/php.ini +2021-01-07 17:45:11 Result: file /etc/php/fpm-php5.5/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/fpm-php5.6/php.ini +2021-01-07 17:45:11 Result: file /etc/php/fpm-php5.6/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php5/cgi/php.ini +2021-01-07 17:45:11 Result: file /etc/php5/cgi/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php5/cli/php.ini +2021-01-07 17:45:11 Result: file /etc/php5/cli/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php5/cli-php5.4/php.ini +2021-01-07 17:45:11 Result: file /etc/php5/cli-php5.4/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php5/cli-php5.5/php.ini +2021-01-07 17:45:11 Result: file /etc/php5/cli-php5.5/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php5/cli-php5.6/php.ini +2021-01-07 17:45:11 Result: file /etc/php5/cli-php5.6/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php5/apache2/php.ini +2021-01-07 17:45:11 Result: file /etc/php5/apache2/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php5/fpm/php.ini +2021-01-07 17:45:11 Result: file /etc/php5/fpm/php.ini not found +2021-01-07 17:45:11 Test: checking presence /private/etc/php.ini +2021-01-07 17:45:11 Result: file /private/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.0/apache2/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.0/apache2/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.1/apache2/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.1/apache2/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.2/apache2/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.2/apache2/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.3/apache2/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.3/apache2/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.4/apache2/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.4/apache2/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.0/cli/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.0/cli/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.0/fpm/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.0/fpm/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.1/cli/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.1/cli/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.1/fpm/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.1/fpm/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.2/cli/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.2/cli/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.2/fpm/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.2/fpm/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.3/cli/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.3/cli/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.3/fpm/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.3/fpm/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.4/cli/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.4/cli/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php/7.4/fpm/php.ini +2021-01-07 17:45:11 Result: file /etc/php/7.4/fpm/php.ini not found +2021-01-07 17:45:11 Test: checking presence /var/www/conf/php.ini +2021-01-07 17:45:11 Result: file /var/www/conf/php.ini not found +2021-01-07 17:45:11 Test: checking presence /usr/local/etc/php.ini +2021-01-07 17:45:11 Result: file /usr/local/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /usr/local/lib/php.ini +2021-01-07 17:45:11 Result: file /usr/local/lib/php.ini not found +2021-01-07 17:45:11 Test: checking presence /usr/local/etc/php5/cgi/php.ini +2021-01-07 17:45:11 Result: file /usr/local/etc/php5/cgi/php.ini not found +2021-01-07 17:45:11 Test: checking presence /usr/local/php54/lib/php.ini +2021-01-07 17:45:11 Result: file /usr/local/php54/lib/php.ini not found +2021-01-07 17:45:11 Test: checking presence /usr/local/php56/lib/php.ini +2021-01-07 17:45:11 Result: file /usr/local/php56/lib/php.ini not found +2021-01-07 17:45:11 Test: checking presence /usr/local/php70/lib/php.ini +2021-01-07 17:45:11 Result: file /usr/local/php70/lib/php.ini not found +2021-01-07 17:45:11 Test: checking presence /usr/local/php71/lib/php.ini +2021-01-07 17:45:11 Result: file /usr/local/php71/lib/php.ini not found +2021-01-07 17:45:11 Test: checking presence /usr/local/php72/lib/php.ini +2021-01-07 17:45:11 Result: file /usr/local/php72/lib/php.ini not found +2021-01-07 17:45:11 Test: checking presence /usr/local/php73/lib/php.ini +2021-01-07 17:45:11 Result: file /usr/local/php73/lib/php.ini not found +2021-01-07 17:45:11 Test: checking presence /usr/local/php74/lib/php.ini +2021-01-07 17:45:11 Result: file /usr/local/php74/lib/php.ini not found +2021-01-07 17:45:11 Test: checking presence /usr/local/zend/etc/php.ini +2021-01-07 17:45:11 Result: file /usr/local/zend/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /usr/pkg/etc/php.ini +2021-01-07 17:45:11 Result: file /usr/pkg/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/cpanel/ea-php54/root/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/cpanel/ea-php54/root/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/cpanel/ea-php55/root/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/cpanel/ea-php55/root/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/cpanel/ea-php56/root/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/cpanel/ea-php56/root/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/cpanel/ea-php70/root/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/cpanel/ea-php70/root/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/cpanel/ea-php71/root/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/cpanel/ea-php71/root/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/cpanel/ea-php72/root/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/cpanel/ea-php72/root/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/cpanel/ea-php73/root/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/cpanel/ea-php73/root/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/cpanel/ea-php74/root/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/cpanel/ea-php74/root/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/alt/php44/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/alt/php44/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/alt/php51/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/alt/php51/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/alt/php52/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/alt/php52/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/alt/php53/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/alt/php53/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/alt/php54/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/alt/php54/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/alt/php55/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/alt/php55/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/alt/php56/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/alt/php56/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/alt/php70/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/alt/php70/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/alt/php71/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/alt/php71/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/alt/php72/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/alt/php72/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/alt/php73/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/alt/php73/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /opt/alt/php74/etc/php.ini +2021-01-07 17:45:11 Result: file /opt/alt/php74/etc/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/opt/remi/php56/php.ini +2021-01-07 17:45:11 Result: file /etc/opt/remi/php56/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/opt/remi/php70/php.ini +2021-01-07 17:45:11 Result: file /etc/opt/remi/php70/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/opt/remi/php71/php.ini +2021-01-07 17:45:11 Result: file /etc/opt/remi/php71/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/opt/remi/php72/php.ini +2021-01-07 17:45:11 Result: file /etc/opt/remi/php72/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/opt/remi/php73/php.ini +2021-01-07 17:45:11 Result: file /etc/opt/remi/php73/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/opt/remi/php74/php.ini +2021-01-07 17:45:11 Result: file /etc/opt/remi/php74/php.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php-5.6.ini +2021-01-07 17:45:11 Result: file /etc/php-5.6.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php-7.0.ini +2021-01-07 17:45:11 Result: file /etc/php-7.0.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php-7.1.ini +2021-01-07 17:45:11 Result: file /etc/php-7.1.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php-7.2.ini +2021-01-07 17:45:11 Result: file /etc/php-7.2.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php-7.3.ini +2021-01-07 17:45:11 Result: file /etc/php-7.3.ini not found +2021-01-07 17:45:11 Test: checking presence /etc/php-7.4.ini +2021-01-07 17:45:11 Result: file /etc/php-7.4.ini not found +2021-01-07 17:45:11 Result: no files found for /etc/php5/conf.d +2021-01-07 17:45:11 Result: no files found for /etc/php/7.0/cli/conf.d +2021-01-07 17:45:11 Result: no files found for /etc/php/7.1/cli/conf.d +2021-01-07 17:45:11 Result: no files found for /etc/php/7.2/cli/conf.d +2021-01-07 17:45:11 Result: no files found for /etc/php/7.3/cli/conf.d +2021-01-07 17:45:11 Result: no files found for /etc/php/7.4/cli/conf.d +2021-01-07 17:45:11 Result: no files found for /etc/php/7.0/fpm/conf.d +2021-01-07 17:45:11 Result: no files found for /etc/php/7.1/fpm/conf.d +2021-01-07 17:45:11 Result: no files found for /etc/php/7.2/fpm/conf.d +2021-01-07 17:45:11 Result: no files found for /etc/php/7.3/fpm/conf.d +2021-01-07 17:45:11 Result: no files found for /etc/php/7.4/fpm/conf.d +2021-01-07 17:45:11 Result: no files found for /etc/php.d +2021-01-07 17:45:11 Result: no files found for /opt/cpanel/ea-php54/root/etc/php.d +2021-01-07 17:45:11 Result: no files found for /opt/cpanel/ea-php55/root/etc/php.d +2021-01-07 17:45:11 Result: no files found for /opt/cpanel/ea-php56/root/etc/php.d +2021-01-07 17:45:11 Result: no files found for /opt/cpanel/ea-php70/root/etc/php.d +2021-01-07 17:45:11 Result: no files found for /opt/cpanel/ea-php71/root/etc/php.d +2021-01-07 17:45:11 Result: no files found for /opt/cpanel/ea-php72/root/etc/php.d +2021-01-07 17:45:11 Result: no files found for /opt/cpanel/ea-php73/root/etc/php.d +2021-01-07 17:45:11 Result: no files found for /opt/cpanel/ea-php74/root/etc/php.d +2021-01-07 17:45:11 Result: no files found for /opt/alt/php44/etc/php.d.all +2021-01-07 17:45:11 Result: no files found for /opt/alt/php51/etc/php.d.all +2021-01-07 17:45:11 Result: no files found for /opt/alt/php52/etc/php.d.all +2021-01-07 17:45:11 Result: no files found for /opt/alt/php53/etc/php.d.all +2021-01-07 17:45:11 Result: no files found for /opt/alt/php54/etc/php.d.all +2021-01-07 17:45:11 Result: no files found for /opt/alt/php55/etc/php.d.all +2021-01-07 17:45:11 Result: no files found for /opt/alt/php56/etc/php.d.all +2021-01-07 17:45:11 Result: no files found for /opt/alt/php70/etc/php.d.all +2021-01-07 17:45:11 Result: no files found for /opt/alt/php71/etc/php.d.all +2021-01-07 17:45:11 Result: no files found for /opt/alt/php72/etc/php.d.all +2021-01-07 17:45:11 Result: no files found for /opt/alt/php73/etc/php.d.all +2021-01-07 17:45:11 Result: no files found for /opt/alt/php74/etc/php.d.all +2021-01-07 17:45:11 Result: no files found for /usr/local/lib/php.conf.d +2021-01-07 17:45:11 Result: no files found for /usr/local/php70/lib/php.conf.d +2021-01-07 17:45:11 Result: no files found for /usr/local/php71/lib/php.conf.d +2021-01-07 17:45:11 Result: no files found for /usr/local/php72/lib/php.conf.d +2021-01-07 17:45:11 Result: no files found for /usr/local/php73/lib/php.conf.d +2021-01-07 17:45:11 Result: no files found for /usr/local/php74/lib/php.conf.d +2021-01-07 17:45:11 Result: no files found for /etc/php-5.6 +2021-01-07 17:45:11 Result: no files found for /etc/php-7.0 +2021-01-07 17:45:11 Result: no files found for /etc/php-7.1 +2021-01-07 17:45:11 Result: no files found for /etc/php-7.2 +2021-01-07 17:45:11 Result: no files found for /etc/php-7.3 +2021-01-07 17:45:11 Result: no files found for /etc/php-7.4 +2021-01-07 17:45:11 Result: no php.ini file found +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test PHP-2320 (Check PHP disabled functions) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test PHP-2368 (Check PHP register_globals option) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test PHP-2372 (Check PHP expose_php option) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test PHP-2374 (Check PHP enable_dl option) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test PHP-2376 (Check PHP allow_url_fopen option) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test PHP-2378 (Check PHP allow_url_include option) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test PHP-2382 (Check PHP expose_php option) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 Security check: file is normal +2021-01-07 17:45:11 Checking permissions of /home/ktdw73/scans/lynis/include/tests_squid +2021-01-07 17:45:11 File permissions are OK +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Action: Performing tests from category: Squid Support +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Performing test ID SQD-3602 (Check for running Squid daemon) +2021-01-07 17:45:11 Test: Searching for a Squid daemon +2021-01-07 17:45:11 Result: No running Squid daemon found +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test SQD-3604 (Check Squid daemon file location) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test SQD-3606 (Check Squid version) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test SQD-3610 (Gather Squid settings) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test SQD-3613 (Check Squid file permissions) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test SQD-3614 (Check Squid authentication methods) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test SQD-3616 (Check external Squid authentication) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test SQD-3620 (Check Squid access control lists) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test SQD-3624 (Check Squid safe ports) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test SQD-3630 (Check Squid reply_body_max_size option) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 ==== +2021-01-07 17:45:11 Skipped test SQD-3680 (Check Squid version suppression) +2021-01-07 17:45:11 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:11 Security check: file is normal +2021-01-07 17:45:11 Checking permissions of /home/ktdw73/scans/lynis/include/tests_logging +2021-01-07 17:45:11 File permissions are OK +2021-01-07 17:45:11 ==== +2021-01-07 17:45:12 Action: Performing tests from category: Logging and files +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID LOGG-2130 (Check for running syslog daemon) +2021-01-07 17:45:12 Test: Searching for a logging daemon +2021-01-07 17:45:12 Result: Found a logging daemon +2021-01-07 17:45:12 Hardening: assigned maximum number of hardening points for this item (3). Currently having 159 points (out of 231) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID LOGG-2132 (Check for running syslog-ng daemon) +2021-01-07 17:45:12 Test: Searching for syslog-ng daemon in process list +2021-01-07 17:45:12 Performing pgrep scan without uid +2021-01-07 17:45:12 IsRunning: process 'syslog-ng' not found +2021-01-07 17:45:12 Result: Syslog-ng NOT found in process list +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test LOGG-2134 (Checking Syslog-NG configuration file consistency) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID LOGG-2136 (Check for running systemd journal daemon) +2021-01-07 17:45:12 Test: Searching for systemd journal daemon in process list +2021-01-07 17:45:12 Performing pgrep scan without uid +2021-01-07 17:45:12 IsRunning: process 'systemd-journal' found (421 ) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID LOGG-2210 (Check for running metalog daemon) +2021-01-07 17:45:12 Test: Searching for metalog daemon in process list +2021-01-07 17:45:12 Performing pgrep scan without uid +2021-01-07 17:45:12 IsRunning: process 'metalog' not found +2021-01-07 17:45:12 Result: metalog NOT found in process list +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID LOGG-2230 (Check for running RSyslog daemon) +2021-01-07 17:45:12 Test: Searching for RSyslog daemon in process list +2021-01-07 17:45:12 Performing pgrep scan without uid +2021-01-07 17:45:12 IsRunning: process 'rsyslogd' found (590 ) +2021-01-07 17:45:12 Result: Found rsyslogd in process list +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID LOGG-2240 (Check for running RFC 3195 compliant daemon) +2021-01-07 17:45:12 Test: Searching for RFC 3195 daemon (alias syslog reliable) in process list +2021-01-07 17:45:12 Performing pgrep scan without uid +2021-01-07 17:45:12 IsRunning: process 'rfc3195d' not found +2021-01-07 17:45:12 Result: rfc3195d NOT found in process list +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID LOGG-2138 (Checking kernel logger daemon on Linux) +2021-01-07 17:45:12 Test: Searching kernel logger daemon (klogd) +2021-01-07 17:45:12 Result: test skipped, because other facility is being used to log kernel messages +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID LOGG-2142 (Checking minilog daemon) +2021-01-07 17:45:12 Result: Checking for unkilled minilogd instances +2021-01-07 17:45:12 Performing pgrep scan without uid +2021-01-07 17:45:12 IsRunning: process 'minilogd' not found +2021-01-07 17:45:12 Result: No minilogd is running +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID LOGG-2146 (Checking logrotate.conf and logrotate.d) +2021-01-07 17:45:12 Test: Checking for /etc/logrotate.conf +2021-01-07 17:45:12 Result: /etc/logrotate.conf found (file) +2021-01-07 17:45:12 Test: Checking for /etc/logrotate.d (directory) +2021-01-07 17:45:12 Result: /etc/logrotate.d found +2021-01-07 17:45:12 Result: logrotate configuration found +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID LOGG-2148 (Checking logrotated files) +2021-01-07 17:45:12 Test: Checking which files are rotated with logrotate and if they exist +2021-01-07 17:45:12 Result: found one or more files which are rotated via logrotate +2021-01-07 17:45:12 Output: File:/var/log/cron.log:does_not_exist +2021-01-07 17:45:12 Output: File:/var/log/lpr.log:does_not_exist +2021-01-07 17:45:12 Output: File:/var/log/mail.err:does_not_exist +2021-01-07 17:45:12 Output: File:/var/log/mail.info:does_not_exist +2021-01-07 17:45:12 Output: File:/var/log/mail.log:does_not_exist +2021-01-07 17:45:12 Output: File:/var/log/mail.warn:does_not_exist +2021-01-07 17:45:12 Output: File:/var/log/unattended-upgrades/unattended-upgrades-dpkg.log:does_not_exist +2021-01-07 17:45:12 Output: File:/var/log/unattended-upgrades/unattended-upgrades-shutdown.log:does_not_exist +2021-01-07 17:45:12 Output: File:/var/log/unattended-upgrades/unattended-upgrades.log:does_not_exist +2021-01-07 17:45:12 Output: File:/var/log/user.log:does_not_exist +2021-01-07 17:45:12 Output: File:/var/log/alternatives.log:exists +2021-01-07 17:45:12 Output: File:/var/log/apt/history.log:exists +2021-01-07 17:45:12 Output: File:/var/log/apt/term.log:exists +2021-01-07 17:45:12 Output: File:/var/log/auth.log:exists +2021-01-07 17:45:12 Output: File:/var/log/btmp:exists +2021-01-07 17:45:12 Output: File:/var/log/cron.log:exists +2021-01-07 17:45:12 Output: File:/var/log/daemon.log:exists +2021-01-07 17:45:12 Output: File:/var/log/debug:exists +2021-01-07 17:45:12 Output: File:/var/log/dpkg.log:exists +2021-01-07 17:45:12 Output: File:/var/log/kern.log:exists +2021-01-07 17:45:12 Output: File:/var/log/lpr.log:exists +2021-01-07 17:45:12 Output: File:/var/log/mail.err:exists +2021-01-07 17:45:12 Output: File:/var/log/mail.info:exists +2021-01-07 17:45:12 Output: File:/var/log/mail.log:exists +2021-01-07 17:45:12 Output: File:/var/log/mail.warn:exists +2021-01-07 17:45:12 Output: File:/var/log/messages:exists +2021-01-07 17:45:12 Output: File:/var/log/syslog:exists +2021-01-07 17:45:12 Output: File:/var/log/unattended-upgrades/unattended-upgrades-dpkg.log:exists +2021-01-07 17:45:12 Output: File:/var/log/unattended-upgrades/unattended-upgrades-shutdown.log:exists +2021-01-07 17:45:12 Output: File:/var/log/unattended-upgrades/unattended-upgrades.log:exists +2021-01-07 17:45:12 Output: File:/var/log/user.log:exists +2021-01-07 17:45:12 Output: File:/var/log/wtmp:exists +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID LOGG-2150 (Checking directories in logrotate configuration) +2021-01-07 17:45:12 Test: Checking which directories can be found in logrotate configuration +2021-01-07 17:45:12 Result: found one or more directories (via logrotate configuration) +2021-01-07 17:45:12 Directory found: /var/log +2021-01-07 17:45:12 Directory found: /var/log/apt +2021-01-07 17:45:12 Directory found: /var/log/unattended-upgrades +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test LOGG-2152 (Checking loghost) +2021-01-07 17:45:12 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test LOGG-2153 (Checking loghost is localhost) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID LOGG-2154 (Checking syslog configuration file) +2021-01-07 17:45:12 Test: analyzing file /etc/rsyslog.conf for remote target +2021-01-07 17:45:12 Result: no remote target found +2021-01-07 17:45:12 Test: analyzing file /etc/rsyslog.d/90-google.conf for remote target +2021-01-07 17:45:12 Result: no remote target found +2021-01-07 17:45:12 Result: no remote logging found +2021-01-07 17:45:12 Suggestion: Enable logging to an external logging host for archiving purposes and additional protection [test:LOGG-2154] [details:-] [solution:-] +2021-01-07 17:45:12 Hardening: assigned partial number of hardening points (1 of 3). Currently having 160 points (out of 234) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test LOGG-2160 (Checking /etc/newsyslog.conf) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test LOGG-2162 (Checking directories in /etc/newsyslog.conf) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test LOGG-2164 (Checking files specified /etc/newsyslog.conf) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID LOGG-2170 (Checking log paths) +2021-01-07 17:45:12 Test: Searching log paths +2021-01-07 17:45:12 Result: directory /var/log exists +2021-01-07 17:45:12 Result: directory /var/adm can't be found +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID LOGG-2180 (Checking open log files) +2021-01-07 17:45:12 Test: checking open log files with lsof +2021-01-07 17:45:12 Result: lsof not installed, skipping test +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test LOGG-2190 (Checking for deleted files in use) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test LOGG-2192 (Checking for open log files that are empty) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 Security check: file is normal +2021-01-07 17:45:12 Checking permissions of /home/ktdw73/scans/lynis/include/tests_insecure_services +2021-01-07 17:45:12 File permissions are OK +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Action: Performing tests from category: Insecure services +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID INSE-8000 (Installed inetd package) +2021-01-07 17:45:12 Test: Checking if inetd is installed +2021-01-07 17:45:12 Result: inetd is NOT installed +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test INSE-8002 (Check for enabled inet daemon) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test INSE-8004 (Presence of inetd configuration file) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test INSE-8006 (Check configuration of inetd when disabled) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test INSE-8016 (Check for telnet via inetd) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID INSE-8100 (Check for installed xinetd daemon) +2021-01-07 17:45:12 Test: Checking for installed xinetd daemon +2021-01-07 17:45:12 Result: xinetd is NOT installed +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID INSE-8102 (Check for active xinet daemon) +2021-01-07 17:45:12 Test: Searching for active extended internet services daemon (xinetd) +2021-01-07 17:45:12 Performing pgrep scan without uid +2021-01-07 17:45:12 IsRunning: process 'xinetd' not found +2021-01-07 17:45:12 Result: xinetd is NOT running +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test INSE-8104 (Check for enabled xinet daemon) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test INSE-8106 (Check configuration of xinetd when disabled) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test INSE-8116 (Insecure services enabled via xinetd) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test INSE-8200 (Check if tcp_wrappers is installed when inetd/xinetd is active) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID INSE-8300 (Check if rsh client is installed) +2021-01-07 17:45:12 Test: Checking if rsh client is installed +2021-01-07 17:45:12 Result: rsh client is NOT installed +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID INSE-8304 (Check if rsh server is installed) +2021-01-07 17:45:12 Test: Checking if rsh server is installed +2021-01-07 17:45:12 Result: rsh server is NOT installed +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID INSE-8310 (Check if telnet client is installed) +2021-01-07 17:45:12 Test: Checking if telnet client is installed +2021-01-07 17:45:12 Result: telnet client is NOT installed +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID INSE-8322 (Check if telnet server is installed) +2021-01-07 17:45:12 Test: Checking if telnet server is installed +2021-01-07 17:45:12 Result: telnet server is NOT installed +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID INSE-8314 (Check if NIS client is installed) +2021-01-07 17:45:12 Test: Checking if NIS client is installed +2021-01-07 17:45:12 Result: NIS client is NOT installed +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID INSE-8316 (Check if NIS server is installed) +2021-01-07 17:45:12 Test: Checking if NIS server is installed +2021-01-07 17:45:12 Result: NIS server is NOT installed +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID INSE-8318 (Check if TFTP client is installed) +2021-01-07 17:45:12 Test: Checking if TFTP client is installed +2021-01-07 17:45:12 Result: TFTP client is NOT installed +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID INSE-8320 (Check if TFTP server is installed) +2021-01-07 17:45:12 Test: Checking if TFTP server is installed +2021-01-07 17:45:12 Result: TFTP server is NOT installed +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test INSE-8050 (Check for insecure services on macOS) +2021-01-07 17:45:12 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:45:12 Security check: file is normal +2021-01-07 17:45:12 Checking permissions of /home/ktdw73/scans/lynis/include/tests_banners +2021-01-07 17:45:12 File permissions are OK +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Action: Performing tests from category: Banners and identification +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test BANN-7113 (Check COPYRIGHT banner file) +2021-01-07 17:45:12 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID BANN-7124 (Check issue banner file) +2021-01-07 17:45:12 Test: Checking file /etc/issue +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID BANN-7126 (Check issue banner file contents) +2021-01-07 17:45:12 Test: Checking file /etc/issue contents for legal key words +2021-01-07 17:45:12 Result: Found only 0 key words (5 or more suggested), to warn unauthorized users and could be increased +2021-01-07 17:45:12 Suggestion: Add a legal banner to /etc/issue, to warn unauthorized users [test:BANN-7126] [details:-] [solution:-] +2021-01-07 17:45:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 160 points (out of 235) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID BANN-7128 (Check issue.net banner file) +2021-01-07 17:45:12 Test: Checking file /etc/issue.net +2021-01-07 17:45:12 Result: file /etc/issue.net exists +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID BANN-7130 (Check issue.net banner file contents) +2021-01-07 17:45:12 Test: Checking file /etc/issue.net contents for legal key words +2021-01-07 17:45:12 Result: Found only 0 key words, to warn unauthorized users and could be increased +2021-01-07 17:45:12 Suggestion: Add legal banner to /etc/issue.net, to warn unauthorized users [test:BANN-7130] [details:-] [solution:-] +2021-01-07 17:45:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 160 points (out of 236) +2021-01-07 17:45:12 Security check: file is normal +2021-01-07 17:45:12 Checking permissions of /home/ktdw73/scans/lynis/include/tests_scheduling +2021-01-07 17:45:12 File permissions are OK +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Action: Performing tests from category: Scheduled tasks +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID SCHD-7702 (Check status of cron daemon) +2021-01-07 17:45:12 Result: cron daemon running +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID SCHD-7704 (Check crontab/cronjobs) +2021-01-07 17:45:12 Found cronjob (/etc/crontab): 17,*,*,*,*,root,cd,/,&&,run-parts,--report,/etc/cron.hourly +2021-01-07 17:45:12 Found cronjob (/etc/crontab): 25,6,*,*,*,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.daily,) +2021-01-07 17:45:12 Found cronjob (/etc/crontab): 47,6,*,*,7,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.weekly,) +2021-01-07 17:45:12 Found cronjob (/etc/crontab): 52,6,1,*,*,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.monthly,) +2021-01-07 17:45:12 Test: checking directory /etc/cron.d +2021-01-07 17:45:12 Test: check if we can access /etc/cron.d (escaped: /etc/cron.d) +2021-01-07 17:45:12 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:12 Result: file /etc/cron.d is readable (or directory accessible). +2021-01-07 17:45:12 Result: found directory /etc/cron.d +2021-01-07 17:45:12 Test: searching files in /etc/cron.d +2021-01-07 17:45:12 Result: no files found in /etc/cron.d +2021-01-07 17:45:12 Test: checking directory /etc/cron.hourly +2021-01-07 17:45:12 Result: found directory /etc/cron.hourly +2021-01-07 17:45:12 Test: check if we can access /etc/cron.hourly (escaped: /etc/cron.hourly) +2021-01-07 17:45:12 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:12 Result: file /etc/cron.hourly is readable (or directory accessible). +2021-01-07 17:45:12 Test: searching files in /etc/cron.hourly +2021-01-07 17:45:12 Result: no files found in /etc/cron.hourly +2021-01-07 17:45:12 Test: checking directory /etc/cron.daily +2021-01-07 17:45:12 Result: found directory /etc/cron.daily +2021-01-07 17:45:12 Test: check if we can access /etc/cron.daily (escaped: /etc/cron.daily) +2021-01-07 17:45:12 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:12 Result: file /etc/cron.daily is readable (or directory accessible). +2021-01-07 17:45:12 Test: searching files in /etc/cron.daily +2021-01-07 17:45:12 Result: found one or more files in /etc/cron.daily. Analyzing files.. +2021-01-07 17:45:12 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/logrotate +2021-01-07 17:45:12 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/ntp +2021-01-07 17:45:12 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/apt-compat +2021-01-07 17:45:12 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/man-db +2021-01-07 17:45:12 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/dpkg +2021-01-07 17:45:12 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/bsdmainutils +2021-01-07 17:45:12 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/passwd +2021-01-07 17:45:12 Result: done with analyzing files in /etc/cron.daily +2021-01-07 17:45:12 Test: checking directory /etc/cron.weekly +2021-01-07 17:45:12 Result: found directory /etc/cron.weekly +2021-01-07 17:45:12 Test: check if we can access /etc/cron.weekly (escaped: /etc/cron.weekly) +2021-01-07 17:45:12 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:12 Result: file /etc/cron.weekly is readable (or directory accessible). +2021-01-07 17:45:12 Test: searching files in /etc/cron.weekly +2021-01-07 17:45:12 Result: found one or more files in /etc/cron.weekly. Analyzing files.. +2021-01-07 17:45:12 Result: Found cronjob (/etc/cron.weekly): /etc/cron.weekly/man-db +2021-01-07 17:45:12 Result: done with analyzing files in /etc/cron.weekly +2021-01-07 17:45:12 Test: checking directory /etc/cron.monthly +2021-01-07 17:45:12 Result: found directory /etc/cron.monthly +2021-01-07 17:45:12 Test: check if we can access /etc/cron.monthly (escaped: /etc/cron.monthly) +2021-01-07 17:45:12 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:12 Result: file /etc/cron.monthly is readable (or directory accessible). +2021-01-07 17:45:12 Test: searching files in /etc/cron.monthly +2021-01-07 17:45:12 Result: no files found in /etc/cron.monthly +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID SCHD-7718 (Check at users) +2021-01-07 17:45:12 Test: Checking atd status +2021-01-07 17:45:12 Result: at daemon not active +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test SCHD-7720 (Check at users) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test SCHD-7724 (Check at jobs) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 Result: no scheduled Lynis execution found (e.g. crontab, cronjob) +2021-01-07 17:45:12 Security check: file is normal +2021-01-07 17:45:12 Checking permissions of /home/ktdw73/scans/lynis/include/tests_accounting +2021-01-07 17:45:12 File permissions are OK +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Action: Performing tests from category: Accounting +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test ACCT-2754 (Check for available FreeBSD accounting information) +2021-01-07 17:45:12 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test ACCT-2760 (Check for available OpenBSD accounting information) +2021-01-07 17:45:12 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID ACCT-9622 (Check for available Linux accounting information) +2021-01-07 17:45:12 Test: Check accounting information +2021-01-07 17:45:12 Result: No accounting information available (/var/account/pacct, /var/log/account/pact nor /var/log/pact exist) +2021-01-07 17:45:12 Remark: Possibly there is another location where the accounting data is stored +2021-01-07 17:45:12 Suggestion: Enable process accounting [test:ACCT-9622] [details:-] [solution:-] +2021-01-07 17:45:12 Hardening: assigned partial number of hardening points (2 of 3). Currently having 162 points (out of 239) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID ACCT-9626 (Check for sysstat accounting data) +2021-01-07 17:45:12 Test: check /etc/default/sysstat presence +2021-01-07 17:45:12 Result: sysstat not found via /etc/default/sysstat or /etc/cron.d/sysstat or as a systemd unit +2021-01-07 17:45:12 Suggestion: Enable sysstat to collect accounting (no results) [test:ACCT-9626] [details:-] [solution:-] +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Performing test ID ACCT-9628 (Check for auditd) +2021-01-07 17:45:12 Test: Check auditd status +2021-01-07 17:45:12 Performing pgrep scan without uid +2021-01-07 17:45:12 IsRunning: process 'auditd' not found +2021-01-07 17:45:12 Result: auditd not active +2021-01-07 17:45:12 Suggestion: Enable auditd to collect audit information [test:ACCT-9628] [details:-] [solution:-] +2021-01-07 17:45:12 Hardening: assigned partial number of hardening points (0 of 1). Currently having 162 points (out of 240) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test ACCT-9630 (Check for auditd rules) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:12 Skipped test ACCT-9632 (Check for auditd configuration file) +2021-01-07 17:45:12 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:12 ==== +2021-01-07 17:45:13 Skipped test ACCT-9634 (Check for auditd log file) +2021-01-07 17:45:13 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Performing test ID ACCT-9636 (Check for Snoopy wrapper and logger) +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Skipped test ACCT-9650 (Check Solaris audit daemon) +2021-01-07 17:45:13 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Skipped test ACCT-9652 (Check auditd SMF status) +2021-01-07 17:45:13 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Skipped test ACCT-9654 (Check BSM auditing in /etc/system) +2021-01-07 17:45:13 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Skipped test ACCT-9656 (Check BSM auditing in module list) +2021-01-07 17:45:13 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Skipped test ACCT-9660 (Check location of audit events) +2021-01-07 17:45:13 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Skipped test ACCT-9662 (Check Solaris auditing stats) +2021-01-07 17:45:13 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:13 Security check: file is normal +2021-01-07 17:45:13 Checking permissions of /home/ktdw73/scans/lynis/include/tests_time +2021-01-07 17:45:13 File permissions are OK +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Action: Performing tests from category: Time and Synchronization +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Performing test ID TIME-3104 (Check for running NTP daemon or client) +2021-01-07 17:45:13 Test: Searching for a running NTP daemon or available client +2021-01-07 17:45:13 Result: no chrony configuration found +2021-01-07 17:45:13 Performing pgrep scan without uid +2021-01-07 17:45:13 IsRunning: process 'dntpd' not found +2021-01-07 17:45:13 Result: found running NTP daemon in process list +2021-01-07 17:45:13 Performing pgrep scan without uid +2021-01-07 17:45:13 IsRunning: process 'timed' not found +2021-01-07 17:45:13 Result: crontab file /etc/anacrontab not found +2021-01-07 17:45:13 Test: checking for ntpdate, rdate, sntp or ntpdig in crontab file /etc/crontab +2021-01-07 17:45:13 Result: no ntpdate, rdate, sntp or ntpdig reference found in crontab file /etc/crontab +2021-01-07 17:45:13 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/apt-compat +2021-01-07 17:45:13 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/bsdmainutils +2021-01-07 17:45:13 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/dpkg +2021-01-07 17:45:13 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/logrotate +2021-01-07 17:45:13 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/man-db +2021-01-07 17:45:13 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/ntp +2021-01-07 17:45:13 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/passwd +2021-01-07 17:45:13 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.weekly/man-db +2021-01-07 17:45:13 Result: no ntpdate or rdate found in cron directories +2021-01-07 17:45:13 Test: checking for file /etc/network/if-up.d/ntpdate +2021-01-07 17:45:13 Result: file /etc/network/if-up.d/ntpdate does not exist +2021-01-07 17:45:13 Result: Found a time syncing daemon/client. +2021-01-07 17:45:13 Hardening: assigned maximum number of hardening points for this item (3). Currently having 165 points (out of 243) +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Skipped test TIME-3106 (Check systemd NTP time synchronization status) +2021-01-07 17:45:13 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Performing test ID TIME-3112 (Check active NTP associations ID's) +2021-01-07 17:45:13 Test: Checking for NTP association ID's from ntpq peers list +2021-01-07 17:45:13 Result: Found one or more association ID's +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Performing test ID TIME-3116 (Check peers with stratum value of 16) +2021-01-07 17:45:13 Test: Checking stratum 16 sources from ntpq peers list +2021-01-07 17:45:13 Result: All peers are lower than stratum 16 +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Performing test ID TIME-3120 (Check unreliable NTP peers) +2021-01-07 17:45:13 Test: Checking unreliable ntp peers +2021-01-07 17:45:13 Result: No unreliable peers found +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Performing test ID TIME-3124 (Check selected time source) +2021-01-07 17:45:13 Test: Checking selected time source +2021-01-07 17:45:13 Result: Found selected time source (value: 169.254.169.254) +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Performing test ID TIME-3128 (Check preferred time source) +2021-01-07 17:45:13 Test: Checking preferred time source +2021-01-07 17:45:13 Result: No other time source candidates found +2021-01-07 17:45:13 Suggestion: Check ntpq peers output for time source candidates [test:TIME-3128] [details:-] [solution:-] +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Performing test ID TIME-3132 (Check NTP falsetickers) +2021-01-07 17:45:13 Test: Checking preferred time source +2021-01-07 17:45:13 Result: No falsetickers found (items preceding with an 'x') +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Performing test ID TIME-3136 (Check NTP protocol version) +2021-01-07 17:45:13 Test: Checking NTP protocol version (ntpq -c ntpversion) +2021-01-07 17:45:13 Result: Found NTP version 2 +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Performing test ID TIME-3148 (Check TZ variable) +2021-01-07 17:45:13 Test: testing for TZ variable +2021-01-07 17:45:13 Result: found TZ variable with value notset +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Skipped test TIME-3160 (Check empty NTP step-tickers) +2021-01-07 17:45:13 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Performing test ID TIME-3170 (Check configuration files) +2021-01-07 17:45:13 Result: found /etc/ntp.conf +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Skipped test TIME-3180 (Report if ntpctl cannot communicate with OpenNTPD) +2021-01-07 17:45:13 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Skipped test TIME-3181 (Check status of OpenNTPD time synchronisation) +2021-01-07 17:45:13 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Skipped test TIME-3182 (Check OpenNTPD has working peers) +2021-01-07 17:45:13 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Skipped test TIME-3185 (Check systemd-timesyncd synchronized time) +2021-01-07 17:45:13 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:13 Security check: file is normal +2021-01-07 17:45:13 Checking permissions of /home/ktdw73/scans/lynis/include/tests_crypto +2021-01-07 17:45:13 File permissions are OK +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Action: Performing tests from category: Cryptography +2021-01-07 17:45:13 ==== +2021-01-07 17:45:13 Performing test ID CRYP-7902 (Check expire date of SSL certificates) +2021-01-07 17:45:13 Paths to scan: /etc/apache2 /etc/dovecot /etc/httpd /etc/letsencrypt /etc/pki /etc/postfix /etc/refind.d/keys /etc/ssl /opt/psa/var/certificates /usr/local/psa/var/certificates /usr/local/share/ca-certificates /usr/share/ca-certificates /usr/share/gnupg /var/www /srv/www +2021-01-07 17:45:13 Paths to ignore: /etc/letsencrypt/archive +2021-01-07 17:45:13 Result: SSL path /etc/apache2 does not exist +2021-01-07 17:45:13 Result: SSL path /etc/dovecot does not exist +2021-01-07 17:45:13 Result: SSL path /etc/httpd does not exist +2021-01-07 17:45:13 Result: SSL path /etc/letsencrypt does not exist +2021-01-07 17:45:13 Result: SSL path /etc/pki does not exist +2021-01-07 17:45:13 Result: SSL path /etc/postfix does not exist +2021-01-07 17:45:13 Result: SSL path /etc/refind.d/keys does not exist +2021-01-07 17:45:13 Test: check if we can access /etc/ssl (escaped: /etc/ssl) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /etc/ssl is readable (or directory accessible). +2021-01-07 17:45:13 Result: found directory /etc/ssl +2021-01-07 17:45:13 Test: check if we can access /etc/ssl/certs/ca-certificates.crt (escaped: /etc/ssl/certs/ca-certificates.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /etc/ssl/certs/ca-certificates.crt is readable (or directory accessible). +2021-01-07 17:45:13 Result: file '/etc/ssl/certs/ca-certificates.crt' does most likely not belong to a package +2021-01-07 17:45:13 Result: file is a certificate file +2021-01-07 17:45:13 Result: certificate /etc/ssl/certs/ca-certificates.crt seems to be correct and still valid +2021-01-07 17:45:13 Result: found 1 certificates in /etc/ssl +2021-01-07 17:45:13 Result: SSL path /opt/psa/var/certificates does not exist +2021-01-07 17:45:13 Result: SSL path /usr/local/psa/var/certificates does not exist +2021-01-07 17:45:13 Test: check if we can access /usr/local/share/ca-certificates (escaped: /usr/local/share/ca-certificates) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/local/share/ca-certificates is readable (or directory accessible). +2021-01-07 17:45:13 Result: found directory /usr/local/share/ca-certificates +2021-01-07 17:45:13 Result: found 0 certificates in /usr/local/share/ca-certificates +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates (escaped: /usr/share/ca-certificates) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates is readable (or directory accessible). +2021-01-07 17:45:13 Result: found directory /usr/share/ca-certificates +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates/mozilla/ACCVRAIZ1.crt (escaped: /usr/share/ca-certificates/mozilla/ACCVRAIZ1.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates/mozilla/ACCVRAIZ1.crt is readable (or directory accessible). +2021-01-07 17:45:13 Result: file '/usr/share/ca-certificates/mozilla/ACCVRAIZ1.crt' belongs to package (ca-certificates) +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates/mozilla/AC_RAIZ_FNMT-RCM.crt (escaped: /usr/share/ca-certificates/mozilla/AC_RAIZ_FNMT-RCM.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates/mozilla/AC_RAIZ_FNMT-RCM.crt is readable (or directory accessible). +2021-01-07 17:45:13 Result: file '/usr/share/ca-certificates/mozilla/AC_RAIZ_FNMT-RCM.crt' belongs to package (ca-certificates) +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates/mozilla/Actalis_Authentication_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Actalis_Authentication_Root_CA.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates/mozilla/Actalis_Authentication_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:13 Result: file '/usr/share/ca-certificates/mozilla/Actalis_Authentication_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates/mozilla/AffirmTrust_Commercial.crt (escaped: /usr/share/ca-certificates/mozilla/AffirmTrust_Commercial.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates/mozilla/AffirmTrust_Commercial.crt is readable (or directory accessible). +2021-01-07 17:45:13 Result: file '/usr/share/ca-certificates/mozilla/AffirmTrust_Commercial.crt' belongs to package (ca-certificates) +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates/mozilla/AffirmTrust_Networking.crt (escaped: /usr/share/ca-certificates/mozilla/AffirmTrust_Networking.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates/mozilla/AffirmTrust_Networking.crt is readable (or directory accessible). +2021-01-07 17:45:13 Result: file '/usr/share/ca-certificates/mozilla/AffirmTrust_Networking.crt' belongs to package (ca-certificates) +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates/mozilla/AffirmTrust_Premium.crt (escaped: /usr/share/ca-certificates/mozilla/AffirmTrust_Premium.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates/mozilla/AffirmTrust_Premium.crt is readable (or directory accessible). +2021-01-07 17:45:13 Result: file '/usr/share/ca-certificates/mozilla/AffirmTrust_Premium.crt' belongs to package (ca-certificates) +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates/mozilla/AffirmTrust_Premium_ECC.crt (escaped: /usr/share/ca-certificates/mozilla/AffirmTrust_Premium_ECC.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates/mozilla/AffirmTrust_Premium_ECC.crt is readable (or directory accessible). +2021-01-07 17:45:13 Result: file '/usr/share/ca-certificates/mozilla/AffirmTrust_Premium_ECC.crt' belongs to package (ca-certificates) +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates/mozilla/Amazon_Root_CA_1.crt (escaped: /usr/share/ca-certificates/mozilla/Amazon_Root_CA_1.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates/mozilla/Amazon_Root_CA_1.crt is readable (or directory accessible). +2021-01-07 17:45:13 Result: file '/usr/share/ca-certificates/mozilla/Amazon_Root_CA_1.crt' belongs to package (ca-certificates) +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates/mozilla/Amazon_Root_CA_2.crt (escaped: /usr/share/ca-certificates/mozilla/Amazon_Root_CA_2.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates/mozilla/Amazon_Root_CA_2.crt is readable (or directory accessible). +2021-01-07 17:45:13 Result: file '/usr/share/ca-certificates/mozilla/Amazon_Root_CA_2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates/mozilla/Amazon_Root_CA_3.crt (escaped: /usr/share/ca-certificates/mozilla/Amazon_Root_CA_3.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates/mozilla/Amazon_Root_CA_3.crt is readable (or directory accessible). +2021-01-07 17:45:13 Result: file '/usr/share/ca-certificates/mozilla/Amazon_Root_CA_3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates/mozilla/Amazon_Root_CA_4.crt (escaped: /usr/share/ca-certificates/mozilla/Amazon_Root_CA_4.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates/mozilla/Amazon_Root_CA_4.crt is readable (or directory accessible). +2021-01-07 17:45:13 Result: file '/usr/share/ca-certificates/mozilla/Amazon_Root_CA_4.crt' belongs to package (ca-certificates) +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates/mozilla/Atos_TrustedRoot_2011.crt (escaped: /usr/share/ca-certificates/mozilla/Atos_TrustedRoot_2011.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates/mozilla/Atos_TrustedRoot_2011.crt is readable (or directory accessible). +2021-01-07 17:45:13 Result: file '/usr/share/ca-certificates/mozilla/Atos_TrustedRoot_2011.crt' belongs to package (ca-certificates) +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates/mozilla/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.crt (escaped: /usr/share/ca-certificates/mozilla/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates/mozilla/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.crt is readable (or directory accessible). +2021-01-07 17:45:13 Result: file '/usr/share/ca-certificates/mozilla/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.crt' belongs to package (ca-certificates) +2021-01-07 17:45:13 Test: check if we can access /usr/share/ca-certificates/mozilla/Baltimore_CyberTrust_Root.crt (escaped: /usr/share/ca-certificates/mozilla/Baltimore_CyberTrust_Root.crt) +2021-01-07 17:45:13 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:13 Result: file /usr/share/ca-certificates/mozilla/Baltimore_CyberTrust_Root.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/Baltimore_CyberTrust_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/Buypass_Class_2_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Buypass_Class_2_Root_CA.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/Buypass_Class_2_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/Buypass_Class_2_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/Buypass_Class_3_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Buypass_Class_3_Root_CA.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/Buypass_Class_3_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/Buypass_Class_3_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/CA_Disig_Root_R2.crt (escaped: /usr/share/ca-certificates/mozilla/CA_Disig_Root_R2.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/CA_Disig_Root_R2.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/CA_Disig_Root_R2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/CFCA_EV_ROOT.crt (escaped: /usr/share/ca-certificates/mozilla/CFCA_EV_ROOT.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/CFCA_EV_ROOT.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/CFCA_EV_ROOT.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/COMODO_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/COMODO_Certification_Authority.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/COMODO_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/COMODO_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/COMODO_ECC_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/COMODO_ECC_Certification_Authority.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/COMODO_ECC_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/COMODO_ECC_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/COMODO_RSA_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/COMODO_RSA_Certification_Authority.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/COMODO_RSA_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/COMODO_RSA_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/Certigna.crt (escaped: /usr/share/ca-certificates/mozilla/Certigna.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/Certigna.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/Certigna.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/Certigna_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Certigna_Root_CA.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/Certigna_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/Certigna_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA_2.crt (escaped: /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA_2.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA_2.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA_2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/Chambers_of_Commerce_Root_-_2008.crt (escaped: /usr/share/ca-certificates/mozilla/Chambers_of_Commerce_Root_-_2008.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/Chambers_of_Commerce_Root_-_2008.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/Chambers_of_Commerce_Root_-_2008.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/Comodo_AAA_Services_root.crt (escaped: /usr/share/ca-certificates/mozilla/Comodo_AAA_Services_root.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/Comodo_AAA_Services_root.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/Comodo_AAA_Services_root.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/Cybertrust_Global_Root.crt (escaped: /usr/share/ca-certificates/mozilla/Cybertrust_Global_Root.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/Cybertrust_Global_Root.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/Cybertrust_Global_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_2009.crt (escaped: /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_2009.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_2009.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_2009.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_EV_2009.crt (escaped: /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_EV_2009.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_EV_2009.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_EV_2009.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/DST_Root_CA_X3.crt (escaped: /usr/share/ca-certificates/mozilla/DST_Root_CA_X3.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/DST_Root_CA_X3.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/DST_Root_CA_X3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_CA.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G2.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G2.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G2.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G3.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G3.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G3.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_CA.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Global_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G2.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G2.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G2.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G3.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G3.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G3.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_High_Assurance_EV_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_High_Assurance_EV_Root_CA.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/DigiCert_High_Assurance_EV_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_High_Assurance_EV_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Trusted_Root_G4.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Trusted_Root_G4.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Trusted_Root_G4.crt is readable (or directory accessible). +2021-01-07 17:45:14 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Trusted_Root_G4.crt' belongs to package (ca-certificates) +2021-01-07 17:45:14 Test: check if we can access /usr/share/ca-certificates/mozilla/E-Tugra_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/E-Tugra_Certification_Authority.crt) +2021-01-07 17:45:14 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:14 Result: file /usr/share/ca-certificates/mozilla/E-Tugra_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/E-Tugra_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/EC-ACC.crt (escaped: /usr/share/ca-certificates/mozilla/EC-ACC.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/EC-ACC.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/EC-ACC.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/EE_Certification_Centre_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/EE_Certification_Centre_Root_CA.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/EE_Certification_Centre_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/EE_Certification_Centre_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust.net_Premium_2048_Secure_Server_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust.net_Premium_2048_Secure_Server_CA.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/Entrust.net_Premium_2048_Secure_Server_CA.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/Entrust.net_Premium_2048_Secure_Server_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_EC1.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_EC1.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_EC1.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_EC1.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G2.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G2.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G4.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G4.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G4.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G4.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/GDCA_TrustAUTH_R5_ROOT.crt (escaped: /usr/share/ca-certificates/mozilla/GDCA_TrustAUTH_R5_ROOT.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/GDCA_TrustAUTH_R5_ROOT.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/GDCA_TrustAUTH_R5_ROOT.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/GTS_Root_R1.crt (escaped: /usr/share/ca-certificates/mozilla/GTS_Root_R1.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/GTS_Root_R1.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/GTS_Root_R1.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/GTS_Root_R2.crt (escaped: /usr/share/ca-certificates/mozilla/GTS_Root_R2.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/GTS_Root_R2.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/GTS_Root_R2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/GTS_Root_R3.crt (escaped: /usr/share/ca-certificates/mozilla/GTS_Root_R3.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/GTS_Root_R3.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/GTS_Root_R3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/GTS_Root_R4.crt (escaped: /usr/share/ca-certificates/mozilla/GTS_Root_R4.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/GTS_Root_R4.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/GTS_Root_R4.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/GeoTrust_Universal_CA_2.crt (escaped: /usr/share/ca-certificates/mozilla/GeoTrust_Universal_CA_2.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/GeoTrust_Universal_CA_2.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/GeoTrust_Universal_CA_2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R4.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R4.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R4.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R4.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R5.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R5.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R5.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R5.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R2.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R2.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R2.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R3.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R3.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R3.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R6.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R6.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R6.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R6.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/Global_Chambersign_Root_-_2008.crt (escaped: /usr/share/ca-certificates/mozilla/Global_Chambersign_Root_-_2008.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/Global_Chambersign_Root_-_2008.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/Global_Chambersign_Root_-_2008.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/Go_Daddy_Class_2_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Go_Daddy_Class_2_CA.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/Go_Daddy_Class_2_CA.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/Go_Daddy_Class_2_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/Go_Daddy_Root_Certificate_Authority_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Go_Daddy_Root_Certificate_Authority_-_G2.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/Go_Daddy_Root_Certificate_Authority_-_G2.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/Go_Daddy_Root_Certificate_Authority_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.crt (escaped: /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2011.crt (escaped: /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2011.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2011.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2011.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2015.crt (escaped: /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2015.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2015.crt is readable (or directory accessible). +2021-01-07 17:45:15 Result: file '/usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2015.crt' belongs to package (ca-certificates) +2021-01-07 17:45:15 Test: check if we can access /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_1.crt (escaped: /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_1.crt) +2021-01-07 17:45:15 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:15 Result: file /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_1.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_1.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_3.crt (escaped: /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_3.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_3.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/ISRG_Root_X1.crt (escaped: /usr/share/ca-certificates/mozilla/ISRG_Root_X1.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/ISRG_Root_X1.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/ISRG_Root_X1.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/IdenTrust_Commercial_Root_CA_1.crt (escaped: /usr/share/ca-certificates/mozilla/IdenTrust_Commercial_Root_CA_1.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/IdenTrust_Commercial_Root_CA_1.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/IdenTrust_Commercial_Root_CA_1.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/IdenTrust_Public_Sector_Root_CA_1.crt (escaped: /usr/share/ca-certificates/mozilla/IdenTrust_Public_Sector_Root_CA_1.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/IdenTrust_Public_Sector_Root_CA_1.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/IdenTrust_Public_Sector_Root_CA_1.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/Izenpe.com.crt (escaped: /usr/share/ca-certificates/mozilla/Izenpe.com.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/Izenpe.com.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/Izenpe.com.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/LuxTrust_Global_Root_2.crt (escaped: /usr/share/ca-certificates/mozilla/LuxTrust_Global_Root_2.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/LuxTrust_Global_Root_2.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/LuxTrust_Global_Root_2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/Microsec_e-Szigno_Root_CA_2009.crt (escaped: /usr/share/ca-certificates/mozilla/Microsec_e-Szigno_Root_CA_2009.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/Microsec_e-Szigno_Root_CA_2009.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/Microsec_e-Szigno_Root_CA_2009.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/NetLock_Arany_=Class_Gold=_Főtanúsítvány.crt (escaped: /usr/share/ca-certificates/mozilla/NetLock_Arany_=Class_Gold=_Főtanúsítvány.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/NetLock_Arany_=Class_Gold=_Főtanúsítvány.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/NetLock_Arany_=Class_Gold=_Főtanúsítvány.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/Network_Solutions_Certificate_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/Network_Solutions_Certificate_Authority.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/Network_Solutions_Certificate_Authority.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/Network_Solutions_Certificate_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GA_CA.crt (escaped: /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GA_CA.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GA_CA.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GA_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GB_CA.crt (escaped: /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GB_CA.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GB_CA.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GB_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GC_CA.crt (escaped: /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GC_CA.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GC_CA.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GC_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_1_G3.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_1_G3.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_1_G3.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_1_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2_G3.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2_G3.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2_G3.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3_G3.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3_G3.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3_G3.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_ECC.crt (escaped: /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_ECC.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_ECC.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_ECC.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_RSA_R2.crt (escaped: /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_RSA_R2.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_RSA_R2.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_RSA_R2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_ECC.crt (escaped: /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_ECC.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_ECC.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_ECC.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_RSA.crt (escaped: /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_RSA.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_RSA.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_RSA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/SZAFIR_ROOT_CA2.crt (escaped: /usr/share/ca-certificates/mozilla/SZAFIR_ROOT_CA2.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/SZAFIR_ROOT_CA2.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/SZAFIR_ROOT_CA2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/SecureSign_RootCA11.crt (escaped: /usr/share/ca-certificates/mozilla/SecureSign_RootCA11.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/SecureSign_RootCA11.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/SecureSign_RootCA11.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/SecureTrust_CA.crt (escaped: /usr/share/ca-certificates/mozilla/SecureTrust_CA.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/SecureTrust_CA.crt is readable (or directory accessible). +2021-01-07 17:45:16 Result: file '/usr/share/ca-certificates/mozilla/SecureTrust_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:16 Test: check if we can access /usr/share/ca-certificates/mozilla/Secure_Global_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Secure_Global_CA.crt) +2021-01-07 17:45:16 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:16 Result: file /usr/share/ca-certificates/mozilla/Secure_Global_CA.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/Secure_Global_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/Security_Communication_RootCA2.crt (escaped: /usr/share/ca-certificates/mozilla/Security_Communication_RootCA2.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/Security_Communication_RootCA2.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/Security_Communication_RootCA2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/Security_Communication_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Security_Communication_Root_CA.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/Security_Communication_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/Security_Communication_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/Sonera_Class_2_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Sonera_Class_2_Root_CA.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/Sonera_Class_2_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/Sonera_Class_2_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_EV_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_EV_Root_CA.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_EV_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_EV_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G2.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G2.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G3.crt (escaped: /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G3.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G3.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/Starfield_Class_2_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Starfield_Class_2_CA.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/Starfield_Class_2_CA.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/Starfield_Class_2_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/Starfield_Root_Certificate_Authority_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Starfield_Root_Certificate_Authority_-_G2.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/Starfield_Root_Certificate_Authority_-_G2.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/Starfield_Root_Certificate_Authority_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/Starfield_Services_Root_Certificate_Authority_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Starfield_Services_Root_Certificate_Authority_-_G2.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/Starfield_Services_Root_Certificate_Authority_-_G2.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/Starfield_Services_Root_Certificate_Authority_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/SwissSign_Gold_CA_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/SwissSign_Gold_CA_-_G2.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/SwissSign_Gold_CA_-_G2.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/SwissSign_Gold_CA_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/SwissSign_Silver_CA_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/SwissSign_Silver_CA_-_G2.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/SwissSign_Silver_CA_-_G2.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/SwissSign_Silver_CA_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_2.crt (escaped: /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_2.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_2.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_3.crt (escaped: /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_3.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_3.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.crt (escaped: /usr/share/ca-certificates/mozilla/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/TWCA_Global_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/TWCA_Global_Root_CA.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/TWCA_Global_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/TWCA_Global_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/TWCA_Root_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/TWCA_Root_Certification_Authority.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/TWCA_Root_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/TWCA_Root_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/Taiwan_GRCA.crt (escaped: /usr/share/ca-certificates/mozilla/Taiwan_GRCA.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/Taiwan_GRCA.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/Taiwan_GRCA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/TeliaSonera_Root_CA_v1.crt (escaped: /usr/share/ca-certificates/mozilla/TeliaSonera_Root_CA_v1.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/TeliaSonera_Root_CA_v1.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/TeliaSonera_Root_CA_v1.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/TrustCor_ECA-1.crt (escaped: /usr/share/ca-certificates/mozilla/TrustCor_ECA-1.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/TrustCor_ECA-1.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/TrustCor_ECA-1.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-1.crt (escaped: /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-1.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-1.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-1.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-2.crt (escaped: /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-2.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-2.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-2.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/Trustis_FPS_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Trustis_FPS_Root_CA.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/Trustis_FPS_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/Trustis_FPS_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/UCA_Extended_Validation_Root.crt (escaped: /usr/share/ca-certificates/mozilla/UCA_Extended_Validation_Root.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/UCA_Extended_Validation_Root.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/UCA_Extended_Validation_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/UCA_Global_G2_Root.crt (escaped: /usr/share/ca-certificates/mozilla/UCA_Global_G2_Root.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/UCA_Global_G2_Root.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/UCA_Global_G2_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/USERTrust_ECC_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/USERTrust_ECC_Certification_Authority.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/USERTrust_ECC_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:45:17 Result: file '/usr/share/ca-certificates/mozilla/USERTrust_ECC_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:45:17 Test: check if we can access /usr/share/ca-certificates/mozilla/USERTrust_RSA_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/USERTrust_RSA_Certification_Authority.crt) +2021-01-07 17:45:17 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:17 Result: file /usr/share/ca-certificates/mozilla/USERTrust_RSA_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:45:18 Result: file '/usr/share/ca-certificates/mozilla/USERTrust_RSA_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:45:18 Test: check if we can access /usr/share/ca-certificates/mozilla/Verisign_Class_3_Public_Primary_Certification_Authority_-_G3.crt (escaped: /usr/share/ca-certificates/mozilla/Verisign_Class_3_Public_Primary_Certification_Authority_-_G3.crt) +2021-01-07 17:45:18 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:18 Result: file /usr/share/ca-certificates/mozilla/Verisign_Class_3_Public_Primary_Certification_Authority_-_G3.crt is readable (or directory accessible). +2021-01-07 17:45:18 Result: file '/usr/share/ca-certificates/mozilla/Verisign_Class_3_Public_Primary_Certification_Authority_-_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:18 Test: check if we can access /usr/share/ca-certificates/mozilla/XRamp_Global_CA_Root.crt (escaped: /usr/share/ca-certificates/mozilla/XRamp_Global_CA_Root.crt) +2021-01-07 17:45:18 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:18 Result: file /usr/share/ca-certificates/mozilla/XRamp_Global_CA_Root.crt is readable (or directory accessible). +2021-01-07 17:45:18 Result: file '/usr/share/ca-certificates/mozilla/XRamp_Global_CA_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:45:18 Test: check if we can access /usr/share/ca-certificates/mozilla/certSIGN_ROOT_CA.crt (escaped: /usr/share/ca-certificates/mozilla/certSIGN_ROOT_CA.crt) +2021-01-07 17:45:18 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:18 Result: file /usr/share/ca-certificates/mozilla/certSIGN_ROOT_CA.crt is readable (or directory accessible). +2021-01-07 17:45:18 Result: file '/usr/share/ca-certificates/mozilla/certSIGN_ROOT_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:45:18 Test: check if we can access /usr/share/ca-certificates/mozilla/ePKI_Root_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/ePKI_Root_Certification_Authority.crt) +2021-01-07 17:45:18 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:18 Result: file /usr/share/ca-certificates/mozilla/ePKI_Root_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:45:18 Result: file '/usr/share/ca-certificates/mozilla/ePKI_Root_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:45:18 Test: check if we can access /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_C3.crt (escaped: /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_C3.crt) +2021-01-07 17:45:18 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:18 Result: file /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_C3.crt is readable (or directory accessible). +2021-01-07 17:45:18 Result: file '/usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_C3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:18 Test: check if we can access /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_G3.crt (escaped: /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_G3.crt) +2021-01-07 17:45:18 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:18 Result: file /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_G3.crt is readable (or directory accessible). +2021-01-07 17:45:18 Result: file '/usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:45:18 Test: check if we can access /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_C1.crt (escaped: /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_C1.crt) +2021-01-07 17:45:18 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:18 Result: file /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_C1.crt is readable (or directory accessible). +2021-01-07 17:45:18 Result: file '/usr/share/ca-certificates/mozilla/emSign_Root_CA_-_C1.crt' belongs to package (ca-certificates) +2021-01-07 17:45:18 Test: check if we can access /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_G1.crt (escaped: /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_G1.crt) +2021-01-07 17:45:18 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:18 Result: file /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_G1.crt is readable (or directory accessible). +2021-01-07 17:45:18 Result: file '/usr/share/ca-certificates/mozilla/emSign_Root_CA_-_G1.crt' belongs to package (ca-certificates) +2021-01-07 17:45:18 Result: found 126 certificates in /usr/share/ca-certificates +2021-01-07 17:45:18 Test: check if we can access /usr/share/gnupg (escaped: /usr/share/gnupg) +2021-01-07 17:45:18 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:45:18 Result: file /usr/share/gnupg is readable (or directory accessible). +2021-01-07 17:45:18 Result: found directory /usr/share/gnupg +2021-01-07 17:45:18 Result: found 0 certificates in /usr/share/gnupg +2021-01-07 17:45:18 Result: SSL path /var/www does not exist +2021-01-07 17:45:18 Result: SSL path /srv/www does not exist +2021-01-07 17:45:18 Result: found a total of 127 certificates +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID CRYP-7930 (Determine if system uses LUKS block device encryption) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test CRYP-7931 (Determine if system uses encrypted swap) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID CRYP-8002 (Gather available kernel entropy) +2021-01-07 17:45:18 Result: found kernel entropy value of 1484 +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID CRYP-8004 (Presence of hardware random number generators) +2021-01-07 17:45:18 Test: looking for /sys/class/misc/hw_random/rng_current +2021-01-07 17:45:18 Result: positive match, found RNG: virtio_rng.0 +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'rngd' not found +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID CRYP-8005 (Presence of software pseudo random number generators) +2021-01-07 17:45:18 Test: looking for software pseudo random number generators +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'audio-entropyd' not found +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'haveged' not found +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'jitterentropy-rngd' not found +2021-01-07 17:45:18 Security check: file is normal +2021-01-07 17:45:18 Checking permissions of /home/ktdw73/scans/lynis/include/tests_virtualization +2021-01-07 17:45:18 File permissions are OK +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Action: Performing tests from category: Virtualization +2021-01-07 17:45:18 Security check: file is normal +2021-01-07 17:45:18 Checking permissions of /home/ktdw73/scans/lynis/include/tests_containers +2021-01-07 17:45:18 File permissions are OK +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Action: Performing tests from category: Containers +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test CONT-8004 (Query running Solaris zones) +2021-01-07 17:45:18 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID CONT-8102 (Checking Docker status and information) +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'dockerd' not found +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test CONT-8104 (Checking Docker info for any warnings) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test CONT-8106 (Gather basic stats from Docker) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test CONT-8107 (Check number of Docker containers) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test CONT-8108 (Check file permissions for Docker files) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 Security check: file is normal +2021-01-07 17:45:18 Checking permissions of /home/ktdw73/scans/lynis/include/tests_mac_frameworks +2021-01-07 17:45:18 File permissions are OK +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Action: Performing tests from category: Security frameworks +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID MACF-6204 (Check AppArmor presence) +2021-01-07 17:45:18 Result: aa-status binary not found, AppArmor not installed +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test MACF-6208 (Check if AppArmor is enabled) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID MACF-6232 (Check SELINUX presence) +2021-01-07 17:45:18 Test: checking if we have sestatus binary +2021-01-07 17:45:18 Result: sestatus binary NOT found +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test MACF-6234 (Check SELINUX status) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID MACF-6240 (Check TOMOYO Linux presence) +2021-01-07 17:45:18 Test: checking if we have tomoyo-init binary +2021-01-07 17:45:18 Result: tomoyo-init binary not found +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test MACF-6242 (Check TOMOYO Linux status) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID RBAC-6272 (Check grsecurity presence) +2021-01-07 17:45:18 Result: no grsecurity found in kernel config +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID MACF-6290 (Check for implemented MAC framework) +2021-01-07 17:45:18 Hardening: assigned partial number of hardening points (2 of 3). Currently having 167 points (out of 246) +2021-01-07 17:45:18 Result: found no implemented MAC framework +2021-01-07 17:45:18 Security check: file is normal +2021-01-07 17:45:18 Checking permissions of /home/ktdw73/scans/lynis/include/tests_file_integrity +2021-01-07 17:45:18 File permissions are OK +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Action: Performing tests from category: Software: file integrity +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID FINT-4310 (AFICK availability) +2021-01-07 17:45:18 Test: Checking AFICK binary +2021-01-07 17:45:18 Result: AFICK is not installed +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID FINT-4314 (AIDE availability) +2021-01-07 17:45:18 Test: Checking AIDE binary +2021-01-07 17:45:18 Result: AIDE is not installed +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test FINT-4315 (Check AIDE configuration file) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test FINT-4316 (Presence of AIDE database and size check) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID FINT-4318 (Osiris availability) +2021-01-07 17:45:18 Test: Checking Osiris binary +2021-01-07 17:45:18 Result: Osiris is not installed +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID FINT-4322 (Samhain availability) +2021-01-07 17:45:18 Test: Checking Samhain binary +2021-01-07 17:45:18 Result: Samhain is not installed +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID FINT-4326 (Tripwire availability) +2021-01-07 17:45:18 Test: Checking Tripwire binary +2021-01-07 17:45:18 Result: Tripwire is not installed +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID FINT-4328 (OSSEC syscheck daemon running) +2021-01-07 17:45:18 Test: Checking if OSSEC syscheck daemon is running +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'ossec-syscheckd' not found +2021-01-07 17:45:18 Result: syscheck (OSSEC) is not active +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID FINT-4330 (mtree availability) +2021-01-07 17:45:18 Test: Checking mtree binary +2021-01-07 17:45:18 Result: mtree is not installed +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test FINT-4334 (Check lfd daemon status) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test FINT-4336 (Check lfd configuration status) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID FINT-4338 (osqueryd syscheck daemon running) +2021-01-07 17:45:18 Test: Checking if osqueryd syscheck daemon is running +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'osqueryd' not found +2021-01-07 17:45:18 Result: syscheck (osquery) not installed +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test FINT-4339 (Check IMA/EVM status) +2021-01-07 17:45:18 Reason to skip: No evmctl binary found +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test FINT-4340 (Check dm-integrity status) +2021-01-07 17:45:18 Reason to skip: No integritysetup binary found +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test FINT-4341 (Check dm-verity status) +2021-01-07 17:45:18 Reason to skip: No veritysetup binary found +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test FINT-4402 (AIDE configuration: Checksums (SHA256 or SHA512)) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID FINT-4350 (File integrity software installed) +2021-01-07 17:45:18 Test: Check if at least on file integrity tool is available/installed +2021-01-07 17:45:18 Result: No file integrity tools found +2021-01-07 17:45:18 Suggestion: Install a file integrity tool to monitor changes to critical and sensitive files [test:FINT-4350] [details:-] [solution:-] +2021-01-07 17:45:18 Hardening: assigned partial number of hardening points (0 of 5). Currently having 167 points (out of 251) +2021-01-07 17:45:18 Security check: file is normal +2021-01-07 17:45:18 Checking permissions of /home/ktdw73/scans/lynis/include/tests_tooling +2021-01-07 17:45:18 File permissions are OK +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Action: Performing tests from category: Software: System tooling +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID TOOL-5002 (Checking for automation tools) +2021-01-07 17:45:18 Test: checking if directory /root/.ansible exists +2021-01-07 17:45:18 Result: directory /root/.ansible NOT found +2021-01-07 17:45:18 Test: checking if directory /etc/ansible exists +2021-01-07 17:45:18 Result: directory /etc/ansible NOT found +2021-01-07 17:45:18 Test: checking if directory /root/.ansible exists +2021-01-07 17:45:18 Result: directory /root/.ansible NOT found +2021-01-07 17:45:18 Test: checking if directory /tmp/.ansible exists +2021-01-07 17:45:18 Result: directory /tmp/.ansible NOT found +2021-01-07 17:45:18 Test: checking if file /var/log/ansible.log exists +2021-01-07 17:45:18 Result: file /var/log/ansible.log NOT found +2021-01-07 17:45:18 Test: checking if file ~/.ansible-retry exists +2021-01-07 17:45:18 Result: file ~/.ansible-retry NOT found +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'puppet master' not found +2021-01-07 17:45:18 Suggestion: Determine if automation tools are present for system management [test:TOOL-5002] [details:-] [solution:-] +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID TOOL-5102 (Check for presence of Fail2ban) +2021-01-07 17:45:18 Result: Fail2ban not present (fail2ban-server not found) +2021-01-07 17:45:18 Checking Fail2ban configuration file +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test TOOL-5104 (Enabled tests in Fail2ban) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID TOOL-5120 (Check for presence of Snort) +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'snort' not found +2021-01-07 17:45:18 Result: Snort not present (Snort not running) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID TOOL-5122 (Check Snort configuration file) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID TOOL-5130 (Check for active Suricata daemon) +2021-01-07 17:45:18 Result: Suricata not installed (suricata not found) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID TOOL-5126 (Check for active OSSEC daemon) +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'ossec-analysisd' not found +2021-01-07 17:45:18 Result: OSSEC analysis daemon not active +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'ossec-agentd' not found +2021-01-07 17:45:18 Result: OSSEC agent daemon not active +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID TOOL-5190 (Check presence of IDS/IPS tool) +2021-01-07 17:45:18 Hardening: assigned partial number of hardening points (0 of 2). Currently having 167 points (out of 253) +2021-01-07 17:45:18 Security check: file is normal +2021-01-07 17:45:18 Checking permissions of /home/ktdw73/scans/lynis/include/tests_malware +2021-01-07 17:45:18 File permissions are OK +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Action: Performing tests from category: Software: Malware +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID MALW-3275 (Check for chkrootkit) +2021-01-07 17:45:18 Test: checking presence chkrootkit +2021-01-07 17:45:18 Result: chkrootkit not found +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID MALW-3276 (Check for Rootkit Hunter) +2021-01-07 17:45:18 Test: checking presence Rootkit Hunter +2021-01-07 17:45:18 Result: Rootkit Hunter not found +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID MALW-3278 (Check for LMD) +2021-01-07 17:45:18 Test: checking presence LMD +2021-01-07 17:45:18 Result: LMD not found +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID MALW-3280 (Check if anti-virus tool is installed) +2021-01-07 17:45:18 Test: checking process com.avast.daemon +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'com.avast.daemon' not found +2021-01-07 17:45:18 Test: checking process Avira daemon +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'avqmd' not found +2021-01-07 17:45:18 Test: checking process epagd +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'bdagentd' not found +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'epagd' not found +2021-01-07 17:45:18 Test: checking process falcon-sensor (CrowdStrike) +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'falcon-sensor' not found +2021-01-07 17:45:18 Test: checking process CylanceSvc +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'CylanceSvc' not found +2021-01-07 17:45:18 Test: checking process esets_daemon +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'esets_daemon' not found +2021-01-07 17:45:18 Test: checking process wdserver or klnagent (Kaspersky) +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'klnagent' not found +2021-01-07 17:45:18 Test: checking process cma or cmdagent (McAfee) +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'cmdagent' not found +2021-01-07 17:45:18 Test: checking process savscand +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'savscand' not found +2021-01-07 17:45:18 Test: checking process SophosScanD +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'SophosScanD' not found +2021-01-07 17:45:18 Test: checking process rtvscand +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'rtvscand' not found +2021-01-07 17:45:18 Test: checking process Symantec management client service +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'smcd' not found +2021-01-07 17:45:18 Test: checking process Symantec Endpoint Protection configuration service +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'symcfgd' not found +2021-01-07 17:45:18 Test: checking process synoavd +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'synoavd' not found +2021-01-07 17:45:18 Test: checking process TmccMac to test for Trend Micro anti-virus (macOS) +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'TmccMac' not found +2021-01-07 17:45:18 Result: no commercial anti-virus tools found +2021-01-07 17:45:18 Hardening: assigned partial number of hardening points (0 of 3). Currently having 167 points (out of 256) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID MALW-3282 (Check for clamscan) +2021-01-07 17:45:18 Test: checking presence clamscan +2021-01-07 17:45:18 Result: clamscan couldn't be found +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Performing test ID MALW-3284 (Check for clamd) +2021-01-07 17:45:18 Test: checking running ClamAV daemon (clamd) +2021-01-07 17:45:18 Performing pgrep scan without uid +2021-01-07 17:45:18 IsRunning: process 'clamd' not found +2021-01-07 17:45:18 Result: clamd not running +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test MALW-3286 (Check for freshclam) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Skipped test MALW-3288 (Check for ClamXav) +2021-01-07 17:45:18 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:45:18 Security check: file is normal +2021-01-07 17:45:18 Checking permissions of /home/ktdw73/scans/lynis/include/tests_file_permissions +2021-01-07 17:45:18 File permissions are OK +2021-01-07 17:45:18 ==== +2021-01-07 17:45:18 Action: Performing tests from category: File Permissions +2021-01-07 17:45:18 ==== +2021-01-07 17:45:19 Performing test ID FILE-7524 (Perform file permissions check) +2021-01-07 17:45:19 Test: Checking file permissions +2021-01-07 17:45:19 Using profile /home/ktdw73/scans/lynis/default.prf for baseline. +2021-01-07 17:45:19 Test: checking file/directory /boot/grub/grub.cfg +2021-01-07 17:45:19 Test: checking if file /boot/grub/grub.cfg has the permissions set to 600 or more restrictive +2021-01-07 17:45:19 Outcome: correct permissions (444) +2021-01-07 17:45:19 Test: checking file/directory /boot/grub2/grub.cfg +2021-01-07 17:45:19 Skipping file/directory /boot/grub2/grub.cfg as it does not exist on this system +2021-01-07 17:45:19 Test: checking file/directory /boot/grub2/user.cfg +2021-01-07 17:45:19 Skipping file/directory /boot/grub2/user.cfg as it does not exist on this system +2021-01-07 17:45:19 Test: checking file/directory /etc/at.allow +2021-01-07 17:45:19 Skipping file/directory /etc/at.allow as it does not exist on this system +2021-01-07 17:45:19 Test: checking file/directory /etc/at.deny +2021-01-07 17:45:19 Skipping file/directory /etc/at.deny as it does not exist on this system +2021-01-07 17:45:19 Test: checking file/directory /etc/cron.allow +2021-01-07 17:45:19 Skipping file/directory /etc/cron.allow as it does not exist on this system +2021-01-07 17:45:19 Test: checking file/directory /etc/cron.deny +2021-01-07 17:45:19 Skipping file/directory /etc/cron.deny as it does not exist on this system +2021-01-07 17:45:19 Test: checking file/directory /etc/crontab +2021-01-07 17:45:19 Test: checking if file /etc/crontab has the permissions set to 600 or more restrictive +2021-01-07 17:45:19 Outcome: permissions of file /etc/crontab are not matching expected value (644 != rw-------) +2021-01-07 17:45:19 Test: checking file/directory /etc/group +2021-01-07 17:45:19 Test: checking if file /etc/group has the permissions set to 644 or more restrictive +2021-01-07 17:45:19 Outcome: correct permissions (644) +2021-01-07 17:45:19 Test: checking file/directory /etc/group- +2021-01-07 17:45:19 Test: checking if file /etc/group- has the permissions set to 644 or more restrictive +2021-01-07 17:45:19 Outcome: correct permissions (600) +2021-01-07 17:45:19 Test: checking file/directory /etc/hosts.allow +2021-01-07 17:45:19 Test: checking if file /etc/hosts.allow has the permissions set to 644 or more restrictive +2021-01-07 17:45:19 Outcome: correct permissions (644) +2021-01-07 17:45:19 Test: checking file/directory /etc/hosts.deny +2021-01-07 17:45:19 Test: checking if file /etc/hosts.deny has the permissions set to 644 or more restrictive +2021-01-07 17:45:19 Outcome: correct permissions (644) +2021-01-07 17:45:19 Test: checking file/directory /etc/issue +2021-01-07 17:45:19 Test: checking if file /etc/issue has the permissions set to 644 or more restrictive +2021-01-07 17:45:19 Outcome: correct permissions (644) +2021-01-07 17:45:19 Test: checking file/directory /etc/issue.net +2021-01-07 17:45:19 Test: checking if file /etc/issue.net has the permissions set to 644 or more restrictive +2021-01-07 17:45:19 Outcome: correct permissions (644) +2021-01-07 17:45:19 Test: checking file/directory /etc/lilo.conf +2021-01-07 17:45:19 Skipping file/directory /etc/lilo.conf as it does not exist on this system +2021-01-07 17:45:19 Test: checking file/directory /etc/motd +2021-01-07 17:45:19 Test: checking if file /etc/motd has the permissions set to 644 or more restrictive +2021-01-07 17:45:19 Outcome: correct permissions (644) +2021-01-07 17:45:19 Test: checking file/directory /etc/passwd +2021-01-07 17:45:19 Test: checking if file /etc/passwd has the permissions set to 644 or more restrictive +2021-01-07 17:45:19 Outcome: correct permissions (644) +2021-01-07 17:45:19 Test: checking file/directory /etc/passwd- +2021-01-07 17:45:19 Test: checking if file /etc/passwd- has the permissions set to 644 or more restrictive +2021-01-07 17:45:19 Outcome: correct permissions (600) +2021-01-07 17:45:19 Test: checking file/directory /etc/ssh/sshd_config +2021-01-07 17:45:19 Test: checking if file /etc/ssh/sshd_config has the permissions set to 600 or more restrictive +2021-01-07 17:45:19 Outcome: permissions of file /etc/ssh/sshd_config are not matching expected value (644 != rw-------) +2021-01-07 17:45:19 Test: checking file/directory /etc/hosts.equiv +2021-01-07 17:45:19 Skipping file/directory /etc/hosts.equiv as it does not exist on this system +2021-01-07 17:45:19 Test: checking file/directory /etc/shosts.equiv +2021-01-07 17:45:19 Skipping file/directory /etc/shosts.equiv as it does not exist on this system +2021-01-07 17:45:19 Test: checking file/directory /root/.rhosts +2021-01-07 17:45:19 Skipping file/directory /root/.rhosts as it does not exist on this system +2021-01-07 17:45:19 Test: checking file/directory /root/.rlogin +2021-01-07 17:45:19 Skipping file/directory /root/.rlogin as it does not exist on this system +2021-01-07 17:45:19 Test: checking file/directory /root/.shosts +2021-01-07 17:45:19 Skipping file/directory /root/.shosts as it does not exist on this system +2021-01-07 17:45:19 Test: checking file/directory /root/.ssh +2021-01-07 17:45:19 Skipping file/directory /root/.ssh as it does not exist on this system +2021-01-07 17:45:19 Test: checking file/directory /etc/cron.d +2021-01-07 17:45:19 Test: checking if file /etc/cron.d has the permissions set to 700 or more restrictive +2021-01-07 17:45:19 Outcome: permissions of file /etc/cron.d are not matching expected value (755 != rwx------) +2021-01-07 17:45:19 Test: checking file/directory /etc/cron.daily +2021-01-07 17:45:19 Test: checking if file /etc/cron.daily has the permissions set to 700 or more restrictive +2021-01-07 17:45:19 Outcome: permissions of file /etc/cron.daily are not matching expected value (755 != rwx------) +2021-01-07 17:45:19 Test: checking file/directory /etc/cron.hourly +2021-01-07 17:45:19 Test: checking if file /etc/cron.hourly has the permissions set to 700 or more restrictive +2021-01-07 17:45:19 Outcome: permissions of file /etc/cron.hourly are not matching expected value (755 != rwx------) +2021-01-07 17:45:19 Test: checking file/directory /etc/cron.weekly +2021-01-07 17:45:19 Test: checking if file /etc/cron.weekly has the permissions set to 700 or more restrictive +2021-01-07 17:45:19 Outcome: permissions of file /etc/cron.weekly are not matching expected value (755 != rwx------) +2021-01-07 17:45:19 Test: checking file/directory /etc/cron.monthly +2021-01-07 17:45:19 Test: checking if file /etc/cron.monthly has the permissions set to 700 or more restrictive +2021-01-07 17:45:19 Outcome: permissions of file /etc/cron.monthly are not matching expected value (755 != rwx------) +2021-01-07 17:45:19 Suggestion: Consider restricting file permissions [test:FILE-7524] [details:See screen output or log file] [solution:text:Use chmod to change file permissions] +2021-01-07 17:45:19 Security check: file is normal +2021-01-07 17:45:19 Checking permissions of /home/ktdw73/scans/lynis/include/tests_homedirs +2021-01-07 17:45:19 File permissions are OK +2021-01-07 17:45:19 ==== +2021-01-07 17:45:19 Action: Performing tests from category: Home directories +2021-01-07 17:45:19 ==== +2021-01-07 17:45:19 Performing test ID HOME-9302 (Create list with home directories) +2021-01-07 17:45:19 Test: query /etc/passwd to obtain home directories +2021-01-07 17:45:19 Result: found home directory: /bin (directory exists) +2021-01-07 17:45:19 Result: found home directory: /dev (directory exists) +2021-01-07 17:45:19 Result: found home directory: /home/Tobias (directory exists) +2021-01-07 17:45:19 Result: found home directory: /home/ftpuser (directory exists) +2021-01-07 17:45:19 Result: found home directory: /home/ktdw73 (directory exists) +2021-01-07 17:45:19 Result: found home directory: /home/ntp (directory does not exist) +2021-01-07 17:45:19 Result: found home directory: /nonexistent (directory does not exist) +2021-01-07 17:45:19 Result: found home directory: /root (directory exists) +2021-01-07 17:45:19 Result: found home directory: /run/sshd (directory exists) +2021-01-07 17:45:19 Result: found home directory: /run/systemd (directory exists) +2021-01-07 17:45:19 Result: found home directory: /run/systemd/netif (directory exists) +2021-01-07 17:45:19 Result: found home directory: /run/systemd/resolve (directory does not exist) +2021-01-07 17:45:19 Result: found home directory: /run/uuidd (directory exists) +2021-01-07 17:45:19 Result: found home directory: /usr/games (directory exists) +2021-01-07 17:45:19 Result: found home directory: /usr/sbin (directory exists) +2021-01-07 17:45:19 Result: found home directory: /var/backups (directory exists) +2021-01-07 17:45:19 Result: found home directory: /var/cache/man (directory exists) +2021-01-07 17:45:19 Result: found home directory: /var/lib/gnats (directory does not exist) +2021-01-07 17:45:19 Result: found home directory: /var/list (directory does not exist) +2021-01-07 17:45:19 Result: found home directory: /var/mail (directory exists) +2021-01-07 17:45:19 Result: found home directory: /var/run/ircd (directory does not exist) +2021-01-07 17:45:19 Result: found home directory: /var/spool/lpd (directory does not exist) +2021-01-07 17:45:19 Result: found home directory: /var/spool/news (directory does not exist) +2021-01-07 17:45:19 Result: found home directory: /var/spool/uucp (directory does not exist) +2021-01-07 17:45:19 Result: found home directory: /var/www (directory does not exist) +2021-01-07 17:45:19 ==== +2021-01-07 17:45:19 Performing test ID HOME-9304 (Check if users' home directories permissions are 750 or more restrictive) +2021-01-07 17:45:19 Test: checking directory '/home/Tobias' for user 'Tobias' +2021-01-07 17:45:19 Result: permissions of home directory /home/Tobias of user Tobias are not strict enough. Should be 750 or more restrictive. Change with: chmod 750 /home/Tobias +2021-01-07 17:45:19 Test: checking directory '/home/ktdw73' for user 'ktdw73' +2021-01-07 17:45:19 Result: permissions of home directory /home/ktdw73 of user ktdw73 are not strict enough. Should be 750 or more restrictive. Change with: chmod 750 /home/ktdw73 +2021-01-07 17:45:19 Test: checking directory '/home/ftpuser' for user 'ftpuser' +2021-01-07 17:45:19 Result: permissions of home directory /home/ftpuser of user ftpuser are not strict enough. Should be 750 or more restrictive. Change with: chmod 750 /home/ftpuser +2021-01-07 17:45:19 Suggestion: Double check the permissions of home directories as some might be not strict enough. [test:HOME-9304] [details:-] [solution:-] +2021-01-07 17:45:19 ==== +2021-01-07 17:45:19 Performing test ID HOME-9306 (Check if users own their home directories) +2021-01-07 17:45:19 Test: checking directory '/home/Tobias' for user 'Tobias' +2021-01-07 17:45:19 Result: ownership of home directory /home/Tobias for user Tobias looks to be correct +2021-01-07 17:45:19 Test: checking directory '/home/ktdw73' for user 'ktdw73' +2021-01-07 17:45:19 Result: ownership of home directory /home/ktdw73 for user ktdw73 looks to be correct +2021-01-07 17:45:19 Test: checking directory '/home/ftpuser' for user 'ftpuser' +2021-01-07 17:45:19 Result: ownership of home directory /home/ftpuser for user ftpuser looks to be correct +2021-01-07 17:45:19 Result: OK, all users own their home directories +2021-01-07 17:45:19 ==== +2021-01-07 17:45:19 Performing test ID HOME-9310 (Checking for suspicious shell history files) +2021-01-07 17:45:19 Result: Ok, history files are type 'file'. +2021-01-07 17:45:19 Remark: History files are normally of the type 'file'. Symbolic links and other types are suspicious. +2021-01-07 17:45:19 ==== +2021-01-07 17:45:19 Performing test ID HOME-9350 (Collecting information from home directories) +2021-01-07 17:45:19 Result: IGNORE_HOME_DIRS empty, no paths excluded +2021-01-07 17:45:19 Security check: file is normal +2021-01-07 17:45:19 Checking permissions of /home/ktdw73/scans/lynis/include/tests_kernel_hardening +2021-01-07 17:45:19 File permissions are OK +2021-01-07 17:45:19 ==== +2021-01-07 17:45:19 Action: Performing tests from category: Kernel Hardening +2021-01-07 17:45:19 ==== +2021-01-07 17:45:19 Performing test ID KRNL-6000 (Check sysctl key pairs in scan profile) +2021-01-07 17:45:19 Result: sysctl key dev.tty.ldisc_autoload has a different value than expected in scan profile. Expected=0, Real=1 +2021-01-07 17:45:19 Hardening: assigned partial number of hardening points (0 of 1). Currently having 167 points (out of 257) +2021-01-07 17:45:19 Result: sysctl key fs.protected_fifos has a different value than expected in scan profile. Expected=2, Real=0 +2021-01-07 17:45:19 Hardening: assigned partial number of hardening points (0 of 1). Currently having 167 points (out of 258) +2021-01-07 17:45:19 Result: sysctl key fs.protected_hardlinks contains equal expected and current value (1) +2021-01-07 17:45:19 Hardening: assigned maximum number of hardening points for this item (1). Currently having 168 points (out of 259) +2021-01-07 17:45:19 Result: sysctl key fs.protected_regular has a different value than expected in scan profile. Expected=2, Real=0 +2021-01-07 17:45:19 Hardening: assigned partial number of hardening points (0 of 1). Currently having 168 points (out of 260) +2021-01-07 17:45:19 Result: sysctl key fs.protected_symlinks contains equal expected and current value (1) +2021-01-07 17:45:19 Hardening: assigned maximum number of hardening points for this item (1). Currently having 169 points (out of 261) +2021-01-07 17:45:19 Result: sysctl key fs.suid_dumpable contains equal expected and current value (0) +2021-01-07 17:45:19 Hardening: assigned maximum number of hardening points for this item (1). Currently having 170 points (out of 262) +2021-01-07 17:45:19 Result: key hw.kbd.keymap_restrict_change does not exist on this machine +2021-01-07 17:45:19 Result: key kern.sugid_coredump does not exist on this machine +2021-01-07 17:45:19 Result: key kernel.core_setuid_ok does not exist on this machine +2021-01-07 17:45:19 Result: sysctl key kernel.core_uses_pid has a different value than expected in scan profile. Expected=1, Real=0 +2021-01-07 17:45:19 Hardening: assigned partial number of hardening points (0 of 1). Currently having 170 points (out of 263) +2021-01-07 17:45:19 Result: sysctl key kernel.ctrl-alt-del contains equal expected and current value (0) +2021-01-07 17:45:19 Hardening: assigned maximum number of hardening points for this item (1). Currently having 171 points (out of 264) +2021-01-07 17:45:19 Result: sysctl key kernel.dmesg_restrict contains equal expected and current value (1) +2021-01-07 17:45:19 Hardening: assigned maximum number of hardening points for this item (1). Currently having 172 points (out of 265) +2021-01-07 17:45:19 Result: key kernel.exec-shield-randomize does not exist on this machine +2021-01-07 17:45:19 Result: key kernel.exec-shield does not exist on this machine +2021-01-07 17:45:19 Result: sysctl key kernel.kptr_restrict has a different value than expected in scan profile. Expected=2, Real=0 +2021-01-07 17:45:19 Hardening: assigned partial number of hardening points (0 of 1). Currently having 172 points (out of 266) +2021-01-07 17:45:19 Result: key kernel.maps_protect does not exist on this machine +2021-01-07 17:45:19 Result: sysctl key kernel.modules_disabled has a different value than expected in scan profile. Expected=1, Real=0 +2021-01-07 17:45:19 Hardening: assigned partial number of hardening points (0 of 1). Currently having 172 points (out of 267) +2021-01-07 17:45:19 Result: sysctl key kernel.perf_event_paranoid contains equal expected and current value (3) +2021-01-07 17:45:19 Hardening: assigned maximum number of hardening points for this item (1). Currently having 173 points (out of 268) +2021-01-07 17:45:19 Result: sysctl key kernel.randomize_va_space contains equal expected and current value (2) +2021-01-07 17:45:19 Hardening: assigned maximum number of hardening points for this item (1). Currently having 174 points (out of 269) +2021-01-07 17:45:19 Result: key kernel.suid_dumpable does not exist on this machine +2021-01-07 17:45:19 Result: sysctl key kernel.sysrq has a different value than expected in scan profile. Expected=0, Real=438 +2021-01-07 17:45:19 Hardening: assigned partial number of hardening points (0 of 1). Currently having 174 points (out of 270) +2021-01-07 17:45:19 Result: sysctl key kernel.unprivileged_bpf_disabled has a different value than expected in scan profile. Expected=1, Real=0 +2021-01-07 17:45:19 Hardening: assigned partial number of hardening points (0 of 1). Currently having 174 points (out of 271) +2021-01-07 17:45:19 Result: key kernel.use-nx does not exist on this machine +2021-01-07 17:45:19 Result: sysctl key kernel.yama.ptrace_scope has a different value than expected in scan profile. Expected=1 2 3, Real=0 +2021-01-07 17:45:19 Hardening: assigned partial number of hardening points (0 of 1). Currently having 174 points (out of 272) +2021-01-07 17:45:19 Result: sysctl key net.core.bpf_jit_harden has a different value than expected in scan profile. Expected=2, Real=0 +2021-01-07 17:45:19 Hardening: assigned partial number of hardening points (0 of 1). Currently having 174 points (out of 273) +2021-01-07 17:45:19 Result: key net.inet.icmp.bmcastecho does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.icmp.drop_redirect does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.icmp.rediraccept does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.icmp.timestamp does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.ip.accept_sourceroute does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.ip.check_interface does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.ip.forwarding does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.ip.linklocal.in.allowbadttl does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.ip.process_options does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.ip.random_id does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.ip.redirect does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.ip.sourceroute does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.ip6.redirect does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.tcp.always_keepalive does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.tcp.blackhole does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.tcp.drop_synfin does not exist on this machine +2021-01-07 17:45:19 Result: key net.inet.tcp.icmp_may_rst does not exist on this machine +2021-01-07 17:45:20 Result: key net.inet.tcp.nolocaltimewait does not exist on this machine +2021-01-07 17:45:20 Result: key net.inet.tcp.path_mtu_discovery does not exist on this machine +2021-01-07 17:45:20 Result: key net.inet.udp.blackhole does not exist on this machine +2021-01-07 17:45:20 Result: key net.inet6.icmp6.rediraccept does not exist on this machine +2021-01-07 17:45:20 Result: key net.inet6.ip6.forwarding does not exist on this machine +2021-01-07 17:45:20 Result: key net.inet6.ip6.fw.enable does not exist on this machine +2021-01-07 17:45:20 Result: key net.inet6.ip6.redirect does not exist on this machine +2021-01-07 17:45:20 Result: sysctl key net.ipv4.conf.all.accept_redirects contains equal expected and current value (0) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 175 points (out of 274) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.conf.all.accept_source_route contains equal expected and current value (0) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 176 points (out of 275) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.conf.all.bootp_relay contains equal expected and current value (0) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 177 points (out of 276) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.conf.all.forwarding contains equal expected and current value (0) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 178 points (out of 277) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.conf.all.log_martians contains equal expected and current value (1) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 179 points (out of 278) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.conf.all.mc_forwarding contains equal expected and current value (0) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 180 points (out of 279) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.conf.all.proxy_arp contains equal expected and current value (0) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 181 points (out of 280) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.conf.all.rp_filter contains equal expected and current value (1) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 182 points (out of 281) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.conf.all.send_redirects contains equal expected and current value (0) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 183 points (out of 282) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.conf.default.accept_redirects contains equal expected and current value (0) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 184 points (out of 283) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.conf.default.accept_source_route contains equal expected and current value (0) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 185 points (out of 284) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.conf.default.log_martians contains equal expected and current value (1) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 186 points (out of 285) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.icmp_echo_ignore_broadcasts contains equal expected and current value (1) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 187 points (out of 286) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.icmp_ignore_bogus_error_responses contains equal expected and current value (1) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 188 points (out of 287) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.tcp_syncookies contains equal expected and current value (1) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 189 points (out of 288) +2021-01-07 17:45:20 Result: sysctl key net.ipv4.tcp_timestamps contains equal expected and current value (0 1) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 190 points (out of 289) +2021-01-07 17:45:20 Result: sysctl key net.ipv6.conf.all.accept_redirects has a different value than expected in scan profile. Expected=0, Real=1 +2021-01-07 17:45:20 Hardening: assigned partial number of hardening points (0 of 1). Currently having 190 points (out of 290) +2021-01-07 17:45:20 Result: sysctl key net.ipv6.conf.all.accept_source_route contains equal expected and current value (0) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 191 points (out of 291) +2021-01-07 17:45:20 Result: key net.ipv6.conf.all.send_redirects does not exist on this machine +2021-01-07 17:45:20 Result: sysctl key net.ipv6.conf.default.accept_redirects has a different value than expected in scan profile. Expected=0, Real=1 +2021-01-07 17:45:20 Hardening: assigned partial number of hardening points (0 of 1). Currently having 191 points (out of 292) +2021-01-07 17:45:20 Result: sysctl key net.ipv6.conf.default.accept_source_route contains equal expected and current value (0) +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (1). Currently having 192 points (out of 293) +2021-01-07 17:45:20 Result: key security.bsd.hardlink_check_gid does not exist on this machine +2021-01-07 17:45:20 Result: key security.bsd.hardlink_check_uid does not exist on this machine +2021-01-07 17:45:20 Result: key security.bsd.see_other_gids does not exist on this machine +2021-01-07 17:45:20 Result: key security.bsd.see_other_uids does not exist on this machine +2021-01-07 17:45:20 Result: key security.bsd.stack_guard_page does not exist on this machine +2021-01-07 17:45:20 Result: key security.bsd.unprivileged_proc_debug does not exist on this machine +2021-01-07 17:45:20 Result: key security.bsd.unprivileged_read_msgbuf does not exist on this machine +2021-01-07 17:45:20 Result: found 12 keys that can use tuning, according scan profile +2021-01-07 17:45:20 Suggestion: One or more sysctl values differ from the scan profile and could be tweaked [test:KRNL-6000] [details:] [solution:Change sysctl value or disable test (skip-test=KRNL-6000:)] +2021-01-07 17:45:20 Security check: file is normal +2021-01-07 17:45:20 Checking permissions of /home/ktdw73/scans/lynis/include/tests_hardening +2021-01-07 17:45:20 File permissions are OK +2021-01-07 17:45:20 ==== +2021-01-07 17:45:20 Action: Performing tests from category: Hardening +2021-01-07 17:45:20 ==== +2021-01-07 17:45:20 Performing test ID HRDN-7220 (Check if one or more compilers are installed) +2021-01-07 17:45:20 Test: Check if one or more compilers can be found on the system +2021-01-07 17:45:20 Result: no compilers found +2021-01-07 17:45:20 Hardening: assigned maximum number of hardening points for this item (3). Currently having 195 points (out of 296) +2021-01-07 17:45:20 ==== +2021-01-07 17:45:20 Performing test ID HRDN-7222 (Check compiler permissions) +2021-01-07 17:45:20 Test: Check if one or more compilers can be found on the system +2021-01-07 17:45:20 Result: no compilers found +2021-01-07 17:45:20 ==== +2021-01-07 17:45:20 Performing test ID HRDN-7230 (Check for malware scanner) +2021-01-07 17:45:20 Test: Check if a malware scanner is installed +2021-01-07 17:45:20 Result: no malware scanner found +2021-01-07 17:45:20 Suggestion: Harden the system by installing at least one malware scanner, to perform periodic file system scans [test:HRDN-7230] [details:-] [solution:Install a tool like rkhunter, chkrootkit, OSSEC] +2021-01-07 17:45:20 Hardening: assigned partial number of hardening points (1 of 3). Currently having 196 points (out of 299) +2021-01-07 17:45:20 Result: no malware scanner found +2021-01-07 17:45:20 ==== +2021-01-07 17:45:20 Performing test ID HRDN-7231 (Check for registered non-native binary formats) +2021-01-07 17:45:20 Test: Check for registered non-native binary formats +2021-01-07 17:45:20 Result: no non-native binary formats found +2021-01-07 17:45:20 ==== +2021-01-07 17:45:20 Action: Performing tests from category: Custom tests +2021-01-07 17:45:20 Test: Checking for tests_custom file +2021-01-07 17:45:20 ==== +2021-01-07 17:45:20 Action: Performing plugin tests +2021-01-07 17:45:20 Result: Found 2 plugins of which 2 are enabled +2021-01-07 17:45:20 Result: Plugins phase 2 finished +2021-01-07 17:45:20 Checking permissions of /home/ktdw73/scans/lynis/include/report +2021-01-07 17:45:20 File permissions are OK +2021-01-07 17:45:20 Hardening index : [65] [############# ] +2021-01-07 17:45:20 Hardening strength: System has been hardened, but could use additional hardening +2021-01-07 17:45:20 ==== +2021-01-07 17:45:21 Checking permissions of /home/ktdw73/scans/lynis/include/tool_tips +2021-01-07 17:45:21 File permissions are OK +2021-01-07 17:45:21 Tool tips: enabled +2021-01-07 17:45:21 ================================================================================ +2021-01-07 17:45:21 Tests performed: 259 +2021-01-07 17:45:21 Total tests: 455 +2021-01-07 17:45:21 Active plugins: 2 +2021-01-07 17:45:21 Total plugins: 2 +2021-01-07 17:45:21 ================================================================================ +2021-01-07 17:45:21 Lynis 3.0.3 +2021-01-07 17:45:21 2007-2021, CISOfy - https://cisofy.com/lynis/ +2021-01-07 17:45:21 Enterprise support available (compliance, plugins, interface and tools) +2021-01-07 17:45:21 Program ended successfully +2021-01-07 17:45:21 ================================================================================ +2021-01-07 17:45:21 PID file removed (/var/run/lynis.pid) +2021-01-07 17:45:21 Temporary files: /tmp/lynis.9t076oLeqJ /tmp/lynis.RxvEEsfj0f /tmp/lynis.P3I08vTOUK /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:21 Action: removing temporary file /tmp/lynis.9t076oLeqJ +2021-01-07 17:45:21 Info: temporary file /tmp/lynis.RxvEEsfj0f was already removed +2021-01-07 17:45:21 Info: temporary file /tmp/lynis.P3I08vTOUK was already removed +2021-01-07 17:45:21 Action: removing temporary file /tmp/lynis.LZxgaEU4CD +2021-01-07 17:45:21 Lynis ended successfully. diff --git a/raw_scans/11_gcp_debian_9/lynis-log-3.log b/raw_scans/11_gcp_debian_9/lynis-log-3.log new file mode 100644 index 0000000..d783253 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/lynis-log-3.log @@ -0,0 +1,4718 @@ +2021-01-07 17:56:24 Starting Lynis 3.0.3 with PID 19083, build date 2021-01-07 +2021-01-07 17:56:24 ==== +2021-01-07 17:56:24 ### 2007-2021, CISOfy - https://cisofy.com/lynis/ ### +2021-01-07 17:56:24 Checking permissions of /home/ktdw73/scans/lynis/include/profiles +2021-01-07 17:56:24 File permissions are OK +2021-01-07 17:56:24 Reading profile/configuration /home/ktdw73/scans/lynis/default.prf +2021-01-07 17:56:24 Action: created temporary file /tmp/lynis.SMOiQhFW2k +2021-01-07 17:56:24 Language set via profile to '' +2021-01-07 17:56:24 Plugin 'authentication' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'compliance' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'configuration' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'control-panels' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'crypto' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'dns' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'docker' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'file-integrity' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'file-systems' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'firewalls' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'forensics' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'hardware' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'intrusion-detection' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'intrusion-prevention' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'kernel' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'malware' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'memory' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'nginx' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'pam' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'processes' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'security-modules' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'software' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'system-integrity' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'systemd' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:24 Plugin 'users' enabled according profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:25 Set option to default value: NTPD_ROLE --> client +2021-01-07 17:56:25 ==== +2021-01-07 17:56:25 EOL check: 255 +2021-01-07 17:56:25 Note: the end-of-life of 'Debian GNU/Linux 9 (stretch)' could not be checked. Entry missing in software-eol.db? +2021-01-07 17:56:25 Program version: 3.0.3 +2021-01-07 17:56:25 Operating system: Linux +2021-01-07 17:56:25 Operating system name: Debian +2021-01-07 17:56:25 Operating system version: 9 +2021-01-07 17:56:25 Kernel version: 4.9.0 +2021-01-07 17:56:25 Kernel version (full): 4.9.0-14-amd64 +2021-01-07 17:56:25 Hardware platform: x86_64 +2021-01-07 17:56:25 ----------------------------------------------------- +2021-01-07 17:56:25 Hostname: debian-9 +2021-01-07 17:56:25 Auditor: [Not Specified] +2021-01-07 17:56:25 Profiles: /home/ktdw73/scans/lynis/default.prf +2021-01-07 17:56:25 Work directory: /home/ktdw73/scans/lynis +2021-01-07 17:56:25 Include directory: /home/ktdw73/scans/lynis/include +2021-01-07 17:56:25 Plugin directory: ./plugins +2021-01-07 17:56:25 ----------------------------------------------------- +2021-01-07 17:56:25 Log file: /var/log/lynis.log +2021-01-07 17:56:25 Report file: /var/log/lynis-report.dat +2021-01-07 17:56:25 Report version: 1.0 +2021-01-07 17:56:25 ----------------------------------------------------- +2021-01-07 17:56:25 Test category: all +2021-01-07 17:56:25 Test group: all +2021-01-07 17:56:25 BusyBox used: 0 +2021-01-07 17:56:25 ==== +2021-01-07 17:56:25 Test: Checking for program update... +2021-01-07 17:56:25 Current installed version : 303 +2021-01-07 17:56:25 Latest stable version : 303 +2021-01-07 17:56:25 No Lynis update available. +2021-01-07 17:56:25 ==== +2021-01-07 17:56:25 Checking permissions of /home/ktdw73/scans/lynis/include/binaries +2021-01-07 17:56:25 File permissions are OK +2021-01-07 17:56:25 ==== +2021-01-07 17:56:25 Action: Performing tests from category: System tools +2021-01-07 17:56:25 Start scanning for available audit binaries and tools... +2021-01-07 17:56:25 ==== +2021-01-07 17:56:25 Performing test ID CORE-1000 (Check all system binaries) +2021-01-07 17:56:25 Status: Starting binary scan... +2021-01-07 17:56:25 Test: Checking binaries in directory /bin +2021-01-07 17:56:25 Directory /bin exists. Starting directory scanning... +2021-01-07 17:56:25 Found known binary: cat (generic file handling) - /bin/cat +2021-01-07 17:56:25 Found known binary: dnsdomainname (DNS domain) - /bin/dnsdomainname +2021-01-07 17:56:25 Found known binary: domainname (NIS domain) - /bin/domainname +2021-01-07 17:56:25 Found known binary: egrep (text search) - /bin/egrep +2021-01-07 17:56:25 Found known binary: grep (text search) - /bin/grep +2021-01-07 17:56:25 Found known binary: gzip (compressing utility) - /bin/gzip +2021-01-07 17:56:25 Found known binary: ip (IP configuration) - /bin/ip +2021-01-07 17:56:25 Found known binary: journalctl (systemd journal) - /bin/journalctl +2021-01-07 17:56:25 Found known binary: ls (file listing) - /bin/ls +2021-01-07 17:56:25 Found known binary: lsblk (block devices) - /bin/lsblk +2021-01-07 17:56:25 Found known binary: lsmod (kernel modules) - /bin/lsmod +2021-01-07 17:56:25 Found known binary: mount (disk utility) - /bin/mount +2021-01-07 17:56:25 Found known binary: netstat (network statistics) - /bin/netstat +2021-01-07 17:56:25 Found known binary: ps (process listing) - /bin/ps +2021-01-07 17:56:25 Found known binary: readlink (follows symlinks) - /bin/readlink +2021-01-07 17:56:25 Found known binary: sed (text stream editor) - /bin/sed +2021-01-07 17:56:25 Found known binary: ss (show sockets) - /bin/ss +2021-01-07 17:56:25 Found known binary: systemctl (client to systemd) - /bin/systemctl +2021-01-07 17:56:25 Found known binary: uname (operating system details) - /bin/uname +2021-01-07 17:56:25 Found known binary: zgrep (text search for compressed files) - /bin/zgrep +2021-01-07 17:56:25 Test: Checking binaries in directory /sbin +2021-01-07 17:56:25 Directory /sbin exists. Starting directory scanning... +2021-01-07 17:56:25 Found known binary: blkid (information about block devices) - /sbin/blkid +2021-01-07 17:56:25 Found known binary: ipconfig (IP configuration) - /sbin/ifconfig +2021-01-07 17:56:25 Found known binary: ip (IP configuration) - /sbin/ip +2021-01-07 17:56:25 Found known binary: iptables (firewall) - /sbin/iptables +2021-01-07 17:56:25 Found known binary: iptables-save (firewall) - /sbin/iptables-save +2021-01-07 17:56:25 Found known binary: lsmod (kernel modules) - /sbin/lsmod +2021-01-07 17:56:25 Found known binary: modprobe (kernel modules) - /sbin/modprobe +2021-01-07 17:56:25 Found known binary: runlevel (system utility) - /sbin/runlevel +2021-01-07 17:56:25 Found known binary: swapon (swap device tool) - /sbin/swapon +2021-01-07 17:56:25 Found known binary: sysctl (kernel parameters) - /sbin/sysctl +2021-01-07 17:56:25 Found known binary: tune2fs (file system tool) - /sbin/tune2fs +2021-01-07 17:56:25 Test: Checking binaries in directory /usr/bin +2021-01-07 17:56:25 Directory /usr/bin exists. Starting directory scanning... +2021-01-07 17:56:25 Found known binary: apt (package manager) - /usr/bin/apt +2021-01-07 17:56:25 Found known binary: as (compiler) - /usr/bin/as +2021-01-07 17:56:25 Found known binary: awk (string tool) - /usr/bin/awk +2021-01-07 17:56:25 Found known binary: base64 (encoding tool) - /usr/bin/base64 +2021-01-07 17:56:25 Found known binary: bootctl (systemd-boot manager utility) - /usr/bin/bootctl +2021-01-07 17:56:25 Found known binary: comm (file compare) - /usr/bin/comm +2021-01-07 17:56:25 Found known binary: curl (browser, download utility) - /usr/bin/curl +2021-01-07 17:56:25 Found known binary: cut (text stream editor) - /usr/bin/cut +2021-01-07 17:56:25 Found known binary: dpkg (package management) - /usr/bin/dpkg +2021-01-07 17:56:25 Found known binary: fail2ban (IPS tool) - /usr/bin/fail2ban-server +2021-01-07 17:56:25 Found known binary: file (file type detection) - /usr/bin/file +2021-01-07 17:56:25 Found known binary: find (search tool) - /usr/bin/find +2021-01-07 17:56:25 Found known binary: getent (query tool for name service switch libraries) - /usr/bin/getent +2021-01-07 17:56:25 Found known binary: head (text filter) - /usr/bin/head +2021-01-07 17:56:25 Found known binary: lsattr (file attributes) - /usr/bin/lsattr +2021-01-07 17:56:25 Found known binary: md5sum (hash tool) - /usr/bin/md5sum +2021-01-07 17:56:25 Found known binary ntpq (time daemon client) - /usr/bin/ntpq +2021-01-07 17:56:25 Found /usr/bin/openssl (version 1.1.0l) +2021-01-07 17:56:25 Found /usr/bin/perl (version 5.24.1) +2021-01-07 17:56:25 Found known binary: pgrep (search in process list) - /usr/bin/pgrep +2021-01-07 17:56:25 Found known binary: python (programming language interpreter) - /usr/bin/python (version 2.7.13) +2021-01-07 17:56:25 Found known binary: python2 (programming language interpreter) - /usr/bin/python2 (version 2.7.13) +2021-01-07 17:56:25 Found known binary: python3 (programming language interpreter) - /usr/bin/python3 (version 3.5.3) +2021-01-07 17:56:25 Found known binary: rkhunter (malware scanner) - /usr/bin/rkhunter +2021-01-07 17:56:25 Found known binary: sha1/sha1sum/shasum (crypto hashing) - /usr/bin/sha1sum +2021-01-07 17:56:25 Found known binary: sha256/sha256sum (crypto hashing) - /usr/bin/sha256sum +2021-01-07 17:56:25 Found known binary: sha1/sha1sum/shasum (crypto hashing) - /usr/bin/shasum +2021-01-07 17:56:25 Found known binary: sort (sort data streams) - /usr/bin/sort +2021-01-07 17:56:25 Found known binary: ssh-keyscan (scanner for SSH keys) - /usr/bin/ssh-keyscan +2021-01-07 17:56:25 Found known binary: stat (file information) - /usr/bin/stat +2021-01-07 17:56:25 Found known binary: strings (text strings search) - /usr/bin/strings +2021-01-07 17:56:25 Found known binary: systemd-analyze (systemd service analysis tool) - /usr/bin/systemd-analyze +2021-01-07 17:56:25 Found known binary: tail (text filter) - /usr/bin/tail +2021-01-07 17:56:25 Found known binary: timedatectl (timedate client) - /usr/bin/timedatectl +2021-01-07 17:56:25 Found known binary: tr (text transformation) - /usr/bin/tr +2021-01-07 17:56:25 Found known binary: uniq (text manipulation utility) - /usr/bin/uniq +2021-01-07 17:56:25 Found known binary: wc (word count) - /usr/bin/wc +2021-01-07 17:56:25 Found /usr/bin/wget (version 1.18) +2021-01-07 17:56:25 Found known binary: xargs (command output redirection) - /usr/bin/xargs +2021-01-07 17:56:25 Test: Checking binaries in directory /usr/sbin +2021-01-07 17:56:25 Directory /usr/sbin exists. Starting directory scanning... +2021-01-07 17:56:25 Found known binary: chkrootkit (malware scanner) - /usr/sbin/chkrootkit +2021-01-07 17:56:25 Found known binary: dmidecode (hardware collector tool) - /usr/sbin/dmidecode +2021-01-07 17:56:25 Found known binary: grpck (consistency checker) - /usr/sbin/grpck +2021-01-07 17:56:25 Found known binary: logrotate (log rotation tool) - /usr/sbin/logrotate +2021-01-07 17:56:25 Found known binary: service (system services) - /usr/sbin/service +2021-01-07 17:56:25 Found /usr/sbin/sshd (version 7.4) +2021-01-07 17:56:25 Found known binary: tripwire (file integrity) - /usr/sbin/tripwire +2021-01-07 17:56:25 Test: Checking binaries in directory /usr/local/bin +2021-01-07 17:56:25 Directory /usr/local/bin exists. Starting directory scanning... +2021-01-07 17:56:25 Test: Checking binaries in directory /usr/local/sbin +2021-01-07 17:56:25 Directory /usr/local/sbin exists. Starting directory scanning... +2021-01-07 17:56:25 Discovered directories: /bin,/sbin,/usr/bin,/usr/sbin,/usr/local/bin,/usr/local/sbin +2021-01-07 17:56:25 Result: found 949 binaries including 16 set-uid and 20 set-gid +2021-01-07 17:56:25 Result: set-uid binaries: /bin/mount /bin/ping /bin/ping4 /bin/ping6 /bin/su /bin/umount /usr/bin/chfn /usr/bin/chsh /usr/bin/gpasswd /usr/bin/newgrp /usr/bin/passwd /usr/bin/procmail /usr/bin/sg /usr/bin/sudo /usr/bin/sudoedit /usr/sbin/sensible-mda +2021-01-07 17:56:25 Result: set-gid binaries: /sbin/unix_chkpwd /usr/bin/bsd-write /usr/bin/chage /usr/bin/crontab /usr/bin/dotlockfile /usr/bin/expiry /usr/bin/lockfile /usr/bin/mail-lock /usr/bin/mail-touchlock /usr/bin/mail-unlock /usr/bin/procmail /usr/bin/screen /usr/bin/ssh-agent /usr/bin/wall /usr/bin/write /usr/sbin/hoststat /usr/sbin/purgestat /usr/sbin/sendmail /usr/sbin/sendmail-msp /usr/sbin/sendmail-mta +2021-01-07 17:56:25 ==== +2021-01-07 17:56:25 Informational: package manager is used +2021-01-07 17:56:25 Test: Determine if this system is a virtual machine +2021-01-07 17:56:25 Result: facter utility not found +2021-01-07 17:56:25 Test: trying to guess virtualization technology with systemd-detect-virt +2021-01-07 17:56:25 Result: found kvm +2021-01-07 17:56:25 Result: skipped lscpu test, as we already found machine type +2021-01-07 17:56:25 Result: skipped dmidecode test, as we already found machine type +2021-01-07 17:56:25 Result: skipped processes test, as we already found platform +2021-01-07 17:56:25 Result: skipped Amazon EC2 test, as we already found platform +2021-01-07 17:56:25 Result: skipped sysctl test, as we already found platform +2021-01-07 17:56:25 Result: skipped lshw test, as we already found machine type +2021-01-07 17:56:25 Result: found virtual machine (type: kvm, KVM) +2021-01-07 17:56:25 Result: Lynis is not running in container +2021-01-07 17:56:25 Result: system is using systemd +2021-01-07 17:56:25 ==== +2021-01-07 17:56:25 Action: Performing plugin tests +2021-01-07 17:56:25 Searching plugins... +2021-01-07 17:56:25 Found plugin file: ./plugins/plugin_pam_phase1 +2021-01-07 17:56:25 Action: checking plugin status in profile: /home/ktdw73/scans/lynis/default.prf +2021-01-07 17:56:25 Result: plugin enabled in profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:25 Result: plugin pam is enabled +2021-01-07 17:56:25 Checking permissions of ./plugins/plugin_pam_phase1 +2021-01-07 17:56:25 File permissions are OK +2021-01-07 17:56:25 Including plugin file: ./plugins/plugin_pam_phase1 (version: 1.0.5) +2021-01-07 17:56:25 ==== +2021-01-07 17:56:25 Skipped test PLGN-0008 (Check PAM configuration (pwquality.conf)) +2021-01-07 17:56:25 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:25 ==== +2021-01-07 17:56:25 Performing test ID PLGN-0010 (Check PAM configuration) +2021-01-07 17:56:25 Result: /etc/pam.d exists +2021-01-07 17:56:25 Now checking PAM file /etc/pam.d/common-password +2021-01-07 17:56:25 Result: using module pam_cracklib.so (requisite) with options retry=3 minlen=8 difok=3 +2021-01-07 17:56:25 Result: found module pam_cracklib.so for password strength testing +2021-01-07 17:56:25 Result: Max password Retry configured +2021-01-07 17:56:25 Value is now: 3 +2021-01-07 17:56:25 Returning value: 3 +2021-01-07 17:56:25 Result: minlen configured +2021-01-07 17:56:25 Value is now: 8 +2021-01-07 17:56:25 Returning value: 8 +2021-01-07 17:56:25 Result: unknown option found: difok with value 3 +2021-01-07 17:56:25 Result: Found brackets in line, indicating multiple options for control flags: success=1 default=ignore +2021-01-07 17:56:25 Result: brackets used, ignoring control flags +2021-01-07 17:56:25 Result: using module pam_unix.so (other) with options obscure use_authtok try_first_pass sha512 +2021-01-07 17:56:25 Result: found pam_unix.so module (generic) +2021-01-07 17:56:25 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:56:25 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:56:25 Now checking PAM file /etc/pam.d/chsh +2021-01-07 17:56:26 Result: using module pam_shells.so (required) without options configured +2021-01-07 17:56:26 Result: using module pam_rootok.so (sufficient) without options configured +2021-01-07 17:56:26 Now checking PAM file /etc/pam.d/sudo +2021-01-07 17:56:26 Now checking PAM file /etc/pam.d/sshd +2021-01-07 17:56:26 Result: using module pam_nologin.so (required) without options configured +2021-01-07 17:56:26 Result: Found brackets in line, indicating multiple options for control flags: success=ok ignore=ignore module_unknown=ignore default=bad +2021-01-07 17:56:26 Result: brackets used, ignoring control flags +2021-01-07 17:56:26 Result: using module pam_selinux.so (other) with options close +2021-01-07 17:56:26 Result: using module pam_loginuid.so (required) without options configured +2021-01-07 17:56:26 Result: using module pam_keyinit.so (optional) with options force revoke +2021-01-07 17:56:26 Result: using module pam_motd.so (optional) with options motd=/run/motd.dynamic +2021-01-07 17:56:26 Result: using module pam_motd.so (optional) with options noupdate +2021-01-07 17:56:26 Result: using module pam_mail.so (optional) with options standard noenv +2021-01-07 17:56:26 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:56:26 Result: using module pam_env.so (required) without options configured +2021-01-07 17:56:26 Result: using module pam_env.so (required) with options user_readenv=1 envfile=/etc/default/locale +2021-01-07 17:56:26 Result: Found brackets in line, indicating multiple options for control flags: success=ok ignore=ignore module_unknown=ignore default=bad +2021-01-07 17:56:26 Result: brackets used, ignoring control flags +2021-01-07 17:56:26 Result: using module pam_selinux.so (other) with options open +2021-01-07 17:56:26 Now checking PAM file /etc/pam.d/runuser +2021-01-07 17:56:26 Result: using module pam_rootok.so (sufficient) without options configured +2021-01-07 17:56:26 Result: using module pam_keyinit.so (optional) with options revoke +2021-01-07 17:56:26 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:56:26 Result: using module pam_unix.so (required) without options configured +2021-01-07 17:56:26 Result: found pam_unix.so module (generic) +2021-01-07 17:56:26 Now checking PAM file /etc/pam.d/newusers +2021-01-07 17:56:26 Now checking PAM file /etc/pam.d/other +2021-01-07 17:56:26 Now checking PAM file /etc/pam.d/systemd-user +2021-01-07 17:56:26 Result: using module pam_selinux.so (required) with options close +2021-01-07 17:56:26 Result: using module pam_selinux.so (required) with options nottys open +2021-01-07 17:56:26 Result: using module pam_loginuid.so (required) without options configured +2021-01-07 17:56:26 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:56:26 Result: using module pam_systemd.so (optional) without options configured +2021-01-07 17:56:26 Now checking PAM file /etc/pam.d/smtp +2021-01-07 17:56:26 Now checking PAM file /etc/pam.d/cron +2021-01-07 17:56:26 Result: using module pam_loginuid.so (required) without options configured +2021-01-07 17:56:26 Result: using module pam_env.so (required) without options configured +2021-01-07 17:56:26 Result: using module pam_env.so (required) with options envfile=/etc/default/locale +2021-01-07 17:56:26 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:56:26 Now checking PAM file /etc/pam.d/common-session +2021-01-07 17:56:27 Result: Found brackets in line, indicating multiple options for control flags: default=1 +2021-01-07 17:56:27 Result: brackets used, ignoring control flags +2021-01-07 17:56:27 Result: using module pam_permit.so (other) without options configured +2021-01-07 17:56:27 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:56:27 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:56:27 Result: using module pam_unix.so (required) without options configured +2021-01-07 17:56:27 Result: found pam_unix.so module (generic) +2021-01-07 17:56:27 Now checking PAM file /etc/pam.d/chfn +2021-01-07 17:56:27 Result: using module pam_rootok.so (sufficient) without options configured +2021-01-07 17:56:27 Now checking PAM file /etc/pam.d/su +2021-01-07 17:56:27 Result: using module pam_rootok.so (sufficient) without options configured +2021-01-07 17:56:27 Result: using module pam_env.so (required) with options readenv=1 +2021-01-07 17:56:27 Result: using module pam_env.so (required) with options readenv=1 envfile=/etc/default/locale +2021-01-07 17:56:27 Result: using module pam_mail.so (optional) with options nopen +2021-01-07 17:56:27 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:56:27 Now checking PAM file /etc/pam.d/chpasswd +2021-01-07 17:56:27 Now checking PAM file /etc/pam.d/passwd +2021-01-07 17:56:27 Now checking PAM file /etc/pam.d/common-session-noninteractive +2021-01-07 17:56:27 Result: Found brackets in line, indicating multiple options for control flags: default=1 +2021-01-07 17:56:27 Result: brackets used, ignoring control flags +2021-01-07 17:56:27 Result: using module pam_permit.so (other) without options configured +2021-01-07 17:56:27 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:56:27 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:56:27 Result: using module pam_unix.so (required) without options configured +2021-01-07 17:56:27 Result: found pam_unix.so module (generic) +2021-01-07 17:56:27 Now checking PAM file /etc/pam.d/common-auth +2021-01-07 17:56:27 Result: Found brackets in line, indicating multiple options for control flags: success=1 default=ignore +2021-01-07 17:56:27 Result: brackets used, ignoring control flags +2021-01-07 17:56:27 Result: using module pam_unix.so (other) with options nullok_secure +2021-01-07 17:56:27 Result: found pam_unix.so module (generic) +2021-01-07 17:56:27 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:56:27 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:56:27 Now checking PAM file /etc/pam.d/common-account +2021-01-07 17:56:27 Result: Found brackets in line, indicating multiple options for control flags: success=1 new_authtok_reqd=done default=ignore +2021-01-07 17:56:27 Result: brackets used, ignoring control flags +2021-01-07 17:56:27 Result: using module pam_unix.so (other) without options configured +2021-01-07 17:56:27 Result: found pam_unix.so module (generic) +2021-01-07 17:56:27 Result: using module pam_deny.so (requisite) without options configured +2021-01-07 17:56:28 Result: using module pam_permit.so (required) without options configured +2021-01-07 17:56:28 Now checking PAM file /etc/pam.d/login +2021-01-07 17:56:28 Result: using module pam_faildelay.so (optional) with options delay=3000000 +2021-01-07 17:56:28 Result: Found brackets in line, indicating multiple options for control flags: success=ok new_authtok_reqd=ok ignore=ignore user_unknown=bad default=die +2021-01-07 17:56:28 Result: brackets used, ignoring control flags +2021-01-07 17:56:28 Result: using module pam_securetty.so (other) without options configured +2021-01-07 17:56:28 Result: using module pam_nologin.so (requisite) without options configured +2021-01-07 17:56:28 Result: Found brackets in line, indicating multiple options for control flags: success=ok ignore=ignore module_unknown=ignore default=bad +2021-01-07 17:56:28 Result: brackets used, ignoring control flags +2021-01-07 17:56:28 Result: using module pam_selinux.so (other) with options close +2021-01-07 17:56:28 Result: using module pam_loginuid.so (required) without options configured +2021-01-07 17:56:28 Result: Found brackets in line, indicating multiple options for control flags: success=ok ignore=ignore module_unknown=ignore default=bad +2021-01-07 17:56:28 Result: brackets used, ignoring control flags +2021-01-07 17:56:28 Result: using module pam_selinux.so (other) with options open +2021-01-07 17:56:28 Result: using module pam_env.so (required) with options readenv=1 +2021-01-07 17:56:28 Result: using module pam_env.so (required) with options readenv=1 envfile=/etc/default/locale +2021-01-07 17:56:28 Result: using module pam_group.so (optional) without options configured +2021-01-07 17:56:28 Result: using module pam_limits.so (required) without options configured +2021-01-07 17:56:28 Result: using module pam_lastlog.so (optional) without options configured +2021-01-07 17:56:28 Result: using module pam_motd.so (optional) with options motd=/run/motd.dynamic +2021-01-07 17:56:28 Result: using module pam_motd.so (optional) with options noupdate +2021-01-07 17:56:28 Result: using module pam_mail.so (optional) with options standard +2021-01-07 17:56:28 Result: using module pam_keyinit.so (optional) with options force revoke +2021-01-07 17:56:28 Now checking PAM file /etc/pam.d/runuser-l +2021-01-07 17:56:28 Result: using module pam_keyinit.so (optional) with options force revoke +2021-01-07 17:56:28 Result: using module pam_systemd.so (optional) without options configured +2021-01-07 17:56:28 [PAM] PAM 2F authentication enabled: 0 +2021-01-07 17:56:28 [PAM] PAM 2F authentication required: 0 +2021-01-07 17:56:28 [PAM] Authentication unlock time: not configured +2021-01-07 17:56:28 [PAM] Password brute force protection: 0 +2021-01-07 17:56:28 [PAM] Minimum password length: 8 +2021-01-07 17:56:28 [PAM] Password strength testing enabled: 1 +2021-01-07 17:56:28 [PAM] Minimum password class out of 4: 0 +2021-01-07 17:56:28 [PAM] Maximum credit for Digital characters: 1 +2021-01-07 17:56:28 [PAM] Maximum credit for Lowercase characters: 1 +2021-01-07 17:56:28 [PAM] Maximum credit for Other characters: 1 +2021-01-07 17:56:28 [PAM] Maximum credit for Uppercase characters: 1 +2021-01-07 17:56:28 [PAM] Password maximum retry: 3 +2021-01-07 17:56:28 [PAM] Password history with pam_pwhistory IS NOT enabled +2021-01-07 17:56:28 [PAM] Password history with pam_unix IS NOT enabled +2021-01-07 17:56:28 ==== +2021-01-07 17:56:28 Result: pam plugin (phase 1) finished +2021-01-07 17:56:28 -- +2021-01-07 17:56:28 Found plugin file: ./plugins/plugin_systemd_phase1 +2021-01-07 17:56:28 Action: checking plugin status in profile: /home/ktdw73/scans/lynis/default.prf +2021-01-07 17:56:28 Result: plugin enabled in profile (/home/ktdw73/scans/lynis/default.prf) +2021-01-07 17:56:28 Result: plugin systemd is enabled +2021-01-07 17:56:28 Checking permissions of ./plugins/plugin_systemd_phase1 +2021-01-07 17:56:28 File permissions are OK +2021-01-07 17:56:28 Including plugin file: ./plugins/plugin_systemd_phase1 (version: 1.0.4) +2021-01-07 17:56:28 ==== +2021-01-07 17:56:28 Performing test ID PLGN-3800 (Gather systemctl exit code) +2021-01-07 17:56:28 ==== +2021-01-07 17:56:28 Performing test ID PLGN-3802 (Query systemd version and options) +2021-01-07 17:56:28 Result: found systemd version 232 +2021-01-07 17:56:28 Result: found builtin components list +2021-01-07 17:56:28 ==== +2021-01-07 17:56:28 Performing test ID PLGN-3804 (Gather systemd unit files and their status) +2021-01-07 17:56:28 Result: found systemd unit files via systemctl list-unit-files +2021-01-07 17:56:28 Output: proc-sys-fs-binfmt_misc.automount|static| +2021-01-07 17:56:28 Output: -.mount|generated| +2021-01-07 17:56:28 Output: dev-hugepages.mount|static| +2021-01-07 17:56:28 Output: dev-mqueue.mount|static| +2021-01-07 17:56:28 Output: proc-sys-fs-binfmt_misc.mount|static| +2021-01-07 17:56:28 Output: sys-fs-fuse-connections.mount|static| +2021-01-07 17:56:28 Output: sys-kernel-config.mount|static| +2021-01-07 17:56:28 Output: sys-kernel-debug.mount|static| +2021-01-07 17:56:28 Output: acpid.path|enabled| +2021-01-07 17:56:28 Output: systemd-ask-password-console.path|static| +2021-01-07 17:56:28 Output: systemd-ask-password-wall.path|static| +2021-01-07 17:56:28 Output: acct.service|generated| +2021-01-07 17:56:28 Output: acpid.service|disabled| +2021-01-07 17:56:28 Output: apt-daily-upgrade.service|static| +2021-01-07 17:56:28 Output: apt-daily.service|static| +2021-01-07 17:56:28 Output: autovt@.service|enabled| +2021-01-07 17:56:28 Output: bootlogd.service|masked| +2021-01-07 17:56:28 Output: bootlogs.service|masked| +2021-01-07 17:56:28 Output: bootmisc.service|masked| +2021-01-07 17:56:28 Output: checkfs.service|masked| +2021-01-07 17:56:28 Output: checkroot-bootclean.service|masked| +2021-01-07 17:56:28 Output: checkroot.service|masked| +2021-01-07 17:56:28 Output: console-getty.service|disabled| +2021-01-07 17:56:28 Output: container-getty@.service|static| +2021-01-07 17:56:28 Output: cron.service|enabled| +2021-01-07 17:56:28 Output: cryptdisks-early.service|masked| +2021-01-07 17:56:28 Output: cryptdisks.service|masked| +2021-01-07 17:56:28 Output: dbus-org.freedesktop.hostname1.service|static| +2021-01-07 17:56:28 Output: dbus-org.freedesktop.locale1.service|static| +2021-01-07 17:56:28 Output: dbus-org.freedesktop.login1.service|static| +2021-01-07 17:56:28 Output: dbus-org.freedesktop.network1.service|disabled| +2021-01-07 17:56:28 Output: dbus-org.freedesktop.resolve1.service|disabled| +2021-01-07 17:56:28 Output: dbus-org.freedesktop.timedate1.service|static| +2021-01-07 17:56:28 Output: debug-shell.service|disabled| +2021-01-07 17:56:28 Output: emergency.service|static| +2021-01-07 17:56:28 Output: expand-root.service|enabled| +2021-01-07 17:56:28 Output: fail2ban.service|enabled| +2021-01-07 17:56:28 Output: fuse.service|masked| +2021-01-07 17:56:28 Output: getty-static.service|static| +2021-01-07 17:56:28 Output: getty@.service|enabled| +2021-01-07 17:56:28 Output: google-guest-agent.service|enabled| +2021-01-07 17:56:28 Output: google-osconfig-agent.service|enabled| +2021-01-07 17:56:28 Output: google-oslogin-cache.service|static| +2021-01-07 17:56:28 Output: google-shutdown-scripts.service|enabled| +2021-01-07 17:56:28 Output: google-startup-scripts.service|enabled| +2021-01-07 17:56:28 Output: halt.service|masked| +2021-01-07 17:56:28 Output: hostname.service|masked| +2021-01-07 17:56:28 Output: hwclock.service|masked| +2021-01-07 17:56:28 Output: ifup@.service|static| +2021-01-07 17:56:28 Output: initrd-cleanup.service|static| +2021-01-07 17:56:28 Output: initrd-parse-etc.service|static| +2021-01-07 17:56:28 Output: initrd-switch-root.service|static| +2021-01-07 17:56:28 Output: initrd-udevadm-cleanup-db.service|static| +2021-01-07 17:56:28 Output: killprocs.service|masked| +2021-01-07 17:56:28 Output: kmod-static-nodes.service|static| +2021-01-07 17:56:28 Output: kmod.service|static| +2021-01-07 17:56:28 Output: module-init-tools.service|static| +2021-01-07 17:56:28 Output: motd.service|masked| +2021-01-07 17:56:28 Output: mountall-bootclean.service|masked| +2021-01-07 17:56:28 Output: mountall.service|masked| +2021-01-07 17:56:28 Output: mountdevsubfs.service|masked| +2021-01-07 17:56:28 Output: mountkernfs.service|masked| +2021-01-07 17:56:28 Output: mountnfs-bootclean.service|masked| +2021-01-07 17:56:28 Output: mountnfs.service|masked| +2021-01-07 17:56:28 Output: networking.service|enabled| +2021-01-07 17:56:28 Output: ntp.service|generated| +2021-01-07 17:56:28 Output: portsentry.service|generated| +2021-01-07 17:56:28 Output: procps.service|static| +2021-01-07 17:56:28 Output: quotaon.service|static| +2021-01-07 17:56:28 Output: rc-local.service|static| +2021-01-07 17:56:28 Output: rc.local.service|static| +2021-01-07 17:56:28 Output: rc.service|masked| +2021-01-07 17:56:28 Output: rcS.service|masked| +2021-01-07 17:56:28 Output: reboot.service|masked| +2021-01-07 17:56:28 Output: rescue.service|static| +2021-01-07 17:56:28 Output: rmnologin.service|masked| +2021-01-07 17:56:28 Output: rsync.service|enabled| +2021-01-07 17:56:28 Output: rsyslog.service|enabled| +2021-01-07 17:56:28 Output: screen-cleanup.service|masked| +2021-01-07 17:56:28 Output: sendmail.service|generated| +2021-01-07 17:56:28 Output: sendsigs.service|masked| +2021-01-07 17:56:28 Output: serial-getty@.service|disabled| +2021-01-07 17:56:28 Output: single.service|masked| +2021-01-07 17:56:28 Output: ssh-generate-hostkeys.service|enabled| +2021-01-07 17:56:28 Output: ssh.service|enabled| +2021-01-07 17:56:28 Output: ssh@.service|static| +2021-01-07 17:56:28 Output: sshd.service|enabled| +2021-01-07 17:56:28 Output: stop-bootlogd-single.service|masked| +2021-01-07 17:56:28 Output: stop-bootlogd.service|masked| +2021-01-07 17:56:28 Output: sudo.service|disabled| +2021-01-07 17:56:28 Output: syslog.service|enabled| +2021-01-07 17:56:28 Output: systemd-ask-password-console.service|static| +2021-01-07 17:56:28 Output: systemd-ask-password-wall.service|static| +2021-01-07 17:56:28 Output: systemd-backlight@.service|static| +2021-01-07 17:56:28 Output: systemd-binfmt.service|static| +2021-01-07 17:56:28 Output: systemd-exit.service|static| +2021-01-07 17:56:28 Output: systemd-fsck-root.service|static| +2021-01-07 17:56:28 Output: systemd-fsck@.service|static| +2021-01-07 17:56:28 Output: systemd-fsckd.service|static| +2021-01-07 17:56:28 Output: systemd-halt.service|static| +2021-01-07 17:56:28 Output: systemd-hibernate-resume@.service|static| +2021-01-07 17:56:28 Output: systemd-hibernate.service|static| +2021-01-07 17:56:28 Output: systemd-hostnamed.service|static| +2021-01-07 17:56:28 Output: systemd-hwdb-update.service|static| +2021-01-07 17:56:28 Output: systemd-hybrid-sleep.service|static| +2021-01-07 17:56:28 Output: systemd-initctl.service|static| +2021-01-07 17:56:28 Output: systemd-journal-flush.service|static| +2021-01-07 17:56:28 Output: systemd-journald.service|static| +2021-01-07 17:56:28 Output: systemd-kexec.service|static| +2021-01-07 17:56:28 Output: systemd-localed.service|static| +2021-01-07 17:56:28 Output: systemd-logind.service|static| +2021-01-07 17:56:28 Output: systemd-machine-id-commit.service|static| +2021-01-07 17:56:28 Output: systemd-modules-load.service|static| +2021-01-07 17:56:28 Output: systemd-networkd-wait-online.service|disabled| +2021-01-07 17:56:28 Output: systemd-networkd.service|disabled| +2021-01-07 17:56:28 Output: systemd-poweroff.service|static| +2021-01-07 17:56:28 Output: systemd-quotacheck.service|static| +2021-01-07 17:56:28 Output: systemd-random-seed.service|static| +2021-01-07 17:56:28 Output: systemd-reboot.service|static| +2021-01-07 17:56:28 Output: systemd-remount-fs.service|static| +2021-01-07 17:56:28 Output: systemd-resolved.service|disabled| +2021-01-07 17:56:28 Output: systemd-rfkill.service|static| +2021-01-07 17:56:28 Output: systemd-suspend.service|static| +2021-01-07 17:56:28 Output: systemd-sysctl.service|static| +2021-01-07 17:56:28 Output: systemd-timedated.service|static| +2021-01-07 17:56:28 Output: systemd-timesyncd.service|enabled| +2021-01-07 17:56:28 Output: systemd-tmpfiles-clean.service|static| +2021-01-07 17:56:28 Output: systemd-tmpfiles-setup-dev.service|static| +2021-01-07 17:56:28 Output: systemd-tmpfiles-setup.service|static| +2021-01-07 17:56:28 Output: systemd-udev-settle.service|static| +2021-01-07 17:56:28 Output: systemd-udev-trigger.service|static| +2021-01-07 17:56:28 Output: systemd-udevd.service|static| +2021-01-07 17:56:28 Output: systemd-update-utmp-runlevel.service|static| +2021-01-07 17:56:28 Output: systemd-update-utmp.service|static| +2021-01-07 17:56:28 Output: systemd-user-sessions.service|static| +2021-01-07 17:56:28 Output: udev.service|static| +2021-01-07 17:56:28 Output: umountfs.service|masked| +2021-01-07 17:56:28 Output: umountnfs.service|masked| +2021-01-07 17:56:28 Output: umountroot.service|masked| +2021-01-07 17:56:28 Output: unattended-upgrades.service|enabled| +2021-01-07 17:56:28 Output: urandom.service|static| +2021-01-07 17:56:28 Output: user@.service|static| +2021-01-07 17:56:28 Output: uuidd.service|indirect| +2021-01-07 17:56:28 Output: x11-common.service|masked| +2021-01-07 17:56:28 Output: machine.slice|static| +2021-01-07 17:56:28 Output: system.slice|static| +2021-01-07 17:56:28 Output: user.slice|static| +2021-01-07 17:56:28 Output: acpid.socket|enabled| +2021-01-07 17:56:28 Output: ssh.socket|disabled| +2021-01-07 17:56:28 Output: syslog.socket|static| +2021-01-07 17:56:28 Output: systemd-fsckd.socket|static| +2021-01-07 17:56:28 Output: systemd-initctl.socket|static| +2021-01-07 17:56:28 Output: systemd-journald-audit.socket|static| +2021-01-07 17:56:28 Output: systemd-journald-dev-log.socket|static| +2021-01-07 17:56:28 Output: systemd-journald.socket|static| +2021-01-07 17:56:28 Output: systemd-networkd.socket|disabled| +2021-01-07 17:56:28 Output: systemd-rfkill.socket|static| +2021-01-07 17:56:28 Output: systemd-udevd-control.socket|static| +2021-01-07 17:56:28 Output: systemd-udevd-kernel.socket|static| +2021-01-07 17:56:28 Output: uuidd.socket|enabled| +2021-01-07 17:56:28 Output: basic.target|static| +2021-01-07 17:56:28 Output: bluetooth.target|static| +2021-01-07 17:56:28 Output: busnames.target|static| +2021-01-07 17:56:28 Output: cryptsetup-pre.target|static| +2021-01-07 17:56:28 Output: cryptsetup.target|static| +2021-01-07 17:56:28 Output: ctrl-alt-del.target|disabled| +2021-01-07 17:56:28 Output: default.target|static| +2021-01-07 17:56:28 Output: emergency.target|static| +2021-01-07 17:56:28 Output: exit.target|disabled| +2021-01-07 17:56:28 Output: final.target|static| +2021-01-07 17:56:28 Output: getty.target|static| +2021-01-07 17:56:28 Output: graphical.target|static| +2021-01-07 17:56:28 Output: halt.target|disabled| +2021-01-07 17:56:29 Output: hibernate.target|static| +2021-01-07 17:56:29 Output: hybrid-sleep.target|static| +2021-01-07 17:56:29 Output: initrd-fs.target|static| +2021-01-07 17:56:29 Output: initrd-root-device.target|static| +2021-01-07 17:56:29 Output: initrd-root-fs.target|static| +2021-01-07 17:56:29 Output: initrd-switch-root.target|static| +2021-01-07 17:56:29 Output: initrd.target|static| +2021-01-07 17:56:29 Output: kexec.target|disabled| +2021-01-07 17:56:29 Output: local-fs-pre.target|static| +2021-01-07 17:56:29 Output: local-fs.target|static| +2021-01-07 17:56:29 Output: multi-user.target|static| +2021-01-07 17:56:29 Output: network-online.target|static| +2021-01-07 17:56:29 Output: network-pre.target|static| +2021-01-07 17:56:29 Output: network.target|static| +2021-01-07 17:56:29 Output: nss-lookup.target|static| +2021-01-07 17:56:29 Output: nss-user-lookup.target|static| +2021-01-07 17:56:29 Output: paths.target|static| +2021-01-07 17:56:29 Output: poweroff.target|disabled| +2021-01-07 17:56:29 Output: printer.target|static| +2021-01-07 17:56:29 Output: reboot.target|disabled| +2021-01-07 17:56:29 Output: remote-fs-pre.target|static| +2021-01-07 17:56:29 Output: remote-fs.target|enabled| +2021-01-07 17:56:29 Output: rescue.target|disabled| +2021-01-07 17:56:29 Output: rpcbind.target|static| +2021-01-07 17:56:29 Output: runlevel0.target|disabled| +2021-01-07 17:56:29 Output: runlevel1.target|disabled| +2021-01-07 17:56:29 Output: runlevel2.target|static| +2021-01-07 17:56:29 Output: runlevel3.target|static| +2021-01-07 17:56:29 Output: runlevel4.target|static| +2021-01-07 17:56:29 Output: runlevel5.target|static| +2021-01-07 17:56:29 Output: runlevel6.target|disabled| +2021-01-07 17:56:29 Output: shutdown.target|static| +2021-01-07 17:56:29 Output: sigpwr.target|static| +2021-01-07 17:56:29 Output: sleep.target|static| +2021-01-07 17:56:29 Output: slices.target|static| +2021-01-07 17:56:29 Output: smartcard.target|static| +2021-01-07 17:56:29 Output: sockets.target|static| +2021-01-07 17:56:29 Output: sound.target|static| +2021-01-07 17:56:29 Output: suspend.target|static| +2021-01-07 17:56:29 Output: swap.target|static| +2021-01-07 17:56:29 Output: sysinit.target|static| +2021-01-07 17:56:29 Output: system-update.target|static| +2021-01-07 17:56:29 Output: time-sync.target|static| +2021-01-07 17:56:29 Output: timers.target|static| +2021-01-07 17:56:29 Output: umount.target|static| +2021-01-07 17:56:29 Output: apt-daily-upgrade.timer|enabled| +2021-01-07 17:56:29 Output: apt-daily.timer|enabled| +2021-01-07 17:56:29 Output: google-oslogin-cache.timer|enabled| +2021-01-07 17:56:29 Output: systemd-tmpfiles-clean.timer|static| +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID PLGN-3806 (Gather failed systemd units) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID PLGN-3808 (Gather systemd machine ID) +2021-01-07 17:56:29 Result: found machine ID: a66b25c544c2fc51bc4a5dae2b809331 +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID PLGN-3810 (Query main systemd binaries) +2021-01-07 17:56:29 Result: no binaries found in /usr/lib/systemd +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID PLGN-3812 (Query journal for boot related information) +2021-01-07 17:56:29 Output: number of boots listed in journal is 1 +2021-01-07 17:56:29 Output: oldest boot date in journal is 2021-01-07 +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID PLGN-3814 (Verify journal integrity) +2021-01-07 17:56:29 Result: systemd journal has no errors +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID PLGN-3816 (Query journal for boot related information) +2021-01-07 17:56:29 Result: journals are 4.9M in size +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID PLGN-3818 (Query journal meta data) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID PLGN-3820 (Check for journal FSS configuration) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID PLGN-3830 (Query systemd status) +2021-01-07 17:56:29 Result: found systemd status = running +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID PLGN-3832 (Query systemd status for processes which can not be found) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID PLGN-3834 (Collect service units which can not be found in systemd) +2021-01-07 17:56:29 Result: found one or more services with faulty state +2021-01-07 17:56:29 Result: service seems to be faulty (not-found) apparmor.service +2021-01-07 17:56:29 Result: service seems to be faulty (not-found) auditd.service +2021-01-07 17:56:29 Result: service seems to be faulty (not-found) display-manager.service +2021-01-07 17:56:29 Result: service seems to be faulty (not-found) firewalld.service +2021-01-07 17:56:29 Result: service seems to be faulty (not-found) iptables.service +2021-01-07 17:56:29 Result: service seems to be faulty (not-found) network.service +2021-01-07 17:56:29 Result: service seems to be faulty (not-found) NetworkManager.service +2021-01-07 17:56:29 Result: service seems to be faulty (not-found) plymouth-quit-wait.service +2021-01-07 17:56:29 Result: service seems to be faulty (not-found) plymouth-start.service +2021-01-07 17:56:29 Result: service seems to be faulty (not-found) systemd-sysusers.service +2021-01-07 17:56:29 Result: service seems to be faulty (not-found) systemd-update-done.service +2021-01-07 17:56:29 Result: service seems to be faulty (not-found) systemd-vconsole-setup.service +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID PLGN-3856 (Check if systemd-coredump is used) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID PLGN-3860 (Query coredumps from journals since Yesterday) +2021-01-07 17:56:29 Result: found no coredumps +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Result: systemd plugin (phase 1) finished +2021-01-07 17:56:29 -- +2021-01-07 17:56:29 Result: Found 2 plugins of which 2 are enabled +2021-01-07 17:56:29 Result: Plugins phase 1 finished +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Info: using hardware address 42:01:0a:9c:00:06 to create ID +2021-01-07 17:56:29 Result: Found HostID: 466ad4432c544245a47e41f2a41d247da252b5ad +2021-01-07 17:56:29 Info: creating a HostID (version 2) +2021-01-07 17:56:29 Result: found file ssh_host_ed25519_key.pub in /etc/ssh, using that to create host identifier +2021-01-07 17:56:29 Using SSH public key to create the second host identifier +2021-01-07 17:56:29 Hash (hostname): 90252b286478f264c25d2c2658e6e43ef1051eddb6581b4bbfb6ee2ba8356d71 +2021-01-07 17:56:29 Hash (ssh or machineid): 3ecc6b2399833ea32698bac064848b8804f3ad85ccd0987d01ced99b6335024b +2021-01-07 17:56:29 Info: found valid HostID 466ad4432c544245a47e41f2a41d247da252b5ad +2021-01-07 17:56:29 Info: no machine ID found +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Info: perform tests from all categories +2021-01-07 17:56:29 Security check: file is normal +2021-01-07 17:56:29 Checking permissions of /home/ktdw73/scans/lynis/include/tests_boot_services +2021-01-07 17:56:29 File permissions are OK +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Action: Performing tests from category: Boot and services +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test BOOT-5102 (Check for AIX boot device) +2021-01-07 17:56:29 Reason to skip: Incorrect guest OS (AIX only) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID BOOT-5104 (Determine service manager) +2021-01-07 17:56:29 Result: cmdline found = /sbin/init +2021-01-07 17:56:29 Result: file on disk = /sbin/init +2021-01-07 17:56:29 Action: checking symlink for file /sbin/init +2021-01-07 17:56:29 Note: Using real readlink binary to determine symlink on /sbin/init +2021-01-07 17:56:29 Result: readlink shows /lib/systemd/systemd as output +2021-01-07 17:56:29 Result: symlink found, pointing to file /lib/systemd/systemd +2021-01-07 17:56:29 Found: systemd +2021-01-07 17:56:29 Result: service manager found = systemd +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test BOOT-5106 (Check EFI boot file on Mac OS X/macOS) +2021-01-07 17:56:29 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID BOOT-5108 (Check Syslinux as bootloader) +2021-01-07 17:56:29 Test: checking if file /boot/syslinux/syslinux.cfg exists +2021-01-07 17:56:29 Result: file /boot/syslinux/syslinux.cfg NOT found +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID BOOT-5109 (Check rEFInd as bootloader) +2021-01-07 17:56:29 Test: checking if file /boot/refind_linux.conf exists +2021-01-07 17:56:29 Result: file /boot/refind_linux.conf NOT found +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID BOOT-5116 (Check if system is booted in UEFI mode) +2021-01-07 17:56:29 Test: checking if UEFI is used +2021-01-07 17:56:29 Result: UEFI not used, can't find /sys/firmware/efi directory +2021-01-07 17:56:29 Test: determine if Secure Boot is used +2021-01-07 17:56:29 Result: system not booted with Secure Boot (no SecureBoot file found) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test BOOT-5117 (Check for systemd-boot bootloader presence) +2021-01-07 17:56:29 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID BOOT-5121 (Check for GRUB boot loader presence) +2021-01-07 17:56:29 Test: Checking for presence GRUB conf file (/boot/grub/grub.conf or /boot/grub/menu.lst) +2021-01-07 17:56:29 Result: found GRUB2 configuration file (/boot/grub/grub.cfg) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID BOOT-5122 (Check for GRUB boot password) +2021-01-07 17:56:29 Found file /boot/grub/grub.cfg, proceeding with tests. +2021-01-07 17:56:29 Test: check if we can access /boot/grub/grub.cfg (escaped: /boot/grub/grub.cfg) +2021-01-07 17:56:29 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:29 Result: file /boot/grub/grub.cfg is readable (or directory accessible). +2021-01-07 17:56:29 Result: did not find hashed password line in this file +2021-01-07 17:56:29 Result: File '/boot/grub/custom.cfg' does not exist +2021-01-07 17:56:29 Found file /etc/grub.d/00_header, proceeding with tests. +2021-01-07 17:56:29 Test: check if we can access /etc/grub.d/00_header (escaped: /etc/grub.d/00_header) +2021-01-07 17:56:29 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:29 Result: file /etc/grub.d/00_header is readable (or directory accessible). +2021-01-07 17:56:29 Result: did not find hashed password line in this file +2021-01-07 17:56:29 Found file /etc/grub.d/40_custom, proceeding with tests. +2021-01-07 17:56:29 Test: check if we can access /etc/grub.d/40_custom (escaped: /etc/grub.d/40_custom) +2021-01-07 17:56:29 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:29 Result: file /etc/grub.d/40_custom is readable (or directory accessible). +2021-01-07 17:56:29 Result: did not find hashed password line in this file +2021-01-07 17:56:29 Found file /etc/grub.d/05_debian_theme, proceeding with tests. +2021-01-07 17:56:29 Test: check if we can access /etc/grub.d/05_debian_theme (escaped: /etc/grub.d/05_debian_theme) +2021-01-07 17:56:29 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:29 Result: file /etc/grub.d/05_debian_theme is readable (or directory accessible). +2021-01-07 17:56:29 Result: did not find hashed password line in this file +2021-01-07 17:56:29 Found file /etc/grub.d/30_os-prober, proceeding with tests. +2021-01-07 17:56:29 Test: check if we can access /etc/grub.d/30_os-prober (escaped: /etc/grub.d/30_os-prober) +2021-01-07 17:56:29 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:29 Result: file /etc/grub.d/30_os-prober is readable (or directory accessible). +2021-01-07 17:56:29 Result: did not find hashed password line in this file +2021-01-07 17:56:29 Found file /etc/grub.d/10_linux, proceeding with tests. +2021-01-07 17:56:29 Test: check if we can access /etc/grub.d/10_linux (escaped: /etc/grub.d/10_linux) +2021-01-07 17:56:29 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:29 Result: file /etc/grub.d/10_linux is readable (or directory accessible). +2021-01-07 17:56:29 Result: did not find hashed password line in this file +2021-01-07 17:56:29 Found file /etc/grub.d/41_custom, proceeding with tests. +2021-01-07 17:56:29 Test: check if we can access /etc/grub.d/41_custom (escaped: /etc/grub.d/41_custom) +2021-01-07 17:56:29 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:29 Result: file /etc/grub.d/41_custom is readable (or directory accessible). +2021-01-07 17:56:29 Result: did not find hashed password line in this file +2021-01-07 17:56:29 Found file /etc/grub.d/30_uefi-firmware, proceeding with tests. +2021-01-07 17:56:29 Test: check if we can access /etc/grub.d/30_uefi-firmware (escaped: /etc/grub.d/30_uefi-firmware) +2021-01-07 17:56:29 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:29 Result: file /etc/grub.d/30_uefi-firmware is readable (or directory accessible). +2021-01-07 17:56:29 Result: did not find hashed password line in this file +2021-01-07 17:56:29 Found file /etc/grub.d/20_linux_xen, proceeding with tests. +2021-01-07 17:56:29 Test: check if we can access /etc/grub.d/20_linux_xen (escaped: /etc/grub.d/20_linux_xen) +2021-01-07 17:56:29 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:29 Result: file /etc/grub.d/20_linux_xen is readable (or directory accessible). +2021-01-07 17:56:29 Result: did not find hashed password line in this file +2021-01-07 17:56:29 Result: Didn't find hashed password line in GRUB configuration +2021-01-07 17:56:29 Suggestion: Set a password on GRUB boot loader to prevent altering boot configuration (e.g. boot in single user mode without password) [test:BOOT-5122] [details:-] [solution:-] +2021-01-07 17:56:29 Hardening: assigned partial number of hardening points (0 of 2). Currently having 0 points (out of 2) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test BOOT-5124 (Check for FreeBSD boot loader presence) +2021-01-07 17:56:29 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test BOOT-5261 (Check for DragonFly boot loader presence) +2021-01-07 17:56:29 Reason to skip: Incorrect guest OS (DragonFly only) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test BOOT-5126 (Check for NetBSD boot loader presence) +2021-01-07 17:56:29 Reason to skip: Incorrect guest OS (NetBSD only) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID BOOT-5139 (Check for LILO boot loader presence) +2021-01-07 17:56:29 Test: checking for presence LILO configuration file +2021-01-07 17:56:29 Result: LILO configuration file not found +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID BOOT-5142 (Check SPARC Improved boot loader (SILO)) +2021-01-07 17:56:29 Result: no SILO configuration file found. +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID BOOT-5155 (Check for YABOOT boot loader configuration file) +2021-01-07 17:56:29 Test: Check for /etc/yaboot.conf +2021-01-07 17:56:29 Result: no YABOOT configuration file found. +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test BOOT-5159 (Check for OpenBSD boot loader presence) +2021-01-07 17:56:29 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test BOOT-5165 (Check for FreeBSD boot services) +2021-01-07 17:56:29 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test BOOT-5170 (Check for Solaris boot daemons) +2021-01-07 17:56:29 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID BOOT-5177 (Check for Linux boot and running services) +2021-01-07 17:56:29 Test: checking presence systemctl binary +2021-01-07 17:56:29 Result: systemctl binary found, trying that to discover information +2021-01-07 17:56:29 Searching for running services (systemctl services only) +2021-01-07 17:56:29 Found running service: acpid +2021-01-07 17:56:29 Found running service: cron +2021-01-07 17:56:29 Found running service: fail2ban +2021-01-07 17:56:29 Found running service: getty@tty1 +2021-01-07 17:56:29 Found running service: getty@tty2 +2021-01-07 17:56:29 Found running service: getty@tty3 +2021-01-07 17:56:29 Found running service: getty@tty4 +2021-01-07 17:56:29 Found running service: getty@tty5 +2021-01-07 17:56:29 Found running service: getty@tty6 +2021-01-07 17:56:29 Found running service: google-guest-agent +2021-01-07 17:56:29 Found running service: google-osconfig-agent +2021-01-07 17:56:29 Found running service: ntp +2021-01-07 17:56:29 Found running service: portsentry +2021-01-07 17:56:29 Found running service: rsyslog +2021-01-07 17:56:29 Found running service: sendmail +2021-01-07 17:56:29 Found running service: serial-getty@ttyS0 +2021-01-07 17:56:29 Found running service: ssh +2021-01-07 17:56:29 Found running service: systemd-journald +2021-01-07 17:56:29 Found running service: systemd-udevd +2021-01-07 17:56:29 Hint: Run systemctl --full --type=service to see all services +2021-01-07 17:56:29 Result: Found 19 running services +2021-01-07 17:56:29 Searching for enabled services (systemctl services only) +2021-01-07 17:56:29 Found enabled service at boot: autovt@ +2021-01-07 17:56:29 Found enabled service at boot: cron +2021-01-07 17:56:29 Found enabled service at boot: expand-root +2021-01-07 17:56:29 Found enabled service at boot: fail2ban +2021-01-07 17:56:29 Found enabled service at boot: getty@ +2021-01-07 17:56:29 Found enabled service at boot: google-guest-agent +2021-01-07 17:56:29 Found enabled service at boot: google-osconfig-agent +2021-01-07 17:56:29 Found enabled service at boot: google-shutdown-scripts +2021-01-07 17:56:29 Found enabled service at boot: google-startup-scripts +2021-01-07 17:56:29 Found enabled service at boot: networking +2021-01-07 17:56:29 Found enabled service at boot: rsync +2021-01-07 17:56:29 Found enabled service at boot: rsyslog +2021-01-07 17:56:29 Found enabled service at boot: ssh-generate-hostkeys +2021-01-07 17:56:29 Found enabled service at boot: ssh +2021-01-07 17:56:29 Found enabled service at boot: sshd +2021-01-07 17:56:29 Found enabled service at boot: syslog +2021-01-07 17:56:29 Found enabled service at boot: systemd-timesyncd +2021-01-07 17:56:29 Found enabled service at boot: unattended-upgrades +2021-01-07 17:56:29 Hint: Run systemctl list-unit-files --type=service to see all services +2021-01-07 17:56:29 Result: Found 18 enabled services +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID BOOT-5180 (Check for Linux boot services (Debian style)) +2021-01-07 17:56:29 Result: found runlevel 5 +2021-01-07 17:56:29 Result: skipping further actions +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID BOOT-5184 (Check permissions for boot files/scripts) +2021-01-07 17:56:29 Result: checking /etc/init.d scripts for writable bit +2021-01-07 17:56:29 Test: checking if directory /etc/init.d exists +2021-01-07 17:56:29 Result: directory /etc/init.d found +2021-01-07 17:56:29 Test: checking for available files in directory +2021-01-07 17:56:29 Result: found files in directory, checking permissions now +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/acct +2021-01-07 17:56:29 Result: good, file /etc/init.d/acct not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/acpid +2021-01-07 17:56:29 Result: good, file /etc/init.d/acpid not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/cron +2021-01-07 17:56:29 Result: good, file /etc/init.d/cron not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/fail2ban +2021-01-07 17:56:29 Result: good, file /etc/init.d/fail2ban not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/hwclock.sh +2021-01-07 17:56:29 Result: good, file /etc/init.d/hwclock.sh not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/kmod +2021-01-07 17:56:29 Result: good, file /etc/init.d/kmod not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/networking +2021-01-07 17:56:29 Result: good, file /etc/init.d/networking not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/ntp +2021-01-07 17:56:29 Result: good, file /etc/init.d/ntp not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/portsentry +2021-01-07 17:56:29 Result: good, file /etc/init.d/portsentry not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/procps +2021-01-07 17:56:29 Result: good, file /etc/init.d/procps not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/rsync +2021-01-07 17:56:29 Result: good, file /etc/init.d/rsync not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/rsyslog +2021-01-07 17:56:29 Result: good, file /etc/init.d/rsyslog not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/screen-cleanup +2021-01-07 17:56:29 Result: good, file /etc/init.d/screen-cleanup not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/sendmail +2021-01-07 17:56:29 Result: good, file /etc/init.d/sendmail not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/ssh +2021-01-07 17:56:29 Result: good, file /etc/init.d/ssh not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/ssh-generate-hostkeys +2021-01-07 17:56:29 Result: good, file /etc/init.d/ssh-generate-hostkeys not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/sudo +2021-01-07 17:56:29 Result: good, file /etc/init.d/sudo not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/udev +2021-01-07 17:56:29 Result: good, file /etc/init.d/udev not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/unattended-upgrades +2021-01-07 17:56:29 Result: good, file /etc/init.d/unattended-upgrades not world writable +2021-01-07 17:56:29 Test: checking permissions of file /etc/init.d/uuidd +2021-01-07 17:56:29 Result: good, file /etc/init.d/uuidd not world writable +2021-01-07 17:56:29 Test: checking if directory /etc/rc.d exists +2021-01-07 17:56:29 Result: directory /etc/rc.d not found. Skipping.. +2021-01-07 17:56:29 Test: checking if directory /etc/rcS.d exists +2021-01-07 17:56:29 Result: directory /etc/rcS.d found +2021-01-07 17:56:29 Test: checking for available files in directory +2021-01-07 17:56:29 Result: found no files in directory. +2021-01-07 17:56:29 Test: Checking /etc/rc0.d scripts for writable bit +2021-01-07 17:56:29 Test: Checking /etc/rc1.d scripts for writable bit +2021-01-07 17:56:29 Test: Checking /etc/rc2.d scripts for writable bit +2021-01-07 17:56:29 Test: Checking /etc/rc3.d scripts for writable bit +2021-01-07 17:56:29 Test: Checking /etc/rc4.d scripts for writable bit +2021-01-07 17:56:29 Test: Checking /etc/rc5.d scripts for writable bit +2021-01-07 17:56:29 Test: Checking /etc/rc6.d scripts for writable bit +2021-01-07 17:56:29 Hardening: assigned maximum number of hardening points for this item (3). Currently having 3 points (out of 5) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID BOOT-5202 (Check uptime of system) +2021-01-07 17:56:29 Uptime (in seconds): 2176 +2021-01-07 17:56:29 Uptime (in days): 0 +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID BOOT-5260 (Check single user mode for systemd) +2021-01-07 17:56:29 Test: Searching /usr/lib/systemd/system/rescue.service +2021-01-07 17:56:29 Result: file /usr/lib/systemd/system/rescue.service does not exist +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test BOOT-5262 (Check for OpenBSD boot daemons) +2021-01-07 17:56:29 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test BOOT-5263 (Check permissions for boot files/scripts) +2021-01-07 17:56:29 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test BOOT-5264 (Run systemd-analyze security) +2021-01-07 17:56:29 Reason to skip: systemd-analyze too old (v232), need at least v240 +2021-01-07 17:56:29 Security check: file is normal +2021-01-07 17:56:29 Checking permissions of /home/ktdw73/scans/lynis/include/tests_kernel +2021-01-07 17:56:29 File permissions are OK +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Action: Performing tests from category: Kernel +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID KRNL-5622 (Determine Linux default run level) +2021-01-07 17:56:29 Test: Checking for systemd default.target +2021-01-07 17:56:29 Result: no systemd found, so trying inittab +2021-01-07 17:56:29 Test: Checking /etc/inittab +2021-01-07 17:56:29 Result: file /etc/inittab not found +2021-01-07 17:56:29 Test: Checking run level with who -r, for Debian based systems +2021-01-07 17:56:29 Result: Found default run level '5' +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID KRNL-5677 (Check CPU options and support) +2021-01-07 17:56:29 Test: Checking /proc/cpuinfo +2021-01-07 17:56:29 Result: found /proc/cpuinfo +2021-01-07 17:56:29 Test: Checking CPU options (XD/NX/PAE) +2021-01-07 17:56:29 PAE: Yes +2021-01-07 17:56:29 NX: Yes +2021-01-07 17:56:29 Result: PAE or No eXecute option(s) both found +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID KRNL-5695 (Determine Linux kernel version and release number) +2021-01-07 17:56:29 Result: found kernel release 4.9.0-14-amd64 +2021-01-07 17:56:29 Result: found kernel version #1 SMP Debian 4.9.240-2 (2020-10-30) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID KRNL-5723 (Determining if Linux kernel is monolithic) +2021-01-07 17:56:29 Test: checking if kernel is monolithic or modular +2021-01-07 17:56:29 Result: Found modular kernel +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID KRNL-5726 (Checking Linux loaded kernel modules) +2021-01-07 17:56:29 Loaded modules according lsmod: +2021-01-07 17:56:29 Loaded module: ablk_helper +2021-01-07 17:56:29 Loaded module: aes_x86_64 +2021-01-07 17:56:29 Loaded module: aesni_intel +2021-01-07 17:56:29 Loaded module: autofs4 +2021-01-07 17:56:29 Loaded module: binfmt_misc +2021-01-07 17:56:29 Loaded module: button +2021-01-07 17:56:29 Loaded module: crc16 +2021-01-07 17:56:29 Loaded module: crc32_pclmul +2021-01-07 17:56:29 Loaded module: crc32c_generic +2021-01-07 17:56:29 Loaded module: crc32c_intel +2021-01-07 17:56:29 Loaded module: crct10dif_pclmul +2021-01-07 17:56:29 Loaded module: cryptd +2021-01-07 17:56:29 Loaded module: dm_mod +2021-01-07 17:56:29 Loaded module: ecb +2021-01-07 17:56:29 Loaded module: edac_core +2021-01-07 17:56:29 Loaded module: evdev +2021-01-07 17:56:29 Loaded module: ext4 +2021-01-07 17:56:29 Loaded module: fscrypto +2021-01-07 17:56:29 Loaded module: gf128mul +2021-01-07 17:56:29 Loaded module: ghash_clmulni_intel +2021-01-07 17:56:29 Loaded module: glue_helper +2021-01-07 17:56:29 Loaded module: i2c_piix4 +2021-01-07 17:56:29 Loaded module: inet_diag +2021-01-07 17:56:29 Loaded module: intel_rapl_perf +2021-01-07 17:56:29 Loaded module: ip_tables +2021-01-07 17:56:29 Loaded module: iptable_filter +2021-01-07 17:56:29 Loaded module: iptable_nat +2021-01-07 17:56:29 Loaded module: jbd2 +2021-01-07 17:56:29 Loaded module: lrw +2021-01-07 17:56:29 Loaded module: mbcache +2021-01-07 17:56:29 Loaded module: nf_conntrack +2021-01-07 17:56:29 Loaded module: nf_conntrack_ipv4 +2021-01-07 17:56:29 Loaded module: nf_defrag_ipv4 +2021-01-07 17:56:29 Loaded module: nf_nat +2021-01-07 17:56:29 Loaded module: nf_nat_ipv4 +2021-01-07 17:56:29 Loaded module: psmouse +2021-01-07 17:56:29 Loaded module: pvpanic +2021-01-07 17:56:29 Loaded module: rng_core +2021-01-07 17:56:29 Loaded module: sb_edac +2021-01-07 17:56:29 Loaded module: scsi_mod +2021-01-07 17:56:29 Loaded module: sd_mod +2021-01-07 17:56:29 Loaded module: serio_raw +2021-01-07 17:56:29 Loaded module: sg +2021-01-07 17:56:29 Loaded module: tcp_diag +2021-01-07 17:56:29 Loaded module: udp_diag +2021-01-07 17:56:29 Loaded module: virtio +2021-01-07 17:56:29 Loaded module: virtio_balloon +2021-01-07 17:56:29 Loaded module: virtio_net +2021-01-07 17:56:29 Loaded module: virtio_pci +2021-01-07 17:56:29 Loaded module: virtio_ring +2021-01-07 17:56:29 Loaded module: virtio_rng +2021-01-07 17:56:29 Loaded module: virtio_scsi +2021-01-07 17:56:29 Loaded module: x_tables +2021-01-07 17:56:29 Loaded module: xt_multiport +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID KRNL-5728 (Checking Linux kernel config) +2021-01-07 17:56:29 Result: found config (/boot/config-4.9.0-14-amd64) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID KRNL-5730 (Checking disk I/O kernel scheduler) +2021-01-07 17:56:29 Test: Checking the default I/O kernel scheduler +2021-01-07 17:56:29 Result: found IO scheduler 'cfq' +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test KRNL-5745 (Checking FreeBSD loaded kernel modules) +2021-01-07 17:56:29 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test KRNL-5831 (Checking DragonFly loaded kernel modules) +2021-01-07 17:56:29 Reason to skip: Incorrect guest OS (DragonFly only) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Skipped test KRNL-5770 (Checking active kernel modules) +2021-01-07 17:56:29 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:29 ==== +2021-01-07 17:56:29 Performing test ID KRNL-5788 (Checking availability new Linux kernel) +2021-01-07 17:56:29 Test: Searching apt-cache, to determine if a newer kernel is available +2021-01-07 17:56:29 Result: found /usr/bin/apt-cache +2021-01-07 17:56:29 Test: checking presence of /vmlinuz or /boot/vmlinuz +2021-01-07 17:56:29 Result: found /vmlinuz +2021-01-07 17:56:29 Test: checking readlink location of /vmlinuz +2021-01-07 17:56:29 Output: readlink reported file /boot/vmlinuz-4.9.0-14-amd64 +2021-01-07 17:56:29 Test: checking package from dpkg -S +2021-01-07 17:56:30 Output: dpkg -S reported package linux-image-4.9.0-14-amd64 +2021-01-07 17:56:30 Test: Using apt-cache policy to determine if there is an update available +2021-01-07 17:56:30 Kernel installed: 4.9.246-2 +2021-01-07 17:56:30 Kernel candidate: 4.9.246-2 +2021-01-07 17:56:30 Result: no kernel update available +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID KRNL-5820 (Checking core dumps configuration) +2021-01-07 17:56:30 Test: Checking presence of systemd +2021-01-07 17:56:30 Result: systemd is present on this system +2021-01-07 17:56:30 Test: Checking if core dumps are disabled in /etc/systemd/coredump.conf and /etc/systemd/coredump.conf.d/*.conf +2021-01-07 17:56:30 Result: core dumps are not disabled in systemd configuration. Didn't find settings 'ProcessSizeMax=0' and 'Storage=none' +2021-01-07 17:56:30 Hardening: assigned partial number of hardening points (0 of 1). Currently having 3 points (out of 6) +2021-01-07 17:56:30 Test: Checking presence /etc/profile +2021-01-07 17:56:30 Test: Checking if 'ulimit -c 0' exists in /etc/profile or /etc/profile.d/*.sh +2021-01-07 17:56:30 Result: core dumps are not disabled in /etc/profile or /etc/profile.d/*.sh config files. Didn't find setting 'ulimit -c 0' +2021-01-07 17:56:30 Hardening: assigned partial number of hardening points (0 of 1). Currently having 3 points (out of 7) +2021-01-07 17:56:30 Test: Checking presence /etc/security/limits.conf +2021-01-07 17:56:30 Result: file /etc/security/limits.conf exists +2021-01-07 17:56:30 Test: Checking if core dumps are disabled in /etc/security/limits.conf and /etc/security/limits.d/* +2021-01-07 17:56:30 Result: core dumps are hard disabled +2021-01-07 17:56:30 Hardening: assigned maximum number of hardening points for this item (3). Currently having 6 points (out of 10) +2021-01-07 17:56:30 Test: Checking sysctl value of fs.suid_dumpable +2021-01-07 17:56:30 Result: value 0 found +2021-01-07 17:56:30 Result: found default option (0), no execute only program or program with changed privilege levels can dump +2021-01-07 17:56:30 Hardening: assigned maximum number of hardening points for this item (1). Currently having 7 points (out of 11) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID KRNL-5830 (Checking if system is running on the latest installed kernel) +2021-01-07 17:56:30 Test: Checking presence /var/run/reboot-required.pkgs +2021-01-07 17:56:30 Result: file /var/run/reboot-required.pkgs not found +2021-01-07 17:56:30 Result: /boot exists, performing more tests from here +2021-01-07 17:56:30 Result: found /boot/vmlinuz-4.9.0-14-amd64 +2021-01-07 17:56:30 Result: version derived from file name is '4.9.0-14-amd64' +2021-01-07 17:56:30 Result: found version 4.9.0-14-amd64 +2021-01-07 17:56:30 Result: active kernel version 4.9.0-14-amd64 +2021-01-07 17:56:30 Result: no reboot needed, active kernel is the same version as the one on disk +2021-01-07 17:56:30 Result: /var/cache/apt/archives/ does not exist +2021-01-07 17:56:30 Hardening: assigned maximum number of hardening points for this item (5). Currently having 12 points (out of 16) +2021-01-07 17:56:30 Security check: file is normal +2021-01-07 17:56:30 Checking permissions of /home/ktdw73/scans/lynis/include/tests_memory_processes +2021-01-07 17:56:30 File permissions are OK +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Action: Performing tests from category: Memory and Processes +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID PROC-3602 (Checking /proc/meminfo for memory details) +2021-01-07 17:56:30 Result: found /proc/meminfo +2021-01-07 17:56:30 Result: Found 4050856 kB memory +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Skipped test PROC-3604 (Query prtconf for memory details) +2021-01-07 17:56:30 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID PROC-3612 (Check dead or zombie processes) +2021-01-07 17:56:30 Result: no zombie processes found +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID PROC-3614 (Check heavy IO waiting based processes) +2021-01-07 17:56:30 Result: No processes were waiting for IO requests to be handled first +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID PROC-3802 (Check presence of prelink tooling) +2021-01-07 17:56:30 Result: prelink package is NOT installed +2021-01-07 17:56:30 Hardening: assigned maximum number of hardening points for this item (3). Currently having 15 points (out of 19) +2021-01-07 17:56:30 Security check: file is normal +2021-01-07 17:56:30 Checking permissions of /home/ktdw73/scans/lynis/include/tests_authentication +2021-01-07 17:56:30 File permissions are OK +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Action: Performing tests from category: Users, Groups and Authentication +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9204 (Check users with an UID of zero) +2021-01-07 17:56:30 Test: Searching accounts with UID 0 +2021-01-07 17:56:30 Result: No accounts found with UID 0 other than root. +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9208 (Check non-unique accounts in passwd file) +2021-01-07 17:56:30 Test: Checking for non-unique accounts +2021-01-07 17:56:30 Result: all accounts found in /etc/passwd are unique +2021-01-07 17:56:30 Remarks: Non unique UIDs can be a risk for the system or part of a configuration mistake +2021-01-07 17:56:30 Prerequisite test: /usr/sbin/chkgrp +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Skipped test AUTH-9212 (Test group file) +2021-01-07 17:56:30 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9216 (Check group and shadow group files) +2021-01-07 17:56:30 Test: Checking for grpck binary output +2021-01-07 17:56:30 Result: grpck binary didn't find any errors in the group files +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Skipped test AUTH-9218 (Check login shells for passwordless accounts) +2021-01-07 17:56:30 Reason to skip: Incorrect guest OS (DragonFly FreeBSD NetBSD OpenBSD only) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9222 (Check unique groups (IDs)) +2021-01-07 17:56:30 Test: Checking for non unique group ID's in /etc/group +2021-01-07 17:56:30 Result: All group ID's are unique +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9226 (Check unique group names) +2021-01-07 17:56:30 Test: Checking for non unique group names in /etc/group +2021-01-07 17:56:30 Result: All group names are unique +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9228 (Check password file consistency with pwck) +2021-01-07 17:56:30 Test: Checking password file consistency (pwck) +2021-01-07 17:56:30 Result: pwck check didn't find any problems +2021-01-07 17:56:30 Hardening: assigned maximum number of hardening points for this item (2). Currently having 17 points (out of 21) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9229 (Check password hashing methods) +2021-01-07 17:56:30 Test: Checking password hashing methods +2021-01-07 17:56:30 Result: no poor password hashing methods found +2021-01-07 17:56:30 Hardening: assigned maximum number of hardening points for this item (2). Currently having 19 points (out of 23) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9230 (Check password hashing rounds) +2021-01-07 17:56:30 Test: Checking SHA_CRYPT_{MIN,MAX}_ROUNDS option in /etc/login.defs +2021-01-07 17:56:30 Result: number of password hashing rounds is not configured +2021-01-07 17:56:30 Suggestion: Configure password hashing rounds in /etc/login.defs [test:AUTH-9230] [details:-] [solution:-] +2021-01-07 17:56:30 Hardening: assigned partial number of hardening points (0 of 2). Currently having 19 points (out of 25) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9234 (Query user accounts) +2021-01-07 17:56:30 Test: Read system users (including root user) from password database (e.g. /etc/passwd) +2021-01-07 17:56:30 Result: found minimal user id specified: 1000 +2021-01-07 17:56:30 Linux real users output (ID = 0, or 1000+, but not 65534): +2021-01-07 17:56:30 Real user: root,0 +2021-01-07 17:56:30 Real user: Tobias,1000 +2021-01-07 17:56:30 Real user: ktdw73,1001 +2021-01-07 17:56:30 Real user: ftpuser,1002 +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9240 (Query NIS+ authentication support) +2021-01-07 17:56:30 Result: NIS+ authentication not enabled +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9242 (Query NIS authentication support) +2021-01-07 17:56:30 Result: NIS authentication not enabled +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9250 (Checking sudoers file) +2021-01-07 17:56:30 Test: checking presence /etc/sudoers +2021-01-07 17:56:30 Result: found file (/etc/sudoers) +2021-01-07 17:56:30 Test: checking presence /usr/local/etc/sudoers +2021-01-07 17:56:30 Result: file /usr/local/etc/sudoers not found +2021-01-07 17:56:30 Test: checking presence /usr/pkg/etc/sudoers +2021-01-07 17:56:30 Result: file /usr/pkg/etc/sudoers not found +2021-01-07 17:56:30 Result: sudoers file found (/etc/sudoers) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9252 (Check ownership and permissions for sudo configuration files) +2021-01-07 17:56:30 Test: checking drop-in directory (/etc/sudoers.d) +2021-01-07 17:56:30 Result: Found directory permissions: rwxr-xr-x and owner UID GID: 00 +2021-01-07 17:56:30 Result: directory /etc/sudoers.d has possibly unsafe permissions +2021-01-07 17:56:30 Result: directory /etc/sudoers.d ownership OK +2021-01-07 17:56:30 Test: checking file (/etc/sudoers) +2021-01-07 17:56:30 Result: Found file permissions: r--r----- and owner UID GID: 00 +2021-01-07 17:56:30 Result: file /etc/sudoers permissions OK +2021-01-07 17:56:30 Result: file /etc/sudoers ownership OK +2021-01-07 17:56:30 Test: checking file (/etc/sudoers.d/google_sudoers) +2021-01-07 17:56:30 Result: Found file permissions: r--r----- and owner UID GID: 00 +2021-01-07 17:56:30 Result: file /etc/sudoers.d/google_sudoers permissions OK +2021-01-07 17:56:30 Result: file /etc/sudoers.d/google_sudoers ownership OK +2021-01-07 17:56:30 Test: checking file (/etc/sudoers.d/README) +2021-01-07 17:56:30 Result: Found file permissions: r--r----- and owner UID GID: 00 +2021-01-07 17:56:30 Result: file /etc/sudoers.d/README permissions OK +2021-01-07 17:56:30 Result: file /etc/sudoers.d/README ownership OK +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Skipped test AUTH-9254 (Solaris passwordless accounts) +2021-01-07 17:56:30 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9262 (Checking presence password strength testing tools (PAM)) +2021-01-07 17:56:30 Searching PAM password testing modules (cracklib, passwdqc, pwquality) +2021-01-07 17:56:30 Result: found pam_cracklib.so (crack library PAM) in /lib/x86_64-linux-gnu/security +2021-01-07 17:56:30 Result: pam_cracklib.so found +2021-01-07 17:56:30 Result: pam_passwdqc.so NOT found (passwd quality control PAM) +2021-01-07 17:56:30 Result: pam_pwquality.so NOT found (pwquality control PAM) +2021-01-07 17:56:30 Result: found at least one PAM module for password strength testing +2021-01-07 17:56:30 Hardening: assigned maximum number of hardening points for this item (3). Currently having 22 points (out of 28) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9264 (Checking presence pam.conf) +2021-01-07 17:56:30 Test: Checking file /etc/pam.conf +2021-01-07 17:56:30 Result: file /etc/pam.conf exists +2021-01-07 17:56:30 Test: searching PAM configuration files +2021-01-07 17:56:30 Result: File has no configuration options defined (empty, or only filled with comments and empty lines) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9266 (Checking presence pam.d files) +2021-01-07 17:56:30 Test: Checking directory /etc/pam.d +2021-01-07 17:56:30 Result: directory /etc/pam.d exists +2021-01-07 17:56:30 Test: searching PAM configuration files +2021-01-07 17:56:30 Found file: /etc/pam.d/chfn +2021-01-07 17:56:30 Found file: /etc/pam.d/chpasswd +2021-01-07 17:56:30 Found file: /etc/pam.d/chsh +2021-01-07 17:56:30 Found file: /etc/pam.d/common-account +2021-01-07 17:56:30 Found file: /etc/pam.d/common-auth +2021-01-07 17:56:30 Found file: /etc/pam.d/common-password +2021-01-07 17:56:30 Found file: /etc/pam.d/common-session +2021-01-07 17:56:30 Found file: /etc/pam.d/common-session-noninteractive +2021-01-07 17:56:30 Found file: /etc/pam.d/cron +2021-01-07 17:56:30 Found file: /etc/pam.d/login +2021-01-07 17:56:30 Found file: /etc/pam.d/newusers +2021-01-07 17:56:30 Found file: /etc/pam.d/other +2021-01-07 17:56:30 Found file: /etc/pam.d/passwd +2021-01-07 17:56:30 Found file: /etc/pam.d/runuser +2021-01-07 17:56:30 Found file: /etc/pam.d/runuser-l +2021-01-07 17:56:30 Found file: /etc/pam.d/smtp +2021-01-07 17:56:30 Found file: /etc/pam.d/sshd +2021-01-07 17:56:30 Found file: /etc/pam.d/su +2021-01-07 17:56:30 Found file: /etc/pam.d/sudo +2021-01-07 17:56:30 Found file: /etc/pam.d/systemd-user +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9268 (Checking presence pam.d files) +2021-01-07 17:56:30 Test: Searching pam modules +2021-01-07 17:56:30 Test: Checking /lib/arm-linux-gnueabihf/security +2021-01-07 17:56:30 Result: directory /lib/arm-linux-gnueabihf/security could not be found or is a symlink to another directory +2021-01-07 17:56:30 Test: Checking /lib/i386-linux-gnu/security +2021-01-07 17:56:30 Result: directory /lib/i386-linux-gnu/security could not be found or is a symlink to another directory +2021-01-07 17:56:30 Test: Checking /lib/security +2021-01-07 17:56:30 Result: directory /lib/security could not be found or is a symlink to another directory +2021-01-07 17:56:30 Test: Checking /lib/x86_64-linux-gnu/security +2021-01-07 17:56:30 Result: directory /lib/x86_64-linux-gnu/security exists +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_access.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_cracklib.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_debug.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_deny.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_echo.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_env.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_exec.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_faildelay.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_filter.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_ftp.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_group.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_issue.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_keyinit.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_lastlog.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_limits.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_listfile.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_localuser.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_loginuid.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_mail.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_mkhomedir.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_motd.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_namespace.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_nologin.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_oslogin_admin.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_oslogin_login.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_permit.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_pwhistory.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_rhosts.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_rootok.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_securetty.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_selinux.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_sepermit.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_shells.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_stress.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_succeed_if.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_tally.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_tally2.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_time.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_timestamp.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_tty_audit.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_umask.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_unix.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_userdb.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_warn.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_wheel.so +2021-01-07 17:56:30 Found file: /lib/x86_64-linux-gnu/security/pam_xauth.so +2021-01-07 17:56:30 Test: Checking /lib64/security +2021-01-07 17:56:30 Result: directory /lib64/security could not be found or is a symlink to another directory +2021-01-07 17:56:30 Test: Checking /usr/lib +2021-01-07 17:56:30 Result: directory /usr/lib exists +2021-01-07 17:56:30 Test: Checking /usr/lib/security +2021-01-07 17:56:30 Result: directory /usr/lib/security could not be found or is a symlink to another directory +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9278 (Determine LDAP support in PAM files) +2021-01-07 17:56:30 Test: checking presence /etc/pam.d/common-auth +2021-01-07 17:56:30 Result: file /etc/pam.d/common-auth exists +2021-01-07 17:56:30 Test: checking presence LDAP module +2021-01-07 17:56:30 Result: LDAP module not found +2021-01-07 17:56:30 Test: checking presence /etc/pam.d/system-auth +2021-01-07 17:56:30 Result: file /etc/pam.d/system-auth not found, skipping test +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9282 (Checking password protected account without expire date) +2021-01-07 17:56:30 Test: Checking Linux version and password expire date status +2021-01-07 17:56:30 Result: all accounts seem to have an expire date +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9283 (Checking accounts without password) +2021-01-07 17:56:30 Test: Checking passwordless accounts +2021-01-07 17:56:30 Result: all accounts seem to have a password +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9284 (Check locked user accounts in /etc/passwd) +2021-01-07 17:56:30 Test: Checking locked accounts +2021-01-07 17:56:30 Result: found one or more locked accounts +2021-01-07 17:56:30 Locked account: Tobias +2021-01-07 17:56:30 Locked account: ftpuser +2021-01-07 17:56:30 Locked account: ktdw73 +2021-01-07 17:56:30 Suggestion: Look at the locked accounts and consider removing them [test:AUTH-9284] [details:-] [solution:-] +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9286 (Checking user password aging) +2021-01-07 17:56:30 Test: Checking PASS_MIN_DAYS option in /etc/login.defs +2021-01-07 17:56:30 Result: password needs to be at least 7 days old +2021-01-07 17:56:30 Hardening: assigned maximum number of hardening points for this item (3). Currently having 25 points (out of 31) +2021-01-07 17:56:30 Test: Checking PASS_MAX_DAYS option in /etc/login.defs +2021-01-07 17:56:30 Result: max password age is 90 days +2021-01-07 17:56:30 Hardening: assigned maximum number of hardening points for this item (3). Currently having 28 points (out of 34) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9288 (Checking for expired passwords) +2021-01-07 17:56:30 Test: check if we can access /etc/shadow (escaped: /etc/shadow) +2021-01-07 17:56:30 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:30 Result: file /etc/shadow is readable (or directory accessible). +2021-01-07 17:56:30 Data: Days since epoch is 18634 +2021-01-07 17:56:30 Test: collecting accounts which have an expired password (last day changed + maximum change time) +2021-01-07 17:56:30 Result: good, no passwords have been expired +2021-01-07 17:56:30 Hardening: assigned maximum number of hardening points for this item (10). Currently having 38 points (out of 44) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Skipped test AUTH-9304 (Check single user login configuration) +2021-01-07 17:56:30 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Skipped test AUTH-9306 (Check single boot authentication) +2021-01-07 17:56:30 Reason to skip: Incorrect guest OS (HP-UX only) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9308 (Check single user login configuration) +2021-01-07 17:56:30 Test: going to check several systemd targets now +2021-01-07 17:56:30 Test: checking if target console-shell.service is available (/lib/systemd/system/console-shell.service) +2021-01-07 17:56:30 Result: target console-shell.service not found +2021-01-07 17:56:30 Test: checking if target emergency.service is available (/lib/systemd/system/emergency.service) +2021-01-07 17:56:30 Result: found target emergency.service +2021-01-07 17:56:30 Result: sulogin was found, which is a good measure to protect single user mode +2021-01-07 17:56:30 Test: checking if target rescue.service is available (/lib/systemd/system/rescue.service) +2021-01-07 17:56:30 Result: found target rescue.service +2021-01-07 17:56:30 Result: sulogin was found, which is a good measure to protect single user mode +2021-01-07 17:56:30 Result: option set, password is needed at single user mode boot +2021-01-07 17:56:30 Hardening: assigned maximum number of hardening points for this item (2). Currently having 40 points (out of 46) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9328 (Default umask values) +2021-01-07 17:56:30 Test: Checking /etc/profile.d directory +2021-01-07 17:56:30 Result: found /etc/profile.d, but it does not contain any files +2021-01-07 17:56:30 Test: Checking /etc/profile +2021-01-07 17:56:30 Result: file /etc/profile exists +2021-01-07 17:56:30 Test: Checking umask value in /etc/profile +2021-01-07 17:56:30 Result: did not find umask in /etc/profile +2021-01-07 17:56:30 Result: found no umask. Please check if this is correct +2021-01-07 17:56:30 Test: Checking umask entries in /etc/passwd (pam_umask) +2021-01-07 17:56:30 Result: file /etc/passwd exists +2021-01-07 17:56:30 Test: Checking umask value in /etc/passwd +2021-01-07 17:56:30 Manual: one or more manual actions are required for further testing of this control/plugin +2021-01-07 17:56:30 Test: Checking /etc/login.defs +2021-01-07 17:56:30 Result: file /etc/login.defs exists +2021-01-07 17:56:30 Test: Checking umask value in /etc/login.defs +2021-01-07 17:56:30 Result: umask is 027, which is fine +2021-01-07 17:56:30 Hardening: assigned maximum number of hardening points for this item (2). Currently having 42 points (out of 48) +2021-01-07 17:56:30 Test: Checking /etc/init.d/functions +2021-01-07 17:56:30 Result: file /etc/init.d/functions does not exist +2021-01-07 17:56:30 Test: Checking /etc/init.d/rc +2021-01-07 17:56:30 Result: file /etc/init.d/rc does not exist +2021-01-07 17:56:30 Test: Checking /etc/init.d/rcS +2021-01-07 17:56:30 Result: file /etc/init.d/rcS does not exist +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Skipped test AUTH-9340 (Solaris account locking) +2021-01-07 17:56:30 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9402 (Query LDAP authentication support) +2021-01-07 17:56:30 Result: LDAP authentication not enabled +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Skipped test AUTH-9406 (Query LDAP servers in client configuration) +2021-01-07 17:56:30 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:30 ==== +2021-01-07 17:56:30 Performing test ID AUTH-9408 (Logging of failed login attempts) +2021-01-07 17:56:30 Result: did not find /var/log/tallylog on disk or its file size is zero bytes +2021-01-07 17:56:31 Result: found pam_tally2 module on disk +2021-01-07 17:56:31 Outcome: it looks like pam_tally2 is not configured to log failed login attempts +2021-01-07 17:56:31 Test: Checking FAILLOG_ENAB option in /etc/login.defs +2021-01-07 17:56:31 Result: FAILLOG_ENAB is set to 'yes' +2021-01-07 17:56:31 Outcome: failed login attempts are logged in /var/log/faillog +2021-01-07 17:56:31 Hardening: assigned maximum number of hardening points for this item (3). Currently having 45 points (out of 51) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test AUTH-9409 (Checking /etc/doas.conf file) +2021-01-07 17:56:31 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test AUTH-9410 (Check /etc/doas.conf file permissions) +2021-01-07 17:56:31 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:56:31 Security check: file is normal +2021-01-07 17:56:31 Checking permissions of /home/ktdw73/scans/lynis/include/tests_shells +2021-01-07 17:56:31 File permissions are OK +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Action: Performing tests from category: Shells +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test SHLL-6202 (Check console TTYs) +2021-01-07 17:56:31 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID SHLL-6211 (Available and valid shells) +2021-01-07 17:56:31 Test: Searching for /etc/shells +2021-01-07 17:56:31 Result: Found /etc/shells file +2021-01-07 17:56:31 Test: Reading available shells from /etc/shells +2021-01-07 17:56:31 Found installed shell: /bin/sh +2021-01-07 17:56:31 Found installed shell: /bin/dash +2021-01-07 17:56:31 Found installed shell: /bin/bash +2021-01-07 17:56:31 Found installed shell: /bin/rbash +2021-01-07 17:56:31 Found installed shell: /usr/bin/screen +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID SHLL-6220 (Idle session killing tools or settings) +2021-01-07 17:56:31 Test: Search for session timeout tools or settings in shell +2021-01-07 17:56:31 Performing pgrep scan without uid +2021-01-07 17:56:31 IsRunning: process 'timeoutd' not found +2021-01-07 17:56:31 Performing pgrep scan without uid +2021-01-07 17:56:31 IsRunning: process 'autolog' not found +2021-01-07 17:56:31 Result: could not find TMOUT setting in /etc/profile +2021-01-07 17:56:31 Result: could not find export, readonly or typeset -r in /etc/profile +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (1 of 3). Currently having 46 points (out of 54) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID SHLL-6230 (Perform umask check for shell configurations) +2021-01-07 17:56:31 Result: file /etc/bashrc not found +2021-01-07 17:56:31 Result: file /etc/bash.bashrc exists +2021-01-07 17:56:31 Result: did not find umask configured in /etc/bash.bashrc +2021-01-07 17:56:31 Result: file /etc/bash.bashrc.local not found +2021-01-07 17:56:31 Result: file /etc/csh.cshrc not found +2021-01-07 17:56:31 Result: file /etc/profile exists +2021-01-07 17:56:31 Result: did not find umask configured in /etc/profile +2021-01-07 17:56:31 Security check: file is normal +2021-01-07 17:56:31 Checking permissions of /home/ktdw73/scans/lynis/include/tests_filesystems +2021-01-07 17:56:31 File permissions are OK +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Action: Performing tests from category: File systems +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6310 (Checking /tmp, /home and /var directory) +2021-01-07 17:56:31 Test: Checking if /home is mounted separately or mounted on / file system +2021-01-07 17:56:31 Result: directory /home exists +2021-01-07 17:56:31 Result: /home not found in mount list. Directory most likely stored on / file system +2021-01-07 17:56:31 Suggestion: To decrease the impact of a full /home file system, place /home on a separate partition [test:FILE-6310] [details:-] [solution:-] +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (9 of 10). Currently having 55 points (out of 64) +2021-01-07 17:56:31 Test: Checking if /tmp is mounted separately or mounted on / file system +2021-01-07 17:56:31 Result: directory /tmp exists +2021-01-07 17:56:31 Result: found /tmp as a separated mount point +2021-01-07 17:56:31 Hardening: assigned maximum number of hardening points for this item (10). Currently having 65 points (out of 74) +2021-01-07 17:56:31 Test: Checking if /var is mounted separately or mounted on / file system +2021-01-07 17:56:31 Result: directory /var exists +2021-01-07 17:56:31 Result: /var not found in mount list. Directory most likely stored on / file system +2021-01-07 17:56:31 Suggestion: To decrease the impact of a full /var file system, place /var on a separate partition [test:FILE-6310] [details:-] [solution:-] +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (9 of 10). Currently having 74 points (out of 84) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test FILE-6311 (Checking LVM volume groups) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test FILE-6312 (Checking LVM volumes) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6323 (Checking EXT file systems) +2021-01-07 17:56:31 Test: Checking for Linux EXT file systems +2021-01-07 17:56:31 Result: found one or more EXT file systems +2021-01-07 17:56:31 File system: / (type: ext4) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6324 (Checking XFS file systems) +2021-01-07 17:56:31 Test: Checking for Linux XFS file systems +2021-01-07 17:56:31 Result: no XFS file systems found +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6329 (Checking FFS/UFS file systems) +2021-01-07 17:56:31 Test: Query /etc/fstab for available FFS/UFS mount points +2021-01-07 17:56:31 Result: unable to find any single mount point (FFS/UFS) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test FILE-6330 (Checking ZFS file systems) +2021-01-07 17:56:31 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test FILE-6439 (Checking HAMMER PFS mounts) +2021-01-07 17:56:31 Reason to skip: Incorrect guest OS (DragonFly only) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6332 (Checking swap partitions) +2021-01-07 17:56:31 Test: query swap partitions from /etc/fstab file +2021-01-07 17:56:31 Result: no swap partitions found in /etc/fstab +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6336 (Checking swap mount options) +2021-01-07 17:56:31 Test: check swap partitions with incorrect mount options +2021-01-07 17:56:31 Result: all swap partitions have correct options (sw or swap) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6344 (Checking proc mount options) +2021-01-07 17:56:31 Test: check proc mount with incorrect mount options +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (0 of 3). Currently having 74 points (out of 87) +2021-01-07 17:56:31 Result: /proc filesystem is not mounted with option hidepid=1 or hidepid=2 +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6354 (Searching for old files in /tmp) +2021-01-07 17:56:31 Test: Searching for old files in /tmp +2021-01-07 17:56:31 Result: no files found in /tmp which are older than 3 months +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6362 (Checking /tmp sticky bit) +2021-01-07 17:56:31 Result: sticky bit found on /tmp directory +2021-01-07 17:56:31 Hardening: assigned maximum number of hardening points for this item (3). Currently having 77 points (out of 90) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6363 (Checking /var/tmp sticky bit) +2021-01-07 17:56:31 Result: sticky bit found on /var/tmp directory +2021-01-07 17:56:31 Hardening: assigned maximum number of hardening points for this item (3). Currently having 80 points (out of 93) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6368 (Checking ACL support on root file system) +2021-01-07 17:56:31 Test: Checking acl option on ext[2-4] root file system +2021-01-07 17:56:31 Result: mount point probably mounted with defaults +2021-01-07 17:56:31 Test: Checking device which holds root file system +2021-01-07 17:56:31 Result: found /dev/sda1 +2021-01-07 17:56:31 Test: Checking default options on /dev/sda1 +2021-01-07 17:56:31 Result: found ACL option in default mount options +2021-01-07 17:56:31 Test: Checking acl option on xfs root file system +2021-01-07 17:56:31 Result: ACL option enabled on root file system +2021-01-07 17:56:31 Hardening: assigned maximum number of hardening points for this item (3). Currently having 83 points (out of 96) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6372 (Checking / mount options) +2021-01-07 17:56:31 Result: mount system / is configured with options: defaults +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6374 (Linux mount options) +2021-01-07 17:56:31 Result: file system /boot not found in /etc/fstab +2021-01-07 17:56:31 File system: /dev +2021-01-07 17:56:31 Expected flags: noexec nosuid +2021-01-07 17:56:31 Found flags: (rw nosuid relatime size=2014280k nr_inodes=503570 mode=755) +2021-01-07 17:56:31 Result: Could not find mount option noexec on file system /dev +2021-01-07 17:56:31 Result: GOOD, found mount option nosuid on file system /dev +2021-01-07 17:56:31 Result: marked /dev as partially hardened +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (4 of 5). Currently having 87 points (out of 101) +2021-01-07 17:56:31 File system: /dev/shm +2021-01-07 17:56:31 Expected flags: nosuid nodev noexec +2021-01-07 17:56:31 Found flags: (rw nosuid nodev) +2021-01-07 17:56:31 Result: GOOD, found mount option nosuid on file system /dev/shm +2021-01-07 17:56:31 Result: GOOD, found mount option nodev on file system /dev/shm +2021-01-07 17:56:31 Result: Could not find mount option noexec on file system /dev/shm +2021-01-07 17:56:31 Result: marked /dev/shm as partially hardened +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (4 of 5). Currently having 91 points (out of 106) +2021-01-07 17:56:31 Result: file system /home not found in /etc/fstab +2021-01-07 17:56:31 File system: /run +2021-01-07 17:56:31 Expected flags: nodev nosuid +2021-01-07 17:56:31 Found flags: (rw nosuid noexec relatime size=405088k mode=755) +2021-01-07 17:56:31 Result: Could not find mount option nodev on file system /run +2021-01-07 17:56:31 Result: GOOD, found mount option nosuid on file system /run +2021-01-07 17:56:31 Result: marked /run as partially hardened +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (4 of 5). Currently having 95 points (out of 111) +2021-01-07 17:56:31 File system: /tmp +2021-01-07 17:56:31 Expected flags: nodev noexec nosuid +2021-01-07 17:56:31 Found flags: loop nosuid nodev noexec rw +2021-01-07 17:56:31 Result: GOOD, found mount option nodev on file system /tmp +2021-01-07 17:56:31 Result: GOOD, found mount option noexec on file system /tmp +2021-01-07 17:56:31 Result: GOOD, found mount option nosuid on file system /tmp +2021-01-07 17:56:31 Result: marked /tmp as fully hardened +2021-01-07 17:56:31 Hardening: assigned maximum number of hardening points for this item (5). Currently having 100 points (out of 116) +2021-01-07 17:56:31 Result: file system /var not found in /etc/fstab +2021-01-07 17:56:31 Result: file system /var/log not found in /etc/fstab +2021-01-07 17:56:31 Result: file system /var/log/audit not found in /etc/fstab +2021-01-07 17:56:31 Result: file system /var/tmp not found in /etc/fstab +2021-01-07 17:56:31 Result: Total without nodev:9 noexec:8 nosuid:6 ro or noexec (W^X): 8, of total 27 +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6376 (Determine if /var/tmp is bound to /tmp) +2021-01-07 17:56:31 Result: no mount point /var/tmp or expected options found +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6394 (Determine level of swappiness.) +2021-01-07 17:56:31 Test: checking level of vm.swappiness: 60 +2021-01-07 17:56:31 Result: vm.swappiness=60 which is the standard level of swappiness and works well for desktop systems. +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test FILE-6410 (Checking Locate database) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID FILE-6430 (Disable mounting of some filesystems) +2021-01-07 17:56:31 Hardening: assigned maximum number of hardening points for this item (3). Currently having 103 points (out of 119) +2021-01-07 17:56:31 Result: found freevxfs support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/freevxfs/freevxfs.ko ) +2021-01-07 17:56:31 Test: Checking if freevxfs is active +2021-01-07 17:56:31 Result: module freevxfs is currently not loaded in the kernel. +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (2 of 3). Currently having 105 points (out of 122) +2021-01-07 17:56:31 Result: found hfs support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/hfs/hfs.ko ) +2021-01-07 17:56:31 Test: Checking if hfs is active +2021-01-07 17:56:31 Result: module hfs is currently not loaded in the kernel. +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (2 of 3). Currently having 107 points (out of 125) +2021-01-07 17:56:31 Result: found hfsplus support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/hfsplus/hfsplus.ko ) +2021-01-07 17:56:31 Test: Checking if hfsplus is active +2021-01-07 17:56:31 Result: module hfsplus is currently not loaded in the kernel. +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (2 of 3). Currently having 109 points (out of 128) +2021-01-07 17:56:31 Result: found jffs2 support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/jffs2/jffs2.ko ) +2021-01-07 17:56:31 Test: Checking if jffs2 is active +2021-01-07 17:56:31 Result: module jffs2 is currently not loaded in the kernel. +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (2 of 3). Currently having 111 points (out of 131) +2021-01-07 17:56:31 Result: found squashfs support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/squashfs/squashfs.ko ) +2021-01-07 17:56:31 Test: Checking if squashfs is active +2021-01-07 17:56:31 Result: module squashfs is currently not loaded in the kernel. +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (2 of 3). Currently having 113 points (out of 134) +2021-01-07 17:56:31 Result: found udf support in the kernel (output = insmod /lib/modules/4.9.0-14-amd64/kernel/fs/udf/udf.ko ) +2021-01-07 17:56:31 Test: Checking if udf is active +2021-01-07 17:56:31 Result: module udf is currently not loaded in the kernel. +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (2 of 3). Currently having 115 points (out of 137) +2021-01-07 17:56:31 Suggestion: Consider disabling unused kernel modules [test:FILE-6430] [details:/etc/modprobe.d/blacklist.conf] [solution:Add 'install MODULENAME /bin/true' (without quotes)] +2021-01-07 17:56:31 Security check: file is normal +2021-01-07 17:56:31 Checking permissions of /home/ktdw73/scans/lynis/include/tests_usb +2021-01-07 17:56:31 File permissions are OK +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Action: Performing tests from category: USB Devices +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID USB-1000 (Check if USB storage is disabled) +2021-01-07 17:56:31 Test: Checking USB storage driver in directory /etc/modprobe.d and configuration file /etc/modprobe.conf +2021-01-07 17:56:31 Result: found usb-storage driver in disabled state (blacklisted) +2021-01-07 17:56:31 Result: usb-storage driver is disabled +2021-01-07 17:56:31 Hardening: assigned maximum number of hardening points for this item (3). Currently having 118 points (out of 140) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID USB-2000 (Check USB authorizations) +2021-01-07 17:56:31 Test: checking presence of USB devices path (/sys/bus/usb/devices) +2021-01-07 17:56:31 Result: devices path does not exist +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID USB-3000 (Check for presence of USBGuard) +2021-01-07 17:56:31 Result: USBGuard not found +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (0 of 8). Currently having 118 points (out of 148) +2021-01-07 17:56:31 Security check: file is normal +2021-01-07 17:56:31 Checking permissions of /home/ktdw73/scans/lynis/include/tests_storage +2021-01-07 17:56:31 File permissions are OK +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Action: Performing tests from category: Storage +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID STRG-1846 (Check if firewire storage is disabled) +2021-01-07 17:56:31 Test: Checking firewire storage driver in directory /etc/modprobe.d and configuration file /etc/modprobe.conf +2021-01-07 17:56:31 Result: firewire ohci driver is not explicitly disabled +2021-01-07 17:56:31 Suggestion: Disable drivers like firewire storage when not used, to prevent unauthorized storage or data theft [test:STRG-1846] [details:-] [solution:-] +2021-01-07 17:56:31 Hardening: assigned partial number of hardening points (2 of 3). Currently having 120 points (out of 151) +2021-01-07 17:56:31 Security check: file is normal +2021-01-07 17:56:31 Checking permissions of /home/ktdw73/scans/lynis/include/tests_storage_nfs +2021-01-07 17:56:31 File permissions are OK +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Action: Performing tests from category: NFS +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test STRG-1902 (Check rpcinfo registered programs) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test STRG-1904 (Check nfs rpc) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test STRG-1906 (Check nfs rpc) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID STRG-1920 (Checking NFS daemon) +2021-01-07 17:56:31 Test: Checking running NFS daemon +2021-01-07 17:56:31 Output: NFS daemon is not running +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test STRG-1926 (Checking NFS exports) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test STRG-1928 (Checking empty /etc/exports) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test STRG-1930 (Check client access to nfs share) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 Security check: file is normal +2021-01-07 17:56:31 Checking permissions of /home/ktdw73/scans/lynis/include/tests_nameservices +2021-01-07 17:56:31 File permissions are OK +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Action: Performing tests from category: Name services +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID NAME-4016 (Check /etc/resolv.conf default domain) +2021-01-07 17:56:31 Test: check /etc/resolv.conf for default domain +2021-01-07 17:56:31 Result: /etc/resolv.conf found +2021-01-07 17:56:31 Result: found default domain +2021-01-07 17:56:31 Output: europe-west3-c.c.cc2020-tobiaswieck.internal +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID NAME-4018 (Check /etc/resolv.conf search domains) +2021-01-07 17:56:31 Test: check /etc/resolv.conf for search domains +2021-01-07 17:56:31 Result: /etc/resolv.conf found +2021-01-07 17:56:31 Found search domain: europe-west3-c.c.cc2020-tobiaswieck.internal. +2021-01-07 17:56:31 Result: Found 1 search domains +2021-01-07 17:56:31 Result: found 1 line(s) with a search statement (expecting less than 2 lines) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID NAME-4020 (Check non default options) +2021-01-07 17:56:31 Test: check /etc/resolv.conf for non default options +2021-01-07 17:56:31 Result: /etc/resolv.conf found +2021-01-07 17:56:31 Result: no specific other options configured in /etc/resolv.conf +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test NAME-4024 (Solaris uname -n output) +2021-01-07 17:56:31 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test NAME-4026 (Check /etc/nodename) +2021-01-07 17:56:31 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID NAME-4028 (Check domain name) +2021-01-07 17:56:31 Test: Checking if dnsdomainname command is available +2021-01-07 17:56:31 Result: dnsdomainname command returned a value +2021-01-07 17:56:31 Found domain name: europe-west3-c.c.cc2020-tobiaswieck.internal +2021-01-07 17:56:31 Result: found domain name +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID NAME-4032 (Check nscd status) +2021-01-07 17:56:31 Test: checking nscd status +2021-01-07 17:56:31 Performing pgrep scan without uid +2021-01-07 17:56:31 IsRunning: process 'nscd' not found +2021-01-07 17:56:31 Result: nscd is not running +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID NAME-4034 (Check Unbound status) +2021-01-07 17:56:31 Test: checking Unbound (unbound) status +2021-01-07 17:56:31 Performing pgrep scan without uid +2021-01-07 17:56:31 IsRunning: process 'unbound' not found +2021-01-07 17:56:31 Result: Unbound daemon is not running +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test NAME-4036 (Check Unbound configuration file) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID NAME-4202 (Check BIND status) +2021-01-07 17:56:31 Test: Checking for running BIND instance +2021-01-07 17:56:31 Performing pgrep scan without uid +2021-01-07 17:56:31 IsRunning: process 'named' not found +2021-01-07 17:56:31 Result: BIND not running +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test NAME-4204 (Search BIND configuration file) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test NAME-4206 (Check BIND configuration consistency) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test NAME-4210 (Check DNS banner) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID NAME-4230 (Check PowerDNS status) +2021-01-07 17:56:31 Test: Checking for running PowerDNS instance +2021-01-07 17:56:31 Performing pgrep scan without uid +2021-01-07 17:56:31 IsRunning: process 'pdns_server' not found +2021-01-07 17:56:31 Result: PowerDNS not running +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test NAME-4232 (Search PowerDNS configuration file) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test NAME-4236 (Check PowerDNS backends) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test NAME-4238 (Check PowerDNS authoritative status) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID NAME-4304 (Check NIS ypbind status) +2021-01-07 17:56:31 Test: Checking status of ypbind daemon +2021-01-07 17:56:31 Performing pgrep scan without uid +2021-01-07 17:56:31 IsRunning: process 'ypbind' not found +2021-01-07 17:56:31 Result: ypbind is not active +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Skipped test NAME-4306 (Check NIS domain) +2021-01-07 17:56:31 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:31 ==== +2021-01-07 17:56:31 Performing test ID NAME-4402 (Check duplicate line in /etc/hosts) +2021-01-07 17:56:31 Test: check duplicate line in /etc/hosts +2021-01-07 17:56:31 Result: OK, no duplicate lines found +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Performing test ID NAME-4404 (Check /etc/hosts contains an entry for this server name) +2021-01-07 17:56:32 Test: Check /etc/hosts contains an entry for this server name +2021-01-07 17:56:32 Result: Found entry for debian-9 in /etc/hosts +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Performing test ID NAME-4406 (Check server hostname mapping) +2021-01-07 17:56:32 Test: Check server hostname not locally mapped in /etc/hosts +2021-01-07 17:56:32 Result: this server hostname is not mapped to a local address +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Performing test ID NAME-4408 (Check localhost entry) +2021-01-07 17:56:32 Test: Check server hostname not locally mapped in /etc/hosts +2021-01-07 17:56:32 Result: localhost mapped to ::1 +2021-01-07 17:56:32 Security check: file is normal +2021-01-07 17:56:32 Checking permissions of /home/ktdw73/scans/lynis/include/tests_dns +2021-01-07 17:56:32 File permissions are OK +2021-01-07 17:56:32 Security check: file is normal +2021-01-07 17:56:32 Checking permissions of /home/ktdw73/scans/lynis/include/tests_ports_packages +2021-01-07 17:56:32 File permissions are OK +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Action: Performing tests from category: Ports and packages +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7301 (Query FreeBSD pkg) +2021-01-07 17:56:32 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7302 (Query FreeBSD/NetBSD pkg_info) +2021-01-07 17:56:32 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7303 (Query brew package manager) +2021-01-07 17:56:32 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:32 Result: brew can NOT be found on this system +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7304 (Querying Gentoo packages) +2021-01-07 17:56:32 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:32 Result: emerge can NOT be found on this system +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7306 (Querying Solaris packages) +2021-01-07 17:56:32 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:32 Result: pkginfo can NOT be found on this system +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7308 (Checking package list with RPM) +2021-01-07 17:56:32 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:32 Result: RPM binary NOT found on this system, test skipped +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7310 (Checking package list with pacman) +2021-01-07 17:56:32 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7312 (Checking available updates for pacman based system) +2021-01-07 17:56:32 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:32 Result: pacman binary NOT found on this system, test skipped +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7314 (Checking pacman configuration options) +2021-01-07 17:56:32 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7320 (Checking for arch-audit tooling) +2021-01-07 17:56:32 Reason to skip: Test only applies to Arch Linux +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7322 (Discover vulnerable packages with arch-audit) +2021-01-07 17:56:32 Reason to skip: arch-audit not found +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7328 (Querying Zypper for installed packages) +2021-01-07 17:56:32 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7330 (Querying Zypper for vulnerable packages) +2021-01-07 17:56:32 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7332 (Query macOS ports) +2021-01-07 17:56:32 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Skipped test PKGS-7334 (Query port for port upgrades) +2021-01-07 17:56:32 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:56:32 ==== +2021-01-07 17:56:32 Performing test ID PKGS-7345 (Querying dpkg) +2021-01-07 17:56:32 Result: Found dpkg binary +2021-01-07 17:56:32 Test: Querying dpkg -l to get package list +2021-01-07 17:56:32 Output: +2021-01-07 17:56:32 Found package: acct (version: 6.6.2-1) +2021-01-07 17:56:32 Found package: acpi-support-base (version: 0.142-8) +2021-01-07 17:56:32 Found package: acpid (version: 1:2.0.28-1+b1) +2021-01-07 17:56:32 Found package: adduser (version: 3.115) +2021-01-07 17:56:32 Found package: apt (version: 1.4.11) +2021-01-07 17:56:32 Found package: apt-utils (version: 1.4.11) +2021-01-07 17:56:32 Found package: base-files (version: 9.9+deb9u13) +2021-01-07 17:56:32 Found package: base-passwd (version: 3.5.43) +2021-01-07 17:56:32 Found package: bash (version: 4.4-5) +2021-01-07 17:56:32 Found package: bind9-host (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:56:32 Found package: binutils (version: 2.28-5) +2021-01-07 17:56:32 Found package: bsdmainutils (version: 9.0.12+nmu1) +2021-01-07 17:56:32 Found package: bsdutils (version: 1:2.29.2-1+deb9u1) +2021-01-07 17:56:32 Found package: busybox (version: 1:1.22.0-19+b3) +2021-01-07 17:56:32 Found package: ca-certificates (version: 20200601~deb9u1) +2021-01-07 17:56:32 Found package: chkrootkit (version: 0.50-4+deb9u1) +2021-01-07 17:56:32 Found package: cloud-guest-utils (version: 0.29-1) +2021-01-07 17:56:32 Found package: coreutils (version: 8.26-3) +2021-01-07 17:56:32 Found package: cpio (version: 2.11+dfsg-6) +2021-01-07 17:56:32 Found package: cracklib-runtime (version: 2.9.2-5) +2021-01-07 17:56:32 Found package: cron (version: 3.0pl1-128+deb9u1) +2021-01-07 17:56:32 Found package: curl (version: 7.52.1-5+deb9u13) +2021-01-07 17:56:32 Found package: dash (version: 0.5.8-2.4) +2021-01-07 17:56:32 Found package: debconf (version: 1.5.61) +2021-01-07 17:56:32 Found package: debconf-i18n (version: 1.5.61) +2021-01-07 17:56:32 Found package: debian-archive-keyring (version: 2017.5+deb9u1) +2021-01-07 17:56:32 Found package: debianutils (version: 4.8.1.1) +2021-01-07 17:56:32 Found package: dh-python (version: 2.20170125) +2021-01-07 17:56:32 Found package: diffutils (version: 1:3.5-3) +2021-01-07 17:56:32 Found package: distro-info-data (version: 0.36) +2021-01-07 17:56:32 Found package: dmidecode (version: 3.0-4) +2021-01-07 17:56:32 Found package: dmsetup (version: 2:1.02.137-2) +2021-01-07 17:56:32 Found package: dpkg (version: 1.18.25) +2021-01-07 17:56:32 Found package: e2fslibs:amd64 (version: 1.43.4-2+deb9u2) +2021-01-07 17:56:32 Found package: e2fsprogs (version: 1.43.4-2+deb9u2) +2021-01-07 17:56:32 Found package: ethtool (version: 1:4.8-1+b1) +2021-01-07 17:56:32 Found package: fail2ban (version: 0.9.6-2) +2021-01-07 17:56:32 Found package: file (version: 1:5.30-1+deb9u3) +2021-01-07 17:56:32 Found package: findutils (version: 4.6.0+git+20161106-2) +2021-01-07 17:56:32 Found package: gcc-6-base:amd64 (version: 6.3.0-18+deb9u1) +2021-01-07 17:56:32 Found package: gdisk (version: 1.0.1-1) +2021-01-07 17:56:32 Found package: geoip-database (version: 20170512-1) +2021-01-07 17:56:32 Found package: gettext-base (version: 0.19.8.1-2+deb9u1) +2021-01-07 17:56:32 Found package: git (version: 1:2.11.0-3+deb9u7) +2021-01-07 17:56:32 Found package: git-man (version: 1:2.11.0-3+deb9u7) +2021-01-07 17:56:32 Found package: gnupg (version: 2.1.18-8~deb9u4) +2021-01-07 17:56:32 Found package: gnupg-agent (version: 2.1.18-8~deb9u4) +2021-01-07 17:56:32 Found package: google-cloud-packages-archive-keyring (version: 1.2-350029030) +2021-01-07 17:56:32 Found package: google-cloud-sdk (version: 322.0.0-0) +2021-01-07 17:56:32 Found package: google-compute-engine (version: 1:20201207.00-g1) +2021-01-07 17:56:32 Found package: google-compute-engine-oslogin (version: 1:20200925.00-g1+deb9) +2021-01-07 17:56:32 Found package: google-guest-agent (version: 1:20201214.00-g1) +2021-01-07 17:56:32 Found package: google-osconfig-agent (version: 1:20201214.00-g1) +2021-01-07 17:56:32 Found package: gpgv (version: 2.1.18-8~deb9u4) +2021-01-07 17:56:32 Found package: grep (version: 2.27-2) +2021-01-07 17:56:32 Found package: groff-base (version: 1.22.3-9) +2021-01-07 17:56:32 Found package: grub-common (version: 2.02~beta3-5+deb9u2) +2021-01-07 17:56:32 Found package: grub-pc (version: 2.02~beta3-5+deb9u2) +2021-01-07 17:56:32 Found package: grub-pc-bin (version: 2.02~beta3-5+deb9u2) +2021-01-07 17:56:32 Found package: grub2-common (version: 2.02~beta3-5+deb9u2) +2021-01-07 17:56:32 Found package: gzip (version: 1.6-5+b1) +2021-01-07 17:56:32 Found package: host (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:56:32 Found package: hostname (version: 3.18+b1) +2021-01-07 17:56:32 Found package: ifupdown (version: 0.8.19) +2021-01-07 17:56:32 Found package: init (version: 1.48) +2021-01-07 17:56:32 Found package: init-system-helpers (version: 1.48) +2021-01-07 17:56:32 Found package: initramfs-tools (version: 0.130) +2021-01-07 17:56:32 Found package: initramfs-tools-core (version: 0.130) +2021-01-07 17:56:32 Found package: iproute2 (version: 4.9.0-1+deb9u1) +2021-01-07 17:56:32 Found package: iptables (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:56:32 Found package: iputils-ping (version: 3:20161105-1) +2021-01-07 17:56:32 Found package: isc-dhcp-client (version: 4.3.5-3+deb9u1) +2021-01-07 17:56:32 Found package: isc-dhcp-common (version: 4.3.5-3+deb9u1) +2021-01-07 17:56:32 Found package: john (version: 1.8.0-2+b1) +2021-01-07 17:56:32 Found package: john-data (version: 1.8.0-2) +2021-01-07 17:56:32 Found package: klibc-utils (version: 2.0.4-9) +2021-01-07 17:56:32 Found package: kmod (version: 23-2) +2021-01-07 17:56:32 Found package: kpartx (version: 0.6.4-5+deb9u1) +2021-01-07 17:56:32 Found package: less (version: 481-2.1) +2021-01-07 17:56:32 Found package: libacl1:amd64 (version: 2.2.52-3+b1) +2021-01-07 17:56:32 Found package: libapparmor1:amd64 (version: 2.11.0-3+deb9u2) +2021-01-07 17:56:32 Found package: libapt-inst2.0:amd64 (version: 1.4.11) +2021-01-07 17:56:32 Found package: libapt-pkg5.0:amd64 (version: 1.4.11) +2021-01-07 17:56:32 Found package: libassuan0:amd64 (version: 2.4.3-2) +2021-01-07 17:56:32 Found package: libattr1:amd64 (version: 1:2.4.47-2+b2) +2021-01-07 17:56:32 Found package: libaudit-common (version: 1:2.6.7-2) +2021-01-07 17:56:32 Found package: libaudit1:amd64 (version: 1:2.6.7-2) +2021-01-07 17:56:32 Found package: libbind9-140:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:56:32 Found package: libblkid1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:56:32 Found package: libbsd0:amd64 (version: 0.8.3-1) +2021-01-07 17:56:32 Found package: libbz2-1.0:amd64 (version: 1.0.6-8.1) +2021-01-07 17:56:32 Found package: libc-bin (version: 2.24-11+deb9u4) +2021-01-07 17:56:32 Found package: libc-l10n (version: 2.24-11+deb9u4) +2021-01-07 17:56:32 Found package: libc6:amd64 (version: 2.24-11+deb9u4) +2021-01-07 17:56:32 Found package: libcap-ng0:amd64 (version: 0.7.7-3+b1) +2021-01-07 17:56:32 Found package: libcap2:amd64 (version: 1:2.25-1) +2021-01-07 17:56:32 Found package: libcomerr2:amd64 (version: 1.43.4-2+deb9u2) +2021-01-07 17:56:32 Found package: libcrack2:amd64 (version: 2.9.2-5) +2021-01-07 17:56:32 Found package: libcryptsetup4:amd64 (version: 2:1.7.3-4) +2021-01-07 17:56:32 Found package: libcurl3-gnutls:amd64 (version: 7.52.1-5+deb9u13) +2021-01-07 17:56:32 Found package: libcurl3:amd64 (version: 7.52.1-5+deb9u13) +2021-01-07 17:56:32 Found package: libdb5.3:amd64 (version: 5.3.28-12+deb9u1) +2021-01-07 17:56:32 Found package: libdebconfclient0:amd64 (version: 0.227) +2021-01-07 17:56:32 Found package: libdevmapper1.02.1:amd64 (version: 2:1.02.137-2) +2021-01-07 17:56:32 Found package: libdns-export162 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:56:32 Found package: libdns162:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:56:32 Found package: libedit2:amd64 (version: 3.1-20160903-3) +2021-01-07 17:56:32 Found package: libelf1:amd64 (version: 0.168-1) +2021-01-07 17:56:32 Found package: liberror-perl (version: 0.17024-1) +2021-01-07 17:56:32 Found package: libestr0 (version: 0.1.10-2) +2021-01-07 17:56:32 Found package: libexpat1:amd64 (version: 2.2.0-2+deb9u3) +2021-01-07 17:56:32 Found package: libfastjson4:amd64 (version: 0.99.4-1) +2021-01-07 17:56:32 Found package: libfdisk1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:56:32 Found package: libffi6:amd64 (version: 3.2.1-6) +2021-01-07 17:56:32 Found package: libfreetype6:amd64 (version: 2.6.3-3.2+deb9u2) +2021-01-07 17:56:32 Found package: libfuse2:amd64 (version: 2.9.7-1+deb9u2) +2021-01-07 17:56:32 Found package: libgcc1:amd64 (version: 1:6.3.0-18+deb9u1) +2021-01-07 17:56:32 Found package: libgcrypt20:amd64 (version: 1.7.6-2+deb9u3) +2021-01-07 17:56:32 Found package: libgdbm3:amd64 (version: 1.8.3-14) +2021-01-07 17:56:32 Found package: libgeoip1:amd64 (version: 1.6.9-4) +2021-01-07 17:56:32 Found package: libgmp10:amd64 (version: 2:6.1.2+dfsg-1) +2021-01-07 17:56:32 Found package: libgnutls30:amd64 (version: 3.5.8-5+deb9u5) +2021-01-07 17:56:32 Found package: libgpg-error0:amd64 (version: 1.26-2) +2021-01-07 17:56:32 Found package: libgpm2:amd64 (version: 1.20.4-6.2+b1) +2021-01-07 17:56:32 Found package: libgssapi-krb5-2:amd64 (version: 1.15-1+deb9u2) +2021-01-07 17:56:32 Found package: libhogweed4:amd64 (version: 3.3-1+b2) +2021-01-07 17:56:32 Found package: libicu57:amd64 (version: 57.1-6+deb9u4) +2021-01-07 17:56:32 Found package: libidn11:amd64 (version: 1.33-1+deb9u1) +2021-01-07 17:56:32 Found package: libidn2-0:amd64 (version: 0.16-1+deb9u1) +2021-01-07 17:56:32 Found package: libip4tc0:amd64 (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:56:32 Found package: libip6tc0:amd64 (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:56:32 Found package: libiptc0:amd64 (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:56:32 Found package: libisc-export160 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:56:32 Found package: libisc160:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:56:32 Found package: libisccc140:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:56:32 Found package: libisccfg140:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:56:32 Found package: libjson-c3:amd64 (version: 0.12.1-1.1+deb9u1) +2021-01-07 17:56:32 Found package: libk5crypto3:amd64 (version: 1.15-1+deb9u2) +2021-01-07 17:56:32 Found package: libkeyutils1:amd64 (version: 1.5.9-9) +2021-01-07 17:56:32 Found package: libklibc (version: 2.0.4-9) +2021-01-07 17:56:32 Found package: libkmod2:amd64 (version: 23-2) +2021-01-07 17:56:32 Found package: libkrb5-3:amd64 (version: 1.15-1+deb9u2) +2021-01-07 17:56:32 Found package: libkrb5support0:amd64 (version: 1.15-1+deb9u2) +2021-01-07 17:56:32 Found package: libksba8:amd64 (version: 1.3.5-2) +2021-01-07 17:56:32 Found package: libldap-2.4-2:amd64 (version: 2.4.44+dfsg-5+deb9u6) +2021-01-07 17:56:32 Found package: libldap-common (version: 2.4.44+dfsg-5+deb9u6) +2021-01-07 17:56:32 Found package: liblocale-gettext-perl (version: 1.07-3+b1) +2021-01-07 17:56:32 Found package: liblockfile-bin (version: 1.14-1+b1) +2021-01-07 17:56:32 Found package: liblockfile1:amd64 (version: 1.14-1+b1) +2021-01-07 17:56:32 Found package: liblogging-stdlog0:amd64 (version: 1.0.5-2+b2) +2021-01-07 17:56:32 Found package: liblognorm5:amd64 (version: 2.0.1-1.1+b1) +2021-01-07 17:56:32 Found package: liblwres141:amd64 (version: 1:9.10.3.dfsg.P4-12.3+deb9u7) +2021-01-07 17:56:32 Found package: liblz4-1:amd64 (version: 0.0~r131-2+b1) +2021-01-07 17:56:32 Found package: liblzma5:amd64 (version: 5.2.2-1.2+b1) +2021-01-07 17:56:32 Found package: libmagic-mgc (version: 1:5.30-1+deb9u3) +2021-01-07 17:56:32 Found package: libmagic1:amd64 (version: 1:5.30-1+deb9u3) +2021-01-07 17:56:32 Found package: libmnl0:amd64 (version: 1.0.4-2) +2021-01-07 17:56:32 Found package: libmount1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:56:32 Found package: libmpdec2:amd64 (version: 2.4.2-1) +2021-01-07 17:56:32 Found package: libncurses5:amd64 (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:56:32 Found package: libncursesw5:amd64 (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:56:32 Found package: libnetfilter-conntrack3:amd64 (version: 1.0.6-2) +2021-01-07 17:56:32 Found package: libnettle6:amd64 (version: 3.3-1+b2) +2021-01-07 17:56:32 Found package: libnewt0.52:amd64 (version: 0.52.19-1+b1) +2021-01-07 17:56:32 Found package: libnfnetlink0:amd64 (version: 1.0.1-3) +2021-01-07 17:56:32 Found package: libnghttp2-14:amd64 (version: 1.18.1-1+deb9u1) +2021-01-07 17:56:32 Found package: libnpth0:amd64 (version: 1.3-1) +2021-01-07 17:56:32 Found package: libopts25:amd64 (version: 1:5.18.12-3) +2021-01-07 17:56:32 Found package: libp11-kit0:amd64 (version: 0.23.3-2+deb9u1) +2021-01-07 17:56:32 Found package: libpam-cracklib:amd64 (version: 1.1.8-3.6) +2021-01-07 17:56:32 Found package: libpam-modules-bin (version: 1.1.8-3.6) +2021-01-07 17:56:32 Found package: libpam-modules:amd64 (version: 1.1.8-3.6) +2021-01-07 17:56:32 Found package: libpam-runtime (version: 1.1.8-3.6) +2021-01-07 17:56:32 Found package: libpam0g:amd64 (version: 1.1.8-3.6) +2021-01-07 17:56:32 Found package: libparted2:amd64 (version: 3.2-17) +2021-01-07 17:56:32 Found package: libpcre3:amd64 (version: 2:8.39-3) +2021-01-07 17:56:32 Found package: libperl5.24:amd64 (version: 5.24.1-3+deb9u7) +2021-01-07 17:56:32 Found package: libpipeline1:amd64 (version: 1.4.1-2) +2021-01-07 17:56:32 Found package: libpng16-16:amd64 (version: 1.6.28-1+deb9u1) +2021-01-07 17:56:32 Found package: libpopt0:amd64 (version: 1.16-10+b2) +2021-01-07 17:56:32 Found package: libprocps6:amd64 (version: 2:3.3.12-3+deb9u1) +2021-01-07 17:56:32 Found package: libpsl5:amd64 (version: 0.17.0-3) +2021-01-07 17:56:32 Found package: libpython-stdlib:amd64 (version: 2.7.13-2) +2021-01-07 17:56:32 Found package: libpython2.7-minimal:amd64 (version: 2.7.13-2+deb9u4) +2021-01-07 17:56:32 Found package: libpython2.7-stdlib:amd64 (version: 2.7.13-2+deb9u4) +2021-01-07 17:56:32 Found package: libpython3-stdlib:amd64 (version: 3.5.3-1) +2021-01-07 17:56:32 Found package: libpython3.5-minimal:amd64 (version: 3.5.3-1+deb9u3) +2021-01-07 17:56:32 Found package: libpython3.5-stdlib:amd64 (version: 3.5.3-1+deb9u3) +2021-01-07 17:56:32 Found package: libreadline7:amd64 (version: 7.0-3) +2021-01-07 17:56:32 Found package: librtmp1:amd64 (version: 2.4+20151223.gitfa8646d.1-1+b1) +2021-01-07 17:56:32 Found package: libsasl2-2:amd64 (version: 2.1.27~101-g0780600+dfsg-3+deb9u1) +2021-01-07 17:56:32 Found package: libsasl2-modules-db:amd64 (version: 2.1.27~101-g0780600+dfsg-3+deb9u1) +2021-01-07 17:56:32 Found package: libseccomp2:amd64 (version: 2.3.1-2.1+deb9u1) +2021-01-07 17:56:32 Found package: libselinux1:amd64 (version: 2.6-3+b3) +2021-01-07 17:56:32 Found package: libsemanage-common (version: 2.6-2) +2021-01-07 17:56:32 Found package: libsemanage1:amd64 (version: 2.6-2) +2021-01-07 17:56:32 Found package: libsepol1:amd64 (version: 2.6-2) +2021-01-07 17:56:32 Found package: libsigsegv2:amd64 (version: 2.10-5) +2021-01-07 17:56:32 Found package: libslang2:amd64 (version: 2.3.1-5) +2021-01-07 17:56:32 Found package: libsmartcols1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:56:32 Found package: libsqlite3-0:amd64 (version: 3.16.2-5+deb9u3) +2021-01-07 17:56:32 Found package: libss2:amd64 (version: 1.43.4-2+deb9u2) +2021-01-07 17:56:32 Found package: libssh2-1:amd64 (version: 1.7.0-1+deb9u1) +2021-01-07 17:56:32 Found package: libssl1.0.2:amd64 (version: 1.0.2u-1~deb9u3) +2021-01-07 17:56:32 Found package: libssl1.1:amd64 (version: 1.1.0l-1~deb9u2) +2021-01-07 17:56:32 Found package: libstdc++6:amd64 (version: 6.3.0-18+deb9u1) +2021-01-07 17:56:32 Found package: libsystemd0:amd64 (version: 232-25+deb9u12) +2021-01-07 17:56:32 Found package: libtasn1-6:amd64 (version: 4.10-1.1+deb9u1) +2021-01-07 17:56:32 Found package: libtext-charwidth-perl (version: 0.04-7+b5) +2021-01-07 17:56:32 Found package: libtext-iconv-perl (version: 1.7-5+b4) +2021-01-07 17:56:32 Found package: libtext-wrapi18n-perl (version: 0.06-7.1) +2021-01-07 17:56:32 Found package: libtinfo5:amd64 (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:56:32 Found package: libudev1:amd64 (version: 232-25+deb9u12) +2021-01-07 17:56:32 Found package: libunistring0:amd64 (version: 0.9.6+really0.9.3-0.1) +2021-01-07 17:56:32 Found package: libustr-1.0-1:amd64 (version: 1.0.4-6) +2021-01-07 17:56:32 Found package: libuuid1:amd64 (version: 2.29.2-1+deb9u1) +2021-01-07 17:56:32 Found package: libwrap0:amd64 (version: 7.6.q-26) +2021-01-07 17:56:32 Found package: libxapian30:amd64 (version: 1.4.3-2+deb9u3) +2021-01-07 17:56:32 Found package: libxml2:amd64 (version: 2.9.4+dfsg1-2.2+deb9u3) +2021-01-07 17:56:32 Found package: libxtables12:amd64 (version: 1.6.0+snapshot20161117-6) +2021-01-07 17:56:32 Found package: linux-base (version: 4.5) +2021-01-07 17:56:32 Found package: linux-image-4.9.0-14-amd64 (version: 4.9.246-2) +2021-01-07 17:56:32 Found package: linux-image-amd64 (version: 4.9+80+deb9u12) +2021-01-07 17:56:32 Found package: locales (version: 2.24-11+deb9u4) +2021-01-07 17:56:32 Found package: lockfile-progs (version: 0.1.17+b1) +2021-01-07 17:56:32 Found package: login (version: 1:4.4-4.1) +2021-01-07 17:56:32 Found package: logrotate (version: 3.11.0-0.1) +2021-01-07 17:56:32 Found package: lsb-base (version: 9.20161125) +2021-01-07 17:56:32 Found package: lsb-release (version: 9.20161125) +2021-01-07 17:56:32 Found package: m4 (version: 1.4.18-1) +2021-01-07 17:56:32 Found package: make (version: 4.1-9.1) +2021-01-07 17:56:32 Found package: man-db (version: 2.7.6.1-2) +2021-01-07 17:56:32 Found package: mawk (version: 1.3.3-17+b3) +2021-01-07 17:56:32 Found package: mime-support (version: 3.60) +2021-01-07 17:56:32 Found package: mount (version: 2.29.2-1+deb9u1) +2021-01-07 17:56:32 Found package: multiarch-support (version: 2.24-11+deb9u4) +2021-01-07 17:56:32 Found package: nano (version: 2.7.4-1) +2021-01-07 17:56:32 Found package: ncurses-base (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:56:32 Found package: ncurses-bin (version: 6.0+20161126-1+deb9u2) +2021-01-07 17:56:32 Found package: net-tools (version: 1.60+git20161116.90da8a0-1) +2021-01-07 17:56:32 Found package: netbase (version: 5.4) +2021-01-07 17:56:32 Found package: ntp (version: 1:4.2.8p10+dfsg-3+deb9u2) +2021-01-07 17:56:32 Found package: nvme-cli (version: 1.0-3) +2021-01-07 17:56:32 Found package: openssh-client (version: 1:7.4p1-10+deb9u7) +2021-01-07 17:56:32 Found package: openssh-server (version: 1:7.4p1-10+deb9u7) +2021-01-07 17:56:32 Found package: openssh-sftp-server (version: 1:7.4p1-10+deb9u7) +2021-01-07 17:56:32 Found package: openssl (version: 1.1.0l-1~deb9u2) +2021-01-07 17:56:32 Found package: parted (version: 3.2-17) +2021-01-07 17:56:32 Found package: passwd (version: 1:4.4-4.1) +2021-01-07 17:56:32 Found package: patch (version: 2.7.5-1+deb9u2) +2021-01-07 17:56:32 Found package: perl (version: 5.24.1-3+deb9u7) +2021-01-07 17:56:32 Found package: perl-base (version: 5.24.1-3+deb9u7) +2021-01-07 17:56:32 Found package: perl-modules-5.24 (version: 5.24.1-3+deb9u7) +2021-01-07 17:56:32 Found package: pinentry-curses (version: 1.0.0-2) +2021-01-07 17:56:32 Found package: portsentry (version: 1.2-14+b1) +2021-01-07 17:56:32 Found package: procmail (version: 3.22-25+deb9u1) +2021-01-07 17:56:32 Found package: procps (version: 2:3.3.12-3+deb9u1) +2021-01-07 17:56:32 Found package: python (version: 2.7.13-2) +2021-01-07 17:56:32 Found package: python-apt-common (version: 1.4.3) +2021-01-07 17:56:32 Found package: python-crcmod (version: 1.7-2+b2) +2021-01-07 17:56:32 Found package: python-minimal (version: 2.7.13-2) +2021-01-07 17:56:32 Found package: python2.7 (version: 2.7.13-2+deb9u4) +2021-01-07 17:56:32 Found package: python2.7-minimal (version: 2.7.13-2+deb9u4) +2021-01-07 17:56:32 Found package: python3 (version: 3.5.3-1) +2021-01-07 17:56:32 Found package: python3-apt (version: 1.4.3) +2021-01-07 17:56:32 Found package: python3-minimal (version: 3.5.3-1) +2021-01-07 17:56:32 Found package: python3-pyinotify (version: 0.9.6-1) +2021-01-07 17:56:32 Found package: python3-systemd (version: 233-1) +2021-01-07 17:56:32 Found package: python3.5 (version: 3.5.3-1+deb9u3) +2021-01-07 17:56:32 Found package: python3.5-minimal (version: 3.5.3-1+deb9u3) +2021-01-07 17:56:32 Found package: readline-common (version: 7.0-3) +2021-01-07 17:56:32 Found package: rename (version: 0.20-4) +2021-01-07 17:56:32 Found package: rsync (version: 3.1.2-1+deb9u2) +2021-01-07 17:56:32 Found package: rsyslog (version: 8.24.0-1) +2021-01-07 17:56:32 Found package: screen (version: 4.5.0-6) +2021-01-07 17:56:32 Found package: sed (version: 4.4-1) +2021-01-07 17:56:32 Found package: sendmail (version: 8.15.2-8+deb9u1) +2021-01-07 17:56:32 Found package: sendmail-base (version: 8.15.2-8+deb9u1) +2021-01-07 17:56:32 Found package: sendmail-bin (version: 8.15.2-8+deb9u1) +2021-01-07 17:56:32 Found package: sendmail-cf (version: 8.15.2-8+deb9u1) +2021-01-07 17:56:33 Found package: sensible-mda (version: 8.15.2-8+deb9u1) +2021-01-07 17:56:33 Found package: sensible-utils (version: 0.0.9+deb9u1) +2021-01-07 17:56:33 Found package: sgml-base (version: 1.29) +2021-01-07 17:56:33 Found package: sudo (version: 1.8.19p1-2.1+deb9u2) +2021-01-07 17:56:33 Found package: systemd (version: 232-25+deb9u12) +2021-01-07 17:56:33 Found package: systemd-sysv (version: 232-25+deb9u12) +2021-01-07 17:56:33 Found package: sysvinit-utils (version: 2.88dsf-59.9) +2021-01-07 17:56:33 Found package: tar (version: 1.29b-1.1) +2021-01-07 17:56:33 Found package: tasksel (version: 3.39) +2021-01-07 17:56:33 Found package: tasksel-data (version: 3.39) +2021-01-07 17:56:33 Found package: tcpd (version: 7.6.q-26) +2021-01-07 17:56:33 Found package: tiger (version: 1:3.2.3-14.3) +2021-01-07 17:56:33 Found package: tripwire (version: 2.4.3.1-2+b4) +2021-01-07 17:56:33 Found package: tzdata (version: 2020e-0+deb9u1) +2021-01-07 17:56:33 Found package: ucf (version: 3.0036) +2021-01-07 17:56:33 Found package: udev (version: 232-25+deb9u12) +2021-01-07 17:56:33 Found package: unattended-upgrades (version: 0.93.1+nmu1) +2021-01-07 17:56:33 Found package: unhide (version: 20130526-1+deb9u1) +2021-01-07 17:56:33 Found package: util-linux (version: 2.29.2-1+deb9u1) +2021-01-07 17:56:33 Found package: uuid-runtime (version: 2.29.2-1+deb9u1) +2021-01-07 17:56:33 Found package: vim (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:56:33 Found package: vim-common (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:56:33 Found package: vim-runtime (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:56:33 Found package: vim-tiny (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:56:33 Found package: wamerican (version: 7.1-1) +2021-01-07 17:56:33 Found package: wget (version: 1.18-5+deb9u3) +2021-01-07 17:56:33 Found package: whiptail (version: 0.52.19-1+b1) +2021-01-07 17:56:33 Found package: whois (version: 5.2.17~deb9u1) +2021-01-07 17:56:33 Found package: xml-core (version: 0.17) +2021-01-07 17:56:33 Found package: xxd (version: 2:8.0.0197-4+deb9u3) +2021-01-07 17:56:33 Found package: xz-utils (version: 5.2.2-1.2+b1) +2021-01-07 17:56:33 Found package: zlib1g:amd64 (version: 1:1.2.8.dfsg-5) +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Performing test ID PKGS-7346 (Search unpurged packages on system) +2021-01-07 17:56:33 Test: Querying dpkg -l to get unpurged packages +2021-01-07 17:56:33 Result: no packages found with left overs +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Skipped test PKGS-7348 (Check for old distfiles) +2021-01-07 17:56:33 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Skipped test PKGS-7350 (Checking for installed packages with DNF utility) +2021-01-07 17:56:33 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Skipped test PKGS-7352 (Checking for security updates with DNF utility) +2021-01-07 17:56:33 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Skipped test PKGS-7354 (Checking package database integrity) +2021-01-07 17:56:33 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Skipped test PKGS-7366 (Checking for debsecan utility) +2021-01-07 17:56:33 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Performing test ID PKGS-7370 (Checking for debsums utility) +2021-01-07 17:56:33 Result: debsums utility is not installed. +2021-01-07 17:56:33 Hardening: assigned partial number of hardening points (0 of 2). Currently having 120 points (out of 153) +2021-01-07 17:56:33 Suggestion: Install debsums utility for the verification of packages with known good database. [test:PKGS-7370] [details:-] [solution:-] +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Skipped test PKGS-7378 (Query portmaster for port upgrades) +2021-01-07 17:56:33 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Skipped test PKGS-7380 (Check for vulnerable NetBSD packages) +2021-01-07 17:56:33 Reason to skip: Incorrect guest OS (NetBSD only) +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Skipped test PKGS-7381 (Check for vulnerable FreeBSD packages with pkg) +2021-01-07 17:56:33 Reason to skip: pkg tool not available +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Skipped test PKGS-7382 (Check for vulnerable FreeBSD packages with portaudit) +2021-01-07 17:56:33 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Skipped test PKGS-7383 (Check for YUM package update management) +2021-01-07 17:56:33 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Skipped test PKGS-7384 (Check for YUM utils package) +2021-01-07 17:56:33 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Skipped test PKGS-7386 (Check for YUM security package) +2021-01-07 17:56:33 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Skipped test PKGS-7387 (Check for GPG signing in YUM security package) +2021-01-07 17:56:33 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Performing test ID PKGS-7388 (Check security repository in apt sources.list file) +2021-01-07 17:56:33 Searching for security.debian.org/security.ubuntu.com or security repositories in /etc/apt/sources.list file +2021-01-07 17:56:33 Result: Found security repository in /etc/apt/sources.list +2021-01-07 17:56:33 Output: deb http://security.debian.org/ stretch/updates main +2021-01-07 17:56:33 Output: deb-src http://security.debian.org/ stretch/updates main +2021-01-07 17:56:33 Searching for security.debian.org/security.ubuntu.com or security repositories in /etc/apt/sources.list.d directory +2021-01-07 17:56:33 Result: security repository was found +2021-01-07 17:56:33 Hardening: assigned maximum number of hardening points for this item (3). Currently having 123 points (out of 156) +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Performing test ID PKGS-7390 (Check Ubuntu database consistency) +2021-01-07 17:56:33 Test: Package database consistency by running apt-get check +2021-01-07 17:56:33 Result: package database seems to be consistent. +2021-01-07 17:56:33 ==== +2021-01-07 17:56:33 Performing test ID PKGS-7392 (Check for Debian/Ubuntu security updates) +2021-01-07 17:56:33 Action: updating package repository with apt-get +2021-01-07 17:56:35 Result: apt-get finished +2021-01-07 17:56:35 Test: Checking if /usr/lib/update-notifier/apt-check exists +2021-01-07 17:56:35 Result: apt-check (update-notifier-common) not found +2021-01-07 17:56:35 Result: test not fully executed (missing apt-check output) +2021-01-07 17:56:35 ==== +2021-01-07 17:56:35 Skipped test PKGS-7393 (Check for Gentoo vulnerable packages) +2021-01-07 17:56:35 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:35 ==== +2021-01-07 17:56:35 Performing test ID PKGS-7394 (Check for Ubuntu updates) +2021-01-07 17:56:35 Test: checking /usr/bin/apt-show-versions +2021-01-07 17:56:35 Result: /usr/bin/apt-show-versions not found +2021-01-07 17:56:35 Suggestion: Install package apt-show-versions for patch management purposes [test:PKGS-7394] [details:-] [solution:-] +2021-01-07 17:56:35 ==== +2021-01-07 17:56:35 Performing test ID PKGS-7398 (Check for package audit tool) +2021-01-07 17:56:35 Test: checking for package audit tool +2021-01-07 17:56:35 Result: found package audit tool: apt-get +2021-01-07 17:56:35 ==== +2021-01-07 17:56:35 Performing test ID PKGS-7410 (Count installed kernel packages) +2021-01-07 17:56:35 Test: Checking how many kernel packages are installed +2021-01-07 17:56:35 Result: found 1 kernel packages on the system, which is fine +2021-01-07 17:56:35 ==== +2021-01-07 17:56:35 Performing test ID PKGS-7420 (Detect toolkit to automatically download and apply upgrades) +2021-01-07 17:56:35 Result: found unattended-upgrade +2021-01-07 17:56:35 Hardening: assigned maximum number of hardening points for this item (5). Currently having 128 points (out of 161) +2021-01-07 17:56:35 Security check: file is normal +2021-01-07 17:56:35 Checking permissions of /home/ktdw73/scans/lynis/include/tests_networking +2021-01-07 17:56:35 File permissions are OK +2021-01-07 17:56:35 ==== +2021-01-07 17:56:35 Action: Performing tests from category: Networking +2021-01-07 17:56:35 ==== +2021-01-07 17:56:35 Performing test ID NETW-2400 (Hostname length and value check) +2021-01-07 17:56:35 Result: FQDN is defined and not longer than 253 characters (53 characters) +2021-01-07 17:56:35 Result: hostnamed is defined and not longer than 63 characters +2021-01-07 17:56:35 Result: good, no unexpected characters discovered in hostname +2021-01-07 17:56:35 ==== +2021-01-07 17:56:35 Performing test ID NETW-2600 (Checking IPv6 configuration) +2021-01-07 17:56:36 Result: IPV6 mode is auto +2021-01-07 17:56:36 Result: IPv6 only configuration: NO +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID NETW-2704 (Basic nameserver configuration tests) +2021-01-07 17:56:36 Test: Checking /etc/resolv.conf file +2021-01-07 17:56:36 Result: Found /etc/resolv.conf file +2021-01-07 17:56:36 Test: Querying nameservers +2021-01-07 17:56:36 Found nameserver: 169.254.169.254 +2021-01-07 17:56:36 Result: Nameserver test for 169.254.169.254 skipped, 'dig' not installed +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID NETW-2705 (Check availability two nameservers) +2021-01-07 17:56:36 Result: dig not installed, test can't be fully performed +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID NETW-2706 (Check systemd-resolved and upstream DNSSEC status) +2021-01-07 17:56:36 Result: command '/usr/bin/systemd-resolve --statistics' returned an error. Please run command manually to check for details. +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID NETW-3001 (Find default gateway (route)) +2021-01-07 17:56:36 Test: Searching default gateway(s) +2021-01-07 17:56:36 Result: Found default gateway 10.156.0.1 +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID NETW-3004 (Search for available network interfaces) +2021-01-07 17:56:36 Found network interface: lo +2021-01-07 17:56:36 Found network interface: eth0 +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID NETW-3006 (Get network MAC addresses) +2021-01-07 17:56:36 Found MAC address: 42:01:0a:9c:00:06 +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID NETW-3008 (Get network IP addresses) +2021-01-07 17:56:36 Found IPv4 address: 10.156.0.6 +2021-01-07 17:56:36 Found IPv4 address: 127.0.0.1 +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID NETW-3012 (Check listening ports) +2021-01-07 17:56:36 Test: Retrieving ss information to find listening ports +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test NETW-3014 (Checking promiscuous interfaces (BSD)) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID NETW-3015 (Checking promiscuous interfaces (Linux)) +2021-01-07 17:56:36 Test: Using ip binary to retrieve network interfaces +2021-01-07 17:56:36 Test: Checking all interfaces to discover any with promiscuous mode enabled +2021-01-07 17:56:36 Result: No promiscuous interfaces found +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID NETW-3028 (Checking connections in WAIT state) +2021-01-07 17:56:36 Test: Using netstat for check for connections in WAIT state +2021-01-07 17:56:36 Result: currently 5 connections are in a waiting state (max configured: 5000). +2021-01-07 17:56:36 Result: 5 connections are in WAIT state +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID NETW-3030 (Checking DHCP client status) +2021-01-07 17:56:36 Performing pgrep scan without uid +2021-01-07 17:56:36 IsRunning: process 'dhclient' found (598 ) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID NETW-3032 (Checking for ARP monitoring software) +2021-01-07 17:56:36 Performing pgrep scan without uid +2021-01-07 17:56:36 IsRunning: process 'addrwatch' not found +2021-01-07 17:56:36 Performing pgrep scan without uid +2021-01-07 17:56:36 IsRunning: process 'arpwatch' not found +2021-01-07 17:56:36 Performing pgrep scan without uid +2021-01-07 17:56:36 IsRunning: process 'arpon' not found +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID NETW-3200 (Determine available network protocols) +2021-01-07 17:56:36 Test: checking the status of some network protocols that typically are not used +2021-01-07 17:56:36 Test: now checking module 'dccp' +2021-01-07 17:56:36 Suggestion: Determine if protocol 'dccp' is really needed on this system [test:NETW-3200] [details:-] [solution:-] +2021-01-07 17:56:36 Test: now checking module 'sctp' +2021-01-07 17:56:36 Suggestion: Determine if protocol 'sctp' is really needed on this system [test:NETW-3200] [details:-] [solution:-] +2021-01-07 17:56:36 Test: now checking module 'rds' +2021-01-07 17:56:36 Suggestion: Determine if protocol 'rds' is really needed on this system [test:NETW-3200] [details:-] [solution:-] +2021-01-07 17:56:36 Test: now checking module 'tipc' +2021-01-07 17:56:36 Suggestion: Determine if protocol 'tipc' is really needed on this system [test:NETW-3200] [details:-] [solution:-] +2021-01-07 17:56:36 Security check: file is normal +2021-01-07 17:56:36 Checking permissions of /home/ktdw73/scans/lynis/include/tests_printers_spoolers +2021-01-07 17:56:36 File permissions are OK +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Action: Performing tests from category: Printers and Spools +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test PRNT-2302 (Check for printcap consistency) +2021-01-07 17:56:36 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID PRNT-2304 (Check cupsd status) +2021-01-07 17:56:36 Test: Checking cupsd status +2021-01-07 17:56:36 Performing pgrep scan without uid +2021-01-07 17:56:36 IsRunning: process 'cupsd' not found +2021-01-07 17:56:36 Result: cups daemon not running, cups daemon tests skipped +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test PRNT-2306 (Check CUPSd configuration file) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test PRNT-2307 (Check CUPSd configuration file permissions) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test PRNT-2308 (Check CUPSd network configuration) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID PRNT-2314 (Check lpd status) +2021-01-07 17:56:36 Test: Checking lpd status +2021-01-07 17:56:36 Performing pgrep scan without uid +2021-01-07 17:56:36 IsRunning: process 'lpd' not found +2021-01-07 17:56:36 Result: lp daemon not running +2021-01-07 17:56:36 Hardening: assigned maximum number of hardening points for this item (4). Currently having 132 points (out of 165) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test PRNT-2316 (Checking /etc/qconfig file) +2021-01-07 17:56:36 Reason to skip: Incorrect guest OS (AIX only) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test PRNT-2418 (Checking qdaemon printer spooler status) +2021-01-07 17:56:36 Reason to skip: Incorrect guest OS (AIX only) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test PRNT-2420 (Checking old print jobs) +2021-01-07 17:56:36 Reason to skip: Incorrect guest OS (AIX only) +2021-01-07 17:56:36 Security check: file is normal +2021-01-07 17:56:36 Checking permissions of /home/ktdw73/scans/lynis/include/tests_mail_messaging +2021-01-07 17:56:36 File permissions are OK +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Action: Performing tests from category: Software: e-mail and messaging +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID MAIL-8802 (Check Exim status) +2021-01-07 17:56:36 Test: check Exim status +2021-01-07 17:56:36 Performing pgrep scan without uid +2021-01-07 17:56:36 IsRunning: process 'exim4' not found +2021-01-07 17:56:36 Performing pgrep scan without uid +2021-01-07 17:56:36 IsRunning: process 'exim' not found +2021-01-07 17:56:36 Result: no running Exim processes found +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test MAIL-8804 (Exim configuration options) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID MAIL-8814 (Check postfix process status) +2021-01-07 17:56:36 Test: check Postfix status +2021-01-07 17:56:36 Result: no running Postfix processes found +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test MAIL-8816 (Check Postfix configuration) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test MAIL-8817 (Check Postfix configuration errors) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test MAIL-8818 (Check Postfix configuration: banner) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID MAIL-8820 (Postfix configuration scan) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID MAIL-8838 (Check dovecot process) +2021-01-07 17:56:36 Test: check dovecot status +2021-01-07 17:56:36 Performing pgrep scan without uid +2021-01-07 17:56:36 IsRunning: process 'dovecot' not found +2021-01-07 17:56:36 Result: dovecot not found +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID MAIL-8860 (Check Qmail status) +2021-01-07 17:56:36 Test: check Qmail status +2021-01-07 17:56:36 Performing pgrep scan without uid +2021-01-07 17:56:36 IsRunning: process 'qmail-smtpd' not found +2021-01-07 17:56:36 Result: no running Qmail processes found +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID MAIL-8880 (Check Sendmail status) +2021-01-07 17:56:36 Test: check sendmail status +2021-01-07 17:56:36 Performing pgrep scan without uid +2021-01-07 17:56:36 IsRunning: process 'sendmail' not found +2021-01-07 17:56:36 Result: no running Sendmail processes found +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test MAIL-8920 (Check OpenSMTPD status) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 Security check: file is normal +2021-01-07 17:56:36 Checking permissions of /home/ktdw73/scans/lynis/include/tests_firewalls +2021-01-07 17:56:36 File permissions are OK +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Action: Performing tests from category: Software: firewalls +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID FIRE-4502 (Check iptables kernel module) +2021-01-07 17:56:36 Result: Found iptables in loaded kernel modules +2021-01-07 17:56:36 Found module: ip_tables +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID FIRE-4508 (Check used policies of iptables chains) +2021-01-07 17:56:36 Test: gathering information from table filter +2021-01-07 17:56:36 Result: iptables -- policy is . +2021-01-07 17:56:36 Result: +2021-01-07 17:56:36 Result: iptables filter -- INPUTACCEPTFORWARDACCEPTOUTPUTACCEPTRETURN policy is . +2021-01-07 17:56:36 Result: +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID FIRE-4512 (Check iptables for empty ruleset) +2021-01-07 17:56:36 Result: iptables ruleset seems to be empty (found 2 rules) +2021-01-07 17:56:36 Warning: iptables module(s) loaded, but no rules active [test:FIRE-4512] [details:-] [solution:-] +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID FIRE-4513 (Check iptables for unused rules) +2021-01-07 17:56:36 Result: Found one or more possible unused rules +2021-01-07 17:56:36 Description: Unused rules can be a sign that the firewall rules aren't optimized or up-to-date +2021-01-07 17:56:36 Note: Sometimes rules aren't triggered but still in use. Keep this in mind before cleaning up rules. +2021-01-07 17:56:36 Output: iptables rule numbers: 1 1 +2021-01-07 17:56:36 Suggestion: Check iptables rules to see which rules are currently not used [test:FIRE-4513] [details:-] [solution:-] +2021-01-07 17:56:36 Tip: iptables --list --numeric --line-numbers --verbose +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test FIRE-4518 (Check pf firewall components) +2021-01-07 17:56:36 Reason to skip: No /dev/pf device +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test FIRE-4520 (Check pf configuration consistency) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID FIRE-4524 (Check for CSF presence) +2021-01-07 17:56:36 Test: check /etc/csf/csf.conf +2021-01-07 17:56:36 Result: /etc/csf/csf.conf does NOT exist +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test FIRE-4526 (Check ipf status) +2021-01-07 17:56:36 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test FIRE-4530 (Check IPFW status) +2021-01-07 17:56:36 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test FIRE-4532 (Check macOS application firewall) +2021-01-07 17:56:36 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test FIRE-4534 (Check for presence of outbound firewalls on macOS) +2021-01-07 17:56:36 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test FIRE-4536 (Check nftables status) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test FIRE-4538 (Check nftables basic configuration) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test FIRE-4540 (Check for empty nftables configuration) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID FIRE-4586 (Check firewall logging) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID FIRE-4590 (Check firewall status) +2021-01-07 17:56:36 Result: host based firewall or packet filter is active +2021-01-07 17:56:36 Hardening: assigned maximum number of hardening points for this item (5). Currently having 137 points (out of 170) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID FIRE-4594 (Check for APF presence) +2021-01-07 17:56:36 Test: check /etc/apf/conf.apf +2021-01-07 17:56:36 Result: /etc/apf/conf.apf does NOT exist +2021-01-07 17:56:36 Security check: file is normal +2021-01-07 17:56:36 Checking permissions of /home/ktdw73/scans/lynis/include/tests_webservers +2021-01-07 17:56:36 File permissions are OK +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Action: Performing tests from category: Software: webserver +2021-01-07 17:56:36 Action: created temporary file /tmp/lynis.UpZPPPBDp2 +2021-01-07 17:56:36 Action: created temporary file /tmp/lynis.bWJR7kaDOU +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID HTTP-6622 (Checking Apache presence) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test HTTP-6624 (Testing main Apache configuration file) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test HTTP-6626 (Testing other Apache configuration file) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test HTTP-6632 (Determining all available Apache modules) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test HTTP-6640 (Determining existence of specific Apache modules) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test HTTP-6641 (Determining existence of specific Apache modules) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test HTTP-6643 (Determining existence of specific Apache modules) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID HTTP-6702 (Check nginx process) +2021-01-07 17:56:36 Test: searching running nginx process +2021-01-07 17:56:36 Performing pgrep scan without uid +2021-01-07 17:56:36 IsRunning: process 'nginx' not found +2021-01-07 17:56:36 Result: no running nginx process found +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test HTTP-6704 (Check nginx configuration file) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test HTTP-6706 (Check for additional nginx configuration files) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test HTTP-6708 (Check discovered nginx configuration settings) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test HTTP-6710 (Check nginx SSL configuration settings) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test HTTP-6712 (Check nginx access logging) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test HTTP-6714 (Check for missing error logs in nginx) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test HTTP-6716 (Check for debug mode on error log in nginx) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Skipped test HTTP-6720 (Check Nginx log files) +2021-01-07 17:56:36 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:36 Security check: file is normal +2021-01-07 17:56:36 Checking permissions of /home/ktdw73/scans/lynis/include/tests_ssh +2021-01-07 17:56:36 File permissions are OK +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Action: Performing tests from category: SSH Support +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID SSH-7402 (Check for running SSH daemon) +2021-01-07 17:56:36 Test: Searching for a SSH daemon +2021-01-07 17:56:36 Performing pgrep scan without uid +2021-01-07 17:56:36 IsRunning: process 'sshd' found (793 911 917 ) +2021-01-07 17:56:36 Action: created temporary file /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID SSH-7404 (Check SSH daemon file location) +2021-01-07 17:56:36 Test: searching for sshd_config file +2021-01-07 17:56:36 Result: /etc/ssh/sshd_config exists +2021-01-07 17:56:36 Test: check if we can access /etc/ssh/sshd_config (escaped: /etc/ssh/sshd_config) +2021-01-07 17:56:36 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:36 Result: file /etc/ssh/sshd_config is readable (or directory accessible). +2021-01-07 17:56:36 Result: using last found configuration file: /etc/ssh/sshd_config +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID SSH-7406 (Determine OpenSSH version) +2021-01-07 17:56:36 Result: discovered OpenSSH version is 7.4 +2021-01-07 17:56:36 Result: OpenSSH major version: 7 +2021-01-07 17:56:36 Result: OpenSSH minor version: 4 +2021-01-07 17:56:36 ==== +2021-01-07 17:56:36 Performing test ID SSH-7408 (Check SSH specific defined options) +2021-01-07 17:56:36 Test: Checking specific defined options in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:36 Result: added additional options for OpenSSH < 7.5 +2021-01-07 17:56:36 Test: Checking AllowTcpForwarding in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:36 Result: Option AllowTcpForwarding found +2021-01-07 17:56:36 Result: Option AllowTcpForwarding value is YES +2021-01-07 17:56:36 Result: OpenSSH option AllowTcpForwarding is in a weak configuration state and should be fixed +2021-01-07 17:56:36 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:AllowTcpForwarding (set YES to NO)] [solution:-] +2021-01-07 17:56:36 Hardening: assigned partial number of hardening points (0 of 3). Currently having 137 points (out of 173) +2021-01-07 17:56:36 Test: Checking ClientAliveCountMax in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:36 Result: Option ClientAliveCountMax found +2021-01-07 17:56:36 Result: Option ClientAliveCountMax value is 3 +2021-01-07 17:56:36 Result: OpenSSH option ClientAliveCountMax is configured reasonably +2021-01-07 17:56:36 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:ClientAliveCountMax (set 3 to 2)] [solution:-] +2021-01-07 17:56:36 Hardening: assigned partial number of hardening points (1 of 3). Currently having 138 points (out of 176) +2021-01-07 17:56:36 Test: Checking ClientAliveInterval in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:36 Result: Option ClientAliveInterval found +2021-01-07 17:56:36 Result: Option ClientAliveInterval value is 0 +2021-01-07 17:56:36 Result: OpenSSH option ClientAliveInterval is configured very well +2021-01-07 17:56:36 Hardening: assigned maximum number of hardening points for this item (3). Currently having 141 points (out of 179) +2021-01-07 17:56:36 Test: Checking Compression in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:36 Result: Option Compression found +2021-01-07 17:56:36 Result: Option Compression value is YES +2021-01-07 17:56:36 Result: OpenSSH option Compression is in a weak configuration state and should be fixed +2021-01-07 17:56:36 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:Compression (set YES to NO)] [solution:-] +2021-01-07 17:56:36 Hardening: assigned partial number of hardening points (0 of 3). Currently having 141 points (out of 182) +2021-01-07 17:56:36 Test: Checking FingerprintHash in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:36 Result: Option FingerprintHash found +2021-01-07 17:56:36 Result: Option FingerprintHash value is SHA256 +2021-01-07 17:56:36 Result: OpenSSH option FingerprintHash is configured very well +2021-01-07 17:56:36 Hardening: assigned maximum number of hardening points for this item (3). Currently having 144 points (out of 185) +2021-01-07 17:56:37 Test: Checking GatewayPorts in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option GatewayPorts found +2021-01-07 17:56:37 Result: Option GatewayPorts value is NO +2021-01-07 17:56:37 Result: OpenSSH option GatewayPorts is configured very well +2021-01-07 17:56:37 Hardening: assigned maximum number of hardening points for this item (3). Currently having 147 points (out of 188) +2021-01-07 17:56:37 Test: Checking IgnoreRhosts in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option IgnoreRhosts found +2021-01-07 17:56:37 Result: Option IgnoreRhosts value is YES +2021-01-07 17:56:37 Result: OpenSSH option IgnoreRhosts is configured very well +2021-01-07 17:56:37 Hardening: assigned maximum number of hardening points for this item (3). Currently having 150 points (out of 191) +2021-01-07 17:56:37 Test: Checking LoginGraceTime in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option LoginGraceTime found +2021-01-07 17:56:37 Result: Option LoginGraceTime value is 120 +2021-01-07 17:56:37 Result: OpenSSH option LoginGraceTime is configured very well +2021-01-07 17:56:37 Hardening: assigned maximum number of hardening points for this item (3). Currently having 153 points (out of 194) +2021-01-07 17:56:37 Test: Checking LogLevel in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option LogLevel found +2021-01-07 17:56:37 Result: Option LogLevel value is INFO +2021-01-07 17:56:37 Result: OpenSSH option LogLevel is configured reasonably +2021-01-07 17:56:37 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:LogLevel (set INFO to VERBOSE)] [solution:-] +2021-01-07 17:56:37 Hardening: assigned partial number of hardening points (1 of 3). Currently having 154 points (out of 197) +2021-01-07 17:56:37 Test: Checking MaxAuthTries in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option MaxAuthTries found +2021-01-07 17:56:37 Result: Option MaxAuthTries value is 6 +2021-01-07 17:56:37 Result: OpenSSH option MaxAuthTries is configured reasonably +2021-01-07 17:56:37 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:MaxAuthTries (set 6 to 3)] [solution:-] +2021-01-07 17:56:37 Hardening: assigned partial number of hardening points (1 of 3). Currently having 155 points (out of 200) +2021-01-07 17:56:37 Test: Checking MaxSessions in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option MaxSessions found +2021-01-07 17:56:37 Result: Option MaxSessions value is 10 +2021-01-07 17:56:37 Result: OpenSSH option MaxSessions is in a weak configuration state and should be fixed +2021-01-07 17:56:37 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:MaxSessions (set 10 to 2)] [solution:-] +2021-01-07 17:56:37 Hardening: assigned partial number of hardening points (0 of 3). Currently having 155 points (out of 203) +2021-01-07 17:56:37 Test: Checking PermitRootLogin in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option PermitRootLogin found +2021-01-07 17:56:37 Result: Option PermitRootLogin value is NO +2021-01-07 17:56:37 Expected value has multiple values, testing if active value is in list ((FORCED-COMMANDS-ONLY|NO|PROHIBIT-PASSWORD|WITHOUT-PASSWORD)) +2021-01-07 17:56:37 Result: found +2021-01-07 17:56:37 Result: OpenSSH option PermitRootLogin is configured very well +2021-01-07 17:56:37 Hardening: assigned maximum number of hardening points for this item (3). Currently having 158 points (out of 206) +2021-01-07 17:56:37 Test: Checking PermitUserEnvironment in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option PermitUserEnvironment found +2021-01-07 17:56:37 Result: Option PermitUserEnvironment value is NO +2021-01-07 17:56:37 Result: OpenSSH option PermitUserEnvironment is configured very well +2021-01-07 17:56:37 Hardening: assigned maximum number of hardening points for this item (3). Currently having 161 points (out of 209) +2021-01-07 17:56:37 Test: Checking PermitTunnel in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option PermitTunnel found +2021-01-07 17:56:37 Result: Option PermitTunnel value is NO +2021-01-07 17:56:37 Result: OpenSSH option PermitTunnel is configured very well +2021-01-07 17:56:37 Hardening: assigned maximum number of hardening points for this item (3). Currently having 164 points (out of 212) +2021-01-07 17:56:37 Test: Checking Port in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option Port found +2021-01-07 17:56:37 Result: Option Port value is 22 +2021-01-07 17:56:37 Result: OpenSSH option Port is in a weak configuration state and should be fixed +2021-01-07 17:56:37 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:Port (set 22 to )] [solution:-] +2021-01-07 17:56:37 Hardening: assigned partial number of hardening points (0 of 3). Currently having 164 points (out of 215) +2021-01-07 17:56:37 Test: Checking PrintLastLog in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option PrintLastLog found +2021-01-07 17:56:37 Result: Option PrintLastLog value is YES +2021-01-07 17:56:37 Result: OpenSSH option PrintLastLog is configured very well +2021-01-07 17:56:37 Hardening: assigned maximum number of hardening points for this item (3). Currently having 167 points (out of 218) +2021-01-07 17:56:37 Test: Checking StrictModes in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option StrictModes found +2021-01-07 17:56:37 Result: Option StrictModes value is YES +2021-01-07 17:56:37 Result: OpenSSH option StrictModes is configured very well +2021-01-07 17:56:37 Hardening: assigned maximum number of hardening points for this item (3). Currently having 170 points (out of 221) +2021-01-07 17:56:37 Test: Checking TCPKeepAlive in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option TCPKeepAlive found +2021-01-07 17:56:37 Result: Option TCPKeepAlive value is YES +2021-01-07 17:56:37 Result: OpenSSH option TCPKeepAlive is in a weak configuration state and should be fixed +2021-01-07 17:56:37 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:TCPKeepAlive (set YES to NO)] [solution:-] +2021-01-07 17:56:37 Hardening: assigned partial number of hardening points (0 of 3). Currently having 170 points (out of 224) +2021-01-07 17:56:37 Test: Checking UseDNS in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option UseDNS found +2021-01-07 17:56:37 Result: Option UseDNS value is NO +2021-01-07 17:56:37 Result: OpenSSH option UseDNS is configured very well +2021-01-07 17:56:37 Hardening: assigned maximum number of hardening points for this item (3). Currently having 173 points (out of 227) +2021-01-07 17:56:37 Test: Checking X11Forwarding in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option X11Forwarding found +2021-01-07 17:56:37 Result: Option X11Forwarding value is YES +2021-01-07 17:56:37 Result: OpenSSH option X11Forwarding is in a weak configuration state and should be fixed +2021-01-07 17:56:37 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:X11Forwarding (set YES to NO)] [solution:-] +2021-01-07 17:56:37 Hardening: assigned partial number of hardening points (0 of 3). Currently having 173 points (out of 230) +2021-01-07 17:56:37 Test: Checking AllowAgentForwarding in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option AllowAgentForwarding found +2021-01-07 17:56:37 Result: Option AllowAgentForwarding value is YES +2021-01-07 17:56:37 Result: OpenSSH option AllowAgentForwarding is in a weak configuration state and should be fixed +2021-01-07 17:56:37 Suggestion: Consider hardening SSH configuration [test:SSH-7408] [details:AllowAgentForwarding (set YES to NO)] [solution:-] +2021-01-07 17:56:37 Hardening: assigned partial number of hardening points (0 of 3). Currently having 173 points (out of 233) +2021-01-07 17:56:37 Test: Checking UsePrivilegeSeparation in /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:37 Result: Option UsePrivilegeSeparation found +2021-01-07 17:56:37 Result: Option UsePrivilegeSeparation value is SANDBOX +2021-01-07 17:56:37 Result: OpenSSH option UsePrivilegeSeparation is configured very well +2021-01-07 17:56:37 Hardening: assigned maximum number of hardening points for this item (3). Currently having 176 points (out of 236) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID SSH-7440 (Check OpenSSH option: AllowUsers and AllowGroups) +2021-01-07 17:56:37 Result: AllowUsers is not set +2021-01-07 17:56:37 Result: AllowGroups is not set +2021-01-07 17:56:37 Result: SSH has no specific user or group limitation. Most likely all valid users can SSH to this machine. +2021-01-07 17:56:37 Hardening: assigned partial number of hardening points (0 of 1). Currently having 176 points (out of 237) +2021-01-07 17:56:37 Security check: file is normal +2021-01-07 17:56:37 Checking permissions of /home/ktdw73/scans/lynis/include/tests_snmp +2021-01-07 17:56:37 File permissions are OK +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Action: Performing tests from category: SNMP Support +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID SNMP-3302 (Check for running SNMP daemon) +2021-01-07 17:56:37 Test: Searching for a SNMP daemon +2021-01-07 17:56:37 Performing pgrep scan without uid +2021-01-07 17:56:37 IsRunning: process 'snmpd' not found +2021-01-07 17:56:37 Result: No running SNMP daemon found +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test SNMP-3304 (Check SNMP daemon file location) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test SNMP-3306 (Check SNMP communities) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 Security check: file is normal +2021-01-07 17:56:37 Checking permissions of /home/ktdw73/scans/lynis/include/tests_databases +2021-01-07 17:56:37 File permissions are OK +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Action: Performing tests from category: Databases +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID DBS-1804 (Checking active MySQL process) +2021-01-07 17:56:37 Result: MySQL process not active +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test DBS-1816 (Checking MySQL root password) +2021-01-07 17:56:37 Reason to skip: MySQL not installed, or not running +2021-01-07 17:56:37 Test skipped, MySQL daemon not running or no MySQL client available +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID DBS-1818 (Check status of MongoDB server) +2021-01-07 17:56:37 Performing pgrep scan without uid +2021-01-07 17:56:37 IsRunning: process 'mongod' not found +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID DBS-1820 (Check for authorization in MongoDB) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID DBS-1826 (Checking active PostgreSQL processes) +2021-01-07 17:56:37 Performing pgrep scan without uid +2021-01-07 17:56:37 IsRunning: process 'postgres:' not found +2021-01-07 17:56:37 Result: PostgreSQL process not active +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test DBS-1828 (Test PostgreSQL configuration) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID DBS-1840 (Checking active Oracle processes) +2021-01-07 17:56:37 Result: Oracle process(es) not active +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID DBS-1860 (Checking active DB2 instances) +2021-01-07 17:56:37 Performing pgrep scan without uid +2021-01-07 17:56:37 IsRunning: process 'db2sysc' not found +2021-01-07 17:56:37 Result: No DB2 instances are running +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID DBS-1880 (Check for active Redis server) +2021-01-07 17:56:37 Performing pgrep scan without uid +2021-01-07 17:56:37 IsRunning: process 'redis-server' not found +2021-01-07 17:56:37 Result: No Redis processes are running +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test DBS-1882 (Redis configuration file) +2021-01-07 17:56:37 Reason to skip: Redis not running +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test DBS-1884 (Redis: requirepass option configured) +2021-01-07 17:56:37 Reason to skip: Redis not running, or no configuration file found +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test DBS-1886 (Redis: rename-command CONFIG used) +2021-01-07 17:56:37 Reason to skip: Redis not running, or no configuration found +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test DBS-1888 (Redis: bind on localhost) +2021-01-07 17:56:37 Reason to skip: Redis not running, or no configuration found +2021-01-07 17:56:37 Security check: file is normal +2021-01-07 17:56:37 Checking permissions of /home/ktdw73/scans/lynis/include/tests_ldap +2021-01-07 17:56:37 File permissions are OK +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Action: Performing tests from category: LDAP Services +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID LDAP-2219 (Check running OpenLDAP instance) +2021-01-07 17:56:37 Performing pgrep scan without uid +2021-01-07 17:56:37 IsRunning: process 'slapd' not found +2021-01-07 17:56:37 Result: No running slapd process found. +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test LDAP-2224 (Check presence slapd.conf) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 Security check: file is normal +2021-01-07 17:56:37 Checking permissions of /home/ktdw73/scans/lynis/include/tests_php +2021-01-07 17:56:37 File permissions are OK +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Action: Performing tests from category: PHP +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID PHP-2211 (Check php.ini presence) +2021-01-07 17:56:37 Test: Checking for presence php.ini +2021-01-07 17:56:37 Test: checking presence /etc/php.ini +2021-01-07 17:56:37 Result: file /etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php.ini.default +2021-01-07 17:56:37 Result: file /etc/php.ini.default not found +2021-01-07 17:56:37 Test: checking presence /etc/php/php.ini +2021-01-07 17:56:37 Result: file /etc/php/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php5.5/php.ini +2021-01-07 17:56:37 Result: file /etc/php5.5/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php5.6/php.ini +2021-01-07 17:56:37 Result: file /etc/php5.6/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php7.0/php.ini +2021-01-07 17:56:37 Result: file /etc/php7.0/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php7.1/php.ini +2021-01-07 17:56:37 Result: file /etc/php7.1/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php7.2/php.ini +2021-01-07 17:56:37 Result: file /etc/php7.2/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php7.3/php.ini +2021-01-07 17:56:37 Result: file /etc/php7.3/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php7.4/php.ini +2021-01-07 17:56:37 Result: file /etc/php7.4/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cgi-php5/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cgi-php5/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cli-php5/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cli-php5/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/apache2-php5/php.ini +2021-01-07 17:56:37 Result: file /etc/php/apache2-php5/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/apache2-php5.5/php.ini +2021-01-07 17:56:37 Result: file /etc/php/apache2-php5.5/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/apache2-php5.6/php.ini +2021-01-07 17:56:37 Result: file /etc/php/apache2-php5.6/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/apache2-php7.0/php.ini +2021-01-07 17:56:37 Result: file /etc/php/apache2-php7.0/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/apache2-php7.1/php.ini +2021-01-07 17:56:37 Result: file /etc/php/apache2-php7.1/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/apache2-php7.2/php.ini +2021-01-07 17:56:37 Result: file /etc/php/apache2-php7.2/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/apache2-php7.3/php.ini +2021-01-07 17:56:37 Result: file /etc/php/apache2-php7.3/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/apache2-php7.4/php.ini +2021-01-07 17:56:37 Result: file /etc/php/apache2-php7.4/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cgi-php5.5/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cgi-php5.5/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cgi-php5.6/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cgi-php5.6/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cgi-php7.0/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cgi-php7.0/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cgi-php7.1/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cgi-php7.1/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cgi-php7.2/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cgi-php7.2/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cgi-php7.3/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cgi-php7.3/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cgi-php7.4/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cgi-php7.4/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cli-php5.5/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cli-php5.5/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cli-php5.6/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cli-php5.6/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cli-php7.0/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cli-php7.0/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cli-php7.1/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cli-php7.1/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cli-php7.2/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cli-php7.2/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cli-php7.3/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cli-php7.3/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/cli-php7.4/php.ini +2021-01-07 17:56:37 Result: file /etc/php/cli-php7.4/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/embed-php5.5/php.ini +2021-01-07 17:56:37 Result: file /etc/php/embed-php5.5/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/embed-php5.6/php.ini +2021-01-07 17:56:37 Result: file /etc/php/embed-php5.6/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/embed-php7.0/php.ini +2021-01-07 17:56:37 Result: file /etc/php/embed-php7.0/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/embed-php7.1/php.ini +2021-01-07 17:56:37 Result: file /etc/php/embed-php7.1/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/embed-php7.2/php.ini +2021-01-07 17:56:37 Result: file /etc/php/embed-php7.2/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/embed-php7.3/php.ini +2021-01-07 17:56:37 Result: file /etc/php/embed-php7.3/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/embed-php7.4/php.ini +2021-01-07 17:56:37 Result: file /etc/php/embed-php7.4/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/fpm-php7.4/php.ini +2021-01-07 17:56:37 Result: file /etc/php/fpm-php7.4/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/fpm-php7.3/php.ini +2021-01-07 17:56:37 Result: file /etc/php/fpm-php7.3/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/fpm-php7.2/php.ini +2021-01-07 17:56:37 Result: file /etc/php/fpm-php7.2/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/fpm-php7.1/php.ini +2021-01-07 17:56:37 Result: file /etc/php/fpm-php7.1/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/fpm-php7.0/php.ini +2021-01-07 17:56:37 Result: file /etc/php/fpm-php7.0/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/fpm-php5.5/php.ini +2021-01-07 17:56:37 Result: file /etc/php/fpm-php5.5/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/fpm-php5.6/php.ini +2021-01-07 17:56:37 Result: file /etc/php/fpm-php5.6/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php5/cgi/php.ini +2021-01-07 17:56:37 Result: file /etc/php5/cgi/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php5/cli/php.ini +2021-01-07 17:56:37 Result: file /etc/php5/cli/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php5/cli-php5.4/php.ini +2021-01-07 17:56:37 Result: file /etc/php5/cli-php5.4/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php5/cli-php5.5/php.ini +2021-01-07 17:56:37 Result: file /etc/php5/cli-php5.5/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php5/cli-php5.6/php.ini +2021-01-07 17:56:37 Result: file /etc/php5/cli-php5.6/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php5/apache2/php.ini +2021-01-07 17:56:37 Result: file /etc/php5/apache2/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php5/fpm/php.ini +2021-01-07 17:56:37 Result: file /etc/php5/fpm/php.ini not found +2021-01-07 17:56:37 Test: checking presence /private/etc/php.ini +2021-01-07 17:56:37 Result: file /private/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.0/apache2/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.0/apache2/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.1/apache2/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.1/apache2/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.2/apache2/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.2/apache2/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.3/apache2/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.3/apache2/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.4/apache2/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.4/apache2/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.0/cli/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.0/cli/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.0/fpm/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.0/fpm/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.1/cli/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.1/cli/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.1/fpm/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.1/fpm/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.2/cli/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.2/cli/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.2/fpm/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.2/fpm/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.3/cli/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.3/cli/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.3/fpm/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.3/fpm/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.4/cli/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.4/cli/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php/7.4/fpm/php.ini +2021-01-07 17:56:37 Result: file /etc/php/7.4/fpm/php.ini not found +2021-01-07 17:56:37 Test: checking presence /var/www/conf/php.ini +2021-01-07 17:56:37 Result: file /var/www/conf/php.ini not found +2021-01-07 17:56:37 Test: checking presence /usr/local/etc/php.ini +2021-01-07 17:56:37 Result: file /usr/local/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /usr/local/lib/php.ini +2021-01-07 17:56:37 Result: file /usr/local/lib/php.ini not found +2021-01-07 17:56:37 Test: checking presence /usr/local/etc/php5/cgi/php.ini +2021-01-07 17:56:37 Result: file /usr/local/etc/php5/cgi/php.ini not found +2021-01-07 17:56:37 Test: checking presence /usr/local/php54/lib/php.ini +2021-01-07 17:56:37 Result: file /usr/local/php54/lib/php.ini not found +2021-01-07 17:56:37 Test: checking presence /usr/local/php56/lib/php.ini +2021-01-07 17:56:37 Result: file /usr/local/php56/lib/php.ini not found +2021-01-07 17:56:37 Test: checking presence /usr/local/php70/lib/php.ini +2021-01-07 17:56:37 Result: file /usr/local/php70/lib/php.ini not found +2021-01-07 17:56:37 Test: checking presence /usr/local/php71/lib/php.ini +2021-01-07 17:56:37 Result: file /usr/local/php71/lib/php.ini not found +2021-01-07 17:56:37 Test: checking presence /usr/local/php72/lib/php.ini +2021-01-07 17:56:37 Result: file /usr/local/php72/lib/php.ini not found +2021-01-07 17:56:37 Test: checking presence /usr/local/php73/lib/php.ini +2021-01-07 17:56:37 Result: file /usr/local/php73/lib/php.ini not found +2021-01-07 17:56:37 Test: checking presence /usr/local/php74/lib/php.ini +2021-01-07 17:56:37 Result: file /usr/local/php74/lib/php.ini not found +2021-01-07 17:56:37 Test: checking presence /usr/local/zend/etc/php.ini +2021-01-07 17:56:37 Result: file /usr/local/zend/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /usr/pkg/etc/php.ini +2021-01-07 17:56:37 Result: file /usr/pkg/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/cpanel/ea-php54/root/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/cpanel/ea-php54/root/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/cpanel/ea-php55/root/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/cpanel/ea-php55/root/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/cpanel/ea-php56/root/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/cpanel/ea-php56/root/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/cpanel/ea-php70/root/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/cpanel/ea-php70/root/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/cpanel/ea-php71/root/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/cpanel/ea-php71/root/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/cpanel/ea-php72/root/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/cpanel/ea-php72/root/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/cpanel/ea-php73/root/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/cpanel/ea-php73/root/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/cpanel/ea-php74/root/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/cpanel/ea-php74/root/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/alt/php44/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/alt/php44/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/alt/php51/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/alt/php51/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/alt/php52/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/alt/php52/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/alt/php53/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/alt/php53/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/alt/php54/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/alt/php54/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/alt/php55/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/alt/php55/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/alt/php56/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/alt/php56/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/alt/php70/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/alt/php70/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/alt/php71/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/alt/php71/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/alt/php72/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/alt/php72/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/alt/php73/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/alt/php73/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /opt/alt/php74/etc/php.ini +2021-01-07 17:56:37 Result: file /opt/alt/php74/etc/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/opt/remi/php56/php.ini +2021-01-07 17:56:37 Result: file /etc/opt/remi/php56/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/opt/remi/php70/php.ini +2021-01-07 17:56:37 Result: file /etc/opt/remi/php70/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/opt/remi/php71/php.ini +2021-01-07 17:56:37 Result: file /etc/opt/remi/php71/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/opt/remi/php72/php.ini +2021-01-07 17:56:37 Result: file /etc/opt/remi/php72/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/opt/remi/php73/php.ini +2021-01-07 17:56:37 Result: file /etc/opt/remi/php73/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/opt/remi/php74/php.ini +2021-01-07 17:56:37 Result: file /etc/opt/remi/php74/php.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php-5.6.ini +2021-01-07 17:56:37 Result: file /etc/php-5.6.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php-7.0.ini +2021-01-07 17:56:37 Result: file /etc/php-7.0.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php-7.1.ini +2021-01-07 17:56:37 Result: file /etc/php-7.1.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php-7.2.ini +2021-01-07 17:56:37 Result: file /etc/php-7.2.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php-7.3.ini +2021-01-07 17:56:37 Result: file /etc/php-7.3.ini not found +2021-01-07 17:56:37 Test: checking presence /etc/php-7.4.ini +2021-01-07 17:56:37 Result: file /etc/php-7.4.ini not found +2021-01-07 17:56:37 Result: no files found for /etc/php5/conf.d +2021-01-07 17:56:37 Result: no files found for /etc/php/7.0/cli/conf.d +2021-01-07 17:56:37 Result: no files found for /etc/php/7.1/cli/conf.d +2021-01-07 17:56:37 Result: no files found for /etc/php/7.2/cli/conf.d +2021-01-07 17:56:37 Result: no files found for /etc/php/7.3/cli/conf.d +2021-01-07 17:56:37 Result: no files found for /etc/php/7.4/cli/conf.d +2021-01-07 17:56:37 Result: no files found for /etc/php/7.0/fpm/conf.d +2021-01-07 17:56:37 Result: no files found for /etc/php/7.1/fpm/conf.d +2021-01-07 17:56:37 Result: no files found for /etc/php/7.2/fpm/conf.d +2021-01-07 17:56:37 Result: no files found for /etc/php/7.3/fpm/conf.d +2021-01-07 17:56:37 Result: no files found for /etc/php/7.4/fpm/conf.d +2021-01-07 17:56:37 Result: no files found for /etc/php.d +2021-01-07 17:56:37 Result: no files found for /opt/cpanel/ea-php54/root/etc/php.d +2021-01-07 17:56:37 Result: no files found for /opt/cpanel/ea-php55/root/etc/php.d +2021-01-07 17:56:37 Result: no files found for /opt/cpanel/ea-php56/root/etc/php.d +2021-01-07 17:56:37 Result: no files found for /opt/cpanel/ea-php70/root/etc/php.d +2021-01-07 17:56:37 Result: no files found for /opt/cpanel/ea-php71/root/etc/php.d +2021-01-07 17:56:37 Result: no files found for /opt/cpanel/ea-php72/root/etc/php.d +2021-01-07 17:56:37 Result: no files found for /opt/cpanel/ea-php73/root/etc/php.d +2021-01-07 17:56:37 Result: no files found for /opt/cpanel/ea-php74/root/etc/php.d +2021-01-07 17:56:37 Result: no files found for /opt/alt/php44/etc/php.d.all +2021-01-07 17:56:37 Result: no files found for /opt/alt/php51/etc/php.d.all +2021-01-07 17:56:37 Result: no files found for /opt/alt/php52/etc/php.d.all +2021-01-07 17:56:37 Result: no files found for /opt/alt/php53/etc/php.d.all +2021-01-07 17:56:37 Result: no files found for /opt/alt/php54/etc/php.d.all +2021-01-07 17:56:37 Result: no files found for /opt/alt/php55/etc/php.d.all +2021-01-07 17:56:37 Result: no files found for /opt/alt/php56/etc/php.d.all +2021-01-07 17:56:37 Result: no files found for /opt/alt/php70/etc/php.d.all +2021-01-07 17:56:37 Result: no files found for /opt/alt/php71/etc/php.d.all +2021-01-07 17:56:37 Result: no files found for /opt/alt/php72/etc/php.d.all +2021-01-07 17:56:37 Result: no files found for /opt/alt/php73/etc/php.d.all +2021-01-07 17:56:37 Result: no files found for /opt/alt/php74/etc/php.d.all +2021-01-07 17:56:37 Result: no files found for /usr/local/lib/php.conf.d +2021-01-07 17:56:37 Result: no files found for /usr/local/php70/lib/php.conf.d +2021-01-07 17:56:37 Result: no files found for /usr/local/php71/lib/php.conf.d +2021-01-07 17:56:37 Result: no files found for /usr/local/php72/lib/php.conf.d +2021-01-07 17:56:37 Result: no files found for /usr/local/php73/lib/php.conf.d +2021-01-07 17:56:37 Result: no files found for /usr/local/php74/lib/php.conf.d +2021-01-07 17:56:37 Result: no files found for /etc/php-5.6 +2021-01-07 17:56:37 Result: no files found for /etc/php-7.0 +2021-01-07 17:56:37 Result: no files found for /etc/php-7.1 +2021-01-07 17:56:37 Result: no files found for /etc/php-7.2 +2021-01-07 17:56:37 Result: no files found for /etc/php-7.3 +2021-01-07 17:56:37 Result: no files found for /etc/php-7.4 +2021-01-07 17:56:37 Result: no php.ini file found +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test PHP-2320 (Check PHP disabled functions) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test PHP-2368 (Check PHP register_globals option) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test PHP-2372 (Check PHP expose_php option) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test PHP-2374 (Check PHP enable_dl option) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test PHP-2376 (Check PHP allow_url_fopen option) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test PHP-2378 (Check PHP allow_url_include option) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test PHP-2382 (Check PHP expose_php option) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 Security check: file is normal +2021-01-07 17:56:37 Checking permissions of /home/ktdw73/scans/lynis/include/tests_squid +2021-01-07 17:56:37 File permissions are OK +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Action: Performing tests from category: Squid Support +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID SQD-3602 (Check for running Squid daemon) +2021-01-07 17:56:37 Test: Searching for a Squid daemon +2021-01-07 17:56:37 Result: No running Squid daemon found +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test SQD-3604 (Check Squid daemon file location) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test SQD-3606 (Check Squid version) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test SQD-3610 (Gather Squid settings) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test SQD-3613 (Check Squid file permissions) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test SQD-3614 (Check Squid authentication methods) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test SQD-3616 (Check external Squid authentication) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test SQD-3620 (Check Squid access control lists) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test SQD-3624 (Check Squid safe ports) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test SQD-3630 (Check Squid reply_body_max_size option) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test SQD-3680 (Check Squid version suppression) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 Security check: file is normal +2021-01-07 17:56:37 Checking permissions of /home/ktdw73/scans/lynis/include/tests_logging +2021-01-07 17:56:37 File permissions are OK +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Action: Performing tests from category: Logging and files +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID LOGG-2130 (Check for running syslog daemon) +2021-01-07 17:56:37 Test: Searching for a logging daemon +2021-01-07 17:56:37 Result: Found a logging daemon +2021-01-07 17:56:37 Hardening: assigned maximum number of hardening points for this item (3). Currently having 179 points (out of 240) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID LOGG-2132 (Check for running syslog-ng daemon) +2021-01-07 17:56:37 Test: Searching for syslog-ng daemon in process list +2021-01-07 17:56:37 Performing pgrep scan without uid +2021-01-07 17:56:37 IsRunning: process 'syslog-ng' not found +2021-01-07 17:56:37 Result: Syslog-ng NOT found in process list +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Skipped test LOGG-2134 (Checking Syslog-NG configuration file consistency) +2021-01-07 17:56:37 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID LOGG-2136 (Check for running systemd journal daemon) +2021-01-07 17:56:37 Test: Searching for systemd journal daemon in process list +2021-01-07 17:56:37 Performing pgrep scan without uid +2021-01-07 17:56:37 IsRunning: process 'systemd-journal' found (421 ) +2021-01-07 17:56:37 ==== +2021-01-07 17:56:37 Performing test ID LOGG-2210 (Check for running metalog daemon) +2021-01-07 17:56:37 Test: Searching for metalog daemon in process list +2021-01-07 17:56:37 Performing pgrep scan without uid +2021-01-07 17:56:38 IsRunning: process 'metalog' not found +2021-01-07 17:56:38 Result: metalog NOT found in process list +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID LOGG-2230 (Check for running RSyslog daemon) +2021-01-07 17:56:38 Test: Searching for RSyslog daemon in process list +2021-01-07 17:56:38 Performing pgrep scan without uid +2021-01-07 17:56:38 IsRunning: process 'rsyslogd' found (32591 ) +2021-01-07 17:56:38 Result: Found rsyslogd in process list +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID LOGG-2240 (Check for running RFC 3195 compliant daemon) +2021-01-07 17:56:38 Test: Searching for RFC 3195 daemon (alias syslog reliable) in process list +2021-01-07 17:56:38 Performing pgrep scan without uid +2021-01-07 17:56:38 IsRunning: process 'rfc3195d' not found +2021-01-07 17:56:38 Result: rfc3195d NOT found in process list +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID LOGG-2138 (Checking kernel logger daemon on Linux) +2021-01-07 17:56:38 Test: Searching kernel logger daemon (klogd) +2021-01-07 17:56:38 Result: test skipped, because other facility is being used to log kernel messages +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID LOGG-2142 (Checking minilog daemon) +2021-01-07 17:56:38 Result: Checking for unkilled minilogd instances +2021-01-07 17:56:38 Performing pgrep scan without uid +2021-01-07 17:56:38 IsRunning: process 'minilogd' not found +2021-01-07 17:56:38 Result: No minilogd is running +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID LOGG-2146 (Checking logrotate.conf and logrotate.d) +2021-01-07 17:56:38 Test: Checking for /etc/logrotate.conf +2021-01-07 17:56:38 Result: /etc/logrotate.conf found (file) +2021-01-07 17:56:38 Test: Checking for /etc/logrotate.d (directory) +2021-01-07 17:56:38 Result: /etc/logrotate.d found +2021-01-07 17:56:38 Result: logrotate configuration found +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID LOGG-2148 (Checking logrotated files) +2021-01-07 17:56:38 Test: Checking which files are rotated with logrotate and if they exist +2021-01-07 17:56:38 Result: found one or more files which are rotated via logrotate +2021-01-07 17:56:38 Output: File:/var/log/cron.log:does_not_exist +2021-01-07 17:56:38 Output: File:/var/log/lpr.log:does_not_exist +2021-01-07 17:56:38 Output: File:/var/log/mail.err:does_not_exist +2021-01-07 17:56:38 Output: File:/var/log/mail.warn:does_not_exist +2021-01-07 17:56:38 Output: File:/var/log/unattended-upgrades/unattended-upgrades-dpkg.log:does_not_exist +2021-01-07 17:56:38 Output: File:/var/log/unattended-upgrades/unattended-upgrades-shutdown.log:does_not_exist +2021-01-07 17:56:38 Output: File:/var/log/unattended-upgrades/unattended-upgrades.log:does_not_exist +2021-01-07 17:56:38 Output: File:/var/log/user.log:does_not_exist +2021-01-07 17:56:38 Output: File:/var/log/alternatives.log:exists +2021-01-07 17:56:38 Output: File:/var/log/apt/history.log:exists +2021-01-07 17:56:38 Output: File:/var/log/apt/term.log:exists +2021-01-07 17:56:38 Output: File:/var/log/auth.log:exists +2021-01-07 17:56:38 Output: File:/var/log/btmp:exists +2021-01-07 17:56:38 Output: File:/var/log/cron.log:exists +2021-01-07 17:56:38 Output: File:/var/log/daemon.log:exists +2021-01-07 17:56:38 Output: File:/var/log/debug:exists +2021-01-07 17:56:38 Output: File:/var/log/dpkg.log:exists +2021-01-07 17:56:38 Output: File:/var/log/fail2ban.log:exists +2021-01-07 17:56:38 Output: File:/var/log/kern.log:exists +2021-01-07 17:56:38 Output: File:/var/log/lpr.log:exists +2021-01-07 17:56:38 Output: File:/var/log/mail.err:exists +2021-01-07 17:56:38 Output: File:/var/log/mail.info:exists +2021-01-07 17:56:38 Output: File:/var/log/mail.log:exists +2021-01-07 17:56:38 Output: File:/var/log/mail.warn:exists +2021-01-07 17:56:38 Output: File:/var/log/messages:exists +2021-01-07 17:56:38 Output: File:/var/log/syslog:exists +2021-01-07 17:56:38 Output: File:/var/log/unattended-upgrades/unattended-upgrades-dpkg.log:exists +2021-01-07 17:56:38 Output: File:/var/log/unattended-upgrades/unattended-upgrades-shutdown.log:exists +2021-01-07 17:56:38 Output: File:/var/log/unattended-upgrades/unattended-upgrades.log:exists +2021-01-07 17:56:38 Output: File:/var/log/user.log:exists +2021-01-07 17:56:38 Output: File:/var/log/wtmp:exists +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID LOGG-2150 (Checking directories in logrotate configuration) +2021-01-07 17:56:38 Test: Checking which directories can be found in logrotate configuration +2021-01-07 17:56:38 Result: found one or more directories (via logrotate configuration) +2021-01-07 17:56:38 Directory found: /var/log +2021-01-07 17:56:38 Directory found: /var/log/apt +2021-01-07 17:56:38 Directory found: /var/log/unattended-upgrades +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test LOGG-2152 (Checking loghost) +2021-01-07 17:56:38 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test LOGG-2153 (Checking loghost is localhost) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID LOGG-2154 (Checking syslog configuration file) +2021-01-07 17:56:38 Test: analyzing file /etc/rsyslog.conf for remote target +2021-01-07 17:56:38 Result: no remote target found +2021-01-07 17:56:38 Test: analyzing file /etc/rsyslog.d/90-google.conf for remote target +2021-01-07 17:56:38 Result: no remote target found +2021-01-07 17:56:38 Result: no remote logging found +2021-01-07 17:56:38 Suggestion: Enable logging to an external logging host for archiving purposes and additional protection [test:LOGG-2154] [details:-] [solution:-] +2021-01-07 17:56:38 Hardening: assigned partial number of hardening points (1 of 3). Currently having 180 points (out of 243) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test LOGG-2160 (Checking /etc/newsyslog.conf) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test LOGG-2162 (Checking directories in /etc/newsyslog.conf) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test LOGG-2164 (Checking files specified /etc/newsyslog.conf) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID LOGG-2170 (Checking log paths) +2021-01-07 17:56:38 Test: Searching log paths +2021-01-07 17:56:38 Result: directory /var/log exists +2021-01-07 17:56:38 Result: directory /var/adm can't be found +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID LOGG-2180 (Checking open log files) +2021-01-07 17:56:38 Test: checking open log files with lsof +2021-01-07 17:56:38 Result: lsof not installed, skipping test +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test LOGG-2190 (Checking for deleted files in use) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test LOGG-2192 (Checking for open log files that are empty) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 Security check: file is normal +2021-01-07 17:56:38 Checking permissions of /home/ktdw73/scans/lynis/include/tests_insecure_services +2021-01-07 17:56:38 File permissions are OK +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Action: Performing tests from category: Insecure services +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID INSE-8000 (Installed inetd package) +2021-01-07 17:56:38 Test: Checking if inetd is installed +2021-01-07 17:56:38 Result: inetd is NOT installed +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test INSE-8002 (Check for enabled inet daemon) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test INSE-8004 (Presence of inetd configuration file) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test INSE-8006 (Check configuration of inetd when disabled) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test INSE-8016 (Check for telnet via inetd) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID INSE-8100 (Check for installed xinetd daemon) +2021-01-07 17:56:38 Test: Checking for installed xinetd daemon +2021-01-07 17:56:38 Result: xinetd is NOT installed +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID INSE-8102 (Check for active xinet daemon) +2021-01-07 17:56:38 Test: Searching for active extended internet services daemon (xinetd) +2021-01-07 17:56:38 Performing pgrep scan without uid +2021-01-07 17:56:38 IsRunning: process 'xinetd' not found +2021-01-07 17:56:38 Result: xinetd is NOT running +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test INSE-8104 (Check for enabled xinet daemon) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test INSE-8106 (Check configuration of xinetd when disabled) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test INSE-8116 (Insecure services enabled via xinetd) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test INSE-8200 (Check if tcp_wrappers is installed when inetd/xinetd is active) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID INSE-8300 (Check if rsh client is installed) +2021-01-07 17:56:38 Test: Checking if rsh client is installed +2021-01-07 17:56:38 Result: rsh client is NOT installed +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID INSE-8304 (Check if rsh server is installed) +2021-01-07 17:56:38 Test: Checking if rsh server is installed +2021-01-07 17:56:38 Result: rsh server is NOT installed +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID INSE-8310 (Check if telnet client is installed) +2021-01-07 17:56:38 Test: Checking if telnet client is installed +2021-01-07 17:56:38 Result: telnet client is NOT installed +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID INSE-8322 (Check if telnet server is installed) +2021-01-07 17:56:38 Test: Checking if telnet server is installed +2021-01-07 17:56:38 Result: telnet server is NOT installed +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID INSE-8314 (Check if NIS client is installed) +2021-01-07 17:56:38 Test: Checking if NIS client is installed +2021-01-07 17:56:38 Result: NIS client is NOT installed +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID INSE-8316 (Check if NIS server is installed) +2021-01-07 17:56:38 Test: Checking if NIS server is installed +2021-01-07 17:56:38 Result: NIS server is NOT installed +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID INSE-8318 (Check if TFTP client is installed) +2021-01-07 17:56:38 Test: Checking if TFTP client is installed +2021-01-07 17:56:38 Result: TFTP client is NOT installed +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID INSE-8320 (Check if TFTP server is installed) +2021-01-07 17:56:38 Test: Checking if TFTP server is installed +2021-01-07 17:56:38 Result: TFTP server is NOT installed +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test INSE-8050 (Check for insecure services on macOS) +2021-01-07 17:56:38 Reason to skip: Incorrect guest OS (macOS only) +2021-01-07 17:56:38 Security check: file is normal +2021-01-07 17:56:38 Checking permissions of /home/ktdw73/scans/lynis/include/tests_banners +2021-01-07 17:56:38 File permissions are OK +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Action: Performing tests from category: Banners and identification +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test BANN-7113 (Check COPYRIGHT banner file) +2021-01-07 17:56:38 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID BANN-7124 (Check issue banner file) +2021-01-07 17:56:38 Test: Checking file /etc/issue +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID BANN-7126 (Check issue banner file contents) +2021-01-07 17:56:38 Test: Checking file /etc/issue contents for legal key words +2021-01-07 17:56:38 Result: Found only 0 key words (5 or more suggested), to warn unauthorized users and could be increased +2021-01-07 17:56:38 Suggestion: Add a legal banner to /etc/issue, to warn unauthorized users [test:BANN-7126] [details:-] [solution:-] +2021-01-07 17:56:38 Hardening: assigned partial number of hardening points (0 of 1). Currently having 180 points (out of 244) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID BANN-7128 (Check issue.net banner file) +2021-01-07 17:56:38 Test: Checking file /etc/issue.net +2021-01-07 17:56:38 Result: file /etc/issue.net exists +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID BANN-7130 (Check issue.net banner file contents) +2021-01-07 17:56:38 Test: Checking file /etc/issue.net contents for legal key words +2021-01-07 17:56:38 Result: Found only 0 key words, to warn unauthorized users and could be increased +2021-01-07 17:56:38 Suggestion: Add legal banner to /etc/issue.net, to warn unauthorized users [test:BANN-7130] [details:-] [solution:-] +2021-01-07 17:56:38 Hardening: assigned partial number of hardening points (0 of 1). Currently having 180 points (out of 245) +2021-01-07 17:56:38 Security check: file is normal +2021-01-07 17:56:38 Checking permissions of /home/ktdw73/scans/lynis/include/tests_scheduling +2021-01-07 17:56:38 File permissions are OK +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Action: Performing tests from category: Scheduled tasks +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID SCHD-7702 (Check status of cron daemon) +2021-01-07 17:56:38 Result: cron daemon running +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID SCHD-7704 (Check crontab/cronjobs) +2021-01-07 17:56:38 Found cronjob (/etc/crontab): 17,*,*,*,*,root,cd,/,&&,run-parts,--report,/etc/cron.hourly +2021-01-07 17:56:38 Found cronjob (/etc/crontab): 25,6,*,*,*,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.daily,) +2021-01-07 17:56:38 Found cronjob (/etc/crontab): 47,6,*,*,7,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.weekly,) +2021-01-07 17:56:38 Found cronjob (/etc/crontab): 52,6,1,*,*,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.monthly,) +2021-01-07 17:56:38 Test: checking directory /etc/cron.d +2021-01-07 17:56:38 Test: check if we can access /etc/cron.d (escaped: /etc/cron.d) +2021-01-07 17:56:38 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:38 Result: file /etc/cron.d is readable (or directory accessible). +2021-01-07 17:56:38 Result: found directory /etc/cron.d +2021-01-07 17:56:38 Test: searching files in /etc/cron.d +2021-01-07 17:56:38 Result: found one or more files in /etc/cron.d. Analyzing files.. +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.d/sendmail): */20,*,*,*,*,smmsp,test,-x,/etc/init.d/sendmail,&&,test,-x,/usr/share/sendmail/sendmail,&&,test,-x,/usr/lib/sm.bin/sendmail,&&,/usr/share/sendmail/sendmail,cron-msp +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.d/tiger): 0,*,*,*,*,root,test,-x,/usr/sbin/tigercron,&&,{,[,-r,"$DEFAULT",],&&,.,"$DEFAULT",;,nice,-n$NICETIGER,/usr/sbin/tigercron,-q,;,} +2021-01-07 17:56:38 Result: done with analyzing files in /etc/cron.d +2021-01-07 17:56:38 Test: checking directory /etc/cron.hourly +2021-01-07 17:56:38 Result: found directory /etc/cron.hourly +2021-01-07 17:56:38 Test: check if we can access /etc/cron.hourly (escaped: /etc/cron.hourly) +2021-01-07 17:56:38 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:38 Result: file /etc/cron.hourly is readable (or directory accessible). +2021-01-07 17:56:38 Test: searching files in /etc/cron.hourly +2021-01-07 17:56:38 Result: no files found in /etc/cron.hourly +2021-01-07 17:56:38 Test: checking directory /etc/cron.daily +2021-01-07 17:56:38 Result: found directory /etc/cron.daily +2021-01-07 17:56:38 Test: check if we can access /etc/cron.daily (escaped: /etc/cron.daily) +2021-01-07 17:56:38 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:38 Result: file /etc/cron.daily is readable (or directory accessible). +2021-01-07 17:56:38 Test: searching files in /etc/cron.daily +2021-01-07 17:56:38 Result: found one or more files in /etc/cron.daily. Analyzing files.. +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/logrotate +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/ntp +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/sendmail +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/apt-compat +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/cracklib-runtime +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/man-db +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/tripwire +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/chkrootkit +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/dpkg +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/bsdmainutils +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/passwd +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/acct +2021-01-07 17:56:38 Result: done with analyzing files in /etc/cron.daily +2021-01-07 17:56:38 Test: checking directory /etc/cron.weekly +2021-01-07 17:56:38 Result: found directory /etc/cron.weekly +2021-01-07 17:56:38 Test: check if we can access /etc/cron.weekly (escaped: /etc/cron.weekly) +2021-01-07 17:56:38 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:38 Result: file /etc/cron.weekly is readable (or directory accessible). +2021-01-07 17:56:38 Test: searching files in /etc/cron.weekly +2021-01-07 17:56:38 Result: found one or more files in /etc/cron.weekly. Analyzing files.. +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.weekly): /etc/cron.weekly/man-db +2021-01-07 17:56:38 Result: done with analyzing files in /etc/cron.weekly +2021-01-07 17:56:38 Test: checking directory /etc/cron.monthly +2021-01-07 17:56:38 Result: found directory /etc/cron.monthly +2021-01-07 17:56:38 Test: check if we can access /etc/cron.monthly (escaped: /etc/cron.monthly) +2021-01-07 17:56:38 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:38 Result: file /etc/cron.monthly is readable (or directory accessible). +2021-01-07 17:56:38 Test: searching files in /etc/cron.monthly +2021-01-07 17:56:38 Result: found one or more files in /etc/cron.monthly. Analyzing files.. +2021-01-07 17:56:38 Result: Found cronjob (/etc/cron.monthly): /etc/cron.monthly/acct +2021-01-07 17:56:38 Result: done with analyzing files in /etc/cron.monthly +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID SCHD-7718 (Check at users) +2021-01-07 17:56:38 Test: Checking atd status +2021-01-07 17:56:38 Result: at daemon not active +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test SCHD-7720 (Check at users) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test SCHD-7724 (Check at jobs) +2021-01-07 17:56:38 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:38 Result: no scheduled Lynis execution found (e.g. crontab, cronjob) +2021-01-07 17:56:38 Security check: file is normal +2021-01-07 17:56:38 Checking permissions of /home/ktdw73/scans/lynis/include/tests_accounting +2021-01-07 17:56:38 File permissions are OK +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Action: Performing tests from category: Accounting +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test ACCT-2754 (Check for available FreeBSD accounting information) +2021-01-07 17:56:38 Reason to skip: Incorrect guest OS (FreeBSD only) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Skipped test ACCT-2760 (Check for available OpenBSD accounting information) +2021-01-07 17:56:38 Reason to skip: Incorrect guest OS (OpenBSD only) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID ACCT-9622 (Check for available Linux accounting information) +2021-01-07 17:56:38 Test: Check accounting information +2021-01-07 17:56:38 Result: /var/log/account/pacct available +2021-01-07 17:56:38 Hardening: assigned maximum number of hardening points for this item (3). Currently having 183 points (out of 248) +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID ACCT-9626 (Check for sysstat accounting data) +2021-01-07 17:56:38 Test: check /etc/default/sysstat presence +2021-01-07 17:56:38 Result: sysstat not found via /etc/default/sysstat or /etc/cron.d/sysstat or as a systemd unit +2021-01-07 17:56:38 Suggestion: Enable sysstat to collect accounting (no results) [test:ACCT-9626] [details:-] [solution:-] +2021-01-07 17:56:38 ==== +2021-01-07 17:56:38 Performing test ID ACCT-9628 (Check for auditd) +2021-01-07 17:56:38 Test: Check auditd status +2021-01-07 17:56:38 Performing pgrep scan without uid +2021-01-07 17:56:39 IsRunning: process 'auditd' not found +2021-01-07 17:56:39 Result: auditd not active +2021-01-07 17:56:39 Suggestion: Enable auditd to collect audit information [test:ACCT-9628] [details:-] [solution:-] +2021-01-07 17:56:39 Hardening: assigned partial number of hardening points (0 of 1). Currently having 183 points (out of 249) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test ACCT-9630 (Check for auditd rules) +2021-01-07 17:56:39 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test ACCT-9632 (Check for auditd configuration file) +2021-01-07 17:56:39 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test ACCT-9634 (Check for auditd log file) +2021-01-07 17:56:39 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Performing test ID ACCT-9636 (Check for Snoopy wrapper and logger) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test ACCT-9650 (Check Solaris audit daemon) +2021-01-07 17:56:39 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test ACCT-9652 (Check auditd SMF status) +2021-01-07 17:56:39 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test ACCT-9654 (Check BSM auditing in /etc/system) +2021-01-07 17:56:39 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test ACCT-9656 (Check BSM auditing in module list) +2021-01-07 17:56:39 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test ACCT-9660 (Check location of audit events) +2021-01-07 17:56:39 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test ACCT-9662 (Check Solaris auditing stats) +2021-01-07 17:56:39 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:39 Security check: file is normal +2021-01-07 17:56:39 Checking permissions of /home/ktdw73/scans/lynis/include/tests_time +2021-01-07 17:56:39 File permissions are OK +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Action: Performing tests from category: Time and Synchronization +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Performing test ID TIME-3104 (Check for running NTP daemon or client) +2021-01-07 17:56:39 Test: Searching for a running NTP daemon or available client +2021-01-07 17:56:39 Result: no chrony configuration found +2021-01-07 17:56:39 Performing pgrep scan without uid +2021-01-07 17:56:39 IsRunning: process 'dntpd' not found +2021-01-07 17:56:39 Result: found running NTP daemon in process list +2021-01-07 17:56:39 Performing pgrep scan without uid +2021-01-07 17:56:39 IsRunning: process 'timed' not found +2021-01-07 17:56:39 Result: crontab file /etc/anacrontab not found +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in crontab file /etc/crontab +2021-01-07 17:56:39 Result: no ntpdate, rdate, sntp or ntpdig reference found in crontab file /etc/crontab +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.d/john +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.d/sendmail +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.d/tiger +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/acct +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/apt-compat +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/bsdmainutils +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/chkrootkit +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/cracklib-runtime +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/dpkg +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/logrotate +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/man-db +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/ntp +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/passwd +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/sendmail +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.daily/tripwire +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.weekly/man-db +2021-01-07 17:56:39 Test: checking for ntpdate, rdate, sntp or ntpdig in /etc/cron.monthly/acct +2021-01-07 17:56:39 Result: no ntpdate or rdate found in cron directories +2021-01-07 17:56:39 Test: checking for file /etc/network/if-up.d/ntpdate +2021-01-07 17:56:39 Result: file /etc/network/if-up.d/ntpdate does not exist +2021-01-07 17:56:39 Result: Found a time syncing daemon/client. +2021-01-07 17:56:39 Hardening: assigned maximum number of hardening points for this item (3). Currently having 186 points (out of 252) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test TIME-3106 (Check systemd NTP time synchronization status) +2021-01-07 17:56:39 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Performing test ID TIME-3112 (Check active NTP associations ID's) +2021-01-07 17:56:39 Test: Checking for NTP association ID's from ntpq peers list +2021-01-07 17:56:39 Result: Found one or more association ID's +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Performing test ID TIME-3116 (Check peers with stratum value of 16) +2021-01-07 17:56:39 Test: Checking stratum 16 sources from ntpq peers list +2021-01-07 17:56:39 Result: All peers are lower than stratum 16 +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Performing test ID TIME-3120 (Check unreliable NTP peers) +2021-01-07 17:56:39 Test: Checking unreliable ntp peers +2021-01-07 17:56:39 Result: No unreliable peers found +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Performing test ID TIME-3124 (Check selected time source) +2021-01-07 17:56:39 Test: Checking selected time source +2021-01-07 17:56:39 Result: Found selected time source (value: 169.254.169.254) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Performing test ID TIME-3128 (Check preferred time source) +2021-01-07 17:56:39 Test: Checking preferred time source +2021-01-07 17:56:39 Result: No other time source candidates found +2021-01-07 17:56:39 Suggestion: Check ntpq peers output for time source candidates [test:TIME-3128] [details:-] [solution:-] +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Performing test ID TIME-3132 (Check NTP falsetickers) +2021-01-07 17:56:39 Test: Checking preferred time source +2021-01-07 17:56:39 Result: No falsetickers found (items preceding with an 'x') +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Performing test ID TIME-3136 (Check NTP protocol version) +2021-01-07 17:56:39 Test: Checking NTP protocol version (ntpq -c ntpversion) +2021-01-07 17:56:39 Result: Found NTP version 2 +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Performing test ID TIME-3148 (Check TZ variable) +2021-01-07 17:56:39 Test: testing for TZ variable +2021-01-07 17:56:39 Result: found TZ variable with value notset +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test TIME-3160 (Check empty NTP step-tickers) +2021-01-07 17:56:39 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Performing test ID TIME-3170 (Check configuration files) +2021-01-07 17:56:39 Result: found /etc/ntp.conf +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test TIME-3180 (Report if ntpctl cannot communicate with OpenNTPD) +2021-01-07 17:56:39 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test TIME-3181 (Check status of OpenNTPD time synchronisation) +2021-01-07 17:56:39 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test TIME-3182 (Check OpenNTPD has working peers) +2021-01-07 17:56:39 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Skipped test TIME-3185 (Check systemd-timesyncd synchronized time) +2021-01-07 17:56:39 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:39 Security check: file is normal +2021-01-07 17:56:39 Checking permissions of /home/ktdw73/scans/lynis/include/tests_crypto +2021-01-07 17:56:39 File permissions are OK +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Action: Performing tests from category: Cryptography +2021-01-07 17:56:39 ==== +2021-01-07 17:56:39 Performing test ID CRYP-7902 (Check expire date of SSL certificates) +2021-01-07 17:56:39 Paths to scan: /etc/apache2 /etc/dovecot /etc/httpd /etc/letsencrypt /etc/pki /etc/postfix /etc/refind.d/keys /etc/ssl /opt/psa/var/certificates /usr/local/psa/var/certificates /usr/local/share/ca-certificates /usr/share/ca-certificates /usr/share/gnupg /var/www /srv/www +2021-01-07 17:56:39 Paths to ignore: /etc/letsencrypt/archive +2021-01-07 17:56:39 Result: SSL path /etc/apache2 does not exist +2021-01-07 17:56:39 Result: SSL path /etc/dovecot does not exist +2021-01-07 17:56:39 Result: SSL path /etc/httpd does not exist +2021-01-07 17:56:39 Result: SSL path /etc/letsencrypt does not exist +2021-01-07 17:56:39 Result: SSL path /etc/pki does not exist +2021-01-07 17:56:39 Result: SSL path /etc/postfix does not exist +2021-01-07 17:56:39 Result: SSL path /etc/refind.d/keys does not exist +2021-01-07 17:56:39 Test: check if we can access /etc/ssl (escaped: /etc/ssl) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /etc/ssl is readable (or directory accessible). +2021-01-07 17:56:39 Result: found directory /etc/ssl +2021-01-07 17:56:39 Test: check if we can access /etc/ssl/certs/ca-certificates.crt (escaped: /etc/ssl/certs/ca-certificates.crt) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /etc/ssl/certs/ca-certificates.crt is readable (or directory accessible). +2021-01-07 17:56:39 Result: file '/etc/ssl/certs/ca-certificates.crt' does most likely not belong to a package +2021-01-07 17:56:39 Result: file is a certificate file +2021-01-07 17:56:39 Result: certificate /etc/ssl/certs/ca-certificates.crt seems to be correct and still valid +2021-01-07 17:56:39 Result: found 1 certificates in /etc/ssl +2021-01-07 17:56:39 Result: SSL path /opt/psa/var/certificates does not exist +2021-01-07 17:56:39 Result: SSL path /usr/local/psa/var/certificates does not exist +2021-01-07 17:56:39 Test: check if we can access /usr/local/share/ca-certificates (escaped: /usr/local/share/ca-certificates) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /usr/local/share/ca-certificates is readable (or directory accessible). +2021-01-07 17:56:39 Result: found directory /usr/local/share/ca-certificates +2021-01-07 17:56:39 Result: found 0 certificates in /usr/local/share/ca-certificates +2021-01-07 17:56:39 Test: check if we can access /usr/share/ca-certificates (escaped: /usr/share/ca-certificates) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /usr/share/ca-certificates is readable (or directory accessible). +2021-01-07 17:56:39 Result: found directory /usr/share/ca-certificates +2021-01-07 17:56:39 Test: check if we can access /usr/share/ca-certificates/mozilla/ACCVRAIZ1.crt (escaped: /usr/share/ca-certificates/mozilla/ACCVRAIZ1.crt) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /usr/share/ca-certificates/mozilla/ACCVRAIZ1.crt is readable (or directory accessible). +2021-01-07 17:56:39 Result: file '/usr/share/ca-certificates/mozilla/ACCVRAIZ1.crt' belongs to package (ca-certificates) +2021-01-07 17:56:39 Test: check if we can access /usr/share/ca-certificates/mozilla/AC_RAIZ_FNMT-RCM.crt (escaped: /usr/share/ca-certificates/mozilla/AC_RAIZ_FNMT-RCM.crt) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /usr/share/ca-certificates/mozilla/AC_RAIZ_FNMT-RCM.crt is readable (or directory accessible). +2021-01-07 17:56:39 Result: file '/usr/share/ca-certificates/mozilla/AC_RAIZ_FNMT-RCM.crt' belongs to package (ca-certificates) +2021-01-07 17:56:39 Test: check if we can access /usr/share/ca-certificates/mozilla/Actalis_Authentication_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Actalis_Authentication_Root_CA.crt) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /usr/share/ca-certificates/mozilla/Actalis_Authentication_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:39 Result: file '/usr/share/ca-certificates/mozilla/Actalis_Authentication_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:39 Test: check if we can access /usr/share/ca-certificates/mozilla/AffirmTrust_Commercial.crt (escaped: /usr/share/ca-certificates/mozilla/AffirmTrust_Commercial.crt) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /usr/share/ca-certificates/mozilla/AffirmTrust_Commercial.crt is readable (or directory accessible). +2021-01-07 17:56:39 Result: file '/usr/share/ca-certificates/mozilla/AffirmTrust_Commercial.crt' belongs to package (ca-certificates) +2021-01-07 17:56:39 Test: check if we can access /usr/share/ca-certificates/mozilla/AffirmTrust_Networking.crt (escaped: /usr/share/ca-certificates/mozilla/AffirmTrust_Networking.crt) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /usr/share/ca-certificates/mozilla/AffirmTrust_Networking.crt is readable (or directory accessible). +2021-01-07 17:56:39 Result: file '/usr/share/ca-certificates/mozilla/AffirmTrust_Networking.crt' belongs to package (ca-certificates) +2021-01-07 17:56:39 Test: check if we can access /usr/share/ca-certificates/mozilla/AffirmTrust_Premium.crt (escaped: /usr/share/ca-certificates/mozilla/AffirmTrust_Premium.crt) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /usr/share/ca-certificates/mozilla/AffirmTrust_Premium.crt is readable (or directory accessible). +2021-01-07 17:56:39 Result: file '/usr/share/ca-certificates/mozilla/AffirmTrust_Premium.crt' belongs to package (ca-certificates) +2021-01-07 17:56:39 Test: check if we can access /usr/share/ca-certificates/mozilla/AffirmTrust_Premium_ECC.crt (escaped: /usr/share/ca-certificates/mozilla/AffirmTrust_Premium_ECC.crt) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /usr/share/ca-certificates/mozilla/AffirmTrust_Premium_ECC.crt is readable (or directory accessible). +2021-01-07 17:56:39 Result: file '/usr/share/ca-certificates/mozilla/AffirmTrust_Premium_ECC.crt' belongs to package (ca-certificates) +2021-01-07 17:56:39 Test: check if we can access /usr/share/ca-certificates/mozilla/Amazon_Root_CA_1.crt (escaped: /usr/share/ca-certificates/mozilla/Amazon_Root_CA_1.crt) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /usr/share/ca-certificates/mozilla/Amazon_Root_CA_1.crt is readable (or directory accessible). +2021-01-07 17:56:39 Result: file '/usr/share/ca-certificates/mozilla/Amazon_Root_CA_1.crt' belongs to package (ca-certificates) +2021-01-07 17:56:39 Test: check if we can access /usr/share/ca-certificates/mozilla/Amazon_Root_CA_2.crt (escaped: /usr/share/ca-certificates/mozilla/Amazon_Root_CA_2.crt) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /usr/share/ca-certificates/mozilla/Amazon_Root_CA_2.crt is readable (or directory accessible). +2021-01-07 17:56:39 Result: file '/usr/share/ca-certificates/mozilla/Amazon_Root_CA_2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:39 Test: check if we can access /usr/share/ca-certificates/mozilla/Amazon_Root_CA_3.crt (escaped: /usr/share/ca-certificates/mozilla/Amazon_Root_CA_3.crt) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /usr/share/ca-certificates/mozilla/Amazon_Root_CA_3.crt is readable (or directory accessible). +2021-01-07 17:56:39 Result: file '/usr/share/ca-certificates/mozilla/Amazon_Root_CA_3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:39 Test: check if we can access /usr/share/ca-certificates/mozilla/Amazon_Root_CA_4.crt (escaped: /usr/share/ca-certificates/mozilla/Amazon_Root_CA_4.crt) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /usr/share/ca-certificates/mozilla/Amazon_Root_CA_4.crt is readable (or directory accessible). +2021-01-07 17:56:39 Result: file '/usr/share/ca-certificates/mozilla/Amazon_Root_CA_4.crt' belongs to package (ca-certificates) +2021-01-07 17:56:39 Test: check if we can access /usr/share/ca-certificates/mozilla/Atos_TrustedRoot_2011.crt (escaped: /usr/share/ca-certificates/mozilla/Atos_TrustedRoot_2011.crt) +2021-01-07 17:56:39 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:39 Result: file /usr/share/ca-certificates/mozilla/Atos_TrustedRoot_2011.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/Atos_TrustedRoot_2011.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.crt (escaped: /usr/share/ca-certificates/mozilla/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/Baltimore_CyberTrust_Root.crt (escaped: /usr/share/ca-certificates/mozilla/Baltimore_CyberTrust_Root.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/Baltimore_CyberTrust_Root.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/Baltimore_CyberTrust_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/Buypass_Class_2_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Buypass_Class_2_Root_CA.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/Buypass_Class_2_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/Buypass_Class_2_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/Buypass_Class_3_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Buypass_Class_3_Root_CA.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/Buypass_Class_3_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/Buypass_Class_3_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/CA_Disig_Root_R2.crt (escaped: /usr/share/ca-certificates/mozilla/CA_Disig_Root_R2.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/CA_Disig_Root_R2.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/CA_Disig_Root_R2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/CFCA_EV_ROOT.crt (escaped: /usr/share/ca-certificates/mozilla/CFCA_EV_ROOT.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/CFCA_EV_ROOT.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/CFCA_EV_ROOT.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/COMODO_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/COMODO_Certification_Authority.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/COMODO_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/COMODO_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/COMODO_ECC_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/COMODO_ECC_Certification_Authority.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/COMODO_ECC_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/COMODO_ECC_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/COMODO_RSA_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/COMODO_RSA_Certification_Authority.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/COMODO_RSA_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/COMODO_RSA_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/Certigna.crt (escaped: /usr/share/ca-certificates/mozilla/Certigna.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/Certigna.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/Certigna.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/Certigna_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Certigna_Root_CA.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/Certigna_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/Certigna_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA_2.crt (escaped: /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA_2.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA_2.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/Certum_Trusted_Network_CA_2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/Chambers_of_Commerce_Root_-_2008.crt (escaped: /usr/share/ca-certificates/mozilla/Chambers_of_Commerce_Root_-_2008.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/Chambers_of_Commerce_Root_-_2008.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/Chambers_of_Commerce_Root_-_2008.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/Comodo_AAA_Services_root.crt (escaped: /usr/share/ca-certificates/mozilla/Comodo_AAA_Services_root.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/Comodo_AAA_Services_root.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/Comodo_AAA_Services_root.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/Cybertrust_Global_Root.crt (escaped: /usr/share/ca-certificates/mozilla/Cybertrust_Global_Root.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/Cybertrust_Global_Root.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/Cybertrust_Global_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_2009.crt (escaped: /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_2009.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_2009.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_2009.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_EV_2009.crt (escaped: /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_EV_2009.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_EV_2009.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/D-TRUST_Root_Class_3_CA_2_EV_2009.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/DST_Root_CA_X3.crt (escaped: /usr/share/ca-certificates/mozilla/DST_Root_CA_X3.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/DST_Root_CA_X3.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/DST_Root_CA_X3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_CA.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G2.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G2.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G2.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G3.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G3.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G3.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Assured_ID_Root_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_CA.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:40 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Global_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:40 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G2.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G2.crt) +2021-01-07 17:56:40 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:40 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G2.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G3.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G3.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G3.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Global_Root_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_High_Assurance_EV_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_High_Assurance_EV_Root_CA.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/DigiCert_High_Assurance_EV_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_High_Assurance_EV_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/DigiCert_Trusted_Root_G4.crt (escaped: /usr/share/ca-certificates/mozilla/DigiCert_Trusted_Root_G4.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/DigiCert_Trusted_Root_G4.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/DigiCert_Trusted_Root_G4.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/E-Tugra_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/E-Tugra_Certification_Authority.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/E-Tugra_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/E-Tugra_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/EC-ACC.crt (escaped: /usr/share/ca-certificates/mozilla/EC-ACC.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/EC-ACC.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/EC-ACC.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/EE_Certification_Centre_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/EE_Certification_Centre_Root_CA.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/EE_Certification_Centre_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/EE_Certification_Centre_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust.net_Premium_2048_Secure_Server_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust.net_Premium_2048_Secure_Server_CA.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/Entrust.net_Premium_2048_Secure_Server_CA.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/Entrust.net_Premium_2048_Secure_Server_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_EC1.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_EC1.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_EC1.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_EC1.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G2.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G2.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G4.crt (escaped: /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G4.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G4.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/Entrust_Root_Certification_Authority_-_G4.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/GDCA_TrustAUTH_R5_ROOT.crt (escaped: /usr/share/ca-certificates/mozilla/GDCA_TrustAUTH_R5_ROOT.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/GDCA_TrustAUTH_R5_ROOT.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/GDCA_TrustAUTH_R5_ROOT.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/GTS_Root_R1.crt (escaped: /usr/share/ca-certificates/mozilla/GTS_Root_R1.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/GTS_Root_R1.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/GTS_Root_R1.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/GTS_Root_R2.crt (escaped: /usr/share/ca-certificates/mozilla/GTS_Root_R2.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/GTS_Root_R2.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/GTS_Root_R2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/GTS_Root_R3.crt (escaped: /usr/share/ca-certificates/mozilla/GTS_Root_R3.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/GTS_Root_R3.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/GTS_Root_R3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/GTS_Root_R4.crt (escaped: /usr/share/ca-certificates/mozilla/GTS_Root_R4.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/GTS_Root_R4.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/GTS_Root_R4.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/GeoTrust_Universal_CA_2.crt (escaped: /usr/share/ca-certificates/mozilla/GeoTrust_Universal_CA_2.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/GeoTrust_Universal_CA_2.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/GeoTrust_Universal_CA_2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R4.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R4.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R4.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R4.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R5.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R5.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R5.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_ECC_Root_CA_-_R5.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:41 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:41 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R2.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R2.crt) +2021-01-07 17:56:41 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:41 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R2.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R3.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R3.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R3.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R6.crt (escaped: /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R6.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R6.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/GlobalSign_Root_CA_-_R6.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/Global_Chambersign_Root_-_2008.crt (escaped: /usr/share/ca-certificates/mozilla/Global_Chambersign_Root_-_2008.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/Global_Chambersign_Root_-_2008.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/Global_Chambersign_Root_-_2008.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/Go_Daddy_Class_2_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Go_Daddy_Class_2_CA.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/Go_Daddy_Class_2_CA.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/Go_Daddy_Class_2_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/Go_Daddy_Root_Certificate_Authority_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Go_Daddy_Root_Certificate_Authority_-_G2.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/Go_Daddy_Root_Certificate_Authority_-_G2.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/Go_Daddy_Root_Certificate_Authority_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.crt (escaped: /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2011.crt (escaped: /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2011.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2011.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2011.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2015.crt (escaped: /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2015.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2015.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/Hellenic_Academic_and_Research_Institutions_RootCA_2015.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_1.crt (escaped: /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_1.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_1.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_1.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_3.crt (escaped: /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_3.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_3.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/Hongkong_Post_Root_CA_3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/ISRG_Root_X1.crt (escaped: /usr/share/ca-certificates/mozilla/ISRG_Root_X1.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/ISRG_Root_X1.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/ISRG_Root_X1.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/IdenTrust_Commercial_Root_CA_1.crt (escaped: /usr/share/ca-certificates/mozilla/IdenTrust_Commercial_Root_CA_1.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/IdenTrust_Commercial_Root_CA_1.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/IdenTrust_Commercial_Root_CA_1.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/IdenTrust_Public_Sector_Root_CA_1.crt (escaped: /usr/share/ca-certificates/mozilla/IdenTrust_Public_Sector_Root_CA_1.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/IdenTrust_Public_Sector_Root_CA_1.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/IdenTrust_Public_Sector_Root_CA_1.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/Izenpe.com.crt (escaped: /usr/share/ca-certificates/mozilla/Izenpe.com.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/Izenpe.com.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/Izenpe.com.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/LuxTrust_Global_Root_2.crt (escaped: /usr/share/ca-certificates/mozilla/LuxTrust_Global_Root_2.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/LuxTrust_Global_Root_2.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/LuxTrust_Global_Root_2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/Microsec_e-Szigno_Root_CA_2009.crt (escaped: /usr/share/ca-certificates/mozilla/Microsec_e-Szigno_Root_CA_2009.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/Microsec_e-Szigno_Root_CA_2009.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/Microsec_e-Szigno_Root_CA_2009.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/NetLock_Arany_=Class_Gold=_Főtanúsítvány.crt (escaped: /usr/share/ca-certificates/mozilla/NetLock_Arany_=Class_Gold=_Főtanúsítvány.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/NetLock_Arany_=Class_Gold=_Főtanúsítvány.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/NetLock_Arany_=Class_Gold=_Főtanúsítvány.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/Network_Solutions_Certificate_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/Network_Solutions_Certificate_Authority.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/Network_Solutions_Certificate_Authority.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/Network_Solutions_Certificate_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GA_CA.crt (escaped: /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GA_CA.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GA_CA.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GA_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GB_CA.crt (escaped: /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GB_CA.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GB_CA.crt is readable (or directory accessible). +2021-01-07 17:56:42 Result: file '/usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GB_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:42 Test: check if we can access /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GC_CA.crt (escaped: /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GC_CA.crt) +2021-01-07 17:56:42 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:42 Result: file /usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GC_CA.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/OISTE_WISeKey_Global_Root_GC_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_1_G3.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_1_G3.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_1_G3.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_1_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2_G3.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2_G3.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2_G3.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_2_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3_G3.crt (escaped: /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3_G3.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3_G3.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/QuoVadis_Root_CA_3_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_ECC.crt (escaped: /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_ECC.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_ECC.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_ECC.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_RSA_R2.crt (escaped: /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_RSA_R2.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_RSA_R2.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/SSL.com_EV_Root_Certification_Authority_RSA_R2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_ECC.crt (escaped: /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_ECC.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_ECC.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_ECC.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_RSA.crt (escaped: /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_RSA.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_RSA.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/SSL.com_Root_Certification_Authority_RSA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/SZAFIR_ROOT_CA2.crt (escaped: /usr/share/ca-certificates/mozilla/SZAFIR_ROOT_CA2.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/SZAFIR_ROOT_CA2.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/SZAFIR_ROOT_CA2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/SecureSign_RootCA11.crt (escaped: /usr/share/ca-certificates/mozilla/SecureSign_RootCA11.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/SecureSign_RootCA11.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/SecureSign_RootCA11.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/SecureTrust_CA.crt (escaped: /usr/share/ca-certificates/mozilla/SecureTrust_CA.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/SecureTrust_CA.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/SecureTrust_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/Secure_Global_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Secure_Global_CA.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/Secure_Global_CA.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/Secure_Global_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/Security_Communication_RootCA2.crt (escaped: /usr/share/ca-certificates/mozilla/Security_Communication_RootCA2.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/Security_Communication_RootCA2.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/Security_Communication_RootCA2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/Security_Communication_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Security_Communication_Root_CA.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/Security_Communication_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/Security_Communication_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/Sonera_Class_2_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Sonera_Class_2_Root_CA.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/Sonera_Class_2_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/Sonera_Class_2_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_EV_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_EV_Root_CA.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_EV_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_EV_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G2.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G2.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G3.crt (escaped: /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G3.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G3.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/Staat_der_Nederlanden_Root_CA_-_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/Starfield_Class_2_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Starfield_Class_2_CA.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/Starfield_Class_2_CA.crt is readable (or directory accessible). +2021-01-07 17:56:43 Result: file '/usr/share/ca-certificates/mozilla/Starfield_Class_2_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:43 Test: check if we can access /usr/share/ca-certificates/mozilla/Starfield_Root_Certificate_Authority_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Starfield_Root_Certificate_Authority_-_G2.crt) +2021-01-07 17:56:43 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:43 Result: file /usr/share/ca-certificates/mozilla/Starfield_Root_Certificate_Authority_-_G2.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/Starfield_Root_Certificate_Authority_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/Starfield_Services_Root_Certificate_Authority_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/Starfield_Services_Root_Certificate_Authority_-_G2.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/Starfield_Services_Root_Certificate_Authority_-_G2.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/Starfield_Services_Root_Certificate_Authority_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/SwissSign_Gold_CA_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/SwissSign_Gold_CA_-_G2.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/SwissSign_Gold_CA_-_G2.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/SwissSign_Gold_CA_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/SwissSign_Silver_CA_-_G2.crt (escaped: /usr/share/ca-certificates/mozilla/SwissSign_Silver_CA_-_G2.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/SwissSign_Silver_CA_-_G2.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/SwissSign_Silver_CA_-_G2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_2.crt (escaped: /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_2.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_2.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_3.crt (escaped: /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_3.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_3.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/T-TeleSec_GlobalRoot_Class_3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.crt (escaped: /usr/share/ca-certificates/mozilla/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/TUBITAK_Kamu_SM_SSL_Kok_Sertifikasi_-_Surum_1.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/TWCA_Global_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/TWCA_Global_Root_CA.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/TWCA_Global_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/TWCA_Global_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/TWCA_Root_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/TWCA_Root_Certification_Authority.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/TWCA_Root_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/TWCA_Root_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/Taiwan_GRCA.crt (escaped: /usr/share/ca-certificates/mozilla/Taiwan_GRCA.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/Taiwan_GRCA.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/Taiwan_GRCA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/TeliaSonera_Root_CA_v1.crt (escaped: /usr/share/ca-certificates/mozilla/TeliaSonera_Root_CA_v1.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/TeliaSonera_Root_CA_v1.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/TeliaSonera_Root_CA_v1.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/TrustCor_ECA-1.crt (escaped: /usr/share/ca-certificates/mozilla/TrustCor_ECA-1.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/TrustCor_ECA-1.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/TrustCor_ECA-1.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-1.crt (escaped: /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-1.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-1.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-1.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-2.crt (escaped: /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-2.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-2.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/TrustCor_RootCert_CA-2.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/Trustis_FPS_Root_CA.crt (escaped: /usr/share/ca-certificates/mozilla/Trustis_FPS_Root_CA.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/Trustis_FPS_Root_CA.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/Trustis_FPS_Root_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/UCA_Extended_Validation_Root.crt (escaped: /usr/share/ca-certificates/mozilla/UCA_Extended_Validation_Root.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/UCA_Extended_Validation_Root.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/UCA_Extended_Validation_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/UCA_Global_G2_Root.crt (escaped: /usr/share/ca-certificates/mozilla/UCA_Global_G2_Root.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/UCA_Global_G2_Root.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/UCA_Global_G2_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/USERTrust_ECC_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/USERTrust_ECC_Certification_Authority.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/USERTrust_ECC_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/USERTrust_ECC_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/USERTrust_RSA_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/USERTrust_RSA_Certification_Authority.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/USERTrust_RSA_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/USERTrust_RSA_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/Verisign_Class_3_Public_Primary_Certification_Authority_-_G3.crt (escaped: /usr/share/ca-certificates/mozilla/Verisign_Class_3_Public_Primary_Certification_Authority_-_G3.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/Verisign_Class_3_Public_Primary_Certification_Authority_-_G3.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/Verisign_Class_3_Public_Primary_Certification_Authority_-_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/XRamp_Global_CA_Root.crt (escaped: /usr/share/ca-certificates/mozilla/XRamp_Global_CA_Root.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/XRamp_Global_CA_Root.crt is readable (or directory accessible). +2021-01-07 17:56:44 Result: file '/usr/share/ca-certificates/mozilla/XRamp_Global_CA_Root.crt' belongs to package (ca-certificates) +2021-01-07 17:56:44 Test: check if we can access /usr/share/ca-certificates/mozilla/certSIGN_ROOT_CA.crt (escaped: /usr/share/ca-certificates/mozilla/certSIGN_ROOT_CA.crt) +2021-01-07 17:56:44 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:44 Result: file /usr/share/ca-certificates/mozilla/certSIGN_ROOT_CA.crt is readable (or directory accessible). +2021-01-07 17:56:45 Result: file '/usr/share/ca-certificates/mozilla/certSIGN_ROOT_CA.crt' belongs to package (ca-certificates) +2021-01-07 17:56:45 Test: check if we can access /usr/share/ca-certificates/mozilla/ePKI_Root_Certification_Authority.crt (escaped: /usr/share/ca-certificates/mozilla/ePKI_Root_Certification_Authority.crt) +2021-01-07 17:56:45 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:45 Result: file /usr/share/ca-certificates/mozilla/ePKI_Root_Certification_Authority.crt is readable (or directory accessible). +2021-01-07 17:56:45 Result: file '/usr/share/ca-certificates/mozilla/ePKI_Root_Certification_Authority.crt' belongs to package (ca-certificates) +2021-01-07 17:56:45 Test: check if we can access /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_C3.crt (escaped: /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_C3.crt) +2021-01-07 17:56:45 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:45 Result: file /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_C3.crt is readable (or directory accessible). +2021-01-07 17:56:45 Result: file '/usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_C3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:45 Test: check if we can access /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_G3.crt (escaped: /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_G3.crt) +2021-01-07 17:56:45 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:45 Result: file /usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_G3.crt is readable (or directory accessible). +2021-01-07 17:56:45 Result: file '/usr/share/ca-certificates/mozilla/emSign_ECC_Root_CA_-_G3.crt' belongs to package (ca-certificates) +2021-01-07 17:56:45 Test: check if we can access /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_C1.crt (escaped: /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_C1.crt) +2021-01-07 17:56:45 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:45 Result: file /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_C1.crt is readable (or directory accessible). +2021-01-07 17:56:45 Result: file '/usr/share/ca-certificates/mozilla/emSign_Root_CA_-_C1.crt' belongs to package (ca-certificates) +2021-01-07 17:56:45 Test: check if we can access /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_G1.crt (escaped: /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_G1.crt) +2021-01-07 17:56:45 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:45 Result: file /usr/share/ca-certificates/mozilla/emSign_Root_CA_-_G1.crt is readable (or directory accessible). +2021-01-07 17:56:45 Result: file '/usr/share/ca-certificates/mozilla/emSign_Root_CA_-_G1.crt' belongs to package (ca-certificates) +2021-01-07 17:56:45 Result: found 126 certificates in /usr/share/ca-certificates +2021-01-07 17:56:45 Test: check if we can access /usr/share/gnupg (escaped: /usr/share/gnupg) +2021-01-07 17:56:45 Result: file is owned by our current user ID (0), checking if it is readable +2021-01-07 17:56:45 Result: file /usr/share/gnupg is readable (or directory accessible). +2021-01-07 17:56:45 Result: found directory /usr/share/gnupg +2021-01-07 17:56:45 Result: found 0 certificates in /usr/share/gnupg +2021-01-07 17:56:45 Result: SSL path /var/www does not exist +2021-01-07 17:56:45 Result: SSL path /srv/www does not exist +2021-01-07 17:56:45 Result: found a total of 127 certificates +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID CRYP-7930 (Determine if system uses LUKS block device encryption) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test CRYP-7931 (Determine if system uses encrypted swap) +2021-01-07 17:56:45 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID CRYP-8002 (Gather available kernel entropy) +2021-01-07 17:56:45 Result: found kernel entropy value of 1700 +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID CRYP-8004 (Presence of hardware random number generators) +2021-01-07 17:56:45 Test: looking for /sys/class/misc/hw_random/rng_current +2021-01-07 17:56:45 Result: positive match, found RNG: virtio_rng.0 +2021-01-07 17:56:45 Performing pgrep scan without uid +2021-01-07 17:56:45 IsRunning: process 'rngd' not found +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID CRYP-8005 (Presence of software pseudo random number generators) +2021-01-07 17:56:45 Test: looking for software pseudo random number generators +2021-01-07 17:56:45 Performing pgrep scan without uid +2021-01-07 17:56:45 IsRunning: process 'audio-entropyd' not found +2021-01-07 17:56:45 Performing pgrep scan without uid +2021-01-07 17:56:45 IsRunning: process 'haveged' not found +2021-01-07 17:56:45 Performing pgrep scan without uid +2021-01-07 17:56:45 IsRunning: process 'jitterentropy-rngd' not found +2021-01-07 17:56:45 Security check: file is normal +2021-01-07 17:56:45 Checking permissions of /home/ktdw73/scans/lynis/include/tests_virtualization +2021-01-07 17:56:45 File permissions are OK +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Action: Performing tests from category: Virtualization +2021-01-07 17:56:45 Security check: file is normal +2021-01-07 17:56:45 Checking permissions of /home/ktdw73/scans/lynis/include/tests_containers +2021-01-07 17:56:45 File permissions are OK +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Action: Performing tests from category: Containers +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test CONT-8004 (Query running Solaris zones) +2021-01-07 17:56:45 Reason to skip: Incorrect guest OS (Solaris only) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID CONT-8102 (Checking Docker status and information) +2021-01-07 17:56:45 Performing pgrep scan without uid +2021-01-07 17:56:45 IsRunning: process 'dockerd' not found +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test CONT-8104 (Checking Docker info for any warnings) +2021-01-07 17:56:45 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test CONT-8106 (Gather basic stats from Docker) +2021-01-07 17:56:45 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test CONT-8107 (Check number of Docker containers) +2021-01-07 17:56:45 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test CONT-8108 (Check file permissions for Docker files) +2021-01-07 17:56:45 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:45 Security check: file is normal +2021-01-07 17:56:45 Checking permissions of /home/ktdw73/scans/lynis/include/tests_mac_frameworks +2021-01-07 17:56:45 File permissions are OK +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Action: Performing tests from category: Security frameworks +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID MACF-6204 (Check AppArmor presence) +2021-01-07 17:56:45 Result: aa-status binary not found, AppArmor not installed +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test MACF-6208 (Check if AppArmor is enabled) +2021-01-07 17:56:45 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID MACF-6232 (Check SELINUX presence) +2021-01-07 17:56:45 Test: checking if we have sestatus binary +2021-01-07 17:56:45 Result: sestatus binary NOT found +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test MACF-6234 (Check SELINUX status) +2021-01-07 17:56:45 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID MACF-6240 (Check TOMOYO Linux presence) +2021-01-07 17:56:45 Test: checking if we have tomoyo-init binary +2021-01-07 17:56:45 Result: tomoyo-init binary not found +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test MACF-6242 (Check TOMOYO Linux status) +2021-01-07 17:56:45 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID RBAC-6272 (Check grsecurity presence) +2021-01-07 17:56:45 Result: no grsecurity found in kernel config +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID MACF-6290 (Check for implemented MAC framework) +2021-01-07 17:56:45 Hardening: assigned partial number of hardening points (2 of 3). Currently having 188 points (out of 255) +2021-01-07 17:56:45 Result: found no implemented MAC framework +2021-01-07 17:56:45 Security check: file is normal +2021-01-07 17:56:45 Checking permissions of /home/ktdw73/scans/lynis/include/tests_file_integrity +2021-01-07 17:56:45 File permissions are OK +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Action: Performing tests from category: Software: file integrity +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID FINT-4310 (AFICK availability) +2021-01-07 17:56:45 Test: Checking AFICK binary +2021-01-07 17:56:45 Result: AFICK is not installed +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID FINT-4314 (AIDE availability) +2021-01-07 17:56:45 Test: Checking AIDE binary +2021-01-07 17:56:45 Result: AIDE is not installed +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test FINT-4315 (Check AIDE configuration file) +2021-01-07 17:56:45 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test FINT-4316 (Presence of AIDE database and size check) +2021-01-07 17:56:45 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID FINT-4318 (Osiris availability) +2021-01-07 17:56:45 Test: Checking Osiris binary +2021-01-07 17:56:45 Result: Osiris is not installed +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID FINT-4322 (Samhain availability) +2021-01-07 17:56:45 Test: Checking Samhain binary +2021-01-07 17:56:45 Result: Samhain is not installed +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID FINT-4326 (Tripwire availability) +2021-01-07 17:56:45 Test: Checking Tripwire binary +2021-01-07 17:56:45 Result: Tripwire is installed (/usr/sbin/tripwire) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID FINT-4328 (OSSEC syscheck daemon running) +2021-01-07 17:56:45 Test: Checking if OSSEC syscheck daemon is running +2021-01-07 17:56:45 Performing pgrep scan without uid +2021-01-07 17:56:45 IsRunning: process 'ossec-syscheckd' not found +2021-01-07 17:56:45 Result: syscheck (OSSEC) is not active +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID FINT-4330 (mtree availability) +2021-01-07 17:56:45 Test: Checking mtree binary +2021-01-07 17:56:45 Result: mtree is not installed +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test FINT-4334 (Check lfd daemon status) +2021-01-07 17:56:45 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test FINT-4336 (Check lfd configuration status) +2021-01-07 17:56:45 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID FINT-4338 (osqueryd syscheck daemon running) +2021-01-07 17:56:45 Test: Checking if osqueryd syscheck daemon is running +2021-01-07 17:56:45 Performing pgrep scan without uid +2021-01-07 17:56:45 IsRunning: process 'osqueryd' not found +2021-01-07 17:56:45 Result: syscheck (osquery) not installed +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test FINT-4339 (Check IMA/EVM status) +2021-01-07 17:56:45 Reason to skip: No evmctl binary found +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test FINT-4340 (Check dm-integrity status) +2021-01-07 17:56:45 Reason to skip: No integritysetup binary found +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test FINT-4341 (Check dm-verity status) +2021-01-07 17:56:45 Reason to skip: No veritysetup binary found +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Skipped test FINT-4402 (AIDE configuration: Checksums (SHA256 or SHA512)) +2021-01-07 17:56:45 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID FINT-4350 (File integrity software installed) +2021-01-07 17:56:45 Test: Check if at least on file integrity tool is available/installed +2021-01-07 17:56:45 Result: found at least one file integrity tool +2021-01-07 17:56:45 Hardening: assigned maximum number of hardening points for this item (5). Currently having 193 points (out of 260) +2021-01-07 17:56:45 Security check: file is normal +2021-01-07 17:56:45 Checking permissions of /home/ktdw73/scans/lynis/include/tests_tooling +2021-01-07 17:56:45 File permissions are OK +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Action: Performing tests from category: Software: System tooling +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID TOOL-5002 (Checking for automation tools) +2021-01-07 17:56:45 Test: checking if directory /root/.ansible exists +2021-01-07 17:56:45 Result: directory /root/.ansible NOT found +2021-01-07 17:56:45 Test: checking if directory /etc/ansible exists +2021-01-07 17:56:45 Result: directory /etc/ansible NOT found +2021-01-07 17:56:45 Test: checking if directory /root/.ansible exists +2021-01-07 17:56:45 Result: directory /root/.ansible NOT found +2021-01-07 17:56:45 Test: checking if directory /tmp/.ansible exists +2021-01-07 17:56:45 Result: directory /tmp/.ansible NOT found +2021-01-07 17:56:45 Test: checking if file /var/log/ansible.log exists +2021-01-07 17:56:45 Result: file /var/log/ansible.log NOT found +2021-01-07 17:56:45 Test: checking if file ~/.ansible-retry exists +2021-01-07 17:56:45 Result: file ~/.ansible-retry NOT found +2021-01-07 17:56:45 Performing pgrep scan without uid +2021-01-07 17:56:45 IsRunning: process 'puppet master' not found +2021-01-07 17:56:45 Suggestion: Determine if automation tools are present for system management [test:TOOL-5002] [details:-] [solution:-] +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID TOOL-5102 (Check for presence of Fail2ban) +2021-01-07 17:56:45 Result: Fail2ban is installed (/usr/bin/fail2ban-server) +2021-01-07 17:56:45 Checking Fail2ban configuration file +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID TOOL-5104 (Enabled tests in Fail2ban) +2021-01-07 17:56:45 Result: service 'sshd' enabled +2021-01-07 17:56:45 Result: found at least one enabled jail +2021-01-07 17:56:45 Hardening: assigned maximum number of hardening points for this item (3). Currently having 196 points (out of 263) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID TOOL-5120 (Check for presence of Snort) +2021-01-07 17:56:45 Performing pgrep scan without uid +2021-01-07 17:56:45 IsRunning: process 'snort' not found +2021-01-07 17:56:45 Result: Snort not present (Snort not running) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID TOOL-5122 (Check Snort configuration file) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID TOOL-5130 (Check for active Suricata daemon) +2021-01-07 17:56:45 Result: Suricata not installed (suricata not found) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID TOOL-5126 (Check for active OSSEC daemon) +2021-01-07 17:56:45 Performing pgrep scan without uid +2021-01-07 17:56:45 IsRunning: process 'ossec-analysisd' not found +2021-01-07 17:56:45 Result: OSSEC analysis daemon not active +2021-01-07 17:56:45 Performing pgrep scan without uid +2021-01-07 17:56:45 IsRunning: process 'ossec-agentd' not found +2021-01-07 17:56:45 Result: OSSEC agent daemon not active +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID TOOL-5190 (Check presence of IDS/IPS tool) +2021-01-07 17:56:45 Hardening: assigned maximum number of hardening points for this item (2). Currently having 198 points (out of 265) +2021-01-07 17:56:45 Security check: file is normal +2021-01-07 17:56:45 Checking permissions of /home/ktdw73/scans/lynis/include/tests_malware +2021-01-07 17:56:45 File permissions are OK +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Action: Performing tests from category: Software: Malware +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID MALW-3275 (Check for chkrootkit) +2021-01-07 17:56:45 Test: checking presence chkrootkit +2021-01-07 17:56:45 Result: Found /usr/sbin/chkrootkit +2021-01-07 17:56:45 Hardening: assigned maximum number of hardening points for this item (2). Currently having 200 points (out of 267) +2021-01-07 17:56:45 ==== +2021-01-07 17:56:45 Performing test ID MALW-3276 (Check for Rootkit Hunter) +2021-01-07 17:56:45 Test: checking presence Rootkit Hunter +2021-01-07 17:56:45 Result: Found /usr/bin/rkhunter +2021-01-07 17:56:46 Hardening: assigned maximum number of hardening points for this item (2). Currently having 202 points (out of 269) +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Performing test ID MALW-3278 (Check for LMD) +2021-01-07 17:56:46 Test: checking presence LMD +2021-01-07 17:56:46 Result: LMD not found +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Performing test ID MALW-3280 (Check if anti-virus tool is installed) +2021-01-07 17:56:46 Test: checking process com.avast.daemon +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'com.avast.daemon' not found +2021-01-07 17:56:46 Test: checking process Avira daemon +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'avqmd' not found +2021-01-07 17:56:46 Test: checking process epagd +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'bdagentd' not found +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'epagd' not found +2021-01-07 17:56:46 Test: checking process falcon-sensor (CrowdStrike) +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'falcon-sensor' not found +2021-01-07 17:56:46 Test: checking process CylanceSvc +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'CylanceSvc' not found +2021-01-07 17:56:46 Test: checking process esets_daemon +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'esets_daemon' not found +2021-01-07 17:56:46 Test: checking process wdserver or klnagent (Kaspersky) +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'klnagent' not found +2021-01-07 17:56:46 Test: checking process cma or cmdagent (McAfee) +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'cmdagent' not found +2021-01-07 17:56:46 Test: checking process savscand +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'savscand' not found +2021-01-07 17:56:46 Test: checking process SophosScanD +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'SophosScanD' not found +2021-01-07 17:56:46 Test: checking process rtvscand +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'rtvscand' not found +2021-01-07 17:56:46 Test: checking process Symantec management client service +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'smcd' not found +2021-01-07 17:56:46 Test: checking process Symantec Endpoint Protection configuration service +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'symcfgd' not found +2021-01-07 17:56:46 Test: checking process synoavd +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'synoavd' not found +2021-01-07 17:56:46 Test: checking process TmccMac to test for Trend Micro anti-virus (macOS) +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'TmccMac' not found +2021-01-07 17:56:46 Result: no commercial anti-virus tools found +2021-01-07 17:56:46 Hardening: assigned partial number of hardening points (0 of 3). Currently having 202 points (out of 272) +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Performing test ID MALW-3282 (Check for clamscan) +2021-01-07 17:56:46 Test: checking presence clamscan +2021-01-07 17:56:46 Result: clamscan couldn't be found +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Performing test ID MALW-3284 (Check for clamd) +2021-01-07 17:56:46 Test: checking running ClamAV daemon (clamd) +2021-01-07 17:56:46 Performing pgrep scan without uid +2021-01-07 17:56:46 IsRunning: process 'clamd' not found +2021-01-07 17:56:46 Result: clamd not running +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Skipped test MALW-3286 (Check for freshclam) +2021-01-07 17:56:46 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Skipped test MALW-3288 (Check for ClamXav) +2021-01-07 17:56:46 Reason to skip: Prerequisites not met (ie missing tool, other type of Linux distribution) +2021-01-07 17:56:46 Security check: file is normal +2021-01-07 17:56:46 Checking permissions of /home/ktdw73/scans/lynis/include/tests_file_permissions +2021-01-07 17:56:46 File permissions are OK +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Action: Performing tests from category: File Permissions +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Performing test ID FILE-7524 (Perform file permissions check) +2021-01-07 17:56:46 Test: Checking file permissions +2021-01-07 17:56:46 Using profile /home/ktdw73/scans/lynis/default.prf for baseline. +2021-01-07 17:56:46 Test: checking file/directory /boot/grub/grub.cfg +2021-01-07 17:56:46 Test: checking if file /boot/grub/grub.cfg has the permissions set to 600 or more restrictive +2021-01-07 17:56:46 Outcome: correct permissions (600) +2021-01-07 17:56:46 Test: checking file/directory /boot/grub2/grub.cfg +2021-01-07 17:56:46 Skipping file/directory /boot/grub2/grub.cfg as it does not exist on this system +2021-01-07 17:56:46 Test: checking file/directory /boot/grub2/user.cfg +2021-01-07 17:56:46 Skipping file/directory /boot/grub2/user.cfg as it does not exist on this system +2021-01-07 17:56:46 Test: checking file/directory /etc/at.allow +2021-01-07 17:56:46 Skipping file/directory /etc/at.allow as it does not exist on this system +2021-01-07 17:56:46 Test: checking file/directory /etc/at.deny +2021-01-07 17:56:46 Skipping file/directory /etc/at.deny as it does not exist on this system +2021-01-07 17:56:46 Test: checking file/directory /etc/cron.allow +2021-01-07 17:56:46 Test: checking if file /etc/cron.allow has the permissions set to 600 or more restrictive +2021-01-07 17:56:46 Outcome: correct permissions (600) +2021-01-07 17:56:46 Test: checking file/directory /etc/cron.deny +2021-01-07 17:56:46 Test: checking if file /etc/cron.deny has the permissions set to 600 or more restrictive +2021-01-07 17:56:46 Outcome: permissions of file /etc/cron.deny are not matching expected value (644 != rw-------) +2021-01-07 17:56:46 Test: checking file/directory /etc/crontab +2021-01-07 17:56:46 Test: checking if file /etc/crontab has the permissions set to 600 or more restrictive +2021-01-07 17:56:46 Outcome: permissions of file /etc/crontab are not matching expected value (644 != rw-------) +2021-01-07 17:56:46 Test: checking file/directory /etc/group +2021-01-07 17:56:46 Test: checking if file /etc/group has the permissions set to 644 or more restrictive +2021-01-07 17:56:46 Outcome: correct permissions (644) +2021-01-07 17:56:46 Test: checking file/directory /etc/group- +2021-01-07 17:56:46 Test: checking if file /etc/group- has the permissions set to 644 or more restrictive +2021-01-07 17:56:46 Outcome: correct permissions (600) +2021-01-07 17:56:46 Test: checking file/directory /etc/hosts.allow +2021-01-07 17:56:46 Test: checking if file /etc/hosts.allow has the permissions set to 644 or more restrictive +2021-01-07 17:56:46 Outcome: correct permissions (644) +2021-01-07 17:56:46 Test: checking file/directory /etc/hosts.deny +2021-01-07 17:56:46 Test: checking if file /etc/hosts.deny has the permissions set to 644 or more restrictive +2021-01-07 17:56:46 Outcome: correct permissions (644) +2021-01-07 17:56:46 Test: checking file/directory /etc/issue +2021-01-07 17:56:46 Test: checking if file /etc/issue has the permissions set to 644 or more restrictive +2021-01-07 17:56:46 Outcome: correct permissions (644) +2021-01-07 17:56:46 Test: checking file/directory /etc/issue.net +2021-01-07 17:56:46 Test: checking if file /etc/issue.net has the permissions set to 644 or more restrictive +2021-01-07 17:56:46 Outcome: correct permissions (644) +2021-01-07 17:56:46 Test: checking file/directory /etc/lilo.conf +2021-01-07 17:56:46 Skipping file/directory /etc/lilo.conf as it does not exist on this system +2021-01-07 17:56:46 Test: checking file/directory /etc/motd +2021-01-07 17:56:46 Test: checking if file /etc/motd has the permissions set to 644 or more restrictive +2021-01-07 17:56:46 Outcome: correct permissions (644) +2021-01-07 17:56:46 Test: checking file/directory /etc/passwd +2021-01-07 17:56:46 Test: checking if file /etc/passwd has the permissions set to 644 or more restrictive +2021-01-07 17:56:46 Outcome: correct permissions (644) +2021-01-07 17:56:46 Test: checking file/directory /etc/passwd- +2021-01-07 17:56:46 Test: checking if file /etc/passwd- has the permissions set to 644 or more restrictive +2021-01-07 17:56:46 Outcome: correct permissions (600) +2021-01-07 17:56:46 Test: checking file/directory /etc/ssh/sshd_config +2021-01-07 17:56:46 Test: checking if file /etc/ssh/sshd_config has the permissions set to 600 or more restrictive +2021-01-07 17:56:46 Outcome: permissions of file /etc/ssh/sshd_config are not matching expected value (644 != rw-------) +2021-01-07 17:56:46 Test: checking file/directory /etc/hosts.equiv +2021-01-07 17:56:46 Skipping file/directory /etc/hosts.equiv as it does not exist on this system +2021-01-07 17:56:46 Test: checking file/directory /etc/shosts.equiv +2021-01-07 17:56:46 Skipping file/directory /etc/shosts.equiv as it does not exist on this system +2021-01-07 17:56:46 Test: checking file/directory /root/.rhosts +2021-01-07 17:56:46 Skipping file/directory /root/.rhosts as it does not exist on this system +2021-01-07 17:56:46 Test: checking file/directory /root/.rlogin +2021-01-07 17:56:46 Skipping file/directory /root/.rlogin as it does not exist on this system +2021-01-07 17:56:46 Test: checking file/directory /root/.shosts +2021-01-07 17:56:46 Skipping file/directory /root/.shosts as it does not exist on this system +2021-01-07 17:56:46 Test: checking file/directory /root/.ssh +2021-01-07 17:56:46 Skipping file/directory /root/.ssh as it does not exist on this system +2021-01-07 17:56:46 Test: checking file/directory /etc/cron.d +2021-01-07 17:56:46 Test: checking if file /etc/cron.d has the permissions set to 700 or more restrictive +2021-01-07 17:56:46 Outcome: permissions of file /etc/cron.d are not matching expected value (755 != rwx------) +2021-01-07 17:56:46 Test: checking file/directory /etc/cron.daily +2021-01-07 17:56:46 Test: checking if file /etc/cron.daily has the permissions set to 700 or more restrictive +2021-01-07 17:56:46 Outcome: permissions of file /etc/cron.daily are not matching expected value (755 != rwx------) +2021-01-07 17:56:46 Test: checking file/directory /etc/cron.hourly +2021-01-07 17:56:46 Test: checking if file /etc/cron.hourly has the permissions set to 700 or more restrictive +2021-01-07 17:56:46 Outcome: permissions of file /etc/cron.hourly are not matching expected value (755 != rwx------) +2021-01-07 17:56:46 Test: checking file/directory /etc/cron.weekly +2021-01-07 17:56:46 Test: checking if file /etc/cron.weekly has the permissions set to 700 or more restrictive +2021-01-07 17:56:46 Outcome: permissions of file /etc/cron.weekly are not matching expected value (755 != rwx------) +2021-01-07 17:56:46 Test: checking file/directory /etc/cron.monthly +2021-01-07 17:56:46 Test: checking if file /etc/cron.monthly has the permissions set to 700 or more restrictive +2021-01-07 17:56:46 Outcome: permissions of file /etc/cron.monthly are not matching expected value (755 != rwx------) +2021-01-07 17:56:46 Suggestion: Consider restricting file permissions [test:FILE-7524] [details:See screen output or log file] [solution:text:Use chmod to change file permissions] +2021-01-07 17:56:46 Security check: file is normal +2021-01-07 17:56:46 Checking permissions of /home/ktdw73/scans/lynis/include/tests_homedirs +2021-01-07 17:56:46 File permissions are OK +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Action: Performing tests from category: Home directories +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Performing test ID HOME-9302 (Create list with home directories) +2021-01-07 17:56:46 Test: query /etc/passwd to obtain home directories +2021-01-07 17:56:46 Result: found home directory: /bin (directory exists) +2021-01-07 17:56:46 Result: found home directory: /dev (directory exists) +2021-01-07 17:56:46 Result: found home directory: /home/Tobias (directory exists) +2021-01-07 17:56:46 Result: found home directory: /home/ftpuser (directory exists) +2021-01-07 17:56:46 Result: found home directory: /home/ktdw73 (directory exists) +2021-01-07 17:56:46 Result: found home directory: /home/ntp (directory does not exist) +2021-01-07 17:56:46 Result: found home directory: /nonexistent (directory does not exist) +2021-01-07 17:56:46 Result: found home directory: /root (directory exists) +2021-01-07 17:56:46 Result: found home directory: /run/sshd (directory exists) +2021-01-07 17:56:46 Result: found home directory: /run/systemd (directory exists) +2021-01-07 17:56:46 Result: found home directory: /run/systemd/netif (directory exists) +2021-01-07 17:56:46 Result: found home directory: /run/systemd/resolve (directory does not exist) +2021-01-07 17:56:46 Result: found home directory: /run/uuidd (directory exists) +2021-01-07 17:56:46 Result: found home directory: /usr/games (directory exists) +2021-01-07 17:56:46 Result: found home directory: /usr/sbin (directory exists) +2021-01-07 17:56:46 Result: found home directory: /var/backups (directory exists) +2021-01-07 17:56:46 Result: found home directory: /var/cache/man (directory exists) +2021-01-07 17:56:46 Result: found home directory: /var/lib/gnats (directory does not exist) +2021-01-07 17:56:46 Result: found home directory: /var/lib/sendmail (directory exists) +2021-01-07 17:56:46 Result: found home directory: /var/list (directory does not exist) +2021-01-07 17:56:46 Result: found home directory: /var/mail (directory exists) +2021-01-07 17:56:46 Result: found home directory: /var/run/ircd (directory does not exist) +2021-01-07 17:56:46 Result: found home directory: /var/spool/lpd (directory does not exist) +2021-01-07 17:56:46 Result: found home directory: /var/spool/news (directory does not exist) +2021-01-07 17:56:46 Result: found home directory: /var/spool/uucp (directory does not exist) +2021-01-07 17:56:46 Result: found home directory: /var/www (directory does not exist) +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Performing test ID HOME-9304 (Check if users' home directories permissions are 750 or more restrictive) +2021-01-07 17:56:46 Test: checking directory '/home/Tobias' for user 'Tobias' +2021-01-07 17:56:46 Result: permissions of home directory /home/Tobias of user Tobias are not strict enough. Should be 750 or more restrictive. Change with: chmod 750 /home/Tobias +2021-01-07 17:56:46 Test: checking directory '/home/ktdw73' for user 'ktdw73' +2021-01-07 17:56:46 Result: permissions of home directory /home/ktdw73 of user ktdw73 are not strict enough. Should be 750 or more restrictive. Change with: chmod 750 /home/ktdw73 +2021-01-07 17:56:46 Test: checking directory '/home/ftpuser' for user 'ftpuser' +2021-01-07 17:56:46 Result: permissions of home directory /home/ftpuser of user ftpuser are not strict enough. Should be 750 or more restrictive. Change with: chmod 750 /home/ftpuser +2021-01-07 17:56:46 Suggestion: Double check the permissions of home directories as some might be not strict enough. [test:HOME-9304] [details:-] [solution:-] +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Performing test ID HOME-9306 (Check if users own their home directories) +2021-01-07 17:56:46 Test: checking directory '/home/Tobias' for user 'Tobias' +2021-01-07 17:56:46 Result: ownership of home directory /home/Tobias for user Tobias looks to be correct +2021-01-07 17:56:46 Test: checking directory '/home/ktdw73' for user 'ktdw73' +2021-01-07 17:56:46 Result: ownership of home directory /home/ktdw73 for user ktdw73 looks to be correct +2021-01-07 17:56:46 Test: checking directory '/home/ftpuser' for user 'ftpuser' +2021-01-07 17:56:46 Result: ownership of home directory /home/ftpuser for user ftpuser looks to be correct +2021-01-07 17:56:46 Result: OK, all users own their home directories +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Performing test ID HOME-9310 (Checking for suspicious shell history files) +2021-01-07 17:56:46 Result: Ok, history files are type 'file'. +2021-01-07 17:56:46 Remark: History files are normally of the type 'file'. Symbolic links and other types are suspicious. +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Performing test ID HOME-9350 (Collecting information from home directories) +2021-01-07 17:56:46 Result: IGNORE_HOME_DIRS empty, no paths excluded +2021-01-07 17:56:46 Security check: file is normal +2021-01-07 17:56:46 Checking permissions of /home/ktdw73/scans/lynis/include/tests_kernel_hardening +2021-01-07 17:56:46 File permissions are OK +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Action: Performing tests from category: Kernel Hardening +2021-01-07 17:56:46 ==== +2021-01-07 17:56:46 Performing test ID KRNL-6000 (Check sysctl key pairs in scan profile) +2021-01-07 17:56:46 Result: sysctl key dev.tty.ldisc_autoload has a different value than expected in scan profile. Expected=0, Real=1 +2021-01-07 17:56:46 Hardening: assigned partial number of hardening points (0 of 1). Currently having 202 points (out of 273) +2021-01-07 17:56:46 Result: sysctl key fs.protected_fifos has a different value than expected in scan profile. Expected=2, Real=0 +2021-01-07 17:56:46 Hardening: assigned partial number of hardening points (0 of 1). Currently having 202 points (out of 274) +2021-01-07 17:56:46 Result: sysctl key fs.protected_hardlinks contains equal expected and current value (1) +2021-01-07 17:56:46 Hardening: assigned maximum number of hardening points for this item (1). Currently having 203 points (out of 275) +2021-01-07 17:56:46 Result: sysctl key fs.protected_regular has a different value than expected in scan profile. Expected=2, Real=0 +2021-01-07 17:56:46 Hardening: assigned partial number of hardening points (0 of 1). Currently having 203 points (out of 276) +2021-01-07 17:56:46 Result: sysctl key fs.protected_symlinks contains equal expected and current value (1) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 204 points (out of 277) +2021-01-07 17:56:47 Result: sysctl key fs.suid_dumpable contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 205 points (out of 278) +2021-01-07 17:56:47 Result: key hw.kbd.keymap_restrict_change does not exist on this machine +2021-01-07 17:56:47 Result: key kern.sugid_coredump does not exist on this machine +2021-01-07 17:56:47 Result: key kernel.core_setuid_ok does not exist on this machine +2021-01-07 17:56:47 Result: sysctl key kernel.core_uses_pid contains equal expected and current value (1) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 206 points (out of 279) +2021-01-07 17:56:47 Result: sysctl key kernel.ctrl-alt-del contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 207 points (out of 280) +2021-01-07 17:56:47 Result: sysctl key kernel.dmesg_restrict contains equal expected and current value (1) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 208 points (out of 281) +2021-01-07 17:56:47 Result: key kernel.exec-shield-randomize does not exist on this machine +2021-01-07 17:56:47 Result: key kernel.exec-shield does not exist on this machine +2021-01-07 17:56:47 Result: sysctl key kernel.kptr_restrict contains equal expected and current value (2) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 209 points (out of 282) +2021-01-07 17:56:47 Result: key kernel.maps_protect does not exist on this machine +2021-01-07 17:56:47 Result: sysctl key kernel.modules_disabled has a different value than expected in scan profile. Expected=1, Real=0 +2021-01-07 17:56:47 Hardening: assigned partial number of hardening points (0 of 1). Currently having 209 points (out of 283) +2021-01-07 17:56:47 Result: sysctl key kernel.perf_event_paranoid contains equal expected and current value (3) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 210 points (out of 284) +2021-01-07 17:56:47 Result: sysctl key kernel.randomize_va_space contains equal expected and current value (2) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 211 points (out of 285) +2021-01-07 17:56:47 Result: key kernel.suid_dumpable does not exist on this machine +2021-01-07 17:56:47 Result: sysctl key kernel.sysrq contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 212 points (out of 286) +2021-01-07 17:56:47 Result: sysctl key kernel.unprivileged_bpf_disabled has a different value than expected in scan profile. Expected=1, Real=0 +2021-01-07 17:56:47 Hardening: assigned partial number of hardening points (0 of 1). Currently having 212 points (out of 287) +2021-01-07 17:56:47 Result: key kernel.use-nx does not exist on this machine +2021-01-07 17:56:47 Result: sysctl key kernel.yama.ptrace_scope has a different value than expected in scan profile. Expected=1 2 3, Real=0 +2021-01-07 17:56:47 Hardening: assigned partial number of hardening points (0 of 1). Currently having 212 points (out of 288) +2021-01-07 17:56:47 Result: sysctl key net.core.bpf_jit_harden has a different value than expected in scan profile. Expected=2, Real=0 +2021-01-07 17:56:47 Hardening: assigned partial number of hardening points (0 of 1). Currently having 212 points (out of 289) +2021-01-07 17:56:47 Result: key net.inet.icmp.bmcastecho does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.icmp.drop_redirect does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.icmp.rediraccept does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.icmp.timestamp does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.ip.accept_sourceroute does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.ip.check_interface does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.ip.forwarding does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.ip.linklocal.in.allowbadttl does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.ip.process_options does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.ip.random_id does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.ip.redirect does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.ip.sourceroute does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.ip6.redirect does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.tcp.always_keepalive does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.tcp.blackhole does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.tcp.drop_synfin does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.tcp.icmp_may_rst does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.tcp.nolocaltimewait does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.tcp.path_mtu_discovery does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet.udp.blackhole does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet6.icmp6.rediraccept does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet6.ip6.forwarding does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet6.ip6.fw.enable does not exist on this machine +2021-01-07 17:56:47 Result: key net.inet6.ip6.redirect does not exist on this machine +2021-01-07 17:56:47 Result: sysctl key net.ipv4.conf.all.accept_redirects contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 213 points (out of 290) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.conf.all.accept_source_route contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 214 points (out of 291) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.conf.all.bootp_relay contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 215 points (out of 292) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.conf.all.forwarding contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 216 points (out of 293) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.conf.all.log_martians contains equal expected and current value (1) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 217 points (out of 294) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.conf.all.mc_forwarding contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 218 points (out of 295) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.conf.all.proxy_arp contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 219 points (out of 296) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.conf.all.rp_filter contains equal expected and current value (1) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 220 points (out of 297) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.conf.all.send_redirects contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 221 points (out of 298) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.conf.default.accept_redirects contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 222 points (out of 299) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.conf.default.accept_source_route contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 223 points (out of 300) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.conf.default.log_martians contains equal expected and current value (1) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 224 points (out of 301) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.icmp_echo_ignore_broadcasts contains equal expected and current value (1) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 225 points (out of 302) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.icmp_ignore_bogus_error_responses contains equal expected and current value (1) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 226 points (out of 303) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.tcp_syncookies contains equal expected and current value (1) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 227 points (out of 304) +2021-01-07 17:56:47 Result: sysctl key net.ipv4.tcp_timestamps contains equal expected and current value (0 1) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 228 points (out of 305) +2021-01-07 17:56:47 Result: sysctl key net.ipv6.conf.all.accept_redirects contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 229 points (out of 306) +2021-01-07 17:56:47 Result: sysctl key net.ipv6.conf.all.accept_source_route contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 230 points (out of 307) +2021-01-07 17:56:47 Result: key net.ipv6.conf.all.send_redirects does not exist on this machine +2021-01-07 17:56:47 Result: sysctl key net.ipv6.conf.default.accept_redirects contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 231 points (out of 308) +2021-01-07 17:56:47 Result: sysctl key net.ipv6.conf.default.accept_source_route contains equal expected and current value (0) +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (1). Currently having 232 points (out of 309) +2021-01-07 17:56:47 Result: key security.bsd.hardlink_check_gid does not exist on this machine +2021-01-07 17:56:47 Result: key security.bsd.hardlink_check_uid does not exist on this machine +2021-01-07 17:56:47 Result: key security.bsd.see_other_gids does not exist on this machine +2021-01-07 17:56:47 Result: key security.bsd.see_other_uids does not exist on this machine +2021-01-07 17:56:47 Result: key security.bsd.stack_guard_page does not exist on this machine +2021-01-07 17:56:47 Result: key security.bsd.unprivileged_proc_debug does not exist on this machine +2021-01-07 17:56:47 Result: key security.bsd.unprivileged_read_msgbuf does not exist on this machine +2021-01-07 17:56:47 Result: found 7 keys that can use tuning, according scan profile +2021-01-07 17:56:47 Suggestion: One or more sysctl values differ from the scan profile and could be tweaked [test:KRNL-6000] [details:] [solution:Change sysctl value or disable test (skip-test=KRNL-6000:)] +2021-01-07 17:56:47 Security check: file is normal +2021-01-07 17:56:47 Checking permissions of /home/ktdw73/scans/lynis/include/tests_hardening +2021-01-07 17:56:47 File permissions are OK +2021-01-07 17:56:47 ==== +2021-01-07 17:56:47 Action: Performing tests from category: Hardening +2021-01-07 17:56:47 ==== +2021-01-07 17:56:47 Performing test ID HRDN-7220 (Check if one or more compilers are installed) +2021-01-07 17:56:47 Test: Check if one or more compilers can be found on the system +2021-01-07 17:56:47 Result: found installed compiler. See top of logfile which compilers have been found or use /bin/grep to filter on 'compiler' +2021-01-07 17:56:47 Hardening: assigned partial number of hardening points (1 of 3). Currently having 233 points (out of 312) +2021-01-07 17:56:47 ==== +2021-01-07 17:56:47 Performing test ID HRDN-7222 (Check compiler permissions) +2021-01-07 17:56:47 Test: Check if one or more compilers can be found on the system +2021-01-07 17:56:47 Test: Check file permissions for /usr/bin/as +2021-01-07 17:56:47 Action: checking symlink for file /usr/bin/as +2021-01-07 17:56:47 Note: Using real readlink binary to determine symlink on /usr/bin/as +2021-01-07 17:56:47 Result: readlink shows /usr/bin/x86_64-linux-gnu-as as output +2021-01-07 17:56:47 Result: symlink found, pointing to file /usr/bin/x86_64-linux-gnu-as +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (3). Currently having 236 points (out of 315) +2021-01-07 17:56:47 ==== +2021-01-07 17:56:47 Performing test ID HRDN-7230 (Check for malware scanner) +2021-01-07 17:56:47 Test: Check if a malware scanner is installed +2021-01-07 17:56:47 Result: found at least one malware scanner +2021-01-07 17:56:47 Hardening: assigned maximum number of hardening points for this item (3). Currently having 239 points (out of 318) +2021-01-07 17:56:47 ==== +2021-01-07 17:56:47 Performing test ID HRDN-7231 (Check for registered non-native binary formats) +2021-01-07 17:56:47 Test: Check for registered non-native binary formats +2021-01-07 17:56:47 Result: no non-native binary formats found +2021-01-07 17:56:47 ==== +2021-01-07 17:56:47 Action: Performing tests from category: Custom tests +2021-01-07 17:56:47 Test: Checking for tests_custom file +2021-01-07 17:56:47 ==== +2021-01-07 17:56:47 Action: Performing plugin tests +2021-01-07 17:56:47 Result: Found 2 plugins of which 2 are enabled +2021-01-07 17:56:47 Result: Plugins phase 2 finished +2021-01-07 17:56:47 Checking permissions of /home/ktdw73/scans/lynis/include/report +2021-01-07 17:56:47 File permissions are OK +2021-01-07 17:56:47 Hardening index : [75] [############### ] +2021-01-07 17:56:47 Hardening strength: System has been hardened, but could use additional hardening +2021-01-07 17:56:47 ==== +2021-01-07 17:56:48 Checking permissions of /home/ktdw73/scans/lynis/include/tool_tips +2021-01-07 17:56:48 File permissions are OK +2021-01-07 17:56:48 Tool tips: enabled +2021-01-07 17:56:48 ================================================================================ +2021-01-07 17:56:48 Tests performed: 260 +2021-01-07 17:56:48 Total tests: 455 +2021-01-07 17:56:48 Active plugins: 2 +2021-01-07 17:56:48 Total plugins: 2 +2021-01-07 17:56:48 ================================================================================ +2021-01-07 17:56:48 Lynis 3.0.3 +2021-01-07 17:56:48 2007-2021, CISOfy - https://cisofy.com/lynis/ +2021-01-07 17:56:48 Enterprise support available (compliance, plugins, interface and tools) +2021-01-07 17:56:48 Program ended successfully +2021-01-07 17:56:48 ================================================================================ +2021-01-07 17:56:48 PID file removed (/var/run/lynis.pid) +2021-01-07 17:56:48 Temporary files: /tmp/lynis.SMOiQhFW2k /tmp/lynis.UpZPPPBDp2 /tmp/lynis.bWJR7kaDOU /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:48 Action: removing temporary file /tmp/lynis.SMOiQhFW2k +2021-01-07 17:56:48 Info: temporary file /tmp/lynis.UpZPPPBDp2 was already removed +2021-01-07 17:56:48 Info: temporary file /tmp/lynis.bWJR7kaDOU was already removed +2021-01-07 17:56:48 Action: removing temporary file /tmp/lynis.UqnQjhfvoF +2021-01-07 17:56:48 Lynis ended successfully. diff --git a/raw_scans/11_gcp_debian_9/lynis-report-1.dat b/raw_scans/11_gcp_debian_9/lynis-report-1.dat new file mode 100644 index 0000000..0666d51 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/lynis-report-1.dat @@ -0,0 +1,641 @@ +# Lynis Report +report_version_major=1 +report_version_minor=0 +report_datetime_start=2021-01-07 17:37:52 +auditor=[Not Specified] +lynis_version=3.0.3 +os=Linux +os_name=Debian +os_fullname=Debian GNU/Linux 9 (stretch) +os_version=9 +linux_version=Debian +os_kernel_version=4.9.0 +os_kernel_version_full=4.9.0-14-amd64 +hostname=debian-9 +test_category=all +test_group=all +plugin_directory=./plugins +lynis_update_available=0 +binaries_count=834 +binaries_suid_count=/bin/mount /bin/ping /bin/ping4 /bin/ping6 /bin/su /bin/umount /usr/bin/chfn /usr/bin/chsh /usr/bin/gpasswd /usr/bin/newgrp /usr/bin/passwd /usr/bin/sg /usr/bin/sudo /usr/bin/sudoedit +binaries_sgid_count=/sbin/unix_chkpwd /usr/bin/bsd-write /usr/bin/chage /usr/bin/crontab /usr/bin/expiry /usr/bin/screen /usr/bin/ssh-agent /usr/bin/wall /usr/bin/write +binary_paths=/bin,/sbin,/usr/bin,/usr/sbin,/usr/local/bin,/usr/local/sbin +vm=1 +vmtype=kvm +container=0 +systemd=1 +plugin_enabled_phase1[]=pam|1.0.5| +authentication_two_factor_enabled=0 +authentication_two_factor_required=0 +plugin_enabled_phase1[]=systemd|1.0.4| +systemctl_exit_code=0 +systemd_version=232 +systemd_builtin_components=+PAM,+AUDIT,+SELINUX,+IMA,+APPARMOR,+SMACK,+SYSVINIT,+UTMP,+LIBCRYPTSETUP,+GCRYPT,+GNUTLS,+ACL,+XZ,+LZ4,+SECCOMP,+BLKID,+ELFUTILS,+KMOD,+IDN +systemd_unit_file[]=proc-sys-fs-binfmt_misc.automount|static| +systemd_unit_file[]=-.mount|generated| +systemd_unit_file[]=dev-hugepages.mount|static| +systemd_unit_file[]=dev-mqueue.mount|static| +systemd_unit_file[]=proc-sys-fs-binfmt_misc.mount|static| +systemd_unit_file[]=sys-fs-fuse-connections.mount|static| +systemd_unit_file[]=sys-kernel-config.mount|static| +systemd_unit_file[]=sys-kernel-debug.mount|static| +systemd_unit_file[]=acpid.path|enabled| +systemd_unit_file[]=systemd-ask-password-console.path|static| +systemd_unit_file[]=systemd-ask-password-wall.path|static| +systemd_unit_file[]=acpid.service|disabled| +systemd_unit_file[]=apt-daily-upgrade.service|static| +systemd_unit_file[]=apt-daily.service|static| +systemd_unit_file[]=autovt@.service|enabled| +systemd_unit_file[]=bootlogd.service|masked| +systemd_unit_file[]=bootlogs.service|masked| +systemd_unit_file[]=bootmisc.service|masked| +systemd_unit_file[]=checkfs.service|masked| +systemd_unit_file[]=checkroot-bootclean.service|masked| +systemd_unit_file[]=checkroot.service|masked| +systemd_unit_file[]=console-getty.service|disabled| +systemd_unit_file[]=container-getty@.service|static| +systemd_unit_file[]=cron.service|enabled| +systemd_unit_file[]=cryptdisks-early.service|masked| +systemd_unit_file[]=cryptdisks.service|masked| +systemd_unit_file[]=dbus-org.freedesktop.hostname1.service|static| +systemd_unit_file[]=dbus-org.freedesktop.locale1.service|static| +systemd_unit_file[]=dbus-org.freedesktop.login1.service|static| +systemd_unit_file[]=dbus-org.freedesktop.network1.service|disabled| +systemd_unit_file[]=dbus-org.freedesktop.resolve1.service|disabled| +systemd_unit_file[]=dbus-org.freedesktop.timedate1.service|static| +systemd_unit_file[]=debug-shell.service|disabled| +systemd_unit_file[]=emergency.service|static| +systemd_unit_file[]=expand-root.service|enabled| +systemd_unit_file[]=fuse.service|masked| +systemd_unit_file[]=getty-static.service|static| +systemd_unit_file[]=getty@.service|enabled| +systemd_unit_file[]=google-guest-agent.service|enabled| +systemd_unit_file[]=google-osconfig-agent.service|enabled| +systemd_unit_file[]=google-oslogin-cache.service|static| +systemd_unit_file[]=google-shutdown-scripts.service|enabled| +systemd_unit_file[]=google-startup-scripts.service|enabled| +systemd_unit_file[]=halt.service|masked| +systemd_unit_file[]=hostname.service|masked| +systemd_unit_file[]=hwclock.service|masked| +systemd_unit_file[]=ifup@.service|static| +systemd_unit_file[]=initrd-cleanup.service|static| +systemd_unit_file[]=initrd-parse-etc.service|static| +systemd_unit_file[]=initrd-switch-root.service|static| +systemd_unit_file[]=initrd-udevadm-cleanup-db.service|static| +systemd_unit_file[]=killprocs.service|masked| +systemd_unit_file[]=kmod-static-nodes.service|static| +systemd_unit_file[]=kmod.service|static| +systemd_unit_file[]=module-init-tools.service|static| +systemd_unit_file[]=motd.service|masked| +systemd_unit_file[]=mountall-bootclean.service|masked| +systemd_unit_file[]=mountall.service|masked| +systemd_unit_file[]=mountdevsubfs.service|masked| +systemd_unit_file[]=mountkernfs.service|masked| +systemd_unit_file[]=mountnfs-bootclean.service|masked| +systemd_unit_file[]=mountnfs.service|masked| +systemd_unit_file[]=networking.service|enabled| +systemd_unit_file[]=ntp.service|generated| +systemd_unit_file[]=procps.service|static| +systemd_unit_file[]=quotaon.service|static| +systemd_unit_file[]=rc-local.service|static| +systemd_unit_file[]=rc.local.service|static| +systemd_unit_file[]=rc.service|masked| +systemd_unit_file[]=rcS.service|masked| +systemd_unit_file[]=reboot.service|masked| +systemd_unit_file[]=rescue.service|static| +systemd_unit_file[]=rmnologin.service|masked| +systemd_unit_file[]=rsync.service|enabled| +systemd_unit_file[]=rsyslog.service|enabled| +systemd_unit_file[]=screen-cleanup.service|masked| +systemd_unit_file[]=sendsigs.service|masked| +systemd_unit_file[]=serial-getty@.service|disabled| +systemd_unit_file[]=single.service|masked| +systemd_unit_file[]=ssh-generate-hostkeys.service|enabled| +systemd_unit_file[]=ssh.service|enabled| +systemd_unit_file[]=ssh@.service|static| +systemd_unit_file[]=sshd.service|enabled| +systemd_unit_file[]=stop-bootlogd-single.service|masked| +systemd_unit_file[]=stop-bootlogd.service|masked| +systemd_unit_file[]=sudo.service|disabled| +systemd_unit_file[]=syslog.service|enabled| +systemd_unit_file[]=systemd-ask-password-console.service|static| +systemd_unit_file[]=systemd-ask-password-wall.service|static| +systemd_unit_file[]=systemd-backlight@.service|static| +systemd_unit_file[]=systemd-binfmt.service|static| +systemd_unit_file[]=systemd-exit.service|static| +systemd_unit_file[]=systemd-fsck-root.service|static| +systemd_unit_file[]=systemd-fsck@.service|static| +systemd_unit_file[]=systemd-fsckd.service|static| +systemd_unit_file[]=systemd-halt.service|static| +systemd_unit_file[]=systemd-hibernate-resume@.service|static| +systemd_unit_file[]=systemd-hibernate.service|static| +systemd_unit_file[]=systemd-hostnamed.service|static| +systemd_unit_file[]=systemd-hwdb-update.service|static| +systemd_unit_file[]=systemd-hybrid-sleep.service|static| +systemd_unit_file[]=systemd-initctl.service|static| +systemd_unit_file[]=systemd-journal-flush.service|static| +systemd_unit_file[]=systemd-journald.service|static| +systemd_unit_file[]=systemd-kexec.service|static| +systemd_unit_file[]=systemd-localed.service|static| +systemd_unit_file[]=systemd-logind.service|static| +systemd_unit_file[]=systemd-machine-id-commit.service|static| +systemd_unit_file[]=systemd-modules-load.service|static| +systemd_unit_file[]=systemd-networkd-wait-online.service|disabled| +systemd_unit_file[]=systemd-networkd.service|disabled| +systemd_unit_file[]=systemd-poweroff.service|static| +systemd_unit_file[]=systemd-quotacheck.service|static| +systemd_unit_file[]=systemd-random-seed.service|static| +systemd_unit_file[]=systemd-reboot.service|static| +systemd_unit_file[]=systemd-remount-fs.service|static| +systemd_unit_file[]=systemd-resolved.service|disabled| +systemd_unit_file[]=systemd-rfkill.service|static| +systemd_unit_file[]=systemd-suspend.service|static| +systemd_unit_file[]=systemd-sysctl.service|static| +systemd_unit_file[]=systemd-timedated.service|static| +systemd_unit_file[]=systemd-timesyncd.service|enabled| +systemd_unit_file[]=systemd-tmpfiles-clean.service|static| +systemd_unit_file[]=systemd-tmpfiles-setup-dev.service|static| +systemd_unit_file[]=systemd-tmpfiles-setup.service|static| +systemd_unit_file[]=systemd-udev-settle.service|static| +systemd_unit_file[]=systemd-udev-trigger.service|static| +systemd_unit_file[]=systemd-udevd.service|static| +systemd_unit_file[]=systemd-update-utmp-runlevel.service|static| +systemd_unit_file[]=systemd-update-utmp.service|static| +systemd_unit_file[]=systemd-user-sessions.service|static| +systemd_unit_file[]=udev.service|static| +systemd_unit_file[]=umountfs.service|masked| +systemd_unit_file[]=umountnfs.service|masked| +systemd_unit_file[]=umountroot.service|masked| +systemd_unit_file[]=unattended-upgrades.service|enabled| +systemd_unit_file[]=urandom.service|static| +systemd_unit_file[]=user@.service|static| +systemd_unit_file[]=uuidd.service|indirect| +systemd_unit_file[]=x11-common.service|masked| +systemd_unit_file[]=machine.slice|static| +systemd_unit_file[]=system.slice|static| +systemd_unit_file[]=user.slice|static| +systemd_unit_file[]=acpid.socket|enabled| +systemd_unit_file[]=ssh.socket|disabled| +systemd_unit_file[]=syslog.socket|static| +systemd_unit_file[]=systemd-fsckd.socket|static| +systemd_unit_file[]=systemd-initctl.socket|static| +systemd_unit_file[]=systemd-journald-audit.socket|static| +systemd_unit_file[]=systemd-journald-dev-log.socket|static| +systemd_unit_file[]=systemd-journald.socket|static| +systemd_unit_file[]=systemd-networkd.socket|disabled| +systemd_unit_file[]=systemd-rfkill.socket|static| +systemd_unit_file[]=systemd-udevd-control.socket|static| +systemd_unit_file[]=systemd-udevd-kernel.socket|static| +systemd_unit_file[]=uuidd.socket|enabled| +systemd_unit_file[]=basic.target|static| +systemd_unit_file[]=bluetooth.target|static| +systemd_unit_file[]=busnames.target|static| +systemd_unit_file[]=cryptsetup-pre.target|static| +systemd_unit_file[]=cryptsetup.target|static| +systemd_unit_file[]=ctrl-alt-del.target|disabled| +systemd_unit_file[]=default.target|static| +systemd_unit_file[]=emergency.target|static| +systemd_unit_file[]=exit.target|disabled| +systemd_unit_file[]=final.target|static| +systemd_unit_file[]=getty.target|static| +systemd_unit_file[]=graphical.target|static| +systemd_unit_file[]=halt.target|disabled| +systemd_unit_file[]=hibernate.target|static| +systemd_unit_file[]=hybrid-sleep.target|static| +systemd_unit_file[]=initrd-fs.target|static| +systemd_unit_file[]=initrd-root-device.target|static| +systemd_unit_file[]=initrd-root-fs.target|static| +systemd_unit_file[]=initrd-switch-root.target|static| +systemd_unit_file[]=initrd.target|static| +systemd_unit_file[]=kexec.target|disabled| +systemd_unit_file[]=local-fs-pre.target|static| +systemd_unit_file[]=local-fs.target|static| +systemd_unit_file[]=multi-user.target|static| +systemd_unit_file[]=network-online.target|static| +systemd_unit_file[]=network-pre.target|static| +systemd_unit_file[]=network.target|static| +systemd_unit_file[]=nss-lookup.target|static| +systemd_unit_file[]=nss-user-lookup.target|static| +systemd_unit_file[]=paths.target|static| +systemd_unit_file[]=poweroff.target|disabled| +systemd_unit_file[]=printer.target|static| +systemd_unit_file[]=reboot.target|disabled| +systemd_unit_file[]=remote-fs-pre.target|static| +systemd_unit_file[]=remote-fs.target|enabled| +systemd_unit_file[]=rescue.target|disabled| +systemd_unit_file[]=rpcbind.target|static| +systemd_unit_file[]=runlevel0.target|disabled| +systemd_unit_file[]=runlevel1.target|disabled| +systemd_unit_file[]=runlevel2.target|static| +systemd_unit_file[]=runlevel3.target|static| +systemd_unit_file[]=runlevel4.target|static| +systemd_unit_file[]=runlevel5.target|static| +systemd_unit_file[]=runlevel6.target|disabled| +systemd_unit_file[]=shutdown.target|static| +systemd_unit_file[]=sigpwr.target|static| +systemd_unit_file[]=sleep.target|static| +systemd_unit_file[]=slices.target|static| +systemd_unit_file[]=smartcard.target|static| +systemd_unit_file[]=sockets.target|static| +systemd_unit_file[]=sound.target|static| +systemd_unit_file[]=suspend.target|static| +systemd_unit_file[]=swap.target|static| +systemd_unit_file[]=sysinit.target|static| +systemd_unit_file[]=system-update.target|static| +systemd_unit_file[]=time-sync.target|static| +systemd_unit_file[]=timers.target|static| +systemd_unit_file[]=umount.target|static| +systemd_unit_file[]=apt-daily-upgrade.timer|enabled| +systemd_unit_file[]=apt-daily.timer|enabled| +systemd_unit_file[]=google-oslogin-cache.timer|enabled| +systemd_unit_file[]=systemd-tmpfiles-clean.timer|static| +journal_bootlogs=1 +journal_oldest_bootdate=2021-01-07 +journal_contains_errors=0 +journal_disk_size=4.9M +journal_meta_data=FilePath:/run/log/journal/a66b25c544c2fc51bc4a5dae2b809331/system.journal,FileID:47ead12e84e34f35a4a153136095e81f,MachineID:a66b25c544c2fc51bc4a5dae2b809331,BootID:302e988abf38400abe8d2aa832f77418,SequentialNumberID:47ead12e84e34f35a4a153136095e81f,State:ONLINE,CompatibleFlags:,IncompatibleFlags:COMPRESSED-LZ4,Headersize:240,Arenasize:5185296,DataHashTableSize:9002,FieldHashTableSize:333,RotateSuggested:no,HeadSequentialNumber:1(1),TailSequentialNumber:601(259),HeadRealtimeTimestamp:Thu2021-01-0717:20:14UTC(5b852a7235495),TailRealtimeTimestamp:Thu2021-01-0717:37:51UTC(5b852e627b007),TailMonotonicTimestamp:17min38.894s(3f1d70f4),Objects:2591,EntryObjects:601,DataObjects:1414,DataHashTableFill:15.7%,FieldObjects:49,FieldHashTableFill:14.7%,TagObjects:0,EntryArrayObjects:525,Diskusage:4.9M, +systemd_status=running +systemd_unit_not_found[]=tmp.mount +systemd_unit_not_found[]=apparmor.service +systemd_unit_not_found[]=auditd.service +systemd_unit_not_found[]=display-manager.service +systemd_unit_not_found[]=network.service +systemd_unit_not_found[]=NetworkManager.service +systemd_unit_not_found[]=plymouth-quit-wait.service +systemd_unit_not_found[]=plymouth-start.service +systemd_unit_not_found[]=systemd-sysusers.service +systemd_unit_not_found[]=systemd-update-done.service +systemd_unit_not_found[]=systemd-vconsole-setup.service +systemd_unit_not_found[]=dbus.socket +systemd_service_not_found[]=apparmor.service +systemd_service_not_found[]=auditd.service +systemd_service_not_found[]=display-manager.service +systemd_service_not_found[]=network.service +systemd_service_not_found[]=NetworkManager.service +systemd_service_not_found[]=plymouth-quit-wait.service +systemd_service_not_found[]=plymouth-start.service +systemd_service_not_found[]=systemd-sysusers.service +systemd_service_not_found[]=systemd-update-done.service +systemd_service_not_found[]=systemd-vconsole-setup.service +journal_coredumps_lastday=0 +plugins_enabled=1 +hostid=466ad4432c544245a47e41f2a41d247da252b5ad +hostid2=3ecc6b2399833ea32698bac064848b8804f3ad85ccd0987d01ced99b6335024b +suggestion[]=BOOT-5122|Set a password on GRUB boot loader to prevent altering boot configuration (e.g. boot in single user mode without password)|-|-| +running_service_tool=systemctl +running_service[]=acpid +running_service[]=cron +running_service[]=getty@tty1 +running_service[]=getty@tty2 +running_service[]=getty@tty3 +running_service[]=getty@tty4 +running_service[]=getty@tty5 +running_service[]=getty@tty6 +running_service[]=google-guest-agent +running_service[]=google-osconfig-agent +running_service[]=ntp +running_service[]=rsyslog +running_service[]=serial-getty@ttyS0 +running_service[]=ssh +running_service[]=systemd-journald +running_service[]=systemd-udevd +boot_service_tool=systemctl +boot_service[]=autovt@ +boot_service[]=cron +boot_service[]=expand-root +boot_service[]=getty@ +boot_service[]=google-guest-agent +boot_service[]=google-osconfig-agent +boot_service[]=google-shutdown-scripts +boot_service[]=google-startup-scripts +boot_service[]=networking +boot_service[]=rsync +boot_service[]=rsyslog +boot_service[]=ssh-generate-hostkeys +boot_service[]=ssh +boot_service[]=sshd +boot_service[]=syslog +boot_service[]=systemd-timesyncd +boot_service[]=unattended-upgrades +uptime_in_seconds=1064 +uptime_in_days=0 +boot_loader=GRUB2 +boot_uefi_booted=0 +boot_uefi_booted_secure=0 +service_manager=systemd +linux_default_runlevel=5 +cpu_pae=1 +cpu_nx=1 +linux_kernel_release=4.9.0-14-amd64 +linux_kernel_version=#1 SMP Debian 4.9.240-2 (2020-10-30) +linux_kernel_type=modular +loaded_kernel_module[]=ablk_helper +loaded_kernel_module[]=aes_x86_64 +loaded_kernel_module[]=aesni_intel +loaded_kernel_module[]=autofs4 +loaded_kernel_module[]=button +loaded_kernel_module[]=crc16 +loaded_kernel_module[]=crc32_pclmul +loaded_kernel_module[]=crc32c_generic +loaded_kernel_module[]=crc32c_intel +loaded_kernel_module[]=crct10dif_pclmul +loaded_kernel_module[]=cryptd +loaded_kernel_module[]=ecb +loaded_kernel_module[]=edac_core +loaded_kernel_module[]=evdev +loaded_kernel_module[]=ext4 +loaded_kernel_module[]=fscrypto +loaded_kernel_module[]=gf128mul +loaded_kernel_module[]=ghash_clmulni_intel +loaded_kernel_module[]=glue_helper +loaded_kernel_module[]=i2c_piix4 +loaded_kernel_module[]=intel_rapl_perf +loaded_kernel_module[]=ip_tables +loaded_kernel_module[]=jbd2 +loaded_kernel_module[]=lrw +loaded_kernel_module[]=mbcache +loaded_kernel_module[]=psmouse +loaded_kernel_module[]=pvpanic +loaded_kernel_module[]=rng_core +loaded_kernel_module[]=sb_edac +loaded_kernel_module[]=scsi_mod +loaded_kernel_module[]=sd_mod +loaded_kernel_module[]=serio_raw +loaded_kernel_module[]=sg +loaded_kernel_module[]=virtio +loaded_kernel_module[]=virtio_balloon +loaded_kernel_module[]=virtio_net +loaded_kernel_module[]=virtio_pci +loaded_kernel_module[]=virtio_ring +loaded_kernel_module[]=virtio_rng +loaded_kernel_module[]=virtio_scsi +loaded_kernel_module[]=x_tables +linux_config_file=/boot/config-4.9.0-14-amd64 +linux_kernel_io_scheduler[]=cfq +suggestion[]=KRNL-5788|Determine priority for available kernel update|-|-| +suggestion[]=KRNL-5820|If not required, consider explicit disabling of core dump in /etc/security/limits.conf file|-|-| +memory_size=4050856 +memory_units=kB +auth_group_ids_unique=1 +auth_group_names_unique=1 +suggestion[]=AUTH-9230|Configure password hashing rounds in /etc/login.defs|-|-| +real_user[]=root,0 +real_user[]=Tobias,1000 +real_user[]=ktdw73,1001 +real_user[]=ftpuser,1002 +suggestion[]=AUTH-9262|Install a PAM module for password strength testing like pam_cracklib or pam_passwdqc|-|-| +pam_module[]=/lib/x86_64-linux-gnu/security/pam_access.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_debug.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_deny.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_echo.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_env.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_exec.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_faildelay.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_filter.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_ftp.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_group.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_issue.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_keyinit.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_lastlog.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_limits.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_listfile.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_localuser.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_loginuid.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_mail.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_mkhomedir.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_motd.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_namespace.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_nologin.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_oslogin_admin.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_oslogin_login.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_permit.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_pwhistory.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_rhosts.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_rootok.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_securetty.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_selinux.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_sepermit.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_shells.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_stress.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_succeed_if.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_tally.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_tally2.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_time.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_timestamp.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_tty_audit.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_umask.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_unix.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_userdb.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_warn.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_wheel.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_xauth.so +locked_account[]=Tobias +locked_account[]=ftpuser +locked_account[]=ktdw73 +suggestion[]=AUTH-9284|Look at the locked accounts and consider removing them|-|-| +suggestion[]=AUTH-9286|Configure minimum password age in /etc/login.defs|-|-| +suggestion[]=AUTH-9286|Configure maximum password age in /etc/login.defs|-|-| +manual_event[]=AUTH-9328:03 +suggestion[]=AUTH-9328|Default umask in /etc/login.defs could be more strict like 027|-|-| +auth_failed_logins_tooling[]=/etc/login.defs +auth_failed_logins_logged=1 +ldap_auth_enabled=0 +ldap_pam_enabled=0 +password_min_days=-1 +password_max_days=-1 +available_shell[]=/bin/sh +available_shell[]=/bin/dash +available_shell[]=/bin/bash +available_shell[]=/bin/rbash +available_shell[]=/usr/bin/screen +session_timeout_enabled=0 +suggestion[]=FILE-6310|To decrease the impact of a full /home file system, place /home on a separate partition|-|-| +suggestion[]=FILE-6310|To decrease the impact of a full /tmp file system, place /tmp on a separate partition|-|-| +suggestion[]=FILE-6310|To decrease the impact of a full /var file system, place /var on a separate partition|-|-| +file_systems_ext[]=/|ext4| +suggestion[]=FILE-6430|Consider disabling unused kernel modules|/etc/modprobe.d/blacklist.conf|Add 'install MODULENAME /bin/true' (without quotes)| +suggestion[]=USB-1000|Disable drivers like USB storage when not used, to prevent unauthorized storage or data theft|-|-| +suggestion[]=STRG-1846|Disable drivers like firewire storage when not used, to prevent unauthorized storage or data theft|-|-| +resolv_conf_domain=europe-west3-c.c.cc2020-tobiaswieck.internal +resolv_conf_search_domain[]=europe-west3-c.c.cc2020-tobiaswieck.internal. +domainname=europe-west3-c.c.cc2020-tobiaswieck.internal +localhost-mapped-to=::1 +name_cache_used=0 +package_manager[]=dpkg +installed_packages=282 +suggestion[]=PKGS-7370|Install debsums utility for the verification of packages with known good database.|-|-| +vulnerable_package[]=curl +vulnerable_package[]=libcurl3 +vulnerable_package[]=libp11-kit0 +vulnerable_package[]=linux-image-4.9.0-14-amd64 +vulnerable_package[]=python-apt-common +vulnerable_package[]=python3-apt +vulnerable_package[]=tzdata +warning[]=PKGS-7392|Found one or more vulnerable packages.|-|-| +suggestion[]=PKGS-7392|Update your system with apt-get update, apt-get upgrade, apt-get dist-upgrade and/or unattended-upgrades|-|-| +suggestion[]=PKGS-7394|Install package apt-show-versions for patch management purposes|-|-| +installed_kernel_packages=1 +unattended_upgrade_tool[]=unattended-upgrade +unattended_upgrade_option_available=1 +ipv6_mode=auto +ipv6_only=0 +nameserver[]=169.254.169.254 +default_gateway[]=10.156.0.1 +network_interface[]=lo +network_interface[]=eth0 +network_mac_address[]=42:01:0a:9c:00:06 +network_ipv4_address[]=10.156.0.6 +network_ipv4_address[]=127.0.0.1 +network_ipv6_address[]=fe80::4001:aff:fe9c:6 +network_ipv6_address[]=::1 +network_listen[]=raw,ss,v1|udp|*:68|dhclient| +network_listen[]=raw,ss,v1|udp|10.156.0.6:123|ntpd| +network_listen[]=raw,ss,v1|udp|127.0.0.1:123|ntpd| +network_listen[]=raw,ss,v1|udp|*:123|ntpd| +network_listen[]=raw,ss,v1|udp|fe80::4001:aff:fe9c:6%eth0:123|ntpd| +network_listen[]=raw,ss,v1|udp|::1:123|ntpd| +network_listen[]=raw,ss,v1|udp|:::123|ntpd| +network_listen[]=raw,ss,v1|tcp|*:22|sshd| +network_listen[]=raw,ss,v1|tcp|:::22|sshd| +suggestion[]=NETW-3200|Determine if protocol 'dccp' is really needed on this system|-|-| +uncommon_network_protocol_enabled=dccp +suggestion[]=NETW-3200|Determine if protocol 'sctp' is really needed on this system|-|-| +uncommon_network_protocol_enabled=sctp +suggestion[]=NETW-3200|Determine if protocol 'rds' is really needed on this system|-|-| +uncommon_network_protocol_enabled=rds +suggestion[]=NETW-3200|Determine if protocol 'tipc' is really needed on this system|-|-| +uncommon_network_protocol_enabled=tipc +imap_daemon= +pop3_daemon= +smtp_daemon= +firewall_software[]=iptables +warning[]=FIRE-4512|iptables module(s) loaded, but no rules active|-|-| +firewall_no_logging[]=iptables +manual[]=Verify if there is a formal process for testing and applying firewall rules +manual[]=Verify all traffic is filtered the right way between the different security zones +manual[]=Verify if a list is available with all required services +manual[]=Make sure an explicit deny all is the default policy for all unmatched traffic +suggestion[]=SSH-7408|Consider hardening SSH configuration|AllowTcpForwarding (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option AllowTcpForwarding;field:AllowTcpForwarding;prefval:NO;value:YES;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|ClientAliveCountMax (set 3 to 2)|-| +details[]=SSH-7408|sshd|desc:sshd option ClientAliveCountMax;field:ClientAliveCountMax;prefval:2;value:3;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|Compression (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option Compression;field:Compression;prefval:NO;value:YES;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|LogLevel (set INFO to VERBOSE)|-| +details[]=SSH-7408|sshd|desc:sshd option LogLevel;field:LogLevel;prefval:VERBOSE;value:INFO;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|MaxAuthTries (set 6 to 3)|-| +details[]=SSH-7408|sshd|desc:sshd option MaxAuthTries;field:MaxAuthTries;prefval:3;value:6;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|MaxSessions (set 10 to 2)|-| +details[]=SSH-7408|sshd|desc:sshd option MaxSessions;field:MaxSessions;prefval:2;value:10;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|Port (set 22 to )|-| +details[]=SSH-7408|sshd|desc:sshd option Port;field:Port;prefval:;value:22;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|TCPKeepAlive (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option TCPKeepAlive;field:TCPKeepAlive;prefval:NO;value:YES;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|X11Forwarding (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option X11Forwarding;field:X11Forwarding;prefval:NO;value:YES;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|AllowAgentForwarding (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option AllowAgentForwarding;field:AllowAgentForwarding;prefval:NO;value:YES;| +ssh_daemon_running=1 +openssh_daemon_running=1 +syslog_daemon_present=1 +syslog_daemon[]=systemd-journal +syslog_daemon_present=1 +syslog_daemon[]=rsyslog +log_directory[]=/var/log +log_directory[]=/var/log/apt +log_directory[]=/var/log/unattended-upgrades +remote_syslog_configured=0 +suggestion[]=LOGG-2154|Enable logging to an external logging host for archiving purposes and additional protection|-|-| +log_directory[]=/var/log +log_rotation_config_found=1 +log_rotation_tool=logrotate +suggestion[]=BANN-7126|Add a legal banner to /etc/issue, to warn unauthorized users|-|-| +weak_banner_file[]=/etc/issue +suggestion[]=BANN-7130|Add legal banner to /etc/issue.net, to warn unauthorized users|-|-| +crond_running=1 +scheduler[]=crond +cronjob[]=17,*,*,*,*,root,cd,/,&&,run-parts,--report,/etc/cron.hourly +cronjob[]=25,6,*,*,*,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.daily,) +cronjob[]=47,6,*,*,7,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.weekly,) +cronjob[]=52,6,1,*,*,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.monthly,) +cronjob[]=/etc/cron.daily/logrotate +cronjob[]=/etc/cron.daily/ntp +cronjob[]=/etc/cron.daily/apt-compat +cronjob[]=/etc/cron.daily/man-db +cronjob[]=/etc/cron.daily/dpkg +cronjob[]=/etc/cron.daily/bsdmainutils +cronjob[]=/etc/cron.daily/passwd +cronjob[]=/etc/cron.weekly/man-db +suggestion[]=ACCT-9622|Enable process accounting|-|-| +suggestion[]=ACCT-9626|Enable sysstat to collect accounting (no results)|-|-| +suggestion[]=ACCT-9628|Enable auditd to collect audit information|-|-| +linux_auditd_running=0 +audit_daemon_running=0 +suggestion[]=TIME-3128|Check ntpq peers output for time source candidates|-|-| +ntp_version=2 +tz_variable_empty=1 +ntp_config_file[]=/etc/ntp.conf +ntp_config_found=1 +ntp_config_type_daemon=1 +ntp_config_type_eventbased=0 +ntp_config_type_scheduled=0 +ntp_config_type_startup=0 +ntp_daemon=ntpd +ntp_daemon_running=1 +certificate[]=/etc/ssl/certs/ca-certificates.crt|0|cn:subject=CN = ACCVRAIZ1, OU = PKIACCV, O = ACCV, C = ES;notafter:Dec 31 09:37:37 2030 GMT;| +certificates=127 +kernel_entropy=1095 +rng_found=0 +framework_grsecurity=0 +framework_selinux=0 +suggestion[]=FINT-4350|Install a file integrity tool to monitor changes to critical and sensitive files|-|-| +suggestion[]=TOOL-5002|Determine if automation tools are present for system management|-|-| +automation_tool_present=0 +malware_scanner_installed=0 +suggestion[]=FILE-7524|Consider restricting file permissions|See screen output or log file|text:Use chmod to change file permissions| +home_directory[]=/bin +home_directory[]=/dev +home_directory[]=/home/Tobias +home_directory[]=/home/ftpuser +home_directory[]=/home/ktdw73 +home_directory[]=/root +home_directory[]=/run/sshd +home_directory[]=/run/systemd +home_directory[]=/run/systemd/netif +home_directory[]=/run/uuidd +home_directory[]=/usr/games +home_directory[]=/usr/sbin +home_directory[]=/var/backups +home_directory[]=/var/cache/man +home_directory[]=/var/mail +suggestion[]=HOME-9304|Double check the permissions of home directories as some might be not strict enough.|-|-| +details[]=KRNL-6000|sysctl|desc:Disable loading of TTY line disciplines;field:dev.tty.ldisc_autoload;prefval:0;value:1;| +details[]=KRNL-6000|sysctl|desc:Restrict FIFO special device creation behavior;field:fs.protected_fifos;prefval:2;value:0;| +details[]=KRNL-6000|sysctl|desc:Restrict regular files creation behavior;field:fs.protected_regular;prefval:2;value:0;| +details[]=KRNL-6000|sysctl|desc:No description;field:kernel.core_uses_pid;prefval:1;value:0;| +details[]=KRNL-6000|sysctl|desc:Restrict access to kernel symbols;field:kernel.kptr_restrict;prefval:2;value:0;| +details[]=KRNL-6000|sysctl|desc:Restrict module loading once this sysctl value is loaded;field:kernel.modules_disabled;prefval:1;value:0;| +details[]=KRNL-6000|sysctl|desc:Disable magic SysRQ;field:kernel.sysrq;prefval:0;value:438;| +details[]=KRNL-6000|sysctl|desc:Restrict BPF for unprivileged users;field:kernel.unprivileged_bpf_disabled;prefval:1;value:0;| +details[]=KRNL-6000|sysctl|desc:Disable process tracing for everyone;field:kernel.yama.ptrace_scope;prefval:1 2 3;value:0;| +details[]=KRNL-6000|sysctl|desc:Hardened BPF JIT compilation;field:net.core.bpf_jit_harden;prefval:2;value:0;| +details[]=KRNL-6000|sysctl|desc:Disable/Ignore ICMP routing redirects;field:net.ipv6.conf.all.accept_redirects;prefval:0;value:1;| +details[]=KRNL-6000|sysctl|desc:Disable/Ignore ICMP routing redirects;field:net.ipv6.conf.default.accept_redirects;prefval:0;value:1;| +suggestion[]=KRNL-6000|One or more sysctl values differ from the scan profile and could be tweaked||Change sysctl value or disable test (skip-test=KRNL-6000:)| +suggestion[]=HRDN-7230|Harden the system by installing at least one malware scanner, to perform periodic file system scans|-|Install a tool like rkhunter, chkrootkit, OSSEC| +compiler_installed=0 +lynis_tests_done=259 +report_datetime_end=2021-01-07 17:38:13 +dhcp_client_running=1 +arpwatch_running=0 +firewall_active=1 +firewall_empty_ruleset=1 +firewall_installed=1 +installed_packages_array=|acpi-support-base,0.142-8|acpid,1:2.0.28-1+b1|adduser,3.115|apt,1.4.11|apt-utils,1.4.11|base-files,9.9+deb9u13|base-passwd,3.5.43|bash,4.4-5|bind9-host,1:9.10.3.dfsg.P4-12.3+deb9u7|bsdmainutils,9.0.12+nmu1|bsdutils,1:2.29.2-1+deb9u1|busybox,1:1.22.0-19+b3|ca-certificates,20200601~deb9u1|cloud-guest-utils,0.29-1|coreutils,8.26-3|cpio,2.11+dfsg-6|cron,3.0pl1-128+deb9u1|curl,7.52.1-5+deb9u12|dash,0.5.8-2.4|debconf,1.5.61|debconf-i18n,1.5.61|debian-archive-keyring,2017.5+deb9u1|debianutils,4.8.1.1|dh-python,2.20170125|diffutils,1:3.5-3|distro-info-data,0.36|dmidecode,3.0-4|dmsetup,2:1.02.137-2|dpkg,1.18.25|e2fslibs:amd64,1.43.4-2+deb9u2|e2fsprogs,1.43.4-2+deb9u2|ethtool,1:4.8-1+b1|file,1:5.30-1+deb9u3|findutils,4.6.0+git+20161106-2|gcc-6-base:amd64,6.3.0-18+deb9u1|gdisk,1.0.1-1|geoip-database,20170512-1|gettext-base,0.19.8.1-2+deb9u1|git,1:2.11.0-3+deb9u7|git-man,1:2.11.0-3+deb9u7|gnupg,2.1.18-8~deb9u4|gnupg-agent,2.1.18-8~deb9u4|google-cloud-packages-archive-keyring,1.2-347415788|google-cloud-sdk,321.0.0-0|google-compute-engine,1:20201207.00-g1|google-compute-engine-oslogin,1:20200925.00-g1+deb9|google-guest-agent,1:20201214.00-g1|google-osconfig-agent,1:20201214.00-g1|gpgv,2.1.18-8~deb9u4|grep,2.27-2|groff-base,1.22.3-9|grub-common,2.02~beta3-5+deb9u2|grub-pc,2.02~beta3-5+deb9u2|grub-pc-bin,2.02~beta3-5+deb9u2|grub2-common,2.02~beta3-5+deb9u2|gzip,1.6-5+b1|host,1:9.10.3.dfsg.P4-12.3+deb9u7|hostname,3.18+b1|ifupdown,0.8.19|init,1.48|init-system-helpers,1.48|initramfs-tools,0.130|initramfs-tools-core,0.130|iproute2,4.9.0-1+deb9u1|iptables,1.6.0+snapshot20161117-6|iputils-ping,3:20161105-1|isc-dhcp-client,4.3.5-3+deb9u1|isc-dhcp-common,4.3.5-3+deb9u1|klibc-utils,2.0.4-9|kmod,23-2|kpartx,0.6.4-5+deb9u1|less,481-2.1|libacl1:amd64,2.2.52-3+b1|libapparmor1:amd64,2.11.0-3+deb9u2|libapt-inst2.0:amd64,1.4.11|libapt-pkg5.0:amd64,1.4.11|libassuan0:amd64,2.4.3-2|libattr1:amd64,1:2.4.47-2+b2|libaudit-common,1:2.6.7-2|libaudit1:amd64,1:2.6.7-2|libbind9-140:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libblkid1:amd64,2.29.2-1+deb9u1|libbsd0:amd64,0.8.3-1|libbz2-1.0:amd64,1.0.6-8.1|libc-bin,2.24-11+deb9u4|libc-l10n,2.24-11+deb9u4|libc6:amd64,2.24-11+deb9u4|libcap-ng0:amd64,0.7.7-3+b1|libcap2:amd64,1:2.25-1|libcomerr2:amd64,1.43.4-2+deb9u2|libcryptsetup4:amd64,2:1.7.3-4|libcurl3-gnutls:amd64,7.52.1-5+deb9u13|libcurl3:amd64,7.52.1-5+deb9u12|libdb5.3:amd64,5.3.28-12+deb9u1|libdebconfclient0:amd64,0.227|libdevmapper1.02.1:amd64,2:1.02.137-2|libdns-export162,1:9.10.3.dfsg.P4-12.3+deb9u7|libdns162:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libedit2:amd64,3.1-20160903-3|libelf1:amd64,0.168-1|liberror-perl,0.17024-1|libestr0,0.1.10-2|libexpat1:amd64,2.2.0-2+deb9u3|libfastjson4:amd64,0.99.4-1|libfdisk1:amd64,2.29.2-1+deb9u1|libffi6:amd64,3.2.1-6|libfreetype6:amd64,2.6.3-3.2+deb9u2|libfuse2:amd64,2.9.7-1+deb9u2|libgcc1:amd64,1:6.3.0-18+deb9u1|libgcrypt20:amd64,1.7.6-2+deb9u3|libgdbm3:amd64,1.8.3-14|libgeoip1:amd64,1.6.9-4|libgmp10:amd64,2:6.1.2+dfsg-1|libgnutls30:amd64,3.5.8-5+deb9u5|libgpg-error0:amd64,1.26-2|libgpm2:amd64,1.20.4-6.2+b1|libgssapi-krb5-2:amd64,1.15-1+deb9u2|libhogweed4:amd64,3.3-1+b2|libicu57:amd64,57.1-6+deb9u4|libidn11:amd64,1.33-1+deb9u1|libidn2-0:amd64,0.16-1+deb9u1|libip4tc0:amd64,1.6.0+snapshot20161117-6|libip6tc0:amd64,1.6.0+snapshot20161117-6|libiptc0:amd64,1.6.0+snapshot20161117-6|libisc-export160,1:9.10.3.dfsg.P4-12.3+deb9u7|libisc160:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libisccc140:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libisccfg140:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libjson-c3:amd64,0.12.1-1.1+deb9u1|libk5crypto3:amd64,1.15-1+deb9u2|libkeyutils1:amd64,1.5.9-9|libklibc,2.0.4-9|libkmod2:amd64,23-2|libkrb5-3:amd64,1.15-1+deb9u2|libkrb5support0:amd64,1.15-1+deb9u2|libksba8:amd64,1.3.5-2|libldap-2.4-2:amd64,2.4.44+dfsg-5+deb9u6|libldap-common,2.4.44+dfsg-5+deb9u6|liblocale-gettext-perl,1.07-3+b1|liblogging-stdlog0:amd64,1.0.5-2+b2|liblognorm5:amd64,2.0.1-1.1+b1|liblwres141:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|liblz4-1:amd64,0.0~r131-2+b1|liblzma5:amd64,5.2.2-1.2+b1|libmagic-mgc,1:5.30-1+deb9u3|libmagic1:amd64,1:5.30-1+deb9u3|libmnl0:amd64,1.0.4-2|libmount1:amd64,2.29.2-1+deb9u1|libmpdec2:amd64,2.4.2-1|libncurses5:amd64,6.0+20161126-1+deb9u2|libncursesw5:amd64,6.0+20161126-1+deb9u2|libnetfilter-conntrack3:amd64,1.0.6-2|libnettle6:amd64,3.3-1+b2|libnewt0.52:amd64,0.52.19-1+b1|libnfnetlink0:amd64,1.0.1-3|libnghttp2-14:amd64,1.18.1-1+deb9u1|libnpth0:amd64,1.3-1|libopts25:amd64,1:5.18.12-3|libp11-kit0:amd64,0.23.3-2|libpam-modules-bin,1.1.8-3.6|libpam-modules:amd64,1.1.8-3.6|libpam-runtime,1.1.8-3.6|libpam0g:amd64,1.1.8-3.6|libparted2:amd64,3.2-17|libpcre3:amd64,2:8.39-3|libperl5.24:amd64,5.24.1-3+deb9u7|libpipeline1:amd64,1.4.1-2|libpng16-16:amd64,1.6.28-1+deb9u1|libpopt0:amd64,1.16-10+b2|libprocps6:amd64,2:3.3.12-3+deb9u1|libpsl5:amd64,0.17.0-3|libpython-stdlib:amd64,2.7.13-2|libpython2.7-minimal:amd64,2.7.13-2+deb9u4|libpython2.7-stdlib:amd64,2.7.13-2+deb9u4|libpython3-stdlib:amd64,3.5.3-1|libpython3.5-minimal:amd64,3.5.3-1+deb9u3|libpython3.5-stdlib:amd64,3.5.3-1+deb9u3|libreadline7:amd64,7.0-3|librtmp1:amd64,2.4+20151223.gitfa8646d.1-1+b1|libsasl2-2:amd64,2.1.27~101-g0780600+dfsg-3+deb9u1|libsasl2-modules-db:amd64,2.1.27~101-g0780600+dfsg-3+deb9u1|libseccomp2:amd64,2.3.1-2.1+deb9u1|libselinux1:amd64,2.6-3+b3|libsemanage-common,2.6-2|libsemanage1:amd64,2.6-2|libsepol1:amd64,2.6-2|libslang2:amd64,2.3.1-5|libsmartcols1:amd64,2.29.2-1+deb9u1|libsqlite3-0:amd64,3.16.2-5+deb9u3|libss2:amd64,1.43.4-2+deb9u2|libssh2-1:amd64,1.7.0-1+deb9u1|libssl1.0.2:amd64,1.0.2u-1~deb9u3|libssl1.1:amd64,1.1.0l-1~deb9u2|libstdc++6:amd64,6.3.0-18+deb9u1|libsystemd0:amd64,232-25+deb9u12|libtasn1-6:amd64,4.10-1.1+deb9u1|libtext-charwidth-perl,0.04-7+b5|libtext-iconv-perl,1.7-5+b4|libtext-wrapi18n-perl,0.06-7.1|libtinfo5:amd64,6.0+20161126-1+deb9u2|libudev1:amd64,232-25+deb9u12|libunistring0:amd64,0.9.6+really0.9.3-0.1|libustr-1.0-1:amd64,1.0.4-6|libuuid1:amd64,2.29.2-1+deb9u1|libwrap0:amd64,7.6.q-26|libxapian30:amd64,1.4.3-2+deb9u3|libxml2:amd64,2.9.4+dfsg1-2.2+deb9u3|libxtables12:amd64,1.6.0+snapshot20161117-6|linux-base,4.5|linux-image-4.9.0-14-amd64,4.9.240-2|linux-image-amd64,4.9+80+deb9u12|locales,2.24-11+deb9u4|login,1:4.4-4.1|logrotate,3.11.0-0.1|lsb-base,9.20161125|lsb-release,9.20161125|man-db,2.7.6.1-2|mawk,1.3.3-17+b3|mime-support,3.60|mount,2.29.2-1+deb9u1|multiarch-support,2.24-11+deb9u4|nano,2.7.4-1|ncurses-base,6.0+20161126-1+deb9u2|ncurses-bin,6.0+20161126-1+deb9u2|net-tools,1.60+git20161116.90da8a0-1|netbase,5.4|ntp,1:4.2.8p10+dfsg-3+deb9u2|nvme-cli,1.0-3|openssh-client,1:7.4p1-10+deb9u7|openssh-server,1:7.4p1-10+deb9u7|openssh-sftp-server,1:7.4p1-10+deb9u7|openssl,1.1.0l-1~deb9u2|parted,3.2-17|passwd,1:4.4-4.1|patch,2.7.5-1+deb9u2|perl,5.24.1-3+deb9u7|perl-base,5.24.1-3+deb9u7|perl-modules-5.24,5.24.1-3+deb9u7|pinentry-curses,1.0.0-2|procps,2:3.3.12-3+deb9u1|python,2.7.13-2|python-apt-common,1.4.2|python-crcmod,1.7-2+b2|python-minimal,2.7.13-2|python2.7,2.7.13-2+deb9u4|python2.7-minimal,2.7.13-2+deb9u4|python3,3.5.3-1|python3-apt,1.4.2|python3-minimal,3.5.3-1|python3.5,3.5.3-1+deb9u3|python3.5-minimal,3.5.3-1+deb9u3|readline-common,7.0-3|rename,0.20-4|rsync,3.1.2-1+deb9u2|rsyslog,8.24.0-1|screen,4.5.0-6|sed,4.4-1|sensible-utils,0.0.9+deb9u1|sgml-base,1.29|sudo,1.8.19p1-2.1+deb9u2|systemd,232-25+deb9u12|systemd-sysv,232-25+deb9u12|sysvinit-utils,2.88dsf-59.9|tar,1.29b-1.1|tasksel,3.39|tasksel-data,3.39|tzdata,2020d-0+deb9u1|ucf,3.0036|udev,232-25+deb9u12|unattended-upgrades,0.93.1+nmu1|util-linux,2.29.2-1+deb9u1|uuid-runtime,2.29.2-1+deb9u1|vim,2:8.0.0197-4+deb9u3|vim-common,2:8.0.0197-4+deb9u3|vim-runtime,2:8.0.0197-4+deb9u3|vim-tiny,2:8.0.0197-4+deb9u3|wget,1.18-5+deb9u3|whiptail,0.52.19-1+b1|xml-core,0.17|xxd,2:8.0.0197-4+deb9u3|xz-utils,5.2.2-1.2+b1|zlib1g:amd64,1:1.2.8.dfsg-5 +package_audit_tool=apt-get +package_audit_tool_found=1 +vulnerable_packages_found=1 +hardening_index=65 +tests_executed=HRDN-7231|HRDN-7230|HRDN-7222|HRDN-7220|KRNL-6000|HOME-9350|HOME-9310|HOME-9306|HOME-9304|HOME-9302|FILE-7524|MALW-3284|MALW-3282|MALW-3280|MALW-3278|MALW-3276|MALW-3275|TOOL-5190|TOOL-5126|TOOL-5130|TOOL-5122|TOOL-5120|TOOL-5102|TOOL-5002|FINT-4350|FINT-4338|FINT-4330|FINT-4328|FINT-4326|FINT-4322|FINT-4318|FINT-4314|FINT-4310|MACF-6290|RBAC-6272|MACF-6240|MACF-6232|MACF-6204|CONT-8102|CRYP-8005|CRYP-8004|CRYP-8002|CRYP-7930|CRYP-7902|TIME-3170|TIME-3148|TIME-3136|TIME-3132|TIME-3128|TIME-3124|TIME-3120|TIME-3116|TIME-3112|TIME-3104|ACCT-9636|ACCT-9628|ACCT-9626|ACCT-9622|SCHD-7718|SCHD-7704|SCHD-7702|BANN-7130|BANN-7128|BANN-7126|BANN-7124|INSE-8320|INSE-8318|INSE-8316|INSE-8314|INSE-8322|INSE-8310|INSE-8304|INSE-8300|INSE-8102|INSE-8100|INSE-8000|LOGG-2180|LOGG-2170|LOGG-2154|LOGG-2150|LOGG-2148|LOGG-2146|LOGG-2142|LOGG-2138|LOGG-2240|LOGG-2230|LOGG-2210|LOGG-2136|LOGG-2132|LOGG-2130|SQD-3602|PHP-2211|LDAP-2219|DBS-1880|DBS-1860|DBS-1840|DBS-1826|DBS-1820|DBS-1818|DBS-1804|SNMP-3302|SSH-7440|SSH-7408|SSH-7406|SSH-7404|SSH-7402|HTTP-6702|HTTP-6622|FIRE-4594|FIRE-4590|FIRE-4586|FIRE-4524|FIRE-4513|FIRE-4512|FIRE-4508|FIRE-4502|MAIL-8880|MAIL-8860|MAIL-8838|MAIL-8820|MAIL-8814|MAIL-8802|PRNT-2314|PRNT-2304|NETW-3200|NETW-3032|NETW-3030|NETW-3028|NETW-3015|NETW-3012|NETW-3008|NETW-3006|NETW-3004|NETW-3001|NETW-2706|NETW-2705|NETW-2704|NETW-2600|NETW-2400|PKGS-7420|PKGS-7410|PKGS-7398|PKGS-7394|PKGS-7392|PKGS-7390|PKGS-7388|PKGS-7370|PKGS-7346|PKGS-7345|NAME-4408|NAME-4406|NAME-4404|NAME-4402|NAME-4304|NAME-4230|NAME-4202|NAME-4034|NAME-4032|NAME-4028|NAME-4020|NAME-4018|NAME-4016|STRG-1920|STRG-1846|USB-3000|USB-2000|USB-1000|FILE-6430|FILE-6394|FILE-6376|FILE-6374|FILE-6372|FILE-6368|FILE-6363|FILE-6362|FILE-6354|FILE-6344|FILE-6336|FILE-6332|FILE-6329|FILE-6324|FILE-6323|FILE-6310|SHLL-6230|SHLL-6220|SHLL-6211|AUTH-9408|AUTH-9402|AUTH-9328|AUTH-9308|AUTH-9288|AUTH-9286|AUTH-9284|AUTH-9283|AUTH-9282|AUTH-9278|AUTH-9268|AUTH-9266|AUTH-9264|AUTH-9262|AUTH-9252|AUTH-9250|AUTH-9242|AUTH-9240|AUTH-9234|AUTH-9230|AUTH-9229|AUTH-9228|AUTH-9226|AUTH-9222|AUTH-9216|AUTH-9208|AUTH-9204|PROC-3802|PROC-3614|PROC-3612|PROC-3602|KRNL-5830|KRNL-5820|KRNL-5788|KRNL-5730|KRNL-5728|KRNL-5726|KRNL-5723|KRNL-5695|KRNL-5677|KRNL-5622|BOOT-5260|BOOT-5202|BOOT-5184|BOOT-5180|BOOT-5177|BOOT-5155|BOOT-5142|BOOT-5139|BOOT-5122|BOOT-5121|BOOT-5116|BOOT-5109|BOOT-5108|BOOT-5104|PLGN-3860|PLGN-3856|PLGN-3834|PLGN-3832|PLGN-3830|PLGN-3820|PLGN-3818|PLGN-3816|PLGN-3814|PLGN-3812|PLGN-3810|PLGN-3808|PLGN-3806|PLGN-3804|PLGN-3802|PLGN-3800|PLGN-0010|CORE-1000| +tests_skipped=MALW-3288|MALW-3286|TOOL-5104|FINT-4402|FINT-4341|FINT-4340|FINT-4339|FINT-4336|FINT-4334|FINT-4316|FINT-4315|MACF-6242|MACF-6234|MACF-6208|CONT-8108|CONT-8107|CONT-8106|CONT-8104|CONT-8004|CRYP-7931|TIME-3185|TIME-3182|TIME-3181|TIME-3180|TIME-3160|TIME-3106|ACCT-9662|ACCT-9660|ACCT-9656|ACCT-9654|ACCT-9652|ACCT-9650|ACCT-9634|ACCT-9632|ACCT-9630|ACCT-2760|ACCT-2754|SCHD-7724|SCHD-7720|BANN-7113|INSE-8050|INSE-8200|INSE-8116|INSE-8106|INSE-8104|INSE-8016|INSE-8006|INSE-8004|INSE-8002|LOGG-2192|LOGG-2190|LOGG-2164|LOGG-2162|LOGG-2160|LOGG-2153|LOGG-2152|LOGG-2134|SQD-3680|SQD-3630|SQD-3624|SQD-3620|SQD-3616|SQD-3614|SQD-3613|SQD-3610|SQD-3606|SQD-3604|PHP-2382|PHP-2378|PHP-2376|PHP-2374|PHP-2372|PHP-2368|PHP-2320|LDAP-2224|DBS-1888|DBS-1886|DBS-1884|DBS-1882|DBS-1828|DBS-1816|SNMP-3306|SNMP-3304|HTTP-6720|HTTP-6716|HTTP-6714|HTTP-6712|HTTP-6710|HTTP-6708|HTTP-6706|HTTP-6704|HTTP-6643|HTTP-6641|HTTP-6640|HTTP-6632|HTTP-6626|HTTP-6624|FIRE-4540|FIRE-4538|FIRE-4536|FIRE-4534|FIRE-4532|FIRE-4530|FIRE-4526|FIRE-4520|FIRE-4518|MAIL-8920|MAIL-8818|MAIL-8817|MAIL-8816|MAIL-8804|PRNT-2420|PRNT-2418|PRNT-2316|PRNT-2308|PRNT-2307|PRNT-2306|PRNT-2302|NETW-3014|PKGS-7393|PKGS-7387|PKGS-7386|PKGS-7384|PKGS-7383|PKGS-7382|PKGS-7381|PKGS-7380|PKGS-7378|PKGS-7366|PKGS-7354|PKGS-7352|PKGS-7350|PKGS-7348|PKGS-7334|PKGS-7332|PKGS-7330|PKGS-7328|PKGS-7322|PKGS-7320|PKGS-7314|PKGS-7312|PKGS-7310|PKGS-7308|PKGS-7306|PKGS-7304|PKGS-7303|PKGS-7302|PKGS-7301|NAME-4306|NAME-4238|NAME-4236|NAME-4232|NAME-4210|NAME-4206|NAME-4204|NAME-4036|NAME-4026|NAME-4024|STRG-1930|STRG-1928|STRG-1926|STRG-1906|STRG-1904|STRG-1902|FILE-6410|FILE-6439|FILE-6330|FILE-6312|FILE-6311|SHLL-6202|AUTH-9410|AUTH-9409|AUTH-9406|AUTH-9340|AUTH-9306|AUTH-9304|AUTH-9254|AUTH-9218|AUTH-9212|PROC-3604|KRNL-5770|KRNL-5831|KRNL-5745|BOOT-5264|BOOT-5263|BOOT-5262|BOOT-5170|BOOT-5165|BOOT-5159|BOOT-5126|BOOT-5261|BOOT-5124|BOOT-5117|BOOT-5106|BOOT-5102|PLGN-0008| +finish=true diff --git a/raw_scans/11_gcp_debian_9/lynis-report-2.dat b/raw_scans/11_gcp_debian_9/lynis-report-2.dat new file mode 100644 index 0000000..9a7bdbd --- /dev/null +++ b/raw_scans/11_gcp_debian_9/lynis-report-2.dat @@ -0,0 +1,643 @@ +# Lynis Report +report_version_major=1 +report_version_minor=0 +report_datetime_start=2021-01-07 17:44:59 +auditor=[Not Specified] +lynis_version=3.0.3 +os=Linux +os_name=Debian +os_fullname=Debian GNU/Linux 9 (stretch) +os_version=9 +linux_version=Debian +os_kernel_version=4.9.0 +os_kernel_version_full=4.9.0-14-amd64 +hostname=debian-9 +test_category=all +test_group=all +plugin_directory=./plugins +lynis_update_available=0 +binaries_count=834 +binaries_suid_count=/bin/mount /bin/ping /bin/ping4 /bin/ping6 /bin/su /bin/umount /usr/bin/chfn /usr/bin/chsh /usr/bin/gpasswd /usr/bin/newgrp /usr/bin/passwd /usr/bin/sg /usr/bin/sudo /usr/bin/sudoedit +binaries_sgid_count=/sbin/unix_chkpwd /usr/bin/bsd-write /usr/bin/chage /usr/bin/crontab /usr/bin/expiry /usr/bin/screen /usr/bin/ssh-agent /usr/bin/wall /usr/bin/write +binary_paths=/bin,/sbin,/usr/bin,/usr/sbin,/usr/local/bin,/usr/local/sbin +vm=1 +vmtype=kvm +container=0 +systemd=1 +plugin_enabled_phase1[]=pam|1.0.5| +authentication_two_factor_enabled=0 +authentication_two_factor_required=0 +plugin_enabled_phase1[]=systemd|1.0.4| +systemctl_exit_code=0 +systemd_version=232 +systemd_builtin_components=+PAM,+AUDIT,+SELINUX,+IMA,+APPARMOR,+SMACK,+SYSVINIT,+UTMP,+LIBCRYPTSETUP,+GCRYPT,+GNUTLS,+ACL,+XZ,+LZ4,+SECCOMP,+BLKID,+ELFUTILS,+KMOD,+IDN +systemd_unit_file[]=proc-sys-fs-binfmt_misc.automount|static| +systemd_unit_file[]=-.mount|generated| +systemd_unit_file[]=dev-hugepages.mount|static| +systemd_unit_file[]=dev-mqueue.mount|static| +systemd_unit_file[]=proc-sys-fs-binfmt_misc.mount|static| +systemd_unit_file[]=sys-fs-fuse-connections.mount|static| +systemd_unit_file[]=sys-kernel-config.mount|static| +systemd_unit_file[]=sys-kernel-debug.mount|static| +systemd_unit_file[]=acpid.path|enabled| +systemd_unit_file[]=systemd-ask-password-console.path|static| +systemd_unit_file[]=systemd-ask-password-wall.path|static| +systemd_unit_file[]=acpid.service|disabled| +systemd_unit_file[]=apt-daily-upgrade.service|static| +systemd_unit_file[]=apt-daily.service|static| +systemd_unit_file[]=autovt@.service|enabled| +systemd_unit_file[]=bootlogd.service|masked| +systemd_unit_file[]=bootlogs.service|masked| +systemd_unit_file[]=bootmisc.service|masked| +systemd_unit_file[]=checkfs.service|masked| +systemd_unit_file[]=checkroot-bootclean.service|masked| +systemd_unit_file[]=checkroot.service|masked| +systemd_unit_file[]=console-getty.service|disabled| +systemd_unit_file[]=container-getty@.service|static| +systemd_unit_file[]=cron.service|enabled| +systemd_unit_file[]=cryptdisks-early.service|masked| +systemd_unit_file[]=cryptdisks.service|masked| +systemd_unit_file[]=dbus-org.freedesktop.hostname1.service|static| +systemd_unit_file[]=dbus-org.freedesktop.locale1.service|static| +systemd_unit_file[]=dbus-org.freedesktop.login1.service|static| +systemd_unit_file[]=dbus-org.freedesktop.network1.service|disabled| +systemd_unit_file[]=dbus-org.freedesktop.resolve1.service|disabled| +systemd_unit_file[]=dbus-org.freedesktop.timedate1.service|static| +systemd_unit_file[]=debug-shell.service|disabled| +systemd_unit_file[]=emergency.service|static| +systemd_unit_file[]=expand-root.service|enabled| +systemd_unit_file[]=fuse.service|masked| +systemd_unit_file[]=getty-static.service|static| +systemd_unit_file[]=getty@.service|enabled| +systemd_unit_file[]=google-guest-agent.service|enabled| +systemd_unit_file[]=google-osconfig-agent.service|enabled| +systemd_unit_file[]=google-oslogin-cache.service|static| +systemd_unit_file[]=google-shutdown-scripts.service|enabled| +systemd_unit_file[]=google-startup-scripts.service|enabled| +systemd_unit_file[]=halt.service|masked| +systemd_unit_file[]=hostname.service|masked| +systemd_unit_file[]=hwclock.service|masked| +systemd_unit_file[]=ifup@.service|static| +systemd_unit_file[]=initrd-cleanup.service|static| +systemd_unit_file[]=initrd-parse-etc.service|static| +systemd_unit_file[]=initrd-switch-root.service|static| +systemd_unit_file[]=initrd-udevadm-cleanup-db.service|static| +systemd_unit_file[]=killprocs.service|masked| +systemd_unit_file[]=kmod-static-nodes.service|static| +systemd_unit_file[]=kmod.service|static| +systemd_unit_file[]=module-init-tools.service|static| +systemd_unit_file[]=motd.service|masked| +systemd_unit_file[]=mountall-bootclean.service|masked| +systemd_unit_file[]=mountall.service|masked| +systemd_unit_file[]=mountdevsubfs.service|masked| +systemd_unit_file[]=mountkernfs.service|masked| +systemd_unit_file[]=mountnfs-bootclean.service|masked| +systemd_unit_file[]=mountnfs.service|masked| +systemd_unit_file[]=networking.service|enabled| +systemd_unit_file[]=ntp.service|generated| +systemd_unit_file[]=procps.service|static| +systemd_unit_file[]=quotaon.service|static| +systemd_unit_file[]=rc-local.service|static| +systemd_unit_file[]=rc.local.service|static| +systemd_unit_file[]=rc.service|masked| +systemd_unit_file[]=rcS.service|masked| +systemd_unit_file[]=reboot.service|masked| +systemd_unit_file[]=rescue.service|static| +systemd_unit_file[]=rmnologin.service|masked| +systemd_unit_file[]=rsync.service|enabled| +systemd_unit_file[]=rsyslog.service|enabled| +systemd_unit_file[]=screen-cleanup.service|masked| +systemd_unit_file[]=sendsigs.service|masked| +systemd_unit_file[]=serial-getty@.service|disabled| +systemd_unit_file[]=single.service|masked| +systemd_unit_file[]=ssh-generate-hostkeys.service|enabled| +systemd_unit_file[]=ssh.service|enabled| +systemd_unit_file[]=ssh@.service|static| +systemd_unit_file[]=sshd.service|enabled| +systemd_unit_file[]=stop-bootlogd-single.service|masked| +systemd_unit_file[]=stop-bootlogd.service|masked| +systemd_unit_file[]=sudo.service|disabled| +systemd_unit_file[]=syslog.service|enabled| +systemd_unit_file[]=systemd-ask-password-console.service|static| +systemd_unit_file[]=systemd-ask-password-wall.service|static| +systemd_unit_file[]=systemd-backlight@.service|static| +systemd_unit_file[]=systemd-binfmt.service|static| +systemd_unit_file[]=systemd-exit.service|static| +systemd_unit_file[]=systemd-fsck-root.service|static| +systemd_unit_file[]=systemd-fsck@.service|static| +systemd_unit_file[]=systemd-fsckd.service|static| +systemd_unit_file[]=systemd-halt.service|static| +systemd_unit_file[]=systemd-hibernate-resume@.service|static| +systemd_unit_file[]=systemd-hibernate.service|static| +systemd_unit_file[]=systemd-hostnamed.service|static| +systemd_unit_file[]=systemd-hwdb-update.service|static| +systemd_unit_file[]=systemd-hybrid-sleep.service|static| +systemd_unit_file[]=systemd-initctl.service|static| +systemd_unit_file[]=systemd-journal-flush.service|static| +systemd_unit_file[]=systemd-journald.service|static| +systemd_unit_file[]=systemd-kexec.service|static| +systemd_unit_file[]=systemd-localed.service|static| +systemd_unit_file[]=systemd-logind.service|static| +systemd_unit_file[]=systemd-machine-id-commit.service|static| +systemd_unit_file[]=systemd-modules-load.service|static| +systemd_unit_file[]=systemd-networkd-wait-online.service|disabled| +systemd_unit_file[]=systemd-networkd.service|disabled| +systemd_unit_file[]=systemd-poweroff.service|static| +systemd_unit_file[]=systemd-quotacheck.service|static| +systemd_unit_file[]=systemd-random-seed.service|static| +systemd_unit_file[]=systemd-reboot.service|static| +systemd_unit_file[]=systemd-remount-fs.service|static| +systemd_unit_file[]=systemd-resolved.service|disabled| +systemd_unit_file[]=systemd-rfkill.service|static| +systemd_unit_file[]=systemd-suspend.service|static| +systemd_unit_file[]=systemd-sysctl.service|static| +systemd_unit_file[]=systemd-timedated.service|static| +systemd_unit_file[]=systemd-timesyncd.service|enabled| +systemd_unit_file[]=systemd-tmpfiles-clean.service|static| +systemd_unit_file[]=systemd-tmpfiles-setup-dev.service|static| +systemd_unit_file[]=systemd-tmpfiles-setup.service|static| +systemd_unit_file[]=systemd-udev-settle.service|static| +systemd_unit_file[]=systemd-udev-trigger.service|static| +systemd_unit_file[]=systemd-udevd.service|static| +systemd_unit_file[]=systemd-update-utmp-runlevel.service|static| +systemd_unit_file[]=systemd-update-utmp.service|static| +systemd_unit_file[]=systemd-user-sessions.service|static| +systemd_unit_file[]=udev.service|static| +systemd_unit_file[]=umountfs.service|masked| +systemd_unit_file[]=umountnfs.service|masked| +systemd_unit_file[]=umountroot.service|masked| +systemd_unit_file[]=unattended-upgrades.service|enabled| +systemd_unit_file[]=urandom.service|static| +systemd_unit_file[]=user@.service|static| +systemd_unit_file[]=uuidd.service|indirect| +systemd_unit_file[]=x11-common.service|masked| +systemd_unit_file[]=machine.slice|static| +systemd_unit_file[]=system.slice|static| +systemd_unit_file[]=user.slice|static| +systemd_unit_file[]=acpid.socket|enabled| +systemd_unit_file[]=ssh.socket|disabled| +systemd_unit_file[]=syslog.socket|static| +systemd_unit_file[]=systemd-fsckd.socket|static| +systemd_unit_file[]=systemd-initctl.socket|static| +systemd_unit_file[]=systemd-journald-audit.socket|static| +systemd_unit_file[]=systemd-journald-dev-log.socket|static| +systemd_unit_file[]=systemd-journald.socket|static| +systemd_unit_file[]=systemd-networkd.socket|disabled| +systemd_unit_file[]=systemd-rfkill.socket|static| +systemd_unit_file[]=systemd-udevd-control.socket|static| +systemd_unit_file[]=systemd-udevd-kernel.socket|static| +systemd_unit_file[]=uuidd.socket|enabled| +systemd_unit_file[]=basic.target|static| +systemd_unit_file[]=bluetooth.target|static| +systemd_unit_file[]=busnames.target|static| +systemd_unit_file[]=cryptsetup-pre.target|static| +systemd_unit_file[]=cryptsetup.target|static| +systemd_unit_file[]=ctrl-alt-del.target|disabled| +systemd_unit_file[]=default.target|static| +systemd_unit_file[]=emergency.target|static| +systemd_unit_file[]=exit.target|disabled| +systemd_unit_file[]=final.target|static| +systemd_unit_file[]=getty.target|static| +systemd_unit_file[]=graphical.target|static| +systemd_unit_file[]=halt.target|disabled| +systemd_unit_file[]=hibernate.target|static| +systemd_unit_file[]=hybrid-sleep.target|static| +systemd_unit_file[]=initrd-fs.target|static| +systemd_unit_file[]=initrd-root-device.target|static| +systemd_unit_file[]=initrd-root-fs.target|static| +systemd_unit_file[]=initrd-switch-root.target|static| +systemd_unit_file[]=initrd.target|static| +systemd_unit_file[]=kexec.target|disabled| +systemd_unit_file[]=local-fs-pre.target|static| +systemd_unit_file[]=local-fs.target|static| +systemd_unit_file[]=multi-user.target|static| +systemd_unit_file[]=network-online.target|static| +systemd_unit_file[]=network-pre.target|static| +systemd_unit_file[]=network.target|static| +systemd_unit_file[]=nss-lookup.target|static| +systemd_unit_file[]=nss-user-lookup.target|static| +systemd_unit_file[]=paths.target|static| +systemd_unit_file[]=poweroff.target|disabled| +systemd_unit_file[]=printer.target|static| +systemd_unit_file[]=reboot.target|disabled| +systemd_unit_file[]=remote-fs-pre.target|static| +systemd_unit_file[]=remote-fs.target|enabled| +systemd_unit_file[]=rescue.target|disabled| +systemd_unit_file[]=rpcbind.target|static| +systemd_unit_file[]=runlevel0.target|disabled| +systemd_unit_file[]=runlevel1.target|disabled| +systemd_unit_file[]=runlevel2.target|static| +systemd_unit_file[]=runlevel3.target|static| +systemd_unit_file[]=runlevel4.target|static| +systemd_unit_file[]=runlevel5.target|static| +systemd_unit_file[]=runlevel6.target|disabled| +systemd_unit_file[]=shutdown.target|static| +systemd_unit_file[]=sigpwr.target|static| +systemd_unit_file[]=sleep.target|static| +systemd_unit_file[]=slices.target|static| +systemd_unit_file[]=smartcard.target|static| +systemd_unit_file[]=sockets.target|static| +systemd_unit_file[]=sound.target|static| +systemd_unit_file[]=suspend.target|static| +systemd_unit_file[]=swap.target|static| +systemd_unit_file[]=sysinit.target|static| +systemd_unit_file[]=system-update.target|static| +systemd_unit_file[]=time-sync.target|static| +systemd_unit_file[]=timers.target|static| +systemd_unit_file[]=umount.target|static| +systemd_unit_file[]=apt-daily-upgrade.timer|enabled| +systemd_unit_file[]=apt-daily.timer|enabled| +systemd_unit_file[]=google-oslogin-cache.timer|enabled| +systemd_unit_file[]=systemd-tmpfiles-clean.timer|static| +journal_bootlogs=1 +journal_oldest_bootdate=2021-01-07 +journal_contains_errors=0 +journal_disk_size=4.9M +journal_meta_data=FilePath:/run/log/journal/a66b25c544c2fc51bc4a5dae2b809331/system.journal,FileID:47ead12e84e34f35a4a153136095e81f,MachineID:a66b25c544c2fc51bc4a5dae2b809331,BootID:302e988abf38400abe8d2aa832f77418,SequentialNumberID:47ead12e84e34f35a4a153136095e81f,State:ONLINE,CompatibleFlags:,IncompatibleFlags:COMPRESSED-LZ4,Headersize:240,Arenasize:5185296,DataHashTableSize:9002,FieldHashTableSize:333,RotateSuggested:no,HeadSequentialNumber:1(1),TailSequentialNumber:619(26b),HeadRealtimeTimestamp:Thu2021-01-0717:20:14UTC(5b852a7235495),TailRealtimeTimestamp:Thu2021-01-0717:44:58UTC(5b852ff9d1705),TailMonotonicTimestamp:24min46.018s(5892d7f1),Objects:2688,EntryObjects:619,DataObjects:1460,DataHashTableFill:16.2%,FieldObjects:49,FieldHashTableFill:14.7%,TagObjects:0,EntryArrayObjects:558,Diskusage:4.9M, +systemd_status=running +systemd_unit_not_found[]=tmp.mount +systemd_unit_not_found[]=apparmor.service +systemd_unit_not_found[]=auditd.service +systemd_unit_not_found[]=display-manager.service +systemd_unit_not_found[]=network.service +systemd_unit_not_found[]=NetworkManager.service +systemd_unit_not_found[]=plymouth-quit-wait.service +systemd_unit_not_found[]=plymouth-start.service +systemd_unit_not_found[]=systemd-sysusers.service +systemd_unit_not_found[]=systemd-update-done.service +systemd_unit_not_found[]=systemd-vconsole-setup.service +systemd_unit_not_found[]=dbus.socket +systemd_service_not_found[]=apparmor.service +systemd_service_not_found[]=auditd.service +systemd_service_not_found[]=display-manager.service +systemd_service_not_found[]=network.service +systemd_service_not_found[]=NetworkManager.service +systemd_service_not_found[]=plymouth-quit-wait.service +systemd_service_not_found[]=plymouth-start.service +systemd_service_not_found[]=systemd-sysusers.service +systemd_service_not_found[]=systemd-update-done.service +systemd_service_not_found[]=systemd-vconsole-setup.service +journal_coredumps_lastday=0 +plugins_enabled=1 +hostid=466ad4432c544245a47e41f2a41d247da252b5ad +hostid2=3ecc6b2399833ea32698bac064848b8804f3ad85ccd0987d01ced99b6335024b +suggestion[]=BOOT-5122|Set a password on GRUB boot loader to prevent altering boot configuration (e.g. boot in single user mode without password)|-|-| +running_service_tool=systemctl +running_service[]=acpid +running_service[]=cron +running_service[]=getty@tty1 +running_service[]=getty@tty2 +running_service[]=getty@tty3 +running_service[]=getty@tty4 +running_service[]=getty@tty5 +running_service[]=getty@tty6 +running_service[]=google-guest-agent +running_service[]=google-osconfig-agent +running_service[]=ntp +running_service[]=rsyslog +running_service[]=serial-getty@ttyS0 +running_service[]=ssh +running_service[]=systemd-journald +running_service[]=systemd-udevd +boot_service_tool=systemctl +boot_service[]=autovt@ +boot_service[]=cron +boot_service[]=expand-root +boot_service[]=getty@ +boot_service[]=google-guest-agent +boot_service[]=google-osconfig-agent +boot_service[]=google-shutdown-scripts +boot_service[]=google-startup-scripts +boot_service[]=networking +boot_service[]=rsync +boot_service[]=rsyslog +boot_service[]=ssh-generate-hostkeys +boot_service[]=ssh +boot_service[]=sshd +boot_service[]=syslog +boot_service[]=systemd-timesyncd +boot_service[]=unattended-upgrades +uptime_in_seconds=1491 +uptime_in_days=0 +boot_loader=GRUB2 +boot_uefi_booted=0 +boot_uefi_booted_secure=0 +service_manager=systemd +linux_default_runlevel=5 +cpu_pae=1 +cpu_nx=1 +linux_kernel_release=4.9.0-14-amd64 +linux_kernel_version=#1 SMP Debian 4.9.240-2 (2020-10-30) +linux_kernel_type=modular +loaded_kernel_module[]=ablk_helper +loaded_kernel_module[]=aes_x86_64 +loaded_kernel_module[]=aesni_intel +loaded_kernel_module[]=autofs4 +loaded_kernel_module[]=binfmt_misc +loaded_kernel_module[]=button +loaded_kernel_module[]=crc16 +loaded_kernel_module[]=crc32_pclmul +loaded_kernel_module[]=crc32c_generic +loaded_kernel_module[]=crc32c_intel +loaded_kernel_module[]=crct10dif_pclmul +loaded_kernel_module[]=cryptd +loaded_kernel_module[]=dm_mod +loaded_kernel_module[]=ecb +loaded_kernel_module[]=edac_core +loaded_kernel_module[]=evdev +loaded_kernel_module[]=ext4 +loaded_kernel_module[]=fscrypto +loaded_kernel_module[]=gf128mul +loaded_kernel_module[]=ghash_clmulni_intel +loaded_kernel_module[]=glue_helper +loaded_kernel_module[]=i2c_piix4 +loaded_kernel_module[]=inet_diag +loaded_kernel_module[]=intel_rapl_perf +loaded_kernel_module[]=ip_tables +loaded_kernel_module[]=iptable_filter +loaded_kernel_module[]=iptable_nat +loaded_kernel_module[]=jbd2 +loaded_kernel_module[]=lrw +loaded_kernel_module[]=mbcache +loaded_kernel_module[]=nf_conntrack +loaded_kernel_module[]=nf_conntrack_ipv4 +loaded_kernel_module[]=nf_defrag_ipv4 +loaded_kernel_module[]=nf_nat +loaded_kernel_module[]=nf_nat_ipv4 +loaded_kernel_module[]=psmouse +loaded_kernel_module[]=pvpanic +loaded_kernel_module[]=rng_core +loaded_kernel_module[]=sb_edac +loaded_kernel_module[]=scsi_mod +loaded_kernel_module[]=sd_mod +loaded_kernel_module[]=serio_raw +loaded_kernel_module[]=sg +loaded_kernel_module[]=tcp_diag +loaded_kernel_module[]=udp_diag +loaded_kernel_module[]=virtio +loaded_kernel_module[]=virtio_balloon +loaded_kernel_module[]=virtio_net +loaded_kernel_module[]=virtio_pci +loaded_kernel_module[]=virtio_ring +loaded_kernel_module[]=virtio_rng +loaded_kernel_module[]=virtio_scsi +loaded_kernel_module[]=x_tables +linux_config_file=/boot/config-4.9.0-14-amd64 +linux_kernel_io_scheduler[]=cfq +suggestion[]=KRNL-5820|If not required, consider explicit disabling of core dump in /etc/security/limits.conf file|-|-| +memory_size=4050856 +memory_units=kB +auth_group_ids_unique=1 +auth_group_names_unique=1 +suggestion[]=AUTH-9230|Configure password hashing rounds in /etc/login.defs|-|-| +real_user[]=root,0 +real_user[]=Tobias,1000 +real_user[]=ktdw73,1001 +real_user[]=ftpuser,1002 +suggestion[]=AUTH-9262|Install a PAM module for password strength testing like pam_cracklib or pam_passwdqc|-|-| +pam_module[]=/lib/x86_64-linux-gnu/security/pam_access.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_debug.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_deny.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_echo.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_env.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_exec.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_faildelay.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_filter.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_ftp.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_group.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_issue.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_keyinit.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_lastlog.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_limits.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_listfile.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_localuser.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_loginuid.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_mail.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_mkhomedir.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_motd.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_namespace.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_nologin.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_oslogin_admin.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_oslogin_login.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_permit.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_pwhistory.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_rhosts.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_rootok.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_securetty.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_selinux.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_sepermit.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_shells.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_stress.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_succeed_if.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_tally.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_tally2.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_time.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_timestamp.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_tty_audit.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_umask.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_unix.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_userdb.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_warn.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_wheel.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_xauth.so +locked_account[]=Tobias +locked_account[]=ftpuser +locked_account[]=ktdw73 +suggestion[]=AUTH-9284|Look at the locked accounts and consider removing them|-|-| +suggestion[]=AUTH-9286|Configure minimum password age in /etc/login.defs|-|-| +suggestion[]=AUTH-9286|Configure maximum password age in /etc/login.defs|-|-| +manual_event[]=AUTH-9328:03 +suggestion[]=AUTH-9328|Default umask in /etc/login.defs could be more strict like 027|-|-| +auth_failed_logins_tooling[]=/etc/login.defs +auth_failed_logins_logged=1 +ldap_auth_enabled=0 +ldap_pam_enabled=0 +password_min_days=-1 +password_max_days=-1 +available_shell[]=/bin/sh +available_shell[]=/bin/dash +available_shell[]=/bin/bash +available_shell[]=/bin/rbash +available_shell[]=/usr/bin/screen +session_timeout_enabled=0 +suggestion[]=FILE-6310|To decrease the impact of a full /home file system, place /home on a separate partition|-|-| +suggestion[]=FILE-6310|To decrease the impact of a full /tmp file system, place /tmp on a separate partition|-|-| +suggestion[]=FILE-6310|To decrease the impact of a full /var file system, place /var on a separate partition|-|-| +file_systems_ext[]=/|ext4| +suggestion[]=FILE-6430|Consider disabling unused kernel modules|/etc/modprobe.d/blacklist.conf|Add 'install MODULENAME /bin/true' (without quotes)| +suggestion[]=USB-1000|Disable drivers like USB storage when not used, to prevent unauthorized storage or data theft|-|-| +suggestion[]=STRG-1846|Disable drivers like firewire storage when not used, to prevent unauthorized storage or data theft|-|-| +resolv_conf_domain=europe-west3-c.c.cc2020-tobiaswieck.internal +resolv_conf_search_domain[]=europe-west3-c.c.cc2020-tobiaswieck.internal. +domainname=europe-west3-c.c.cc2020-tobiaswieck.internal +localhost-mapped-to=::1 +name_cache_used=0 +package_manager[]=dpkg +installed_packages=282 +suggestion[]=PKGS-7370|Install debsums utility for the verification of packages with known good database.|-|-| +suggestion[]=PKGS-7394|Install package apt-show-versions for patch management purposes|-|-| +installed_kernel_packages=1 +unattended_upgrade_tool[]=unattended-upgrade +unattended_upgrade_option_available=1 +ipv6_mode=auto +ipv6_only=0 +nameserver[]=169.254.169.254 +default_gateway[]=10.156.0.1 +network_interface[]=lo +network_interface[]=eth0 +network_mac_address[]=42:01:0a:9c:00:06 +network_ipv4_address[]=10.156.0.6 +network_ipv4_address[]=127.0.0.1 +network_ipv6_address[]=fe80::4001:aff:fe9c:6 +network_ipv6_address[]=::1 +network_listen[]=raw,ss,v1|udp|*:68|dhclient| +network_listen[]=raw,ss,v1|udp|10.156.0.6:123|ntpd| +network_listen[]=raw,ss,v1|udp|127.0.0.1:123|ntpd| +network_listen[]=raw,ss,v1|udp|*:123|ntpd| +network_listen[]=raw,ss,v1|udp|fe80::4001:aff:fe9c:6%eth0:123|ntpd| +network_listen[]=raw,ss,v1|udp|::1:123|ntpd| +network_listen[]=raw,ss,v1|udp|:::123|ntpd| +network_listen[]=raw,ss,v1|tcp|*:22|sshd| +network_listen[]=raw,ss,v1|tcp|:::22|sshd| +suggestion[]=NETW-3200|Determine if protocol 'dccp' is really needed on this system|-|-| +uncommon_network_protocol_enabled=dccp +suggestion[]=NETW-3200|Determine if protocol 'sctp' is really needed on this system|-|-| +uncommon_network_protocol_enabled=sctp +suggestion[]=NETW-3200|Determine if protocol 'rds' is really needed on this system|-|-| +uncommon_network_protocol_enabled=rds +suggestion[]=NETW-3200|Determine if protocol 'tipc' is really needed on this system|-|-| +uncommon_network_protocol_enabled=tipc +imap_daemon= +pop3_daemon= +smtp_daemon= +firewall_software[]=iptables +warning[]=FIRE-4512|iptables module(s) loaded, but no rules active|-|-| +firewall_no_logging[]=iptables +manual[]=Verify if there is a formal process for testing and applying firewall rules +manual[]=Verify all traffic is filtered the right way between the different security zones +manual[]=Verify if a list is available with all required services +manual[]=Make sure an explicit deny all is the default policy for all unmatched traffic +suggestion[]=SSH-7408|Consider hardening SSH configuration|AllowTcpForwarding (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option AllowTcpForwarding;field:AllowTcpForwarding;prefval:NO;value:YES;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|ClientAliveCountMax (set 3 to 2)|-| +details[]=SSH-7408|sshd|desc:sshd option ClientAliveCountMax;field:ClientAliveCountMax;prefval:2;value:3;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|Compression (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option Compression;field:Compression;prefval:NO;value:YES;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|LogLevel (set INFO to VERBOSE)|-| +details[]=SSH-7408|sshd|desc:sshd option LogLevel;field:LogLevel;prefval:VERBOSE;value:INFO;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|MaxAuthTries (set 6 to 3)|-| +details[]=SSH-7408|sshd|desc:sshd option MaxAuthTries;field:MaxAuthTries;prefval:3;value:6;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|MaxSessions (set 10 to 2)|-| +details[]=SSH-7408|sshd|desc:sshd option MaxSessions;field:MaxSessions;prefval:2;value:10;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|Port (set 22 to )|-| +details[]=SSH-7408|sshd|desc:sshd option Port;field:Port;prefval:;value:22;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|TCPKeepAlive (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option TCPKeepAlive;field:TCPKeepAlive;prefval:NO;value:YES;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|X11Forwarding (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option X11Forwarding;field:X11Forwarding;prefval:NO;value:YES;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|AllowAgentForwarding (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option AllowAgentForwarding;field:AllowAgentForwarding;prefval:NO;value:YES;| +ssh_daemon_running=1 +openssh_daemon_running=1 +syslog_daemon_present=1 +syslog_daemon[]=systemd-journal +syslog_daemon_present=1 +syslog_daemon[]=rsyslog +log_directory[]=/var/log +log_directory[]=/var/log/apt +log_directory[]=/var/log/unattended-upgrades +remote_syslog_configured=0 +suggestion[]=LOGG-2154|Enable logging to an external logging host for archiving purposes and additional protection|-|-| +log_directory[]=/var/log +log_rotation_config_found=1 +log_rotation_tool=logrotate +suggestion[]=BANN-7126|Add a legal banner to /etc/issue, to warn unauthorized users|-|-| +weak_banner_file[]=/etc/issue +suggestion[]=BANN-7130|Add legal banner to /etc/issue.net, to warn unauthorized users|-|-| +crond_running=1 +scheduler[]=crond +cronjob[]=17,*,*,*,*,root,cd,/,&&,run-parts,--report,/etc/cron.hourly +cronjob[]=25,6,*,*,*,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.daily,) +cronjob[]=47,6,*,*,7,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.weekly,) +cronjob[]=52,6,1,*,*,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.monthly,) +cronjob[]=/etc/cron.daily/logrotate +cronjob[]=/etc/cron.daily/ntp +cronjob[]=/etc/cron.daily/apt-compat +cronjob[]=/etc/cron.daily/man-db +cronjob[]=/etc/cron.daily/dpkg +cronjob[]=/etc/cron.daily/bsdmainutils +cronjob[]=/etc/cron.daily/passwd +cronjob[]=/etc/cron.weekly/man-db +suggestion[]=ACCT-9622|Enable process accounting|-|-| +suggestion[]=ACCT-9626|Enable sysstat to collect accounting (no results)|-|-| +suggestion[]=ACCT-9628|Enable auditd to collect audit information|-|-| +linux_auditd_running=0 +audit_daemon_running=0 +suggestion[]=TIME-3128|Check ntpq peers output for time source candidates|-|-| +ntp_version=2 +tz_variable_empty=1 +ntp_config_file[]=/etc/ntp.conf +ntp_config_found=1 +ntp_config_type_daemon=1 +ntp_config_type_eventbased=0 +ntp_config_type_scheduled=0 +ntp_config_type_startup=0 +ntp_daemon=ntpd +ntp_daemon_running=1 +certificate[]=/etc/ssl/certs/ca-certificates.crt|0|cn:subject=CN = ACCVRAIZ1, OU = PKIACCV, O = ACCV, C = ES;notafter:Dec 31 09:37:37 2030 GMT;| +certificates=127 +kernel_entropy=1484 +rng_found=0 +framework_grsecurity=0 +framework_selinux=0 +suggestion[]=FINT-4350|Install a file integrity tool to monitor changes to critical and sensitive files|-|-| +suggestion[]=TOOL-5002|Determine if automation tools are present for system management|-|-| +automation_tool_present=0 +malware_scanner_installed=0 +suggestion[]=FILE-7524|Consider restricting file permissions|See screen output or log file|text:Use chmod to change file permissions| +home_directory[]=/bin +home_directory[]=/dev +home_directory[]=/home/Tobias +home_directory[]=/home/ftpuser +home_directory[]=/home/ktdw73 +home_directory[]=/root +home_directory[]=/run/sshd +home_directory[]=/run/systemd +home_directory[]=/run/systemd/netif +home_directory[]=/run/uuidd +home_directory[]=/usr/games +home_directory[]=/usr/sbin +home_directory[]=/var/backups +home_directory[]=/var/cache/man +home_directory[]=/var/mail +suggestion[]=HOME-9304|Double check the permissions of home directories as some might be not strict enough.|-|-| +details[]=KRNL-6000|sysctl|desc:Disable loading of TTY line disciplines;field:dev.tty.ldisc_autoload;prefval:0;value:1;| +details[]=KRNL-6000|sysctl|desc:Restrict FIFO special device creation behavior;field:fs.protected_fifos;prefval:2;value:0;| +details[]=KRNL-6000|sysctl|desc:Restrict regular files creation behavior;field:fs.protected_regular;prefval:2;value:0;| +details[]=KRNL-6000|sysctl|desc:No description;field:kernel.core_uses_pid;prefval:1;value:0;| +details[]=KRNL-6000|sysctl|desc:Restrict access to kernel symbols;field:kernel.kptr_restrict;prefval:2;value:0;| +details[]=KRNL-6000|sysctl|desc:Restrict module loading once this sysctl value is loaded;field:kernel.modules_disabled;prefval:1;value:0;| +details[]=KRNL-6000|sysctl|desc:Disable magic SysRQ;field:kernel.sysrq;prefval:0;value:438;| +details[]=KRNL-6000|sysctl|desc:Restrict BPF for unprivileged users;field:kernel.unprivileged_bpf_disabled;prefval:1;value:0;| +details[]=KRNL-6000|sysctl|desc:Disable process tracing for everyone;field:kernel.yama.ptrace_scope;prefval:1 2 3;value:0;| +details[]=KRNL-6000|sysctl|desc:Hardened BPF JIT compilation;field:net.core.bpf_jit_harden;prefval:2;value:0;| +details[]=KRNL-6000|sysctl|desc:Disable/Ignore ICMP routing redirects;field:net.ipv6.conf.all.accept_redirects;prefval:0;value:1;| +details[]=KRNL-6000|sysctl|desc:Disable/Ignore ICMP routing redirects;field:net.ipv6.conf.default.accept_redirects;prefval:0;value:1;| +suggestion[]=KRNL-6000|One or more sysctl values differ from the scan profile and could be tweaked||Change sysctl value or disable test (skip-test=KRNL-6000:)| +suggestion[]=HRDN-7230|Harden the system by installing at least one malware scanner, to perform periodic file system scans|-|Install a tool like rkhunter, chkrootkit, OSSEC| +compiler_installed=0 +lynis_tests_done=259 +report_datetime_end=2021-01-07 17:45:20 +dhcp_client_running=1 +arpwatch_running=0 +firewall_active=1 +firewall_empty_ruleset=1 +firewall_installed=1 +installed_packages_array=|acpi-support-base,0.142-8|acpid,1:2.0.28-1+b1|adduser,3.115|apt,1.4.11|apt-utils,1.4.11|base-files,9.9+deb9u13|base-passwd,3.5.43|bash,4.4-5|bind9-host,1:9.10.3.dfsg.P4-12.3+deb9u7|bsdmainutils,9.0.12+nmu1|bsdutils,1:2.29.2-1+deb9u1|busybox,1:1.22.0-19+b3|ca-certificates,20200601~deb9u1|cloud-guest-utils,0.29-1|coreutils,8.26-3|cpio,2.11+dfsg-6|cron,3.0pl1-128+deb9u1|curl,7.52.1-5+deb9u13|dash,0.5.8-2.4|debconf,1.5.61|debconf-i18n,1.5.61|debian-archive-keyring,2017.5+deb9u1|debianutils,4.8.1.1|dh-python,2.20170125|diffutils,1:3.5-3|distro-info-data,0.36|dmidecode,3.0-4|dmsetup,2:1.02.137-2|dpkg,1.18.25|e2fslibs:amd64,1.43.4-2+deb9u2|e2fsprogs,1.43.4-2+deb9u2|ethtool,1:4.8-1+b1|file,1:5.30-1+deb9u3|findutils,4.6.0+git+20161106-2|gcc-6-base:amd64,6.3.0-18+deb9u1|gdisk,1.0.1-1|geoip-database,20170512-1|gettext-base,0.19.8.1-2+deb9u1|git,1:2.11.0-3+deb9u7|git-man,1:2.11.0-3+deb9u7|gnupg,2.1.18-8~deb9u4|gnupg-agent,2.1.18-8~deb9u4|google-cloud-packages-archive-keyring,1.2-350029030|google-cloud-sdk,322.0.0-0|google-compute-engine,1:20201207.00-g1|google-compute-engine-oslogin,1:20200925.00-g1+deb9|google-guest-agent,1:20201214.00-g1|google-osconfig-agent,1:20201214.00-g1|gpgv,2.1.18-8~deb9u4|grep,2.27-2|groff-base,1.22.3-9|grub-common,2.02~beta3-5+deb9u2|grub-pc,2.02~beta3-5+deb9u2|grub-pc-bin,2.02~beta3-5+deb9u2|grub2-common,2.02~beta3-5+deb9u2|gzip,1.6-5+b1|host,1:9.10.3.dfsg.P4-12.3+deb9u7|hostname,3.18+b1|ifupdown,0.8.19|init,1.48|init-system-helpers,1.48|initramfs-tools,0.130|initramfs-tools-core,0.130|iproute2,4.9.0-1+deb9u1|iptables,1.6.0+snapshot20161117-6|iputils-ping,3:20161105-1|isc-dhcp-client,4.3.5-3+deb9u1|isc-dhcp-common,4.3.5-3+deb9u1|klibc-utils,2.0.4-9|kmod,23-2|kpartx,0.6.4-5+deb9u1|less,481-2.1|libacl1:amd64,2.2.52-3+b1|libapparmor1:amd64,2.11.0-3+deb9u2|libapt-inst2.0:amd64,1.4.11|libapt-pkg5.0:amd64,1.4.11|libassuan0:amd64,2.4.3-2|libattr1:amd64,1:2.4.47-2+b2|libaudit-common,1:2.6.7-2|libaudit1:amd64,1:2.6.7-2|libbind9-140:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libblkid1:amd64,2.29.2-1+deb9u1|libbsd0:amd64,0.8.3-1|libbz2-1.0:amd64,1.0.6-8.1|libc-bin,2.24-11+deb9u4|libc-l10n,2.24-11+deb9u4|libc6:amd64,2.24-11+deb9u4|libcap-ng0:amd64,0.7.7-3+b1|libcap2:amd64,1:2.25-1|libcomerr2:amd64,1.43.4-2+deb9u2|libcryptsetup4:amd64,2:1.7.3-4|libcurl3-gnutls:amd64,7.52.1-5+deb9u13|libcurl3:amd64,7.52.1-5+deb9u13|libdb5.3:amd64,5.3.28-12+deb9u1|libdebconfclient0:amd64,0.227|libdevmapper1.02.1:amd64,2:1.02.137-2|libdns-export162,1:9.10.3.dfsg.P4-12.3+deb9u7|libdns162:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libedit2:amd64,3.1-20160903-3|libelf1:amd64,0.168-1|liberror-perl,0.17024-1|libestr0,0.1.10-2|libexpat1:amd64,2.2.0-2+deb9u3|libfastjson4:amd64,0.99.4-1|libfdisk1:amd64,2.29.2-1+deb9u1|libffi6:amd64,3.2.1-6|libfreetype6:amd64,2.6.3-3.2+deb9u2|libfuse2:amd64,2.9.7-1+deb9u2|libgcc1:amd64,1:6.3.0-18+deb9u1|libgcrypt20:amd64,1.7.6-2+deb9u3|libgdbm3:amd64,1.8.3-14|libgeoip1:amd64,1.6.9-4|libgmp10:amd64,2:6.1.2+dfsg-1|libgnutls30:amd64,3.5.8-5+deb9u5|libgpg-error0:amd64,1.26-2|libgpm2:amd64,1.20.4-6.2+b1|libgssapi-krb5-2:amd64,1.15-1+deb9u2|libhogweed4:amd64,3.3-1+b2|libicu57:amd64,57.1-6+deb9u4|libidn11:amd64,1.33-1+deb9u1|libidn2-0:amd64,0.16-1+deb9u1|libip4tc0:amd64,1.6.0+snapshot20161117-6|libip6tc0:amd64,1.6.0+snapshot20161117-6|libiptc0:amd64,1.6.0+snapshot20161117-6|libisc-export160,1:9.10.3.dfsg.P4-12.3+deb9u7|libisc160:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libisccc140:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libisccfg140:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libjson-c3:amd64,0.12.1-1.1+deb9u1|libk5crypto3:amd64,1.15-1+deb9u2|libkeyutils1:amd64,1.5.9-9|libklibc,2.0.4-9|libkmod2:amd64,23-2|libkrb5-3:amd64,1.15-1+deb9u2|libkrb5support0:amd64,1.15-1+deb9u2|libksba8:amd64,1.3.5-2|libldap-2.4-2:amd64,2.4.44+dfsg-5+deb9u6|libldap-common,2.4.44+dfsg-5+deb9u6|liblocale-gettext-perl,1.07-3+b1|liblogging-stdlog0:amd64,1.0.5-2+b2|liblognorm5:amd64,2.0.1-1.1+b1|liblwres141:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|liblz4-1:amd64,0.0~r131-2+b1|liblzma5:amd64,5.2.2-1.2+b1|libmagic-mgc,1:5.30-1+deb9u3|libmagic1:amd64,1:5.30-1+deb9u3|libmnl0:amd64,1.0.4-2|libmount1:amd64,2.29.2-1+deb9u1|libmpdec2:amd64,2.4.2-1|libncurses5:amd64,6.0+20161126-1+deb9u2|libncursesw5:amd64,6.0+20161126-1+deb9u2|libnetfilter-conntrack3:amd64,1.0.6-2|libnettle6:amd64,3.3-1+b2|libnewt0.52:amd64,0.52.19-1+b1|libnfnetlink0:amd64,1.0.1-3|libnghttp2-14:amd64,1.18.1-1+deb9u1|libnpth0:amd64,1.3-1|libopts25:amd64,1:5.18.12-3|libp11-kit0:amd64,0.23.3-2+deb9u1|libpam-modules-bin,1.1.8-3.6|libpam-modules:amd64,1.1.8-3.6|libpam-runtime,1.1.8-3.6|libpam0g:amd64,1.1.8-3.6|libparted2:amd64,3.2-17|libpcre3:amd64,2:8.39-3|libperl5.24:amd64,5.24.1-3+deb9u7|libpipeline1:amd64,1.4.1-2|libpng16-16:amd64,1.6.28-1+deb9u1|libpopt0:amd64,1.16-10+b2|libprocps6:amd64,2:3.3.12-3+deb9u1|libpsl5:amd64,0.17.0-3|libpython-stdlib:amd64,2.7.13-2|libpython2.7-minimal:amd64,2.7.13-2+deb9u4|libpython2.7-stdlib:amd64,2.7.13-2+deb9u4|libpython3-stdlib:amd64,3.5.3-1|libpython3.5-minimal:amd64,3.5.3-1+deb9u3|libpython3.5-stdlib:amd64,3.5.3-1+deb9u3|libreadline7:amd64,7.0-3|librtmp1:amd64,2.4+20151223.gitfa8646d.1-1+b1|libsasl2-2:amd64,2.1.27~101-g0780600+dfsg-3+deb9u1|libsasl2-modules-db:amd64,2.1.27~101-g0780600+dfsg-3+deb9u1|libseccomp2:amd64,2.3.1-2.1+deb9u1|libselinux1:amd64,2.6-3+b3|libsemanage-common,2.6-2|libsemanage1:amd64,2.6-2|libsepol1:amd64,2.6-2|libslang2:amd64,2.3.1-5|libsmartcols1:amd64,2.29.2-1+deb9u1|libsqlite3-0:amd64,3.16.2-5+deb9u3|libss2:amd64,1.43.4-2+deb9u2|libssh2-1:amd64,1.7.0-1+deb9u1|libssl1.0.2:amd64,1.0.2u-1~deb9u3|libssl1.1:amd64,1.1.0l-1~deb9u2|libstdc++6:amd64,6.3.0-18+deb9u1|libsystemd0:amd64,232-25+deb9u12|libtasn1-6:amd64,4.10-1.1+deb9u1|libtext-charwidth-perl,0.04-7+b5|libtext-iconv-perl,1.7-5+b4|libtext-wrapi18n-perl,0.06-7.1|libtinfo5:amd64,6.0+20161126-1+deb9u2|libudev1:amd64,232-25+deb9u12|libunistring0:amd64,0.9.6+really0.9.3-0.1|libustr-1.0-1:amd64,1.0.4-6|libuuid1:amd64,2.29.2-1+deb9u1|libwrap0:amd64,7.6.q-26|libxapian30:amd64,1.4.3-2+deb9u3|libxml2:amd64,2.9.4+dfsg1-2.2+deb9u3|libxtables12:amd64,1.6.0+snapshot20161117-6|linux-base,4.5|linux-image-4.9.0-14-amd64,4.9.246-2|linux-image-amd64,4.9+80+deb9u12|locales,2.24-11+deb9u4|login,1:4.4-4.1|logrotate,3.11.0-0.1|lsb-base,9.20161125|lsb-release,9.20161125|man-db,2.7.6.1-2|mawk,1.3.3-17+b3|mime-support,3.60|mount,2.29.2-1+deb9u1|multiarch-support,2.24-11+deb9u4|nano,2.7.4-1|ncurses-base,6.0+20161126-1+deb9u2|ncurses-bin,6.0+20161126-1+deb9u2|net-tools,1.60+git20161116.90da8a0-1|netbase,5.4|ntp,1:4.2.8p10+dfsg-3+deb9u2|nvme-cli,1.0-3|openssh-client,1:7.4p1-10+deb9u7|openssh-server,1:7.4p1-10+deb9u7|openssh-sftp-server,1:7.4p1-10+deb9u7|openssl,1.1.0l-1~deb9u2|parted,3.2-17|passwd,1:4.4-4.1|patch,2.7.5-1+deb9u2|perl,5.24.1-3+deb9u7|perl-base,5.24.1-3+deb9u7|perl-modules-5.24,5.24.1-3+deb9u7|pinentry-curses,1.0.0-2|procps,2:3.3.12-3+deb9u1|python,2.7.13-2|python-apt-common,1.4.3|python-crcmod,1.7-2+b2|python-minimal,2.7.13-2|python2.7,2.7.13-2+deb9u4|python2.7-minimal,2.7.13-2+deb9u4|python3,3.5.3-1|python3-apt,1.4.3|python3-minimal,3.5.3-1|python3.5,3.5.3-1+deb9u3|python3.5-minimal,3.5.3-1+deb9u3|readline-common,7.0-3|rename,0.20-4|rsync,3.1.2-1+deb9u2|rsyslog,8.24.0-1|screen,4.5.0-6|sed,4.4-1|sensible-utils,0.0.9+deb9u1|sgml-base,1.29|sudo,1.8.19p1-2.1+deb9u2|systemd,232-25+deb9u12|systemd-sysv,232-25+deb9u12|sysvinit-utils,2.88dsf-59.9|tar,1.29b-1.1|tasksel,3.39|tasksel-data,3.39|tzdata,2020e-0+deb9u1|ucf,3.0036|udev,232-25+deb9u12|unattended-upgrades,0.93.1+nmu1|util-linux,2.29.2-1+deb9u1|uuid-runtime,2.29.2-1+deb9u1|vim,2:8.0.0197-4+deb9u3|vim-common,2:8.0.0197-4+deb9u3|vim-runtime,2:8.0.0197-4+deb9u3|vim-tiny,2:8.0.0197-4+deb9u3|wget,1.18-5+deb9u3|whiptail,0.52.19-1+b1|xml-core,0.17|xxd,2:8.0.0197-4+deb9u3|xz-utils,5.2.2-1.2+b1|zlib1g:amd64,1:1.2.8.dfsg-5 +package_audit_tool=apt-get +package_audit_tool_found=1 +vulnerable_packages_found=0 +hardening_index=65 +tests_executed=HRDN-7231|HRDN-7230|HRDN-7222|HRDN-7220|KRNL-6000|HOME-9350|HOME-9310|HOME-9306|HOME-9304|HOME-9302|FILE-7524|MALW-3284|MALW-3282|MALW-3280|MALW-3278|MALW-3276|MALW-3275|TOOL-5190|TOOL-5126|TOOL-5130|TOOL-5122|TOOL-5120|TOOL-5102|TOOL-5002|FINT-4350|FINT-4338|FINT-4330|FINT-4328|FINT-4326|FINT-4322|FINT-4318|FINT-4314|FINT-4310|MACF-6290|RBAC-6272|MACF-6240|MACF-6232|MACF-6204|CONT-8102|CRYP-8005|CRYP-8004|CRYP-8002|CRYP-7930|CRYP-7902|TIME-3170|TIME-3148|TIME-3136|TIME-3132|TIME-3128|TIME-3124|TIME-3120|TIME-3116|TIME-3112|TIME-3104|ACCT-9636|ACCT-9628|ACCT-9626|ACCT-9622|SCHD-7718|SCHD-7704|SCHD-7702|BANN-7130|BANN-7128|BANN-7126|BANN-7124|INSE-8320|INSE-8318|INSE-8316|INSE-8314|INSE-8322|INSE-8310|INSE-8304|INSE-8300|INSE-8102|INSE-8100|INSE-8000|LOGG-2180|LOGG-2170|LOGG-2154|LOGG-2150|LOGG-2148|LOGG-2146|LOGG-2142|LOGG-2138|LOGG-2240|LOGG-2230|LOGG-2210|LOGG-2136|LOGG-2132|LOGG-2130|SQD-3602|PHP-2211|LDAP-2219|DBS-1880|DBS-1860|DBS-1840|DBS-1826|DBS-1820|DBS-1818|DBS-1804|SNMP-3302|SSH-7440|SSH-7408|SSH-7406|SSH-7404|SSH-7402|HTTP-6702|HTTP-6622|FIRE-4594|FIRE-4590|FIRE-4586|FIRE-4524|FIRE-4513|FIRE-4512|FIRE-4508|FIRE-4502|MAIL-8880|MAIL-8860|MAIL-8838|MAIL-8820|MAIL-8814|MAIL-8802|PRNT-2314|PRNT-2304|NETW-3200|NETW-3032|NETW-3030|NETW-3028|NETW-3015|NETW-3012|NETW-3008|NETW-3006|NETW-3004|NETW-3001|NETW-2706|NETW-2705|NETW-2704|NETW-2600|NETW-2400|PKGS-7420|PKGS-7410|PKGS-7398|PKGS-7394|PKGS-7392|PKGS-7390|PKGS-7388|PKGS-7370|PKGS-7346|PKGS-7345|NAME-4408|NAME-4406|NAME-4404|NAME-4402|NAME-4304|NAME-4230|NAME-4202|NAME-4034|NAME-4032|NAME-4028|NAME-4020|NAME-4018|NAME-4016|STRG-1920|STRG-1846|USB-3000|USB-2000|USB-1000|FILE-6430|FILE-6394|FILE-6376|FILE-6374|FILE-6372|FILE-6368|FILE-6363|FILE-6362|FILE-6354|FILE-6344|FILE-6336|FILE-6332|FILE-6329|FILE-6324|FILE-6323|FILE-6310|SHLL-6230|SHLL-6220|SHLL-6211|AUTH-9408|AUTH-9402|AUTH-9328|AUTH-9308|AUTH-9288|AUTH-9286|AUTH-9284|AUTH-9283|AUTH-9282|AUTH-9278|AUTH-9268|AUTH-9266|AUTH-9264|AUTH-9262|AUTH-9252|AUTH-9250|AUTH-9242|AUTH-9240|AUTH-9234|AUTH-9230|AUTH-9229|AUTH-9228|AUTH-9226|AUTH-9222|AUTH-9216|AUTH-9208|AUTH-9204|PROC-3802|PROC-3614|PROC-3612|PROC-3602|KRNL-5830|KRNL-5820|KRNL-5788|KRNL-5730|KRNL-5728|KRNL-5726|KRNL-5723|KRNL-5695|KRNL-5677|KRNL-5622|BOOT-5260|BOOT-5202|BOOT-5184|BOOT-5180|BOOT-5177|BOOT-5155|BOOT-5142|BOOT-5139|BOOT-5122|BOOT-5121|BOOT-5116|BOOT-5109|BOOT-5108|BOOT-5104|PLGN-3860|PLGN-3856|PLGN-3834|PLGN-3832|PLGN-3830|PLGN-3820|PLGN-3818|PLGN-3816|PLGN-3814|PLGN-3812|PLGN-3810|PLGN-3808|PLGN-3806|PLGN-3804|PLGN-3802|PLGN-3800|PLGN-0010|CORE-1000| +tests_skipped=MALW-3288|MALW-3286|TOOL-5104|FINT-4402|FINT-4341|FINT-4340|FINT-4339|FINT-4336|FINT-4334|FINT-4316|FINT-4315|MACF-6242|MACF-6234|MACF-6208|CONT-8108|CONT-8107|CONT-8106|CONT-8104|CONT-8004|CRYP-7931|TIME-3185|TIME-3182|TIME-3181|TIME-3180|TIME-3160|TIME-3106|ACCT-9662|ACCT-9660|ACCT-9656|ACCT-9654|ACCT-9652|ACCT-9650|ACCT-9634|ACCT-9632|ACCT-9630|ACCT-2760|ACCT-2754|SCHD-7724|SCHD-7720|BANN-7113|INSE-8050|INSE-8200|INSE-8116|INSE-8106|INSE-8104|INSE-8016|INSE-8006|INSE-8004|INSE-8002|LOGG-2192|LOGG-2190|LOGG-2164|LOGG-2162|LOGG-2160|LOGG-2153|LOGG-2152|LOGG-2134|SQD-3680|SQD-3630|SQD-3624|SQD-3620|SQD-3616|SQD-3614|SQD-3613|SQD-3610|SQD-3606|SQD-3604|PHP-2382|PHP-2378|PHP-2376|PHP-2374|PHP-2372|PHP-2368|PHP-2320|LDAP-2224|DBS-1888|DBS-1886|DBS-1884|DBS-1882|DBS-1828|DBS-1816|SNMP-3306|SNMP-3304|HTTP-6720|HTTP-6716|HTTP-6714|HTTP-6712|HTTP-6710|HTTP-6708|HTTP-6706|HTTP-6704|HTTP-6643|HTTP-6641|HTTP-6640|HTTP-6632|HTTP-6626|HTTP-6624|FIRE-4540|FIRE-4538|FIRE-4536|FIRE-4534|FIRE-4532|FIRE-4530|FIRE-4526|FIRE-4520|FIRE-4518|MAIL-8920|MAIL-8818|MAIL-8817|MAIL-8816|MAIL-8804|PRNT-2420|PRNT-2418|PRNT-2316|PRNT-2308|PRNT-2307|PRNT-2306|PRNT-2302|NETW-3014|PKGS-7393|PKGS-7387|PKGS-7386|PKGS-7384|PKGS-7383|PKGS-7382|PKGS-7381|PKGS-7380|PKGS-7378|PKGS-7366|PKGS-7354|PKGS-7352|PKGS-7350|PKGS-7348|PKGS-7334|PKGS-7332|PKGS-7330|PKGS-7328|PKGS-7322|PKGS-7320|PKGS-7314|PKGS-7312|PKGS-7310|PKGS-7308|PKGS-7306|PKGS-7304|PKGS-7303|PKGS-7302|PKGS-7301|NAME-4306|NAME-4238|NAME-4236|NAME-4232|NAME-4210|NAME-4206|NAME-4204|NAME-4036|NAME-4026|NAME-4024|STRG-1930|STRG-1928|STRG-1926|STRG-1906|STRG-1904|STRG-1902|FILE-6410|FILE-6439|FILE-6330|FILE-6312|FILE-6311|SHLL-6202|AUTH-9410|AUTH-9409|AUTH-9406|AUTH-9340|AUTH-9306|AUTH-9304|AUTH-9254|AUTH-9218|AUTH-9212|PROC-3604|KRNL-5770|KRNL-5831|KRNL-5745|BOOT-5264|BOOT-5263|BOOT-5262|BOOT-5170|BOOT-5165|BOOT-5159|BOOT-5126|BOOT-5261|BOOT-5124|BOOT-5117|BOOT-5106|BOOT-5102|PLGN-0008| +finish=true diff --git a/raw_scans/11_gcp_debian_9/lynis-report-3.dat b/raw_scans/11_gcp_debian_9/lynis-report-3.dat new file mode 100644 index 0000000..b1f7675 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/lynis-report-3.dat @@ -0,0 +1,685 @@ +# Lynis Report +report_version_major=1 +report_version_minor=0 +report_datetime_start=2021-01-07 17:56:24 +auditor=[Not Specified] +lynis_version=3.0.3 +os=Linux +os_name=Debian +os_fullname=Debian GNU/Linux 9 (stretch) +os_version=9 +linux_version=Debian +os_kernel_version=4.9.0 +os_kernel_version_full=4.9.0-14-amd64 +hostname=debian-9 +test_category=all +test_group=all +plugin_directory=./plugins +lynis_update_available=0 +binaries_count=949 +binaries_suid_count=/bin/mount /bin/ping /bin/ping4 /bin/ping6 /bin/su /bin/umount /usr/bin/chfn /usr/bin/chsh /usr/bin/gpasswd /usr/bin/newgrp /usr/bin/passwd /usr/bin/procmail /usr/bin/sg /usr/bin/sudo /usr/bin/sudoedit /usr/sbin/sensible-mda +binaries_sgid_count=/sbin/unix_chkpwd /usr/bin/bsd-write /usr/bin/chage /usr/bin/crontab /usr/bin/dotlockfile /usr/bin/expiry /usr/bin/lockfile /usr/bin/mail-lock /usr/bin/mail-touchlock /usr/bin/mail-unlock /usr/bin/procmail /usr/bin/screen /usr/bin/ssh-agent /usr/bin/wall /usr/bin/write /usr/sbin/hoststat /usr/sbin/purgestat /usr/sbin/sendmail /usr/sbin/sendmail-msp /usr/sbin/sendmail-mta +binary_paths=/bin,/sbin,/usr/bin,/usr/sbin,/usr/local/bin,/usr/local/sbin +vm=1 +vmtype=kvm +container=0 +systemd=1 +plugin_enabled_phase1[]=pam|1.0.5| +authentication_two_factor_enabled=0 +authentication_two_factor_required=0 +minimum_password_length=8 +password_strength_tested=1 +min_password_class=0 +password_max_digital_credit=1 +password_max_l_credit=1 +password_max_other_credit=1 +password_max_u_credit=1 +max_password_retry=3 +plugin_enabled_phase1[]=systemd|1.0.4| +systemctl_exit_code=0 +systemd_version=232 +systemd_builtin_components=+PAM,+AUDIT,+SELINUX,+IMA,+APPARMOR,+SMACK,+SYSVINIT,+UTMP,+LIBCRYPTSETUP,+GCRYPT,+GNUTLS,+ACL,+XZ,+LZ4,+SECCOMP,+BLKID,+ELFUTILS,+KMOD,+IDN +systemd_unit_file[]=proc-sys-fs-binfmt_misc.automount|static| +systemd_unit_file[]=-.mount|generated| +systemd_unit_file[]=dev-hugepages.mount|static| +systemd_unit_file[]=dev-mqueue.mount|static| +systemd_unit_file[]=proc-sys-fs-binfmt_misc.mount|static| +systemd_unit_file[]=sys-fs-fuse-connections.mount|static| +systemd_unit_file[]=sys-kernel-config.mount|static| +systemd_unit_file[]=sys-kernel-debug.mount|static| +systemd_unit_file[]=acpid.path|enabled| +systemd_unit_file[]=systemd-ask-password-console.path|static| +systemd_unit_file[]=systemd-ask-password-wall.path|static| +systemd_unit_file[]=acct.service|generated| +systemd_unit_file[]=acpid.service|disabled| +systemd_unit_file[]=apt-daily-upgrade.service|static| +systemd_unit_file[]=apt-daily.service|static| +systemd_unit_file[]=autovt@.service|enabled| +systemd_unit_file[]=bootlogd.service|masked| +systemd_unit_file[]=bootlogs.service|masked| +systemd_unit_file[]=bootmisc.service|masked| +systemd_unit_file[]=checkfs.service|masked| +systemd_unit_file[]=checkroot-bootclean.service|masked| +systemd_unit_file[]=checkroot.service|masked| +systemd_unit_file[]=console-getty.service|disabled| +systemd_unit_file[]=container-getty@.service|static| +systemd_unit_file[]=cron.service|enabled| +systemd_unit_file[]=cryptdisks-early.service|masked| +systemd_unit_file[]=cryptdisks.service|masked| +systemd_unit_file[]=dbus-org.freedesktop.hostname1.service|static| +systemd_unit_file[]=dbus-org.freedesktop.locale1.service|static| +systemd_unit_file[]=dbus-org.freedesktop.login1.service|static| +systemd_unit_file[]=dbus-org.freedesktop.network1.service|disabled| +systemd_unit_file[]=dbus-org.freedesktop.resolve1.service|disabled| +systemd_unit_file[]=dbus-org.freedesktop.timedate1.service|static| +systemd_unit_file[]=debug-shell.service|disabled| +systemd_unit_file[]=emergency.service|static| +systemd_unit_file[]=expand-root.service|enabled| +systemd_unit_file[]=fail2ban.service|enabled| +systemd_unit_file[]=fuse.service|masked| +systemd_unit_file[]=getty-static.service|static| +systemd_unit_file[]=getty@.service|enabled| +systemd_unit_file[]=google-guest-agent.service|enabled| +systemd_unit_file[]=google-osconfig-agent.service|enabled| +systemd_unit_file[]=google-oslogin-cache.service|static| +systemd_unit_file[]=google-shutdown-scripts.service|enabled| +systemd_unit_file[]=google-startup-scripts.service|enabled| +systemd_unit_file[]=halt.service|masked| +systemd_unit_file[]=hostname.service|masked| +systemd_unit_file[]=hwclock.service|masked| +systemd_unit_file[]=ifup@.service|static| +systemd_unit_file[]=initrd-cleanup.service|static| +systemd_unit_file[]=initrd-parse-etc.service|static| +systemd_unit_file[]=initrd-switch-root.service|static| +systemd_unit_file[]=initrd-udevadm-cleanup-db.service|static| +systemd_unit_file[]=killprocs.service|masked| +systemd_unit_file[]=kmod-static-nodes.service|static| +systemd_unit_file[]=kmod.service|static| +systemd_unit_file[]=module-init-tools.service|static| +systemd_unit_file[]=motd.service|masked| +systemd_unit_file[]=mountall-bootclean.service|masked| +systemd_unit_file[]=mountall.service|masked| +systemd_unit_file[]=mountdevsubfs.service|masked| +systemd_unit_file[]=mountkernfs.service|masked| +systemd_unit_file[]=mountnfs-bootclean.service|masked| +systemd_unit_file[]=mountnfs.service|masked| +systemd_unit_file[]=networking.service|enabled| +systemd_unit_file[]=ntp.service|generated| +systemd_unit_file[]=portsentry.service|generated| +systemd_unit_file[]=procps.service|static| +systemd_unit_file[]=quotaon.service|static| +systemd_unit_file[]=rc-local.service|static| +systemd_unit_file[]=rc.local.service|static| +systemd_unit_file[]=rc.service|masked| +systemd_unit_file[]=rcS.service|masked| +systemd_unit_file[]=reboot.service|masked| +systemd_unit_file[]=rescue.service|static| +systemd_unit_file[]=rmnologin.service|masked| +systemd_unit_file[]=rsync.service|enabled| +systemd_unit_file[]=rsyslog.service|enabled| +systemd_unit_file[]=screen-cleanup.service|masked| +systemd_unit_file[]=sendmail.service|generated| +systemd_unit_file[]=sendsigs.service|masked| +systemd_unit_file[]=serial-getty@.service|disabled| +systemd_unit_file[]=single.service|masked| +systemd_unit_file[]=ssh-generate-hostkeys.service|enabled| +systemd_unit_file[]=ssh.service|enabled| +systemd_unit_file[]=ssh@.service|static| +systemd_unit_file[]=sshd.service|enabled| +systemd_unit_file[]=stop-bootlogd-single.service|masked| +systemd_unit_file[]=stop-bootlogd.service|masked| +systemd_unit_file[]=sudo.service|disabled| +systemd_unit_file[]=syslog.service|enabled| +systemd_unit_file[]=systemd-ask-password-console.service|static| +systemd_unit_file[]=systemd-ask-password-wall.service|static| +systemd_unit_file[]=systemd-backlight@.service|static| +systemd_unit_file[]=systemd-binfmt.service|static| +systemd_unit_file[]=systemd-exit.service|static| +systemd_unit_file[]=systemd-fsck-root.service|static| +systemd_unit_file[]=systemd-fsck@.service|static| +systemd_unit_file[]=systemd-fsckd.service|static| +systemd_unit_file[]=systemd-halt.service|static| +systemd_unit_file[]=systemd-hibernate-resume@.service|static| +systemd_unit_file[]=systemd-hibernate.service|static| +systemd_unit_file[]=systemd-hostnamed.service|static| +systemd_unit_file[]=systemd-hwdb-update.service|static| +systemd_unit_file[]=systemd-hybrid-sleep.service|static| +systemd_unit_file[]=systemd-initctl.service|static| +systemd_unit_file[]=systemd-journal-flush.service|static| +systemd_unit_file[]=systemd-journald.service|static| +systemd_unit_file[]=systemd-kexec.service|static| +systemd_unit_file[]=systemd-localed.service|static| +systemd_unit_file[]=systemd-logind.service|static| +systemd_unit_file[]=systemd-machine-id-commit.service|static| +systemd_unit_file[]=systemd-modules-load.service|static| +systemd_unit_file[]=systemd-networkd-wait-online.service|disabled| +systemd_unit_file[]=systemd-networkd.service|disabled| +systemd_unit_file[]=systemd-poweroff.service|static| +systemd_unit_file[]=systemd-quotacheck.service|static| +systemd_unit_file[]=systemd-random-seed.service|static| +systemd_unit_file[]=systemd-reboot.service|static| +systemd_unit_file[]=systemd-remount-fs.service|static| +systemd_unit_file[]=systemd-resolved.service|disabled| +systemd_unit_file[]=systemd-rfkill.service|static| +systemd_unit_file[]=systemd-suspend.service|static| +systemd_unit_file[]=systemd-sysctl.service|static| +systemd_unit_file[]=systemd-timedated.service|static| +systemd_unit_file[]=systemd-timesyncd.service|enabled| +systemd_unit_file[]=systemd-tmpfiles-clean.service|static| +systemd_unit_file[]=systemd-tmpfiles-setup-dev.service|static| +systemd_unit_file[]=systemd-tmpfiles-setup.service|static| +systemd_unit_file[]=systemd-udev-settle.service|static| +systemd_unit_file[]=systemd-udev-trigger.service|static| +systemd_unit_file[]=systemd-udevd.service|static| +systemd_unit_file[]=systemd-update-utmp-runlevel.service|static| +systemd_unit_file[]=systemd-update-utmp.service|static| +systemd_unit_file[]=systemd-user-sessions.service|static| +systemd_unit_file[]=udev.service|static| +systemd_unit_file[]=umountfs.service|masked| +systemd_unit_file[]=umountnfs.service|masked| +systemd_unit_file[]=umountroot.service|masked| +systemd_unit_file[]=unattended-upgrades.service|enabled| +systemd_unit_file[]=urandom.service|static| +systemd_unit_file[]=user@.service|static| +systemd_unit_file[]=uuidd.service|indirect| +systemd_unit_file[]=x11-common.service|masked| +systemd_unit_file[]=machine.slice|static| +systemd_unit_file[]=system.slice|static| +systemd_unit_file[]=user.slice|static| +systemd_unit_file[]=acpid.socket|enabled| +systemd_unit_file[]=ssh.socket|disabled| +systemd_unit_file[]=syslog.socket|static| +systemd_unit_file[]=systemd-fsckd.socket|static| +systemd_unit_file[]=systemd-initctl.socket|static| +systemd_unit_file[]=systemd-journald-audit.socket|static| +systemd_unit_file[]=systemd-journald-dev-log.socket|static| +systemd_unit_file[]=systemd-journald.socket|static| +systemd_unit_file[]=systemd-networkd.socket|disabled| +systemd_unit_file[]=systemd-rfkill.socket|static| +systemd_unit_file[]=systemd-udevd-control.socket|static| +systemd_unit_file[]=systemd-udevd-kernel.socket|static| +systemd_unit_file[]=uuidd.socket|enabled| +systemd_unit_file[]=basic.target|static| +systemd_unit_file[]=bluetooth.target|static| +systemd_unit_file[]=busnames.target|static| +systemd_unit_file[]=cryptsetup-pre.target|static| +systemd_unit_file[]=cryptsetup.target|static| +systemd_unit_file[]=ctrl-alt-del.target|disabled| +systemd_unit_file[]=default.target|static| +systemd_unit_file[]=emergency.target|static| +systemd_unit_file[]=exit.target|disabled| +systemd_unit_file[]=final.target|static| +systemd_unit_file[]=getty.target|static| +systemd_unit_file[]=graphical.target|static| +systemd_unit_file[]=halt.target|disabled| +systemd_unit_file[]=hibernate.target|static| +systemd_unit_file[]=hybrid-sleep.target|static| +systemd_unit_file[]=initrd-fs.target|static| +systemd_unit_file[]=initrd-root-device.target|static| +systemd_unit_file[]=initrd-root-fs.target|static| +systemd_unit_file[]=initrd-switch-root.target|static| +systemd_unit_file[]=initrd.target|static| +systemd_unit_file[]=kexec.target|disabled| +systemd_unit_file[]=local-fs-pre.target|static| +systemd_unit_file[]=local-fs.target|static| +systemd_unit_file[]=multi-user.target|static| +systemd_unit_file[]=network-online.target|static| +systemd_unit_file[]=network-pre.target|static| +systemd_unit_file[]=network.target|static| +systemd_unit_file[]=nss-lookup.target|static| +systemd_unit_file[]=nss-user-lookup.target|static| +systemd_unit_file[]=paths.target|static| +systemd_unit_file[]=poweroff.target|disabled| +systemd_unit_file[]=printer.target|static| +systemd_unit_file[]=reboot.target|disabled| +systemd_unit_file[]=remote-fs-pre.target|static| +systemd_unit_file[]=remote-fs.target|enabled| +systemd_unit_file[]=rescue.target|disabled| +systemd_unit_file[]=rpcbind.target|static| +systemd_unit_file[]=runlevel0.target|disabled| +systemd_unit_file[]=runlevel1.target|disabled| +systemd_unit_file[]=runlevel2.target|static| +systemd_unit_file[]=runlevel3.target|static| +systemd_unit_file[]=runlevel4.target|static| +systemd_unit_file[]=runlevel5.target|static| +systemd_unit_file[]=runlevel6.target|disabled| +systemd_unit_file[]=shutdown.target|static| +systemd_unit_file[]=sigpwr.target|static| +systemd_unit_file[]=sleep.target|static| +systemd_unit_file[]=slices.target|static| +systemd_unit_file[]=smartcard.target|static| +systemd_unit_file[]=sockets.target|static| +systemd_unit_file[]=sound.target|static| +systemd_unit_file[]=suspend.target|static| +systemd_unit_file[]=swap.target|static| +systemd_unit_file[]=sysinit.target|static| +systemd_unit_file[]=system-update.target|static| +systemd_unit_file[]=time-sync.target|static| +systemd_unit_file[]=timers.target|static| +systemd_unit_file[]=umount.target|static| +systemd_unit_file[]=apt-daily-upgrade.timer|enabled| +systemd_unit_file[]=apt-daily.timer|enabled| +systemd_unit_file[]=google-oslogin-cache.timer|enabled| +systemd_unit_file[]=systemd-tmpfiles-clean.timer|static| +journal_bootlogs=1 +journal_oldest_bootdate=2021-01-07 +journal_contains_errors=0 +journal_disk_size=4.9M +journal_meta_data=FilePath:/run/log/journal/a66b25c544c2fc51bc4a5dae2b809331/system.journal,FileID:47ead12e84e34f35a4a153136095e81f,MachineID:a66b25c544c2fc51bc4a5dae2b809331,BootID:302e988abf38400abe8d2aa832f77418,SequentialNumberID:47ead12e84e34f35a4a153136095e81f,State:ONLINE,CompatibleFlags:,IncompatibleFlags:COMPRESSED-LZ4,Headersize:240,Arenasize:5185296,DataHashTableSize:9002,FieldHashTableSize:333,RotateSuggested:no,HeadSequentialNumber:1(1),TailSequentialNumber:829(33d),HeadRealtimeTimestamp:Thu2021-01-0717:20:14UTC(5b852a7235495),TailRealtimeTimestamp:Thu2021-01-0717:56:24UTC(5b853287b809f),TailMonotonicTimestamp:36min11.683s(8171418c),Objects:3579,EntryObjects:829,DataObjects:1935,DataHashTableFill:21.5%,FieldObjects:49,FieldHashTableFill:14.7%,TagObjects:0,EntryArrayObjects:764,Diskusage:4.9M, +systemd_status=running +systemd_unit_not_found[]=apparmor.service +systemd_unit_not_found[]=auditd.service +systemd_unit_not_found[]=display-manager.service +systemd_unit_not_found[]=firewalld.service +systemd_unit_not_found[]=iptables.service +systemd_unit_not_found[]=network.service +systemd_unit_not_found[]=NetworkManager.service +systemd_unit_not_found[]=plymouth-quit-wait.service +systemd_unit_not_found[]=plymouth-start.service +systemd_unit_not_found[]=systemd-sysusers.service +systemd_unit_not_found[]=systemd-update-done.service +systemd_unit_not_found[]=systemd-vconsole-setup.service +systemd_unit_not_found[]=dbus.socket +systemd_service_not_found[]=apparmor.service +systemd_service_not_found[]=auditd.service +systemd_service_not_found[]=display-manager.service +systemd_service_not_found[]=firewalld.service +systemd_service_not_found[]=iptables.service +systemd_service_not_found[]=network.service +systemd_service_not_found[]=NetworkManager.service +systemd_service_not_found[]=plymouth-quit-wait.service +systemd_service_not_found[]=plymouth-start.service +systemd_service_not_found[]=systemd-sysusers.service +systemd_service_not_found[]=systemd-update-done.service +systemd_service_not_found[]=systemd-vconsole-setup.service +journal_coredumps_lastday=0 +plugins_enabled=1 +hostid=466ad4432c544245a47e41f2a41d247da252b5ad +hostid2=3ecc6b2399833ea32698bac064848b8804f3ad85ccd0987d01ced99b6335024b +suggestion[]=BOOT-5122|Set a password on GRUB boot loader to prevent altering boot configuration (e.g. boot in single user mode without password)|-|-| +running_service_tool=systemctl +running_service[]=acpid +running_service[]=cron +running_service[]=fail2ban +running_service[]=getty@tty1 +running_service[]=getty@tty2 +running_service[]=getty@tty3 +running_service[]=getty@tty4 +running_service[]=getty@tty5 +running_service[]=getty@tty6 +running_service[]=google-guest-agent +running_service[]=google-osconfig-agent +running_service[]=ntp +running_service[]=portsentry +running_service[]=rsyslog +running_service[]=sendmail +running_service[]=serial-getty@ttyS0 +running_service[]=ssh +running_service[]=systemd-journald +running_service[]=systemd-udevd +boot_service_tool=systemctl +boot_service[]=autovt@ +boot_service[]=cron +boot_service[]=expand-root +boot_service[]=fail2ban +boot_service[]=getty@ +boot_service[]=google-guest-agent +boot_service[]=google-osconfig-agent +boot_service[]=google-shutdown-scripts +boot_service[]=google-startup-scripts +boot_service[]=networking +boot_service[]=rsync +boot_service[]=rsyslog +boot_service[]=ssh-generate-hostkeys +boot_service[]=ssh +boot_service[]=sshd +boot_service[]=syslog +boot_service[]=systemd-timesyncd +boot_service[]=unattended-upgrades +uptime_in_seconds=2176 +uptime_in_days=0 +boot_loader=GRUB2 +boot_uefi_booted=0 +boot_uefi_booted_secure=0 +service_manager=systemd +linux_default_runlevel=5 +cpu_pae=1 +cpu_nx=1 +linux_kernel_release=4.9.0-14-amd64 +linux_kernel_version=#1 SMP Debian 4.9.240-2 (2020-10-30) +linux_kernel_type=modular +loaded_kernel_module[]=ablk_helper +loaded_kernel_module[]=aes_x86_64 +loaded_kernel_module[]=aesni_intel +loaded_kernel_module[]=autofs4 +loaded_kernel_module[]=binfmt_misc +loaded_kernel_module[]=button +loaded_kernel_module[]=crc16 +loaded_kernel_module[]=crc32_pclmul +loaded_kernel_module[]=crc32c_generic +loaded_kernel_module[]=crc32c_intel +loaded_kernel_module[]=crct10dif_pclmul +loaded_kernel_module[]=cryptd +loaded_kernel_module[]=dm_mod +loaded_kernel_module[]=ecb +loaded_kernel_module[]=edac_core +loaded_kernel_module[]=evdev +loaded_kernel_module[]=ext4 +loaded_kernel_module[]=fscrypto +loaded_kernel_module[]=gf128mul +loaded_kernel_module[]=ghash_clmulni_intel +loaded_kernel_module[]=glue_helper +loaded_kernel_module[]=i2c_piix4 +loaded_kernel_module[]=inet_diag +loaded_kernel_module[]=intel_rapl_perf +loaded_kernel_module[]=ip_tables +loaded_kernel_module[]=iptable_filter +loaded_kernel_module[]=iptable_nat +loaded_kernel_module[]=jbd2 +loaded_kernel_module[]=lrw +loaded_kernel_module[]=mbcache +loaded_kernel_module[]=nf_conntrack +loaded_kernel_module[]=nf_conntrack_ipv4 +loaded_kernel_module[]=nf_defrag_ipv4 +loaded_kernel_module[]=nf_nat +loaded_kernel_module[]=nf_nat_ipv4 +loaded_kernel_module[]=psmouse +loaded_kernel_module[]=pvpanic +loaded_kernel_module[]=rng_core +loaded_kernel_module[]=sb_edac +loaded_kernel_module[]=scsi_mod +loaded_kernel_module[]=sd_mod +loaded_kernel_module[]=serio_raw +loaded_kernel_module[]=sg +loaded_kernel_module[]=tcp_diag +loaded_kernel_module[]=udp_diag +loaded_kernel_module[]=virtio +loaded_kernel_module[]=virtio_balloon +loaded_kernel_module[]=virtio_net +loaded_kernel_module[]=virtio_pci +loaded_kernel_module[]=virtio_ring +loaded_kernel_module[]=virtio_rng +loaded_kernel_module[]=virtio_scsi +loaded_kernel_module[]=x_tables +loaded_kernel_module[]=xt_multiport +linux_config_file=/boot/config-4.9.0-14-amd64 +linux_kernel_io_scheduler[]=cfq +memory_size=4050856 +memory_units=kB +auth_group_ids_unique=1 +auth_group_names_unique=1 +suggestion[]=AUTH-9230|Configure password hashing rounds in /etc/login.defs|-|-| +real_user[]=root,0 +real_user[]=Tobias,1000 +real_user[]=ktdw73,1001 +real_user[]=ftpuser,1002 +pam_cracklib=1 +pam_module[]=/lib/x86_64-linux-gnu/security/pam_access.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_cracklib.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_debug.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_deny.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_echo.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_env.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_exec.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_faildelay.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_filter.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_ftp.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_group.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_issue.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_keyinit.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_lastlog.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_limits.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_listfile.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_localuser.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_loginuid.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_mail.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_mkhomedir.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_motd.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_namespace.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_nologin.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_oslogin_admin.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_oslogin_login.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_permit.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_pwhistory.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_rhosts.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_rootok.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_securetty.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_selinux.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_sepermit.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_shells.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_stress.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_succeed_if.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_tally.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_tally2.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_time.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_timestamp.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_tty_audit.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_umask.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_unix.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_userdb.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_warn.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_wheel.so +pam_module[]=/lib/x86_64-linux-gnu/security/pam_xauth.so +locked_account[]=Tobias +locked_account[]=ftpuser +locked_account[]=ktdw73 +suggestion[]=AUTH-9284|Look at the locked accounts and consider removing them|-|-| +manual_event[]=AUTH-9328:03 +auth_failed_logins_tooling[]=/etc/login.defs +auth_failed_logins_logged=1 +ldap_auth_enabled=0 +ldap_pam_enabled=0 +password_min_days=7 +password_max_days=90 +available_shell[]=/bin/sh +available_shell[]=/bin/dash +available_shell[]=/bin/bash +available_shell[]=/bin/rbash +available_shell[]=/usr/bin/screen +session_timeout_enabled=0 +suggestion[]=FILE-6310|To decrease the impact of a full /home file system, place /home on a separate partition|-|-| +suggestion[]=FILE-6310|To decrease the impact of a full /var file system, place /var on a separate partition|-|-| +file_systems_ext[]=/|ext4| +suggestion[]=FILE-6430|Consider disabling unused kernel modules|/etc/modprobe.d/blacklist.conf|Add 'install MODULENAME /bin/true' (without quotes)| +suggestion[]=STRG-1846|Disable drivers like firewire storage when not used, to prevent unauthorized storage or data theft|-|-| +resolv_conf_domain=europe-west3-c.c.cc2020-tobiaswieck.internal +resolv_conf_search_domain[]=europe-west3-c.c.cc2020-tobiaswieck.internal. +domainname=europe-west3-c.c.cc2020-tobiaswieck.internal +localhost-mapped-to=::1 +name_cache_used=0 +package_manager[]=dpkg +installed_packages=312 +suggestion[]=PKGS-7370|Install debsums utility for the verification of packages with known good database.|-|-| +suggestion[]=PKGS-7394|Install package apt-show-versions for patch management purposes|-|-| +installed_kernel_packages=1 +unattended_upgrade_tool[]=unattended-upgrade +unattended_upgrade_option_available=1 +ipv6_mode=auto +ipv6_only=0 +nameserver[]=169.254.169.254 +default_gateway[]=10.156.0.1 +network_interface[]=lo +network_interface[]=eth0 +network_mac_address[]=42:01:0a:9c:00:06 +network_ipv4_address[]=10.156.0.6 +network_ipv4_address[]=127.0.0.1 +network_listen[]=raw,ss,v1|udp|*:1|portsentry| +network_listen[]=raw,ss,v1|udp|*:32770|portsentry| +network_listen[]=raw,ss,v1|udp|*:32771|portsentry| +network_listen[]=raw,ss,v1|udp|*:32772|portsentry| +network_listen[]=raw,ss,v1|udp|*:32773|portsentry| +network_listen[]=raw,ss,v1|udp|*:32774|portsentry| +network_listen[]=raw,ss,v1|udp|*:7|portsentry| +network_listen[]=raw,ss,v1|udp|*:9|portsentry| +network_listen[]=raw,ss,v1|udp|*:68|dhclient| +network_listen[]=raw,ss,v1|udp|*:69|portsentry| +network_listen[]=raw,ss,v1|udp|10.156.0.6:123|ntpd| +network_listen[]=raw,ss,v1|udp|127.0.0.1:123|ntpd| +network_listen[]=raw,ss,v1|udp|*:123|ntpd| +network_listen[]=raw,ss,v1|udp|*:161|portsentry| +network_listen[]=raw,ss,v1|udp|*:162|portsentry| +network_listen[]=raw,ss,v1|udp|*:513|portsentry| +network_listen[]=raw,ss,v1|udp|*:37444|portsentry| +network_listen[]=raw,ss,v1|udp|*:31335|portsentry| +network_listen[]=raw,ss,v1|udp|*:31337|portsentry| +network_listen[]=raw,ss,v1|udp|*:635|portsentry| +network_listen[]=raw,ss,v1|udp|*:640|portsentry| +network_listen[]=raw,ss,v1|udp|*:641|portsentry| +network_listen[]=raw,ss,v1|udp|*:700|portsentry| +network_listen[]=raw,ss,v1|udp|*:54321|portsentry| +network_listen[]=raw,ss,v1|udp|*:34555|portsentry| +network_listen[]=raw,ss,v1|udp|:::123|ntpd| +network_listen[]=raw,ss,v1|tcp|*:22|sshd| +network_listen[]=raw,ss,v1|tcp|127.0.0.1:25|sendmail-mta| +network_listen[]=raw,ss,v1|tcp|127.0.0.1:587|sendmail-mta| +network_listen[]=raw,ss,v1|tcp|:::22|sshd| +suggestion[]=NETW-3200|Determine if protocol 'dccp' is really needed on this system|-|-| +uncommon_network_protocol_enabled=dccp +suggestion[]=NETW-3200|Determine if protocol 'sctp' is really needed on this system|-|-| +uncommon_network_protocol_enabled=sctp +suggestion[]=NETW-3200|Determine if protocol 'rds' is really needed on this system|-|-| +uncommon_network_protocol_enabled=rds +suggestion[]=NETW-3200|Determine if protocol 'tipc' is really needed on this system|-|-| +uncommon_network_protocol_enabled=tipc +imap_daemon= +pop3_daemon= +smtp_daemon= +firewall_software[]=iptables +warning[]=FIRE-4512|iptables module(s) loaded, but no rules active|-|-| +suggestion[]=FIRE-4513|Check iptables rules to see which rules are currently not used|-|-| +firewall_no_logging[]=iptables +manual[]=Verify if there is a formal process for testing and applying firewall rules +manual[]=Verify all traffic is filtered the right way between the different security zones +manual[]=Verify if a list is available with all required services +manual[]=Make sure an explicit deny all is the default policy for all unmatched traffic +suggestion[]=SSH-7408|Consider hardening SSH configuration|AllowTcpForwarding (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option AllowTcpForwarding;field:AllowTcpForwarding;prefval:NO;value:YES;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|ClientAliveCountMax (set 3 to 2)|-| +details[]=SSH-7408|sshd|desc:sshd option ClientAliveCountMax;field:ClientAliveCountMax;prefval:2;value:3;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|Compression (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option Compression;field:Compression;prefval:NO;value:YES;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|LogLevel (set INFO to VERBOSE)|-| +details[]=SSH-7408|sshd|desc:sshd option LogLevel;field:LogLevel;prefval:VERBOSE;value:INFO;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|MaxAuthTries (set 6 to 3)|-| +details[]=SSH-7408|sshd|desc:sshd option MaxAuthTries;field:MaxAuthTries;prefval:3;value:6;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|MaxSessions (set 10 to 2)|-| +details[]=SSH-7408|sshd|desc:sshd option MaxSessions;field:MaxSessions;prefval:2;value:10;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|Port (set 22 to )|-| +details[]=SSH-7408|sshd|desc:sshd option Port;field:Port;prefval:;value:22;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|TCPKeepAlive (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option TCPKeepAlive;field:TCPKeepAlive;prefval:NO;value:YES;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|X11Forwarding (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option X11Forwarding;field:X11Forwarding;prefval:NO;value:YES;| +suggestion[]=SSH-7408|Consider hardening SSH configuration|AllowAgentForwarding (set YES to NO)|-| +details[]=SSH-7408|sshd|desc:sshd option AllowAgentForwarding;field:AllowAgentForwarding;prefval:NO;value:YES;| +ssh_daemon_running=1 +openssh_daemon_running=1 +syslog_daemon_present=1 +syslog_daemon[]=systemd-journal +syslog_daemon_present=1 +syslog_daemon[]=rsyslog +log_directory[]=/var/log +log_directory[]=/var/log/apt +log_directory[]=/var/log/unattended-upgrades +remote_syslog_configured=0 +suggestion[]=LOGG-2154|Enable logging to an external logging host for archiving purposes and additional protection|-|-| +log_directory[]=/var/log +log_rotation_config_found=1 +log_rotation_tool=logrotate +suggestion[]=BANN-7126|Add a legal banner to /etc/issue, to warn unauthorized users|-|-| +weak_banner_file[]=/etc/issue +suggestion[]=BANN-7130|Add legal banner to /etc/issue.net, to warn unauthorized users|-|-| +crond_running=1 +scheduler[]=crond +cronjob[]=17,*,*,*,*,root,cd,/,&&,run-parts,--report,/etc/cron.hourly +cronjob[]=25,6,*,*,*,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.daily,) +cronjob[]=47,6,*,*,7,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.weekly,) +cronjob[]=52,6,1,*,*,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.monthly,) +cronjob[]=/etc/cron.d/sendmail +cronjob[]=/etc/cron.d/tiger +cronjob[]=/etc/cron.daily/logrotate +cronjob[]=/etc/cron.daily/ntp +cronjob[]=/etc/cron.daily/sendmail +cronjob[]=/etc/cron.daily/apt-compat +cronjob[]=/etc/cron.daily/cracklib-runtime +cronjob[]=/etc/cron.daily/man-db +cronjob[]=/etc/cron.daily/tripwire +cronjob[]=/etc/cron.daily/chkrootkit +cronjob[]=/etc/cron.daily/dpkg +cronjob[]=/etc/cron.daily/bsdmainutils +cronjob[]=/etc/cron.daily/passwd +cronjob[]=/etc/cron.daily/acct +cronjob[]=/etc/cron.weekly/man-db +cronjob[]=/etc/cron.monthly/acct +suggestion[]=ACCT-9626|Enable sysstat to collect accounting (no results)|-|-| +suggestion[]=ACCT-9628|Enable auditd to collect audit information|-|-| +linux_auditd_running=0 +audit_daemon_running=0 +suggestion[]=TIME-3128|Check ntpq peers output for time source candidates|-|-| +ntp_version=2 +tz_variable_empty=1 +ntp_config_file[]=/etc/ntp.conf +ntp_config_found=1 +ntp_config_type_daemon=1 +ntp_config_type_eventbased=0 +ntp_config_type_scheduled=0 +ntp_config_type_startup=0 +ntp_daemon=ntpd +ntp_daemon_running=1 +certificate[]=/etc/ssl/certs/ca-certificates.crt|0|cn:subject=CN = ACCVRAIZ1, OU = PKIACCV, O = ACCV, C = ES;notafter:Dec 31 09:37:37 2030 GMT;| +certificates=127 +kernel_entropy=1700 +rng_found=0 +framework_grsecurity=0 +framework_selinux=0 +file_integrity_tool[]=tripwire +suggestion[]=TOOL-5002|Determine if automation tools are present for system management|-|-| +ids_ips_tooling[]=fail2ban +fail2ban_config=/etc/fail2ban/jail.local +fail2ban_enabled_service[]=sshd +automation_tool_present=0 +malware_scanner[]=chkrootkit +malware_scanner[]=rkhunter +malware_scanner_installed=1 +suggestion[]=FILE-7524|Consider restricting file permissions|See screen output or log file|text:Use chmod to change file permissions| +home_directory[]=/bin +home_directory[]=/dev +home_directory[]=/home/Tobias +home_directory[]=/home/ftpuser +home_directory[]=/home/ktdw73 +home_directory[]=/root +home_directory[]=/run/sshd +home_directory[]=/run/systemd +home_directory[]=/run/systemd/netif +home_directory[]=/run/uuidd +home_directory[]=/usr/games +home_directory[]=/usr/sbin +home_directory[]=/var/backups +home_directory[]=/var/cache/man +home_directory[]=/var/lib/sendmail +home_directory[]=/var/mail +suggestion[]=HOME-9304|Double check the permissions of home directories as some might be not strict enough.|-|-| +details[]=KRNL-6000|sysctl|desc:Disable loading of TTY line disciplines;field:dev.tty.ldisc_autoload;prefval:0;value:1;| +details[]=KRNL-6000|sysctl|desc:Restrict FIFO special device creation behavior;field:fs.protected_fifos;prefval:2;value:0;| +details[]=KRNL-6000|sysctl|desc:Restrict regular files creation behavior;field:fs.protected_regular;prefval:2;value:0;| +details[]=KRNL-6000|sysctl|desc:Restrict module loading once this sysctl value is loaded;field:kernel.modules_disabled;prefval:1;value:0;| +details[]=KRNL-6000|sysctl|desc:Restrict BPF for unprivileged users;field:kernel.unprivileged_bpf_disabled;prefval:1;value:0;| +details[]=KRNL-6000|sysctl|desc:Disable process tracing for everyone;field:kernel.yama.ptrace_scope;prefval:1 2 3;value:0;| +details[]=KRNL-6000|sysctl|desc:Hardened BPF JIT compilation;field:net.core.bpf_jit_harden;prefval:2;value:0;| +suggestion[]=KRNL-6000|One or more sysctl values differ from the scan profile and could be tweaked||Change sysctl value or disable test (skip-test=KRNL-6000:)| +compiler_installed=1 +lynis_tests_done=260 +report_datetime_end=2021-01-07 17:56:47 +dhcp_client_running=1 +arpwatch_running=0 +firewall_active=1 +firewall_empty_ruleset=1 +firewall_installed=1 +installed_packages_array=|acct,6.6.2-1|acpi-support-base,0.142-8|acpid,1:2.0.28-1+b1|adduser,3.115|apt,1.4.11|apt-utils,1.4.11|base-files,9.9+deb9u13|base-passwd,3.5.43|bash,4.4-5|bind9-host,1:9.10.3.dfsg.P4-12.3+deb9u7|binutils,2.28-5|bsdmainutils,9.0.12+nmu1|bsdutils,1:2.29.2-1+deb9u1|busybox,1:1.22.0-19+b3|ca-certificates,20200601~deb9u1|chkrootkit,0.50-4+deb9u1|cloud-guest-utils,0.29-1|coreutils,8.26-3|cpio,2.11+dfsg-6|cracklib-runtime,2.9.2-5|cron,3.0pl1-128+deb9u1|curl,7.52.1-5+deb9u13|dash,0.5.8-2.4|debconf,1.5.61|debconf-i18n,1.5.61|debian-archive-keyring,2017.5+deb9u1|debianutils,4.8.1.1|dh-python,2.20170125|diffutils,1:3.5-3|distro-info-data,0.36|dmidecode,3.0-4|dmsetup,2:1.02.137-2|dpkg,1.18.25|e2fslibs:amd64,1.43.4-2+deb9u2|e2fsprogs,1.43.4-2+deb9u2|ethtool,1:4.8-1+b1|fail2ban,0.9.6-2|file,1:5.30-1+deb9u3|findutils,4.6.0+git+20161106-2|gcc-6-base:amd64,6.3.0-18+deb9u1|gdisk,1.0.1-1|geoip-database,20170512-1|gettext-base,0.19.8.1-2+deb9u1|git,1:2.11.0-3+deb9u7|git-man,1:2.11.0-3+deb9u7|gnupg,2.1.18-8~deb9u4|gnupg-agent,2.1.18-8~deb9u4|google-cloud-packages-archive-keyring,1.2-350029030|google-cloud-sdk,322.0.0-0|google-compute-engine,1:20201207.00-g1|google-compute-engine-oslogin,1:20200925.00-g1+deb9|google-guest-agent,1:20201214.00-g1|google-osconfig-agent,1:20201214.00-g1|gpgv,2.1.18-8~deb9u4|grep,2.27-2|groff-base,1.22.3-9|grub-common,2.02~beta3-5+deb9u2|grub-pc,2.02~beta3-5+deb9u2|grub-pc-bin,2.02~beta3-5+deb9u2|grub2-common,2.02~beta3-5+deb9u2|gzip,1.6-5+b1|host,1:9.10.3.dfsg.P4-12.3+deb9u7|hostname,3.18+b1|ifupdown,0.8.19|init,1.48|init-system-helpers,1.48|initramfs-tools,0.130|initramfs-tools-core,0.130|iproute2,4.9.0-1+deb9u1|iptables,1.6.0+snapshot20161117-6|iputils-ping,3:20161105-1|isc-dhcp-client,4.3.5-3+deb9u1|isc-dhcp-common,4.3.5-3+deb9u1|john,1.8.0-2+b1|john-data,1.8.0-2|klibc-utils,2.0.4-9|kmod,23-2|kpartx,0.6.4-5+deb9u1|less,481-2.1|libacl1:amd64,2.2.52-3+b1|libapparmor1:amd64,2.11.0-3+deb9u2|libapt-inst2.0:amd64,1.4.11|libapt-pkg5.0:amd64,1.4.11|libassuan0:amd64,2.4.3-2|libattr1:amd64,1:2.4.47-2+b2|libaudit-common,1:2.6.7-2|libaudit1:amd64,1:2.6.7-2|libbind9-140:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libblkid1:amd64,2.29.2-1+deb9u1|libbsd0:amd64,0.8.3-1|libbz2-1.0:amd64,1.0.6-8.1|libc-bin,2.24-11+deb9u4|libc-l10n,2.24-11+deb9u4|libc6:amd64,2.24-11+deb9u4|libcap-ng0:amd64,0.7.7-3+b1|libcap2:amd64,1:2.25-1|libcomerr2:amd64,1.43.4-2+deb9u2|libcrack2:amd64,2.9.2-5|libcryptsetup4:amd64,2:1.7.3-4|libcurl3-gnutls:amd64,7.52.1-5+deb9u13|libcurl3:amd64,7.52.1-5+deb9u13|libdb5.3:amd64,5.3.28-12+deb9u1|libdebconfclient0:amd64,0.227|libdevmapper1.02.1:amd64,2:1.02.137-2|libdns-export162,1:9.10.3.dfsg.P4-12.3+deb9u7|libdns162:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libedit2:amd64,3.1-20160903-3|libelf1:amd64,0.168-1|liberror-perl,0.17024-1|libestr0,0.1.10-2|libexpat1:amd64,2.2.0-2+deb9u3|libfastjson4:amd64,0.99.4-1|libfdisk1:amd64,2.29.2-1+deb9u1|libffi6:amd64,3.2.1-6|libfreetype6:amd64,2.6.3-3.2+deb9u2|libfuse2:amd64,2.9.7-1+deb9u2|libgcc1:amd64,1:6.3.0-18+deb9u1|libgcrypt20:amd64,1.7.6-2+deb9u3|libgdbm3:amd64,1.8.3-14|libgeoip1:amd64,1.6.9-4|libgmp10:amd64,2:6.1.2+dfsg-1|libgnutls30:amd64,3.5.8-5+deb9u5|libgpg-error0:amd64,1.26-2|libgpm2:amd64,1.20.4-6.2+b1|libgssapi-krb5-2:amd64,1.15-1+deb9u2|libhogweed4:amd64,3.3-1+b2|libicu57:amd64,57.1-6+deb9u4|libidn11:amd64,1.33-1+deb9u1|libidn2-0:amd64,0.16-1+deb9u1|libip4tc0:amd64,1.6.0+snapshot20161117-6|libip6tc0:amd64,1.6.0+snapshot20161117-6|libiptc0:amd64,1.6.0+snapshot20161117-6|libisc-export160,1:9.10.3.dfsg.P4-12.3+deb9u7|libisc160:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libisccc140:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libisccfg140:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|libjson-c3:amd64,0.12.1-1.1+deb9u1|libk5crypto3:amd64,1.15-1+deb9u2|libkeyutils1:amd64,1.5.9-9|libklibc,2.0.4-9|libkmod2:amd64,23-2|libkrb5-3:amd64,1.15-1+deb9u2|libkrb5support0:amd64,1.15-1+deb9u2|libksba8:amd64,1.3.5-2|libldap-2.4-2:amd64,2.4.44+dfsg-5+deb9u6|libldap-common,2.4.44+dfsg-5+deb9u6|liblocale-gettext-perl,1.07-3+b1|liblockfile-bin,1.14-1+b1|liblockfile1:amd64,1.14-1+b1|liblogging-stdlog0:amd64,1.0.5-2+b2|liblognorm5:amd64,2.0.1-1.1+b1|liblwres141:amd64,1:9.10.3.dfsg.P4-12.3+deb9u7|liblz4-1:amd64,0.0~r131-2+b1|liblzma5:amd64,5.2.2-1.2+b1|libmagic-mgc,1:5.30-1+deb9u3|libmagic1:amd64,1:5.30-1+deb9u3|libmnl0:amd64,1.0.4-2|libmount1:amd64,2.29.2-1+deb9u1|libmpdec2:amd64,2.4.2-1|libncurses5:amd64,6.0+20161126-1+deb9u2|libncursesw5:amd64,6.0+20161126-1+deb9u2|libnetfilter-conntrack3:amd64,1.0.6-2|libnettle6:amd64,3.3-1+b2|libnewt0.52:amd64,0.52.19-1+b1|libnfnetlink0:amd64,1.0.1-3|libnghttp2-14:amd64,1.18.1-1+deb9u1|libnpth0:amd64,1.3-1|libopts25:amd64,1:5.18.12-3|libp11-kit0:amd64,0.23.3-2+deb9u1|libpam-cracklib:amd64,1.1.8-3.6|libpam-modules-bin,1.1.8-3.6|libpam-modules:amd64,1.1.8-3.6|libpam-runtime,1.1.8-3.6|libpam0g:amd64,1.1.8-3.6|libparted2:amd64,3.2-17|libpcre3:amd64,2:8.39-3|libperl5.24:amd64,5.24.1-3+deb9u7|libpipeline1:amd64,1.4.1-2|libpng16-16:amd64,1.6.28-1+deb9u1|libpopt0:amd64,1.16-10+b2|libprocps6:amd64,2:3.3.12-3+deb9u1|libpsl5:amd64,0.17.0-3|libpython-stdlib:amd64,2.7.13-2|libpython2.7-minimal:amd64,2.7.13-2+deb9u4|libpython2.7-stdlib:amd64,2.7.13-2+deb9u4|libpython3-stdlib:amd64,3.5.3-1|libpython3.5-minimal:amd64,3.5.3-1+deb9u3|libpython3.5-stdlib:amd64,3.5.3-1+deb9u3|libreadline7:amd64,7.0-3|librtmp1:amd64,2.4+20151223.gitfa8646d.1-1+b1|libsasl2-2:amd64,2.1.27~101-g0780600+dfsg-3+deb9u1|libsasl2-modules-db:amd64,2.1.27~101-g0780600+dfsg-3+deb9u1|libseccomp2:amd64,2.3.1-2.1+deb9u1|libselinux1:amd64,2.6-3+b3|libsemanage-common,2.6-2|libsemanage1:amd64,2.6-2|libsepol1:amd64,2.6-2|libsigsegv2:amd64,2.10-5|libslang2:amd64,2.3.1-5|libsmartcols1:amd64,2.29.2-1+deb9u1|libsqlite3-0:amd64,3.16.2-5+deb9u3|libss2:amd64,1.43.4-2+deb9u2|libssh2-1:amd64,1.7.0-1+deb9u1|libssl1.0.2:amd64,1.0.2u-1~deb9u3|libssl1.1:amd64,1.1.0l-1~deb9u2|libstdc++6:amd64,6.3.0-18+deb9u1|libsystemd0:amd64,232-25+deb9u12|libtasn1-6:amd64,4.10-1.1+deb9u1|libtext-charwidth-perl,0.04-7+b5|libtext-iconv-perl,1.7-5+b4|libtext-wrapi18n-perl,0.06-7.1|libtinfo5:amd64,6.0+20161126-1+deb9u2|libudev1:amd64,232-25+deb9u12|libunistring0:amd64,0.9.6+really0.9.3-0.1|libustr-1.0-1:amd64,1.0.4-6|libuuid1:amd64,2.29.2-1+deb9u1|libwrap0:amd64,7.6.q-26|libxapian30:amd64,1.4.3-2+deb9u3|libxml2:amd64,2.9.4+dfsg1-2.2+deb9u3|libxtables12:amd64,1.6.0+snapshot20161117-6|linux-base,4.5|linux-image-4.9.0-14-amd64,4.9.246-2|linux-image-amd64,4.9+80+deb9u12|locales,2.24-11+deb9u4|lockfile-progs,0.1.17+b1|login,1:4.4-4.1|logrotate,3.11.0-0.1|lsb-base,9.20161125|lsb-release,9.20161125|m4,1.4.18-1|make,4.1-9.1|man-db,2.7.6.1-2|mawk,1.3.3-17+b3|mime-support,3.60|mount,2.29.2-1+deb9u1|multiarch-support,2.24-11+deb9u4|nano,2.7.4-1|ncurses-base,6.0+20161126-1+deb9u2|ncurses-bin,6.0+20161126-1+deb9u2|net-tools,1.60+git20161116.90da8a0-1|netbase,5.4|ntp,1:4.2.8p10+dfsg-3+deb9u2|nvme-cli,1.0-3|openssh-client,1:7.4p1-10+deb9u7|openssh-server,1:7.4p1-10+deb9u7|openssh-sftp-server,1:7.4p1-10+deb9u7|openssl,1.1.0l-1~deb9u2|parted,3.2-17|passwd,1:4.4-4.1|patch,2.7.5-1+deb9u2|perl,5.24.1-3+deb9u7|perl-base,5.24.1-3+deb9u7|perl-modules-5.24,5.24.1-3+deb9u7|pinentry-curses,1.0.0-2|portsentry,1.2-14+b1|procmail,3.22-25+deb9u1|procps,2:3.3.12-3+deb9u1|python,2.7.13-2|python-apt-common,1.4.3|python-crcmod,1.7-2+b2|python-minimal,2.7.13-2|python2.7,2.7.13-2+deb9u4|python2.7-minimal,2.7.13-2+deb9u4|python3,3.5.3-1|python3-apt,1.4.3|python3-minimal,3.5.3-1|python3-pyinotify,0.9.6-1|python3-systemd,233-1|python3.5,3.5.3-1+deb9u3|python3.5-minimal,3.5.3-1+deb9u3|readline-common,7.0-3|rename,0.20-4|rsync,3.1.2-1+deb9u2|rsyslog,8.24.0-1|screen,4.5.0-6|sed,4.4-1|sendmail,8.15.2-8+deb9u1|sendmail-base,8.15.2-8+deb9u1|sendmail-bin,8.15.2-8+deb9u1|sendmail-cf,8.15.2-8+deb9u1|sensible-mda,8.15.2-8+deb9u1|sensible-utils,0.0.9+deb9u1|sgml-base,1.29|sudo,1.8.19p1-2.1+deb9u2|systemd,232-25+deb9u12|systemd-sysv,232-25+deb9u12|sysvinit-utils,2.88dsf-59.9|tar,1.29b-1.1|tasksel,3.39|tasksel-data,3.39|tcpd,7.6.q-26|tiger,1:3.2.3-14.3|tripwire,2.4.3.1-2+b4|tzdata,2020e-0+deb9u1|ucf,3.0036|udev,232-25+deb9u12|unattended-upgrades,0.93.1+nmu1|unhide,20130526-1+deb9u1|util-linux,2.29.2-1+deb9u1|uuid-runtime,2.29.2-1+deb9u1|vim,2:8.0.0197-4+deb9u3|vim-common,2:8.0.0197-4+deb9u3|vim-runtime,2:8.0.0197-4+deb9u3|vim-tiny,2:8.0.0197-4+deb9u3|wamerican,7.1-1|wget,1.18-5+deb9u3|whiptail,0.52.19-1+b1|whois,5.2.17~deb9u1|xml-core,0.17|xxd,2:8.0.0197-4+deb9u3|xz-utils,5.2.2-1.2+b1|zlib1g:amd64,1:1.2.8.dfsg-5 +package_audit_tool=apt-get +package_audit_tool_found=1 +vulnerable_packages_found=0 +hardening_index=75 +tests_executed=HRDN-7231|HRDN-7230|HRDN-7222|HRDN-7220|KRNL-6000|HOME-9350|HOME-9310|HOME-9306|HOME-9304|HOME-9302|FILE-7524|MALW-3284|MALW-3282|MALW-3280|MALW-3278|MALW-3276|MALW-3275|TOOL-5190|TOOL-5126|TOOL-5130|TOOL-5122|TOOL-5120|TOOL-5104|TOOL-5102|TOOL-5002|FINT-4350|FINT-4338|FINT-4330|FINT-4328|FINT-4326|FINT-4322|FINT-4318|FINT-4314|FINT-4310|MACF-6290|RBAC-6272|MACF-6240|MACF-6232|MACF-6204|CONT-8102|CRYP-8005|CRYP-8004|CRYP-8002|CRYP-7930|CRYP-7902|TIME-3170|TIME-3148|TIME-3136|TIME-3132|TIME-3128|TIME-3124|TIME-3120|TIME-3116|TIME-3112|TIME-3104|ACCT-9636|ACCT-9628|ACCT-9626|ACCT-9622|SCHD-7718|SCHD-7704|SCHD-7702|BANN-7130|BANN-7128|BANN-7126|BANN-7124|INSE-8320|INSE-8318|INSE-8316|INSE-8314|INSE-8322|INSE-8310|INSE-8304|INSE-8300|INSE-8102|INSE-8100|INSE-8000|LOGG-2180|LOGG-2170|LOGG-2154|LOGG-2150|LOGG-2148|LOGG-2146|LOGG-2142|LOGG-2138|LOGG-2240|LOGG-2230|LOGG-2210|LOGG-2136|LOGG-2132|LOGG-2130|SQD-3602|PHP-2211|LDAP-2219|DBS-1880|DBS-1860|DBS-1840|DBS-1826|DBS-1820|DBS-1818|DBS-1804|SNMP-3302|SSH-7440|SSH-7408|SSH-7406|SSH-7404|SSH-7402|HTTP-6702|HTTP-6622|FIRE-4594|FIRE-4590|FIRE-4586|FIRE-4524|FIRE-4513|FIRE-4512|FIRE-4508|FIRE-4502|MAIL-8880|MAIL-8860|MAIL-8838|MAIL-8820|MAIL-8814|MAIL-8802|PRNT-2314|PRNT-2304|NETW-3200|NETW-3032|NETW-3030|NETW-3028|NETW-3015|NETW-3012|NETW-3008|NETW-3006|NETW-3004|NETW-3001|NETW-2706|NETW-2705|NETW-2704|NETW-2600|NETW-2400|PKGS-7420|PKGS-7410|PKGS-7398|PKGS-7394|PKGS-7392|PKGS-7390|PKGS-7388|PKGS-7370|PKGS-7346|PKGS-7345|NAME-4408|NAME-4406|NAME-4404|NAME-4402|NAME-4304|NAME-4230|NAME-4202|NAME-4034|NAME-4032|NAME-4028|NAME-4020|NAME-4018|NAME-4016|STRG-1920|STRG-1846|USB-3000|USB-2000|USB-1000|FILE-6430|FILE-6394|FILE-6376|FILE-6374|FILE-6372|FILE-6368|FILE-6363|FILE-6362|FILE-6354|FILE-6344|FILE-6336|FILE-6332|FILE-6329|FILE-6324|FILE-6323|FILE-6310|SHLL-6230|SHLL-6220|SHLL-6211|AUTH-9408|AUTH-9402|AUTH-9328|AUTH-9308|AUTH-9288|AUTH-9286|AUTH-9284|AUTH-9283|AUTH-9282|AUTH-9278|AUTH-9268|AUTH-9266|AUTH-9264|AUTH-9262|AUTH-9252|AUTH-9250|AUTH-9242|AUTH-9240|AUTH-9234|AUTH-9230|AUTH-9229|AUTH-9228|AUTH-9226|AUTH-9222|AUTH-9216|AUTH-9208|AUTH-9204|PROC-3802|PROC-3614|PROC-3612|PROC-3602|KRNL-5830|KRNL-5820|KRNL-5788|KRNL-5730|KRNL-5728|KRNL-5726|KRNL-5723|KRNL-5695|KRNL-5677|KRNL-5622|BOOT-5260|BOOT-5202|BOOT-5184|BOOT-5180|BOOT-5177|BOOT-5155|BOOT-5142|BOOT-5139|BOOT-5122|BOOT-5121|BOOT-5116|BOOT-5109|BOOT-5108|BOOT-5104|PLGN-3860|PLGN-3856|PLGN-3834|PLGN-3832|PLGN-3830|PLGN-3820|PLGN-3818|PLGN-3816|PLGN-3814|PLGN-3812|PLGN-3810|PLGN-3808|PLGN-3806|PLGN-3804|PLGN-3802|PLGN-3800|PLGN-0010|CORE-1000| +tests_skipped=MALW-3288|MALW-3286|FINT-4402|FINT-4341|FINT-4340|FINT-4339|FINT-4336|FINT-4334|FINT-4316|FINT-4315|MACF-6242|MACF-6234|MACF-6208|CONT-8108|CONT-8107|CONT-8106|CONT-8104|CONT-8004|CRYP-7931|TIME-3185|TIME-3182|TIME-3181|TIME-3180|TIME-3160|TIME-3106|ACCT-9662|ACCT-9660|ACCT-9656|ACCT-9654|ACCT-9652|ACCT-9650|ACCT-9634|ACCT-9632|ACCT-9630|ACCT-2760|ACCT-2754|SCHD-7724|SCHD-7720|BANN-7113|INSE-8050|INSE-8200|INSE-8116|INSE-8106|INSE-8104|INSE-8016|INSE-8006|INSE-8004|INSE-8002|LOGG-2192|LOGG-2190|LOGG-2164|LOGG-2162|LOGG-2160|LOGG-2153|LOGG-2152|LOGG-2134|SQD-3680|SQD-3630|SQD-3624|SQD-3620|SQD-3616|SQD-3614|SQD-3613|SQD-3610|SQD-3606|SQD-3604|PHP-2382|PHP-2378|PHP-2376|PHP-2374|PHP-2372|PHP-2368|PHP-2320|LDAP-2224|DBS-1888|DBS-1886|DBS-1884|DBS-1882|DBS-1828|DBS-1816|SNMP-3306|SNMP-3304|HTTP-6720|HTTP-6716|HTTP-6714|HTTP-6712|HTTP-6710|HTTP-6708|HTTP-6706|HTTP-6704|HTTP-6643|HTTP-6641|HTTP-6640|HTTP-6632|HTTP-6626|HTTP-6624|FIRE-4540|FIRE-4538|FIRE-4536|FIRE-4534|FIRE-4532|FIRE-4530|FIRE-4526|FIRE-4520|FIRE-4518|MAIL-8920|MAIL-8818|MAIL-8817|MAIL-8816|MAIL-8804|PRNT-2420|PRNT-2418|PRNT-2316|PRNT-2308|PRNT-2307|PRNT-2306|PRNT-2302|NETW-3014|PKGS-7393|PKGS-7387|PKGS-7386|PKGS-7384|PKGS-7383|PKGS-7382|PKGS-7381|PKGS-7380|PKGS-7378|PKGS-7366|PKGS-7354|PKGS-7352|PKGS-7350|PKGS-7348|PKGS-7334|PKGS-7332|PKGS-7330|PKGS-7328|PKGS-7322|PKGS-7320|PKGS-7314|PKGS-7312|PKGS-7310|PKGS-7308|PKGS-7306|PKGS-7304|PKGS-7303|PKGS-7302|PKGS-7301|NAME-4306|NAME-4238|NAME-4236|NAME-4232|NAME-4210|NAME-4206|NAME-4204|NAME-4036|NAME-4026|NAME-4024|STRG-1930|STRG-1928|STRG-1926|STRG-1906|STRG-1904|STRG-1902|FILE-6410|FILE-6439|FILE-6330|FILE-6312|FILE-6311|SHLL-6202|AUTH-9410|AUTH-9409|AUTH-9406|AUTH-9340|AUTH-9306|AUTH-9304|AUTH-9254|AUTH-9218|AUTH-9212|PROC-3604|KRNL-5770|KRNL-5831|KRNL-5745|BOOT-5264|BOOT-5263|BOOT-5262|BOOT-5170|BOOT-5165|BOOT-5159|BOOT-5126|BOOT-5261|BOOT-5124|BOOT-5117|BOOT-5106|BOOT-5102|PLGN-0008| +finish=true diff --git a/raw_scans/11_gcp_debian_9/otseca-1/.gitkeep b/raw_scans/11_gcp_debian_9/otseca-1/.gitkeep new file mode 100644 index 0000000..e69de29 diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/css/main.css b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/css/main.css new file mode 100644 index 0000000..0b6385d --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/css/main.css @@ -0,0 +1,389 @@ +@font-face { + font-family: Lato-Regular; + src: url('../fonts/Lato/Lato-Regular.ttf'); +} + +@font-face { + font-family: Lato-Bold; + src: url('../fonts/Lato/Lato-Bold.ttf'); +} + +img { + display: block; + margin: 0 auto; + margin-top: 40px; + width: 258px; /* Width of new image */ + height: 232px; /* Height of new image */ +} + +* { + margin: 0px; + padding: 0px; + box-sizing: border-box; +} + +body, html { + height: 100%; + font-family: sans-serif; +} + +a { + margin: 0px; + transition: all 0.4s; + -webkit-transition: all 0.4s; + -o-transition: all 0.4s; + -moz-transition: all 0.4s; +} + +a:focus { + outline: none !important; +} + +a:hover { + text-decoration: none; +} + +h1,h2,h3,h4,h5,h6 {margin: 0px;} + +p {margin: 0px;} + +ul, li { + margin: 0px; + list-style-type: none; +} + +input { + display: block; + outline: none; + border: none !important; +} + +textarea { + display: block; + outline: none; +} + +textarea:focus, input:focus { + border-color: transparent !important; +} + +button { + outline: none !important; + border: none; + background: transparent; +} + +button:hover { + cursor: pointer; +} + +iframe { + border: none !important; +} + +h2.title { + color: #111; + font-family: Lato-Bold; + font-size: 30px; + font-weight: 300; + line-height: 32px; + margin: 20px 0 22px; + text-align: center; +} + +p.desc { + color: #111; + font-family: Lato-Regular; + font-size: 16px; + font-weight: 300; + line-height: 32px; + margin: 5px 0 40px; + text-align: center; +} + +p.info { + color: #111; + font-family: Lato-Bold; + font-size: 15px; + font-weight: 300; + line-height: 32px; + margin: 20px 0 2px; + text-align: center; +} + +p.date { + color: #111; + font-family: monospace; + font-size: 12px; + font-weight: 300; + line-height: 12px; + margin: 20px 0 42px; + text-align: center; +} + +p.link { + color: #111; + font-family: Lato-Bold; + font-size: 14px; + font-weight: 300; + line-height: 32px; + margin: 0px 0 42px; + text-align: center; +} + +.js-pscroll { + position: relative; + overflow: hidden; +} + +.table100 .ps__rail-y { + width: 9px; + background-color: transparent; + opacity: 1 !important; + right: 5px; +} + +.table100 .ps__rail-y::before { + content: ""; + display: block; + position: absolute; + // background-color: #ebebeb; + border-radius: 5px; + width: 100%; + // height: calc(100% - 30px); + left: 0; + top: 15px; +} + +.table100 .ps__rail-y .ps__thumb-y { + width: 100%; + right: 0; + background-color: transparent; + opacity: 1 !important; +} + +.table100 .ps__rail-y .ps__thumb-y::before { + content: ""; + display: block; + position: absolute; + background-color: #cccccc; + border-radius: 5px; + width: 100%; + height: calc(100% - 30px); + left: 0; + top: 15px; +} + +.limiter { + width: 1366px; + margin: 0 auto; +} + +.container-table100 { + width: 100%; + min-height: 20vh; + background: #fff; + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + align-items: center; + justify-content: center; + flex-wrap: wrap; + padding: 10px 10px; +} + +.wrap-table100 { + width: 1170px; +} + +.table100 { + background-color: #fff; +} + +table { + width: 100%; +} + +th, td { + font-weight: unset; + padding-right: 10px; +} + +.column1 { + width: 33%; + padding-left: 20px; +} + +.column2 { + width: 13%; +} + +.column3 { + width: 22%; +} + +.column4 { + width: 19%; +} + +.column5 { + width: 13%; +} + +.table100-head th { + padding-top: 18px; + padding-bottom: 18px; +} + +.table100-body td { + padding-top: 25px; + padding-bottom: 0px; +} + +.table100 { + position: relative; + padding-top: 60px; +} + +.table100-head { + position: absolute; + width: 100%; + top: 0; + left: 0; +} + +.table100-body { + max-height: 585px; + overflow: auto; +} + +.table100.ver1 th { + // font-family: Lato-Bold; + font-family: monospace; + font-size: 18px; + color: #fff; + line-height: 1.4; + + background-color: #6c7ae0; +} + +.table100.ver1 td { + font-family: Lato-Regular; + font-size: 15px; + color: #808080; + line-height: 1.4; +} + +.table100.ver1 .table100-body tr:nth-child(even) { + background-color: #f8f6ff; +} + +.table100.ver1 { + border-radius: 10px; + overflow: hidden; + box-shadow: 0 0px 40px 0px rgba(0, 0, 0, 0.15); + -moz-box-shadow: 0 0px 40px 0px rgba(0, 0, 0, 0.15); + -webkit-box-shadow: 0 0px 40px 0px rgba(0, 0, 0, 0.15); + -o-box-shadow: 0 0px 40px 0px rgba(0, 0, 0, 0.15); + -ms-box-shadow: 0 0px 40px 0px rgba(0, 0, 0, 0.15); +} + +.table100.ver1 .ps__rail-y { + right: 5px; +} + +.table100.ver1 .ps__rail-y::before { + background-color: #ebebeb; +} + +.table100.ver1 .ps__rail-y .ps__thumb-y::before { + background-color: #778899; +} + +a { + color: #111; + font-family: Lato-Bold; + font-size: 14px; + font-weight: 300; + line-height: 32px; + margin: 20px 0 2px; + text-align: center; +} + +code, .code, +pre { + font-family: 'monospace'; + background: $char; + color: $lightGray; + font-size: 13px; + padding: 0; + padding: 10px; + &:before { + display: block; + width: calc(100%); + margin-left: -3px; + margin-top: -3px; + padding: 3px; + text-transform: uppercase; + content: attr(data-lang); + background: $medBlue; + } + .o { + color: orange; + } + .w { + color: white; + } +} + +table.greyGridTable { + border: 2px solid #FFFFFF; + margin-left: auto; + margin-right: auto; + width: 40%; + text-align: center; + border-collapse: collapse; +} + +table.greyGridTable td, table.greyGridTable th { + border: 1px solid #FFFFFF; + padding: 3px 4px; +} + +table.greyGridTable tbody td { + font-size: 13px; +} + +table.greyGridTable td:nth-child(even) { + background: #EBEBEB; +} + +table.greyGridTable thead { + background: #FFFFFF; + border-bottom: 4px solid #003c43; +} + +table.greyGridTable thead th { + font-size: 15px; + font-weight: bold; + color: #003c43; + text-align: center; + border-left: 2px solid #003c43; +} + +table.greyGridTable thead th:first-child { + border-left: none; +} + +table.greyGridTable tfoot { + font-size: 14px; + font-weight: bold; + color: #003c43; + border-top: 4px solid #003c43; +} + +table.greyGridTable tfoot td { + font-size: 14px; +} diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/css/util.css b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/css/util.css new file mode 100644 index 0000000..d9bcee7 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/css/util.css @@ -0,0 +1,932 @@ +.m-b-0 {margin-bottom: 0px;} +.m-b-1 {margin-bottom: 1px;} +.m-b-2 {margin-bottom: 2px;} +.m-b-3 {margin-bottom: 3px;} +.m-b-4 {margin-bottom: 4px;} +.m-b-5 {margin-bottom: 5px;} +.m-b-6 {margin-bottom: 6px;} +.m-b-7 {margin-bottom: 7px;} +.m-b-8 {margin-bottom: 8px;} +.m-b-9 {margin-bottom: 9px;} +.m-b-10 {margin-bottom: 10px;} +.m-b-11 {margin-bottom: 11px;} +.m-b-12 {margin-bottom: 12px;} +.m-b-13 {margin-bottom: 13px;} +.m-b-14 {margin-bottom: 14px;} +.m-b-15 {margin-bottom: 15px;} +.m-b-16 {margin-bottom: 16px;} +.m-b-17 {margin-bottom: 17px;} +.m-b-18 {margin-bottom: 18px;} +.m-b-19 {margin-bottom: 19px;} +.m-b-20 {margin-bottom: 20px;} +.m-b-21 {margin-bottom: 21px;} +.m-b-22 {margin-bottom: 22px;} +.m-b-23 {margin-bottom: 23px;} +.m-b-24 {margin-bottom: 24px;} +.m-b-25 {margin-bottom: 25px;} +.m-b-26 {margin-bottom: 26px;} +.m-b-27 {margin-bottom: 27px;} +.m-b-28 {margin-bottom: 28px;} +.m-b-29 {margin-bottom: 29px;} +.m-b-30 {margin-bottom: 30px;} +.m-b-31 {margin-bottom: 31px;} +.m-b-32 {margin-bottom: 32px;} +.m-b-33 {margin-bottom: 33px;} +.m-b-34 {margin-bottom: 34px;} +.m-b-35 {margin-bottom: 35px;} +.m-b-36 {margin-bottom: 36px;} +.m-b-37 {margin-bottom: 37px;} +.m-b-38 {margin-bottom: 38px;} +.m-b-39 {margin-bottom: 39px;} +.m-b-40 {margin-bottom: 40px;} +.m-b-41 {margin-bottom: 41px;} +.m-b-42 {margin-bottom: 42px;} +.m-b-43 {margin-bottom: 43px;} +.m-b-44 {margin-bottom: 44px;} +.m-b-45 {margin-bottom: 45px;} +.m-b-46 {margin-bottom: 46px;} +.m-b-47 {margin-bottom: 47px;} +.m-b-48 {margin-bottom: 48px;} +.m-b-49 {margin-bottom: 49px;} +.m-b-50 {margin-bottom: 50px;} +.m-b-51 {margin-bottom: 51px;} +.m-b-52 {margin-bottom: 52px;} +.m-b-53 {margin-bottom: 53px;} +.m-b-54 {margin-bottom: 54px;} +.m-b-55 {margin-bottom: 55px;} +.m-b-56 {margin-bottom: 56px;} +.m-b-57 {margin-bottom: 57px;} +.m-b-58 {margin-bottom: 58px;} +.m-b-59 {margin-bottom: 59px;} +.m-b-60 {margin-bottom: 60px;} +.m-b-61 {margin-bottom: 61px;} +.m-b-62 {margin-bottom: 62px;} +.m-b-63 {margin-bottom: 63px;} +.m-b-64 {margin-bottom: 64px;} +.m-b-65 {margin-bottom: 65px;} +.m-b-66 {margin-bottom: 66px;} +.m-b-67 {margin-bottom: 67px;} +.m-b-68 {margin-bottom: 68px;} +.m-b-69 {margin-bottom: 69px;} +.m-b-70 {margin-bottom: 70px;} +.m-b-71 {margin-bottom: 71px;} +.m-b-72 {margin-bottom: 72px;} +.m-b-73 {margin-bottom: 73px;} +.m-b-74 {margin-bottom: 74px;} +.m-b-75 {margin-bottom: 75px;} +.m-b-76 {margin-bottom: 76px;} +.m-b-77 {margin-bottom: 77px;} +.m-b-78 {margin-bottom: 78px;} +.m-b-79 {margin-bottom: 79px;} +.m-b-80 {margin-bottom: 80px;} +.m-b-81 {margin-bottom: 81px;} +.m-b-82 {margin-bottom: 82px;} +.m-b-83 {margin-bottom: 83px;} +.m-b-84 {margin-bottom: 84px;} +.m-b-85 {margin-bottom: 85px;} +.m-b-86 {margin-bottom: 86px;} +.m-b-87 {margin-bottom: 87px;} +.m-b-88 {margin-bottom: 88px;} +.m-b-89 {margin-bottom: 89px;} +.m-b-90 {margin-bottom: 90px;} +.m-b-91 {margin-bottom: 91px;} +.m-b-92 {margin-bottom: 92px;} +.m-b-93 {margin-bottom: 93px;} +.m-b-94 {margin-bottom: 94px;} +.m-b-95 {margin-bottom: 95px;} +.m-b-96 {margin-bottom: 96px;} +.m-b-97 {margin-bottom: 97px;} +.m-b-98 {margin-bottom: 98px;} +.m-b-99 {margin-bottom: 99px;} +.m-b-100 {margin-bottom: 100px;} +.m-b-101 {margin-bottom: 101px;} +.m-b-102 {margin-bottom: 102px;} +.m-b-103 {margin-bottom: 103px;} +.m-b-104 {margin-bottom: 104px;} +.m-b-105 {margin-bottom: 105px;} +.m-b-106 {margin-bottom: 106px;} +.m-b-107 {margin-bottom: 107px;} +.m-b-108 {margin-bottom: 108px;} +.m-b-109 {margin-bottom: 109px;} +.m-b-110 {margin-bottom: 110px;} +.m-b-111 {margin-bottom: 111px;} +.m-b-112 {margin-bottom: 112px;} +.m-b-113 {margin-bottom: 113px;} +.m-b-114 {margin-bottom: 114px;} +.m-b-115 {margin-bottom: 115px;} +.m-b-116 {margin-bottom: 116px;} +.m-b-117 {margin-bottom: 117px;} +.m-b-118 {margin-bottom: 118px;} +.m-b-119 {margin-bottom: 119px;} +.m-b-120 {margin-bottom: 120px;} +.m-b-121 {margin-bottom: 121px;} +.m-b-122 {margin-bottom: 122px;} +.m-b-123 {margin-bottom: 123px;} +.m-b-124 {margin-bottom: 124px;} +.m-b-125 {margin-bottom: 125px;} +.m-b-126 {margin-bottom: 126px;} +.m-b-127 {margin-bottom: 127px;} +.m-b-128 {margin-bottom: 128px;} +.m-b-129 {margin-bottom: 129px;} +.m-b-130 {margin-bottom: 130px;} +.m-b-131 {margin-bottom: 131px;} +.m-b-132 {margin-bottom: 132px;} +.m-b-133 {margin-bottom: 133px;} +.m-b-134 {margin-bottom: 134px;} +.m-b-135 {margin-bottom: 135px;} +.m-b-136 {margin-bottom: 136px;} +.m-b-137 {margin-bottom: 137px;} +.m-b-138 {margin-bottom: 138px;} +.m-b-139 {margin-bottom: 139px;} +.m-b-140 {margin-bottom: 140px;} +.m-b-141 {margin-bottom: 141px;} +.m-b-142 {margin-bottom: 142px;} +.m-b-143 {margin-bottom: 143px;} +.m-b-144 {margin-bottom: 144px;} +.m-b-145 {margin-bottom: 145px;} +.m-b-146 {margin-bottom: 146px;} +.m-b-147 {margin-bottom: 147px;} +.m-b-148 {margin-bottom: 148px;} +.m-b-149 {margin-bottom: 149px;} +.m-b-150 {margin-bottom: 150px;} +.m-b-151 {margin-bottom: 151px;} +.m-b-152 {margin-bottom: 152px;} +.m-b-153 {margin-bottom: 153px;} +.m-b-154 {margin-bottom: 154px;} +.m-b-155 {margin-bottom: 155px;} +.m-b-156 {margin-bottom: 156px;} +.m-b-157 {margin-bottom: 157px;} +.m-b-158 {margin-bottom: 158px;} +.m-b-159 {margin-bottom: 159px;} +.m-b-160 {margin-bottom: 160px;} +.m-b-161 {margin-bottom: 161px;} +.m-b-162 {margin-bottom: 162px;} +.m-b-163 {margin-bottom: 163px;} +.m-b-164 {margin-bottom: 164px;} +.m-b-165 {margin-bottom: 165px;} +.m-b-166 {margin-bottom: 166px;} +.m-b-167 {margin-bottom: 167px;} +.m-b-168 {margin-bottom: 168px;} +.m-b-169 {margin-bottom: 169px;} +.m-b-170 {margin-bottom: 170px;} +.m-b-171 {margin-bottom: 171px;} +.m-b-172 {margin-bottom: 172px;} +.m-b-173 {margin-bottom: 173px;} +.m-b-174 {margin-bottom: 174px;} +.m-b-175 {margin-bottom: 175px;} +.m-b-176 {margin-bottom: 176px;} +.m-b-177 {margin-bottom: 177px;} +.m-b-178 {margin-bottom: 178px;} +.m-b-179 {margin-bottom: 179px;} +.m-b-180 {margin-bottom: 180px;} +.m-b-181 {margin-bottom: 181px;} +.m-b-182 {margin-bottom: 182px;} +.m-b-183 {margin-bottom: 183px;} +.m-b-184 {margin-bottom: 184px;} +.m-b-185 {margin-bottom: 185px;} +.m-b-186 {margin-bottom: 186px;} +.m-b-187 {margin-bottom: 187px;} +.m-b-188 {margin-bottom: 188px;} +.m-b-189 {margin-bottom: 189px;} +.m-b-190 {margin-bottom: 190px;} +.m-b-191 {margin-bottom: 191px;} +.m-b-192 {margin-bottom: 192px;} +.m-b-193 {margin-bottom: 193px;} +.m-b-194 {margin-bottom: 194px;} +.m-b-195 {margin-bottom: 195px;} +.m-b-196 {margin-bottom: 196px;} +.m-b-197 {margin-bottom: 197px;} +.m-b-198 {margin-bottom: 198px;} +.m-b-199 {margin-bottom: 199px;} +.m-b-200 {margin-bottom: 200px;} +.m-b-201 {margin-bottom: 201px;} +.m-b-202 {margin-bottom: 202px;} +.m-b-203 {margin-bottom: 203px;} +.m-b-204 {margin-bottom: 204px;} +.m-b-205 {margin-bottom: 205px;} +.m-b-206 {margin-bottom: 206px;} +.m-b-207 {margin-bottom: 207px;} +.m-b-208 {margin-bottom: 208px;} +.m-b-209 {margin-bottom: 209px;} +.m-b-210 {margin-bottom: 210px;} +.m-b-211 {margin-bottom: 211px;} +.m-b-212 {margin-bottom: 212px;} +.m-b-213 {margin-bottom: 213px;} +.m-b-214 {margin-bottom: 214px;} +.m-b-215 {margin-bottom: 215px;} +.m-b-216 {margin-bottom: 216px;} +.m-b-217 {margin-bottom: 217px;} +.m-b-218 {margin-bottom: 218px;} +.m-b-219 {margin-bottom: 219px;} +.m-b-220 {margin-bottom: 220px;} +.m-b-221 {margin-bottom: 221px;} +.m-b-222 {margin-bottom: 222px;} +.m-b-223 {margin-bottom: 223px;} +.m-b-224 {margin-bottom: 224px;} +.m-b-225 {margin-bottom: 225px;} +.m-b-226 {margin-bottom: 226px;} +.m-b-227 {margin-bottom: 227px;} +.m-b-228 {margin-bottom: 228px;} +.m-b-229 {margin-bottom: 229px;} +.m-b-230 {margin-bottom: 230px;} +.m-b-231 {margin-bottom: 231px;} +.m-b-232 {margin-bottom: 232px;} +.m-b-233 {margin-bottom: 233px;} +.m-b-234 {margin-bottom: 234px;} +.m-b-235 {margin-bottom: 235px;} +.m-b-236 {margin-bottom: 236px;} +.m-b-237 {margin-bottom: 237px;} +.m-b-238 {margin-bottom: 238px;} +.m-b-239 {margin-bottom: 239px;} +.m-b-240 {margin-bottom: 240px;} +.m-b-241 {margin-bottom: 241px;} +.m-b-242 {margin-bottom: 242px;} +.m-b-243 {margin-bottom: 243px;} +.m-b-244 {margin-bottom: 244px;} +.m-b-245 {margin-bottom: 245px;} +.m-b-246 {margin-bottom: 246px;} +.m-b-247 {margin-bottom: 247px;} +.m-b-248 {margin-bottom: 248px;} +.m-b-249 {margin-bottom: 249px;} +.m-b-250 {margin-bottom: 250px;} +.m-l-r-auto {margin-left: auto; margin-right: auto;} +.m-l-auto {margin-left: auto;} +.m-r-auto {margin-right: auto;} + +.text-white {color: white;} +.text-black {color: black;} + +.text-hov-white:hover {color: white;} + +.text-up {text-transform: uppercase;} + +.text-center {text-align: center;} +.text-left {text-align: left;} +.text-right {text-align: right;} +.text-middle {vertical-align: middle;} + +.lh-1-0 {line-height: 1.0;} +.lh-1-1 {line-height: 1.1;} +.lh-1-2 {line-height: 1.2;} +.lh-1-3 {line-height: 1.3;} +.lh-1-4 {line-height: 1.4;} +.lh-1-5 {line-height: 1.5;} +.lh-1-6 {line-height: 1.6;} +.lh-1-7 {line-height: 1.7;} +.lh-1-8 {line-height: 1.8;} +.lh-1-9 {line-height: 1.9;} +.lh-2-0 {line-height: 2.0;} +.lh-2-1 {line-height: 2.1;} +.lh-2-2 {line-height: 2.2;} +.lh-2-3 {line-height: 2.3;} +.lh-2-4 {line-height: 2.4;} +.lh-2-5 {line-height: 2.5;} +.lh-2-6 {line-height: 2.6;} +.lh-2-7 {line-height: 2.7;} +.lh-2-8 {line-height: 2.8;} +.lh-2-9 {line-height: 2.9;} + +.dis-none {display: none;} +.dis-block {display: block;} +.dis-inline {display: inline;} +.dis-inline-block {display: inline-block;} +.dis-flex { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; +} + +.pos-relative {position: relative;} +.pos-absolute {position: absolute;} +.pos-fixed {position: fixed;} + +.float-l {float: left;} +.float-r {float: right;} + +.sizefull { + width: 100%; + height: 100%; +} +.w-full {width: 100%;} +.h-full {height: 100%;} +.max-w-full {max-width: 100%;} +.max-h-full {max-height: 100%;} +.min-w-full {min-width: 100%;} +.min-h-full {min-height: 100%;} + +.top-0 {top: 0;} +.bottom-0 {bottom: 0;} +.left-0 {left: 0;} +.right-0 {right: 0;} + +.top-auto {top: auto;} +.bottom-auto {bottom: auto;} +.left-auto {left: auto;} +.right-auto {right: auto;} + +.op-0-0 {opacity: 0;} +.op-0-1 {opacity: 0.1;} +.op-0-2 {opacity: 0.2;} +.op-0-3 {opacity: 0.3;} +.op-0-4 {opacity: 0.4;} +.op-0-5 {opacity: 0.5;} +.op-0-6 {opacity: 0.6;} +.op-0-7 {opacity: 0.7;} +.op-0-8 {opacity: 0.8;} +.op-0-9 {opacity: 0.9;} +.op-1-0 {opacity: 1;} + +.bgwhite {background-color: white;} +.bgblack {background-color: black;} + +.wrap-pic-w img {width: 100%;} +.wrap-pic-max-w img {max-width: 100%;} + +.wrap-pic-h img {height: 100%;} +.wrap-pic-max-h img {max-height: 100%;} + +.wrap-pic-cir { + border-radius: 50%; + overflow: hidden; +} +.wrap-pic-cir img { + width: 100%; +} + +.hov-pointer:hover {cursor: pointer;} + +.hov-img-zoom { + display: block; + overflow: hidden; +} +.hov-img-zoom img{ + width: 100%; + -webkit-transition: all 0.6s; + -o-transition: all 0.6s; + -moz-transition: all 0.6s; + transition: all 0.6s; +} +.hov-img-zoom:hover img { + -webkit-transform: scale(1.1); + -moz-transform: scale(1.1); + -ms-transform: scale(1.1); + -o-transform: scale(1.1); + transform: scale(1.1); +} + +.bo-cir {border-radius: 50%;} + +.of-hidden {overflow: hidden;} + +.visible-false {visibility: hidden;} +.visible-true {visibility: visible;} + +.trans-0-1 { + -webkit-transition: all 0.1s; + -o-transition: all 0.1s; + -moz-transition: all 0.1s; + transition: all 0.1s; +} +.trans-0-2 { + -webkit-transition: all 0.2s; + -o-transition: all 0.2s; + -moz-transition: all 0.2s; + transition: all 0.2s; +} +.trans-0-3 { + -webkit-transition: all 0.3s; + -o-transition: all 0.3s; + -moz-transition: all 0.3s; + transition: all 0.3s; +} +.trans-0-4 { + -webkit-transition: all 0.4s; + -o-transition: all 0.4s; + -moz-transition: all 0.4s; + transition: all 0.4s; +} +.trans-0-5 { + -webkit-transition: all 0.5s; + -o-transition: all 0.5s; + -moz-transition: all 0.5s; + transition: all 0.5s; +} +.trans-0-6 { + -webkit-transition: all 0.6s; + -o-transition: all 0.6s; + -moz-transition: all 0.6s; + transition: all 0.6s; +} +.trans-0-9 { + -webkit-transition: all 0.9s; + -o-transition: all 0.9s; + -moz-transition: all 0.9s; + transition: all 0.9s; +} +.trans-1-0 { + -webkit-transition: all 1s; + -o-transition: all 1s; + -moz-transition: all 1s; + transition: all 1s; +} + +.flex-w { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-wrap: wrap; + -moz-flex-wrap: wrap; + -ms-flex-wrap: wrap; + -o-flex-wrap: wrap; + flex-wrap: wrap; +} + +.flex-l { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + justify-content: flex-start; +} + +.flex-r { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + justify-content: flex-end; +} + +.flex-c { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + justify-content: center; +} + +.flex-sa { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + justify-content: space-around; +} + +.flex-sb { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + justify-content: space-between; +} + +.flex-t { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -ms-align-items: flex-start; + align-items: flex-start; +} + +.flex-b { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -ms-align-items: flex-end; + align-items: flex-end; +} + +.flex-m { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -ms-align-items: center; + align-items: center; +} + +.flex-str { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -ms-align-items: stretch; + align-items: stretch; +} + +.flex-row { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: row; + -moz-flex-direction: row; + -ms-flex-direction: row; + -o-flex-direction: row; + flex-direction: row; +} + +.flex-row-rev { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: row-reverse; + -moz-flex-direction: row-reverse; + -ms-flex-direction: row-reverse; + -o-flex-direction: row-reverse; + flex-direction: row-reverse; +} + +.flex-col { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: column; + -moz-flex-direction: column; + -ms-flex-direction: column; + -o-flex-direction: column; + flex-direction: column; +} + +.flex-col-rev { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: column-reverse; + -moz-flex-direction: column-reverse; + -ms-flex-direction: column-reverse; + -o-flex-direction: column-reverse; + flex-direction: column-reverse; +} + +.flex-c-m { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + justify-content: center; + -ms-align-items: center; + align-items: center; +} + +.flex-c-t { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + justify-content: center; + -ms-align-items: flex-start; + align-items: flex-start; +} + +.flex-c-b { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + justify-content: center; + -ms-align-items: flex-end; + align-items: flex-end; +} + +.flex-c-str { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + justify-content: center; + -ms-align-items: stretch; + align-items: stretch; +} + +.flex-l-m { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + justify-content: flex-start; + -ms-align-items: center; + align-items: center; +} + +.flex-r-m { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + justify-content: flex-end; + -ms-align-items: center; + align-items: center; +} + +.flex-sa-m { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + justify-content: space-around; + -ms-align-items: center; + align-items: center; +} + +.flex-sb-m { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + justify-content: space-between; + -ms-align-items: center; + align-items: center; +} + +.flex-col-l { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: column; + -moz-flex-direction: column; + -ms-flex-direction: column; + -o-flex-direction: column; + flex-direction: column; + -ms-align-items: flex-start; + align-items: flex-start; +} + +.flex-col-r { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: column; + -moz-flex-direction: column; + -ms-flex-direction: column; + -o-flex-direction: column; + flex-direction: column; + -ms-align-items: flex-end; + align-items: flex-end; +} + +.flex-col-c { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: column; + -moz-flex-direction: column; + -ms-flex-direction: column; + -o-flex-direction: column; + flex-direction: column; + -ms-align-items: center; + align-items: center; +} + +.flex-col-l-m { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: column; + -moz-flex-direction: column; + -ms-flex-direction: column; + -o-flex-direction: column; + flex-direction: column; + -ms-align-items: flex-start; + align-items: flex-start; + justify-content: center; +} + +.flex-col-r-m { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: column; + -moz-flex-direction: column; + -ms-flex-direction: column; + -o-flex-direction: column; + flex-direction: column; + -ms-align-items: flex-end; + align-items: flex-end; + justify-content: center; +} + +.flex-col-c-m { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: column; + -moz-flex-direction: column; + -ms-flex-direction: column; + -o-flex-direction: column; + flex-direction: column; + -ms-align-items: center; + align-items: center; + justify-content: center; +} + +.flex-col-str { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: column; + -moz-flex-direction: column; + -ms-flex-direction: column; + -o-flex-direction: column; + flex-direction: column; + -ms-align-items: stretch; + align-items: stretch; +} + +.flex-col-sb { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: column; + -moz-flex-direction: column; + -ms-flex-direction: column; + -o-flex-direction: column; + flex-direction: column; + justify-content: space-between; +} + +.flex-col-rev-l { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: column-reverse; + -moz-flex-direction: column-reverse; + -ms-flex-direction: column-reverse; + -o-flex-direction: column-reverse; + flex-direction: column-reverse; + -ms-align-items: flex-start; + align-items: flex-start; +} + +.flex-col-rev-r { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: column-reverse; + -moz-flex-direction: column-reverse; + -ms-flex-direction: column-reverse; + -o-flex-direction: column-reverse; + flex-direction: column-reverse; + -ms-align-items: flex-end; + align-items: flex-end; +} + +.flex-col-rev-c { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: column-reverse; + -moz-flex-direction: column-reverse; + -ms-flex-direction: column-reverse; + -o-flex-direction: column-reverse; + flex-direction: column-reverse; + -ms-align-items: center; + align-items: center; +} + +.flex-col-rev-str { + display: -webkit-box; + display: -webkit-flex; + display: -moz-box; + display: -ms-flexbox; + display: flex; + -webkit-flex-direction: column-reverse; + -moz-flex-direction: column-reverse; + -ms-flex-direction: column-reverse; + -o-flex-direction: column-reverse; + flex-direction: column-reverse; + -ms-align-items: stretch; + align-items: stretch; +} + +.ab-c-m { + position: absolute; + top: 50%; + left: 50%; + -webkit-transform: translate(-50%, -50%); + -moz-transform: translate(-50%, -50%); + -ms-transform: translate(-50%, -50%); + -o-transform: translate(-50%, -50%); + transform: translate(-50%, -50%); +} + +.ab-c-t { + position: absolute; + top: 0px; + left: 50%; + -webkit-transform: translateX(-50%); + -moz-transform: translateX(-50%); + -ms-transform: translateX(-50%); + -o-transform: translateX(-50%); + transform: translateX(-50%); +} + +.ab-c-b { + position: absolute; + bottom: 0px; + left: 50%; + -webkit-transform: translateX(-50%); + -moz-transform: translateX(-50%); + -ms-transform: translateX(-50%); + -o-transform: translateX(-50%); + transform: translateX(-50%); +} + +.ab-l-m { + position: absolute; + left: 0px; + top: 50%; + -webkit-transform: translateY(-50%); + -moz-transform: translateY(-50%); + -ms-transform: translateY(-50%); + -o-transform: translateY(-50%); + transform: translateY(-50%); +} + +.ab-r-m { + position: absolute; + right: 0px; + top: 50%; + -webkit-transform: translateY(-50%); + -moz-transform: translateY(-50%); + -ms-transform: translateY(-50%); + -o-transform: translateY(-50%); + transform: translateY(-50%); +} + +.ab-t-l { + position: absolute; + left: 0px; + top: 0px; +} + +.ab-t-r { + position: absolute; + right: 0px; + top: 0px; +} + +.ab-b-l { + position: absolute; + left: 0px; + bottom: 0px; +} + +.ab-b-r { + position: absolute; + right: 0px; + bottom: 0px; +} diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/distro.all.log.html b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/distro.all.log.html new file mode 100644 index 0000000..20b1611 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/distro.all.log.html @@ -0,0 +1,714 @@ + + + +Φ otseca v1.0.5 security audit script + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +

(Ot)her (Sec)urity (A)wareness

+ + + +

Open source security auditing tool to search and dump system configuration.
It allows you to generate reports in HTML or RAW-HTML formats.

+ +

+Φ otseca v1.0.5 security audit script +

+ +

+gen_time: 07.01.2021 17:38:51 +

+ + + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec cat /etc/debian-release
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec cat /etc/debian_version
+
+
+ + + + + + +
+
9.13
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec dpkg-query -f "setroubleshoot"
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec dpkg-query -f "prelink"
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec dpkg-query -f "mcstrans"
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec dpkg-query -f "libselinux"
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec dpkg-query -f "xorg-x11*"
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec dpkg-query -f "iptables"
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec dpkg -l
+
+
+ + + + + + +
+
Desired=Unknown/Install/Remove/Purge/Hold
+| Status=Not/Inst/Conf-files/Unpacked/halF-conf/Half-inst/trig-aWait/Trig-pend
+|/ Err?=(none)/Reinst-required (Status,Err: uppercase=bad)
+||/ Name                                  Version                           Architecture Description
++++-=====================================-=================================-============-===============================================================================
+ii  acpi-support-base                     0.142-8                           all          scripts for handling base ACPI events such as the power button
+ii  acpid                                 1:2.0.28-1+b1                     amd64        Advanced Configuration and Power Interface event daemon
+ii  adduser                               3.115                             all          add and remove users and groups
+ii  apt                                   1.4.11                            amd64        commandline package manager
+ii  apt-utils                             1.4.11                            amd64        package management related utility programs
+ii  base-files                            9.9+deb9u13                       amd64        Debian base system miscellaneous files
+ii  base-passwd                           3.5.43                            amd64        Debian base system master password and group files
+ii  bash                                  4.4-5                             amd64        GNU Bourne Again SHell
+ii  bind9-host                            1:9.10.3.dfsg.P4-12.3+deb9u7      amd64        Version of 'host' bundled with BIND 9.X
+ii  bsdmainutils                          9.0.12+nmu1                       amd64        collection of more utilities from FreeBSD
+ii  bsdutils                              1:2.29.2-1+deb9u1                 amd64        basic utilities from 4.4BSD-Lite
+ii  busybox                               1:1.22.0-19+b3                    amd64        Tiny utilities for small and embedded systems
+ii  ca-certificates                       20200601~deb9u1                   all          Common CA certificates
+ii  cloud-guest-utils                     0.29-1                            all          cloud guest utilities
+ii  coreutils                             8.26-3                            amd64        GNU core utilities
+ii  cpio                                  2.11+dfsg-6                       amd64        GNU cpio -- a program to manage archives of files
+ii  cron                                  3.0pl1-128+deb9u1                 amd64        process scheduling daemon
+ii  curl                                  7.52.1-5+deb9u12                  amd64        command line tool for transferring data with URL syntax
+ii  dash                                  0.5.8-2.4                         amd64        POSIX-compliant shell
+ii  debconf                               1.5.61                            all          Debian configuration management system
+ii  debconf-i18n                          1.5.61                            all          full internationalization support for debconf
+ii  debian-archive-keyring                2017.5+deb9u1                     all          GnuPG archive keys of the Debian archive
+ii  debianutils                           4.8.1.1                           amd64        Miscellaneous utilities specific to Debian
+ii  dh-python                             2.20170125                        all          Debian helper tools for packaging Python libraries and applications
+ii  diffutils                             1:3.5-3                           amd64        File comparison utilities
+ii  distro-info-data                      0.36                              all          information about the distributions' releases (data files)
+ii  dmidecode                             3.0-4                             amd64        SMBIOS/DMI table decoder
+ii  dmsetup                               2:1.02.137-2                      amd64        Linux Kernel Device Mapper userspace library
+ii  dpkg                                  1.18.25                           amd64        Debian package management system
+ii  e2fslibs:amd64                        1.43.4-2+deb9u2                   amd64        ext2/ext3/ext4 file system libraries
+ii  e2fsprogs                             1.43.4-2+deb9u2                   amd64        ext2/ext3/ext4 file system utilities
+ii  ethtool                               1:4.8-1+b1                        amd64        display or change Ethernet device settings
+ii  file                                  1:5.30-1+deb9u3                   amd64        Recognize the type of data in a file using "magic" numbers
+ii  findutils                             4.6.0+git+20161106-2              amd64        utilities for finding files--find, xargs
+ii  gcc-6-base:amd64                      6.3.0-18+deb9u1                   amd64        GCC, the GNU Compiler Collection (base package)
+ii  gdisk                                 1.0.1-1                           amd64        GPT fdisk text-mode partitioning tool
+ii  geoip-database                        20170512-1                        all          IP lookup command line tools that use the GeoIP library (country database)
+ii  gettext-base                          0.19.8.1-2+deb9u1                 amd64        GNU Internationalization utilities for the base system
+ii  git                                   1:2.11.0-3+deb9u7                 amd64        fast, scalable, distributed revision control system
+ii  git-man                               1:2.11.0-3+deb9u7                 all          fast, scalable, distributed revision control system (manual pages)
+ii  gnupg                                 2.1.18-8~deb9u4                   amd64        GNU privacy guard - a free PGP replacement
+ii  gnupg-agent                           2.1.18-8~deb9u4                   amd64        GNU privacy guard - cryptographic agent
+ii  google-cloud-packages-archive-keyring 1.2-347415788                     all          Contains GPG signing key for Google Cloud Packages
+ii  google-cloud-sdk                      321.0.0-0                         all          Utilities for the Google Cloud Platform
+ii  google-compute-engine                 1:20201207.00-g1                  all          Google Compute Engine guest environment.
+ii  google-compute-engine-oslogin         1:20200925.00-g1+deb9             amd64        Google Compute Engine OS Login
+ii  google-guest-agent                    1:20201214.00-g1                  amd64        Google Compute Engine Guest Agent
+ii  google-osconfig-agent                 1:20201214.00-g1                  amd64        Google Compute Engine OSConfig Agent
+ii  gpgv                                  2.1.18-8~deb9u4                   amd64        GNU privacy guard - signature verification tool
+ii  grep                                  2.27-2                            amd64        GNU grep, egrep and fgrep
+ii  groff-base                            1.22.3-9                          amd64        GNU troff text-formatting system (base system components)
+ii  grub-common                           2.02~beta3-5+deb9u2               amd64        GRand Unified Bootloader (common files)
+ii  grub-pc                               2.02~beta3-5+deb9u2               amd64        GRand Unified Bootloader, version 2 (PC/BIOS version)
+ii  grub-pc-bin                           2.02~beta3-5+deb9u2               amd64        GRand Unified Bootloader, version 2 (PC/BIOS binaries)
+ii  grub2-common                          2.02~beta3-5+deb9u2               amd64        GRand Unified Bootloader (common files for version 2)
+ii  gzip                                  1.6-5+b1                          amd64        GNU compression utilities
+ii  host                                  1:9.10.3.dfsg.P4-12.3+deb9u7      all          Transitional package
+ii  hostname                              3.18+b1                           amd64        utility to set/show the host name or domain name
+ii  ifupdown                              0.8.19                            amd64        high level tools to configure network interfaces
+ii  init                                  1.48                              amd64        metapackage ensuring an init system is installed
+ii  init-system-helpers                   1.48                              all          helper tools for all init systems
+ii  initramfs-tools                       0.130                             all          generic modular initramfs generator (automation)
+ii  initramfs-tools-core                  0.130                             all          generic modular initramfs generator (core tools)
+ii  iproute2                              4.9.0-1+deb9u1                    amd64        networking and traffic control tools
+ii  iptables                              1.6.0+snapshot20161117-6          amd64        administration tools for packet filtering and NAT
+ii  iputils-ping                          3:20161105-1                      amd64        Tools to test the reachability of network hosts
+ii  isc-dhcp-client                       4.3.5-3+deb9u1                    amd64        DHCP client for automatically obtaining an IP address
+ii  isc-dhcp-common                       4.3.5-3+deb9u1                    amd64        common manpages relevant to all of the isc-dhcp packages
+ii  klibc-utils                           2.0.4-9                           amd64        small utilities built with klibc for early boot
+ii  kmod                                  23-2                              amd64        tools for managing Linux kernel modules
+ii  kpartx                                0.6.4-5+deb9u1                    amd64        create device mappings for partitions
+ii  less                                  481-2.1                           amd64        pager program similar to more
+ii  libacl1:amd64                         2.2.52-3+b1                       amd64        Access control list shared library
+ii  libapparmor1:amd64                    2.11.0-3+deb9u2                   amd64        changehat AppArmor library
+ii  libapt-inst2.0:amd64                  1.4.11                            amd64        deb package format runtime library
+ii  libapt-pkg5.0:amd64                   1.4.11                            amd64        package management runtime library
+ii  libassuan0:amd64                      2.4.3-2                           amd64        IPC library for the GnuPG components
+ii  libattr1:amd64                        1:2.4.47-2+b2                     amd64        Extended attribute shared library
+ii  libaudit-common                       1:2.6.7-2                         all          Dynamic library for security auditing - common files
+ii  libaudit1:amd64                       1:2.6.7-2                         amd64        Dynamic library for security auditing
+ii  libbind9-140:amd64                    1:9.10.3.dfsg.P4-12.3+deb9u7      amd64        BIND9 Shared Library used by BIND
+ii  libblkid1:amd64                       2.29.2-1+deb9u1                   amd64        block device ID library
+ii  libbsd0:amd64                         0.8.3-1                           amd64        utility functions from BSD systems - shared library
+ii  libbz2-1.0:amd64                      1.0.6-8.1                         amd64        high-quality block-sorting file compressor library - runtime
+ii  libc-bin                              2.24-11+deb9u4                    amd64        GNU C Library: Binaries
+ii  libc-l10n                             2.24-11+deb9u4                    all          GNU C Library: localization files
+ii  libc6:amd64                           2.24-11+deb9u4                    amd64        GNU C Library: Shared libraries
+ii  libcap-ng0:amd64                      0.7.7-3+b1                        amd64        An alternate POSIX capabilities library
+ii  libcap2:amd64                         1:2.25-1                          amd64        POSIX 1003.1e capabilities (library)
+ii  libcomerr2:amd64                      1.43.4-2+deb9u2                   amd64        common error description library
+ii  libcryptsetup4:amd64                  2:1.7.3-4                         amd64        disk encryption support - shared library
+ii  libcurl3:amd64                        7.52.1-5+deb9u12                  amd64        easy-to-use client-side URL transfer library (OpenSSL flavour)
+ii  libcurl3-gnutls:amd64                 7.52.1-5+deb9u13                  amd64        easy-to-use client-side URL transfer library (GnuTLS flavour)
+ii  libdb5.3:amd64                        5.3.28-12+deb9u1                  amd64        Berkeley v5.3 Database Libraries [runtime]
+ii  libdebconfclient0:amd64               0.227                             amd64        Debian Configuration Management System (C-implementation library)
+ii  libdevmapper1.02.1:amd64              2:1.02.137-2                      amd64        Linux Kernel Device Mapper userspace library
+ii  libdns-export162                      1:9.10.3.dfsg.P4-12.3+deb9u7      amd64        Exported DNS Shared Library
+ii  libdns162:amd64                       1:9.10.3.dfsg.P4-12.3+deb9u7      amd64        DNS Shared Library used by BIND
+ii  libedit2:amd64                        3.1-20160903-3                    amd64        BSD editline and history libraries
+ii  libelf1:amd64                         0.168-1                           amd64        library to read and write ELF files
+ii  liberror-perl                         0.17024-1                         all          Perl module for error/exception handling in an OO-ish way
+ii  libestr0                              0.1.10-2                          amd64        Helper functions for handling strings (lib)
+ii  libexpat1:amd64                       2.2.0-2+deb9u3                    amd64        XML parsing C library - runtime library
+ii  libfastjson4:amd64                    0.99.4-1                          amd64        fast json library for C
+ii  libfdisk1:amd64                       2.29.2-1+deb9u1                   amd64        fdisk partitioning library
+ii  libffi6:amd64                         3.2.1-6                           amd64        Foreign Function Interface library runtime
+ii  libfreetype6:amd64                    2.6.3-3.2+deb9u2                  amd64        FreeType 2 font engine, shared library files
+ii  libfuse2:amd64                        2.9.7-1+deb9u2                    amd64        Filesystem in Userspace (library)
+ii  libgcc1:amd64                         1:6.3.0-18+deb9u1                 amd64        GCC support library
+ii  libgcrypt20:amd64                     1.7.6-2+deb9u3                    amd64        LGPL Crypto library - runtime library
+ii  libgdbm3:amd64                        1.8.3-14                          amd64        GNU dbm database routines (runtime version)
+ii  libgeoip1:amd64                       1.6.9-4                           amd64        non-DNS IP-to-country resolver library
+ii  libgmp10:amd64                        2:6.1.2+dfsg-1                    amd64        Multiprecision arithmetic library
+ii  libgnutls30:amd64                     3.5.8-5+deb9u5                    amd64        GNU TLS library - main runtime library
+ii  libgpg-error0:amd64                   1.26-2                            amd64        library for common error values and messages in GnuPG components
+ii  libgpm2:amd64                         1.20.4-6.2+b1                     amd64        General Purpose Mouse - shared library
+ii  libgssapi-krb5-2:amd64                1.15-1+deb9u2                     amd64        MIT Kerberos runtime libraries - krb5 GSS-API Mechanism
+ii  libhogweed4:amd64                     3.3-1+b2                          amd64        low level cryptographic library (public-key cryptos)
+ii  libicu57:amd64                        57.1-6+deb9u4                     amd64        International Components for Unicode
+ii  libidn11:amd64                        1.33-1+deb9u1                     amd64        GNU Libidn library, implementation of IETF IDN specifications
+ii  libidn2-0:amd64                       0.16-1+deb9u1                     amd64        Internationalized domain names (IDNA2008) library
+ii  libip4tc0:amd64                       1.6.0+snapshot20161117-6          amd64        netfilter libip4tc library
+ii  libip6tc0:amd64                       1.6.0+snapshot20161117-6          amd64        netfilter libip6tc library
+ii  libiptc0:amd64                        1.6.0+snapshot20161117-6          amd64        netfilter libiptc library
+ii  libisc-export160                      1:9.10.3.dfsg.P4-12.3+deb9u7      amd64        Exported ISC Shared Library
+ii  libisc160:amd64                       1:9.10.3.dfsg.P4-12.3+deb9u7      amd64        ISC Shared Library used by BIND
+ii  libisccc140:amd64                     1:9.10.3.dfsg.P4-12.3+deb9u7      amd64        Command Channel Library used by BIND
+ii  libisccfg140:amd64                    1:9.10.3.dfsg.P4-12.3+deb9u7      amd64        Config File Handling Library used by BIND
+ii  libjson-c3:amd64                      0.12.1-1.1+deb9u1                 amd64        JSON manipulation library - shared library
+ii  libk5crypto3:amd64                    1.15-1+deb9u2                     amd64        MIT Kerberos runtime libraries - Crypto Library
+ii  libkeyutils1:amd64                    1.5.9-9                           amd64        Linux Key Management Utilities (library)
+ii  libklibc                              2.0.4-9                           amd64        minimal libc subset for use with initramfs
+ii  libkmod2:amd64                        23-2                              amd64        libkmod shared library
+ii  libkrb5-3:amd64                       1.15-1+deb9u2                     amd64        MIT Kerberos runtime libraries
+ii  libkrb5support0:amd64                 1.15-1+deb9u2                     amd64        MIT Kerberos runtime libraries - Support library
+ii  libksba8:amd64                        1.3.5-2                           amd64        X.509 and CMS support library
+ii  libldap-2.4-2:amd64                   2.4.44+dfsg-5+deb9u6              amd64        OpenLDAP libraries
+ii  libldap-common                        2.4.44+dfsg-5+deb9u6              all          OpenLDAP common files for libraries
+ii  liblocale-gettext-perl                1.07-3+b1                         amd64        module using libc functions for internationalization in Perl
+ii  liblogging-stdlog0:amd64              1.0.5-2+b2                        amd64        easy to use and lightweight logging library
+ii  liblognorm5:amd64                     2.0.1-1.1+b1                      amd64        log normalizing library
+ii  liblwres141:amd64                     1:9.10.3.dfsg.P4-12.3+deb9u7      amd64        Lightweight Resolver Library used by BIND
+ii  liblz4-1:amd64                        0.0~r131-2+b1                     amd64        Fast LZ compression algorithm library - runtime
+ii  liblzma5:amd64                        5.2.2-1.2+b1                      amd64        XZ-format compression library
+ii  libmagic-mgc                          1:5.30-1+deb9u3                   amd64        File type determination library using "magic" numbers (compiled magic file)
+ii  libmagic1:amd64                       1:5.30-1+deb9u3                   amd64        Recognize the type of data in a file using "magic" numbers - library
+ii  libmnl0:amd64                         1.0.4-2                           amd64        minimalistic Netlink communication library
+ii  libmount1:amd64                       2.29.2-1+deb9u1                   amd64        device mounting library
+ii  libmpdec2:amd64                       2.4.2-1                           amd64        library for decimal floating point arithmetic (runtime library)
+ii  libncurses5:amd64                     6.0+20161126-1+deb9u2             amd64        shared libraries for terminal handling
+ii  libncursesw5:amd64                    6.0+20161126-1+deb9u2             amd64        shared libraries for terminal handling (wide character support)
+ii  libnetfilter-conntrack3:amd64         1.0.6-2                           amd64        Netfilter netlink-conntrack library
+ii  libnettle6:amd64                      3.3-1+b2                          amd64        low level cryptographic library (symmetric and one-way cryptos)
+ii  libnewt0.52:amd64                     0.52.19-1+b1                      amd64        Not Erik's Windowing Toolkit - text mode windowing with slang
+ii  libnfnetlink0:amd64                   1.0.1-3                           amd64        Netfilter netlink library
+ii  libnghttp2-14:amd64                   1.18.1-1+deb9u1                   amd64        library implementing HTTP/2 protocol (shared library)
+ii  libnpth0:amd64                        1.3-1                             amd64        replacement for GNU Pth using system threads
+ii  libopts25:amd64                       1:5.18.12-3                       amd64        automated option processing library based on autogen
+ii  libp11-kit0:amd64                     0.23.3-2                          amd64        library for loading and coordinating access to PKCS#11 modules - runtime
+ii  libpam-modules:amd64                  1.1.8-3.6                         amd64        Pluggable Authentication Modules for PAM
+ii  libpam-modules-bin                    1.1.8-3.6                         amd64        Pluggable Authentication Modules for PAM - helper binaries
+ii  libpam-runtime                        1.1.8-3.6                         all          Runtime support for the PAM library
+ii  libpam0g:amd64                        1.1.8-3.6                         amd64        Pluggable Authentication Modules library
+ii  libparted2:amd64                      3.2-17                            amd64        disk partition manipulator - shared library
+ii  libpcre3:amd64                        2:8.39-3                          amd64        Old Perl 5 Compatible Regular Expression Library - runtime files
+ii  libperl5.24:amd64                     5.24.1-3+deb9u7                   amd64        shared Perl library
+ii  libpipeline1:amd64                    1.4.1-2                           amd64        pipeline manipulation library
+ii  libpng16-16:amd64                     1.6.28-1+deb9u1                   amd64        PNG library - runtime (version 1.6)
+ii  libpopt0:amd64                        1.16-10+b2                        amd64        lib for parsing cmdline parameters
+ii  libprocps6:amd64                      2:3.3.12-3+deb9u1                 amd64        library for accessing process information from /proc
+ii  libpsl5:amd64                         0.17.0-3                          amd64        Library for Public Suffix List (shared libraries)
+ii  libpython-stdlib:amd64                2.7.13-2                          amd64        interactive high-level object-oriented language (default python version)
+ii  libpython2.7-minimal:amd64            2.7.13-2+deb9u4                   amd64        Minimal subset of the Python language (version 2.7)
+ii  libpython2.7-stdlib:amd64             2.7.13-2+deb9u4                   amd64        Interactive high-level object-oriented language (standard library, version 2.7)
+ii  libpython3-stdlib:amd64               3.5.3-1                           amd64        interactive high-level object-oriented language (default python3 version)
+ii  libpython3.5-minimal:amd64            3.5.3-1+deb9u3                    amd64        Minimal subset of the Python language (version 3.5)
+ii  libpython3.5-stdlib:amd64             3.5.3-1+deb9u3                    amd64        Interactive high-level object-oriented language (standard library, version 3.5)
+ii  libreadline7:amd64                    7.0-3                             amd64        GNU readline and history libraries, run-time libraries
+ii  librtmp1:amd64                        2.4+20151223.gitfa8646d.1-1+b1    amd64        toolkit for RTMP streams (shared library)
+ii  libsasl2-2:amd64                      2.1.27~101-g0780600+dfsg-3+deb9u1 amd64        Cyrus SASL - authentication abstraction library
+ii  libsasl2-modules-db:amd64             2.1.27~101-g0780600+dfsg-3+deb9u1 amd64        Cyrus SASL - pluggable authentication modules (DB)
+ii  libseccomp2:amd64                     2.3.1-2.1+deb9u1                  amd64        high level interface to Linux seccomp filter
+ii  libselinux1:amd64                     2.6-3+b3                          amd64        SELinux runtime shared libraries
+ii  libsemanage-common                    2.6-2                             all          Common files for SELinux policy management libraries
+ii  libsemanage1:amd64                    2.6-2                             amd64        SELinux policy management library
+ii  libsepol1:amd64                       2.6-2                             amd64        SELinux library for manipulating binary security policies
+ii  libslang2:amd64                       2.3.1-5                           amd64        S-Lang programming library - runtime version
+ii  libsmartcols1:amd64                   2.29.2-1+deb9u1                   amd64        smart column output alignment library
+ii  libsqlite3-0:amd64                    3.16.2-5+deb9u3                   amd64        SQLite 3 shared library
+ii  libss2:amd64                          1.43.4-2+deb9u2                   amd64        command-line interface parsing library
+ii  libssh2-1:amd64                       1.7.0-1+deb9u1                    amd64        SSH2 client-side library
+ii  libssl1.0.2:amd64                     1.0.2u-1~deb9u3                   amd64        Secure Sockets Layer toolkit - shared libraries
+ii  libssl1.1:amd64                       1.1.0l-1~deb9u2                   amd64        Secure Sockets Layer toolkit - shared libraries
+ii  libstdc++6:amd64                      6.3.0-18+deb9u1                   amd64        GNU Standard C++ Library v3
+ii  libsystemd0:amd64                     232-25+deb9u12                    amd64        systemd utility library
+ii  libtasn1-6:amd64                      4.10-1.1+deb9u1                   amd64        Manage ASN.1 structures (runtime)
+ii  libtext-charwidth-perl                0.04-7+b5                         amd64        get display widths of characters on the terminal
+ii  libtext-iconv-perl                    1.7-5+b4                          amd64        converts between character sets in Perl
+ii  libtext-wrapi18n-perl                 0.06-7.1                          all          internationalized substitute of Text::Wrap
+ii  libtinfo5:amd64                       6.0+20161126-1+deb9u2             amd64        shared low-level terminfo library for terminal handling
+ii  libudev1:amd64                        232-25+deb9u12                    amd64        libudev shared library
+ii  libunistring0:amd64                   0.9.6+really0.9.3-0.1             amd64        Unicode string library for C
+ii  libustr-1.0-1:amd64                   1.0.4-6                           amd64        Micro string library: shared library
+ii  libuuid1:amd64                        2.29.2-1+deb9u1                   amd64        Universally Unique ID library
+ii  libwrap0:amd64                        7.6.q-26                          amd64        Wietse Venema's TCP wrappers library
+ii  libxapian30:amd64                     1.4.3-2+deb9u3                    amd64        Search engine library
+ii  libxml2:amd64                         2.9.4+dfsg1-2.2+deb9u3            amd64        GNOME XML library
+ii  libxtables12:amd64                    1.6.0+snapshot20161117-6          amd64        netfilter xtables library
+ii  linux-base                            4.5                               all          Linux image base package
+ii  linux-image-4.9.0-14-amd64            4.9.240-2                         amd64        Linux 4.9 for 64-bit PCs
+ii  linux-image-amd64                     4.9+80+deb9u12                    amd64        Linux for 64-bit PCs (meta-package)
+ii  locales                               2.24-11+deb9u4                    all          GNU C Library: National Language (locale) data [support]
+ii  login                                 1:4.4-4.1                         amd64        system login tools
+ii  logrotate                             3.11.0-0.1                        amd64        Log rotation utility
+ii  lsb-base                              9.20161125                        all          Linux Standard Base init script functionality
+ii  lsb-release                           9.20161125                        all          Linux Standard Base version reporting utility
+ii  man-db                                2.7.6.1-2                         amd64        on-line manual pager
+ii  mawk                                  1.3.3-17+b3                       amd64        a pattern scanning and text processing language
+ii  mime-support                          3.60                              all          MIME files 'mime.types' & 'mailcap', and support programs
+ii  mount                                 2.29.2-1+deb9u1                   amd64        tools for mounting and manipulating filesystems
+ii  multiarch-support                     2.24-11+deb9u4                    amd64        Transitional package to ensure multiarch compatibility
+ii  nano                                  2.7.4-1                           amd64        small, friendly text editor inspired by Pico
+ii  ncurses-base                          6.0+20161126-1+deb9u2             all          basic terminal type definitions
+ii  ncurses-bin                           6.0+20161126-1+deb9u2             amd64        terminal-related programs and man pages
+ii  net-tools                             1.60+git20161116.90da8a0-1        amd64        NET-3 networking toolkit
+ii  netbase                               5.4                               all          Basic TCP/IP networking system
+ii  ntp                                   1:4.2.8p10+dfsg-3+deb9u2          amd64        Network Time Protocol daemon and utility programs
+ii  nvme-cli                              1.0-3                             amd64        userspace tooling to control NVMe drives
+ii  openssh-client                        1:7.4p1-10+deb9u7                 amd64        secure shell (SSH) client, for secure access to remote machines
+ii  openssh-server                        1:7.4p1-10+deb9u7                 amd64        secure shell (SSH) server, for secure access from remote machines
+ii  openssh-sftp-server                   1:7.4p1-10+deb9u7                 amd64        secure shell (SSH) sftp server module, for SFTP access from remote machines
+ii  openssl                               1.1.0l-1~deb9u2                   amd64        Secure Sockets Layer toolkit - cryptographic utility
+ii  parted                                3.2-17                            amd64        disk partition manipulator
+ii  passwd                                1:4.4-4.1                         amd64        change and administer password and group data
+ii  patch                                 2.7.5-1+deb9u2                    amd64        Apply a diff file to an original
+ii  perl                                  5.24.1-3+deb9u7                   amd64        Larry Wall's Practical Extraction and Report Language
+ii  perl-base                             5.24.1-3+deb9u7                   amd64        minimal Perl system
+ii  perl-modules-5.24                     5.24.1-3+deb9u7                   all          Core Perl modules
+ii  pinentry-curses                       1.0.0-2                           amd64        curses-based PIN or pass-phrase entry dialog for GnuPG
+ii  procps                                2:3.3.12-3+deb9u1                 amd64        /proc file system utilities
+ii  python                                2.7.13-2                          amd64        interactive high-level object-oriented language (default version)
+ii  python-apt-common                     1.4.2                             all          Python interface to libapt-pkg (locales)
+ii  python-crcmod                         1.7-2+b2                          amd64        CRC Generator - python 2.x
+ii  python-minimal                        2.7.13-2                          amd64        minimal subset of the Python language (default version)
+ii  python2.7                             2.7.13-2+deb9u4                   amd64        Interactive high-level object-oriented language (version 2.7)
+ii  python2.7-minimal                     2.7.13-2+deb9u4                   amd64        Minimal subset of the Python language (version 2.7)
+ii  python3                               3.5.3-1                           amd64        interactive high-level object-oriented language (default python3 version)
+ii  python3-apt                           1.4.2                             amd64        Python 3 interface to libapt-pkg
+ii  python3-minimal                       3.5.3-1                           amd64        minimal subset of the Python language (default python3 version)
+ii  python3.5                             3.5.3-1+deb9u3                    amd64        Interactive high-level object-oriented language (version 3.5)
+ii  python3.5-minimal                     3.5.3-1+deb9u3                    amd64        Minimal subset of the Python language (version 3.5)
+ii  readline-common                       7.0-3                             all          GNU readline and history libraries, common files
+ii  rename                                0.20-4                            all          Perl extension for renaming multiple files
+ii  rsync                                 3.1.2-1+deb9u2                    amd64        fast, versatile, remote (and local) file-copying tool
+ii  rsyslog                               8.24.0-1                          amd64        reliable system and kernel logging daemon
+ii  screen                                4.5.0-6                           amd64        terminal multiplexer with VT100/ANSI terminal emulation
+ii  sed                                   4.4-1                             amd64        GNU stream editor for filtering/transforming text
+ii  sensible-utils                        0.0.9+deb9u1                      all          Utilities for sensible alternative selection
+ii  sgml-base                             1.29                              all          SGML infrastructure and SGML catalog file support
+ii  sudo                                  1.8.19p1-2.1+deb9u2               amd64        Provide limited super user privileges to specific users
+ii  systemd                               232-25+deb9u12                    amd64        system and service manager
+ii  systemd-sysv                          232-25+deb9u12                    amd64        system and service manager - SysV links
+ii  sysvinit-utils                        2.88dsf-59.9                      amd64        System-V-like utilities
+ii  tar                                   1.29b-1.1                         amd64        GNU version of the tar archiving utility
+ii  tasksel                               3.39                              all          tool for selecting tasks for installation on Debian systems
+ii  tasksel-data                          3.39                              all          official tasks used for installation of Debian systems
+ii  tzdata                                2020d-0+deb9u1                    all          time zone and daylight-saving time data
+ii  ucf                                   3.0036                            all          Update Configuration File(s): preserve user changes to config files
+ii  udev                                  232-25+deb9u12                    amd64        /dev/ and hotplug management daemon
+ii  unattended-upgrades                   0.93.1+nmu1                       all          automatic installation of security upgrades
+ii  util-linux                            2.29.2-1+deb9u1                   amd64        miscellaneous system utilities
+ii  uuid-runtime                          2.29.2-1+deb9u1                   amd64        runtime components for the Universally Unique ID library
+ii  vim                                   2:8.0.0197-4+deb9u3               amd64        Vi IMproved - enhanced vi editor
+ii  vim-common                            2:8.0.0197-4+deb9u3               all          Vi IMproved - Common files
+ii  vim-runtime                           2:8.0.0197-4+deb9u3               all          Vi IMproved - Runtime files
+ii  vim-tiny                              2:8.0.0197-4+deb9u3               amd64        Vi IMproved - enhanced vi editor - compact version
+ii  wget                                  1.18-5+deb9u3                     amd64        retrieves files from the web
+ii  whiptail                              0.52.19-1+b1                      amd64        Displays user-friendly dialog boxes from shell scripts
+ii  xml-core                              0.17                              all          XML infrastructure and XML catalog file support
+ii  xxd                                   2:8.0.0197-4+deb9u3               amd64        tool to make (or reverse) a hex dump
+ii  xz-utils                              5.2.2-1.2+b1                      amd64        XZ-format compression utilities
+ii  zlib1g:amd64                          1:1.2.8.dfsg-5                    amd64        compression library - runtime
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec apt-get --just-print upgrade
+
+
+ + + + + + +
+
Reading package lists...
+Building dependency tree...
+Reading state information...
+Calculating upgrade...
+The following packages will be upgraded:
+  curl google-cloud-packages-archive-keyring google-cloud-sdk libcurl3
+  libp11-kit0 linux-image-4.9.0-14-amd64 python-apt-common python3-apt tzdata
+9 upgraded, 0 newly installed, 0 to remove and 0 not upgraded.
+Inst tzdata [2020d-0+deb9u1] (2020e-0+deb9u1 Debian-Security:9/oldstable [all])
+Inst libp11-kit0 [0.23.3-2] (0.23.3-2+deb9u1 Debian-Security:9/oldstable [amd64])
+Inst curl [7.52.1-5+deb9u12] (7.52.1-5+deb9u13 Debian-Security:9/oldstable [amd64]) []
+Inst libcurl3 [7.52.1-5+deb9u12] (7.52.1-5+deb9u13 Debian-Security:9/oldstable [amd64])
+Inst google-cloud-packages-archive-keyring [1.2-347415788] (1.2-350029030 google-cloud-packages-archive-keyring-jessie:google-cloud-packages-archive-keyring-stretch [all])
+Inst google-cloud-sdk [321.0.0-0] (322.0.0-0 cloud-sdk-stretch:cloud-sdk-stretch [all])
+Inst linux-image-4.9.0-14-amd64 [4.9.240-2] (4.9.246-2 Debian-Security:9/oldstable [amd64])
+Inst python-apt-common [1.4.2] (1.4.3 Debian-Security:9/oldstable [all])
+Inst python3-apt [1.4.2] (1.4.3 Debian-Security:9/oldstable [amd64])
+Conf tzdata (2020e-0+deb9u1 Debian-Security:9/oldstable [all])
+Conf libp11-kit0 (0.23.3-2+deb9u1 Debian-Security:9/oldstable [amd64])
+Conf curl (7.52.1-5+deb9u13 Debian-Security:9/oldstable [amd64])
+Conf libcurl3 (7.52.1-5+deb9u13 Debian-Security:9/oldstable [amd64])
+Conf google-cloud-packages-archive-keyring (1.2-350029030 google-cloud-packages-archive-keyring-jessie:google-cloud-packages-archive-keyring-stretch [all])
+Conf google-cloud-sdk (322.0.0-0 cloud-sdk-stretch:cloud-sdk-stretch [all])
+Conf linux-image-4.9.0-14-amd64 (4.9.246-2 Debian-Security:9/oldstable [amd64])
+Conf python-apt-common (1.4.3 Debian-Security:9/oldstable [all])
+Conf python3-apt (1.4.3 Debian-Security:9/oldstable [amd64])
+
+
+
+
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Black.ttf b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Black.ttf new file mode 100644 index 0000000..6848db0 Binary files /dev/null and b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Black.ttf differ diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-BlackItalic.ttf b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-BlackItalic.ttf new file mode 100644 index 0000000..5decf12 Binary files /dev/null and b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-BlackItalic.ttf differ diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Bold.ttf b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Bold.ttf new file mode 100644 index 0000000..7434369 Binary files /dev/null and b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Bold.ttf differ diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-BoldItalic.ttf b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-BoldItalic.ttf new file mode 100644 index 0000000..684aacf Binary files /dev/null and b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-BoldItalic.ttf differ diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Hairline.ttf b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Hairline.ttf new file mode 100644 index 0000000..288be29 Binary files /dev/null and b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Hairline.ttf differ diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-HairlineItalic.ttf b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-HairlineItalic.ttf new file mode 100644 index 0000000..c2bfd33 Binary files /dev/null and b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-HairlineItalic.ttf differ diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Italic.ttf b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Italic.ttf new file mode 100644 index 0000000..3d3b7a2 Binary files /dev/null and b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Italic.ttf differ diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Light.ttf b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Light.ttf new file mode 100644 index 0000000..a958067 Binary files /dev/null and b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Light.ttf differ diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-LightItalic.ttf b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-LightItalic.ttf new file mode 100644 index 0000000..5e45ad9 Binary files /dev/null and b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-LightItalic.ttf differ diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Regular.ttf b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Regular.ttf new file mode 100644 index 0000000..04ea8ef Binary files /dev/null and b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/Lato-Regular.ttf differ diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/OFL.txt b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/OFL.txt new file mode 100644 index 0000000..98383e3 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/fonts/Lato/OFL.txt @@ -0,0 +1,93 @@ +Copyright (c) 2010-2014 by tyPoland Lukasz Dziedzic (team@latofonts.com) with Reserved Font Name "Lato" + +This Font Software is licensed under the SIL Open Font License, Version 1.1. +This license is copied below, and is also available with a FAQ at: +http://scripts.sil.org/OFL + + +----------------------------------------------------------- +SIL OPEN FONT LICENSE Version 1.1 - 26 February 2007 +----------------------------------------------------------- + +PREAMBLE +The goals of the Open Font License (OFL) are to stimulate worldwide +development of collaborative font projects, to support the font creation +efforts of academic and linguistic communities, and to provide a free and +open framework in which fonts may be shared and improved in partnership +with others. + +The OFL allows the licensed fonts to be used, studied, modified and +redistributed freely as long as they are not sold by themselves. The +fonts, including any derivative works, can be bundled, embedded, +redistributed and/or sold with any software provided that any reserved +names are not used by derivative works. The fonts and derivatives, +however, cannot be released under any other type of license. The +requirement for fonts to remain under this license does not apply +to any document created using the fonts or their derivatives. + +DEFINITIONS +"Font Software" refers to the set of files released by the Copyright +Holder(s) under this license and clearly marked as such. This may +include source files, build scripts and documentation. + +"Reserved Font Name" refers to any names specified as such after the +copyright statement(s). + +"Original Version" refers to the collection of Font Software components as +distributed by the Copyright Holder(s). + +"Modified Version" refers to any derivative made by adding to, deleting, +or substituting -- in part or in whole -- any of the components of the +Original Version, by changing formats or by porting the Font Software to a +new environment. + +"Author" refers to any designer, engineer, programmer, technical +writer or other person who contributed to the Font Software. + +PERMISSION & CONDITIONS +Permission is hereby granted, free of charge, to any person obtaining +a copy of the Font Software, to use, study, copy, merge, embed, modify, +redistribute, and sell modified and unmodified copies of the Font +Software, subject to the following conditions: + +1) Neither the Font Software nor any of its individual components, +in Original or Modified Versions, may be sold by itself. + +2) Original or Modified Versions of the Font Software may be bundled, +redistributed and/or sold with any software, provided that each copy +contains the above copyright notice and this license. These can be +included either as stand-alone text files, human-readable headers or +in the appropriate machine-readable metadata fields within text or +binary files as long as those fields can be easily viewed by the user. + +3) No Modified Version of the Font Software may use the Reserved Font +Name(s) unless explicit written permission is granted by the corresponding +Copyright Holder. This restriction only applies to the primary font name as +presented to the users. + +4) The name(s) of the Copyright Holder(s) or the Author(s) of the Font +Software shall not be used to promote, endorse or advertise any +Modified Version, except to acknowledge the contribution(s) of the +Copyright Holder(s) and the Author(s) or with their explicit written +permission. + +5) The Font Software, modified or unmodified, in part or in whole, +must be distributed entirely under this license, and must not be +distributed under any other license. The requirement for fonts to +remain under this license does not apply to any document created +using the Font Software. + +TERMINATION +This license becomes null and void if any of the above conditions are +not met. + +DISCLAIMER +THE FONT SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, +EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO ANY WARRANTIES OF +MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT +OF COPYRIGHT, PATENT, TRADEMARK, OR OTHER RIGHT. IN NO EVENT SHALL THE +COPYRIGHT HOLDER BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, +INCLUDING ANY GENERAL, SPECIAL, INDIRECT, INCIDENTAL, OR CONSEQUENTIAL +DAMAGES, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING +FROM, OUT OF THE USE OR INABILITY TO USE THE FONT SOFTWARE OR FROM +OTHER DEALINGS IN THE FONT SOFTWARE. diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/images/icons/favicon.ico b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/images/icons/favicon.ico new file mode 100644 index 0000000..e69de29 diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/images/otseca_logo.png b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/images/otseca_logo.png new file mode 100644 index 0000000..61081dd Binary files /dev/null and b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/images/otseca_logo.png differ diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/index.html b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/index.html new file mode 100644 index 0000000..a1d7611 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/index.html @@ -0,0 +1,144 @@ + + + +Φ otseca v1.0.5 security audit script + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +

(Ot)her (Sec)urity (A)wareness

+ + + +

Open source security auditing tool to search and dump system configuration.
It allows you to generate reports in HTML or RAW-HTML formats.

+ +

+Φ otseca v1.0.5 security audit script +

+ +

+gen_time: 07.01.2021 17:38:51 +

+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
TYPEREPORT FILEDESCRIPTION
Systemsystem.all.log.htmlIt contains tasks related directly to the system
Kernelkernel.all.log.htmlIt contains tasks related directly to the kernel
Permissionspermissions.all.log.htmlIt contains tasks related directly to the permissions
Servicesservices.all.log.htmlIt contains tasks related directly to the system services
Networknetwork.all.log.htmlIt contains tasks related directly to the network stack
Distributiondistro.all.log.htmlIt contains tasks related directly to the distribution stack
Externalexternal.all.log.htmlIt contains all external (user) tasks
+ + + + + + + + + + + + + + + + + + + + + + + + + diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/js/main.js b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/js/main.js new file mode 100644 index 0000000..02e17d2 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/js/main.js @@ -0,0 +1,25 @@ + +(function ($) { + "use strict"; + $('.column100').on('mouseover',function(){ + var table1 = $(this).parent().parent().parent(); + var table2 = $(this).parent().parent(); + var verTable = $(table1).data('vertable')+""; + var column = $(this).data('column') + ""; + + $(table2).find("."+column).addClass('hov-column-'+ verTable); + $(table1).find(".row100.head ."+column).addClass('hov-column-head-'+ verTable); + }); + + $('.column100').on('mouseout',function(){ + var table1 = $(this).parent().parent().parent(); + var table2 = $(this).parent().parent(); + var verTable = $(table1).data('vertable')+""; + var column = $(this).data('column') + ""; + + $(table2).find("."+column).removeClass('hov-column-'+ verTable); + $(table1).find(".row100.head ."+column).removeClass('hov-column-head-'+ verTable); + }); + + +})(jQuery); \ No newline at end of file diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/kernel.all.log.html b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/kernel.all.log.html new file mode 100644 index 0000000..4ae68dd --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/kernel.all.log.html @@ -0,0 +1,852 @@ + + + +Φ otseca v1.0.5 security audit script + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +

(Ot)her (Sec)urity (A)wareness

+ + + +

Open source security auditing tool to search and dump system configuration.
It allows you to generate reports in HTML or RAW-HTML formats.

+ +

+Φ otseca v1.0.5 security audit script +

+ +

+gen_time: 07.01.2021 17:38:51 +

+ + + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec lsmod
+
+
+ + + + + + +
+
Module                  Size  Used by
+iptable_filter         16384  0
+tcp_diag               16384  0
+udp_diag               16384  0
+inet_diag              20480  2 tcp_diag,udp_diag
+binfmt_misc            20480  1
+sb_edac                24576  0
+edac_core              77824  1 sb_edac
+crct10dif_pclmul       16384  0
+crc32_pclmul           16384  0
+ghash_clmulni_intel    16384  0
+intel_rapl_perf        16384  0
+evdev                  24576  3
+virtio_rng             16384  0
+serio_raw              16384  0
+sg                     32768  0
+rng_core               16384  1 virtio_rng
+virtio_balloon         20480  0
+pvpanic                16384  0
+button                 16384  0
+ip_tables              24576  1 iptable_filter
+x_tables               36864  2 ip_tables,iptable_filter
+autofs4                40960  2
+ext4                  593920  1
+crc16                  16384  1 ext4
+jbd2                  110592  1 ext4
+crc32c_generic         16384  0
+fscrypto               28672  1 ext4
+ecb                    16384  0
+mbcache                16384  2 ext4
+sd_mod                 49152  2
+virtio_scsi            20480  1
+crc32c_intel           24576  2
+scsi_mod              225280  3 sd_mod,virtio_scsi,sg
+virtio_net             32768  0
+aesni_intel           167936  0
+aes_x86_64             20480  1 aesni_intel
+glue_helper            16384  1 aesni_intel
+lrw                    16384  1 aesni_intel
+gf128mul               16384  1 lrw
+ablk_helper            16384  1 aesni_intel
+cryptd                 24576  3 ablk_helper,ghash_clmulni_intel,aesni_intel
+psmouse               135168  0
+i2c_piix4              24576  0
+virtio_pci             24576  0
+virtio_ring            24576  5 virtio_net,virtio_rng,virtio_scsi,virtio_balloon,virtio_pci
+virtio                 16384  5 virtio_net,virtio_rng,virtio_scsi,virtio_balloon,virtio_pci
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl fs.suid_dumpable 1
+
+
+ + + + + + +
+
fs.suid_dumpable = 0
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl kernel.randomize_va_space 0
+
+
+ + + + + + +
+
kernel.randomize_va_space = 2
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.ip_forward 1
+
+
+ + + + + + +
+
net.ipv4.ip_forward = 0
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.conf.all.send_redirects 1
+
+
+ + + + + + +
+
net.ipv4.conf.all.send_redirects = 0
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.conf.default.send_redirects 1
+
+
+ + + + + + +
+
net.ipv4.conf.default.send_redirects = 0
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.conf.all.accept_redirects 1
+
+
+ + + + + + +
+
net.ipv4.conf.all.accept_redirects = 0
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.conf.default.accept_redirects 1
+
+
+ + + + + + +
+
net.ipv4.conf.default.accept_redirects = 0
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.conf.all.accept_source_route 1
+
+
+ + + + + + +
+
net.ipv4.conf.all.accept_source_route = 0
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.conf.default.accept_source_route 1
+
+
+ + + + + + +
+
net.ipv4.conf.default.accept_source_route = 0
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.conf.all.secure_redirects 1
+
+
+ + + + + + +
+
net.ipv4.conf.all.secure_redirects = 1
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.conf.default.secure_redirects 1
+
+
+ + + + + + +
+
net.ipv4.conf.default.secure_redirects = 1
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.conf.all.log_martians 1
+
+
+ + + + + + +
+
net.ipv4.conf.all.log_martians = 1
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.conf.default.log_martians 1
+
+
+ + + + + + +
+
net.ipv4.conf.default.log_martians = 1
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.icmp_echo_ignore_broadcasts 1
+
+
+ + + + + + +
+
net.ipv4.icmp_echo_ignore_broadcasts = 1
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.icmp_ignore_bogus_error_responses 1
+
+
+ + + + + + +
+
net.ipv4.icmp_ignore_bogus_error_responses = 1
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.conf.all.rp_filter 1
+
+
+ + + + + + +
+
net.ipv4.conf.all.rp_filter = 1
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.conf.default.rp_filter 1
+
+
+ + + + + + +
+
net.ipv4.conf.default.rp_filter = 1
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv4.tcp_syncookies 1
+
+
+ + + + + + +
+
net.ipv4.tcp_syncookies = 1
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv6.conf.all.accept_ra 1
+
+
+ + + + + + +
+
net.ipv6.conf.all.accept_ra = 1
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv6.conf.default.accept_ra 1
+
+
+ + + + + + +
+
net.ipv6.conf.default.accept_ra = 1
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv6.conf.all.accept_redirects 1
+
+
+ + + + + + +
+
net.ipv6.conf.all.accept_redirects = 1
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _sysctl net.ipv6.conf.default.accept_redirects 1
+
+
+ + + + + + +
+
net.ipv6.conf.default.accept_redirects = 1
+
+
+
+
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/network.all.log.html b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/network.all.log.html new file mode 100644 index 0000000..fa87be9 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/network.all.log.html @@ -0,0 +1,428 @@ + + + +Φ otseca v1.0.5 security audit script + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +

(Ot)her (Sec)urity (A)wareness

+ + + +

Open source security auditing tool to search and dump system configuration.
It allows you to generate reports in HTML or RAW-HTML formats.

+ +

+Φ otseca v1.0.5 security audit script +

+ +

+gen_time: 07.01.2021 17:38:51 +

+ + + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec hostname -f
+
+
+ + + + + + +
+
debian-9.europe-west3-c.c.cc2020-tobiaswieck.internal
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec ifconfig -a
+
+
+ + + + + + +
+
eth0: flags=4163  mtu 1460
+        inet 10.156.0.6  netmask 255.255.255.255  broadcast 10.156.0.6
+        inet6 fe80::4001:aff:fe9c:6  prefixlen 64  scopeid 0x20
+        ether 42:01:0a:9c:00:06  txqueuelen 1000  (Ethernet)
+        RX packets 4741  bytes 40496762 (38.6 MiB)
+        RX errors 0  dropped 0  overruns 0  frame 0
+        TX packets 4972  bytes 613566 (599.1 KiB)
+        TX errors 0  dropped 0 overruns 0  carrier 0  collisions 0
+
+lo: flags=73  mtu 65536
+        inet 127.0.0.1  netmask 255.0.0.0
+        inet6 ::1  prefixlen 128  scopeid 0x10
+        loop  txqueuelen 1  (Local Loopback)
+        RX packets 133  bytes 10110 (9.8 KiB)
+        RX errors 0  dropped 0  overruns 0  frame 0
+        TX packets 133  bytes 10110 (9.8 KiB)
+        TX errors 0  dropped 0 overruns 0  carrier 0  collisions 0
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec iwconfig
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec netstat -tunap
+
+
+ + + + + + +
+
Active Internet connections (servers and established)
+Proto Recv-Q Send-Q Local Address           Foreign Address         State       PID/Program name    
+tcp        0      0 0.0.0.0:22              0.0.0.0:*               LISTEN      793/sshd            
+tcp        0      0 10.156.0.6:47266        169.254.169.254:80      ESTABLISHED 640/google_guest_ag 
+tcp        0      0 10.156.0.6:46638        151.101.14.132:80       TIME_WAIT   -                   
+tcp        0      0 10.156.0.6:44958        216.58.207.74:443       ESTABLISHED 640/google_guest_ag 
+tcp        0      0 10.156.0.6:47254        169.254.169.254:80      ESTABLISHED 645/google_osconfig 
+tcp        0    468 10.156.0.6:22           92.196.116.34:53494     ESTABLISHED 911/sshd: ktdw73 [p 
+tcp        0      0 10.156.0.6:39180        216.58.205.234:443      ESTABLISHED 645/google_osconfig 
+tcp        0      0 10.156.0.6:46636        151.101.14.132:80       TIME_WAIT   -                   
+tcp        0      0 10.156.0.6:37050        172.217.22.110:80       TIME_WAIT   -                   
+tcp6       0      0 :::22                   :::*                    LISTEN      793/sshd            
+udp        0      0 0.0.0.0:68              0.0.0.0:*                           598/dhclient        
+udp        0      0 10.156.0.6:123          0.0.0.0:*                           675/ntpd            
+udp        0      0 127.0.0.1:123           0.0.0.0:*                           675/ntpd            
+udp        0      0 0.0.0.0:123             0.0.0.0:*                           675/ntpd            
+udp6       0      0 fe80::4001:aff:fe9c:123 :::*                                675/ntpd            
+udp6       0      0 ::1:123                 :::*                                675/ntpd            
+udp6       0      0 :::123                  :::*                                675/ntpd            
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec netstat -rn
+
+
+ + + + + + +
+
Kernel IP routing table
+Destination     Gateway         Genmask         Flags   MSS Window  irtt Iface
+0.0.0.0         10.156.0.1      0.0.0.0         UG        0 0          0 eth0
+10.156.0.1      0.0.0.0         255.255.255.255 UH        0 0          0 eth0
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec iptables -nL -v
+
+
+ + + + + + +
+
Chain INPUT (policy ACCEPT 973 packets, 53736 bytes)
+ pkts bytes target     prot opt in     out     source               destination         
+
+Chain FORWARD (policy ACCEPT 0 packets, 0 bytes)
+ pkts bytes target     prot opt in     out     source               destination         
+
+Chain OUTPUT (policy ACCEPT 1691 packets, 202K bytes)
+ pkts bytes target     prot opt in     out     source               destination         
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec iptables -nL -v -t nat
+
+
+ + + + + + +
+
Chain PREROUTING (policy ACCEPT 0 packets, 0 bytes)
+ pkts bytes target     prot opt in     out     source               destination         
+
+Chain INPUT (policy ACCEPT 0 packets, 0 bytes)
+ pkts bytes target     prot opt in     out     source               destination         
+
+Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes)
+ pkts bytes target     prot opt in     out     source               destination         
+
+Chain POSTROUTING (policy ACCEPT 0 packets, 0 bytes)
+ pkts bytes target     prot opt in     out     source               destination         
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec iptables -S
+
+
+ + + + + + +
+
-P INPUT ACCEPT
+-P FORWARD ACCEPT
+-P OUTPUT ACCEPT
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec lsof -ni
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/permissions.all.log.html b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/permissions.all.log.html new file mode 100644 index 0000000..e1cea58 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/permissions.all.log.html @@ -0,0 +1,1864 @@ + + + +Φ otseca v1.0.5 security audit script + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +

(Ot)her (Sec)urity (A)wareness

+ + + +

Open source security auditing tool to search and dump system configuration.
It allows you to generate reports in HTML or RAW-HTML formats.

+ +

+Φ otseca v1.0.5 security audit script +

+ +

+gen_time: 07.01.2021 17:38:51 +

+ + + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec ls -l /tmp
+
+
+ + + + + + +
+
total 0
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec ls -l /etc/rc*.d
+
+
+ + + + + + +
+
/etc/rc0.d:
+total 0
+lrwxrwxrwx 1 root root 20 Dec 16 19:22 K01hwclock.sh -> ../init.d/hwclock.sh
+lrwxrwxrwx 1 root root 20 Dec 16 19:22 K01networking -> ../init.d/networking
+lrwxrwxrwx 1 root root 17 Dec 16 19:22 K01rsyslog -> ../init.d/rsyslog
+lrwxrwxrwx 1 root root 29 Dec 16 19:24 K01unattended-upgrades -> ../init.d/unattended-upgrades
+lrwxrwxrwx 1 root root 15 Dec 16 19:23 K01uuidd -> ../init.d/uuidd
+
+/etc/rc1.d:
+total 0
+lrwxrwxrwx 1 root root 17 Dec 16 19:22 K01rsyslog -> ../init.d/rsyslog
+lrwxrwxrwx 1 root root 15 Dec 16 19:23 K01uuidd -> ../init.d/uuidd
+
+/etc/rc2.d:
+total 0
+lrwxrwxrwx 1 root root 15 Dec 16 19:23 S01acpid -> ../init.d/acpid
+lrwxrwxrwx 1 root root 14 Dec 16 19:22 S01cron -> ../init.d/cron
+lrwxrwxrwx 1 root root 13 Dec 16 19:23 S01ntp -> ../init.d/ntp
+lrwxrwxrwx 1 root root 15 Jan  7 17:28 S01rsync -> ../init.d/rsync
+lrwxrwxrwx 1 root root 17 Dec 16 19:22 S01rsyslog -> ../init.d/rsyslog
+lrwxrwxrwx 1 root root 13 Dec 16 19:23 S01ssh -> ../init.d/ssh
+lrwxrwxrwx 1 root root 31 Dec 16 19:24 S01ssh-generate-hostkeys -> ../init.d/ssh-generate-hostkeys
+lrwxrwxrwx 1 root root 29 Dec 16 19:24 S01unattended-upgrades -> ../init.d/unattended-upgrades
+lrwxrwxrwx 1 root root 15 Dec 16 19:23 S01uuidd -> ../init.d/uuidd
+
+/etc/rc3.d:
+total 0
+lrwxrwxrwx 1 root root 15 Dec 16 19:23 S01acpid -> ../init.d/acpid
+lrwxrwxrwx 1 root root 14 Dec 16 19:22 S01cron -> ../init.d/cron
+lrwxrwxrwx 1 root root 13 Dec 16 19:23 S01ntp -> ../init.d/ntp
+lrwxrwxrwx 1 root root 15 Jan  7 17:28 S01rsync -> ../init.d/rsync
+lrwxrwxrwx 1 root root 17 Dec 16 19:22 S01rsyslog -> ../init.d/rsyslog
+lrwxrwxrwx 1 root root 13 Dec 16 19:23 S01ssh -> ../init.d/ssh
+lrwxrwxrwx 1 root root 31 Dec 16 19:24 S01ssh-generate-hostkeys -> ../init.d/ssh-generate-hostkeys
+lrwxrwxrwx 1 root root 29 Dec 16 19:24 S01unattended-upgrades -> ../init.d/unattended-upgrades
+lrwxrwxrwx 1 root root 15 Dec 16 19:23 S01uuidd -> ../init.d/uuidd
+
+/etc/rc4.d:
+total 0
+lrwxrwxrwx 1 root root 15 Dec 16 19:23 S01acpid -> ../init.d/acpid
+lrwxrwxrwx 1 root root 14 Dec 16 19:22 S01cron -> ../init.d/cron
+lrwxrwxrwx 1 root root 13 Dec 16 19:23 S01ntp -> ../init.d/ntp
+lrwxrwxrwx 1 root root 15 Jan  7 17:28 S01rsync -> ../init.d/rsync
+lrwxrwxrwx 1 root root 17 Dec 16 19:22 S01rsyslog -> ../init.d/rsyslog
+lrwxrwxrwx 1 root root 13 Dec 16 19:23 S01ssh -> ../init.d/ssh
+lrwxrwxrwx 1 root root 31 Dec 16 19:24 S01ssh-generate-hostkeys -> ../init.d/ssh-generate-hostkeys
+lrwxrwxrwx 1 root root 29 Dec 16 19:24 S01unattended-upgrades -> ../init.d/unattended-upgrades
+lrwxrwxrwx 1 root root 15 Dec 16 19:23 S01uuidd -> ../init.d/uuidd
+
+/etc/rc5.d:
+total 0
+lrwxrwxrwx 1 root root 15 Dec 16 19:23 S01acpid -> ../init.d/acpid
+lrwxrwxrwx 1 root root 14 Dec 16 19:22 S01cron -> ../init.d/cron
+lrwxrwxrwx 1 root root 13 Dec 16 19:23 S01ntp -> ../init.d/ntp
+lrwxrwxrwx 1 root root 15 Jan  7 17:28 S01rsync -> ../init.d/rsync
+lrwxrwxrwx 1 root root 17 Dec 16 19:22 S01rsyslog -> ../init.d/rsyslog
+lrwxrwxrwx 1 root root 13 Dec 16 19:23 S01ssh -> ../init.d/ssh
+lrwxrwxrwx 1 root root 31 Dec 16 19:24 S01ssh-generate-hostkeys -> ../init.d/ssh-generate-hostkeys
+lrwxrwxrwx 1 root root 29 Dec 16 19:24 S01unattended-upgrades -> ../init.d/unattended-upgrades
+lrwxrwxrwx 1 root root 15 Dec 16 19:23 S01uuidd -> ../init.d/uuidd
+
+/etc/rc6.d:
+total 0
+lrwxrwxrwx 1 root root 20 Dec 16 19:22 K01hwclock.sh -> ../init.d/hwclock.sh
+lrwxrwxrwx 1 root root 20 Dec 16 19:22 K01networking -> ../init.d/networking
+lrwxrwxrwx 1 root root 17 Dec 16 19:22 K01rsyslog -> ../init.d/rsyslog
+lrwxrwxrwx 1 root root 29 Dec 16 19:24 K01unattended-upgrades -> ../init.d/unattended-upgrades
+lrwxrwxrwx 1 root root 15 Dec 16 19:23 K01uuidd -> ../init.d/uuidd
+
+/etc/rcS.d:
+total 0
+lrwxrwxrwx 1 root root 20 Dec 16 19:22 S01hwclock.sh -> ../init.d/hwclock.sh
+lrwxrwxrwx 1 root root 14 Dec 16 19:22 S01kmod -> ../init.d/kmod
+lrwxrwxrwx 1 root root 20 Dec 16 19:22 S01networking -> ../init.d/networking
+lrwxrwxrwx 1 root root 16 Dec 16 19:22 S01procps -> ../init.d/procps
+lrwxrwxrwx 1 root root 24 Dec 16 19:23 S01screen-cleanup -> ../init.d/screen-cleanup
+lrwxrwxrwx 1 root root 14 Dec 16 19:22 S01udev -> ../init.d/udev
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/hosts.allow
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/hosts.allow
+  Size: 411       	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 394511      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:21:56.405749000 +0000
+Modify: 2020-12-16 19:23:42.459856777 +0000
+Change: 2020-12-16 19:23:42.459856777 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/hosts.allow
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/hosts.deny
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/hosts.deny
+  Size: 711       	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 394512      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:21:56.405749000 +0000
+Modify: 2020-12-16 19:23:42.459856777 +0000
+Change: 2020-12-16 19:23:42.459856777 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/hosts.deny
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /boot/grub/grub.cfg
+
+
+ + + + + + +
+
subcommand: stat
+  File: /boot/grub/grub.cfg
+  Size: 5164      	Blocks: 16         IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 399609      Links: 1
+Access: (0444/-r--r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:37:56.505391430 +0000
+Modify: 2020-12-16 19:24:27.119708080 +0000
+Change: 2020-12-16 19:24:27.123708422 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /boot/grub/grub.cfg
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/securetty
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/securetty
+  Size: 4179      	Blocks: 16         IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 393567      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2020-12-16 19:22:01.155064123 +0000
+Modify: 2017-05-17 11:59:59.000000000 +0000
+Change: 2020-12-16 19:21:46.189815797 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/securetty
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/inittab
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/fstab
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/fstab
+  Size: 62        	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 393656      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:20:15.540000000 +0000
+Modify: 2020-12-16 19:24:25.279550517 +0000
+Change: 2020-12-16 19:24:25.279550517 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/fstab
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/bashrc
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/profile
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/profile
+  Size: 767       	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 393678      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:24:19.693749000 +0000
+Modify: 2016-03-04 11:00:00.000000000 +0000
+Change: 2020-12-16 19:21:47.321910231 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/profile
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/default/useradd
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/default/useradd
+  Size: 1118      	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 393569      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:20:17.480000000 +0000
+Modify: 2017-05-17 11:59:59.000000000 +0000
+Change: 2020-12-16 19:21:46.265822137 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/default/useradd
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/sysctl.conf
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/sysctl.conf
+  Size: 2683      	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 393608      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:20:14.680000000 +0000
+Modify: 2018-05-17 10:56:41.000000000 +0000
+Change: 2020-12-16 19:22:09.039741350 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/sysctl.conf
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "hard core" /etc/security/limits.conf
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "hard core" /etc/security/limits.d/*
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep pam_wheel.so /etc/pam.d/su
+
+
+ + + + + + +
+
# auth       required   pam_wheel.so
+# auth       sufficient pam_wheel.so trust
+# auth       required   pam_wheel.so deny group=nosu
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep wheel /etc/group
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/pam.d/system-auth
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/pam.d/sshd
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/pam.d/sshd
+  Size: 2133      	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 398830      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:20:17.392000000 +0000
+Modify: 2019-07-15 13:32:09.000000000 +0000
+Change: 2020-12-16 19:23:53.464817609 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/pam.d/sshd
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/pam.d/su
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/pam.d/su
+  Size: 2257      	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 393566      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:37:54.393392205 +0000
+Modify: 2017-05-17 11:59:59.000000000 +0000
+Change: 2020-12-16 19:21:46.189815797 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/pam.d/su
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/passwd
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/passwd
+  Size: 1491      	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 399630      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:20:17.848000000 +0000
+Modify: 2021-01-07 17:20:17.820000000 +0000
+Change: 2021-01-07 17:20:17.820000000 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/passwd
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/shadow
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/shadow
+  Size: 815       	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 399632      Links: 1
+Access: (0640/-rw-r-----)  Uid: (    0/    root)   Gid: (   42/  shadow)
+Access: 2021-01-07 17:24:19.517749000 +0000
+Modify: 2021-01-07 17:20:17.824000000 +0000
+Change: 2021-01-07 17:20:17.824000000 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/shadow
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/gshadow
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/gshadow
+  Size: 694       	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 399269      Links: 1
+Access: (0640/-rw-r-----)  Uid: (    0/    root)   Gid: (   42/  shadow)
+Access: 2021-01-07 17:37:57.509391062 +0000
+Modify: 2021-01-07 17:20:17.916000000 +0000
+Change: 2021-01-07 17:20:17.920000000 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/gshadow
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/group
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/group
+  Size: 815       	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 399623      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:24:19.461749000 +0000
+Modify: 2021-01-07 17:20:17.912000000 +0000
+Change: 2021-01-07 17:20:17.916000000 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/group
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/login.defs
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/login.defs
+  Size: 10477     	Blocks: 24         IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 393564      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:20:17.364000000 +0000
+Modify: 2017-05-17 11:59:59.000000000 +0000
+Change: 2020-12-16 19:21:46.189815797 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/login.defs
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/sudoers
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/sudoers
+  Size: 669       	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 398843      Links: 1
+Access: (0440/-r--r-----)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:28:44.833650611 +0000
+Modify: 2020-01-31 21:10:55.000000000 +0000
+Change: 2020-12-16 19:23:18.233741618 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/sudoers
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec awk -F : '{print $1 ":" $3 ":" $7}' /etc/passwd
+
+
+ + + + + + +
+
root:0:/bin/bash
+daemon:1:/usr/sbin/nologin
+bin:2:/usr/sbin/nologin
+sys:3:/usr/sbin/nologin
+sync:4:/bin/sync
+games:5:/usr/sbin/nologin
+man:6:/usr/sbin/nologin
+lp:7:/usr/sbin/nologin
+mail:8:/usr/sbin/nologin
+news:9:/usr/sbin/nologin
+uucp:10:/usr/sbin/nologin
+proxy:13:/usr/sbin/nologin
+www-data:33:/usr/sbin/nologin
+backup:34:/usr/sbin/nologin
+list:38:/usr/sbin/nologin
+irc:39:/usr/sbin/nologin
+gnats:41:/usr/sbin/nologin
+nobody:65534:/usr/sbin/nologin
+systemd-timesync:100:/bin/false
+systemd-network:101:/bin/false
+systemd-resolve:102:/bin/false
+systemd-bus-proxy:103:/bin/false
+_apt:104:/bin/false
+uuidd:105:/bin/false
+ntp:106:/bin/false
+sshd:107:/usr/sbin/nologin
+Tobias:1000:/bin/bash
+ktdw73:1001:/bin/bash
+ftpuser:1002:/bin/bash
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec awk -F : '($2 == "" )' /etc/shadow
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep '^+:' /etc/passwd
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep '^+:' /etc/shadow
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep '^+:' /etc/group
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "PASS_MIN_DAYS\|PASS_WARN_AGE" /etc/login.defs | grep -v "#"
+
+
+ + + + + + +
+
PASS_MIN_DAYS	0
+PASS_WARN_AGE	7
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec chage --list operator
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec chage --list nobody
+
+
+ + + + + + +
+
Last password change					: Dec 16, 2020
+Password expires					: never
+Password inactive					: never
+Account expires						: never
+Minimum number of days between password change		: 0
+Maximum number of days between password change		: 99999
+Number of days of warning before password expires	: 7
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^root" /etc/passwd | cut -f4 -d:
+
+
+ + + + + + +
+
0
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec useradd -D | grep INACTIVE
+
+
+ + + + + + +
+
INACTIVE=-1
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^UMASK=077" /etc/bashrc
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^umask=077" /etc/bashrc
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "umask *[0-7]" /etc/profile
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/cron.d
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/cron.d
+  Size: 4096      	Blocks: 8          IO Block: 4096   directory
+Device: 801h/2049d	Inode: 394128      Links: 2
+Access: (0755/drwxr-xr-x)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:20:15.044000000 +0000
+Modify: 2020-12-16 19:22:26.957316530 +0000
+Change: 2020-12-16 19:22:26.957316530 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+/etc/cron.d:
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/crontab
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/crontab
+  Size: 722       	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 394137      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:20:15.044000000 +0000
+Modify: 2017-10-07 13:38:27.000000000 +0000
+Change: 2020-12-16 19:22:26.997320047 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/crontab
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/cron.hourly
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/cron.hourly
+  Size: 4096      	Blocks: 8          IO Block: 4096   directory
+Device: 801h/2049d	Inode: 394131      Links: 2
+Access: (0755/drwxr-xr-x)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:38:05.781388039 +0000
+Modify: 2020-12-16 19:22:26.973317937 +0000
+Change: 2020-12-16 19:22:26.973317937 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+/etc/cron.hourly:
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/cron.daily
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/cron.daily
+  Size: 4096      	Blocks: 8          IO Block: 4096   directory
+Device: 801h/2049d	Inode: 393295      Links: 2
+Access: (0755/drwxr-xr-x)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:38:05.793388035 +0000
+Modify: 2020-12-16 19:23:42.735880877 +0000
+Change: 2020-12-16 19:23:42.735880877 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+/etc/cron.daily:
+? apt-compat
+? bsdmainutils
+? dpkg
+? logrotate
+? man-db
+? ntp
+? passwd
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/cron.weekly
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/cron.weekly
+  Size: 4096      	Blocks: 8          IO Block: 4096   directory
+Device: 801h/2049d	Inode: 394135      Links: 2
+Access: (0755/drwxr-xr-x)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:38:05.841388018 +0000
+Modify: 2020-12-16 19:23:20.597948035 +0000
+Change: 2020-12-16 19:23:20.597948035 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+/etc/cron.weekly:
+? man-db
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/cron.monthly
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/cron.monthly
+  Size: 4096      	Blocks: 8          IO Block: 4096   directory
+Device: 801h/2049d	Inode: 394133      Links: 2
+Access: (0755/drwxr-xr-x)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:38:05.861388010 +0000
+Modify: 2020-12-16 19:22:26.981318640 +0000
+Change: 2020-12-16 19:22:26.981318640 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+/etc/cron.monthly:
+
+
+
+
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/services.all.log.html b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/services.all.log.html new file mode 100644 index 0000000..ba760e7 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/services.all.log.html @@ -0,0 +1,2429 @@ + + + +Φ otseca v1.0.5 security audit script + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +

(Ot)her (Sec)urity (A)wareness

+ + + +

Open source security auditing tool to search and dump system configuration.
It allows you to generate reports in HTML or RAW-HTML formats.

+ +

+Φ otseca v1.0.5 security audit script +

+ +

+gen_time: 07.01.2021 17:38:51 +

+ + + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec service --status-all
+
+
+ + + + + + +
+
 [ + ]  acpid
+ [ + ]  cron
+ [ - ]  hwclock.sh
+ [ + ]  kmod
+ [ + ]  networking
+ [ + ]  ntp
+ [ + ]  procps
+ [ - ]  rsync
+ [ + ]  rsyslog
+ [ - ]  screen-cleanup
+ [ + ]  ssh
+ [ - ]  ssh-generate-hostkeys
+ [ - ]  sudo
+ [ + ]  udev
+ [ + ]  unattended-upgrades
+ [ - ]  uuidd
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec systemctl list-units
+
+
+ + + + + + +
+
UNIT                                                                                        LOAD   ACTIVE SUB       DESCRIPTION                                                       
+proc-sys-fs-binfmt_misc.automount                                                           loaded active running   Arbitrary Executable File Formats File System Automount Point     
+sys-devices-pci0000:00-0000:00:03.0-virtio0-host0-target0:0:1-0:0:1:0-block-sda-sda1.device loaded active plugged   PersistentDisk 1                                                  
+sys-devices-pci0000:00-0000:00:03.0-virtio0-host0-target0:0:1-0:0:1:0-block-sda.device      loaded active plugged   PersistentDisk                                                    
+sys-devices-pci0000:00-0000:00:04.0-virtio1-net-eth0.device                                 loaded active plugged   Virtio network device                                             
+sys-devices-pnp0-00:03-tty-ttyS0.device                                                     loaded active plugged   /sys/devices/pnp0/00:03/tty/ttyS0                                 
+sys-devices-pnp0-00:04-tty-ttyS1.device                                                     loaded active plugged   /sys/devices/pnp0/00:04/tty/ttyS1                                 
+sys-devices-pnp0-00:05-tty-ttyS2.device                                                     loaded active plugged   /sys/devices/pnp0/00:05/tty/ttyS2                                 
+sys-devices-pnp0-00:06-tty-ttyS3.device                                                     loaded active plugged   /sys/devices/pnp0/00:06/tty/ttyS3                                 
+sys-subsystem-net-devices-eth0.device                                                       loaded active plugged   Virtio network device                                             
+-.mount                                                                                     loaded active mounted   Root Mount                                                        
+dev-hugepages.mount                                                                         loaded active mounted   Huge Pages File System                                            
+dev-mqueue.mount                                                                            loaded active mounted   POSIX Message Queue File System                                   
+proc-sys-fs-binfmt_misc.mount                                                               loaded active mounted   Arbitrary Executable File Formats File System                     
+sys-kernel-debug.mount                                                                      loaded active mounted   Debug File System                                                 
+acpid.path                                                                                  loaded active running   ACPI Events Check                                                 
+systemd-ask-password-console.path                                                           loaded active waiting   Dispatch Password Requests to Console Directory Watch             
+systemd-ask-password-wall.path                                                              loaded active waiting   Forward Password Requests to Wall Directory Watch                 
+init.scope                                                                                  loaded active running   System and Service Manager                                        
+acpid.service                                                                               loaded active running   ACPI event daemon                                                 
+cron.service                                                                                loaded active running   Regular background program processing daemon                      
+getty-static.service                                                                        loaded active exited    getty on tty2-tty6 if dbus and logind are not available           
+getty@tty1.service                                                                          loaded active running   Getty on tty1                                                     
+getty@tty2.service                                                                          loaded active running   Getty on tty2                                                     
+getty@tty3.service                                                                          loaded active running   Getty on tty3                                                     
+getty@tty4.service                                                                          loaded active running   Getty on tty4                                                     
+getty@tty5.service                                                                          loaded active running   Getty on tty5                                                     
+getty@tty6.service                                                                          loaded active running   Getty on tty6                                                     
+google-guest-agent.service                                                                  loaded active running   Google Compute Engine Guest Agent                                 
+google-osconfig-agent.service                                                               loaded active running   Google OSConfig Agent                                             
+google-shutdown-scripts.service                                                             loaded active exited    Google Compute Engine Shutdown Scripts                            
+kmod-static-nodes.service                                                                   loaded active exited    Create list of required static device nodes for the current kernel
+networking.service                                                                          loaded active exited    Raise network interfaces                                          
+ntp.service                                                                                 loaded active running   LSB: Start NTP daemon                                             
+rsyslog.service                                                                             loaded active running   System Logging Service                                            
+serial-getty@ttyS0.service                                                                  loaded active running   Serial Getty on ttyS0                                             
+ssh.service                                                                                 loaded active running   OpenBSD Secure Shell server                                       
+systemd-journal-flush.service                                                               loaded active exited    Flush Journal to Persistent Storage                               
+systemd-journald.service                                                                    loaded active running   Journal Service                                                   
+systemd-machine-id-commit.service                                                           loaded active exited    Commit a transient machine-id on disk                             
+systemd-modules-load.service                                                                loaded active exited    Load Kernel Modules                                               
+systemd-random-seed.service                                                                 loaded active exited    Load/Save Random Seed                                             
+systemd-remount-fs.service                                                                  loaded active exited    Remount Root and Kernel File Systems                              
+systemd-sysctl.service                                                                      loaded active exited    Apply Kernel Variables                                            
+systemd-tmpfiles-setup-dev.service                                                          loaded active exited    Create Static Device Nodes in /dev                                
+systemd-tmpfiles-setup.service                                                              loaded active exited    Create Volatile Files and Directories                             
+systemd-udev-trigger.service                                                                loaded active exited    udev Coldplug all Devices                                         
+systemd-udevd.service                                                                       loaded active running   udev Kernel Device Manager                                        
+systemd-update-utmp.service                                                                 loaded active exited    Update UTMP about System Boot/Shutdown                            
+systemd-user-sessions.service                                                               loaded active exited    Permit User Sessions                                              
+unattended-upgrades.service                                                                 loaded active exited    Unattended Upgrades Shutdown                                      
+-.slice                                                                                     loaded active active    Root Slice                                                        
+system-getty.slice                                                                          loaded active active    system-getty.slice                                                
+system-serial\x2dgetty.slice                                                                loaded active active    system-serial\x2dgetty.slice                                      
+system.slice                                                                                loaded active active    System Slice                                                      
+acpid.socket                                                                                loaded active running   ACPID Listen Socket                                               
+syslog.socket                                                                               loaded active running   Syslog Socket                                                     
+systemd-fsckd.socket                                                                        loaded active listening fsck to fsckd communication Socket                                
+systemd-initctl.socket                                                                      loaded active listening /dev/initctl Compatibility Named Pipe                             
+systemd-journald-audit.socket                                                               loaded active running   Journal Audit Socket                                              
+systemd-journald-dev-log.socket                                                             loaded active running   Journal Socket (/dev/log)                                         
+systemd-journald.socket                                                                     loaded active running   Journal Socket                                                    
+systemd-udevd-control.socket                                                                loaded active running   udev Control Socket                                               
+systemd-udevd-kernel.socket                                                                 loaded active running   udev Kernel Socket                                                
+uuidd.socket                                                                                loaded active listening UUID daemon activation socket                                     
+basic.target                                                                                loaded active active    Basic System                                                      
+cryptsetup.target                                                                           loaded active active    Encrypted Volumes                                                 
+getty.target                                                                                loaded active active    Login Prompts                                                     
+graphical.target                                                                            loaded active active    Graphical Interface                                               
+local-fs-pre.target                                                                         loaded active active    Local File Systems (Pre)                                          
+local-fs.target                                                                             loaded active active    Local File Systems                                                
+multi-user.target                                                                           loaded active active    Multi-User System                                                 
+network-online.target                                                                       loaded active active    Network is Online                                                 
+network.target                                                                              loaded active active    Network                                                           
+paths.target                                                                                loaded active active    Paths                                                             
+remote-fs.target                                                                            loaded active active    Remote File Systems                                               
+slices.target                                                                               loaded active active    Slices                                                            
+sockets.target                                                                              loaded active active    Sockets                                                           
+swap.target                                                                                 loaded active active    Swap                                                              
+sysinit.target                                                                              loaded active active    System Initialization                                             
+time-sync.target                                                                            loaded active active    System Time Synchronized                                          
+timers.target                                                                               loaded active active    Timers                                                            
+apt-daily-upgrade.timer                                                                     loaded active waiting   Daily apt upgrade and clean activities                            
+apt-daily.timer                                                                             loaded active waiting   Daily apt download activities                                     
+google-oslogin-cache.timer                                                                  loaded active elapsed   NSS cache refresh timer                                           
+systemd-tmpfiles-clean.timer                                                                loaded active waiting   Daily Cleanup of Temporary Directories                            
+
+LOAD   = Reflects whether the unit definition was properly loaded.
+ACTIVE = The high-level unit activation state, i.e. generalization of SUB.
+SUB    = The low-level unit activation state, values depend on unit type.
+
+85 loaded units listed. Pass --all to see loaded but inactive units, too.
+To show all installed unit files use 'systemctl list-unit-files'.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl rsync
+
+
+ + + + + + +
+
UNIT FILE     STATE  
+rsync.service enabled
+
+1 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl avahi-daemon
+
+
+ + + + + + +
+

+0 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl cups
+
+
+ + + + + + +
+

+0 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl dhcpd
+
+
+ + + + + + +
+

+0 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl slapd
+
+
+ + + + + + +
+

+0 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl nfs
+
+
+ + + + + + +
+

+0 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl rpcbind
+
+
+ + + + + + +
+

+0 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl named
+
+
+ + + + + + +
+

+0 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl vsftpd
+
+
+ + + + + + +
+

+0 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl httpd
+
+
+ + + + + + +
+

+0 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl dovecot
+
+
+ + + + + + +
+

+0 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl smb
+
+
+ + + + + + +
+

+0 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl snmpd
+
+
+ + + + + + +
+

+0 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl auditd
+
+
+ + + + + + +
+

+0 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl rsyslog
+
+
+ + + + + + +
+
UNIT FILE       STATE  
+rsyslog.service enabled
+
+1 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _systemctl syslog-nd
+
+
+ + + + + + +
+

+0 unit files listed.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep max_log_file /etc/audit/auditd.conf
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep space_left_action /etc/audit/auditd.conf
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep action_mail_acct /etc/audit/auditd.conf
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep admin_space_left_action /etc/audit/auditd.conf
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep max_log_file_action /etc/audit/auditd.conf
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep time-change /etc/audit/audit.rules
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep identity /etc/audit/audit.rules
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep system-locale /etc/audit/audit.rules
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep MAC-policy /etc/audit/audit.rules
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep logins /etc/audit/audit.rules
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep session /etc/audit/audit.rules
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep perm_mod /etc/audit/audit.rules
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep access /etc/audit/audit.rules
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep mounts /etc/audit/audit.rules
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep delete /etc/audit/audit.rules
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep scope /etc/audit/audit.rules
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep actions /etc/audit/audit.rules
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep modules /etc/audit/audit.rules
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^*.*[^I][^I]*@" /etc/syslog.conf
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec ls -l /etc/rsyslog.conf
+
+
+ + + + + + +
+
-rw-r--r-- 1 root root 1963 Jan 18  2017 /etc/rsyslog.conf
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec ls -l /etc/syslog.conf
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec ls -l /etc/ssh
+
+
+ + + + + + +
+
total 576
+-rw-r--r-- 1 root root 553122 Jul 15  2019 moduli
+-rw-r--r-- 1 root root   1723 Jul 15  2019 ssh_config
+-rw-r--r-- 1 root root   3280 Dec 16 19:24 sshd_config
+-rw------- 1 root root    227 Jan  7 17:20 ssh_host_ecdsa_key
+-rw-r--r-- 1 root root    175 Jan  7 17:20 ssh_host_ecdsa_key.pub
+-rw------- 1 root root    399 Jan  7 17:20 ssh_host_ed25519_key
+-rw-r--r-- 1 root root     95 Jan  7 17:20 ssh_host_ed25519_key.pub
+-rw------- 1 root root   1675 Jan  7 17:20 ssh_host_rsa_key
+-rw-r--r-- 1 root root    395 Jan  7 17:20 ssh_host_rsa_key.pub
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/ssh/sshd_config
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/ssh/sshd_config
+  Size: 3280      	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 394510      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:20:16.284000000 +0000
+Modify: 2020-12-16 19:24:25.279550517 +0000
+Change: 2020-12-16 19:24:25.279550517 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/ssh/sshd_config
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^Protocol" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^LogLevel" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^X11Forwarding" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
X11Forwarding yes
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^MaxAuthTries" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^IgnoreRhosts" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^HostbasedAuthentication" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^PermitRootLogin" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
PermitRootLogin no
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^PermitEmptyPasswords" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^PermitUserEnvironment" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^Ciphers" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^MACs" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^ClientAliveInterval" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^ClientAliveCountMax" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^LoginGraceTime" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^AllowGroups" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^DenyUsers" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^DenyGroups" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^Banner" /etc/ssh/sshd_config
+
+
+ + + + + + +
+
string not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _stat /etc/ntp.conf
+
+
+ + + + + + +
+
subcommand: stat
+  File: /etc/ntp.conf
+  Size: 1972      	Blocks: 8          IO Block: 4096   regular file
+Device: 801h/2049d	Inode: 399286      Links: 1
+Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
+Access: 2021-01-07 17:20:15.808000000 +0000
+Modify: 2020-12-16 19:24:18.214945621 +0000
+Change: 2020-12-16 19:24:18.214945621 +0000
+ Birth: -
+
+subcommand: getfacl
+/home/ktdw73/scans/otseca/bin/../lib/_stat: line 32: getfacl: command not found
+subcommand: ls -ZR
+? /etc/ntp.conf
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^restrict" /etc/ntp.conf
+
+
+ + + + + + +
+
restrict -4 default kod notrap nomodify nopeer noquery limited
+restrict -6 default kod notrap nomodify nopeer noquery limited
+restrict 127.0.0.1
+restrict ::1
+restrict source notrap nomodify noquery
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^server" /etc/ntp.conf
+
+
+ + + + + + +
+
server metadata.google.internal iburst
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^password" /etc/grub.conf
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "{" /etc/logrotate.d/syslog
+
+
+ + + + + + +
+
file not found
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec find /etc/httpd/ -name ".conf" -print
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec find /etc/httpd/ -name ".load" -print
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec find /etc/apache/ -name ".conf" -print
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec find /etc/apache/ -name ".load" -print
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec apachectl -S
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec apachectl -M
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/system.all.log.html b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/system.all.log.html new file mode 100644 index 0000000..6cd1c9d --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/system.all.log.html @@ -0,0 +1,783 @@ + + + +Φ otseca v1.0.5 security audit script + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +

(Ot)her (Sec)urity (A)wareness

+ + + +

Open source security auditing tool to search and dump system configuration.
It allows you to generate reports in HTML or RAW-HTML formats.

+ +

+Φ otseca v1.0.5 security audit script +

+ +

+gen_time: 07.01.2021 17:38:51 +

+ + + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec uname -a
+
+
+ + + + + + +
+
Linux debian-9 4.9.0-14-amd64 #1 SMP Debian 4.9.240-2 (2020-10-30) x86_64 GNU/Linux
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec uptime
+
+
+ + + + + + +
+
 17:38:44 up 18 min,  1 user,  load average: 1.13, 0.35, 0.12
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec lsb_release -a
+
+
+ + + + + + +
+
Distributor ID:	Debian
+Description:	Debian GNU/Linux 9.13 (stretch)
+Release:	9.13
+Codename:	stretch
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec cat /proc/cpuinfo
+
+
+ + + + + + +
+
processor	: 0
+vendor_id	: GenuineIntel
+cpu family	: 6
+model		: 79
+model name	: Intel(R) Xeon(R) CPU @ 2.20GHz
+stepping	: 0
+microcode	: 0x1
+cpu MHz		: 2199.998
+cache size	: 56320 KB
+physical id	: 0
+siblings	: 2
+core id		: 0
+cpu cores	: 1
+apicid		: 0
+initial apicid	: 0
+fpu		: yes
+fpu_exception	: yes
+cpuid level	: 13
+wp		: yes
+flags		: fpu vme de pse tsc msr pae mce cx8 apic sep mtrr pge mca cmov pat pse36 clflush mmx fxsr sse sse2 ss ht syscall nx pdpe1gb rdtscp lm constant_tsc rep_good nopl xtopology nonstop_tsc pni pclmulqdq ssse3 fma cx16 pcid sse4_1 sse4_2 x2apic movbe popcnt aes xsave avx f16c rdrand hypervisor lahf_lm abm 3dnowprefetch invpcid_single ssbd ibrs ibpb stibp kaiser fsgsbase tsc_adjust bmi1 hle avx2 smep bmi2 erms invpcid rtm rdseed adx smap xsaveopt arat md_clear arch_capabilities
+bugs		: cpu_meltdown spectre_v1 spectre_v2 spec_store_bypass l1tf mds swapgs taa
+bogomips	: 4399.99
+clflush size	: 64
+cache_alignment	: 64
+address sizes	: 46 bits physical, 48 bits virtual
+power management:
+
+processor	: 1
+vendor_id	: GenuineIntel
+cpu family	: 6
+model		: 79
+model name	: Intel(R) Xeon(R) CPU @ 2.20GHz
+stepping	: 0
+microcode	: 0x1
+cpu MHz		: 2199.998
+cache size	: 56320 KB
+physical id	: 0
+siblings	: 2
+core id		: 0
+cpu cores	: 1
+apicid		: 1
+initial apicid	: 1
+fpu		: yes
+fpu_exception	: yes
+cpuid level	: 13
+wp		: yes
+flags		: fpu vme de pse tsc msr pae mce cx8 apic sep mtrr pge mca cmov pat pse36 clflush mmx fxsr sse sse2 ss ht syscall nx pdpe1gb rdtscp lm constant_tsc rep_good nopl xtopology nonstop_tsc pni pclmulqdq ssse3 fma cx16 pcid sse4_1 sse4_2 x2apic movbe popcnt aes xsave avx f16c rdrand hypervisor lahf_lm abm 3dnowprefetch invpcid_single ssbd ibrs ibpb stibp kaiser fsgsbase tsc_adjust bmi1 hle avx2 smep bmi2 erms invpcid rtm rdseed adx smap xsaveopt arat md_clear arch_capabilities
+bugs		: cpu_meltdown spectre_v1 spectre_v2 spec_store_bypass l1tf mds swapgs taa
+bogomips	: 4399.99
+clflush size	: 64
+cache_alignment	: 64
+address sizes	: 46 bits physical, 48 bits virtual
+power management:
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec ps -auxenf
+
+
+ + + + + + +
+
    USER   PID %CPU %MEM    VSZ   RSS TTY      STAT START   TIME COMMAND
+       0     2  0.0  0.0      0     0 ?        S    17:20   0:00 [kthreadd]
+       0     3  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [ksoftirqd/0]
+       0     5  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [kworker/0:0H]
+       0     7  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [rcu_sched]
+       0     8  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [rcu_bh]
+       0     9  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [migration/0]
+       0    10  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [lru-add-drain]
+       0    11  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [watchdog/0]
+       0    12  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [cpuhp/0]
+       0    13  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [cpuhp/1]
+       0    14  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [watchdog/1]
+       0    15  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [migration/1]
+       0    16  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [ksoftirqd/1]
+       0    17  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [kworker/1:0]
+       0    18  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [kworker/1:0H]
+       0    19  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [kdevtmpfs]
+       0    20  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [netns]
+       0    21  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [khungtaskd]
+       0    22  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [oom_reaper]
+       0    23  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [writeback]
+       0    24  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [kcompactd0]
+       0    26  0.0  0.0      0     0 ?        SN   17:20   0:00  \_ [ksmd]
+       0    27  0.0  0.0      0     0 ?        SN   17:20   0:00  \_ [khugepaged]
+       0    28  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [crypto]
+       0    29  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [kintegrityd]
+       0    30  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [bioset]
+       0    31  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [kblockd]
+       0    32  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [devfreq_wq]
+       0    33  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [watchdogd]
+       0    34  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [kworker/u4:1]
+       0    36  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [kworker/0:1]
+       0    37  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [kswapd0]
+       0    38  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [vmstat]
+       0    50  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [kthrotld]
+       0    51  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [kworker/0:2]
+       0    52  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [ipv6_addrconf]
+       0   112  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [scsi_eh_0]
+       0   113  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [scsi_tmf_0]
+       0   115  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [bioset]
+       0   369  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [kworker/1:2]
+       0   386  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [kworker/u5:0]
+       0   394  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [kworker/1:1H]
+       0   396  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [kworker/0:1H]
+       0   397  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [jbd2/sda1-8]
+       0   398  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [ext4-rsv-conver]
+       0   433  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [kauditd]
+       0   474  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [hwrng]
+       0   487  0.0  0.0      0     0 ?        S    17:20   0:00  \_ [kworker/u4:2]
+       0   493  0.0  0.0      0     0 ?        S<   17:20   0:00  \_ [edac-poller]
+       0  2845  0.0  0.0      0     0 ?        S    17:35   0:00  \_ [kworker/1:1]
+       0     1  0.1  0.1  56944  6684 ?        Ss   17:20   0:01 /sbin/init biosdevname=0 SHLVL=1 HOME=/ init=/sbin/init TERM=linux drop_caps= BOOT_IMAGE=/boot/vmlinuz-4.9.0-14-amd64 PATH=/sbin:/usr/sbin:/bin:/usr/bin PWD=/ rootmnt=/root
+       0   421  0.0  0.1  42964  4612 ?        Ss   17:20   0:00 /lib/systemd/systemd-journald LANG=en_US.UTF-8 PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin NOTIFY_SOCKET=/run/systemd/notify LISTEN_PID=421 LISTEN_FDS=4 LISTEN_FDNAMES=systemd-journald.socket:systemd-journald.socket:systemd-journald-dev-log.socket:systemd-journald-audit.socket WATCHDOG_PID=421 WATCHDOG_USEC=180000000 INVOCATION_ID=cd0d0e55b2864e7f88abbb6af2e77f8b
+       0   445  0.0  0.0  45664  3696 ?        Ss   17:20   0:00 /lib/systemd/systemd-udevd LANG=en_US.UTF-8 PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin NOTIFY_SOCKET=/run/systemd/notify LISTEN_PID=445 LISTEN_FDS=2 LISTEN_FDNAMES=systemd-udevd-kernel.socket:systemd-udevd-control.socket WATCHDOG_PID=445 WATCHDOG_USEC=180000000 INVOCATION_ID=0d8b4008bff741119c7e8cb99db5236e JOURNAL_STREAM=8:10259
+       0   481  0.0  0.0   4204   672 ?        Ss   17:20   0:00 /usr/sbin/acpid LANG=en_US.UTF-8 PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin INVOCATION_ID=306c62c7b71f49f8b2a0058700c59478
+       0   590  0.0  0.0 250112  2940 ?        Ssl  17:20   0:00 /usr/sbin/rsyslogd -n LANG=en_US.UTF-8 PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin NOTIFY_SOCKET=/run/systemd/notify LISTEN_PID=590 LISTEN_FDS=1 LISTEN_FDNAMES=syslog.socket INVOCATION_ID=f1f1b36aeb6c46cc9ea98a7290136ab1
+       0   598  0.0  0.0  20356  1032 ?        Ss   17:20   0:00 /sbin/dhclient -4 -v -pf /run/dhclient.eth0.pid -lf /var/lib/dhcp/dhclient.eth0.leases -I -df /var/lib/dhcp/dhclient6.eth0.leases eth0 CLASS=auto METHOD=dhcp MODE=start LOGICAL=eth0 PHASE=post-up ADDRFAM=inet VERBOSITY=0 PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin IFUPDOWN_eth0=post-up IFACE=eth0 PWD=/
+       0   640  0.0  0.3 114292 14528 ?        Ssl  17:20   0:00 /usr/bin/google_guest_agent LANG=en_US.UTF-8 PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin INVOCATION_ID=70ed0c1a62ea4d81b6b545cf20eb1c66 TERM=vt220 JOURNAL_STREAM=8:11124
+       0   645  0.0  0.4 119784 18688 ?        Ssl  17:20   0:00 /usr/bin/google_osconfig_agent LANG=en_US.UTF-8 PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin INVOCATION_ID=49b3fe79ced24e32a8f28d763137a056 JOURNAL_STREAM=8:11076
+       0   647  0.0  0.0  14524  1716 tty1     Ss+  17:20   0:00 /sbin/agetty --noclear tty1 linux LANG= PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin INVOCATION_ID=301b9f67f51342f6b62281c8f0695e06 TERM=linux JOURNAL_STREAM=8:12221 LANGUAGE= LC_CTYPE= LC_NUMERIC= LC_TIME= LC_COLLATE= LC_MONETARY= LC_MESSAGES= LC_PAPER= LC_NAME= LC_ADDRESS= LC_TELEPHONE= LC_MEASUREMENT= LC_IDENTIFICATION=
+       0   648  0.0  0.0  14300  2060 ttyS0    Ss+  17:20   0:00 /sbin/agetty --keep-baud 115200,38400,9600 ttyS0 vt220 LANG=en_US.UTF-8 PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin INVOCATION_ID=0dd78fba61fe4a8a8de4dd0d649a8778 TERM=vt220 JOURNAL_STREAM=8:12217
+       0   649  0.0  0.0  14524  1744 tty6     Ss+  17:20   0:00 /sbin/agetty --noclear tty6 linux LANG= PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin INVOCATION_ID=118992e28ae8463ebf0f61d4440245b9 TERM=linux JOURNAL_STREAM=8:12220 LANGUAGE= LC_CTYPE= LC_NUMERIC= LC_TIME= LC_COLLATE= LC_MONETARY= LC_MESSAGES= LC_PAPER= LC_NAME= LC_ADDRESS= LC_TELEPHONE= LC_MEASUREMENT= LC_IDENTIFICATION=
+       0   651  0.0  0.0  14524  1636 tty5     Ss+  17:20   0:00 /sbin/agetty --noclear tty5 linux LANG= PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin INVOCATION_ID=71d479c386ef49809767f64f70361a5e TERM=linux JOURNAL_STREAM=8:12216 LANGUAGE= LC_CTYPE= LC_NUMERIC= LC_TIME= LC_COLLATE= LC_MONETARY= LC_MESSAGES= LC_PAPER= LC_NAME= LC_ADDRESS= LC_TELEPHONE= LC_MEASUREMENT= LC_IDENTIFICATION=
+       0   653  0.0  0.0  14524  1712 tty2     Ss+  17:20   0:00 /sbin/agetty --noclear tty2 linux LANG= PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin INVOCATION_ID=2322bf0de6bc4e828aafc8303097dc75 TERM=linux JOURNAL_STREAM=8:12402 LANGUAGE= LC_CTYPE= LC_NUMERIC= LC_TIME= LC_COLLATE= LC_MONETARY= LC_MESSAGES= LC_PAPER= LC_NAME= LC_ADDRESS= LC_TELEPHONE= LC_MEASUREMENT= LC_IDENTIFICATION=
+       0   654  0.0  0.0  14524  1740 tty4     Ss+  17:20   0:00 /sbin/agetty --noclear tty4 linux LANG= PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin INVOCATION_ID=825a56270b6b40d197bed1c035259f97 TERM=linux JOURNAL_STREAM=8:12213 LANGUAGE= LC_CTYPE= LC_NUMERIC= LC_TIME= LC_COLLATE= LC_MONETARY= LC_MESSAGES= LC_PAPER= LC_NAME= LC_ADDRESS= LC_TELEPHONE= LC_MEASUREMENT= LC_IDENTIFICATION=
+       0   656  0.0  0.0  14524  1632 tty3     Ss+  17:20   0:00 /sbin/agetty --noclear tty3 linux LANG= PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin INVOCATION_ID=f9ae7dce2d2045b6b08265eb9625c8ec TERM=linux JOURNAL_STREAM=8:12210 LANGUAGE= LC_CTYPE= LC_NUMERIC= LC_TIME= LC_COLLATE= LC_MONETARY= LC_MESSAGES= LC_PAPER= LC_NAME= LC_ADDRESS= LC_TELEPHONE= LC_MEASUREMENT= LC_IDENTIFICATION=
+     106   675  0.0  0.0  97900  3992 ?        Ssl  17:20   0:00 /usr/sbin/ntpd -p /var/run/ntpd.pid -g -c /run/ntp.conf.dhcp -u 106:110 JOURNAL_STREAM=8:10980 PATH=/sbin:/bin:/usr/sbin:/usr/bin INVOCATION_ID=31f0d03bd3144f19b312c64c413a0d80 LANG=en_US.UTF-8 PWD=/
+       0   793  0.0  0.1  69956  5660 ?        Ss   17:20   0:00 /usr/sbin/sshd -D LANG=en_US.UTF-8 PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin NOTIFY_SOCKET=/run/systemd/notify INVOCATION_ID=6276b7e624df45e99b0618b319233582 JOURNAL_STREAM=8:12611 SSHD_OPTS=
+       0   911  0.0  0.1  92728  6552 ?        Ss   17:24   0:00  \_ sshd: ktdw73 [priv]                                                                                                                                                                                                     =
+    1001   917  0.0  0.0  92728  3712 ?        S    17:25   0:00      \_ sshd: ktdw73@pts/0                                                                                                                                                                                                     =
+    1001   918  0.0  0.0  19888  3708 pts/0    Ss   17:25   0:00          \_ -bash LANG=en_US.UTF-8 USER=ktdw73 LOGNAME=ktdw73 HOME=/home/ktdw73 PATH=/usr/local/bin:/usr/bin:/bin:/usr/games MAIL=/var/mail/ktdw73 SHELL=/bin/bash SSH_CLIENT=92.196.116.34 53494 22 SSH_CONNECTION=92.196.116.34 53494 10.156.0.6 22 SSH_TTY=/dev/pts/0 TERM=xterm-256color
+       0  2846  0.0  0.0  44828  3424 pts/0    S+   17:37   0:00              \_ sudo ./tests.sh run_scan 1 LS_COLORS=rs=0:di=01;34:ln=01;36:mh=00:pi=40;33:so=01;35:do=01;35:bd=40;33;01:cd=40;33;01:or=40;31;01:mi=00:su=37;41:sg=30;43:ca=30;41:tw=30;42:ow=34;42:st=37;44:ex=01;32:*.tar=01;31:*.tgz=01;31:*.arc=01;31:*.arj=01;31:*.taz=01;31:*.lha=01;31:*.lz4=01;31:*.lzh=01;31:*.lzma=01;31:*.tlz=01;31:*.txz=01;31:*.tzo=01;31:*.t7z=01;31:*.zip=01;31:*.z=01;31:*.Z=01;31:*.dz=01;31:*.gz=01;31:*.lrz=01;31:*.lz=01;31:*.lzo=01;31:*.xz=01;31:*.zst=01;31:*.tzst=01;31:*.bz2=01;31:*.bz=01;31:*.tbz=01;31:*.tbz2=01;31:*.tz=01;31:*.deb=01;31:*.rpm=01;31:*.jar=01;31:*.war=01;31:*.ear=01;31:*.sar=01;31:*.rar=01;31:*.alz=01;31:*.ace=01;31:*.zoo=01;31:*.cpio=01;31:*.7z=01;31:*.rz=01;31:*.cab=01;31:*.jpg=01;35:*.jpeg=01;35:*.mjpg=01;35:*.mjpeg=01;35:*.gif=01;35:*.bmp=01;35:*.pbm=01;35:*.pgm=01;35:*.ppm=01;35:*.tga=01;35:*.xbm=01;35:*.xpm=01;35:*.tif=01;35:*.tiff=01;35:*.png=01;35:*.svg=01;35:*.svgz=01;35:*.mng=01;35:*.pcx=01;35:*.mov=01;35:*.mpg=01;35:*.mpeg=01;35:*.m2v=01;35:*.mkv=01;35:*.webm=01;35:*.ogm=01;35:*.mp4=01;35:*.m4v=01;35:*.mp4v=01;35:*.vob=01;35:*.qt=01;35:*.nuv=01;35:*.wmv=01;35:*.asf=01;35:*.rm=01;35:*.rmvb=01;35:*.flc=01;35:*.avi=01;35:*.fli=01;35:*.flv=01;35:*.gl=01;35:*.dl=01;35:*.xcf=01;35:*.xwd=01;35:*.yuv=01;35:*.cgm=01;35:*.emf=01;35:*.ogv=01;35:*.ogx=01;35:*.aac=00;36:*.au=00;36:*.flac=00;36:*.m4a=00;36:*.mid=00;36:*.midi=00;36:*.mka=00;36:*.mp3=00;36:*.mpc=00;36:*.ogg=00;36:*.ra=00;36:*.wav=00;36:*.oga=00;36:*.opus=00;36:*.spx=00;36:*.xspf=00;36: SSH_CONNECTION=92.196.116.34 53494 10.156.0.6 22 LANG=en_US.UTF-8 USER=ktdw73 PWD=/home/ktdw73 HOME=/home/ktdw73 SSH_CLIENT=92.196.116.34 53494 22 SSH_TTY=/dev/pts/0 MAIL=/var/mail/ktdw73 TERM=xterm-256color SHELL=/bin/bash SHLVL=1 LOGNAME=ktdw73 PATH=/usr/local/bin:/usr/bin:/bin:/usr/local/games:/usr/games _=/usr/bin/sudo
+       0  2847  0.0  0.0  11312  3076 pts/0    S+   17:37   0:00                  \_ /bin/bash ./tests.sh run_scan 1 LS_COLORS=rs=0:di=01;34:ln=01;36:mh=00:pi=40;33:so=01;35:do=01;35:bd=40;33;01:cd=40;33;01:or=40;31;01:mi=00:su=37;41:sg=30;43:ca=30;41:tw=30;42:ow=34;42:st=37;44:ex=01;32:*.tar=01;31:*.tgz=01;31:*.arc=01;31:*.arj=01;31:*.taz=01;31:*.lha=01;31:*.lz4=01;31:*.lzh=01;31:*.lzma=01;31:*.tlz=01;31:*.txz=01;31:*.tzo=01;31:*.t7z=01;31:*.zip=01;31:*.z=01;31:*.Z=01;31:*.dz=01;31:*.gz=01;31:*.lrz=01;31:*.lz=01;31:*.lzo=01;31:*.xz=01;31:*.zst=01;31:*.tzst=01;31:*.bz2=01;31:*.bz=01;31:*.tbz=01;31:*.tbz2=01;31:*.tz=01;31:*.deb=01;31:*.rpm=01;31:*.jar=01;31:*.war=01;31:*.ear=01;31:*.sar=01;31:*.rar=01;31:*.alz=01;31:*.ace=01;31:*.zoo=01;31:*.cpio=01;31:*.7z=01;31:*.rz=01;31:*.cab=01;31:*.jpg=01;35:*.jpeg=01;35:*.mjpg=01;35:*.mjpeg=01;35:*.gif=01;35:*.bmp=01;35:*.pbm=01;35:*.pgm=01;35:*.ppm=01;35:*.tga=01;35:*.xbm=01;35:*.xpm=01;35:*.tif=01;35:*.tiff=01;35:*.png=01;35:*.svg=01;35:*.svgz=01;35:*.mng=01;35:*.pcx=01;35:*.mov=01;35:*.mpg=01;35:*.mpeg=01;35:*.m2v=01;35:*.mkv=01;35:*.webm=01;35:*.ogm=01;35:*.mp4=01;35:*.m4v=01;35:*.mp4v=01;35:*.vob=01;35:*.qt=01;35:*.nuv=01;35:*.wmv=01;35:*.asf=01;35:*.rm=01;35:*.rmvb=01;35:*.flc=01;35:*.avi=01;35:*.fli=01;35:*.flv=01;35:*.gl=01;35:*.dl=01;35:*.xcf=01;35:*.xwd=01;35:*.yuv=01;35:*.cgm=01;35:*.emf=01;35:*.ogv=01;35:*.ogx=01;35:*.aac=00;36:*.au=00;36:*.flac=00;36:*.m4a=00;36:*.mid=00;36:*.midi=00;36:*.mka=00;36:*.mp3=00;36:*.mpc=00;36:*.ogg=00;36:*.ra=00;36:*.wav=00;36:*.oga=00;36:*.opus=00;36:*.spx=00;36:*.xspf=00;36: LANG=en_US.UTF-8 TERM=xterm-256color PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin MAIL=/var/mail/root LOGNAME=root USER=root USERNAME=root HOME=/root SHELL=/bin/bash SUDO_COMMAND=./tests.sh run_scan 1 SUDO_USER=ktdw73 SUDO_UID=1001 SUDO_GID=1002
+       0 21349  0.0  0.1  12576  4208 pts/0    S+   17:38   0:00                      \_ bash /usr/local/bin/otseca --ignore-failed --tasks system,kernel,permissions,services,network,distro,external LS_COLORS=rs=0:di=01;34:ln=01;36:mh=00:pi=40;33:so=01;35:do=01;35:bd=40;33;01:cd=40;33;01:or=40;31;01:mi=00:su=37;41:sg=30;43:ca=30;41:tw=30;42:ow=34;42:st=37;44:ex=01;32:*.tar=01;31:*.tgz=01;31:*.arc=01;31:*.arj=01;31:*.taz=01;31:*.lha=01;31:*.lz4=01;31:*.lzh=01;31:*.lzma=01;31:*.tlz=01;31:*.txz=01;31:*.tzo=01;31:*.t7z=01;31:*.zip=01;31:*.z=01;31:*.Z=01;31:*.dz=01;31:*.gz=01;31:*.lrz=01;31:*.lz=01;31:*.lzo=01;31:*.xz=01;31:*.zst=01;31:*.tzst=01;31:*.bz2=01;31:*.bz=01;31:*.tbz=01;31:*.tbz2=01;31:*.tz=01;31:*.deb=01;31:*.rpm=01;31:*.jar=01;31:*.war=01;31:*.ear=01;31:*.sar=01;31:*.rar=01;31:*.alz=01;31:*.ace=01;31:*.zoo=01;31:*.cpio=01;31:*.7z=01;31:*.rz=01;31:*.cab=01;31:*.jpg=01;35:*.jpeg=01;35:*.mjpg=01;35:*.mjpeg=01;35:*.gif=01;35:*.bmp=01;35:*.pbm=01;35:*.pgm=01;35:*.ppm=01;35:*.tga=01;35:*.xbm=01;35:*.xpm=01;35:*.tif=01;35:*.tiff=01;35:*.png=01;35:*.svg=01;35:*.svgz=01;35:*.mng=01;35:*.pcx=01;35:*.mov=01;35:*.mpg=01;35:*.mpeg=01;35:*.m2v=01;35:*.mkv=01;35:*.webm=01;35:*.ogm=01;35:*.mp4=01;35:*.m4v=01;35:*.mp4v=01;35:*.vob=01;35:*.qt=01;35:*.nuv=01;35:*.wmv=01;35:*.asf=01;35:*.rm=01;35:*.rmvb=01;35:*.flc=01;35:*.avi=01;35:*.fli=01;35:*.flv=01;35:*.gl=01;35:*.dl=01;35:*.xcf=01;35:*.xwd=01;35:*.yuv=01;35:*.cgm=01;35:*.emf=01;35:*.ogv=01;35:*.ogx=01;35:*.aac=00;36:*.au=00;36:*.flac=00;36:*.m4a=00;36:*.mid=00;36:*.midi=00;36:*.mka=00;36:*.mp3=00;36:*.mpc=00;36:*.ogg=00;36:*.ra=00;36:*.wav=00;36:*.oga=00;36:*.opus=00;36:*.spx=00;36:*.xspf=00;36: LANG=en_US.UTF-8 SUDO_GID=1002 USERNAME=root SUDO_COMMAND=./tests.sh run_scan 1 USER=root PWD=/home/ktdw73/scans/otseca HOME=/root SUDO_USER=ktdw73 SUDO_UID=1001 MAIL=/var/mail/root SHELL=/bin/bash TERM=xterm-256color SHLVL=1 LOGNAME=root PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin OLDPWD=/home/ktdw73/scans/testssl.sh _=/usr/local/bin/otseca
+       0 21551  0.0  0.0  12576  3116 pts/0    S+   17:38   0:00                      |   \_ bash /usr/local/bin/otseca --ignore-failed --tasks system,kernel,permissions,services,network,distro,external LS_COLORS=rs=0:di=01;34:ln=01;36:mh=00:pi=40;33:so=01;35:do=01;35:bd=40;33;01:cd=40;33;01:or=40;31;01:mi=00:su=37;41:sg=30;43:ca=30;41:tw=30;42:ow=34;42:st=37;44:ex=01;32:*.tar=01;31:*.tgz=01;31:*.arc=01;31:*.arj=01;31:*.taz=01;31:*.lha=01;31:*.lz4=01;31:*.lzh=01;31:*.lzma=01;31:*.tlz=01;31:*.txz=01;31:*.tzo=01;31:*.t7z=01;31:*.zip=01;31:*.z=01;31:*.Z=01;31:*.dz=01;31:*.gz=01;31:*.lrz=01;31:*.lz=01;31:*.lzo=01;31:*.xz=01;31:*.zst=01;31:*.tzst=01;31:*.bz2=01;31:*.bz=01;31:*.tbz=01;31:*.tbz2=01;31:*.tz=01;31:*.deb=01;31:*.rpm=01;31:*.jar=01;31:*.war=01;31:*.ear=01;31:*.sar=01;31:*.rar=01;31:*.alz=01;31:*.ace=01;31:*.zoo=01;31:*.cpio=01;31:*.7z=01;31:*.rz=01;31:*.cab=01;31:*.jpg=01;35:*.jpeg=01;35:*.mjpg=01;35:*.mjpeg=01;35:*.gif=01;35:*.bmp=01;35:*.pbm=01;35:*.pgm=01;35:*.ppm=01;35:*.tga=01;35:*.xbm=01;35:*.xpm=01;35:*.tif=01;35:*.tiff=01;35:*.png=01;35:*.svg=01;35:*.svgz=01;35:*.mng=01;35:*.pcx=01;35:*.mov=01;35:*.mpg=01;35:*.mpeg=01;35:*.m2v=01;35:*.mkv=01;35:*.webm=01;35:*.ogm=01;35:*.mp4=01;35:*.m4v=01;35:*.mp4v=01;35:*.vob=01;35:*.qt=01;35:*.nuv=01;35:*.wmv=01;35:*.asf=01;35:*.rm=01;35:*.rmvb=01;35:*.flc=01;35:*.avi=01;35:*.fli=01;35:*.flv=01;35:*.gl=01;35:*.dl=01;35:*.xcf=01;35:*.xwd=01;35:*.yuv=01;35:*.cgm=01;35:*.emf=01;35:*.ogv=01;35:*.ogx=01;35:*.aac=00;36:*.au=00;36:*.flac=00;36:*.m4a=00;36:*.mid=00;36:*.midi=00;36:*.mka=00;36:*.mp3=00;36:*.mpc=00;36:*.ogg=00;36:*.ra=00;36:*.wav=00;36:*.oga=00;36:*.opus=00;36:*.spx=00;36:*.xspf=00;36: LANG=en_US.UTF-8 SUDO_GID=1002 USERNAME=root SUDO_COMMAND=./tests.sh run_scan 1 USER=root PWD=/home/ktdw73/scans/otseca HOME=/root SUDO_USER=ktdw73 SUDO_UID=1001 MAIL=/var/mail/root SHELL=/bin/bash TERM=xterm-256color SHLVL=1 LOGNAME=root PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin OLDPWD=/home/ktdw73/scans/testssl.sh _=/usr/local/bin/otseca
+       0 21553  0.0  0.0  12576  3052 pts/0    S+   17:38   0:00                      |   |   \_ bash /usr/local/bin/otseca --ignore-failed --tasks system,kernel,permissions,services,network,distro,external LS_COLORS=rs=0:di=01;34:ln=01;36:mh=00:pi=40;33:so=01;35:do=01;35:bd=40;33;01:cd=40;33;01:or=40;31;01:mi=00:su=37;41:sg=30;43:ca=30;41:tw=30;42:ow=34;42:st=37;44:ex=01;32:*.tar=01;31:*.tgz=01;31:*.arc=01;31:*.arj=01;31:*.taz=01;31:*.lha=01;31:*.lz4=01;31:*.lzh=01;31:*.lzma=01;31:*.tlz=01;31:*.txz=01;31:*.tzo=01;31:*.t7z=01;31:*.zip=01;31:*.z=01;31:*.Z=01;31:*.dz=01;31:*.gz=01;31:*.lrz=01;31:*.lz=01;31:*.lzo=01;31:*.xz=01;31:*.zst=01;31:*.tzst=01;31:*.bz2=01;31:*.bz=01;31:*.tbz=01;31:*.tbz2=01;31:*.tz=01;31:*.deb=01;31:*.rpm=01;31:*.jar=01;31:*.war=01;31:*.ear=01;31:*.sar=01;31:*.rar=01;31:*.alz=01;31:*.ace=01;31:*.zoo=01;31:*.cpio=01;31:*.7z=01;31:*.rz=01;31:*.cab=01;31:*.jpg=01;35:*.jpeg=01;35:*.mjpg=01;35:*.mjpeg=01;35:*.gif=01;35:*.bmp=01;35:*.pbm=01;35:*.pgm=01;35:*.ppm=01;35:*.tga=01;35:*.xbm=01;35:*.xpm=01;35:*.tif=01;35:*.tiff=01;35:*.png=01;35:*.svg=01;35:*.svgz=01;35:*.mng=01;35:*.pcx=01;35:*.mov=01;35:*.mpg=01;35:*.mpeg=01;35:*.m2v=01;35:*.mkv=01;35:*.webm=01;35:*.ogm=01;35:*.mp4=01;35:*.m4v=01;35:*.mp4v=01;35:*.vob=01;35:*.qt=01;35:*.nuv=01;35:*.wmv=01;35:*.asf=01;35:*.rm=01;35:*.rmvb=01;35:*.flc=01;35:*.avi=01;35:*.fli=01;35:*.flv=01;35:*.gl=01;35:*.dl=01;35:*.xcf=01;35:*.xwd=01;35:*.yuv=01;35:*.cgm=01;35:*.emf=01;35:*.ogv=01;35:*.ogx=01;35:*.aac=00;36:*.au=00;36:*.flac=00;36:*.m4a=00;36:*.mid=00;36:*.midi=00;36:*.mka=00;36:*.mp3=00;36:*.mpc=00;36:*.ogg=00;36:*.ra=00;36:*.wav=00;36:*.oga=00;36:*.opus=00;36:*.spx=00;36:*.xspf=00;36: LANG=en_US.UTF-8 SUDO_GID=1002 USERNAME=root SUDO_COMMAND=./tests.sh run_scan 1 USER=root PWD=/home/ktdw73/scans/otseca HOME=/root SUDO_USER=ktdw73 SUDO_UID=1001 MAIL=/var/mail/root SHELL=/bin/bash TERM=xterm-256color SHLVL=1 LOGNAME=root PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin OLDPWD=/home/ktdw73/scans/testssl.sh _=/usr/local/bin/otseca
+       0 21556  0.0  0.0  38452  3316 pts/0    R+   17:38   0:00                      |   |       \_ ps -auxenf LS_COLORS=rs=0:di=01;34:ln=01;36:mh=00:pi=40;33:so=01;35:do=01;35:bd=40;33;01:cd=40;33;01:or=40;31;01:mi=00:su=37;41:sg=30;43:ca=30;41:tw=30;42:ow=34;42:st=37;44:ex=01;32:*.tar=01;31:*.tgz=01;31:*.arc=01;31:*.arj=01;31:*.taz=01;31:*.lha=01;31:*.lz4=01;31:*.lzh=01;31:*.lzma=01;31:*.tlz=01;31:*.txz=01;31:*.tzo=01;31:*.t7z=01;31:*.zip=01;31:*.z=01;31:*.Z=01;31:*.dz=01;31:*.gz=01;31:*.lrz=01;31:*.lz=01;31:*.lzo=01;31:*.xz=01;31:*.zst=01;31:*.tzst=01;31:*.bz2=01;31:*.bz=01;31:*.tbz=01;31:*.tbz2=01;31:*.tz=01;31:*.deb=01;31:*.rpm=01;31:*.jar=01;31:*.war=01;31:*.ear=01;31:*.sar=01;31:*.rar=01;31:*.alz=01;31:*.ace=01;31:*.zoo=01;31:*.cpio=01;31:*.7z=01;31:*.rz=01;31:*.cab=01;31:*.jpg=01;35:*.jpeg=01;35:*.mjpg=01;35:*.mjpeg=01;35:*.gif=01;35:*.bmp=01;35:*.pbm=01;35:*.pgm=01;35:*.ppm=01;35:*.tga=01;35:*.xbm=01;35:*.xpm=01;35:*.tif=01;35:*.tiff=01;35:*.png=01;35:*.svg=01;35:*.svgz=01;35:*.mng=01;35:*.pcx=01;35:*.mov=01;35:*.mpg=01;35:*.mpeg=01;35:*.m2v=01;35:*.mkv=01;35:*.webm=01;35:*.ogm=01;35:*.mp4=01;35:*.m4v=01;35:*.mp4v=01;35:*.vob=01;35:*.qt=01;35:*.nuv=01;35:*.wmv=01;35:*.asf=01;35:*.rm=01;35:*.rmvb=01;35:*.flc=01;35:*.avi=01;35:*.fli=01;35:*.flv=01;35:*.gl=01;35:*.dl=01;35:*.xcf=01;35:*.xwd=01;35:*.yuv=01;35:*.cgm=01;35:*.emf=01;35:*.ogv=01;35:*.ogx=01;35:*.aac=00;36:*.au=00;36:*.flac=00;36:*.m4a=00;36:*.mid=00;36:*.midi=00;36:*.mka=00;36:*.mp3=00;36:*.mpc=00;36:*.ogg=00;36:*.ra=00;36:*.wav=00;36:*.oga=00;36:*.opus=00;36:*.spx=00;36:*.xspf=00;36: LANG=en_US.UTF-8 SUDO_GID=1002 OLDPWD=/home/ktdw73/scans/otseca USERNAME=root SUDO_COMMAND=./tests.sh run_scan 1 USER=root PWD=/home/ktdw73/scans/otseca HOME=/root tasks_type=system,kernel,permissions,services,network,distro,external SUDO_USER=ktdw73 SUDO_UID=1001 MAIL=/var/mail/root TERM=xterm-256color SHELL=/bin/bash SHLVL=2 ignore_errors=1 LOGNAME=root PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin _=/bin/ps
+       0 21552  0.0  0.0  12576  2988 pts/0    S+   17:38   0:00                      |   \_ bash /usr/local/bin/otseca --ignore-failed --tasks system,kernel,permissions,services,network,distro,external LS_COLORS=rs=0:di=01;34:ln=01;36:mh=00:pi=40;33:so=01;35:do=01;35:bd=40;33;01:cd=40;33;01:or=40;31;01:mi=00:su=37;41:sg=30;43:ca=30;41:tw=30;42:ow=34;42:st=37;44:ex=01;32:*.tar=01;31:*.tgz=01;31:*.arc=01;31:*.arj=01;31:*.taz=01;31:*.lha=01;31:*.lz4=01;31:*.lzh=01;31:*.lzma=01;31:*.tlz=01;31:*.txz=01;31:*.tzo=01;31:*.t7z=01;31:*.zip=01;31:*.z=01;31:*.Z=01;31:*.dz=01;31:*.gz=01;31:*.lrz=01;31:*.lz=01;31:*.lzo=01;31:*.xz=01;31:*.zst=01;31:*.tzst=01;31:*.bz2=01;31:*.bz=01;31:*.tbz=01;31:*.tbz2=01;31:*.tz=01;31:*.deb=01;31:*.rpm=01;31:*.jar=01;31:*.war=01;31:*.ear=01;31:*.sar=01;31:*.rar=01;31:*.alz=01;31:*.ace=01;31:*.zoo=01;31:*.cpio=01;31:*.7z=01;31:*.rz=01;31:*.cab=01;31:*.jpg=01;35:*.jpeg=01;35:*.mjpg=01;35:*.mjpeg=01;35:*.gif=01;35:*.bmp=01;35:*.pbm=01;35:*.pgm=01;35:*.ppm=01;35:*.tga=01;35:*.xbm=01;35:*.xpm=01;35:*.tif=01;35:*.tiff=01;35:*.png=01;35:*.svg=01;35:*.svgz=01;35:*.mng=01;35:*.pcx=01;35:*.mov=01;35:*.mpg=01;35:*.mpeg=01;35:*.m2v=01;35:*.mkv=01;35:*.webm=01;35:*.ogm=01;35:*.mp4=01;35:*.m4v=01;35:*.mp4v=01;35:*.vob=01;35:*.qt=01;35:*.nuv=01;35:*.wmv=01;35:*.asf=01;35:*.rm=01;35:*.rmvb=01;35:*.flc=01;35:*.avi=01;35:*.fli=01;35:*.flv=01;35:*.gl=01;35:*.dl=01;35:*.xcf=01;35:*.xwd=01;35:*.yuv=01;35:*.cgm=01;35:*.emf=01;35:*.ogv=01;35:*.ogx=01;35:*.aac=00;36:*.au=00;36:*.flac=00;36:*.m4a=00;36:*.mid=00;36:*.midi=00;36:*.mka=00;36:*.mp3=00;36:*.mpc=00;36:*.ogg=00;36:*.ra=00;36:*.wav=00;36:*.oga=00;36:*.opus=00;36:*.spx=00;36:*.xspf=00;36: LANG=en_US.UTF-8 SUDO_GID=1002 USERNAME=root SUDO_COMMAND=./tests.sh run_scan 1 USER=root PWD=/home/ktdw73/scans/otseca HOME=/root SUDO_USER=ktdw73 SUDO_UID=1001 MAIL=/var/mail/root SHELL=/bin/bash TERM=xterm-256color SHLVL=1 LOGNAME=root PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin OLDPWD=/home/ktdw73/scans/testssl.sh _=/usr/local/bin/otseca
+       0 21350  0.0  0.0   5832   680 pts/0    S+   17:38   0:00                      \_ tee otseca-1.log LS_COLORS=rs=0:di=01;34:ln=01;36:mh=00:pi=40;33:so=01;35:do=01;35:bd=40;33;01:cd=40;33;01:or=40;31;01:mi=00:su=37;41:sg=30;43:ca=30;41:tw=30;42:ow=34;42:st=37;44:ex=01;32:*.tar=01;31:*.tgz=01;31:*.arc=01;31:*.arj=01;31:*.taz=01;31:*.lha=01;31:*.lz4=01;31:*.lzh=01;31:*.lzma=01;31:*.tlz=01;31:*.txz=01;31:*.tzo=01;31:*.t7z=01;31:*.zip=01;31:*.z=01;31:*.Z=01;31:*.dz=01;31:*.gz=01;31:*.lrz=01;31:*.lz=01;31:*.lzo=01;31:*.xz=01;31:*.zst=01;31:*.tzst=01;31:*.bz2=01;31:*.bz=01;31:*.tbz=01;31:*.tbz2=01;31:*.tz=01;31:*.deb=01;31:*.rpm=01;31:*.jar=01;31:*.war=01;31:*.ear=01;31:*.sar=01;31:*.rar=01;31:*.alz=01;31:*.ace=01;31:*.zoo=01;31:*.cpio=01;31:*.7z=01;31:*.rz=01;31:*.cab=01;31:*.jpg=01;35:*.jpeg=01;35:*.mjpg=01;35:*.mjpeg=01;35:*.gif=01;35:*.bmp=01;35:*.pbm=01;35:*.pgm=01;35:*.ppm=01;35:*.tga=01;35:*.xbm=01;35:*.xpm=01;35:*.tif=01;35:*.tiff=01;35:*.png=01;35:*.svg=01;35:*.svgz=01;35:*.mng=01;35:*.pcx=01;35:*.mov=01;35:*.mpg=01;35:*.mpeg=01;35:*.m2v=01;35:*.mkv=01;35:*.webm=01;35:*.ogm=01;35:*.mp4=01;35:*.m4v=01;35:*.mp4v=01;35:*.vob=01;35:*.qt=01;35:*.nuv=01;35:*.wmv=01;35:*.asf=01;35:*.rm=01;35:*.rmvb=01;35:*.flc=01;35:*.avi=01;35:*.fli=01;35:*.flv=01;35:*.gl=01;35:*.dl=01;35:*.xcf=01;35:*.xwd=01;35:*.yuv=01;35:*.cgm=01;35:*.emf=01;35:*.ogv=01;35:*.ogx=01;35:*.aac=00;36:*.au=00;36:*.flac=00;36:*.m4a=00;36:*.mid=00;36:*.midi=00;36:*.mka=00;36:*.mp3=00;36:*.mpc=00;36:*.ogg=00;36:*.ra=00;36:*.wav=00;36:*.oga=00;36:*.opus=00;36:*.spx=00;36:*.xspf=00;36: LANG=en_US.UTF-8 SUDO_GID=1002 USERNAME=root SUDO_COMMAND=./tests.sh run_scan 1 USER=root PWD=/home/ktdw73/scans/otseca HOME=/root SUDO_USER=ktdw73 SUDO_UID=1001 MAIL=/var/mail/root SHELL=/bin/bash TERM=xterm-256color SHLVL=1 LOGNAME=root PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin OLDPWD=/home/ktdw73/scans/testssl.sh _=/usr/bin/tee
+       0   800  0.0  0.0  29636  2628 ?        Ss   17:20   0:00 /usr/sbin/cron -f LANG=en_US.UTF-8 PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin INVOCATION_ID=fcf571f946e84d6b964ef6ecdc732611 JOURNAL_STREAM=8:13651 READ_ENV=yes
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _grep "^\s*linux" /boot/grub/grub.*
+
+
+ + + + + + +
+
	linux	/boot/vmlinuz-4.9.0-14-amd64 root=UUID=cf6505a9-a2dd-4606-a3ef-bd7955104c7f ro net.ifnames=0 biosdevname=0 console=ttyS0,38400n8 elevator=noop scsi_mod.use_blk_mq=Y 
+		linux	/boot/vmlinuz-4.9.0-14-amd64 root=UUID=cf6505a9-a2dd-4606-a3ef-bd7955104c7f ro net.ifnames=0 biosdevname=0 console=ttyS0,38400n8 elevator=noop scsi_mod.use_blk_mq=Y 
+		linux	/boot/vmlinuz-4.9.0-14-amd64 root=UUID=cf6505a9-a2dd-4606-a3ef-bd7955104c7f ro single net.ifnames=0 biosdevname=0 console=ttyS0,38400n8 elevator=noop scsi_mod.use_blk_mq=Y
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec lspci
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec lsblk
+
+
+ + + + + + +
+
NAME   MAJ:MIN RM SIZE RO TYPE MOUNTPOINT
+sda      8:0    0  10G  0 disk 
+└─sda1   8:1    0  10G  0 part /
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec df -H
+
+
+ + + + + + +
+
Filesystem      Size  Used Avail Use% Mounted on
+udev            2.1G     0  2.1G   0% /dev
+tmpfs           415M  7.1M  408M   2% /run
+/dev/sda1        11G  1.8G  8.3G  18% /
+tmpfs           2.1G     0  2.1G   0% /dev/shm
+tmpfs           5.3M     0  5.3M   0% /run/lock
+tmpfs           2.1G     0  2.1G   0% /sys/fs/cgroup
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec mount
+
+
+ + + + + + +
+
sysfs on /sys type sysfs (rw,nosuid,nodev,noexec,relatime)
+proc on /proc type proc (rw,nosuid,nodev,noexec,relatime)
+udev on /dev type devtmpfs (rw,nosuid,relatime,size=2014280k,nr_inodes=503570,mode=755)
+devpts on /dev/pts type devpts (rw,nosuid,noexec,relatime,gid=5,mode=620,ptmxmode=000)
+tmpfs on /run type tmpfs (rw,nosuid,noexec,relatime,size=405088k,mode=755)
+/dev/sda1 on / type ext4 (rw,relatime,data=ordered)
+securityfs on /sys/kernel/security type securityfs (rw,nosuid,nodev,noexec,relatime)
+tmpfs on /dev/shm type tmpfs (rw,nosuid,nodev)
+tmpfs on /run/lock type tmpfs (rw,nosuid,nodev,noexec,relatime,size=5120k)
+tmpfs on /sys/fs/cgroup type tmpfs (ro,nosuid,nodev,noexec,mode=755)
+cgroup on /sys/fs/cgroup/systemd type cgroup (rw,nosuid,nodev,noexec,relatime,xattr,release_agent=/lib/systemd/systemd-cgroups-agent,name=systemd)
+pstore on /sys/fs/pstore type pstore (rw,nosuid,nodev,noexec,relatime)
+cgroup on /sys/fs/cgroup/pids type cgroup (rw,nosuid,nodev,noexec,relatime,pids)
+cgroup on /sys/fs/cgroup/cpu,cpuacct type cgroup (rw,nosuid,nodev,noexec,relatime,cpu,cpuacct)
+cgroup on /sys/fs/cgroup/devices type cgroup (rw,nosuid,nodev,noexec,relatime,devices)
+cgroup on /sys/fs/cgroup/net_cls,net_prio type cgroup (rw,nosuid,nodev,noexec,relatime,net_cls,net_prio)
+cgroup on /sys/fs/cgroup/freezer type cgroup (rw,nosuid,nodev,noexec,relatime,freezer)
+cgroup on /sys/fs/cgroup/memory type cgroup (rw,nosuid,nodev,noexec,relatime,memory)
+cgroup on /sys/fs/cgroup/cpuset type cgroup (rw,nosuid,nodev,noexec,relatime,cpuset)
+cgroup on /sys/fs/cgroup/blkio type cgroup (rw,nosuid,nodev,noexec,relatime,blkio)
+cgroup on /sys/fs/cgroup/perf_event type cgroup (rw,nosuid,nodev,noexec,relatime,perf_event)
+systemd-1 on /proc/sys/fs/binfmt_misc type autofs (rw,relatime,fd=27,pgrp=1,timeout=0,minproto=5,maxproto=5,direct,pipe_ino=600)
+debugfs on /sys/kernel/debug type debugfs (rw,relatime)
+hugetlbfs on /dev/hugepages type hugetlbfs (rw,relatime)
+mqueue on /dev/mqueue type mqueue (rw,relatime)
+binfmt_misc on /proc/sys/fs/binfmt_misc type binfmt_misc (rw,relatime)
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec sestatus
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec cat /etc/issue
+
+
+ + + + + + +
+
Debian GNU/Linux 9 \n \l
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec cat /etc/issue.net
+
+
+ + + + + + +
+
Debian GNU/Linux 9
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec cat /etc/motd
+
+
+ + + + + + +
+

+The programs included with the Debian GNU/Linux system are free software;
+the exact distribution terms for each program are described in the
+individual files in /usr/share/doc/*/copyright.
+
+Debian GNU/Linux comes with ABSOLUTELY NO WARRANTY, to the extent
+permitted by applicable law.
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec printenv
+
+
+ + + + + + +
+
LS_COLORS=rs=0:di=01;34:ln=01;36:mh=00:pi=40;33:so=01;35:do=01;35:bd=40;33;01:cd=40;33;01:or=40;31;01:mi=00:su=37;41:sg=30;43:ca=30;41:tw=30;42:ow=34;42:st=37;44:ex=01;32:*.tar=01;31:*.tgz=01;31:*.arc=01;31:*.arj=01;31:*.taz=01;31:*.lha=01;31:*.lz4=01;31:*.lzh=01;31:*.lzma=01;31:*.tlz=01;31:*.txz=01;31:*.tzo=01;31:*.t7z=01;31:*.zip=01;31:*.z=01;31:*.Z=01;31:*.dz=01;31:*.gz=01;31:*.lrz=01;31:*.lz=01;31:*.lzo=01;31:*.xz=01;31:*.zst=01;31:*.tzst=01;31:*.bz2=01;31:*.bz=01;31:*.tbz=01;31:*.tbz2=01;31:*.tz=01;31:*.deb=01;31:*.rpm=01;31:*.jar=01;31:*.war=01;31:*.ear=01;31:*.sar=01;31:*.rar=01;31:*.alz=01;31:*.ace=01;31:*.zoo=01;31:*.cpio=01;31:*.7z=01;31:*.rz=01;31:*.cab=01;31:*.jpg=01;35:*.jpeg=01;35:*.mjpg=01;35:*.mjpeg=01;35:*.gif=01;35:*.bmp=01;35:*.pbm=01;35:*.pgm=01;35:*.ppm=01;35:*.tga=01;35:*.xbm=01;35:*.xpm=01;35:*.tif=01;35:*.tiff=01;35:*.png=01;35:*.svg=01;35:*.svgz=01;35:*.mng=01;35:*.pcx=01;35:*.mov=01;35:*.mpg=01;35:*.mpeg=01;35:*.m2v=01;35:*.mkv=01;35:*.webm=01;35:*.ogm=01;35:*.mp4=01;35:*.m4v=01;35:*.mp4v=01;35:*.vob=01;35:*.qt=01;35:*.nuv=01;35:*.wmv=01;35:*.asf=01;35:*.rm=01;35:*.rmvb=01;35:*.flc=01;35:*.avi=01;35:*.fli=01;35:*.flv=01;35:*.gl=01;35:*.dl=01;35:*.xcf=01;35:*.xwd=01;35:*.yuv=01;35:*.cgm=01;35:*.emf=01;35:*.ogv=01;35:*.ogx=01;35:*.aac=00;36:*.au=00;36:*.flac=00;36:*.m4a=00;36:*.mid=00;36:*.midi=00;36:*.mka=00;36:*.mp3=00;36:*.mpc=00;36:*.ogg=00;36:*.ra=00;36:*.wav=00;36:*.oga=00;36:*.opus=00;36:*.spx=00;36:*.xspf=00;36:
+LANG=en_US.UTF-8
+SUDO_GID=1002
+OLDPWD=/home/ktdw73/scans/otseca
+USERNAME=root
+SUDO_COMMAND=./tests.sh run_scan 1
+USER=root
+PWD=/home/ktdw73/scans/otseca
+HOME=/root
+tasks_type=system,kernel,permissions,services,network,distro,external
+SUDO_USER=ktdw73
+SUDO_UID=1001
+MAIL=/var/mail/root
+TERM=xterm-256color
+SHELL=/bin/bash
+SHLVL=2
+ignore_errors=1
+LOGNAME=root
+PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin
+_=/usr/bin/printenv
+
+
+
+
+
+
+ + +
+
+
+
+ +
+ + + + + + +
COMMAND: _exec crontab -u root -l
+
+
+ + + + + + +
+
command error or empty output
+
+
+
+
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/animate/animate.css b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/animate/animate.css new file mode 100644 index 0000000..1e79e03 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/animate/animate.css @@ -0,0 +1,1579 @@ +@charset "UTF-8"; + +/*! + * animate.css -http://daneden.me/animate + * Version - 3.5.2 + * Licensed under the MIT license - http://opensource.org/licenses/MIT + * + * Copyright (c) 2017 Daniel Eden + */ + +.animated { + animation-duration: 1s; + animation-fill-mode: both; +} + +.animated.infinite { + animation-iteration-count: infinite; +} + +.animated.hinge { + animation-duration: 2s; +} + +.animated.flipOutX, +.animated.flipOutY, +.animated.bounceIn, +.animated.bounceOut { + animation-duration: .75s; +} + +@keyframes bounce { + from, 20%, 53%, 80%, to { + animation-timing-function: cubic-bezier(0.215, 0.610, 0.355, 1.000); + transform: translate3d(0,0,0); + } + + 40%, 43% { + animation-timing-function: cubic-bezier(0.755, 0.050, 0.855, 0.060); + transform: translate3d(0, -30px, 0); + } + + 70% { + animation-timing-function: cubic-bezier(0.755, 0.050, 0.855, 0.060); + transform: translate3d(0, -15px, 0); + } + + 90% { + transform: translate3d(0,-4px,0); + } +} + +.bounce { + animation-name: bounce; + transform-origin: center bottom; +} + +@keyframes flash { + from, 50%, to { + opacity: 1; + } + + 25%, 75% { + opacity: 0; + } +} + +.flash { + animation-name: flash; +} + +/* originally authored by Nick Pettit - https://github.com/nickpettit/glide */ + +@keyframes pulse { + from { + transform: scale3d(1, 1, 1); + } + + 50% { + transform: scale3d(1.05, 1.05, 1.05); + } + + to { + transform: scale3d(1, 1, 1); + } +} + +.pulse { + animation-name: pulse; +} + +@keyframes rubberBand { + from { + transform: scale3d(1, 1, 1); + } + + 30% { + transform: scale3d(1.25, 0.75, 1); + } + + 40% { + transform: scale3d(0.75, 1.25, 1); + } + + 50% { + transform: scale3d(1.15, 0.85, 1); + } + + 65% { + transform: scale3d(.95, 1.05, 1); + } + + 75% { + transform: scale3d(1.05, .95, 1); + } + + to { + transform: scale3d(1, 1, 1); + } +} + +.rubberBand { + animation-name: rubberBand; +} + +@keyframes shake { + from, to { + transform: translate3d(0, 0, 0); + } + + 10%, 30%, 50%, 70%, 90% { + transform: translate3d(-10px, 0, 0); + } + + 20%, 40%, 60%, 80% { + transform: translate3d(10px, 0, 0); + } +} + +.shake { + animation-name: shake; +} + +@keyframes headShake { + 0% { + transform: translateX(0); + } + + 6.5% { + transform: translateX(-6px) rotateY(-9deg); + } + + 18.5% { + transform: translateX(5px) rotateY(7deg); + } + + 31.5% { + transform: translateX(-3px) rotateY(-5deg); + } + + 43.5% { + transform: translateX(2px) rotateY(3deg); + } + + 50% { + transform: translateX(0); + } +} + +.headShake { + animation-timing-function: ease-in-out; + animation-name: headShake; +} + +@keyframes swing { + 20% { + transform: rotate3d(0, 0, 1, 15deg); + } + + 40% { + transform: rotate3d(0, 0, 1, -10deg); + } + + 60% { + transform: rotate3d(0, 0, 1, 5deg); + } + + 80% { + transform: rotate3d(0, 0, 1, -5deg); + } + + to { + transform: rotate3d(0, 0, 1, 0deg); + } +} + +.swing { + transform-origin: top center; + animation-name: swing; +} + +@keyframes tada { + from { + transform: scale3d(1, 1, 1); + } + + 10%, 20% { + transform: scale3d(.9, .9, .9) rotate3d(0, 0, 1, -3deg); + } + + 30%, 50%, 70%, 90% { + transform: scale3d(1.1, 1.1, 1.1) rotate3d(0, 0, 1, 3deg); + } + + 40%, 60%, 80% { + transform: scale3d(1.1, 1.1, 1.1) rotate3d(0, 0, 1, -3deg); + } + + to { + transform: scale3d(1, 1, 1); + } +} + +.tada { + animation-name: tada; +} + +/* originally authored by Nick Pettit - https://github.com/nickpettit/glide */ + +@keyframes wobble { + from { + transform: none; + } + + 15% { + transform: translate3d(-25%, 0, 0) rotate3d(0, 0, 1, -5deg); + } + + 30% { + transform: translate3d(20%, 0, 0) rotate3d(0, 0, 1, 3deg); + } + + 45% { + transform: translate3d(-15%, 0, 0) rotate3d(0, 0, 1, -3deg); + } + + 60% { + transform: translate3d(10%, 0, 0) rotate3d(0, 0, 1, 2deg); + } + + 75% { + transform: translate3d(-5%, 0, 0) rotate3d(0, 0, 1, -1deg); + } + + to { + transform: none; + } +} + +.wobble { + animation-name: wobble; +} + +@keyframes jello { + from, 11.1%, to { + transform: none; + } + + 22.2% { + transform: skewX(-12.5deg) skewY(-12.5deg); + } + + 33.3% { + transform: skewX(6.25deg) skewY(6.25deg); + } + + 44.4% { + transform: skewX(-3.125deg) skewY(-3.125deg); + } + + 55.5% { + transform: skewX(1.5625deg) skewY(1.5625deg); + } + + 66.6% { + transform: skewX(-0.78125deg) skewY(-0.78125deg); + } + + 77.7% { + transform: skewX(0.390625deg) skewY(0.390625deg); + } + + 88.8% { + transform: skewX(-0.1953125deg) skewY(-0.1953125deg); + } +} + +.jello { + animation-name: jello; + transform-origin: center; +} + +@keyframes bounceIn { + from, 20%, 40%, 60%, 80%, to { + animation-timing-function: cubic-bezier(0.215, 0.610, 0.355, 1.000); + } + + 0% { + opacity: 0; + transform: scale3d(.3, .3, .3); + } + + 20% { + transform: scale3d(1.1, 1.1, 1.1); + } + + 40% { + transform: scale3d(.9, .9, .9); + } + + 60% { + opacity: 1; + transform: scale3d(1.03, 1.03, 1.03); + } + + 80% { + transform: scale3d(.97, .97, .97); + } + + to { + opacity: 1; + transform: scale3d(1, 1, 1); + } +} + +.bounceIn { + animation-name: bounceIn; +} + +@keyframes bounceInDown { + from, 60%, 75%, 90%, to { + animation-timing-function: cubic-bezier(0.215, 0.610, 0.355, 1.000); + } + + 0% { + opacity: 0; + transform: translate3d(0, -3000px, 0); + } + + 60% { + opacity: 1; + transform: translate3d(0, 25px, 0); + } + + 75% { + transform: translate3d(0, -10px, 0); + } + + 90% { + transform: translate3d(0, 5px, 0); + } + + to { + transform: none; + } +} + +.bounceInDown { + animation-name: bounceInDown; +} + +@keyframes bounceInLeft { + from, 60%, 75%, 90%, to { + animation-timing-function: cubic-bezier(0.215, 0.610, 0.355, 1.000); + } + + 0% { + opacity: 0; + transform: translate3d(-3000px, 0, 0); + } + + 60% { + opacity: 1; + transform: translate3d(25px, 0, 0); + } + + 75% { + transform: translate3d(-10px, 0, 0); + } + + 90% { + transform: translate3d(5px, 0, 0); + } + + to { + transform: none; + } +} + +.bounceInLeft { + animation-name: bounceInLeft; +} + +@keyframes bounceInRight { + from, 60%, 75%, 90%, to { + animation-timing-function: cubic-bezier(0.215, 0.610, 0.355, 1.000); + } + + from { + opacity: 0; + transform: translate3d(3000px, 0, 0); + } + + 60% { + opacity: 1; + transform: translate3d(-25px, 0, 0); + } + + 75% { + transform: translate3d(10px, 0, 0); + } + + 90% { + transform: translate3d(-5px, 0, 0); + } + + to { + transform: none; + } +} + +.bounceInRight { + animation-name: bounceInRight; +} + +@keyframes bounceInUp { + from, 60%, 75%, 90%, to { + animation-timing-function: cubic-bezier(0.215, 0.610, 0.355, 1.000); + } + + from { + opacity: 0; + transform: translate3d(0, 3000px, 0); + } + + 60% { + opacity: 1; + transform: translate3d(0, -20px, 0); + } + + 75% { + transform: translate3d(0, 10px, 0); + } + + 90% { + transform: translate3d(0, -5px, 0); + } + + to { + transform: translate3d(0, 0, 0); + } +} + +.bounceInUp { + animation-name: bounceInUp; +} + +@keyframes bounceOut { + 20% { + transform: scale3d(.9, .9, .9); + } + + 50%, 55% { + opacity: 1; + transform: scale3d(1.1, 1.1, 1.1); + } + + to { + opacity: 0; + transform: scale3d(.3, .3, .3); + } +} + +.bounceOut { + animation-name: bounceOut; +} + +@keyframes bounceOutDown { + 20% { + transform: translate3d(0, 10px, 0); + } + + 40%, 45% { + opacity: 1; + transform: translate3d(0, -20px, 0); + } + + to { + opacity: 0; + transform: translate3d(0, 2000px, 0); + } +} + +.bounceOutDown { + animation-name: bounceOutDown; +} + +@keyframes bounceOutLeft { + 20% { + opacity: 1; + transform: translate3d(20px, 0, 0); + } + + to { + opacity: 0; + transform: translate3d(-2000px, 0, 0); + } +} + +.bounceOutLeft { + animation-name: bounceOutLeft; +} + +@keyframes bounceOutRight { + 20% { + opacity: 1; + transform: translate3d(-20px, 0, 0); + } + + to { + opacity: 0; + transform: translate3d(2000px, 0, 0); + } +} + +.bounceOutRight { + animation-name: bounceOutRight; +} + +@keyframes bounceOutUp { + 20% { + transform: translate3d(0, -10px, 0); + } + + 40%, 45% { + opacity: 1; + transform: translate3d(0, 20px, 0); + } + + to { + opacity: 0; + transform: translate3d(0, -2000px, 0); + } +} + +.bounceOutUp { + animation-name: bounceOutUp; +} + +@keyframes fadeIn { + from { + opacity: 0; + } + + to { + opacity: 1; + } +} + +.fadeIn { + animation-name: fadeIn; +} + +@keyframes fadeInDown { + from { + opacity: 0; + transform: translate3d(0, -100%, 0); + } + + to { + opacity: 1; + transform: none; + } +} + +.fadeInDown { + animation-name: fadeInDown; +} + +@keyframes fadeInDownBig { + from { + opacity: 0; + transform: translate3d(0, -2000px, 0); + } + + to { + opacity: 1; + transform: none; + } +} + +.fadeInDownBig { + animation-name: fadeInDownBig; +} + +@keyframes fadeInLeft { + from { + opacity: 0; + transform: translate3d(-100%, 0, 0); + } + + to { + opacity: 1; + transform: none; + } +} + +.fadeInLeft { + animation-name: fadeInLeft; +} + +@keyframes fadeInLeftBig { + from { + opacity: 0; + transform: translate3d(-2000px, 0, 0); + } + + to { + opacity: 1; + transform: none; + } +} + +.fadeInLeftBig { + animation-name: fadeInLeftBig; +} + +@keyframes fadeInRight { + from { + opacity: 0; + transform: translate3d(100%, 0, 0); + } + + to { + opacity: 1; + transform: none; + } +} + +.fadeInRight { + animation-name: fadeInRight; +} + +@keyframes fadeInRightBig { + from { + opacity: 0; + transform: translate3d(2000px, 0, 0); + } + + to { + opacity: 1; + transform: none; + } +} + +.fadeInRightBig { + animation-name: fadeInRightBig; +} + +@keyframes fadeInUp { + from { + opacity: 0; + transform: translate3d(0, 100%, 0); + } + + to { + opacity: 1; + transform: none; + } +} + +.fadeInUp { + animation-name: fadeInUp; +} + +@keyframes fadeInUpBig { + from { + opacity: 0; + transform: translate3d(0, 2000px, 0); + } + + to { + opacity: 1; + transform: none; + } +} + +.fadeInUpBig { + animation-name: fadeInUpBig; +} + +@keyframes fadeOut { + from { + opacity: 1; + } + + to { + opacity: 0; + } +} + +.fadeOut { + animation-name: fadeOut; +} + +@keyframes fadeOutDown { + from { + opacity: 1; + } + + to { + opacity: 0; + transform: translate3d(0, 100%, 0); + } +} + +.fadeOutDown { + animation-name: fadeOutDown; +} + +@keyframes fadeOutDownBig { + from { + opacity: 1; + } + + to { + opacity: 0; + transform: translate3d(0, 2000px, 0); + } +} + +.fadeOutDownBig { + animation-name: fadeOutDownBig; +} + +@keyframes fadeOutLeft { + from { + opacity: 1; + } + + to { + opacity: 0; + transform: translate3d(-100%, 0, 0); + } +} + +.fadeOutLeft { + animation-name: fadeOutLeft; +} + +@keyframes fadeOutLeftBig { + from { + opacity: 1; + } + + to { + opacity: 0; + transform: translate3d(-2000px, 0, 0); + } +} + +.fadeOutLeftBig { + animation-name: fadeOutLeftBig; +} + +@keyframes fadeOutRight { + from { + opacity: 1; + } + + to { + opacity: 0; + transform: translate3d(100%, 0, 0); + } +} + +.fadeOutRight { + animation-name: fadeOutRight; +} + +@keyframes fadeOutRightBig { + from { + opacity: 1; + } + + to { + opacity: 0; + transform: translate3d(2000px, 0, 0); + } +} + +.fadeOutRightBig { + animation-name: fadeOutRightBig; +} + +@keyframes fadeOutUp { + from { + opacity: 1; + } + + to { + opacity: 0; + transform: translate3d(0, -100%, 0); + } +} + +.fadeOutUp { + animation-name: fadeOutUp; +} + +@keyframes fadeOutUpBig { + from { + opacity: 1; + } + + to { + opacity: 0; + transform: translate3d(0, -2000px, 0); + } +} + +.fadeOutUpBig { + animation-name: fadeOutUpBig; +} + +@keyframes flip { + from { + transform: perspective(400px) rotate3d(0, 1, 0, -360deg); + animation-timing-function: ease-out; + } + + 40% { + transform: perspective(400px) translate3d(0, 0, 150px) rotate3d(0, 1, 0, -190deg); + animation-timing-function: ease-out; + } + + 50% { + transform: perspective(400px) translate3d(0, 0, 150px) rotate3d(0, 1, 0, -170deg); + animation-timing-function: ease-in; + } + + 80% { + transform: perspective(400px) scale3d(.95, .95, .95); + animation-timing-function: ease-in; + } + + to { + transform: perspective(400px); + animation-timing-function: ease-in; + } +} + +.animated.flip { + -webkit-backface-visibility: visible; + backface-visibility: visible; + animation-name: flip; +} + +@keyframes flipInX { + from { + transform: perspective(400px) rotate3d(1, 0, 0, 90deg); + animation-timing-function: ease-in; + opacity: 0; + } + + 40% { + transform: perspective(400px) rotate3d(1, 0, 0, -20deg); + animation-timing-function: ease-in; + } + + 60% { + transform: perspective(400px) rotate3d(1, 0, 0, 10deg); + opacity: 1; + } + + 80% { + transform: perspective(400px) rotate3d(1, 0, 0, -5deg); + } + + to { + transform: perspective(400px); + } +} + +.flipInX { + -webkit-backface-visibility: visible !important; + backface-visibility: visible !important; + animation-name: flipInX; +} + +@keyframes flipInY { + from { + transform: perspective(400px) rotate3d(0, 1, 0, 90deg); + animation-timing-function: ease-in; + opacity: 0; + } + + 40% { + transform: perspective(400px) rotate3d(0, 1, 0, -20deg); + animation-timing-function: ease-in; + } + + 60% { + transform: perspective(400px) rotate3d(0, 1, 0, 10deg); + opacity: 1; + } + + 80% { + transform: perspective(400px) rotate3d(0, 1, 0, -5deg); + } + + to { + transform: perspective(400px); + } +} + +.flipInY { + -webkit-backface-visibility: visible !important; + backface-visibility: visible !important; + animation-name: flipInY; +} + +@keyframes flipOutX { + from { + transform: perspective(400px); + } + + 30% { + transform: perspective(400px) rotate3d(1, 0, 0, -20deg); + opacity: 1; + } + + to { + transform: perspective(400px) rotate3d(1, 0, 0, 90deg); + opacity: 0; + } +} + +.flipOutX { + animation-name: flipOutX; + -webkit-backface-visibility: visible !important; + backface-visibility: visible !important; +} + +@keyframes flipOutY { + from { + transform: perspective(400px); + } + + 30% { + transform: perspective(400px) rotate3d(0, 1, 0, -15deg); + opacity: 1; + } + + to { + transform: perspective(400px) rotate3d(0, 1, 0, 90deg); + opacity: 0; + } +} + +.flipOutY { + -webkit-backface-visibility: visible !important; + backface-visibility: visible !important; + animation-name: flipOutY; +} + +@keyframes lightSpeedIn { + from { + transform: translate3d(100%, 0, 0) skewX(-30deg); + opacity: 0; + } + + 60% { + transform: skewX(20deg); + opacity: 1; + } + + 80% { + transform: skewX(-5deg); + opacity: 1; + } + + to { + transform: none; + opacity: 1; + } +} + +.lightSpeedIn { + animation-name: lightSpeedIn; + animation-timing-function: ease-out; +} + +@keyframes lightSpeedOut { + from { + opacity: 1; + } + + to { + transform: translate3d(100%, 0, 0) skewX(30deg); + opacity: 0; + } +} + +.lightSpeedOut { + animation-name: lightSpeedOut; + animation-timing-function: ease-in; +} + +@keyframes rotateIn { + from { + transform-origin: center; + transform: rotate3d(0, 0, 1, -200deg); + opacity: 0; + } + + to { + transform-origin: center; + transform: none; + opacity: 1; + } +} + +.rotateIn { + animation-name: rotateIn; +} + +@keyframes rotateInDownLeft { + from { + transform-origin: left bottom; + transform: rotate3d(0, 0, 1, -45deg); + opacity: 0; + } + + to { + transform-origin: left bottom; + transform: none; + opacity: 1; + } +} + +.rotateInDownLeft { + animation-name: rotateInDownLeft; +} + +@keyframes rotateInDownRight { + from { + transform-origin: right bottom; + transform: rotate3d(0, 0, 1, 45deg); + opacity: 0; + } + + to { + transform-origin: right bottom; + transform: none; + opacity: 1; + } +} + +.rotateInDownRight { + animation-name: rotateInDownRight; +} + +@keyframes rotateInUpLeft { + from { + transform-origin: left bottom; + transform: rotate3d(0, 0, 1, 45deg); + opacity: 0; + } + + to { + transform-origin: left bottom; + transform: none; + opacity: 1; + } +} + +.rotateInUpLeft { + animation-name: rotateInUpLeft; +} + +@keyframes rotateInUpRight { + from { + transform-origin: right bottom; + transform: rotate3d(0, 0, 1, -90deg); + opacity: 0; + } + + to { + transform-origin: right bottom; + transform: none; + opacity: 1; + } +} + +.rotateInUpRight { + animation-name: rotateInUpRight; +} + +@keyframes rotateOut { + from { + transform-origin: center; + opacity: 1; + } + + to { + transform-origin: center; + transform: rotate3d(0, 0, 1, 200deg); + opacity: 0; + } +} + +.rotateOut { + animation-name: rotateOut; +} + +@keyframes rotateOutDownLeft { + from { + transform-origin: left bottom; + opacity: 1; + } + + to { + transform-origin: left bottom; + transform: rotate3d(0, 0, 1, 45deg); + opacity: 0; + } +} + +.rotateOutDownLeft { + animation-name: rotateOutDownLeft; +} + +@keyframes rotateOutDownRight { + from { + transform-origin: right bottom; + opacity: 1; + } + + to { + transform-origin: right bottom; + transform: rotate3d(0, 0, 1, -45deg); + opacity: 0; + } +} + +.rotateOutDownRight { + animation-name: rotateOutDownRight; +} + +@keyframes rotateOutUpLeft { + from { + transform-origin: left bottom; + opacity: 1; + } + + to { + transform-origin: left bottom; + transform: rotate3d(0, 0, 1, -45deg); + opacity: 0; + } +} + +.rotateOutUpLeft { + animation-name: rotateOutUpLeft; +} + +@keyframes rotateOutUpRight { + from { + transform-origin: right bottom; + opacity: 1; + } + + to { + transform-origin: right bottom; + transform: rotate3d(0, 0, 1, 90deg); + opacity: 0; + } +} + +.rotateOutUpRight { + animation-name: rotateOutUpRight; +} + +@keyframes hinge { + 0% { + transform-origin: top left; + animation-timing-function: ease-in-out; + } + + 20%, 60% { + transform: rotate3d(0, 0, 1, 80deg); + transform-origin: top left; + animation-timing-function: ease-in-out; + } + + 40%, 80% { + transform: rotate3d(0, 0, 1, 60deg); + transform-origin: top left; + animation-timing-function: ease-in-out; + opacity: 1; + } + + to { + transform: translate3d(0, 700px, 0); + opacity: 0; + } +} + +.hinge { + animation-name: hinge; +} + +@keyframes jackInTheBox { + from { + opacity: 0; + transform: scale(0.1) rotate(30deg); + transform-origin: center bottom; + } + + 50% { + transform: rotate(-10deg); + } + + 70% { + transform: rotate(3deg); + } + + to { + opacity: 1; + transform: scale(1); + } +} + +.jackInTheBox { + animation-name: jackInTheBox; +} + +/* originally authored by Nick Pettit - https://github.com/nickpettit/glide */ + +@keyframes rollIn { + from { + opacity: 0; + transform: translate3d(-100%, 0, 0) rotate3d(0, 0, 1, -120deg); + } + + to { + opacity: 1; + transform: none; + } +} + +.rollIn { + animation-name: rollIn; +} + +/* originally authored by Nick Pettit - https://github.com/nickpettit/glide */ + +@keyframes rollOut { + from { + opacity: 1; + } + + to { + opacity: 0; + transform: translate3d(100%, 0, 0) rotate3d(0, 0, 1, 120deg); + } +} + +.rollOut { + animation-name: rollOut; +} + +@keyframes zoomIn { + from { + opacity: 0; + transform: scale3d(.3, .3, .3); + } + + 50% { + opacity: 1; + } +} + +.zoomIn { + animation-name: zoomIn; +} + +@keyframes zoomInDown { + from { + opacity: 0; + transform: scale3d(.1, .1, .1) translate3d(0, -1000px, 0); + animation-timing-function: cubic-bezier(0.550, 0.055, 0.675, 0.190); + } + + 60% { + opacity: 1; + transform: scale3d(.475, .475, .475) translate3d(0, 60px, 0); + animation-timing-function: cubic-bezier(0.175, 0.885, 0.320, 1); + } +} + +.zoomInDown { + animation-name: zoomInDown; +} + +@keyframes zoomInLeft { + from { + opacity: 0; + transform: scale3d(.1, .1, .1) translate3d(-1000px, 0, 0); + animation-timing-function: cubic-bezier(0.550, 0.055, 0.675, 0.190); + } + + 60% { + opacity: 1; + transform: scale3d(.475, .475, .475) translate3d(10px, 0, 0); + animation-timing-function: cubic-bezier(0.175, 0.885, 0.320, 1); + } +} + +.zoomInLeft { + animation-name: zoomInLeft; +} + +@keyframes zoomInRight { + from { + opacity: 0; + transform: scale3d(.1, .1, .1) translate3d(1000px, 0, 0); + animation-timing-function: cubic-bezier(0.550, 0.055, 0.675, 0.190); + } + + 60% { + opacity: 1; + transform: scale3d(.475, .475, .475) translate3d(-10px, 0, 0); + animation-timing-function: cubic-bezier(0.175, 0.885, 0.320, 1); + } +} + +.zoomInRight { + animation-name: zoomInRight; +} + +@keyframes zoomInUp { + from { + opacity: 0; + transform: scale3d(.1, .1, .1) translate3d(0, 1000px, 0); + animation-timing-function: cubic-bezier(0.550, 0.055, 0.675, 0.190); + } + + 60% { + opacity: 1; + transform: scale3d(.475, .475, .475) translate3d(0, -60px, 0); + animation-timing-function: cubic-bezier(0.175, 0.885, 0.320, 1); + } +} + +.zoomInUp { + animation-name: zoomInUp; +} + +@keyframes zoomOut { + from { + opacity: 1; + } + + 50% { + opacity: 0; + transform: scale3d(.3, .3, .3); + } + + to { + opacity: 0; + } +} + +.zoomOut { + animation-name: zoomOut; +} + +@keyframes zoomOutDown { + 40% { + opacity: 1; + transform: scale3d(.475, .475, .475) translate3d(0, -60px, 0); + animation-timing-function: cubic-bezier(0.550, 0.055, 0.675, 0.190); + } + + to { + opacity: 0; + transform: scale3d(.1, .1, .1) translate3d(0, 2000px, 0); + transform-origin: center bottom; + animation-timing-function: cubic-bezier(0.175, 0.885, 0.320, 1); + } +} + +.zoomOutDown { + animation-name: zoomOutDown; +} + +@keyframes zoomOutLeft { + 40% { + opacity: 1; + transform: scale3d(.475, .475, .475) translate3d(42px, 0, 0); + } + + to { + opacity: 0; + transform: scale(.1) translate3d(-2000px, 0, 0); + transform-origin: left center; + } +} + +.zoomOutLeft { + animation-name: zoomOutLeft; +} + +@keyframes zoomOutRight { + 40% { + opacity: 1; + transform: scale3d(.475, .475, .475) translate3d(-42px, 0, 0); + } + + to { + opacity: 0; + transform: scale(.1) translate3d(2000px, 0, 0); + transform-origin: right center; + } +} + +.zoomOutRight { + animation-name: zoomOutRight; +} + +@keyframes zoomOutUp { + 40% { + opacity: 1; + transform: scale3d(.475, .475, .475) translate3d(0, 60px, 0); + animation-timing-function: cubic-bezier(0.550, 0.055, 0.675, 0.190); + } + + to { + opacity: 0; + transform: scale3d(.1, .1, .1) translate3d(0, -2000px, 0); + transform-origin: center bottom; + animation-timing-function: cubic-bezier(0.175, 0.885, 0.320, 1); + } +} + +.zoomOutUp { + animation-name: zoomOutUp; +} + +@keyframes slideInDown { + from { + transform: translate3d(0, -100%, 0); + visibility: visible; + } + + to { + transform: translate3d(0, 0, 0); + } +} + +.slideInDown { + animation-name: slideInDown; +} + +@keyframes slideInLeft { + from { + transform: translate3d(-100%, 0, 0); + visibility: visible; + } + + to { + transform: translate3d(0, 0, 0); + } +} + +.slideInLeft { + animation-name: slideInLeft; +} + +@keyframes slideInRight { + from { + transform: translate3d(100%, 0, 0); + visibility: visible; + } + + to { + transform: translate3d(0, 0, 0); + } +} + +.slideInRight { + animation-name: slideInRight; +} + +@keyframes slideInUp { + from { + transform: translate3d(0, 100%, 0); + visibility: visible; + } + + to { + transform: translate3d(0, 0, 0); + } +} + +.slideInUp { + animation-name: slideInUp; +} + +@keyframes slideOutDown { + from { + transform: translate3d(0, 0, 0); + } + + to { + visibility: hidden; + transform: translate3d(0, 100%, 0); + } +} + +.slideOutDown { + animation-name: slideOutDown; +} + +@keyframes slideOutLeft { + from { + transform: translate3d(0, 0, 0); + } + + to { + visibility: hidden; + transform: translate3d(-100%, 0, 0); + } +} + +.slideOutLeft { + animation-name: slideOutLeft; +} + +@keyframes slideOutRight { + from { + transform: translate3d(0, 0, 0); + } + + to { + visibility: hidden; + transform: translate3d(100%, 0, 0); + } +} + +.slideOutRight { + animation-name: slideOutRight; +} + +@keyframes slideOutUp { + from { + transform: translate3d(0, 0, 0); + } + + to { + visibility: hidden; + transform: translate3d(0, -100%, 0); + } +} + +.slideOutUp { + animation-name: slideOutUp; +} diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-grid.css b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-grid.css new file mode 100644 index 0000000..b5f77b2 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-grid.css @@ -0,0 +1,1353 @@ +@-ms-viewport { + width: device-width; +} + +html { + box-sizing: border-box; + -ms-overflow-style: scrollbar; +} + +*, +*::before, +*::after { + box-sizing: inherit; +} + +.container { + margin-right: auto; + margin-left: auto; + padding-right: 15px; + padding-left: 15px; + width: 100%; +} + +@media (min-width: 576px) { + .container { + max-width: 540px; + } +} + +@media (min-width: 768px) { + .container { + max-width: 720px; + } +} + +@media (min-width: 992px) { + .container { + max-width: 960px; + } +} + +@media (min-width: 1200px) { + .container { + max-width: 1140px; + } +} + +.container-fluid { + width: 100%; + margin-right: auto; + margin-left: auto; + padding-right: 15px; + padding-left: 15px; + width: 100%; +} + +.row { + display: -ms-flexbox; + display: flex; + -ms-flex-wrap: wrap; + flex-wrap: wrap; + margin-right: -15px; + margin-left: -15px; +} + +.no-gutters { + margin-right: 0; + margin-left: 0; +} + +.no-gutters > .col, +.no-gutters > [class*="col-"] { + padding-right: 0; + padding-left: 0; +} + +.col-1, .col-2, .col-3, .col-4, .col-5, .col-6, .col-7, .col-8, .col-9, .col-10, .col-11, .col-12, .col, +.col-auto, .col-sm-1, .col-sm-2, .col-sm-3, .col-sm-4, .col-sm-5, .col-sm-6, .col-sm-7, .col-sm-8, .col-sm-9, .col-sm-10, .col-sm-11, .col-sm-12, .col-sm, +.col-sm-auto, .col-md-1, .col-md-2, .col-md-3, .col-md-4, .col-md-5, .col-md-6, .col-md-7, .col-md-8, .col-md-9, .col-md-10, .col-md-11, .col-md-12, .col-md, +.col-md-auto, .col-lg-1, .col-lg-2, .col-lg-3, .col-lg-4, .col-lg-5, .col-lg-6, .col-lg-7, .col-lg-8, .col-lg-9, .col-lg-10, .col-lg-11, .col-lg-12, .col-lg, +.col-lg-auto, .col-xl-1, .col-xl-2, .col-xl-3, .col-xl-4, .col-xl-5, .col-xl-6, .col-xl-7, .col-xl-8, .col-xl-9, .col-xl-10, .col-xl-11, .col-xl-12, .col-xl, +.col-xl-auto { + position: relative; + width: 100%; + min-height: 1px; + padding-right: 15px; + padding-left: 15px; +} + +.col { + -ms-flex-preferred-size: 0; + flex-basis: 0; + -ms-flex-positive: 1; + flex-grow: 1; + max-width: 100%; +} + +.col-auto { + -ms-flex: 0 0 auto; + flex: 0 0 auto; + width: auto; + max-width: none; +} + +.col-1 { + -ms-flex: 0 0 8.333333%; + flex: 0 0 8.333333%; + max-width: 8.333333%; +} + +.col-2 { + -ms-flex: 0 0 16.666667%; + flex: 0 0 16.666667%; + max-width: 16.666667%; +} + +.col-3 { + -ms-flex: 0 0 25%; + flex: 0 0 25%; + max-width: 25%; +} + +.col-4 { + -ms-flex: 0 0 33.333333%; + flex: 0 0 33.333333%; + max-width: 33.333333%; +} + +.col-5 { + -ms-flex: 0 0 41.666667%; + flex: 0 0 41.666667%; + max-width: 41.666667%; +} + +.col-6 { + -ms-flex: 0 0 50%; + flex: 0 0 50%; + max-width: 50%; +} + +.col-7 { + -ms-flex: 0 0 58.333333%; + flex: 0 0 58.333333%; + max-width: 58.333333%; +} + +.col-8 { + -ms-flex: 0 0 66.666667%; + flex: 0 0 66.666667%; + max-width: 66.666667%; +} + +.col-9 { + -ms-flex: 0 0 75%; + flex: 0 0 75%; + max-width: 75%; +} + +.col-10 { + -ms-flex: 0 0 83.333333%; + flex: 0 0 83.333333%; + max-width: 83.333333%; +} + +.col-11 { + -ms-flex: 0 0 91.666667%; + flex: 0 0 91.666667%; + max-width: 91.666667%; +} + +.col-12 { + -ms-flex: 0 0 100%; + flex: 0 0 100%; + max-width: 100%; +} + +.order-1 { + -ms-flex-order: 1; + order: 1; +} + +.order-2 { + -ms-flex-order: 2; + order: 2; +} + +.order-3 { + -ms-flex-order: 3; + order: 3; +} + +.order-4 { + -ms-flex-order: 4; + order: 4; +} + +.order-5 { + -ms-flex-order: 5; + order: 5; +} + +.order-6 { + -ms-flex-order: 6; + order: 6; +} + +.order-7 { + -ms-flex-order: 7; + order: 7; +} + +.order-8 { + -ms-flex-order: 8; + order: 8; +} + +.order-9 { + -ms-flex-order: 9; + order: 9; +} + +.order-10 { + -ms-flex-order: 10; + order: 10; +} + +.order-11 { + -ms-flex-order: 11; + order: 11; +} + +.order-12 { + -ms-flex-order: 12; + order: 12; +} + +@media (min-width: 576px) { + .col-sm { + -ms-flex-preferred-size: 0; + flex-basis: 0; + -ms-flex-positive: 1; + flex-grow: 1; + max-width: 100%; + } + .col-sm-auto { + -ms-flex: 0 0 auto; + flex: 0 0 auto; + width: auto; + max-width: none; + } + .col-sm-1 { + -ms-flex: 0 0 8.333333%; + flex: 0 0 8.333333%; + max-width: 8.333333%; + } + .col-sm-2 { + -ms-flex: 0 0 16.666667%; + flex: 0 0 16.666667%; + max-width: 16.666667%; + } + .col-sm-3 { + -ms-flex: 0 0 25%; + flex: 0 0 25%; + max-width: 25%; + } + .col-sm-4 { + -ms-flex: 0 0 33.333333%; + flex: 0 0 33.333333%; + max-width: 33.333333%; + } + .col-sm-5 { + -ms-flex: 0 0 41.666667%; + flex: 0 0 41.666667%; + max-width: 41.666667%; + } + .col-sm-6 { + -ms-flex: 0 0 50%; + flex: 0 0 50%; + max-width: 50%; + } + .col-sm-7 { + -ms-flex: 0 0 58.333333%; + flex: 0 0 58.333333%; + max-width: 58.333333%; + } + .col-sm-8 { + -ms-flex: 0 0 66.666667%; + flex: 0 0 66.666667%; + max-width: 66.666667%; + } + .col-sm-9 { + -ms-flex: 0 0 75%; + flex: 0 0 75%; + max-width: 75%; + } + .col-sm-10 { + -ms-flex: 0 0 83.333333%; + flex: 0 0 83.333333%; + max-width: 83.333333%; + } + .col-sm-11 { + -ms-flex: 0 0 91.666667%; + flex: 0 0 91.666667%; + max-width: 91.666667%; + } + .col-sm-12 { + -ms-flex: 0 0 100%; + flex: 0 0 100%; + max-width: 100%; + } + .order-sm-1 { + -ms-flex-order: 1; + order: 1; + } + .order-sm-2 { + -ms-flex-order: 2; + order: 2; + } + .order-sm-3 { + -ms-flex-order: 3; + order: 3; + } + .order-sm-4 { + -ms-flex-order: 4; + order: 4; + } + .order-sm-5 { + -ms-flex-order: 5; + order: 5; + } + .order-sm-6 { + -ms-flex-order: 6; + order: 6; + } + .order-sm-7 { + -ms-flex-order: 7; + order: 7; + } + .order-sm-8 { + -ms-flex-order: 8; + order: 8; + } + .order-sm-9 { + -ms-flex-order: 9; + order: 9; + } + .order-sm-10 { + -ms-flex-order: 10; + order: 10; + } + .order-sm-11 { + -ms-flex-order: 11; + order: 11; + } + .order-sm-12 { + -ms-flex-order: 12; + order: 12; + } +} + +@media (min-width: 768px) { + .col-md { + -ms-flex-preferred-size: 0; + flex-basis: 0; + -ms-flex-positive: 1; + flex-grow: 1; + max-width: 100%; + } + .col-md-auto { + -ms-flex: 0 0 auto; + flex: 0 0 auto; + width: auto; + max-width: none; + } + .col-md-1 { + -ms-flex: 0 0 8.333333%; + flex: 0 0 8.333333%; + max-width: 8.333333%; + } + .col-md-2 { + -ms-flex: 0 0 16.666667%; + flex: 0 0 16.666667%; + max-width: 16.666667%; + } + .col-md-3 { + -ms-flex: 0 0 25%; + flex: 0 0 25%; + max-width: 25%; + } + .col-md-4 { + -ms-flex: 0 0 33.333333%; + flex: 0 0 33.333333%; + max-width: 33.333333%; + } + .col-md-5 { + -ms-flex: 0 0 41.666667%; + flex: 0 0 41.666667%; + max-width: 41.666667%; + } + .col-md-6 { + -ms-flex: 0 0 50%; + flex: 0 0 50%; + max-width: 50%; + } + .col-md-7 { + -ms-flex: 0 0 58.333333%; + flex: 0 0 58.333333%; + max-width: 58.333333%; + } + .col-md-8 { + -ms-flex: 0 0 66.666667%; + flex: 0 0 66.666667%; + max-width: 66.666667%; + } + .col-md-9 { + -ms-flex: 0 0 75%; + flex: 0 0 75%; + max-width: 75%; + } + .col-md-10 { + -ms-flex: 0 0 83.333333%; + flex: 0 0 83.333333%; + max-width: 83.333333%; + } + .col-md-11 { + -ms-flex: 0 0 91.666667%; + flex: 0 0 91.666667%; + max-width: 91.666667%; + } + .col-md-12 { + -ms-flex: 0 0 100%; + flex: 0 0 100%; + max-width: 100%; + } + .order-md-1 { + -ms-flex-order: 1; + order: 1; + } + .order-md-2 { + -ms-flex-order: 2; + order: 2; + } + .order-md-3 { + -ms-flex-order: 3; + order: 3; + } + .order-md-4 { + -ms-flex-order: 4; + order: 4; + } + .order-md-5 { + -ms-flex-order: 5; + order: 5; + } + .order-md-6 { + -ms-flex-order: 6; + order: 6; + } + .order-md-7 { + -ms-flex-order: 7; + order: 7; + } + .order-md-8 { + -ms-flex-order: 8; + order: 8; + } + .order-md-9 { + -ms-flex-order: 9; + order: 9; + } + .order-md-10 { + -ms-flex-order: 10; + order: 10; + } + .order-md-11 { + -ms-flex-order: 11; + order: 11; + } + .order-md-12 { + -ms-flex-order: 12; + order: 12; + } +} + +@media (min-width: 992px) { + .col-lg { + -ms-flex-preferred-size: 0; + flex-basis: 0; + -ms-flex-positive: 1; + flex-grow: 1; + max-width: 100%; + } + .col-lg-auto { + -ms-flex: 0 0 auto; + flex: 0 0 auto; + width: auto; + max-width: none; + } + .col-lg-1 { + -ms-flex: 0 0 8.333333%; + flex: 0 0 8.333333%; + max-width: 8.333333%; + } + .col-lg-2 { + -ms-flex: 0 0 16.666667%; + flex: 0 0 16.666667%; + max-width: 16.666667%; + } + .col-lg-3 { + -ms-flex: 0 0 25%; + flex: 0 0 25%; + max-width: 25%; + } + .col-lg-4 { + -ms-flex: 0 0 33.333333%; + flex: 0 0 33.333333%; + max-width: 33.333333%; + } + .col-lg-5 { + -ms-flex: 0 0 41.666667%; + flex: 0 0 41.666667%; + max-width: 41.666667%; + } + .col-lg-6 { + -ms-flex: 0 0 50%; + flex: 0 0 50%; + max-width: 50%; + } + .col-lg-7 { + -ms-flex: 0 0 58.333333%; + flex: 0 0 58.333333%; + max-width: 58.333333%; + } + .col-lg-8 { + -ms-flex: 0 0 66.666667%; + flex: 0 0 66.666667%; + max-width: 66.666667%; + } + .col-lg-9 { + -ms-flex: 0 0 75%; + flex: 0 0 75%; + max-width: 75%; + } + .col-lg-10 { + -ms-flex: 0 0 83.333333%; + flex: 0 0 83.333333%; + max-width: 83.333333%; + } + .col-lg-11 { + -ms-flex: 0 0 91.666667%; + flex: 0 0 91.666667%; + max-width: 91.666667%; + } + .col-lg-12 { + -ms-flex: 0 0 100%; + flex: 0 0 100%; + max-width: 100%; + } + .order-lg-1 { + -ms-flex-order: 1; + order: 1; + } + .order-lg-2 { + -ms-flex-order: 2; + order: 2; + } + .order-lg-3 { + -ms-flex-order: 3; + order: 3; + } + .order-lg-4 { + -ms-flex-order: 4; + order: 4; + } + .order-lg-5 { + -ms-flex-order: 5; + order: 5; + } + .order-lg-6 { + -ms-flex-order: 6; + order: 6; + } + .order-lg-7 { + -ms-flex-order: 7; + order: 7; + } + .order-lg-8 { + -ms-flex-order: 8; + order: 8; + } + .order-lg-9 { + -ms-flex-order: 9; + order: 9; + } + .order-lg-10 { + -ms-flex-order: 10; + order: 10; + } + .order-lg-11 { + -ms-flex-order: 11; + order: 11; + } + .order-lg-12 { + -ms-flex-order: 12; + order: 12; + } +} + +@media (min-width: 1200px) { + .col-xl { + -ms-flex-preferred-size: 0; + flex-basis: 0; + -ms-flex-positive: 1; + flex-grow: 1; + max-width: 100%; + } + .col-xl-auto { + -ms-flex: 0 0 auto; + flex: 0 0 auto; + width: auto; + max-width: none; + } + .col-xl-1 { + -ms-flex: 0 0 8.333333%; + flex: 0 0 8.333333%; + max-width: 8.333333%; + } + .col-xl-2 { + -ms-flex: 0 0 16.666667%; + flex: 0 0 16.666667%; + max-width: 16.666667%; + } + .col-xl-3 { + -ms-flex: 0 0 25%; + flex: 0 0 25%; + max-width: 25%; + } + .col-xl-4 { + -ms-flex: 0 0 33.333333%; + flex: 0 0 33.333333%; + max-width: 33.333333%; + } + .col-xl-5 { + -ms-flex: 0 0 41.666667%; + flex: 0 0 41.666667%; + max-width: 41.666667%; + } + .col-xl-6 { + -ms-flex: 0 0 50%; + flex: 0 0 50%; + max-width: 50%; + } + .col-xl-7 { + -ms-flex: 0 0 58.333333%; + flex: 0 0 58.333333%; + max-width: 58.333333%; + } + .col-xl-8 { + -ms-flex: 0 0 66.666667%; + flex: 0 0 66.666667%; + max-width: 66.666667%; + } + .col-xl-9 { + -ms-flex: 0 0 75%; + flex: 0 0 75%; + max-width: 75%; + } + .col-xl-10 { + -ms-flex: 0 0 83.333333%; + flex: 0 0 83.333333%; + max-width: 83.333333%; + } + .col-xl-11 { + -ms-flex: 0 0 91.666667%; + flex: 0 0 91.666667%; + max-width: 91.666667%; + } + .col-xl-12 { + -ms-flex: 0 0 100%; + flex: 0 0 100%; + max-width: 100%; + } + .order-xl-1 { + -ms-flex-order: 1; + order: 1; + } + .order-xl-2 { + -ms-flex-order: 2; + order: 2; + } + .order-xl-3 { + -ms-flex-order: 3; + order: 3; + } + .order-xl-4 { + -ms-flex-order: 4; + order: 4; + } + .order-xl-5 { + -ms-flex-order: 5; + order: 5; + } + .order-xl-6 { + -ms-flex-order: 6; + order: 6; + } + .order-xl-7 { + -ms-flex-order: 7; + order: 7; + } + .order-xl-8 { + -ms-flex-order: 8; + order: 8; + } + .order-xl-9 { + -ms-flex-order: 9; + order: 9; + } + .order-xl-10 { + -ms-flex-order: 10; + order: 10; + } + .order-xl-11 { + -ms-flex-order: 11; + order: 11; + } + .order-xl-12 { + -ms-flex-order: 12; + order: 12; + } +} + +.flex-row { + -ms-flex-direction: row !important; + flex-direction: row !important; +} + +.flex-column { + -ms-flex-direction: column !important; + flex-direction: column !important; +} + +.flex-row-reverse { + -ms-flex-direction: row-reverse !important; + flex-direction: row-reverse !important; +} + +.flex-column-reverse { + -ms-flex-direction: column-reverse !important; + flex-direction: column-reverse !important; +} + +.flex-wrap { + -ms-flex-wrap: wrap !important; + flex-wrap: wrap !important; +} + +.flex-nowrap { + -ms-flex-wrap: nowrap !important; + flex-wrap: nowrap !important; +} + +.flex-wrap-reverse { + -ms-flex-wrap: wrap-reverse !important; + flex-wrap: wrap-reverse !important; +} + +.justify-content-start { + -ms-flex-pack: start !important; + justify-content: flex-start !important; +} + +.justify-content-end { + -ms-flex-pack: end !important; + justify-content: flex-end !important; +} + +.justify-content-center { + -ms-flex-pack: center !important; + justify-content: center !important; +} + +.justify-content-between { + -ms-flex-pack: justify !important; + justify-content: space-between !important; +} + +.justify-content-around { + -ms-flex-pack: distribute !important; + justify-content: space-around !important; +} + +.align-items-start { + -ms-flex-align: start !important; + align-items: flex-start !important; +} + +.align-items-end { + -ms-flex-align: end !important; + align-items: flex-end !important; +} + +.align-items-center { + -ms-flex-align: center !important; + align-items: center !important; +} + +.align-items-baseline { + -ms-flex-align: baseline !important; + align-items: baseline !important; +} + +.align-items-stretch { + -ms-flex-align: stretch !important; + align-items: stretch !important; +} + +.align-content-start { + -ms-flex-line-pack: start !important; + align-content: flex-start !important; +} + +.align-content-end { + -ms-flex-line-pack: end !important; + align-content: flex-end !important; +} + +.align-content-center { + -ms-flex-line-pack: center !important; + align-content: center !important; +} + +.align-content-between { + -ms-flex-line-pack: justify !important; + align-content: space-between !important; +} + +.align-content-around { + -ms-flex-line-pack: distribute !important; + align-content: space-around !important; +} + +.align-content-stretch { + -ms-flex-line-pack: stretch !important; + align-content: stretch !important; +} + +.align-self-auto { + -ms-flex-item-align: auto !important; + align-self: auto !important; +} + +.align-self-start { + -ms-flex-item-align: start !important; + align-self: flex-start !important; +} + +.align-self-end { + -ms-flex-item-align: end !important; + align-self: flex-end !important; +} + +.align-self-center { + -ms-flex-item-align: center !important; + align-self: center !important; +} + +.align-self-baseline { + -ms-flex-item-align: baseline !important; + align-self: baseline !important; +} + +.align-self-stretch { + -ms-flex-item-align: stretch !important; + align-self: stretch !important; +} + +@media (min-width: 576px) { + .flex-sm-row { + -ms-flex-direction: row !important; + flex-direction: row !important; + } + .flex-sm-column { + -ms-flex-direction: column !important; + flex-direction: column !important; + } + .flex-sm-row-reverse { + -ms-flex-direction: row-reverse !important; + flex-direction: row-reverse !important; + } + .flex-sm-column-reverse { + -ms-flex-direction: column-reverse !important; + flex-direction: column-reverse !important; + } + .flex-sm-wrap { + -ms-flex-wrap: wrap !important; + flex-wrap: wrap !important; + } + .flex-sm-nowrap { + -ms-flex-wrap: nowrap !important; + flex-wrap: nowrap !important; + } + .flex-sm-wrap-reverse { + -ms-flex-wrap: wrap-reverse !important; + flex-wrap: wrap-reverse !important; + } + .justify-content-sm-start { + -ms-flex-pack: start !important; + justify-content: flex-start !important; + } + .justify-content-sm-end { + -ms-flex-pack: end !important; + justify-content: flex-end !important; + } + .justify-content-sm-center { + -ms-flex-pack: center !important; + justify-content: center !important; + } + .justify-content-sm-between { + -ms-flex-pack: justify !important; + justify-content: space-between !important; + } + .justify-content-sm-around { + -ms-flex-pack: distribute !important; + justify-content: space-around !important; + } + .align-items-sm-start { + -ms-flex-align: start !important; + align-items: flex-start !important; + } + .align-items-sm-end { + -ms-flex-align: end !important; + align-items: flex-end !important; + } + .align-items-sm-center { + -ms-flex-align: center !important; + align-items: center !important; + } + .align-items-sm-baseline { + -ms-flex-align: baseline !important; + align-items: baseline !important; + } + .align-items-sm-stretch { + -ms-flex-align: stretch !important; + align-items: stretch !important; + } + .align-content-sm-start { + -ms-flex-line-pack: start !important; + align-content: flex-start !important; + } + .align-content-sm-end { + -ms-flex-line-pack: end !important; + align-content: flex-end !important; + } + .align-content-sm-center { + -ms-flex-line-pack: center !important; + align-content: center !important; + } + .align-content-sm-between { + -ms-flex-line-pack: justify !important; + align-content: space-between !important; + } + .align-content-sm-around { + -ms-flex-line-pack: distribute !important; + align-content: space-around !important; + } + .align-content-sm-stretch { + -ms-flex-line-pack: stretch !important; + align-content: stretch !important; + } + .align-self-sm-auto { + -ms-flex-item-align: auto !important; + align-self: auto !important; + } + .align-self-sm-start { + -ms-flex-item-align: start !important; + align-self: flex-start !important; + } + .align-self-sm-end { + -ms-flex-item-align: end !important; + align-self: flex-end !important; + } + .align-self-sm-center { + -ms-flex-item-align: center !important; + align-self: center !important; + } + .align-self-sm-baseline { + -ms-flex-item-align: baseline !important; + align-self: baseline !important; + } + .align-self-sm-stretch { + -ms-flex-item-align: stretch !important; + align-self: stretch !important; + } +} + +@media (min-width: 768px) { + .flex-md-row { + -ms-flex-direction: row !important; + flex-direction: row !important; + } + .flex-md-column { + -ms-flex-direction: column !important; + flex-direction: column !important; + } + .flex-md-row-reverse { + -ms-flex-direction: row-reverse !important; + flex-direction: row-reverse !important; + } + .flex-md-column-reverse { + -ms-flex-direction: column-reverse !important; + flex-direction: column-reverse !important; + } + .flex-md-wrap { + -ms-flex-wrap: wrap !important; + flex-wrap: wrap !important; + } + .flex-md-nowrap { + -ms-flex-wrap: nowrap !important; + flex-wrap: nowrap !important; + } + .flex-md-wrap-reverse { + -ms-flex-wrap: wrap-reverse !important; + flex-wrap: wrap-reverse !important; + } + .justify-content-md-start { + -ms-flex-pack: start !important; + justify-content: flex-start !important; + } + .justify-content-md-end { + -ms-flex-pack: end !important; + justify-content: flex-end !important; + } + .justify-content-md-center { + -ms-flex-pack: center !important; + justify-content: center !important; + } + .justify-content-md-between { + -ms-flex-pack: justify !important; + justify-content: space-between !important; + } + .justify-content-md-around { + -ms-flex-pack: distribute !important; + justify-content: space-around !important; + } + .align-items-md-start { + -ms-flex-align: start !important; + align-items: flex-start !important; + } + .align-items-md-end { + -ms-flex-align: end !important; + align-items: flex-end !important; + } + .align-items-md-center { + -ms-flex-align: center !important; + align-items: center !important; + } + .align-items-md-baseline { + -ms-flex-align: baseline !important; + align-items: baseline !important; + } + .align-items-md-stretch { + -ms-flex-align: stretch !important; + align-items: stretch !important; + } + .align-content-md-start { + -ms-flex-line-pack: start !important; + align-content: flex-start !important; + } + .align-content-md-end { + -ms-flex-line-pack: end !important; + align-content: flex-end !important; + } + .align-content-md-center { + -ms-flex-line-pack: center !important; + align-content: center !important; + } + .align-content-md-between { + -ms-flex-line-pack: justify !important; + align-content: space-between !important; + } + .align-content-md-around { + -ms-flex-line-pack: distribute !important; + align-content: space-around !important; + } + .align-content-md-stretch { + -ms-flex-line-pack: stretch !important; + align-content: stretch !important; + } + .align-self-md-auto { + -ms-flex-item-align: auto !important; + align-self: auto !important; + } + .align-self-md-start { + -ms-flex-item-align: start !important; + align-self: flex-start !important; + } + .align-self-md-end { + -ms-flex-item-align: end !important; + align-self: flex-end !important; + } + .align-self-md-center { + -ms-flex-item-align: center !important; + align-self: center !important; + } + .align-self-md-baseline { + -ms-flex-item-align: baseline !important; + align-self: baseline !important; + } + .align-self-md-stretch { + -ms-flex-item-align: stretch !important; + align-self: stretch !important; + } +} + +@media (min-width: 992px) { + .flex-lg-row { + -ms-flex-direction: row !important; + flex-direction: row !important; + } + .flex-lg-column { + -ms-flex-direction: column !important; + flex-direction: column !important; + } + .flex-lg-row-reverse { + -ms-flex-direction: row-reverse !important; + flex-direction: row-reverse !important; + } + .flex-lg-column-reverse { + -ms-flex-direction: column-reverse !important; + flex-direction: column-reverse !important; + } + .flex-lg-wrap { + -ms-flex-wrap: wrap !important; + flex-wrap: wrap !important; + } + .flex-lg-nowrap { + -ms-flex-wrap: nowrap !important; + flex-wrap: nowrap !important; + } + .flex-lg-wrap-reverse { + -ms-flex-wrap: wrap-reverse !important; + flex-wrap: wrap-reverse !important; + } + .justify-content-lg-start { + -ms-flex-pack: start !important; + justify-content: flex-start !important; + } + .justify-content-lg-end { + -ms-flex-pack: end !important; + justify-content: flex-end !important; + } + .justify-content-lg-center { + -ms-flex-pack: center !important; + justify-content: center !important; + } + .justify-content-lg-between { + -ms-flex-pack: justify !important; + justify-content: space-between !important; + } + .justify-content-lg-around { + -ms-flex-pack: distribute !important; + justify-content: space-around !important; + } + .align-items-lg-start { + -ms-flex-align: start !important; + align-items: flex-start !important; + } + .align-items-lg-end { + -ms-flex-align: end !important; + align-items: flex-end !important; + } + .align-items-lg-center { + -ms-flex-align: center !important; + align-items: center !important; + } + .align-items-lg-baseline { + -ms-flex-align: baseline !important; + align-items: baseline !important; + } + .align-items-lg-stretch { + -ms-flex-align: stretch !important; + align-items: stretch !important; + } + .align-content-lg-start { + -ms-flex-line-pack: start !important; + align-content: flex-start !important; + } + .align-content-lg-end { + -ms-flex-line-pack: end !important; + align-content: flex-end !important; + } + .align-content-lg-center { + -ms-flex-line-pack: center !important; + align-content: center !important; + } + .align-content-lg-between { + -ms-flex-line-pack: justify !important; + align-content: space-between !important; + } + .align-content-lg-around { + -ms-flex-line-pack: distribute !important; + align-content: space-around !important; + } + .align-content-lg-stretch { + -ms-flex-line-pack: stretch !important; + align-content: stretch !important; + } + .align-self-lg-auto { + -ms-flex-item-align: auto !important; + align-self: auto !important; + } + .align-self-lg-start { + -ms-flex-item-align: start !important; + align-self: flex-start !important; + } + .align-self-lg-end { + -ms-flex-item-align: end !important; + align-self: flex-end !important; + } + .align-self-lg-center { + -ms-flex-item-align: center !important; + align-self: center !important; + } + .align-self-lg-baseline { + -ms-flex-item-align: baseline !important; + align-self: baseline !important; + } + .align-self-lg-stretch { + -ms-flex-item-align: stretch !important; + align-self: stretch !important; + } +} + +@media (min-width: 1200px) { + .flex-xl-row { + -ms-flex-direction: row !important; + flex-direction: row !important; + } + .flex-xl-column { + -ms-flex-direction: column !important; + flex-direction: column !important; + } + .flex-xl-row-reverse { + -ms-flex-direction: row-reverse !important; + flex-direction: row-reverse !important; + } + .flex-xl-column-reverse { + -ms-flex-direction: column-reverse !important; + flex-direction: column-reverse !important; + } + .flex-xl-wrap { + -ms-flex-wrap: wrap !important; + flex-wrap: wrap !important; + } + .flex-xl-nowrap { + -ms-flex-wrap: nowrap !important; + flex-wrap: nowrap !important; + } + .flex-xl-wrap-reverse { + -ms-flex-wrap: wrap-reverse !important; + flex-wrap: wrap-reverse !important; + } + .justify-content-xl-start { + -ms-flex-pack: start !important; + justify-content: flex-start !important; + } + .justify-content-xl-end { + -ms-flex-pack: end !important; + justify-content: flex-end !important; + } + .justify-content-xl-center { + -ms-flex-pack: center !important; + justify-content: center !important; + } + .justify-content-xl-between { + -ms-flex-pack: justify !important; + justify-content: space-between !important; + } + .justify-content-xl-around { + -ms-flex-pack: distribute !important; + justify-content: space-around !important; + } + .align-items-xl-start { + -ms-flex-align: start !important; + align-items: flex-start !important; + } + .align-items-xl-end { + -ms-flex-align: end !important; + align-items: flex-end !important; + } + .align-items-xl-center { + -ms-flex-align: center !important; + align-items: center !important; + } + .align-items-xl-baseline { + -ms-flex-align: baseline !important; + align-items: baseline !important; + } + .align-items-xl-stretch { + -ms-flex-align: stretch !important; + align-items: stretch !important; + } + .align-content-xl-start { + -ms-flex-line-pack: start !important; + align-content: flex-start !important; + } + .align-content-xl-end { + -ms-flex-line-pack: end !important; + align-content: flex-end !important; + } + .align-content-xl-center { + -ms-flex-line-pack: center !important; + align-content: center !important; + } + .align-content-xl-between { + -ms-flex-line-pack: justify !important; + align-content: space-between !important; + } + .align-content-xl-around { + -ms-flex-line-pack: distribute !important; + align-content: space-around !important; + } + .align-content-xl-stretch { + -ms-flex-line-pack: stretch !important; + align-content: stretch !important; + } + .align-self-xl-auto { + -ms-flex-item-align: auto !important; + align-self: auto !important; + } + .align-self-xl-start { + -ms-flex-item-align: start !important; + align-self: flex-start !important; + } + .align-self-xl-end { + -ms-flex-item-align: end !important; + align-self: flex-end !important; + } + .align-self-xl-center { + -ms-flex-item-align: center !important; + align-self: center !important; + } + .align-self-xl-baseline { + -ms-flex-item-align: baseline !important; + align-self: baseline !important; + } + .align-self-xl-stretch { + -ms-flex-item-align: stretch !important; + align-self: stretch !important; + } +} +/*# sourceMappingURL=bootstrap-grid.css.map */ \ No newline at end of file diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-grid.css.map b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-grid.css.map new file mode 100644 index 0000000..a5145bd --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-grid.css.map @@ -0,0 +1 @@ +{"version":3,"sources":["../../scss/bootstrap-grid.scss","bootstrap-grid.css","../../scss/_grid.scss","../../scss/mixins/_grid.scss","../../scss/mixins/_breakpoints.scss","../../scss/_variables.scss","../../scss/mixins/_grid-framework.scss","../../scss/utilities/_flex.scss"],"names":[],"mappings":"AAUE;EAAgB,oBAAmB;CCRpC;;ADWD;EACE,uBAAsB;EACtB,8BAA6B;CAC9B;;AAED;;;EAGE,oBAAmB;CACpB;;AEjBC;ECAA,mBAAkB;EAClB,kBAAiB;EACjB,oBAAuC;EACvC,mBAAuC;EACvC,YAAW;CDDV;;AEgDC;EFnDF;ICYI,iBE8KK;GHvLR;CDmBF;;AG6BG;EFnDF;ICYI,iBE+KK;GHxLR;CDyBF;;AGuBG;EFnDF;ICYI,iBEgLK;GHzLR;CD+BF;;AGiBG;EFnDF;ICYI,kBEiLM;GH1LT;CDqCF;;AC5BC;EACE,YAAW;ECbb,mBAAkB;EAClB,kBAAiB;EACjB,oBAAuC;EACvC,mBAAuC;EACvC,YAAW;CDWV;;AAQD;ECLA,qBAAa;EAAb,cAAa;EACb,oBAAe;MAAf,gBAAe;EACf,oBAAuC;EACvC,mBAAuC;CDItC;;AAID;EACE,gBAAe;EACf,eAAc;CAOf;;AATD;;EAMI,iBAAgB;EAChB,gBAAe;CAChB;;AInCH;;;;;;EACE,mBAAkB;EAClB,YAAW;EACX,gBAAe;EACf,oBAA4B;EAC5B,mBAA4B;CAC7B;;AAkBG;EACE,2BAAa;MAAb,cAAa;EACb,qBAAY;MAAZ,aAAY;EACZ,gBAAe;CAChB;;AACD;EACE,mBAAc;MAAd,eAAc;EACd,YAAW;EACX,gBAAe;CAChB;;AAGC;EHFN,wBAAsC;MAAtC,oBAAsC;EAItC,qBAAuC;CGAhC;;AAFD;EHFN,yBAAsC;MAAtC,qBAAsC;EAItC,sBAAuC;CGAhC;;AAFD;EHFN,kBAAsC;MAAtC,cAAsC;EAItC,eAAuC;CGAhC;;AAFD;EHFN,yBAAsC;MAAtC,qBAAsC;EAItC,sBAAuC;CGAhC;;AAFD;EHFN,yBAAsC;MAAtC,qBAAsC;EAItC,sBAAuC;CGAhC;;AAFD;EHFN,kBAAsC;MAAtC,cAAsC;EAItC,eAAuC;CGAhC;;AAFD;EHFN,yBAAsC;MAAtC,qBAAsC;EAItC,sBAAuC;CGAhC;;AAFD;EHFN,yBAAsC;MAAtC,qBAAsC;EAItC,sBAAuC;CGAhC;;AAFD;EHFN,kBAAsC;MAAtC,cAAsC;EAItC,eAAuC;CGAhC;;AAFD;EHFN,yBAAsC;MAAtC,qBAAsC;EAItC,sBAAuC;CGAhC;;AAFD;EHFN,yBAAsC;MAAtC,qBAAsC;EAItC,sBAAuC;CGAhC;;AAFD;EHFN,mBAAsC;MAAtC,eAAsC;EAItC,gBAAuC;CGAhC;;AAID;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,mBAFU;MAEV,UAFU;CAGX;;AAFD;EACE,mBAFU;MAEV,UAFU;CAGX;;AAFD;EACE,mBAFU;MAEV,UAFU;CAGX;;AFKL;EEzBE;IACE,2BAAa;QAAb,cAAa;IACb,qBAAY;QAAZ,aAAY;IACZ,gBAAe;GAChB;EACD;IACE,mBAAc;QAAd,eAAc;IACd,YAAW;IACX,gBAAe;GAChB;EAGC;IHFN,wBAAsC;QAAtC,oBAAsC;IAItC,qBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,mBAAsC;QAAtC,eAAsC;IAItC,gBAAuC;GGAhC;EAID;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;CL2PR;;AGtPG;EEzBE;IACE,2BAAa;QAAb,cAAa;IACb,qBAAY;QAAZ,aAAY;IACZ,gBAAe;GAChB;EACD;IACE,mBAAc;QAAd,eAAc;IACd,YAAW;IACX,gBAAe;GAChB;EAGC;IHFN,wBAAsC;QAAtC,oBAAsC;IAItC,qBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,mBAAsC;QAAtC,eAAsC;IAItC,gBAAuC;GGAhC;EAID;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;CL4VR;;AGvVG;EEzBE;IACE,2BAAa;QAAb,cAAa;IACb,qBAAY;QAAZ,aAAY;IACZ,gBAAe;GAChB;EACD;IACE,mBAAc;QAAd,eAAc;IACd,YAAW;IACX,gBAAe;GAChB;EAGC;IHFN,wBAAsC;QAAtC,oBAAsC;IAItC,qBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,mBAAsC;QAAtC,eAAsC;IAItC,gBAAuC;GGAhC;EAID;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;CL6bR;;AGxbG;EEzBE;IACE,2BAAa;QAAb,cAAa;IACb,qBAAY;QAAZ,aAAY;IACZ,gBAAe;GAChB;EACD;IACE,mBAAc;QAAd,eAAc;IACd,YAAW;IACX,gBAAe;GAChB;EAGC;IHFN,wBAAsC;QAAtC,oBAAsC;IAItC,qBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GGAhC;EAFD;IHFN,mBAAsC;QAAtC,eAAsC;IAItC,gBAAuC;GGAhC;EAID;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;CL8hBR;;AMzkBG;EAAgC,mCAA8B;MAA9B,+BAA8B;CAAK;;AACnE;EAAgC,sCAAiC;MAAjC,kCAAiC;CAAK;;AACtE;EAAgC,2CAAsC;MAAtC,uCAAsC;CAAK;;AAC3E;EAAgC,8CAAyC;MAAzC,0CAAyC;CAAK;;AAE9E;EAA8B,+BAA0B;MAA1B,2BAA0B;CAAK;;AAC7D;EAA8B,iCAA4B;MAA5B,6BAA4B;CAAK;;AAC/D;EAA8B,uCAAkC;MAAlC,mCAAkC;CAAK;;AAErE;EAAoC,gCAAsC;MAAtC,uCAAsC;CAAK;;AAC/E;EAAoC,8BAAoC;MAApC,qCAAoC;CAAK;;AAC7E;EAAoC,iCAAkC;MAAlC,mCAAkC;CAAK;;AAC3E;EAAoC,kCAAyC;MAAzC,0CAAyC;CAAK;;AAClF;EAAoC,qCAAwC;MAAxC,yCAAwC;CAAK;;AAEjF;EAAiC,iCAAkC;MAAlC,mCAAkC;CAAK;;AACxE;EAAiC,+BAAgC;MAAhC,iCAAgC;CAAK;;AACtE;EAAiC,kCAA8B;MAA9B,+BAA8B;CAAK;;AACpE;EAAiC,oCAAgC;MAAhC,iCAAgC;CAAK;;AACtE;EAAiC,mCAA+B;MAA/B,gCAA+B;CAAK;;AAErE;EAAkC,qCAAoC;MAApC,qCAAoC;CAAK;;AAC3E;EAAkC,mCAAkC;MAAlC,mCAAkC;CAAK;;AACzE;EAAkC,sCAAgC;MAAhC,iCAAgC;CAAK;;AACvE;EAAkC,uCAAuC;MAAvC,wCAAuC;CAAK;;AAC9E;EAAkC,0CAAsC;MAAtC,uCAAsC;CAAK;;AAC7E;EAAkC,uCAAiC;MAAjC,kCAAiC;CAAK;;AAExE;EAAgC,qCAA2B;MAA3B,4BAA2B;CAAK;;AAChE;EAAgC,sCAAiC;MAAjC,kCAAiC;CAAK;;AACtE;EAAgC,oCAA+B;MAA/B,gCAA+B;CAAK;;AACpE;EAAgC,uCAA6B;MAA7B,8BAA6B;CAAK;;AAClE;EAAgC,yCAA+B;MAA/B,gCAA+B;CAAK;;AACpE;EAAgC,wCAA8B;MAA9B,+BAA8B;CAAK;;AHenE;EGhDA;IAAgC,mCAA8B;QAA9B,+BAA8B;GAAK;EACnE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,2CAAsC;QAAtC,uCAAsC;GAAK;EAC3E;IAAgC,8CAAyC;QAAzC,0CAAyC;GAAK;EAE9E;IAA8B,+BAA0B;QAA1B,2BAA0B;GAAK;EAC7D;IAA8B,iCAA4B;QAA5B,6BAA4B;GAAK;EAC/D;IAA8B,uCAAkC;QAAlC,mCAAkC;GAAK;EAErE;IAAoC,gCAAsC;QAAtC,uCAAsC;GAAK;EAC/E;IAAoC,8BAAoC;QAApC,qCAAoC;GAAK;EAC7E;IAAoC,iCAAkC;QAAlC,mCAAkC;GAAK;EAC3E;IAAoC,kCAAyC;QAAzC,0CAAyC;GAAK;EAClF;IAAoC,qCAAwC;QAAxC,yCAAwC;GAAK;EAEjF;IAAiC,iCAAkC;QAAlC,mCAAkC;GAAK;EACxE;IAAiC,+BAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,kCAA8B;QAA9B,+BAA8B;GAAK;EACpE;IAAiC,oCAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,mCAA+B;QAA/B,gCAA+B;GAAK;EAErE;IAAkC,qCAAoC;QAApC,qCAAoC;GAAK;EAC3E;IAAkC,mCAAkC;QAAlC,mCAAkC;GAAK;EACzE;IAAkC,sCAAgC;QAAhC,iCAAgC;GAAK;EACvE;IAAkC,uCAAuC;QAAvC,wCAAuC;GAAK;EAC9E;IAAkC,0CAAsC;QAAtC,uCAAsC;GAAK;EAC7E;IAAkC,uCAAiC;QAAjC,kCAAiC;GAAK;EAExE;IAAgC,qCAA2B;QAA3B,4BAA2B;GAAK;EAChE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,oCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,uCAA6B;QAA7B,8BAA6B;GAAK;EAClE;IAAgC,yCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,wCAA8B;QAA9B,+BAA8B;GAAK;CNsvBtE;;AGvuBG;EGhDA;IAAgC,mCAA8B;QAA9B,+BAA8B;GAAK;EACnE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,2CAAsC;QAAtC,uCAAsC;GAAK;EAC3E;IAAgC,8CAAyC;QAAzC,0CAAyC;GAAK;EAE9E;IAA8B,+BAA0B;QAA1B,2BAA0B;GAAK;EAC7D;IAA8B,iCAA4B;QAA5B,6BAA4B;GAAK;EAC/D;IAA8B,uCAAkC;QAAlC,mCAAkC;GAAK;EAErE;IAAoC,gCAAsC;QAAtC,uCAAsC;GAAK;EAC/E;IAAoC,8BAAoC;QAApC,qCAAoC;GAAK;EAC7E;IAAoC,iCAAkC;QAAlC,mCAAkC;GAAK;EAC3E;IAAoC,kCAAyC;QAAzC,0CAAyC;GAAK;EAClF;IAAoC,qCAAwC;QAAxC,yCAAwC;GAAK;EAEjF;IAAiC,iCAAkC;QAAlC,mCAAkC;GAAK;EACxE;IAAiC,+BAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,kCAA8B;QAA9B,+BAA8B;GAAK;EACpE;IAAiC,oCAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,mCAA+B;QAA/B,gCAA+B;GAAK;EAErE;IAAkC,qCAAoC;QAApC,qCAAoC;GAAK;EAC3E;IAAkC,mCAAkC;QAAlC,mCAAkC;GAAK;EACzE;IAAkC,sCAAgC;QAAhC,iCAAgC;GAAK;EACvE;IAAkC,uCAAuC;QAAvC,wCAAuC;GAAK;EAC9E;IAAkC,0CAAsC;QAAtC,uCAAsC;GAAK;EAC7E;IAAkC,uCAAiC;QAAjC,kCAAiC;GAAK;EAExE;IAAgC,qCAA2B;QAA3B,4BAA2B;GAAK;EAChE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,oCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,uCAA6B;QAA7B,8BAA6B;GAAK;EAClE;IAAgC,yCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,wCAA8B;QAA9B,+BAA8B;GAAK;CNg1BtE;;AGj0BG;EGhDA;IAAgC,mCAA8B;QAA9B,+BAA8B;GAAK;EACnE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,2CAAsC;QAAtC,uCAAsC;GAAK;EAC3E;IAAgC,8CAAyC;QAAzC,0CAAyC;GAAK;EAE9E;IAA8B,+BAA0B;QAA1B,2BAA0B;GAAK;EAC7D;IAA8B,iCAA4B;QAA5B,6BAA4B;GAAK;EAC/D;IAA8B,uCAAkC;QAAlC,mCAAkC;GAAK;EAErE;IAAoC,gCAAsC;QAAtC,uCAAsC;GAAK;EAC/E;IAAoC,8BAAoC;QAApC,qCAAoC;GAAK;EAC7E;IAAoC,iCAAkC;QAAlC,mCAAkC;GAAK;EAC3E;IAAoC,kCAAyC;QAAzC,0CAAyC;GAAK;EAClF;IAAoC,qCAAwC;QAAxC,yCAAwC;GAAK;EAEjF;IAAiC,iCAAkC;QAAlC,mCAAkC;GAAK;EACxE;IAAiC,+BAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,kCAA8B;QAA9B,+BAA8B;GAAK;EACpE;IAAiC,oCAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,mCAA+B;QAA/B,gCAA+B;GAAK;EAErE;IAAkC,qCAAoC;QAApC,qCAAoC;GAAK;EAC3E;IAAkC,mCAAkC;QAAlC,mCAAkC;GAAK;EACzE;IAAkC,sCAAgC;QAAhC,iCAAgC;GAAK;EACvE;IAAkC,uCAAuC;QAAvC,wCAAuC;GAAK;EAC9E;IAAkC,0CAAsC;QAAtC,uCAAsC;GAAK;EAC7E;IAAkC,uCAAiC;QAAjC,kCAAiC;GAAK;EAExE;IAAgC,qCAA2B;QAA3B,4BAA2B;GAAK;EAChE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,oCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,uCAA6B;QAA7B,8BAA6B;GAAK;EAClE;IAAgC,yCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,wCAA8B;QAA9B,+BAA8B;GAAK;CN06BtE;;AG35BG;EGhDA;IAAgC,mCAA8B;QAA9B,+BAA8B;GAAK;EACnE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,2CAAsC;QAAtC,uCAAsC;GAAK;EAC3E;IAAgC,8CAAyC;QAAzC,0CAAyC;GAAK;EAE9E;IAA8B,+BAA0B;QAA1B,2BAA0B;GAAK;EAC7D;IAA8B,iCAA4B;QAA5B,6BAA4B;GAAK;EAC/D;IAA8B,uCAAkC;QAAlC,mCAAkC;GAAK;EAErE;IAAoC,gCAAsC;QAAtC,uCAAsC;GAAK;EAC/E;IAAoC,8BAAoC;QAApC,qCAAoC;GAAK;EAC7E;IAAoC,iCAAkC;QAAlC,mCAAkC;GAAK;EAC3E;IAAoC,kCAAyC;QAAzC,0CAAyC;GAAK;EAClF;IAAoC,qCAAwC;QAAxC,yCAAwC;GAAK;EAEjF;IAAiC,iCAAkC;QAAlC,mCAAkC;GAAK;EACxE;IAAiC,+BAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,kCAA8B;QAA9B,+BAA8B;GAAK;EACpE;IAAiC,oCAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,mCAA+B;QAA/B,gCAA+B;GAAK;EAErE;IAAkC,qCAAoC;QAApC,qCAAoC;GAAK;EAC3E;IAAkC,mCAAkC;QAAlC,mCAAkC;GAAK;EACzE;IAAkC,sCAAgC;QAAhC,iCAAgC;GAAK;EACvE;IAAkC,uCAAuC;QAAvC,wCAAuC;GAAK;EAC9E;IAAkC,0CAAsC;QAAtC,uCAAsC;GAAK;EAC7E;IAAkC,uCAAiC;QAAjC,kCAAiC;GAAK;EAExE;IAAgC,qCAA2B;QAA3B,4BAA2B;GAAK;EAChE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,oCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,uCAA6B;QAA7B,8BAA6B;GAAK;EAClE;IAAgC,yCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,wCAA8B;QAA9B,+BAA8B;GAAK;CNogCtE","file":"bootstrap-grid.css","sourcesContent":["// Bootstrap Grid only\n//\n// Includes relevant variables and mixins for the flexbox grid\n// system, as well as the generated predefined classes (e.g., `.col-sm-4`).\n\n//\n// Box sizing, responsive, and more\n//\n\n@at-root {\n @-ms-viewport { width: device-width; }\n}\n\nhtml {\n box-sizing: border-box;\n -ms-overflow-style: scrollbar;\n}\n\n*,\n*::before,\n*::after {\n box-sizing: inherit;\n}\n\n@import \"functions\";\n@import \"variables\";\n\n//\n// Grid mixins\n//\n\n@import \"mixins/breakpoints\";\n@import \"mixins/grid-framework\";\n@import \"mixins/grid\";\n\n@import \"grid\";\n@import \"utilities/flex\";\n","@-ms-viewport {\n width: device-width;\n}\n\nhtml {\n box-sizing: border-box;\n -ms-overflow-style: scrollbar;\n}\n\n*,\n*::before,\n*::after {\n box-sizing: inherit;\n}\n\n.container {\n margin-right: auto;\n margin-left: auto;\n padding-right: 15px;\n padding-left: 15px;\n width: 100%;\n}\n\n@media (min-width: 576px) {\n .container {\n max-width: 540px;\n }\n}\n\n@media (min-width: 768px) {\n .container {\n max-width: 720px;\n }\n}\n\n@media (min-width: 992px) {\n .container {\n max-width: 960px;\n }\n}\n\n@media (min-width: 1200px) {\n .container {\n max-width: 1140px;\n }\n}\n\n.container-fluid {\n width: 100%;\n margin-right: auto;\n margin-left: auto;\n padding-right: 15px;\n padding-left: 15px;\n width: 100%;\n}\n\n.row {\n display: flex;\n flex-wrap: wrap;\n margin-right: -15px;\n margin-left: -15px;\n}\n\n.no-gutters {\n margin-right: 0;\n margin-left: 0;\n}\n\n.no-gutters > .col,\n.no-gutters > [class*=\"col-\"] {\n padding-right: 0;\n padding-left: 0;\n}\n\n.col-1, .col-2, .col-3, .col-4, .col-5, .col-6, .col-7, .col-8, .col-9, .col-10, .col-11, .col-12, .col,\n.col-auto, .col-sm-1, .col-sm-2, .col-sm-3, .col-sm-4, .col-sm-5, .col-sm-6, .col-sm-7, .col-sm-8, .col-sm-9, .col-sm-10, .col-sm-11, .col-sm-12, .col-sm,\n.col-sm-auto, .col-md-1, .col-md-2, .col-md-3, .col-md-4, .col-md-5, .col-md-6, .col-md-7, .col-md-8, .col-md-9, .col-md-10, .col-md-11, .col-md-12, .col-md,\n.col-md-auto, .col-lg-1, .col-lg-2, .col-lg-3, .col-lg-4, .col-lg-5, .col-lg-6, .col-lg-7, .col-lg-8, .col-lg-9, .col-lg-10, .col-lg-11, .col-lg-12, .col-lg,\n.col-lg-auto, .col-xl-1, .col-xl-2, .col-xl-3, .col-xl-4, .col-xl-5, .col-xl-6, .col-xl-7, .col-xl-8, .col-xl-9, .col-xl-10, .col-xl-11, .col-xl-12, .col-xl,\n.col-xl-auto {\n position: relative;\n width: 100%;\n min-height: 1px;\n padding-right: 15px;\n padding-left: 15px;\n}\n\n.col {\n flex-basis: 0;\n flex-grow: 1;\n max-width: 100%;\n}\n\n.col-auto {\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n}\n\n.col-1 {\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n}\n\n.col-2 {\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n}\n\n.col-3 {\n flex: 0 0 25%;\n max-width: 25%;\n}\n\n.col-4 {\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n}\n\n.col-5 {\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n}\n\n.col-6 {\n flex: 0 0 50%;\n max-width: 50%;\n}\n\n.col-7 {\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n}\n\n.col-8 {\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n}\n\n.col-9 {\n flex: 0 0 75%;\n max-width: 75%;\n}\n\n.col-10 {\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n}\n\n.col-11 {\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n}\n\n.col-12 {\n flex: 0 0 100%;\n max-width: 100%;\n}\n\n.order-1 {\n order: 1;\n}\n\n.order-2 {\n order: 2;\n}\n\n.order-3 {\n order: 3;\n}\n\n.order-4 {\n order: 4;\n}\n\n.order-5 {\n order: 5;\n}\n\n.order-6 {\n order: 6;\n}\n\n.order-7 {\n order: 7;\n}\n\n.order-8 {\n order: 8;\n}\n\n.order-9 {\n order: 9;\n}\n\n.order-10 {\n order: 10;\n}\n\n.order-11 {\n order: 11;\n}\n\n.order-12 {\n order: 12;\n}\n\n@media (min-width: 576px) {\n .col-sm {\n flex-basis: 0;\n flex-grow: 1;\n max-width: 100%;\n }\n .col-sm-auto {\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n }\n .col-sm-1 {\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n }\n .col-sm-2 {\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n }\n .col-sm-3 {\n flex: 0 0 25%;\n max-width: 25%;\n }\n .col-sm-4 {\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n }\n .col-sm-5 {\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n }\n .col-sm-6 {\n flex: 0 0 50%;\n max-width: 50%;\n }\n .col-sm-7 {\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n }\n .col-sm-8 {\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n }\n .col-sm-9 {\n flex: 0 0 75%;\n max-width: 75%;\n }\n .col-sm-10 {\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n }\n .col-sm-11 {\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n }\n .col-sm-12 {\n flex: 0 0 100%;\n max-width: 100%;\n }\n .order-sm-1 {\n order: 1;\n }\n .order-sm-2 {\n order: 2;\n }\n .order-sm-3 {\n order: 3;\n }\n .order-sm-4 {\n order: 4;\n }\n .order-sm-5 {\n order: 5;\n }\n .order-sm-6 {\n order: 6;\n }\n .order-sm-7 {\n order: 7;\n }\n .order-sm-8 {\n order: 8;\n }\n .order-sm-9 {\n order: 9;\n }\n .order-sm-10 {\n order: 10;\n }\n .order-sm-11 {\n order: 11;\n }\n .order-sm-12 {\n order: 12;\n }\n}\n\n@media (min-width: 768px) {\n .col-md {\n flex-basis: 0;\n flex-grow: 1;\n max-width: 100%;\n }\n .col-md-auto {\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n }\n .col-md-1 {\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n }\n .col-md-2 {\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n }\n .col-md-3 {\n flex: 0 0 25%;\n max-width: 25%;\n }\n .col-md-4 {\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n }\n .col-md-5 {\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n }\n .col-md-6 {\n flex: 0 0 50%;\n max-width: 50%;\n }\n .col-md-7 {\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n }\n .col-md-8 {\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n }\n .col-md-9 {\n flex: 0 0 75%;\n max-width: 75%;\n }\n .col-md-10 {\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n }\n .col-md-11 {\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n }\n .col-md-12 {\n flex: 0 0 100%;\n max-width: 100%;\n }\n .order-md-1 {\n order: 1;\n }\n .order-md-2 {\n order: 2;\n }\n .order-md-3 {\n order: 3;\n }\n .order-md-4 {\n order: 4;\n }\n .order-md-5 {\n order: 5;\n }\n .order-md-6 {\n order: 6;\n }\n .order-md-7 {\n order: 7;\n }\n .order-md-8 {\n order: 8;\n }\n .order-md-9 {\n order: 9;\n }\n .order-md-10 {\n order: 10;\n }\n .order-md-11 {\n order: 11;\n }\n .order-md-12 {\n order: 12;\n }\n}\n\n@media (min-width: 992px) {\n .col-lg {\n flex-basis: 0;\n flex-grow: 1;\n max-width: 100%;\n }\n .col-lg-auto {\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n }\n .col-lg-1 {\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n }\n .col-lg-2 {\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n }\n .col-lg-3 {\n flex: 0 0 25%;\n max-width: 25%;\n }\n .col-lg-4 {\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n }\n .col-lg-5 {\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n }\n .col-lg-6 {\n flex: 0 0 50%;\n max-width: 50%;\n }\n .col-lg-7 {\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n }\n .col-lg-8 {\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n }\n .col-lg-9 {\n flex: 0 0 75%;\n max-width: 75%;\n }\n .col-lg-10 {\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n }\n .col-lg-11 {\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n }\n .col-lg-12 {\n flex: 0 0 100%;\n max-width: 100%;\n }\n .order-lg-1 {\n order: 1;\n }\n .order-lg-2 {\n order: 2;\n }\n .order-lg-3 {\n order: 3;\n }\n .order-lg-4 {\n order: 4;\n }\n .order-lg-5 {\n order: 5;\n }\n .order-lg-6 {\n order: 6;\n }\n .order-lg-7 {\n order: 7;\n }\n .order-lg-8 {\n order: 8;\n }\n .order-lg-9 {\n order: 9;\n }\n .order-lg-10 {\n order: 10;\n }\n .order-lg-11 {\n order: 11;\n }\n .order-lg-12 {\n order: 12;\n }\n}\n\n@media (min-width: 1200px) {\n .col-xl {\n flex-basis: 0;\n flex-grow: 1;\n max-width: 100%;\n }\n .col-xl-auto {\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n }\n .col-xl-1 {\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n }\n .col-xl-2 {\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n }\n .col-xl-3 {\n flex: 0 0 25%;\n max-width: 25%;\n }\n .col-xl-4 {\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n }\n .col-xl-5 {\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n }\n .col-xl-6 {\n flex: 0 0 50%;\n max-width: 50%;\n }\n .col-xl-7 {\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n }\n .col-xl-8 {\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n }\n .col-xl-9 {\n flex: 0 0 75%;\n max-width: 75%;\n }\n .col-xl-10 {\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n }\n .col-xl-11 {\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n }\n .col-xl-12 {\n flex: 0 0 100%;\n max-width: 100%;\n }\n .order-xl-1 {\n order: 1;\n }\n .order-xl-2 {\n order: 2;\n }\n .order-xl-3 {\n order: 3;\n }\n .order-xl-4 {\n order: 4;\n }\n .order-xl-5 {\n order: 5;\n }\n .order-xl-6 {\n order: 6;\n }\n .order-xl-7 {\n order: 7;\n }\n .order-xl-8 {\n order: 8;\n }\n .order-xl-9 {\n order: 9;\n }\n .order-xl-10 {\n order: 10;\n }\n .order-xl-11 {\n order: 11;\n }\n .order-xl-12 {\n order: 12;\n }\n}\n\n.flex-row {\n flex-direction: row !important;\n}\n\n.flex-column {\n flex-direction: column !important;\n}\n\n.flex-row-reverse {\n flex-direction: row-reverse !important;\n}\n\n.flex-column-reverse {\n flex-direction: column-reverse !important;\n}\n\n.flex-wrap {\n flex-wrap: wrap !important;\n}\n\n.flex-nowrap {\n flex-wrap: nowrap !important;\n}\n\n.flex-wrap-reverse {\n flex-wrap: wrap-reverse !important;\n}\n\n.justify-content-start {\n justify-content: flex-start !important;\n}\n\n.justify-content-end {\n justify-content: flex-end !important;\n}\n\n.justify-content-center {\n justify-content: center !important;\n}\n\n.justify-content-between {\n justify-content: space-between !important;\n}\n\n.justify-content-around {\n justify-content: space-around !important;\n}\n\n.align-items-start {\n align-items: flex-start !important;\n}\n\n.align-items-end {\n align-items: flex-end !important;\n}\n\n.align-items-center {\n align-items: center !important;\n}\n\n.align-items-baseline {\n align-items: baseline !important;\n}\n\n.align-items-stretch {\n align-items: stretch !important;\n}\n\n.align-content-start {\n align-content: flex-start !important;\n}\n\n.align-content-end {\n align-content: flex-end !important;\n}\n\n.align-content-center {\n align-content: center !important;\n}\n\n.align-content-between {\n align-content: space-between !important;\n}\n\n.align-content-around {\n align-content: space-around !important;\n}\n\n.align-content-stretch {\n align-content: stretch !important;\n}\n\n.align-self-auto {\n align-self: auto !important;\n}\n\n.align-self-start {\n align-self: flex-start !important;\n}\n\n.align-self-end {\n align-self: flex-end !important;\n}\n\n.align-self-center {\n align-self: center !important;\n}\n\n.align-self-baseline {\n align-self: baseline !important;\n}\n\n.align-self-stretch {\n align-self: stretch !important;\n}\n\n@media (min-width: 576px) {\n .flex-sm-row {\n flex-direction: row !important;\n }\n .flex-sm-column {\n flex-direction: column !important;\n }\n .flex-sm-row-reverse {\n flex-direction: row-reverse !important;\n }\n .flex-sm-column-reverse {\n flex-direction: column-reverse !important;\n }\n .flex-sm-wrap {\n flex-wrap: wrap !important;\n }\n .flex-sm-nowrap {\n flex-wrap: nowrap !important;\n }\n .flex-sm-wrap-reverse {\n flex-wrap: wrap-reverse !important;\n }\n .justify-content-sm-start {\n justify-content: flex-start !important;\n }\n .justify-content-sm-end {\n justify-content: flex-end !important;\n }\n .justify-content-sm-center {\n justify-content: center !important;\n }\n .justify-content-sm-between {\n justify-content: space-between !important;\n }\n .justify-content-sm-around {\n justify-content: space-around !important;\n }\n .align-items-sm-start {\n align-items: flex-start !important;\n }\n .align-items-sm-end {\n align-items: flex-end !important;\n }\n .align-items-sm-center {\n align-items: center !important;\n }\n .align-items-sm-baseline {\n align-items: baseline !important;\n }\n .align-items-sm-stretch {\n align-items: stretch !important;\n }\n .align-content-sm-start {\n align-content: flex-start !important;\n }\n .align-content-sm-end {\n align-content: flex-end !important;\n }\n .align-content-sm-center {\n align-content: center !important;\n }\n .align-content-sm-between {\n align-content: space-between !important;\n }\n .align-content-sm-around {\n align-content: space-around !important;\n }\n .align-content-sm-stretch {\n align-content: stretch !important;\n }\n .align-self-sm-auto {\n align-self: auto !important;\n }\n .align-self-sm-start {\n align-self: flex-start !important;\n }\n .align-self-sm-end {\n align-self: flex-end !important;\n }\n .align-self-sm-center {\n align-self: center !important;\n }\n .align-self-sm-baseline {\n align-self: baseline !important;\n }\n .align-self-sm-stretch {\n align-self: stretch !important;\n }\n}\n\n@media (min-width: 768px) {\n .flex-md-row {\n flex-direction: row !important;\n }\n .flex-md-column {\n flex-direction: column !important;\n }\n .flex-md-row-reverse {\n flex-direction: row-reverse !important;\n }\n .flex-md-column-reverse {\n flex-direction: column-reverse !important;\n }\n .flex-md-wrap {\n flex-wrap: wrap !important;\n }\n .flex-md-nowrap {\n flex-wrap: nowrap !important;\n }\n .flex-md-wrap-reverse {\n flex-wrap: wrap-reverse !important;\n }\n .justify-content-md-start {\n justify-content: flex-start !important;\n }\n .justify-content-md-end {\n justify-content: flex-end !important;\n }\n .justify-content-md-center {\n justify-content: center !important;\n }\n .justify-content-md-between {\n justify-content: space-between !important;\n }\n .justify-content-md-around {\n justify-content: space-around !important;\n }\n .align-items-md-start {\n align-items: flex-start !important;\n }\n .align-items-md-end {\n align-items: flex-end !important;\n }\n .align-items-md-center {\n align-items: center !important;\n }\n .align-items-md-baseline {\n align-items: baseline !important;\n }\n .align-items-md-stretch {\n align-items: stretch !important;\n }\n .align-content-md-start {\n align-content: flex-start !important;\n }\n .align-content-md-end {\n align-content: flex-end !important;\n }\n .align-content-md-center {\n align-content: center !important;\n }\n .align-content-md-between {\n align-content: space-between !important;\n }\n .align-content-md-around {\n align-content: space-around !important;\n }\n .align-content-md-stretch {\n align-content: stretch !important;\n }\n .align-self-md-auto {\n align-self: auto !important;\n }\n .align-self-md-start {\n align-self: flex-start !important;\n }\n .align-self-md-end {\n align-self: flex-end !important;\n }\n .align-self-md-center {\n align-self: center !important;\n }\n .align-self-md-baseline {\n align-self: baseline !important;\n }\n .align-self-md-stretch {\n align-self: stretch !important;\n }\n}\n\n@media (min-width: 992px) {\n .flex-lg-row {\n flex-direction: row !important;\n }\n .flex-lg-column {\n flex-direction: column !important;\n }\n .flex-lg-row-reverse {\n flex-direction: row-reverse !important;\n }\n .flex-lg-column-reverse {\n flex-direction: column-reverse !important;\n }\n .flex-lg-wrap {\n flex-wrap: wrap !important;\n }\n .flex-lg-nowrap {\n flex-wrap: nowrap !important;\n }\n .flex-lg-wrap-reverse {\n flex-wrap: wrap-reverse !important;\n }\n .justify-content-lg-start {\n justify-content: flex-start !important;\n }\n .justify-content-lg-end {\n justify-content: flex-end !important;\n }\n .justify-content-lg-center {\n justify-content: center !important;\n }\n .justify-content-lg-between {\n justify-content: space-between !important;\n }\n .justify-content-lg-around {\n justify-content: space-around !important;\n }\n .align-items-lg-start {\n align-items: flex-start !important;\n }\n .align-items-lg-end {\n align-items: flex-end !important;\n }\n .align-items-lg-center {\n align-items: center !important;\n }\n .align-items-lg-baseline {\n align-items: baseline !important;\n }\n .align-items-lg-stretch {\n align-items: stretch !important;\n }\n .align-content-lg-start {\n align-content: flex-start !important;\n }\n .align-content-lg-end {\n align-content: flex-end !important;\n }\n .align-content-lg-center {\n align-content: center !important;\n }\n .align-content-lg-between {\n align-content: space-between !important;\n }\n .align-content-lg-around {\n align-content: space-around !important;\n }\n .align-content-lg-stretch {\n align-content: stretch !important;\n }\n .align-self-lg-auto {\n align-self: auto !important;\n }\n .align-self-lg-start {\n align-self: flex-start !important;\n }\n .align-self-lg-end {\n align-self: flex-end !important;\n }\n .align-self-lg-center {\n align-self: center !important;\n }\n .align-self-lg-baseline {\n align-self: baseline !important;\n }\n .align-self-lg-stretch {\n align-self: stretch !important;\n }\n}\n\n@media (min-width: 1200px) {\n .flex-xl-row {\n flex-direction: row !important;\n }\n .flex-xl-column {\n flex-direction: column !important;\n }\n .flex-xl-row-reverse {\n flex-direction: row-reverse !important;\n }\n .flex-xl-column-reverse {\n flex-direction: column-reverse !important;\n }\n .flex-xl-wrap {\n flex-wrap: wrap !important;\n }\n .flex-xl-nowrap {\n flex-wrap: nowrap !important;\n }\n .flex-xl-wrap-reverse {\n flex-wrap: wrap-reverse !important;\n }\n .justify-content-xl-start {\n justify-content: flex-start !important;\n }\n .justify-content-xl-end {\n justify-content: flex-end !important;\n }\n .justify-content-xl-center {\n justify-content: center !important;\n }\n .justify-content-xl-between {\n justify-content: space-between !important;\n }\n .justify-content-xl-around {\n justify-content: space-around !important;\n }\n .align-items-xl-start {\n align-items: flex-start !important;\n }\n .align-items-xl-end {\n align-items: flex-end !important;\n }\n .align-items-xl-center {\n align-items: center !important;\n }\n .align-items-xl-baseline {\n align-items: baseline !important;\n }\n .align-items-xl-stretch {\n align-items: stretch !important;\n }\n .align-content-xl-start {\n align-content: flex-start !important;\n }\n .align-content-xl-end {\n align-content: flex-end !important;\n }\n .align-content-xl-center {\n align-content: center !important;\n }\n .align-content-xl-between {\n align-content: space-between !important;\n }\n .align-content-xl-around {\n align-content: space-around !important;\n }\n .align-content-xl-stretch {\n align-content: stretch !important;\n }\n .align-self-xl-auto {\n align-self: auto !important;\n }\n .align-self-xl-start {\n align-self: flex-start !important;\n }\n .align-self-xl-end {\n align-self: flex-end !important;\n }\n .align-self-xl-center {\n align-self: center !important;\n }\n .align-self-xl-baseline {\n align-self: baseline !important;\n }\n .align-self-xl-stretch {\n align-self: stretch !important;\n }\n}\n\n/*# sourceMappingURL=bootstrap-grid.css.map */","// Container widths\n//\n// Set the container width, and override it for fixed navbars in media queries.\n\n@if $enable-grid-classes {\n .container {\n @include make-container();\n @include make-container-max-widths();\n }\n}\n\n// Fluid container\n//\n// Utilizes the mixin meant for fixed width containers, but with 100% width for\n// fluid, full width layouts.\n\n@if $enable-grid-classes {\n .container-fluid {\n width: 100%;\n @include make-container();\n }\n}\n\n// Row\n//\n// Rows contain and clear the floats of your columns.\n\n@if $enable-grid-classes {\n .row {\n @include make-row();\n }\n\n // Remove the negative margin from default .row, then the horizontal padding\n // from all immediate children columns (to prevent runaway style inheritance).\n .no-gutters {\n margin-right: 0;\n margin-left: 0;\n\n > .col,\n > [class*=\"col-\"] {\n padding-right: 0;\n padding-left: 0;\n }\n }\n}\n\n// Columns\n//\n// Common styles for small and large grid columns\n\n@if $enable-grid-classes {\n @include make-grid-columns();\n}\n","/// Grid system\n//\n// Generate semantic grid columns with these mixins.\n\n@mixin make-container() {\n margin-right: auto;\n margin-left: auto;\n padding-right: ($grid-gutter-width / 2);\n padding-left: ($grid-gutter-width / 2);\n width: 100%;\n}\n\n\n// For each breakpoint, define the maximum width of the container in a media query\n@mixin make-container-max-widths($max-widths: $container-max-widths, $breakpoints: $grid-breakpoints) {\n @each $breakpoint, $container-max-width in $max-widths {\n @include media-breakpoint-up($breakpoint, $breakpoints) {\n max-width: $container-max-width;\n }\n }\n}\n\n@mixin make-row() {\n display: flex;\n flex-wrap: wrap;\n margin-right: ($grid-gutter-width / -2);\n margin-left: ($grid-gutter-width / -2);\n}\n\n@mixin make-col-ready() {\n position: relative;\n // Prevent columns from becoming too narrow when at smaller grid tiers by\n // always setting `width: 100%;`. This works because we use `flex` values\n // later on to override this initial width.\n width: 100%;\n min-height: 1px; // Prevent collapsing\n padding-right: ($grid-gutter-width / 2);\n padding-left: ($grid-gutter-width / 2);\n}\n\n@mixin make-col($size, $columns: $grid-columns) {\n flex: 0 0 percentage($size / $columns);\n // Add a `max-width` to ensure content within each column does not blow out\n // the width of the column. Applies to IE10+ and Firefox. Chrome and Safari\n // do not appear to require this.\n max-width: percentage($size / $columns);\n}\n","// Breakpoint viewport sizes and media queries.\n//\n// Breakpoints are defined as a map of (name: minimum width), order from small to large:\n//\n// (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px)\n//\n// The map defined in the `$grid-breakpoints` global variable is used as the `$breakpoints` argument by default.\n\n// Name of the next breakpoint, or null for the last breakpoint.\n//\n// >> breakpoint-next(sm)\n// md\n// >> breakpoint-next(sm, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// md\n// >> breakpoint-next(sm, $breakpoint-names: (xs sm md lg xl))\n// md\n@function breakpoint-next($name, $breakpoints: $grid-breakpoints, $breakpoint-names: map-keys($breakpoints)) {\n $n: index($breakpoint-names, $name);\n @return if($n < length($breakpoint-names), nth($breakpoint-names, $n + 1), null);\n}\n\n// Minimum breakpoint width. Null for the smallest (first) breakpoint.\n//\n// >> breakpoint-min(sm, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// 576px\n@function breakpoint-min($name, $breakpoints: $grid-breakpoints) {\n $min: map-get($breakpoints, $name);\n @return if($min != 0, $min, null);\n}\n\n// Maximum breakpoint width. Null for the largest (last) breakpoint.\n// The maximum value is calculated as the minimum of the next one less 0.1.\n//\n// >> breakpoint-max(sm, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// 767px\n@function breakpoint-max($name, $breakpoints: $grid-breakpoints) {\n $next: breakpoint-next($name, $breakpoints);\n @return if($next, breakpoint-min($next, $breakpoints) - 1px, null);\n}\n\n// Returns a blank string if smallest breakpoint, otherwise returns the name with a dash infront.\n// Useful for making responsive utilities.\n//\n// >> breakpoint-infix(xs, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// \"\" (Returns a blank string)\n// >> breakpoint-infix(sm, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// \"-sm\"\n@function breakpoint-infix($name, $breakpoints: $grid-breakpoints) {\n @return if(breakpoint-min($name, $breakpoints) == null, \"\", \"-#{$name}\");\n}\n\n// Media of at least the minimum breakpoint width. No query for the smallest breakpoint.\n// Makes the @content apply to the given breakpoint and wider.\n@mixin media-breakpoint-up($name, $breakpoints: $grid-breakpoints) {\n $min: breakpoint-min($name, $breakpoints);\n @if $min {\n @media (min-width: $min) {\n @content;\n }\n } @else {\n @content;\n }\n}\n\n// Media of at most the maximum breakpoint width. No query for the largest breakpoint.\n// Makes the @content apply to the given breakpoint and narrower.\n@mixin media-breakpoint-down($name, $breakpoints: $grid-breakpoints) {\n $max: breakpoint-max($name, $breakpoints);\n @if $max {\n @media (max-width: $max) {\n @content;\n }\n } @else {\n @content;\n }\n}\n\n// Media that spans multiple breakpoint widths.\n// Makes the @content apply between the min and max breakpoints\n@mixin media-breakpoint-between($lower, $upper, $breakpoints: $grid-breakpoints) {\n $min: breakpoint-min($lower, $breakpoints);\n $max: breakpoint-max($upper, $breakpoints);\n\n @media (min-width: $min) and (max-width: $max) {\n @content;\n }\n}\n\n// Media between the breakpoint's minimum and maximum widths.\n// No minimum for the smallest breakpoint, and no maximum for the largest one.\n// Makes the @content apply only to the given breakpoint, not viewports any wider or narrower.\n@mixin media-breakpoint-only($name, $breakpoints: $grid-breakpoints) {\n $min: breakpoint-min($name, $breakpoints);\n $max: breakpoint-max($name, $breakpoints);\n\n @if $min != null and $max != null {\n @media (min-width: $min) and (max-width: $max) {\n @content;\n }\n } @else if $max == null {\n @include media-breakpoint-up($name)\n } @else if $min == null {\n @include media-breakpoint-down($name)\n }\n}\n","// Variables\n//\n// Copy settings from this file into the provided `_custom.scss` to override\n// the Bootstrap defaults without modifying key, versioned files.\n//\n// Variables should follow the `$component-state-property-size` formula for\n// consistent naming. Ex: $nav-link-disabled-color and $modal-content-box-shadow-xs.\n\n// Table of Contents\n//\n// Color system\n// Options\n// Spacing\n// Body\n// Links\n// Grid breakpoints\n// Grid containers\n// Grid columns\n// Fonts\n// Components\n// Tables\n// Buttons\n// Forms\n// Dropdowns\n// Z-index master list\n// Navs\n// Navbar\n// Pagination\n// Jumbotron\n// Form states and alerts\n// Cards\n// Tooltips\n// Popovers\n// Badges\n// Modals\n// Alerts\n// Progress bars\n// List group\n// Image thumbnails\n// Figures\n// Breadcrumbs\n// Carousel\n// Close\n// Code\n\n\n//\n// Color system\n//\n\n$white: #fff !default;\n$gray-100: #f8f9fa !default;\n$gray-200: #e9ecef !default;\n$gray-300: #dee2e6 !default;\n$gray-400: #ced4da !default;\n$gray-500: #adb5bd !default;\n$gray-600: #868e96 !default;\n$gray-700: #495057 !default;\n$gray-800: #343a40 !default;\n$gray-900: #212529 !default;\n$black: #000 !default;\n\n$grays: (\n 100: $gray-100,\n 200: $gray-200,\n 300: $gray-300,\n 400: $gray-400,\n 500: $gray-500,\n 600: $gray-600,\n 700: $gray-700,\n 800: $gray-800,\n 900: $gray-900\n) !default;\n\n$blue: #007bff !default;\n$indigo: #6610f2 !default;\n$purple: #6f42c1 !default;\n$pink: #e83e8c !default;\n$red: #dc3545 !default;\n$orange: #fd7e14 !default;\n$yellow: #ffc107 !default;\n$green: #28a745 !default;\n$teal: #20c997 !default;\n$cyan: #17a2b8 !default;\n\n$colors: (\n blue: $blue,\n indigo: $indigo,\n purple: $purple,\n pink: $pink,\n red: $red,\n orange: $orange,\n yellow: $yellow,\n green: $green,\n teal: $teal,\n cyan: $cyan,\n white: $white,\n gray: $gray-600,\n gray-dark: $gray-800\n) !default;\n\n$theme-colors: (\n primary: $blue,\n secondary: $gray-600,\n success: $green,\n info: $cyan,\n warning: $yellow,\n danger: $red,\n light: $gray-100,\n dark: $gray-800\n) !default;\n\n// Set a specific jump point for requesting color jumps\n$theme-color-interval: 8% !default;\n\n\n// Options\n//\n// Quickly modify global styling by enabling or disabling optional features.\n\n$enable-rounded: true !default;\n$enable-shadows: false !default;\n$enable-gradients: false !default;\n$enable-transitions: true !default;\n$enable-hover-media-query: false !default;\n$enable-grid-classes: true !default;\n$enable-print-styles: true !default;\n\n\n// Spacing\n//\n// Control the default styling of most Bootstrap elements by modifying these\n// variables. Mostly focused on spacing.\n// You can add more entries to the $spacers map, should you need more variation.\n\n$spacer: 1rem !default;\n$spacers: (\n 0: 0,\n 1: ($spacer * .25),\n 2: ($spacer * .5),\n 3: $spacer,\n 4: ($spacer * 1.5),\n 5: ($spacer * 3)\n) !default;\n\n// This variable affects the `.h-*` and `.w-*` classes.\n$sizes: (\n 25: 25%,\n 50: 50%,\n 75: 75%,\n 100: 100%\n) !default;\n\n// Body\n//\n// Settings for the `` element.\n\n$body-bg: $white !default;\n$body-color: $gray-900 !default;\n\n// Links\n//\n// Style anchor elements.\n\n$link-color: theme-color(\"primary\") !default;\n$link-decoration: none !default;\n$link-hover-color: darken($link-color, 15%) !default;\n$link-hover-decoration: underline !default;\n\n\n// Grid breakpoints\n//\n// Define the minimum dimensions at which your layout will change,\n// adapting to different screen sizes, for use in media queries.\n\n$grid-breakpoints: (\n xs: 0,\n sm: 576px,\n md: 768px,\n lg: 992px,\n xl: 1200px\n) !default;\n@include _assert-ascending($grid-breakpoints, \"$grid-breakpoints\");\n@include _assert-starts-at-zero($grid-breakpoints);\n\n\n// Grid containers\n//\n// Define the maximum width of `.container` for different screen sizes.\n\n$container-max-widths: (\n sm: 540px,\n md: 720px,\n lg: 960px,\n xl: 1140px\n) !default;\n@include _assert-ascending($container-max-widths, \"$container-max-widths\");\n\n\n// Grid columns\n//\n// Set the number of columns and specify the width of the gutters.\n\n$grid-columns: 12 !default;\n$grid-gutter-width: 30px !default;\n\n// Components\n//\n// Define common padding and border radius sizes and more.\n\n$line-height-lg: 1.5 !default;\n$line-height-sm: 1.5 !default;\n\n$border-width: 1px !default;\n\n$border-radius: .25rem !default;\n$border-radius-lg: .3rem !default;\n$border-radius-sm: .2rem !default;\n\n$component-active-color: $white !default;\n$component-active-bg: theme-color(\"primary\") !default;\n\n$caret-width: .3em !default;\n\n$transition-base: all .2s ease-in-out !default;\n$transition-fade: opacity .15s linear !default;\n$transition-collapse: height .35s ease !default;\n\n\n// Fonts\n//\n// Font, line-height, and color for body text, headings, and more.\n\n$font-family-sans-serif: -apple-system, BlinkMacSystemFont, \"Segoe UI\", Roboto, \"Helvetica Neue\", Arial, sans-serif !default;\n$font-family-monospace: Menlo, Monaco, Consolas, \"Liberation Mono\", \"Courier New\", monospace !default;\n$font-family-base: $font-family-sans-serif !default;\n\n$font-size-base: 1rem !default; // Assumes the browser default, typically `16px`\n$font-size-lg: 1.25rem !default;\n$font-size-sm: .875rem !default;\n\n$font-weight-normal: normal !default;\n$font-weight-bold: bold !default;\n\n$font-weight-base: $font-weight-normal !default;\n$line-height-base: 1.5 !default;\n\n$h1-font-size: 2.5rem !default;\n$h2-font-size: 2rem !default;\n$h3-font-size: 1.75rem !default;\n$h4-font-size: 1.5rem !default;\n$h5-font-size: 1.25rem !default;\n$h6-font-size: 1rem !default;\n\n$headings-margin-bottom: ($spacer / 2) !default;\n$headings-font-family: inherit !default;\n$headings-font-weight: 500 !default;\n$headings-line-height: 1.1 !default;\n$headings-color: inherit !default;\n\n$display1-size: 6rem !default;\n$display2-size: 5.5rem !default;\n$display3-size: 4.5rem !default;\n$display4-size: 3.5rem !default;\n\n$display1-weight: 300 !default;\n$display2-weight: 300 !default;\n$display3-weight: 300 !default;\n$display4-weight: 300 !default;\n$display-line-height: $headings-line-height !default;\n\n$lead-font-size: 1.25rem !default;\n$lead-font-weight: 300 !default;\n\n$small-font-size: 80% !default;\n\n$text-muted: $gray-600 !default;\n\n$blockquote-small-color: $gray-600 !default;\n$blockquote-font-size: ($font-size-base * 1.25) !default;\n\n$hr-border-color: rgba($black,.1) !default;\n$hr-border-width: $border-width !default;\n\n$mark-padding: .2em !default;\n\n$dt-font-weight: $font-weight-bold !default;\n\n$kbd-box-shadow: inset 0 -.1rem 0 rgba($black,.25) !default;\n$nested-kbd-font-weight: $font-weight-bold !default;\n\n$list-inline-padding: 5px !default;\n\n$mark-bg: #fcf8e3 !default;\n\n\n// Tables\n//\n// Customizes the `.table` component with basic values, each used across all table variations.\n\n$table-cell-padding: .75rem !default;\n$table-cell-padding-sm: .3rem !default;\n\n$table-bg: transparent !default;\n$table-accent-bg: rgba($black,.05) !default;\n$table-hover-bg: rgba($black,.075) !default;\n$table-active-bg: $table-hover-bg !default;\n\n$table-border-width: $border-width !default;\n$table-border-color: $gray-200 !default;\n\n$table-head-bg: $gray-200 !default;\n$table-head-color: $gray-700 !default;\n\n$table-inverse-bg: $gray-900 !default;\n$table-inverse-accent-bg: rgba($white, .05) !default;\n$table-inverse-hover-bg: rgba($white, .075) !default;\n$table-inverse-border-color: lighten($gray-900, 7.5%) !default;\n$table-inverse-color: $body-bg !default;\n\n\n// Buttons\n//\n// For each of Bootstrap's buttons, define text, background and border color.\n\n$input-btn-padding-y: .5rem !default;\n$input-btn-padding-x: .75rem !default;\n$input-btn-line-height: 1.25 !default;\n\n$input-btn-padding-y-sm: .25rem !default;\n$input-btn-padding-x-sm: .5rem !default;\n$input-btn-line-height-sm: 1.5 !default;\n\n$input-btn-padding-y-lg: .5rem !default;\n$input-btn-padding-x-lg: 1rem !default;\n$input-btn-line-height-lg: 1.5 !default;\n\n$btn-font-weight: $font-weight-normal !default;\n$btn-box-shadow: inset 0 1px 0 rgba($white,.15), 0 1px 1px rgba($black,.075) !default;\n$btn-focus-box-shadow: 0 0 0 3px rgba(theme-color(\"primary\"), .25) !default;\n$btn-active-box-shadow: inset 0 3px 5px rgba($black,.125) !default;\n\n$btn-link-disabled-color: $gray-600 !default;\n\n$btn-block-spacing-y: .5rem !default;\n\n// Allows for customizing button radius independently from global border radius\n$btn-border-radius: $border-radius !default;\n$btn-border-radius-lg: $border-radius-lg !default;\n$btn-border-radius-sm: $border-radius-sm !default;\n\n$btn-transition: all .15s ease-in-out !default;\n\n\n// Forms\n\n$input-bg: $white !default;\n$input-disabled-bg: $gray-200 !default;\n\n$input-color: $gray-700 !default;\n$input-border-color: rgba($black,.15) !default;\n$input-btn-border-width: $border-width !default; // For form controls and buttons\n$input-box-shadow: inset 0 1px 1px rgba($black,.075) !default;\n\n$input-border-radius: $border-radius !default;\n$input-border-radius-lg: $border-radius-lg !default;\n$input-border-radius-sm: $border-radius-sm !default;\n\n$input-focus-bg: $input-bg !default;\n$input-focus-border-color: lighten(theme-color(\"primary\"), 25%) !default;\n$input-focus-box-shadow: $input-box-shadow, $btn-focus-box-shadow !default;\n$input-focus-color: $input-color !default;\n\n$input-placeholder-color: $gray-600 !default;\n\n$input-height-border: $input-btn-border-width * 2 !default;\n\n$input-height-inner: ($font-size-base * $input-btn-line-height) + ($input-btn-padding-y * 2) !default;\n$input-height: calc(#{$input-height-inner} + #{$input-height-border}) !default;\n\n$input-height-inner-sm: ($font-size-sm * $input-btn-line-height-sm) + ($input-btn-padding-y-sm * 2) !default;\n$input-height-sm: calc(#{$input-height-inner-sm} + #{$input-height-border}) !default;\n\n$input-height-inner-lg: ($font-size-sm * $input-btn-line-height-lg) + ($input-btn-padding-y-lg * 2) !default;\n$input-height-lg: calc(#{$input-height-inner-lg} + #{$input-height-border}) !default;\n\n$input-transition: border-color ease-in-out .15s, box-shadow ease-in-out .15s !default;\n\n$form-text-margin-top: .25rem !default;\n\n$form-check-margin-bottom: .5rem !default;\n$form-check-input-gutter: 1.25rem !default;\n$form-check-input-margin-y: .25rem !default;\n$form-check-input-margin-x: .25rem !default;\n\n$form-check-inline-margin-x: .75rem !default;\n\n$form-group-margin-bottom: 1rem !default;\n\n$input-group-addon-bg: $gray-200 !default;\n$input-group-addon-border-color: $input-border-color !default;\n\n$custom-control-gutter: 1.5rem !default;\n$custom-control-spacer-y: .25rem !default;\n$custom-control-spacer-x: 1rem !default;\n\n$custom-control-indicator-size: 1rem !default;\n$custom-control-indicator-bg: #ddd !default;\n$custom-control-indicator-bg-size: 50% 50% !default;\n$custom-control-indicator-box-shadow: inset 0 .25rem .25rem rgba($black,.1) !default;\n\n$custom-control-indicator-disabled-bg: $gray-200 !default;\n$custom-control-description-disabled-color: $gray-600 !default;\n\n$custom-control-indicator-checked-color: $white !default;\n$custom-control-indicator-checked-bg: theme-color(\"primary\") !default;\n$custom-control-indicator-checked-box-shadow: none !default;\n\n$custom-control-indicator-focus-box-shadow: 0 0 0 1px $body-bg, 0 0 0 3px theme-color(\"primary\") !default;\n\n$custom-control-indicator-active-color: $white !default;\n$custom-control-indicator-active-bg: lighten(theme-color(\"primary\"), 35%) !default;\n$custom-control-indicator-active-box-shadow: none !default;\n\n$custom-checkbox-indicator-border-radius: $border-radius !default;\n$custom-checkbox-indicator-icon-checked: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 8 8'%3E%3Cpath fill='#{$custom-control-indicator-checked-color}' d='M6.564.75l-3.59 3.612-1.538-1.55L0 4.26 2.974 7.25 8 2.193z'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n\n$custom-checkbox-indicator-indeterminate-bg: theme-color(\"primary\") !default;\n$custom-checkbox-indicator-indeterminate-color: $custom-control-indicator-checked-color !default;\n$custom-checkbox-indicator-icon-indeterminate: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 4 4'%3E%3Cpath stroke='#{$custom-checkbox-indicator-indeterminate-color}' d='M0 2h4'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$custom-checkbox-indicator-indeterminate-box-shadow: none !default;\n\n$custom-radio-indicator-border-radius: 50% !default;\n$custom-radio-indicator-icon-checked: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='-4 -4 8 8'%3E%3Ccircle r='3' fill='#{$custom-control-indicator-checked-color}'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n\n$custom-select-padding-y: .375rem !default;\n$custom-select-padding-x: .75rem !default;\n$custom-select-height: $input-height !default;\n$custom-select-indicator-padding: 1rem !default; // Extra padding to account for the presence of the background-image based indicator\n$custom-select-line-height: $input-btn-line-height !default;\n$custom-select-color: $input-color !default;\n$custom-select-disabled-color: $gray-600 !default;\n$custom-select-bg: $white !default;\n$custom-select-disabled-bg: $gray-200 !default;\n$custom-select-bg-size: 8px 10px !default; // In pixels because image dimensions\n$custom-select-indicator-color: #333 !default;\n$custom-select-indicator: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 4 5'%3E%3Cpath fill='#{$custom-select-indicator-color}' d='M2 0L0 2h4zm0 5L0 3h4z'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$custom-select-border-width: $input-btn-border-width !default;\n$custom-select-border-color: $input-border-color !default;\n$custom-select-border-radius: $border-radius !default;\n\n$custom-select-focus-border-color: lighten(theme-color(\"primary\"), 25%) !default;\n$custom-select-focus-box-shadow: inset 0 1px 2px rgba($black, .075), 0 0 5px rgba($custom-select-focus-border-color, .5) !default;\n\n$custom-select-font-size-sm: 75% !default;\n$custom-select-height-sm: $input-height-sm !default;\n\n$custom-file-height: 2.5rem !default;\n$custom-file-width: 14rem !default;\n$custom-file-focus-box-shadow: 0 0 0 .075rem $white, 0 0 0 .2rem theme-color(\"primary\") !default;\n\n$custom-file-padding-y: 1rem !default;\n$custom-file-padding-x: .5rem !default;\n$custom-file-line-height: 1.5 !default;\n$custom-file-color: $gray-700 !default;\n$custom-file-bg: $white !default;\n$custom-file-border-width: $border-width !default;\n$custom-file-border-color: $input-border-color !default;\n$custom-file-border-radius: $border-radius !default;\n$custom-file-box-shadow: inset 0 .2rem .4rem rgba($black,.05) !default;\n$custom-file-button-color: $custom-file-color !default;\n$custom-file-button-bg: $gray-200 !default;\n$custom-file-text: (\n placeholder: (\n en: \"Choose file...\"\n ),\n button-label: (\n en: \"Browse\"\n )\n) !default;\n\n\n// Form validation\n$form-feedback-valid-color: theme-color(\"success\") !default;\n$form-feedback-invalid-color: theme-color(\"danger\") !default;\n\n\n// Dropdowns\n//\n// Dropdown menu container and contents.\n\n$dropdown-min-width: 10rem !default;\n$dropdown-padding-y: .5rem !default;\n$dropdown-spacer: .125rem !default;\n$dropdown-bg: $white !default;\n$dropdown-border-color: rgba($black,.15) !default;\n$dropdown-border-width: $border-width !default;\n$dropdown-divider-bg: $gray-200 !default;\n$dropdown-box-shadow: 0 .5rem 1rem rgba($black,.175) !default;\n\n$dropdown-link-color: $gray-900 !default;\n$dropdown-link-hover-color: darken($gray-900, 5%) !default;\n$dropdown-link-hover-bg: $gray-100 !default;\n\n$dropdown-link-active-color: $component-active-color !default;\n$dropdown-link-active-bg: $component-active-bg !default;\n\n$dropdown-link-disabled-color: $gray-600 !default;\n\n$dropdown-item-padding-y: .25rem !default;\n$dropdown-item-padding-x: 1.5rem !default;\n\n$dropdown-header-color: $gray-600 !default;\n\n\n// Z-index master list\n//\n// Warning: Avoid customizing these values. They're used for a bird's eye view\n// of components dependent on the z-axis and are designed to all work together.\n\n$zindex-dropdown: 1000 !default;\n$zindex-sticky: 1020 !default;\n$zindex-fixed: 1030 !default;\n$zindex-modal-backdrop: 1040 !default;\n$zindex-modal: 1050 !default;\n$zindex-popover: 1060 !default;\n$zindex-tooltip: 1070 !default;\n\n// Navs\n\n$nav-link-padding-y: .5rem !default;\n$nav-link-padding-x: 1rem !default;\n$nav-link-disabled-color: $gray-600 !default;\n\n$nav-tabs-border-color: #ddd !default;\n$nav-tabs-border-width: $border-width !default;\n$nav-tabs-border-radius: $border-radius !default;\n$nav-tabs-link-hover-border-color: $gray-200 !default;\n$nav-tabs-link-active-color: $gray-700 !default;\n$nav-tabs-link-active-bg: $body-bg !default;\n$nav-tabs-link-active-border-color: #ddd !default;\n\n$nav-pills-border-radius: $border-radius !default;\n$nav-pills-link-active-color: $component-active-color !default;\n$nav-pills-link-active-bg: $component-active-bg !default;\n\n// Navbar\n\n$navbar-padding-y: ($spacer / 2) !default;\n$navbar-padding-x: $spacer !default;\n\n$navbar-brand-font-size: $font-size-lg !default;\n// Compute the navbar-brand padding-y so the navbar-brand will have the same height as navbar-text and nav-link\n$nav-link-height: $navbar-brand-font-size * $line-height-base !default;\n$navbar-brand-height: ($font-size-base * $line-height-base + $nav-link-padding-y * 2) !default;\n$navbar-brand-padding-y: ($navbar-brand-height - $nav-link-height) / 2 !default;\n\n$navbar-toggler-padding-y: .25rem !default;\n$navbar-toggler-padding-x: .75rem !default;\n$navbar-toggler-font-size: $font-size-lg !default;\n$navbar-toggler-border-radius: $btn-border-radius !default;\n\n$navbar-dark-color: rgba($white,.5) !default;\n$navbar-dark-hover-color: rgba($white,.75) !default;\n$navbar-dark-active-color: rgba($white,1) !default;\n$navbar-dark-disabled-color: rgba($white,.25) !default;\n$navbar-dark-toggler-icon-bg: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg viewBox='0 0 30 30' xmlns='http://www.w3.org/2000/svg'%3E%3Cpath stroke='#{$navbar-dark-color}' stroke-width='2' stroke-linecap='round' stroke-miterlimit='10' d='M4 7h22M4 15h22M4 23h22'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$navbar-dark-toggler-border-color: rgba($white,.1) !default;\n\n$navbar-light-color: rgba($black,.5) !default;\n$navbar-light-hover-color: rgba($black,.7) !default;\n$navbar-light-active-color: rgba($black,.9) !default;\n$navbar-light-disabled-color: rgba($black,.3) !default;\n$navbar-light-toggler-icon-bg: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg viewBox='0 0 30 30' xmlns='http://www.w3.org/2000/svg'%3E%3Cpath stroke='#{$navbar-light-color}' stroke-width='2' stroke-linecap='round' stroke-miterlimit='10' d='M4 7h22M4 15h22M4 23h22'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$navbar-light-toggler-border-color: rgba($black,.1) !default;\n\n// Pagination\n\n$pagination-padding-y: .5rem !default;\n$pagination-padding-x: .75rem !default;\n$pagination-padding-y-sm: .25rem !default;\n$pagination-padding-x-sm: .5rem !default;\n$pagination-padding-y-lg: .75rem !default;\n$pagination-padding-x-lg: 1.5rem !default;\n$pagination-line-height: 1.25 !default;\n\n$pagination-color: $link-color !default;\n$pagination-bg: $white !default;\n$pagination-border-width: $border-width !default;\n$pagination-border-color: #ddd !default;\n\n$pagination-hover-color: $link-hover-color !default;\n$pagination-hover-bg: $gray-200 !default;\n$pagination-hover-border-color: #ddd !default;\n\n$pagination-active-color: $white !default;\n$pagination-active-bg: theme-color(\"primary\") !default;\n$pagination-active-border-color: theme-color(\"primary\") !default;\n\n$pagination-disabled-color: $gray-600 !default;\n$pagination-disabled-bg: $white !default;\n$pagination-disabled-border-color: #ddd !default;\n\n\n// Jumbotron\n\n$jumbotron-padding: 2rem !default;\n$jumbotron-bg: $gray-200 !default;\n\n\n// Cards\n\n$card-spacer-y: .75rem !default;\n$card-spacer-x: 1.25rem !default;\n$card-border-width: 1px !default;\n$card-border-radius: $border-radius !default;\n$card-border-color: rgba($black,.125) !default;\n$card-inner-border-radius: calc(#{$card-border-radius} - #{$card-border-width}) !default;\n$card-cap-bg: rgba($black, .03) !default;\n$card-bg: $white !default;\n\n$card-img-overlay-padding: 1.25rem !default;\n\n$card-deck-margin: ($grid-gutter-width / 2) !default;\n\n$card-columns-count: 3 !default;\n$card-columns-gap: 1.25rem !default;\n$card-columns-margin: $card-spacer-y !default;\n\n\n// Tooltips\n\n$tooltip-max-width: 200px !default;\n$tooltip-color: $white !default;\n$tooltip-bg: $black !default;\n$tooltip-opacity: .9 !default;\n$tooltip-padding-y: 3px !default;\n$tooltip-padding-x: 8px !default;\n$tooltip-margin: 0 !default;\n\n\n$tooltip-arrow-width: 5px !default;\n$tooltip-arrow-height: 5px !default;\n$tooltip-arrow-color: $tooltip-bg !default;\n\n\n// Popovers\n\n$popover-inner-padding: 1px !default;\n$popover-bg: $white !default;\n$popover-max-width: 276px !default;\n$popover-border-width: $border-width !default;\n$popover-border-color: rgba($black,.2) !default;\n$popover-box-shadow: 0 5px 10px rgba($black,.2) !default;\n\n$popover-header-bg: darken($popover-bg, 3%) !default;\n$popover-header-color: $headings-color !default;\n$popover-header-padding-y: 8px !default;\n$popover-header-padding-x: 14px !default;\n\n$popover-body-color: $body-color !default;\n$popover-body-padding-y: 9px !default;\n$popover-body-padding-x: 14px !default;\n\n$popover-arrow-width: 10px !default;\n$popover-arrow-height: 5px !default;\n$popover-arrow-color: $popover-bg !default;\n\n$popover-arrow-outer-width: ($popover-arrow-width + 1px) !default;\n$popover-arrow-outer-color: fade-in($popover-border-color, .05) !default;\n\n\n// Badges\n\n$badge-color: $white !default;\n$badge-font-size: 75% !default;\n$badge-font-weight: $font-weight-bold !default;\n$badge-padding-y: .25em !default;\n$badge-padding-x: .4em !default;\n\n$badge-pill-padding-x: .6em !default;\n// Use a higher than normal value to ensure completely rounded edges when\n// customizing padding or font-size on labels.\n$badge-pill-border-radius: 10rem !default;\n\n\n// Modals\n\n// Padding applied to the modal body\n$modal-inner-padding: 15px !default;\n\n$modal-dialog-margin: 10px !default;\n$modal-dialog-margin-y-sm-up: 30px !default;\n\n$modal-title-line-height: $line-height-base !default;\n\n$modal-content-bg: $white !default;\n$modal-content-border-color: rgba($black,.2) !default;\n$modal-content-border-width: $border-width !default;\n$modal-content-box-shadow-xs: 0 3px 9px rgba($black,.5) !default;\n$modal-content-box-shadow-sm-up: 0 5px 15px rgba($black,.5) !default;\n\n$modal-backdrop-bg: $black !default;\n$modal-backdrop-opacity: .5 !default;\n$modal-header-border-color: $gray-200 !default;\n$modal-footer-border-color: $modal-header-border-color !default;\n$modal-header-border-width: $modal-content-border-width !default;\n$modal-footer-border-width: $modal-header-border-width !default;\n$modal-header-padding: 15px !default;\n\n$modal-lg: 800px !default;\n$modal-md: 500px !default;\n$modal-sm: 300px !default;\n\n$modal-transition: transform .3s ease-out !default;\n\n\n// Alerts\n//\n// Define alert colors, border radius, and padding.\n\n$alert-padding-y: .75rem !default;\n$alert-padding-x: 1.25rem !default;\n$alert-margin-bottom: 1rem !default;\n$alert-border-radius: $border-radius !default;\n$alert-link-font-weight: $font-weight-bold !default;\n$alert-border-width: $border-width !default;\n\n\n// Progress bars\n\n$progress-height: 1rem !default;\n$progress-font-size: .75rem !default;\n$progress-bg: $gray-200 !default;\n$progress-border-radius: $border-radius !default;\n$progress-box-shadow: inset 0 .1rem .1rem rgba($black,.1) !default;\n$progress-bar-color: $white !default;\n$progress-bar-bg: theme-color(\"primary\") !default;\n$progress-bar-animation-timing: 1s linear infinite !default;\n$progress-bar-transition: width .6s ease !default;\n\n// List group\n\n$list-group-bg: $white !default;\n$list-group-border-color: rgba($black,.125) !default;\n$list-group-border-width: $border-width !default;\n$list-group-border-radius: $border-radius !default;\n\n$list-group-item-padding-y: .75rem !default;\n$list-group-item-padding-x: 1.25rem !default;\n\n$list-group-hover-bg: $gray-100 !default;\n$list-group-active-color: $component-active-color !default;\n$list-group-active-bg: $component-active-bg !default;\n$list-group-active-border-color: $list-group-active-bg !default;\n\n$list-group-disabled-color: $gray-600 !default;\n$list-group-disabled-bg: $list-group-bg !default;\n\n$list-group-action-color: $gray-700 !default;\n$list-group-action-hover-color: $list-group-action-color !default;\n\n$list-group-action-active-color: $body-color !default;\n$list-group-action-active-bg: $gray-200 !default;\n\n\n// Image thumbnails\n\n$thumbnail-padding: .25rem !default;\n$thumbnail-bg: $body-bg !default;\n$thumbnail-border-width: $border-width !default;\n$thumbnail-border-color: #ddd !default;\n$thumbnail-border-radius: $border-radius !default;\n$thumbnail-box-shadow: 0 1px 2px rgba($black,.075) !default;\n$thumbnail-transition: all .2s ease-in-out !default;\n\n\n// Figures\n\n$figure-caption-font-size: 90% !default;\n$figure-caption-color: $gray-600 !default;\n\n\n// Breadcrumbs\n\n$breadcrumb-padding-y: .75rem !default;\n$breadcrumb-padding-x: 1rem !default;\n$breadcrumb-item-padding: .5rem !default;\n\n$breadcrumb-bg: $gray-200 !default;\n$breadcrumb-divider-color: $gray-600 !default;\n$breadcrumb-active-color: $gray-600 !default;\n$breadcrumb-divider: \"/\" !default;\n\n\n// Carousel\n\n$carousel-control-color: $white !default;\n$carousel-control-width: 15% !default;\n$carousel-control-opacity: .5 !default;\n\n$carousel-indicator-width: 30px !default;\n$carousel-indicator-height: 3px !default;\n$carousel-indicator-spacer: 3px !default;\n$carousel-indicator-active-bg: $white !default;\n\n$carousel-caption-width: 70% !default;\n$carousel-caption-color: $white !default;\n\n$carousel-control-icon-width: 20px !default;\n\n$carousel-control-prev-icon-bg: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' fill='#{$carousel-control-color}' viewBox='0 0 8 8'%3E%3Cpath d='M4 0l-4 4 4 4 1.5-1.5-2.5-2.5 2.5-2.5-1.5-1.5z'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$carousel-control-next-icon-bg: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' fill='#{$carousel-control-color}' viewBox='0 0 8 8'%3E%3Cpath d='M1.5 0l-1.5 1.5 2.5 2.5-2.5 2.5 1.5 1.5 4-4-4-4z'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n\n$carousel-transition: transform .6s ease !default;\n\n\n// Close\n\n$close-font-size: $font-size-base * 1.5 !default;\n$close-font-weight: $font-weight-bold !default;\n$close-color: $black !default;\n$close-text-shadow: 0 1px 0 $white !default;\n\n// Code\n\n$code-font-size: 90% !default;\n$code-padding-y: .2rem !default;\n$code-padding-x: .4rem !default;\n$code-color: #bd4147 !default;\n$code-bg: $gray-100 !default;\n\n$kbd-color: $white !default;\n$kbd-bg: $gray-900 !default;\n\n$pre-color: $gray-900 !default;\n$pre-scrollable-max-height: 340px !default;\n","// Framework grid generation\n//\n// Used only by Bootstrap to generate the correct number of grid classes given\n// any value of `$grid-columns`.\n\n@mixin make-grid-columns($columns: $grid-columns, $gutter: $grid-gutter-width, $breakpoints: $grid-breakpoints) {\n // Common properties for all breakpoints\n %grid-column {\n position: relative;\n width: 100%;\n min-height: 1px; // Prevent columns from collapsing when empty\n padding-right: ($gutter / 2);\n padding-left: ($gutter / 2);\n }\n\n @each $breakpoint in map-keys($breakpoints) {\n $infix: breakpoint-infix($breakpoint, $breakpoints);\n\n // Allow columns to stretch full width below their breakpoints\n @for $i from 1 through $columns {\n .col#{$infix}-#{$i} {\n @extend %grid-column;\n }\n }\n .col#{$infix},\n .col#{$infix}-auto {\n @extend %grid-column;\n }\n\n @include media-breakpoint-up($breakpoint, $breakpoints) {\n // Provide basic `.col-{bp}` classes for equal-width flexbox columns\n .col#{$infix} {\n flex-basis: 0;\n flex-grow: 1;\n max-width: 100%;\n }\n .col#{$infix}-auto {\n flex: 0 0 auto;\n width: auto;\n max-width: none; // Reset earlier grid tiers\n }\n\n @for $i from 1 through $columns {\n .col#{$infix}-#{$i} {\n @include make-col($i, $columns);\n }\n }\n\n @for $i from 1 through $columns {\n .order#{$infix}-#{$i} {\n order: $i;\n }\n }\n }\n }\n}\n","// Flex variation\n//\n// Custom styles for additional flex alignment options.\n\n@each $breakpoint in map-keys($grid-breakpoints) {\n @include media-breakpoint-up($breakpoint) {\n $infix: breakpoint-infix($breakpoint, $grid-breakpoints);\n\n .flex#{$infix}-row { flex-direction: row !important; }\n .flex#{$infix}-column { flex-direction: column !important; }\n .flex#{$infix}-row-reverse { flex-direction: row-reverse !important; }\n .flex#{$infix}-column-reverse { flex-direction: column-reverse !important; }\n\n .flex#{$infix}-wrap { flex-wrap: wrap !important; }\n .flex#{$infix}-nowrap { flex-wrap: nowrap !important; }\n .flex#{$infix}-wrap-reverse { flex-wrap: wrap-reverse !important; }\n\n .justify-content#{$infix}-start { justify-content: flex-start !important; }\n .justify-content#{$infix}-end { justify-content: flex-end !important; }\n .justify-content#{$infix}-center { justify-content: center !important; }\n .justify-content#{$infix}-between { justify-content: space-between !important; }\n .justify-content#{$infix}-around { justify-content: space-around !important; }\n\n .align-items#{$infix}-start { align-items: flex-start !important; }\n .align-items#{$infix}-end { align-items: flex-end !important; }\n .align-items#{$infix}-center { align-items: center !important; }\n .align-items#{$infix}-baseline { align-items: baseline !important; }\n .align-items#{$infix}-stretch { align-items: stretch !important; }\n\n .align-content#{$infix}-start { align-content: flex-start !important; }\n .align-content#{$infix}-end { align-content: flex-end !important; }\n .align-content#{$infix}-center { align-content: center !important; }\n .align-content#{$infix}-between { align-content: space-between !important; }\n .align-content#{$infix}-around { align-content: space-around !important; }\n .align-content#{$infix}-stretch { align-content: stretch !important; }\n\n .align-self#{$infix}-auto { align-self: auto !important; }\n .align-self#{$infix}-start { align-self: flex-start !important; }\n .align-self#{$infix}-end { align-self: flex-end !important; }\n .align-self#{$infix}-center { align-self: center !important; }\n .align-self#{$infix}-baseline { align-self: baseline !important; }\n .align-self#{$infix}-stretch { align-self: stretch !important; }\n }\n}\n"]} \ No newline at end of file diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-grid.min.css b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-grid.min.css new file mode 100644 index 0000000..b775555 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-grid.min.css @@ -0,0 +1,2 @@ +@-ms-viewport{width:device-width}html{box-sizing:border-box;-ms-overflow-style:scrollbar}*,::after,::before{box-sizing:inherit}.container{margin-right:auto;margin-left:auto;padding-right:15px;padding-left:15px;width:100%}@media (min-width:576px){.container{max-width:540px}}@media (min-width:768px){.container{max-width:720px}}@media (min-width:992px){.container{max-width:960px}}@media (min-width:1200px){.container{max-width:1140px}}.container-fluid{width:100%;margin-right:auto;margin-left:auto;padding-right:15px;padding-left:15px;width:100%}.row{display:-ms-flexbox;display:flex;-ms-flex-wrap:wrap;flex-wrap:wrap;margin-right:-15px;margin-left:-15px}.no-gutters{margin-right:0;margin-left:0}.no-gutters>.col,.no-gutters>[class*=col-]{padding-right:0;padding-left:0}.col,.col-1,.col-10,.col-11,.col-12,.col-2,.col-3,.col-4,.col-5,.col-6,.col-7,.col-8,.col-9,.col-auto,.col-lg,.col-lg-1,.col-lg-10,.col-lg-11,.col-lg-12,.col-lg-2,.col-lg-3,.col-lg-4,.col-lg-5,.col-lg-6,.col-lg-7,.col-lg-8,.col-lg-9,.col-lg-auto,.col-md,.col-md-1,.col-md-10,.col-md-11,.col-md-12,.col-md-2,.col-md-3,.col-md-4,.col-md-5,.col-md-6,.col-md-7,.col-md-8,.col-md-9,.col-md-auto,.col-sm,.col-sm-1,.col-sm-10,.col-sm-11,.col-sm-12,.col-sm-2,.col-sm-3,.col-sm-4,.col-sm-5,.col-sm-6,.col-sm-7,.col-sm-8,.col-sm-9,.col-sm-auto,.col-xl,.col-xl-1,.col-xl-10,.col-xl-11,.col-xl-12,.col-xl-2,.col-xl-3,.col-xl-4,.col-xl-5,.col-xl-6,.col-xl-7,.col-xl-8,.col-xl-9,.col-xl-auto{position:relative;width:100%;min-height:1px;padding-right:15px;padding-left:15px}.col{-ms-flex-preferred-size:0;flex-basis:0;-ms-flex-positive:1;flex-grow:1;max-width:100%}.col-auto{-ms-flex:0 0 auto;flex:0 0 auto;width:auto;max-width:none}.col-1{-ms-flex:0 0 8.333333%;flex:0 0 8.333333%;max-width:8.333333%}.col-2{-ms-flex:0 0 16.666667%;flex:0 0 16.666667%;max-width:16.666667%}.col-3{-ms-flex:0 0 25%;flex:0 0 25%;max-width:25%}.col-4{-ms-flex:0 0 33.333333%;flex:0 0 33.333333%;max-width:33.333333%}.col-5{-ms-flex:0 0 41.666667%;flex:0 0 41.666667%;max-width:41.666667%}.col-6{-ms-flex:0 0 50%;flex:0 0 50%;max-width:50%}.col-7{-ms-flex:0 0 58.333333%;flex:0 0 58.333333%;max-width:58.333333%}.col-8{-ms-flex:0 0 66.666667%;flex:0 0 66.666667%;max-width:66.666667%}.col-9{-ms-flex:0 0 75%;flex:0 0 75%;max-width:75%}.col-10{-ms-flex:0 0 83.333333%;flex:0 0 83.333333%;max-width:83.333333%}.col-11{-ms-flex:0 0 91.666667%;flex:0 0 91.666667%;max-width:91.666667%}.col-12{-ms-flex:0 0 100%;flex:0 0 100%;max-width:100%}.order-1{-ms-flex-order:1;order:1}.order-2{-ms-flex-order:2;order:2}.order-3{-ms-flex-order:3;order:3}.order-4{-ms-flex-order:4;order:4}.order-5{-ms-flex-order:5;order:5}.order-6{-ms-flex-order:6;order:6}.order-7{-ms-flex-order:7;order:7}.order-8{-ms-flex-order:8;order:8}.order-9{-ms-flex-order:9;order:9}.order-10{-ms-flex-order:10;order:10}.order-11{-ms-flex-order:11;order:11}.order-12{-ms-flex-order:12;order:12}@media (min-width:576px){.col-sm{-ms-flex-preferred-size:0;flex-basis:0;-ms-flex-positive:1;flex-grow:1;max-width:100%}.col-sm-auto{-ms-flex:0 0 auto;flex:0 0 auto;width:auto;max-width:none}.col-sm-1{-ms-flex:0 0 8.333333%;flex:0 0 8.333333%;max-width:8.333333%}.col-sm-2{-ms-flex:0 0 16.666667%;flex:0 0 16.666667%;max-width:16.666667%}.col-sm-3{-ms-flex:0 0 25%;flex:0 0 25%;max-width:25%}.col-sm-4{-ms-flex:0 0 33.333333%;flex:0 0 33.333333%;max-width:33.333333%}.col-sm-5{-ms-flex:0 0 41.666667%;flex:0 0 41.666667%;max-width:41.666667%}.col-sm-6{-ms-flex:0 0 50%;flex:0 0 50%;max-width:50%}.col-sm-7{-ms-flex:0 0 58.333333%;flex:0 0 58.333333%;max-width:58.333333%}.col-sm-8{-ms-flex:0 0 66.666667%;flex:0 0 66.666667%;max-width:66.666667%}.col-sm-9{-ms-flex:0 0 75%;flex:0 0 75%;max-width:75%}.col-sm-10{-ms-flex:0 0 83.333333%;flex:0 0 83.333333%;max-width:83.333333%}.col-sm-11{-ms-flex:0 0 91.666667%;flex:0 0 91.666667%;max-width:91.666667%}.col-sm-12{-ms-flex:0 0 100%;flex:0 0 100%;max-width:100%}.order-sm-1{-ms-flex-order:1;order:1}.order-sm-2{-ms-flex-order:2;order:2}.order-sm-3{-ms-flex-order:3;order:3}.order-sm-4{-ms-flex-order:4;order:4}.order-sm-5{-ms-flex-order:5;order:5}.order-sm-6{-ms-flex-order:6;order:6}.order-sm-7{-ms-flex-order:7;order:7}.order-sm-8{-ms-flex-order:8;order:8}.order-sm-9{-ms-flex-order:9;order:9}.order-sm-10{-ms-flex-order:10;order:10}.order-sm-11{-ms-flex-order:11;order:11}.order-sm-12{-ms-flex-order:12;order:12}}@media (min-width:768px){.col-md{-ms-flex-preferred-size:0;flex-basis:0;-ms-flex-positive:1;flex-grow:1;max-width:100%}.col-md-auto{-ms-flex:0 0 auto;flex:0 0 auto;width:auto;max-width:none}.col-md-1{-ms-flex:0 0 8.333333%;flex:0 0 8.333333%;max-width:8.333333%}.col-md-2{-ms-flex:0 0 16.666667%;flex:0 0 16.666667%;max-width:16.666667%}.col-md-3{-ms-flex:0 0 25%;flex:0 0 25%;max-width:25%}.col-md-4{-ms-flex:0 0 33.333333%;flex:0 0 33.333333%;max-width:33.333333%}.col-md-5{-ms-flex:0 0 41.666667%;flex:0 0 41.666667%;max-width:41.666667%}.col-md-6{-ms-flex:0 0 50%;flex:0 0 50%;max-width:50%}.col-md-7{-ms-flex:0 0 58.333333%;flex:0 0 58.333333%;max-width:58.333333%}.col-md-8{-ms-flex:0 0 66.666667%;flex:0 0 66.666667%;max-width:66.666667%}.col-md-9{-ms-flex:0 0 75%;flex:0 0 75%;max-width:75%}.col-md-10{-ms-flex:0 0 83.333333%;flex:0 0 83.333333%;max-width:83.333333%}.col-md-11{-ms-flex:0 0 91.666667%;flex:0 0 91.666667%;max-width:91.666667%}.col-md-12{-ms-flex:0 0 100%;flex:0 0 100%;max-width:100%}.order-md-1{-ms-flex-order:1;order:1}.order-md-2{-ms-flex-order:2;order:2}.order-md-3{-ms-flex-order:3;order:3}.order-md-4{-ms-flex-order:4;order:4}.order-md-5{-ms-flex-order:5;order:5}.order-md-6{-ms-flex-order:6;order:6}.order-md-7{-ms-flex-order:7;order:7}.order-md-8{-ms-flex-order:8;order:8}.order-md-9{-ms-flex-order:9;order:9}.order-md-10{-ms-flex-order:10;order:10}.order-md-11{-ms-flex-order:11;order:11}.order-md-12{-ms-flex-order:12;order:12}}@media (min-width:992px){.col-lg{-ms-flex-preferred-size:0;flex-basis:0;-ms-flex-positive:1;flex-grow:1;max-width:100%}.col-lg-auto{-ms-flex:0 0 auto;flex:0 0 auto;width:auto;max-width:none}.col-lg-1{-ms-flex:0 0 8.333333%;flex:0 0 8.333333%;max-width:8.333333%}.col-lg-2{-ms-flex:0 0 16.666667%;flex:0 0 16.666667%;max-width:16.666667%}.col-lg-3{-ms-flex:0 0 25%;flex:0 0 25%;max-width:25%}.col-lg-4{-ms-flex:0 0 33.333333%;flex:0 0 33.333333%;max-width:33.333333%}.col-lg-5{-ms-flex:0 0 41.666667%;flex:0 0 41.666667%;max-width:41.666667%}.col-lg-6{-ms-flex:0 0 50%;flex:0 0 50%;max-width:50%}.col-lg-7{-ms-flex:0 0 58.333333%;flex:0 0 58.333333%;max-width:58.333333%}.col-lg-8{-ms-flex:0 0 66.666667%;flex:0 0 66.666667%;max-width:66.666667%}.col-lg-9{-ms-flex:0 0 75%;flex:0 0 75%;max-width:75%}.col-lg-10{-ms-flex:0 0 83.333333%;flex:0 0 83.333333%;max-width:83.333333%}.col-lg-11{-ms-flex:0 0 91.666667%;flex:0 0 91.666667%;max-width:91.666667%}.col-lg-12{-ms-flex:0 0 100%;flex:0 0 100%;max-width:100%}.order-lg-1{-ms-flex-order:1;order:1}.order-lg-2{-ms-flex-order:2;order:2}.order-lg-3{-ms-flex-order:3;order:3}.order-lg-4{-ms-flex-order:4;order:4}.order-lg-5{-ms-flex-order:5;order:5}.order-lg-6{-ms-flex-order:6;order:6}.order-lg-7{-ms-flex-order:7;order:7}.order-lg-8{-ms-flex-order:8;order:8}.order-lg-9{-ms-flex-order:9;order:9}.order-lg-10{-ms-flex-order:10;order:10}.order-lg-11{-ms-flex-order:11;order:11}.order-lg-12{-ms-flex-order:12;order:12}}@media (min-width:1200px){.col-xl{-ms-flex-preferred-size:0;flex-basis:0;-ms-flex-positive:1;flex-grow:1;max-width:100%}.col-xl-auto{-ms-flex:0 0 auto;flex:0 0 auto;width:auto;max-width:none}.col-xl-1{-ms-flex:0 0 8.333333%;flex:0 0 8.333333%;max-width:8.333333%}.col-xl-2{-ms-flex:0 0 16.666667%;flex:0 0 16.666667%;max-width:16.666667%}.col-xl-3{-ms-flex:0 0 25%;flex:0 0 25%;max-width:25%}.col-xl-4{-ms-flex:0 0 33.333333%;flex:0 0 33.333333%;max-width:33.333333%}.col-xl-5{-ms-flex:0 0 41.666667%;flex:0 0 41.666667%;max-width:41.666667%}.col-xl-6{-ms-flex:0 0 50%;flex:0 0 50%;max-width:50%}.col-xl-7{-ms-flex:0 0 58.333333%;flex:0 0 58.333333%;max-width:58.333333%}.col-xl-8{-ms-flex:0 0 66.666667%;flex:0 0 66.666667%;max-width:66.666667%}.col-xl-9{-ms-flex:0 0 75%;flex:0 0 75%;max-width:75%}.col-xl-10{-ms-flex:0 0 83.333333%;flex:0 0 83.333333%;max-width:83.333333%}.col-xl-11{-ms-flex:0 0 91.666667%;flex:0 0 91.666667%;max-width:91.666667%}.col-xl-12{-ms-flex:0 0 100%;flex:0 0 100%;max-width:100%}.order-xl-1{-ms-flex-order:1;order:1}.order-xl-2{-ms-flex-order:2;order:2}.order-xl-3{-ms-flex-order:3;order:3}.order-xl-4{-ms-flex-order:4;order:4}.order-xl-5{-ms-flex-order:5;order:5}.order-xl-6{-ms-flex-order:6;order:6}.order-xl-7{-ms-flex-order:7;order:7}.order-xl-8{-ms-flex-order:8;order:8}.order-xl-9{-ms-flex-order:9;order:9}.order-xl-10{-ms-flex-order:10;order:10}.order-xl-11{-ms-flex-order:11;order:11}.order-xl-12{-ms-flex-order:12;order:12}}.flex-row{-ms-flex-direction:row!important;flex-direction:row!important}.flex-column{-ms-flex-direction:column!important;flex-direction:column!important}.flex-row-reverse{-ms-flex-direction:row-reverse!important;flex-direction:row-reverse!important}.flex-column-reverse{-ms-flex-direction:column-reverse!important;flex-direction:column-reverse!important}.flex-wrap{-ms-flex-wrap:wrap!important;flex-wrap:wrap!important}.flex-nowrap{-ms-flex-wrap:nowrap!important;flex-wrap:nowrap!important}.flex-wrap-reverse{-ms-flex-wrap:wrap-reverse!important;flex-wrap:wrap-reverse!important}.justify-content-start{-ms-flex-pack:start!important;justify-content:flex-start!important}.justify-content-end{-ms-flex-pack:end!important;justify-content:flex-end!important}.justify-content-center{-ms-flex-pack:center!important;justify-content:center!important}.justify-content-between{-ms-flex-pack:justify!important;justify-content:space-between!important}.justify-content-around{-ms-flex-pack:distribute!important;justify-content:space-around!important}.align-items-start{-ms-flex-align:start!important;align-items:flex-start!important}.align-items-end{-ms-flex-align:end!important;align-items:flex-end!important}.align-items-center{-ms-flex-align:center!important;align-items:center!important}.align-items-baseline{-ms-flex-align:baseline!important;align-items:baseline!important}.align-items-stretch{-ms-flex-align:stretch!important;align-items:stretch!important}.align-content-start{-ms-flex-line-pack:start!important;align-content:flex-start!important}.align-content-end{-ms-flex-line-pack:end!important;align-content:flex-end!important}.align-content-center{-ms-flex-line-pack:center!important;align-content:center!important}.align-content-between{-ms-flex-line-pack:justify!important;align-content:space-between!important}.align-content-around{-ms-flex-line-pack:distribute!important;align-content:space-around!important}.align-content-stretch{-ms-flex-line-pack:stretch!important;align-content:stretch!important}.align-self-auto{-ms-flex-item-align:auto!important;align-self:auto!important}.align-self-start{-ms-flex-item-align:start!important;align-self:flex-start!important}.align-self-end{-ms-flex-item-align:end!important;align-self:flex-end!important}.align-self-center{-ms-flex-item-align:center!important;align-self:center!important}.align-self-baseline{-ms-flex-item-align:baseline!important;align-self:baseline!important}.align-self-stretch{-ms-flex-item-align:stretch!important;align-self:stretch!important}@media (min-width:576px){.flex-sm-row{-ms-flex-direction:row!important;flex-direction:row!important}.flex-sm-column{-ms-flex-direction:column!important;flex-direction:column!important}.flex-sm-row-reverse{-ms-flex-direction:row-reverse!important;flex-direction:row-reverse!important}.flex-sm-column-reverse{-ms-flex-direction:column-reverse!important;flex-direction:column-reverse!important}.flex-sm-wrap{-ms-flex-wrap:wrap!important;flex-wrap:wrap!important}.flex-sm-nowrap{-ms-flex-wrap:nowrap!important;flex-wrap:nowrap!important}.flex-sm-wrap-reverse{-ms-flex-wrap:wrap-reverse!important;flex-wrap:wrap-reverse!important}.justify-content-sm-start{-ms-flex-pack:start!important;justify-content:flex-start!important}.justify-content-sm-end{-ms-flex-pack:end!important;justify-content:flex-end!important}.justify-content-sm-center{-ms-flex-pack:center!important;justify-content:center!important}.justify-content-sm-between{-ms-flex-pack:justify!important;justify-content:space-between!important}.justify-content-sm-around{-ms-flex-pack:distribute!important;justify-content:space-around!important}.align-items-sm-start{-ms-flex-align:start!important;align-items:flex-start!important}.align-items-sm-end{-ms-flex-align:end!important;align-items:flex-end!important}.align-items-sm-center{-ms-flex-align:center!important;align-items:center!important}.align-items-sm-baseline{-ms-flex-align:baseline!important;align-items:baseline!important}.align-items-sm-stretch{-ms-flex-align:stretch!important;align-items:stretch!important}.align-content-sm-start{-ms-flex-line-pack:start!important;align-content:flex-start!important}.align-content-sm-end{-ms-flex-line-pack:end!important;align-content:flex-end!important}.align-content-sm-center{-ms-flex-line-pack:center!important;align-content:center!important}.align-content-sm-between{-ms-flex-line-pack:justify!important;align-content:space-between!important}.align-content-sm-around{-ms-flex-line-pack:distribute!important;align-content:space-around!important}.align-content-sm-stretch{-ms-flex-line-pack:stretch!important;align-content:stretch!important}.align-self-sm-auto{-ms-flex-item-align:auto!important;align-self:auto!important}.align-self-sm-start{-ms-flex-item-align:start!important;align-self:flex-start!important}.align-self-sm-end{-ms-flex-item-align:end!important;align-self:flex-end!important}.align-self-sm-center{-ms-flex-item-align:center!important;align-self:center!important}.align-self-sm-baseline{-ms-flex-item-align:baseline!important;align-self:baseline!important}.align-self-sm-stretch{-ms-flex-item-align:stretch!important;align-self:stretch!important}}@media (min-width:768px){.flex-md-row{-ms-flex-direction:row!important;flex-direction:row!important}.flex-md-column{-ms-flex-direction:column!important;flex-direction:column!important}.flex-md-row-reverse{-ms-flex-direction:row-reverse!important;flex-direction:row-reverse!important}.flex-md-column-reverse{-ms-flex-direction:column-reverse!important;flex-direction:column-reverse!important}.flex-md-wrap{-ms-flex-wrap:wrap!important;flex-wrap:wrap!important}.flex-md-nowrap{-ms-flex-wrap:nowrap!important;flex-wrap:nowrap!important}.flex-md-wrap-reverse{-ms-flex-wrap:wrap-reverse!important;flex-wrap:wrap-reverse!important}.justify-content-md-start{-ms-flex-pack:start!important;justify-content:flex-start!important}.justify-content-md-end{-ms-flex-pack:end!important;justify-content:flex-end!important}.justify-content-md-center{-ms-flex-pack:center!important;justify-content:center!important}.justify-content-md-between{-ms-flex-pack:justify!important;justify-content:space-between!important}.justify-content-md-around{-ms-flex-pack:distribute!important;justify-content:space-around!important}.align-items-md-start{-ms-flex-align:start!important;align-items:flex-start!important}.align-items-md-end{-ms-flex-align:end!important;align-items:flex-end!important}.align-items-md-center{-ms-flex-align:center!important;align-items:center!important}.align-items-md-baseline{-ms-flex-align:baseline!important;align-items:baseline!important}.align-items-md-stretch{-ms-flex-align:stretch!important;align-items:stretch!important}.align-content-md-start{-ms-flex-line-pack:start!important;align-content:flex-start!important}.align-content-md-end{-ms-flex-line-pack:end!important;align-content:flex-end!important}.align-content-md-center{-ms-flex-line-pack:center!important;align-content:center!important}.align-content-md-between{-ms-flex-line-pack:justify!important;align-content:space-between!important}.align-content-md-around{-ms-flex-line-pack:distribute!important;align-content:space-around!important}.align-content-md-stretch{-ms-flex-line-pack:stretch!important;align-content:stretch!important}.align-self-md-auto{-ms-flex-item-align:auto!important;align-self:auto!important}.align-self-md-start{-ms-flex-item-align:start!important;align-self:flex-start!important}.align-self-md-end{-ms-flex-item-align:end!important;align-self:flex-end!important}.align-self-md-center{-ms-flex-item-align:center!important;align-self:center!important}.align-self-md-baseline{-ms-flex-item-align:baseline!important;align-self:baseline!important}.align-self-md-stretch{-ms-flex-item-align:stretch!important;align-self:stretch!important}}@media (min-width:992px){.flex-lg-row{-ms-flex-direction:row!important;flex-direction:row!important}.flex-lg-column{-ms-flex-direction:column!important;flex-direction:column!important}.flex-lg-row-reverse{-ms-flex-direction:row-reverse!important;flex-direction:row-reverse!important}.flex-lg-column-reverse{-ms-flex-direction:column-reverse!important;flex-direction:column-reverse!important}.flex-lg-wrap{-ms-flex-wrap:wrap!important;flex-wrap:wrap!important}.flex-lg-nowrap{-ms-flex-wrap:nowrap!important;flex-wrap:nowrap!important}.flex-lg-wrap-reverse{-ms-flex-wrap:wrap-reverse!important;flex-wrap:wrap-reverse!important}.justify-content-lg-start{-ms-flex-pack:start!important;justify-content:flex-start!important}.justify-content-lg-end{-ms-flex-pack:end!important;justify-content:flex-end!important}.justify-content-lg-center{-ms-flex-pack:center!important;justify-content:center!important}.justify-content-lg-between{-ms-flex-pack:justify!important;justify-content:space-between!important}.justify-content-lg-around{-ms-flex-pack:distribute!important;justify-content:space-around!important}.align-items-lg-start{-ms-flex-align:start!important;align-items:flex-start!important}.align-items-lg-end{-ms-flex-align:end!important;align-items:flex-end!important}.align-items-lg-center{-ms-flex-align:center!important;align-items:center!important}.align-items-lg-baseline{-ms-flex-align:baseline!important;align-items:baseline!important}.align-items-lg-stretch{-ms-flex-align:stretch!important;align-items:stretch!important}.align-content-lg-start{-ms-flex-line-pack:start!important;align-content:flex-start!important}.align-content-lg-end{-ms-flex-line-pack:end!important;align-content:flex-end!important}.align-content-lg-center{-ms-flex-line-pack:center!important;align-content:center!important}.align-content-lg-between{-ms-flex-line-pack:justify!important;align-content:space-between!important}.align-content-lg-around{-ms-flex-line-pack:distribute!important;align-content:space-around!important}.align-content-lg-stretch{-ms-flex-line-pack:stretch!important;align-content:stretch!important}.align-self-lg-auto{-ms-flex-item-align:auto!important;align-self:auto!important}.align-self-lg-start{-ms-flex-item-align:start!important;align-self:flex-start!important}.align-self-lg-end{-ms-flex-item-align:end!important;align-self:flex-end!important}.align-self-lg-center{-ms-flex-item-align:center!important;align-self:center!important}.align-self-lg-baseline{-ms-flex-item-align:baseline!important;align-self:baseline!important}.align-self-lg-stretch{-ms-flex-item-align:stretch!important;align-self:stretch!important}}@media (min-width:1200px){.flex-xl-row{-ms-flex-direction:row!important;flex-direction:row!important}.flex-xl-column{-ms-flex-direction:column!important;flex-direction:column!important}.flex-xl-row-reverse{-ms-flex-direction:row-reverse!important;flex-direction:row-reverse!important}.flex-xl-column-reverse{-ms-flex-direction:column-reverse!important;flex-direction:column-reverse!important}.flex-xl-wrap{-ms-flex-wrap:wrap!important;flex-wrap:wrap!important}.flex-xl-nowrap{-ms-flex-wrap:nowrap!important;flex-wrap:nowrap!important}.flex-xl-wrap-reverse{-ms-flex-wrap:wrap-reverse!important;flex-wrap:wrap-reverse!important}.justify-content-xl-start{-ms-flex-pack:start!important;justify-content:flex-start!important}.justify-content-xl-end{-ms-flex-pack:end!important;justify-content:flex-end!important}.justify-content-xl-center{-ms-flex-pack:center!important;justify-content:center!important}.justify-content-xl-between{-ms-flex-pack:justify!important;justify-content:space-between!important}.justify-content-xl-around{-ms-flex-pack:distribute!important;justify-content:space-around!important}.align-items-xl-start{-ms-flex-align:start!important;align-items:flex-start!important}.align-items-xl-end{-ms-flex-align:end!important;align-items:flex-end!important}.align-items-xl-center{-ms-flex-align:center!important;align-items:center!important}.align-items-xl-baseline{-ms-flex-align:baseline!important;align-items:baseline!important}.align-items-xl-stretch{-ms-flex-align:stretch!important;align-items:stretch!important}.align-content-xl-start{-ms-flex-line-pack:start!important;align-content:flex-start!important}.align-content-xl-end{-ms-flex-line-pack:end!important;align-content:flex-end!important}.align-content-xl-center{-ms-flex-line-pack:center!important;align-content:center!important}.align-content-xl-between{-ms-flex-line-pack:justify!important;align-content:space-between!important}.align-content-xl-around{-ms-flex-line-pack:distribute!important;align-content:space-around!important}.align-content-xl-stretch{-ms-flex-line-pack:stretch!important;align-content:stretch!important}.align-self-xl-auto{-ms-flex-item-align:auto!important;align-self:auto!important}.align-self-xl-start{-ms-flex-item-align:start!important;align-self:flex-start!important}.align-self-xl-end{-ms-flex-item-align:end!important;align-self:flex-end!important}.align-self-xl-center{-ms-flex-item-align:center!important;align-self:center!important}.align-self-xl-baseline{-ms-flex-item-align:baseline!important;align-self:baseline!important}.align-self-xl-stretch{-ms-flex-item-align:stretch!important;align-self:stretch!important}} +/*# sourceMappingURL=bootstrap-grid.min.css.map */ \ No newline at end of file diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-grid.min.css.map b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-grid.min.css.map new file mode 100644 index 0000000..5e16e09 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-grid.min.css.map @@ -0,0 +1 @@ +{"version":3,"sources":["../../scss/bootstrap-grid.scss","dist/css/bootstrap-grid.css","../../scss/_grid.scss","../../scss/mixins/_grid.scss","../../scss/mixins/_breakpoints.scss","../../scss/mixins/_grid-framework.scss","../../scss/utilities/_flex.scss"],"names":[],"mappings":"AAUE,cAAgB,MAAA,aAGlB,KACE,WAAA,WACA,mBAAA,UAGF,ECPA,QADA,SDWE,WAAA,QEhBA,WCAA,aAAA,KACA,YAAA,KACA,cAAA,KACA,aAAA,KACA,MAAA,KC+CE,yBFnDF,WCYI,UAAA,OCuCF,yBFnDF,WCYI,UAAA,OCuCF,yBFnDF,WCYI,UAAA,OCuCF,0BFnDF,WCYI,UAAA,QDAJ,iBACE,MAAA,KCbF,aAAA,KACA,YAAA,KACA,cAAA,KACA,aAAA,KACA,MAAA,KDmBA,KCLA,QAAA,YAAA,QAAA,KACA,cAAA,KAAA,UAAA,KACA,aAAA,MACA,YAAA,MDQA,YACE,aAAA,EACA,YAAA,EAFF,iBDqCF,0BC/BM,cAAA,EACA,aAAA,EGlCJ,KAAA,OAAA,QAAA,QAAA,QAAA,OAAA,OAAA,OAAA,OAAA,OAAA,OAAA,OAAA,OJsEF,UAEqJ,QAAvI,UAAmG,WAAY,WAAY,WAAhH,UAAW,UAAW,UAAW,UAAW,UAAW,UAAW,UAAW,UACtG,aAFqJ,QAAvI,UAAmG,WAAY,WAAY,WAAhH,UAAW,UAAW,UAAW,UAAW,UAAW,UAAW,UAAW,UACtG,aAFkJ,QAAvI,UAAmG,WAAY,WAAY,WAAhH,UAAW,UAAW,UAAW,UAAW,UAAW,UAAW,UAAW,UACnG,aAEqJ,QAAvI,UAAmG,WAAY,WAAY,WAAhH,UAAW,UAAW,UAAW,UAAW,UAAW,UAAW,UAAW,UACtG,aIzEI,SAAA,SACA,MAAA,KACA,WAAA,IACA,cAAA,KACA,aAAA,KAmBE,KACE,wBAAA,EAAA,WAAA,EACA,kBAAA,EAAA,UAAA,EACA,UAAA,KAEF,UACE,SAAA,EAAA,EAAA,KAAA,KAAA,EAAA,EAAA,KACA,MAAA,KACA,UAAA,KAIA,OFFN,SAAA,EAAA,EAAA,UAAA,KAAA,EAAA,EAAA,UAIA,UAAA,UEFM,OFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,OFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,OFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,OFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,OFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,OFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,OFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,OFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,QFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,QFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,QFFN,SAAA,EAAA,EAAA,KAAA,KAAA,EAAA,EAAA,KAIA,UAAA,KEIM,SACE,eAAA,EAAA,MAAA,EADF,SACE,eAAA,EAAA,MAAA,EADF,SACE,eAAA,EAAA,MAAA,EADF,SACE,eAAA,EAAA,MAAA,EADF,SACE,eAAA,EAAA,MAAA,EADF,SACE,eAAA,EAAA,MAAA,EADF,SACE,eAAA,EAAA,MAAA,EADF,SACE,eAAA,EAAA,MAAA,EADF,SACE,eAAA,EAAA,MAAA,EADF,UACE,eAAA,GAAA,MAAA,GADF,UACE,eAAA,GAAA,MAAA,GADF,UACE,eAAA,GAAA,MAAA,GDMN,yBCzBE,QACE,wBAAA,EAAA,WAAA,EACA,kBAAA,EAAA,UAAA,EACA,UAAA,KAEF,aACE,SAAA,EAAA,EAAA,KAAA,KAAA,EAAA,EAAA,KACA,MAAA,KACA,UAAA,KAIA,UFFN,SAAA,EAAA,EAAA,UAAA,KAAA,EAAA,EAAA,UAIA,UAAA,UEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,WFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,WFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,WFFN,SAAA,EAAA,EAAA,KAAA,KAAA,EAAA,EAAA,KAIA,UAAA,KEIM,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,aACE,eAAA,GAAA,MAAA,GADF,aACE,eAAA,GAAA,MAAA,GADF,aACE,eAAA,GAAA,MAAA,IDMN,yBCzBE,QACE,wBAAA,EAAA,WAAA,EACA,kBAAA,EAAA,UAAA,EACA,UAAA,KAEF,aACE,SAAA,EAAA,EAAA,KAAA,KAAA,EAAA,EAAA,KACA,MAAA,KACA,UAAA,KAIA,UFFN,SAAA,EAAA,EAAA,UAAA,KAAA,EAAA,EAAA,UAIA,UAAA,UEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,WFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,WFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,WFFN,SAAA,EAAA,EAAA,KAAA,KAAA,EAAA,EAAA,KAIA,UAAA,KEIM,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,aACE,eAAA,GAAA,MAAA,GADF,aACE,eAAA,GAAA,MAAA,GADF,aACE,eAAA,GAAA,MAAA,IDMN,yBCzBE,QACE,wBAAA,EAAA,WAAA,EACA,kBAAA,EAAA,UAAA,EACA,UAAA,KAEF,aACE,SAAA,EAAA,EAAA,KAAA,KAAA,EAAA,EAAA,KACA,MAAA,KACA,UAAA,KAIA,UFFN,SAAA,EAAA,EAAA,UAAA,KAAA,EAAA,EAAA,UAIA,UAAA,UEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,WFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,WFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,WFFN,SAAA,EAAA,EAAA,KAAA,KAAA,EAAA,EAAA,KAIA,UAAA,KEIM,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,aACE,eAAA,GAAA,MAAA,GADF,aACE,eAAA,GAAA,MAAA,GADF,aACE,eAAA,GAAA,MAAA,IDMN,0BCzBE,QACE,wBAAA,EAAA,WAAA,EACA,kBAAA,EAAA,UAAA,EACA,UAAA,KAEF,aACE,SAAA,EAAA,EAAA,KAAA,KAAA,EAAA,EAAA,KACA,MAAA,KACA,UAAA,KAIA,UFFN,SAAA,EAAA,EAAA,UAAA,KAAA,EAAA,EAAA,UAIA,UAAA,UEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,UFFN,SAAA,EAAA,EAAA,IAAA,KAAA,EAAA,EAAA,IAIA,UAAA,IEFM,WFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,WFFN,SAAA,EAAA,EAAA,WAAA,KAAA,EAAA,EAAA,WAIA,UAAA,WEFM,WFFN,SAAA,EAAA,EAAA,KAAA,KAAA,EAAA,EAAA,KAIA,UAAA,KEIM,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,YACE,eAAA,EAAA,MAAA,EADF,aACE,eAAA,GAAA,MAAA,GADF,aACE,eAAA,GAAA,MAAA,GADF,aACE,eAAA,GAAA,MAAA,IC1CN,UAAgC,mBAAA,cAAA,eAAA,cAChC,aAAgC,mBAAA,iBAAA,eAAA,iBAChC,kBAAgC,mBAAA,sBAAA,eAAA,sBAChC,qBAAgC,mBAAA,yBAAA,eAAA,yBAEhC,WAA8B,cAAA,eAAA,UAAA,eAC9B,aAA8B,cAAA,iBAAA,UAAA,iBAC9B,mBAA8B,cAAA,uBAAA,UAAA,uBAE9B,uBAAoC,cAAA,gBAAA,gBAAA,qBACpC,qBAAoC,cAAA,cAAA,gBAAA,mBACpC,wBAAoC,cAAA,iBAAA,gBAAA,iBACpC,yBAAoC,cAAA,kBAAA,gBAAA,wBACpC,wBAAoC,cAAA,qBAAA,gBAAA,uBAEpC,mBAAiC,eAAA,gBAAA,YAAA,qBACjC,iBAAiC,eAAA,cAAA,YAAA,mBACjC,oBAAiC,eAAA,iBAAA,YAAA,iBACjC,sBAAiC,eAAA,mBAAA,YAAA,mBACjC,qBAAiC,eAAA,kBAAA,YAAA,kBAEjC,qBAAkC,mBAAA,gBAAA,cAAA,qBAClC,mBAAkC,mBAAA,cAAA,cAAA,mBAClC,sBAAkC,mBAAA,iBAAA,cAAA,iBAClC,uBAAkC,mBAAA,kBAAA,cAAA,wBAClC,sBAAkC,mBAAA,qBAAA,cAAA,uBAClC,uBAAkC,mBAAA,kBAAA,cAAA,kBAElC,iBAAgC,oBAAA,eAAA,WAAA,eAChC,kBAAgC,oBAAA,gBAAA,WAAA,qBAChC,gBAAgC,oBAAA,cAAA,WAAA,mBAChC,mBAAgC,oBAAA,iBAAA,WAAA,iBAChC,qBAAgC,oBAAA,mBAAA,WAAA,mBAChC,oBAAgC,oBAAA,kBAAA,WAAA,kBFehC,yBEhDA,aAAgC,mBAAA,cAAA,eAAA,cAChC,gBAAgC,mBAAA,iBAAA,eAAA,iBAChC,qBAAgC,mBAAA,sBAAA,eAAA,sBAChC,wBAAgC,mBAAA,yBAAA,eAAA,yBAEhC,cAA8B,cAAA,eAAA,UAAA,eAC9B,gBAA8B,cAAA,iBAAA,UAAA,iBAC9B,sBAA8B,cAAA,uBAAA,UAAA,uBAE9B,0BAAoC,cAAA,gBAAA,gBAAA,qBACpC,wBAAoC,cAAA,cAAA,gBAAA,mBACpC,2BAAoC,cAAA,iBAAA,gBAAA,iBACpC,4BAAoC,cAAA,kBAAA,gBAAA,wBACpC,2BAAoC,cAAA,qBAAA,gBAAA,uBAEpC,sBAAiC,eAAA,gBAAA,YAAA,qBACjC,oBAAiC,eAAA,cAAA,YAAA,mBACjC,uBAAiC,eAAA,iBAAA,YAAA,iBACjC,yBAAiC,eAAA,mBAAA,YAAA,mBACjC,wBAAiC,eAAA,kBAAA,YAAA,kBAEjC,wBAAkC,mBAAA,gBAAA,cAAA,qBAClC,sBAAkC,mBAAA,cAAA,cAAA,mBAClC,yBAAkC,mBAAA,iBAAA,cAAA,iBAClC,0BAAkC,mBAAA,kBAAA,cAAA,wBAClC,yBAAkC,mBAAA,qBAAA,cAAA,uBAClC,0BAAkC,mBAAA,kBAAA,cAAA,kBAElC,oBAAgC,oBAAA,eAAA,WAAA,eAChC,qBAAgC,oBAAA,gBAAA,WAAA,qBAChC,mBAAgC,oBAAA,cAAA,WAAA,mBAChC,sBAAgC,oBAAA,iBAAA,WAAA,iBAChC,wBAAgC,oBAAA,mBAAA,WAAA,mBAChC,uBAAgC,oBAAA,kBAAA,WAAA,mBFehC,yBEhDA,aAAgC,mBAAA,cAAA,eAAA,cAChC,gBAAgC,mBAAA,iBAAA,eAAA,iBAChC,qBAAgC,mBAAA,sBAAA,eAAA,sBAChC,wBAAgC,mBAAA,yBAAA,eAAA,yBAEhC,cAA8B,cAAA,eAAA,UAAA,eAC9B,gBAA8B,cAAA,iBAAA,UAAA,iBAC9B,sBAA8B,cAAA,uBAAA,UAAA,uBAE9B,0BAAoC,cAAA,gBAAA,gBAAA,qBACpC,wBAAoC,cAAA,cAAA,gBAAA,mBACpC,2BAAoC,cAAA,iBAAA,gBAAA,iBACpC,4BAAoC,cAAA,kBAAA,gBAAA,wBACpC,2BAAoC,cAAA,qBAAA,gBAAA,uBAEpC,sBAAiC,eAAA,gBAAA,YAAA,qBACjC,oBAAiC,eAAA,cAAA,YAAA,mBACjC,uBAAiC,eAAA,iBAAA,YAAA,iBACjC,yBAAiC,eAAA,mBAAA,YAAA,mBACjC,wBAAiC,eAAA,kBAAA,YAAA,kBAEjC,wBAAkC,mBAAA,gBAAA,cAAA,qBAClC,sBAAkC,mBAAA,cAAA,cAAA,mBAClC,yBAAkC,mBAAA,iBAAA,cAAA,iBAClC,0BAAkC,mBAAA,kBAAA,cAAA,wBAClC,yBAAkC,mBAAA,qBAAA,cAAA,uBAClC,0BAAkC,mBAAA,kBAAA,cAAA,kBAElC,oBAAgC,oBAAA,eAAA,WAAA,eAChC,qBAAgC,oBAAA,gBAAA,WAAA,qBAChC,mBAAgC,oBAAA,cAAA,WAAA,mBAChC,sBAAgC,oBAAA,iBAAA,WAAA,iBAChC,wBAAgC,oBAAA,mBAAA,WAAA,mBAChC,uBAAgC,oBAAA,kBAAA,WAAA,mBFehC,yBEhDA,aAAgC,mBAAA,cAAA,eAAA,cAChC,gBAAgC,mBAAA,iBAAA,eAAA,iBAChC,qBAAgC,mBAAA,sBAAA,eAAA,sBAChC,wBAAgC,mBAAA,yBAAA,eAAA,yBAEhC,cAA8B,cAAA,eAAA,UAAA,eAC9B,gBAA8B,cAAA,iBAAA,UAAA,iBAC9B,sBAA8B,cAAA,uBAAA,UAAA,uBAE9B,0BAAoC,cAAA,gBAAA,gBAAA,qBACpC,wBAAoC,cAAA,cAAA,gBAAA,mBACpC,2BAAoC,cAAA,iBAAA,gBAAA,iBACpC,4BAAoC,cAAA,kBAAA,gBAAA,wBACpC,2BAAoC,cAAA,qBAAA,gBAAA,uBAEpC,sBAAiC,eAAA,gBAAA,YAAA,qBACjC,oBAAiC,eAAA,cAAA,YAAA,mBACjC,uBAAiC,eAAA,iBAAA,YAAA,iBACjC,yBAAiC,eAAA,mBAAA,YAAA,mBACjC,wBAAiC,eAAA,kBAAA,YAAA,kBAEjC,wBAAkC,mBAAA,gBAAA,cAAA,qBAClC,sBAAkC,mBAAA,cAAA,cAAA,mBAClC,yBAAkC,mBAAA,iBAAA,cAAA,iBAClC,0BAAkC,mBAAA,kBAAA,cAAA,wBAClC,yBAAkC,mBAAA,qBAAA,cAAA,uBAClC,0BAAkC,mBAAA,kBAAA,cAAA,kBAElC,oBAAgC,oBAAA,eAAA,WAAA,eAChC,qBAAgC,oBAAA,gBAAA,WAAA,qBAChC,mBAAgC,oBAAA,cAAA,WAAA,mBAChC,sBAAgC,oBAAA,iBAAA,WAAA,iBAChC,wBAAgC,oBAAA,mBAAA,WAAA,mBAChC,uBAAgC,oBAAA,kBAAA,WAAA,mBFehC,0BEhDA,aAAgC,mBAAA,cAAA,eAAA,cAChC,gBAAgC,mBAAA,iBAAA,eAAA,iBAChC,qBAAgC,mBAAA,sBAAA,eAAA,sBAChC,wBAAgC,mBAAA,yBAAA,eAAA,yBAEhC,cAA8B,cAAA,eAAA,UAAA,eAC9B,gBAA8B,cAAA,iBAAA,UAAA,iBAC9B,sBAA8B,cAAA,uBAAA,UAAA,uBAE9B,0BAAoC,cAAA,gBAAA,gBAAA,qBACpC,wBAAoC,cAAA,cAAA,gBAAA,mBACpC,2BAAoC,cAAA,iBAAA,gBAAA,iBACpC,4BAAoC,cAAA,kBAAA,gBAAA,wBACpC,2BAAoC,cAAA,qBAAA,gBAAA,uBAEpC,sBAAiC,eAAA,gBAAA,YAAA,qBACjC,oBAAiC,eAAA,cAAA,YAAA,mBACjC,uBAAiC,eAAA,iBAAA,YAAA,iBACjC,yBAAiC,eAAA,mBAAA,YAAA,mBACjC,wBAAiC,eAAA,kBAAA,YAAA,kBAEjC,wBAAkC,mBAAA,gBAAA,cAAA,qBAClC,sBAAkC,mBAAA,cAAA,cAAA,mBAClC,yBAAkC,mBAAA,iBAAA,cAAA,iBAClC,0BAAkC,mBAAA,kBAAA,cAAA,wBAClC,yBAAkC,mBAAA,qBAAA,cAAA,uBAClC,0BAAkC,mBAAA,kBAAA,cAAA,kBAElC,oBAAgC,oBAAA,eAAA,WAAA,eAChC,qBAAgC,oBAAA,gBAAA,WAAA,qBAChC,mBAAgC,oBAAA,cAAA,WAAA,mBAChC,sBAAgC,oBAAA,iBAAA,WAAA,iBAChC,wBAAgC,oBAAA,mBAAA,WAAA,mBAChC,uBAAgC,oBAAA,kBAAA,WAAA","sourcesContent":["// Bootstrap Grid only\n//\n// Includes relevant variables and mixins for the flexbox grid\n// system, as well as the generated predefined classes (e.g., `.col-sm-4`).\n\n//\n// Box sizing, responsive, and more\n//\n\n@at-root {\n @-ms-viewport { width: device-width; }\n}\n\nhtml {\n box-sizing: border-box;\n -ms-overflow-style: scrollbar;\n}\n\n*,\n*::before,\n*::after {\n box-sizing: inherit;\n}\n\n@import \"functions\";\n@import \"variables\";\n\n//\n// Grid mixins\n//\n\n@import \"mixins/breakpoints\";\n@import \"mixins/grid-framework\";\n@import \"mixins/grid\";\n\n@import \"grid\";\n@import \"utilities/flex\";\n","@-ms-viewport {\n width: device-width;\n}\n\nhtml {\n box-sizing: border-box;\n -ms-overflow-style: scrollbar;\n}\n\n*,\n*::before,\n*::after {\n box-sizing: inherit;\n}\n\n.container {\n margin-right: auto;\n margin-left: auto;\n padding-right: 15px;\n padding-left: 15px;\n width: 100%;\n}\n\n@media (min-width: 576px) {\n .container {\n max-width: 540px;\n }\n}\n\n@media (min-width: 768px) {\n .container {\n max-width: 720px;\n }\n}\n\n@media (min-width: 992px) {\n .container {\n max-width: 960px;\n }\n}\n\n@media (min-width: 1200px) {\n .container {\n max-width: 1140px;\n }\n}\n\n.container-fluid {\n width: 100%;\n margin-right: auto;\n margin-left: auto;\n padding-right: 15px;\n padding-left: 15px;\n width: 100%;\n}\n\n.row {\n display: -ms-flexbox;\n display: flex;\n -ms-flex-wrap: wrap;\n flex-wrap: wrap;\n margin-right: -15px;\n margin-left: -15px;\n}\n\n.no-gutters {\n margin-right: 0;\n margin-left: 0;\n}\n\n.no-gutters > .col,\n.no-gutters > [class*=\"col-\"] {\n padding-right: 0;\n padding-left: 0;\n}\n\n.col-1, .col-2, .col-3, .col-4, .col-5, .col-6, .col-7, .col-8, .col-9, .col-10, .col-11, .col-12, .col,\n.col-auto, .col-sm-1, .col-sm-2, .col-sm-3, .col-sm-4, .col-sm-5, .col-sm-6, .col-sm-7, .col-sm-8, .col-sm-9, .col-sm-10, .col-sm-11, .col-sm-12, .col-sm,\n.col-sm-auto, .col-md-1, .col-md-2, .col-md-3, .col-md-4, .col-md-5, .col-md-6, .col-md-7, .col-md-8, .col-md-9, .col-md-10, .col-md-11, .col-md-12, .col-md,\n.col-md-auto, .col-lg-1, .col-lg-2, .col-lg-3, .col-lg-4, .col-lg-5, .col-lg-6, .col-lg-7, .col-lg-8, .col-lg-9, .col-lg-10, .col-lg-11, .col-lg-12, .col-lg,\n.col-lg-auto, .col-xl-1, .col-xl-2, .col-xl-3, .col-xl-4, .col-xl-5, .col-xl-6, .col-xl-7, .col-xl-8, .col-xl-9, .col-xl-10, .col-xl-11, .col-xl-12, .col-xl,\n.col-xl-auto {\n position: relative;\n width: 100%;\n min-height: 1px;\n padding-right: 15px;\n padding-left: 15px;\n}\n\n.col {\n -ms-flex-preferred-size: 0;\n flex-basis: 0;\n -ms-flex-positive: 1;\n flex-grow: 1;\n max-width: 100%;\n}\n\n.col-auto {\n -ms-flex: 0 0 auto;\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n}\n\n.col-1 {\n -ms-flex: 0 0 8.333333%;\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n}\n\n.col-2 {\n -ms-flex: 0 0 16.666667%;\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n}\n\n.col-3 {\n -ms-flex: 0 0 25%;\n flex: 0 0 25%;\n max-width: 25%;\n}\n\n.col-4 {\n -ms-flex: 0 0 33.333333%;\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n}\n\n.col-5 {\n -ms-flex: 0 0 41.666667%;\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n}\n\n.col-6 {\n -ms-flex: 0 0 50%;\n flex: 0 0 50%;\n max-width: 50%;\n}\n\n.col-7 {\n -ms-flex: 0 0 58.333333%;\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n}\n\n.col-8 {\n -ms-flex: 0 0 66.666667%;\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n}\n\n.col-9 {\n -ms-flex: 0 0 75%;\n flex: 0 0 75%;\n max-width: 75%;\n}\n\n.col-10 {\n -ms-flex: 0 0 83.333333%;\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n}\n\n.col-11 {\n -ms-flex: 0 0 91.666667%;\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n}\n\n.col-12 {\n -ms-flex: 0 0 100%;\n flex: 0 0 100%;\n max-width: 100%;\n}\n\n.order-1 {\n -ms-flex-order: 1;\n order: 1;\n}\n\n.order-2 {\n -ms-flex-order: 2;\n order: 2;\n}\n\n.order-3 {\n -ms-flex-order: 3;\n order: 3;\n}\n\n.order-4 {\n -ms-flex-order: 4;\n order: 4;\n}\n\n.order-5 {\n -ms-flex-order: 5;\n order: 5;\n}\n\n.order-6 {\n -ms-flex-order: 6;\n order: 6;\n}\n\n.order-7 {\n -ms-flex-order: 7;\n order: 7;\n}\n\n.order-8 {\n -ms-flex-order: 8;\n order: 8;\n}\n\n.order-9 {\n -ms-flex-order: 9;\n order: 9;\n}\n\n.order-10 {\n -ms-flex-order: 10;\n order: 10;\n}\n\n.order-11 {\n -ms-flex-order: 11;\n order: 11;\n}\n\n.order-12 {\n -ms-flex-order: 12;\n order: 12;\n}\n\n@media (min-width: 576px) {\n .col-sm {\n -ms-flex-preferred-size: 0;\n flex-basis: 0;\n -ms-flex-positive: 1;\n flex-grow: 1;\n max-width: 100%;\n }\n .col-sm-auto {\n -ms-flex: 0 0 auto;\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n }\n .col-sm-1 {\n -ms-flex: 0 0 8.333333%;\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n }\n .col-sm-2 {\n -ms-flex: 0 0 16.666667%;\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n }\n .col-sm-3 {\n -ms-flex: 0 0 25%;\n flex: 0 0 25%;\n max-width: 25%;\n }\n .col-sm-4 {\n -ms-flex: 0 0 33.333333%;\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n }\n .col-sm-5 {\n -ms-flex: 0 0 41.666667%;\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n }\n .col-sm-6 {\n -ms-flex: 0 0 50%;\n flex: 0 0 50%;\n max-width: 50%;\n }\n .col-sm-7 {\n -ms-flex: 0 0 58.333333%;\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n }\n .col-sm-8 {\n -ms-flex: 0 0 66.666667%;\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n }\n .col-sm-9 {\n -ms-flex: 0 0 75%;\n flex: 0 0 75%;\n max-width: 75%;\n }\n .col-sm-10 {\n -ms-flex: 0 0 83.333333%;\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n }\n .col-sm-11 {\n -ms-flex: 0 0 91.666667%;\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n }\n .col-sm-12 {\n -ms-flex: 0 0 100%;\n flex: 0 0 100%;\n max-width: 100%;\n }\n .order-sm-1 {\n -ms-flex-order: 1;\n order: 1;\n }\n .order-sm-2 {\n -ms-flex-order: 2;\n order: 2;\n }\n .order-sm-3 {\n -ms-flex-order: 3;\n order: 3;\n }\n .order-sm-4 {\n -ms-flex-order: 4;\n order: 4;\n }\n .order-sm-5 {\n -ms-flex-order: 5;\n order: 5;\n }\n .order-sm-6 {\n -ms-flex-order: 6;\n order: 6;\n }\n .order-sm-7 {\n -ms-flex-order: 7;\n order: 7;\n }\n .order-sm-8 {\n -ms-flex-order: 8;\n order: 8;\n }\n .order-sm-9 {\n -ms-flex-order: 9;\n order: 9;\n }\n .order-sm-10 {\n -ms-flex-order: 10;\n order: 10;\n }\n .order-sm-11 {\n -ms-flex-order: 11;\n order: 11;\n }\n .order-sm-12 {\n -ms-flex-order: 12;\n order: 12;\n }\n}\n\n@media (min-width: 768px) {\n .col-md {\n -ms-flex-preferred-size: 0;\n flex-basis: 0;\n -ms-flex-positive: 1;\n flex-grow: 1;\n max-width: 100%;\n }\n .col-md-auto {\n -ms-flex: 0 0 auto;\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n }\n .col-md-1 {\n -ms-flex: 0 0 8.333333%;\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n }\n .col-md-2 {\n -ms-flex: 0 0 16.666667%;\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n }\n .col-md-3 {\n -ms-flex: 0 0 25%;\n flex: 0 0 25%;\n max-width: 25%;\n }\n .col-md-4 {\n -ms-flex: 0 0 33.333333%;\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n }\n .col-md-5 {\n -ms-flex: 0 0 41.666667%;\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n }\n .col-md-6 {\n -ms-flex: 0 0 50%;\n flex: 0 0 50%;\n max-width: 50%;\n }\n .col-md-7 {\n -ms-flex: 0 0 58.333333%;\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n }\n .col-md-8 {\n -ms-flex: 0 0 66.666667%;\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n }\n .col-md-9 {\n -ms-flex: 0 0 75%;\n flex: 0 0 75%;\n max-width: 75%;\n }\n .col-md-10 {\n -ms-flex: 0 0 83.333333%;\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n }\n .col-md-11 {\n -ms-flex: 0 0 91.666667%;\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n }\n .col-md-12 {\n -ms-flex: 0 0 100%;\n flex: 0 0 100%;\n max-width: 100%;\n }\n .order-md-1 {\n -ms-flex-order: 1;\n order: 1;\n }\n .order-md-2 {\n -ms-flex-order: 2;\n order: 2;\n }\n .order-md-3 {\n -ms-flex-order: 3;\n order: 3;\n }\n .order-md-4 {\n -ms-flex-order: 4;\n order: 4;\n }\n .order-md-5 {\n -ms-flex-order: 5;\n order: 5;\n }\n .order-md-6 {\n -ms-flex-order: 6;\n order: 6;\n }\n .order-md-7 {\n -ms-flex-order: 7;\n order: 7;\n }\n .order-md-8 {\n -ms-flex-order: 8;\n order: 8;\n }\n .order-md-9 {\n -ms-flex-order: 9;\n order: 9;\n }\n .order-md-10 {\n -ms-flex-order: 10;\n order: 10;\n }\n .order-md-11 {\n -ms-flex-order: 11;\n order: 11;\n }\n .order-md-12 {\n -ms-flex-order: 12;\n order: 12;\n }\n}\n\n@media (min-width: 992px) {\n .col-lg {\n -ms-flex-preferred-size: 0;\n flex-basis: 0;\n -ms-flex-positive: 1;\n flex-grow: 1;\n max-width: 100%;\n }\n .col-lg-auto {\n -ms-flex: 0 0 auto;\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n }\n .col-lg-1 {\n -ms-flex: 0 0 8.333333%;\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n }\n .col-lg-2 {\n -ms-flex: 0 0 16.666667%;\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n }\n .col-lg-3 {\n -ms-flex: 0 0 25%;\n flex: 0 0 25%;\n max-width: 25%;\n }\n .col-lg-4 {\n -ms-flex: 0 0 33.333333%;\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n }\n .col-lg-5 {\n -ms-flex: 0 0 41.666667%;\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n }\n .col-lg-6 {\n -ms-flex: 0 0 50%;\n flex: 0 0 50%;\n max-width: 50%;\n }\n .col-lg-7 {\n -ms-flex: 0 0 58.333333%;\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n }\n .col-lg-8 {\n -ms-flex: 0 0 66.666667%;\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n }\n .col-lg-9 {\n -ms-flex: 0 0 75%;\n flex: 0 0 75%;\n max-width: 75%;\n }\n .col-lg-10 {\n -ms-flex: 0 0 83.333333%;\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n }\n .col-lg-11 {\n -ms-flex: 0 0 91.666667%;\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n }\n .col-lg-12 {\n -ms-flex: 0 0 100%;\n flex: 0 0 100%;\n max-width: 100%;\n }\n .order-lg-1 {\n -ms-flex-order: 1;\n order: 1;\n }\n .order-lg-2 {\n -ms-flex-order: 2;\n order: 2;\n }\n .order-lg-3 {\n -ms-flex-order: 3;\n order: 3;\n }\n .order-lg-4 {\n -ms-flex-order: 4;\n order: 4;\n }\n .order-lg-5 {\n -ms-flex-order: 5;\n order: 5;\n }\n .order-lg-6 {\n -ms-flex-order: 6;\n order: 6;\n }\n .order-lg-7 {\n -ms-flex-order: 7;\n order: 7;\n }\n .order-lg-8 {\n -ms-flex-order: 8;\n order: 8;\n }\n .order-lg-9 {\n -ms-flex-order: 9;\n order: 9;\n }\n .order-lg-10 {\n -ms-flex-order: 10;\n order: 10;\n }\n .order-lg-11 {\n -ms-flex-order: 11;\n order: 11;\n }\n .order-lg-12 {\n -ms-flex-order: 12;\n order: 12;\n }\n}\n\n@media (min-width: 1200px) {\n .col-xl {\n -ms-flex-preferred-size: 0;\n flex-basis: 0;\n -ms-flex-positive: 1;\n flex-grow: 1;\n max-width: 100%;\n }\n .col-xl-auto {\n -ms-flex: 0 0 auto;\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n }\n .col-xl-1 {\n -ms-flex: 0 0 8.333333%;\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n }\n .col-xl-2 {\n -ms-flex: 0 0 16.666667%;\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n }\n .col-xl-3 {\n -ms-flex: 0 0 25%;\n flex: 0 0 25%;\n max-width: 25%;\n }\n .col-xl-4 {\n -ms-flex: 0 0 33.333333%;\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n }\n .col-xl-5 {\n -ms-flex: 0 0 41.666667%;\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n }\n .col-xl-6 {\n -ms-flex: 0 0 50%;\n flex: 0 0 50%;\n max-width: 50%;\n }\n .col-xl-7 {\n -ms-flex: 0 0 58.333333%;\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n }\n .col-xl-8 {\n -ms-flex: 0 0 66.666667%;\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n }\n .col-xl-9 {\n -ms-flex: 0 0 75%;\n flex: 0 0 75%;\n max-width: 75%;\n }\n .col-xl-10 {\n -ms-flex: 0 0 83.333333%;\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n }\n .col-xl-11 {\n -ms-flex: 0 0 91.666667%;\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n }\n .col-xl-12 {\n -ms-flex: 0 0 100%;\n flex: 0 0 100%;\n max-width: 100%;\n }\n .order-xl-1 {\n -ms-flex-order: 1;\n order: 1;\n }\n .order-xl-2 {\n -ms-flex-order: 2;\n order: 2;\n }\n .order-xl-3 {\n -ms-flex-order: 3;\n order: 3;\n }\n .order-xl-4 {\n -ms-flex-order: 4;\n order: 4;\n }\n .order-xl-5 {\n -ms-flex-order: 5;\n order: 5;\n }\n .order-xl-6 {\n -ms-flex-order: 6;\n order: 6;\n }\n .order-xl-7 {\n -ms-flex-order: 7;\n order: 7;\n }\n .order-xl-8 {\n -ms-flex-order: 8;\n order: 8;\n }\n .order-xl-9 {\n -ms-flex-order: 9;\n order: 9;\n }\n .order-xl-10 {\n -ms-flex-order: 10;\n order: 10;\n }\n .order-xl-11 {\n -ms-flex-order: 11;\n order: 11;\n }\n .order-xl-12 {\n -ms-flex-order: 12;\n order: 12;\n }\n}\n\n.flex-row {\n -ms-flex-direction: row !important;\n flex-direction: row !important;\n}\n\n.flex-column {\n -ms-flex-direction: column !important;\n flex-direction: column !important;\n}\n\n.flex-row-reverse {\n -ms-flex-direction: row-reverse !important;\n flex-direction: row-reverse !important;\n}\n\n.flex-column-reverse {\n -ms-flex-direction: column-reverse !important;\n flex-direction: column-reverse !important;\n}\n\n.flex-wrap {\n -ms-flex-wrap: wrap !important;\n flex-wrap: wrap !important;\n}\n\n.flex-nowrap {\n -ms-flex-wrap: nowrap !important;\n flex-wrap: nowrap !important;\n}\n\n.flex-wrap-reverse {\n -ms-flex-wrap: wrap-reverse !important;\n flex-wrap: wrap-reverse !important;\n}\n\n.justify-content-start {\n -ms-flex-pack: start !important;\n justify-content: flex-start !important;\n}\n\n.justify-content-end {\n -ms-flex-pack: end !important;\n justify-content: flex-end !important;\n}\n\n.justify-content-center {\n -ms-flex-pack: center !important;\n justify-content: center !important;\n}\n\n.justify-content-between {\n -ms-flex-pack: justify !important;\n justify-content: space-between !important;\n}\n\n.justify-content-around {\n -ms-flex-pack: distribute !important;\n justify-content: space-around !important;\n}\n\n.align-items-start {\n -ms-flex-align: start !important;\n align-items: flex-start !important;\n}\n\n.align-items-end {\n -ms-flex-align: end !important;\n align-items: flex-end !important;\n}\n\n.align-items-center {\n -ms-flex-align: center !important;\n align-items: center !important;\n}\n\n.align-items-baseline {\n -ms-flex-align: baseline !important;\n align-items: baseline !important;\n}\n\n.align-items-stretch {\n -ms-flex-align: stretch !important;\n align-items: stretch !important;\n}\n\n.align-content-start {\n -ms-flex-line-pack: start !important;\n align-content: flex-start !important;\n}\n\n.align-content-end {\n -ms-flex-line-pack: end !important;\n align-content: flex-end !important;\n}\n\n.align-content-center {\n -ms-flex-line-pack: center !important;\n align-content: center !important;\n}\n\n.align-content-between {\n -ms-flex-line-pack: justify !important;\n align-content: space-between !important;\n}\n\n.align-content-around {\n -ms-flex-line-pack: distribute !important;\n align-content: space-around !important;\n}\n\n.align-content-stretch {\n -ms-flex-line-pack: stretch !important;\n align-content: stretch !important;\n}\n\n.align-self-auto {\n -ms-flex-item-align: auto !important;\n align-self: auto !important;\n}\n\n.align-self-start {\n -ms-flex-item-align: start !important;\n align-self: flex-start !important;\n}\n\n.align-self-end {\n -ms-flex-item-align: end !important;\n align-self: flex-end !important;\n}\n\n.align-self-center {\n -ms-flex-item-align: center !important;\n align-self: center !important;\n}\n\n.align-self-baseline {\n -ms-flex-item-align: baseline !important;\n align-self: baseline !important;\n}\n\n.align-self-stretch {\n -ms-flex-item-align: stretch !important;\n align-self: stretch !important;\n}\n\n@media (min-width: 576px) {\n .flex-sm-row {\n -ms-flex-direction: row !important;\n flex-direction: row !important;\n }\n .flex-sm-column {\n -ms-flex-direction: column !important;\n flex-direction: column !important;\n }\n .flex-sm-row-reverse {\n -ms-flex-direction: row-reverse !important;\n flex-direction: row-reverse !important;\n }\n .flex-sm-column-reverse {\n -ms-flex-direction: column-reverse !important;\n flex-direction: column-reverse !important;\n }\n .flex-sm-wrap {\n -ms-flex-wrap: wrap !important;\n flex-wrap: wrap !important;\n }\n .flex-sm-nowrap {\n -ms-flex-wrap: nowrap !important;\n flex-wrap: nowrap !important;\n }\n .flex-sm-wrap-reverse {\n -ms-flex-wrap: wrap-reverse !important;\n flex-wrap: wrap-reverse !important;\n }\n .justify-content-sm-start {\n -ms-flex-pack: start !important;\n justify-content: flex-start !important;\n }\n .justify-content-sm-end {\n -ms-flex-pack: end !important;\n justify-content: flex-end !important;\n }\n .justify-content-sm-center {\n -ms-flex-pack: center !important;\n justify-content: center !important;\n }\n .justify-content-sm-between {\n -ms-flex-pack: justify !important;\n justify-content: space-between !important;\n }\n .justify-content-sm-around {\n -ms-flex-pack: distribute !important;\n justify-content: space-around !important;\n }\n .align-items-sm-start {\n -ms-flex-align: start !important;\n align-items: flex-start !important;\n }\n .align-items-sm-end {\n -ms-flex-align: end !important;\n align-items: flex-end !important;\n }\n .align-items-sm-center {\n -ms-flex-align: center !important;\n align-items: center !important;\n }\n .align-items-sm-baseline {\n -ms-flex-align: baseline !important;\n align-items: baseline !important;\n }\n .align-items-sm-stretch {\n -ms-flex-align: stretch !important;\n align-items: stretch !important;\n }\n .align-content-sm-start {\n -ms-flex-line-pack: start !important;\n align-content: flex-start !important;\n }\n .align-content-sm-end {\n -ms-flex-line-pack: end !important;\n align-content: flex-end !important;\n }\n .align-content-sm-center {\n -ms-flex-line-pack: center !important;\n align-content: center !important;\n }\n .align-content-sm-between {\n -ms-flex-line-pack: justify !important;\n align-content: space-between !important;\n }\n .align-content-sm-around {\n -ms-flex-line-pack: distribute !important;\n align-content: space-around !important;\n }\n .align-content-sm-stretch {\n -ms-flex-line-pack: stretch !important;\n align-content: stretch !important;\n }\n .align-self-sm-auto {\n -ms-flex-item-align: auto !important;\n align-self: auto !important;\n }\n .align-self-sm-start {\n -ms-flex-item-align: start !important;\n align-self: flex-start !important;\n }\n .align-self-sm-end {\n -ms-flex-item-align: end !important;\n align-self: flex-end !important;\n }\n .align-self-sm-center {\n -ms-flex-item-align: center !important;\n align-self: center !important;\n }\n .align-self-sm-baseline {\n -ms-flex-item-align: baseline !important;\n align-self: baseline !important;\n }\n .align-self-sm-stretch {\n -ms-flex-item-align: stretch !important;\n align-self: stretch !important;\n }\n}\n\n@media (min-width: 768px) {\n .flex-md-row {\n -ms-flex-direction: row !important;\n flex-direction: row !important;\n }\n .flex-md-column {\n -ms-flex-direction: column !important;\n flex-direction: column !important;\n }\n .flex-md-row-reverse {\n -ms-flex-direction: row-reverse !important;\n flex-direction: row-reverse !important;\n }\n .flex-md-column-reverse {\n -ms-flex-direction: column-reverse !important;\n flex-direction: column-reverse !important;\n }\n .flex-md-wrap {\n -ms-flex-wrap: wrap !important;\n flex-wrap: wrap !important;\n }\n .flex-md-nowrap {\n -ms-flex-wrap: nowrap !important;\n flex-wrap: nowrap !important;\n }\n .flex-md-wrap-reverse {\n -ms-flex-wrap: wrap-reverse !important;\n flex-wrap: wrap-reverse !important;\n }\n .justify-content-md-start {\n -ms-flex-pack: start !important;\n justify-content: flex-start !important;\n }\n .justify-content-md-end {\n -ms-flex-pack: end !important;\n justify-content: flex-end !important;\n }\n .justify-content-md-center {\n -ms-flex-pack: center !important;\n justify-content: center !important;\n }\n .justify-content-md-between {\n -ms-flex-pack: justify !important;\n justify-content: space-between !important;\n }\n .justify-content-md-around {\n -ms-flex-pack: distribute !important;\n justify-content: space-around !important;\n }\n .align-items-md-start {\n -ms-flex-align: start !important;\n align-items: flex-start !important;\n }\n .align-items-md-end {\n -ms-flex-align: end !important;\n align-items: flex-end !important;\n }\n .align-items-md-center {\n -ms-flex-align: center !important;\n align-items: center !important;\n }\n .align-items-md-baseline {\n -ms-flex-align: baseline !important;\n align-items: baseline !important;\n }\n .align-items-md-stretch {\n -ms-flex-align: stretch !important;\n align-items: stretch !important;\n }\n .align-content-md-start {\n -ms-flex-line-pack: start !important;\n align-content: flex-start !important;\n }\n .align-content-md-end {\n -ms-flex-line-pack: end !important;\n align-content: flex-end !important;\n }\n .align-content-md-center {\n -ms-flex-line-pack: center !important;\n align-content: center !important;\n }\n .align-content-md-between {\n -ms-flex-line-pack: justify !important;\n align-content: space-between !important;\n }\n .align-content-md-around {\n -ms-flex-line-pack: distribute !important;\n align-content: space-around !important;\n }\n .align-content-md-stretch {\n -ms-flex-line-pack: stretch !important;\n align-content: stretch !important;\n }\n .align-self-md-auto {\n -ms-flex-item-align: auto !important;\n align-self: auto !important;\n }\n .align-self-md-start {\n -ms-flex-item-align: start !important;\n align-self: flex-start !important;\n }\n .align-self-md-end {\n -ms-flex-item-align: end !important;\n align-self: flex-end !important;\n }\n .align-self-md-center {\n -ms-flex-item-align: center !important;\n align-self: center !important;\n }\n .align-self-md-baseline {\n -ms-flex-item-align: baseline !important;\n align-self: baseline !important;\n }\n .align-self-md-stretch {\n -ms-flex-item-align: stretch !important;\n align-self: stretch !important;\n }\n}\n\n@media (min-width: 992px) {\n .flex-lg-row {\n -ms-flex-direction: row !important;\n flex-direction: row !important;\n }\n .flex-lg-column {\n -ms-flex-direction: column !important;\n flex-direction: column !important;\n }\n .flex-lg-row-reverse {\n -ms-flex-direction: row-reverse !important;\n flex-direction: row-reverse !important;\n }\n .flex-lg-column-reverse {\n -ms-flex-direction: column-reverse !important;\n flex-direction: column-reverse !important;\n }\n .flex-lg-wrap {\n -ms-flex-wrap: wrap !important;\n flex-wrap: wrap !important;\n }\n .flex-lg-nowrap {\n -ms-flex-wrap: nowrap !important;\n flex-wrap: nowrap !important;\n }\n .flex-lg-wrap-reverse {\n -ms-flex-wrap: wrap-reverse !important;\n flex-wrap: wrap-reverse !important;\n }\n .justify-content-lg-start {\n -ms-flex-pack: start !important;\n justify-content: flex-start !important;\n }\n .justify-content-lg-end {\n -ms-flex-pack: end !important;\n justify-content: flex-end !important;\n }\n .justify-content-lg-center {\n -ms-flex-pack: center !important;\n justify-content: center !important;\n }\n .justify-content-lg-between {\n -ms-flex-pack: justify !important;\n justify-content: space-between !important;\n }\n .justify-content-lg-around {\n -ms-flex-pack: distribute !important;\n justify-content: space-around !important;\n }\n .align-items-lg-start {\n -ms-flex-align: start !important;\n align-items: flex-start !important;\n }\n .align-items-lg-end {\n -ms-flex-align: end !important;\n align-items: flex-end !important;\n }\n .align-items-lg-center {\n -ms-flex-align: center !important;\n align-items: center !important;\n }\n .align-items-lg-baseline {\n -ms-flex-align: baseline !important;\n align-items: baseline !important;\n }\n .align-items-lg-stretch {\n -ms-flex-align: stretch !important;\n align-items: stretch !important;\n }\n .align-content-lg-start {\n -ms-flex-line-pack: start !important;\n align-content: flex-start !important;\n }\n .align-content-lg-end {\n -ms-flex-line-pack: end !important;\n align-content: flex-end !important;\n }\n .align-content-lg-center {\n -ms-flex-line-pack: center !important;\n align-content: center !important;\n }\n .align-content-lg-between {\n -ms-flex-line-pack: justify !important;\n align-content: space-between !important;\n }\n .align-content-lg-around {\n -ms-flex-line-pack: distribute !important;\n align-content: space-around !important;\n }\n .align-content-lg-stretch {\n -ms-flex-line-pack: stretch !important;\n align-content: stretch !important;\n }\n .align-self-lg-auto {\n -ms-flex-item-align: auto !important;\n align-self: auto !important;\n }\n .align-self-lg-start {\n -ms-flex-item-align: start !important;\n align-self: flex-start !important;\n }\n .align-self-lg-end {\n -ms-flex-item-align: end !important;\n align-self: flex-end !important;\n }\n .align-self-lg-center {\n -ms-flex-item-align: center !important;\n align-self: center !important;\n }\n .align-self-lg-baseline {\n -ms-flex-item-align: baseline !important;\n align-self: baseline !important;\n }\n .align-self-lg-stretch {\n -ms-flex-item-align: stretch !important;\n align-self: stretch !important;\n }\n}\n\n@media (min-width: 1200px) {\n .flex-xl-row {\n -ms-flex-direction: row !important;\n flex-direction: row !important;\n }\n .flex-xl-column {\n -ms-flex-direction: column !important;\n flex-direction: column !important;\n }\n .flex-xl-row-reverse {\n -ms-flex-direction: row-reverse !important;\n flex-direction: row-reverse !important;\n }\n .flex-xl-column-reverse {\n -ms-flex-direction: column-reverse !important;\n flex-direction: column-reverse !important;\n }\n .flex-xl-wrap {\n -ms-flex-wrap: wrap !important;\n flex-wrap: wrap !important;\n }\n .flex-xl-nowrap {\n -ms-flex-wrap: nowrap !important;\n flex-wrap: nowrap !important;\n }\n .flex-xl-wrap-reverse {\n -ms-flex-wrap: wrap-reverse !important;\n flex-wrap: wrap-reverse !important;\n }\n .justify-content-xl-start {\n -ms-flex-pack: start !important;\n justify-content: flex-start !important;\n }\n .justify-content-xl-end {\n -ms-flex-pack: end !important;\n justify-content: flex-end !important;\n }\n .justify-content-xl-center {\n -ms-flex-pack: center !important;\n justify-content: center !important;\n }\n .justify-content-xl-between {\n -ms-flex-pack: justify !important;\n justify-content: space-between !important;\n }\n .justify-content-xl-around {\n -ms-flex-pack: distribute !important;\n justify-content: space-around !important;\n }\n .align-items-xl-start {\n -ms-flex-align: start !important;\n align-items: flex-start !important;\n }\n .align-items-xl-end {\n -ms-flex-align: end !important;\n align-items: flex-end !important;\n }\n .align-items-xl-center {\n -ms-flex-align: center !important;\n align-items: center !important;\n }\n .align-items-xl-baseline {\n -ms-flex-align: baseline !important;\n align-items: baseline !important;\n }\n .align-items-xl-stretch {\n -ms-flex-align: stretch !important;\n align-items: stretch !important;\n }\n .align-content-xl-start {\n -ms-flex-line-pack: start !important;\n align-content: flex-start !important;\n }\n .align-content-xl-end {\n -ms-flex-line-pack: end !important;\n align-content: flex-end !important;\n }\n .align-content-xl-center {\n -ms-flex-line-pack: center !important;\n align-content: center !important;\n }\n .align-content-xl-between {\n -ms-flex-line-pack: justify !important;\n align-content: space-between !important;\n }\n .align-content-xl-around {\n -ms-flex-line-pack: distribute !important;\n align-content: space-around !important;\n }\n .align-content-xl-stretch {\n -ms-flex-line-pack: stretch !important;\n align-content: stretch !important;\n }\n .align-self-xl-auto {\n -ms-flex-item-align: auto !important;\n align-self: auto !important;\n }\n .align-self-xl-start {\n -ms-flex-item-align: start !important;\n align-self: flex-start !important;\n }\n .align-self-xl-end {\n -ms-flex-item-align: end !important;\n align-self: flex-end !important;\n }\n .align-self-xl-center {\n -ms-flex-item-align: center !important;\n align-self: center !important;\n }\n .align-self-xl-baseline {\n -ms-flex-item-align: baseline !important;\n align-self: baseline !important;\n }\n .align-self-xl-stretch {\n -ms-flex-item-align: stretch !important;\n align-self: stretch !important;\n }\n}\n/*# sourceMappingURL=bootstrap-grid.css.map */","// Container widths\n//\n// Set the container width, and override it for fixed navbars in media queries.\n\n@if $enable-grid-classes {\n .container {\n @include make-container();\n @include make-container-max-widths();\n }\n}\n\n// Fluid container\n//\n// Utilizes the mixin meant for fixed width containers, but with 100% width for\n// fluid, full width layouts.\n\n@if $enable-grid-classes {\n .container-fluid {\n width: 100%;\n @include make-container();\n }\n}\n\n// Row\n//\n// Rows contain and clear the floats of your columns.\n\n@if $enable-grid-classes {\n .row {\n @include make-row();\n }\n\n // Remove the negative margin from default .row, then the horizontal padding\n // from all immediate children columns (to prevent runaway style inheritance).\n .no-gutters {\n margin-right: 0;\n margin-left: 0;\n\n > .col,\n > [class*=\"col-\"] {\n padding-right: 0;\n padding-left: 0;\n }\n }\n}\n\n// Columns\n//\n// Common styles for small and large grid columns\n\n@if $enable-grid-classes {\n @include make-grid-columns();\n}\n","/// Grid system\n//\n// Generate semantic grid columns with these mixins.\n\n@mixin make-container() {\n margin-right: auto;\n margin-left: auto;\n padding-right: ($grid-gutter-width / 2);\n padding-left: ($grid-gutter-width / 2);\n width: 100%;\n}\n\n\n// For each breakpoint, define the maximum width of the container in a media query\n@mixin make-container-max-widths($max-widths: $container-max-widths, $breakpoints: $grid-breakpoints) {\n @each $breakpoint, $container-max-width in $max-widths {\n @include media-breakpoint-up($breakpoint, $breakpoints) {\n max-width: $container-max-width;\n }\n }\n}\n\n@mixin make-row() {\n display: flex;\n flex-wrap: wrap;\n margin-right: ($grid-gutter-width / -2);\n margin-left: ($grid-gutter-width / -2);\n}\n\n@mixin make-col-ready() {\n position: relative;\n // Prevent columns from becoming too narrow when at smaller grid tiers by\n // always setting `width: 100%;`. This works because we use `flex` values\n // later on to override this initial width.\n width: 100%;\n min-height: 1px; // Prevent collapsing\n padding-right: ($grid-gutter-width / 2);\n padding-left: ($grid-gutter-width / 2);\n}\n\n@mixin make-col($size, $columns: $grid-columns) {\n flex: 0 0 percentage($size / $columns);\n // Add a `max-width` to ensure content within each column does not blow out\n // the width of the column. Applies to IE10+ and Firefox. Chrome and Safari\n // do not appear to require this.\n max-width: percentage($size / $columns);\n}\n","// Breakpoint viewport sizes and media queries.\n//\n// Breakpoints are defined as a map of (name: minimum width), order from small to large:\n//\n// (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px)\n//\n// The map defined in the `$grid-breakpoints` global variable is used as the `$breakpoints` argument by default.\n\n// Name of the next breakpoint, or null for the last breakpoint.\n//\n// >> breakpoint-next(sm)\n// md\n// >> breakpoint-next(sm, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// md\n// >> breakpoint-next(sm, $breakpoint-names: (xs sm md lg xl))\n// md\n@function breakpoint-next($name, $breakpoints: $grid-breakpoints, $breakpoint-names: map-keys($breakpoints)) {\n $n: index($breakpoint-names, $name);\n @return if($n < length($breakpoint-names), nth($breakpoint-names, $n + 1), null);\n}\n\n// Minimum breakpoint width. Null for the smallest (first) breakpoint.\n//\n// >> breakpoint-min(sm, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// 576px\n@function breakpoint-min($name, $breakpoints: $grid-breakpoints) {\n $min: map-get($breakpoints, $name);\n @return if($min != 0, $min, null);\n}\n\n// Maximum breakpoint width. Null for the largest (last) breakpoint.\n// The maximum value is calculated as the minimum of the next one less 0.1.\n//\n// >> breakpoint-max(sm, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// 767px\n@function breakpoint-max($name, $breakpoints: $grid-breakpoints) {\n $next: breakpoint-next($name, $breakpoints);\n @return if($next, breakpoint-min($next, $breakpoints) - 1px, null);\n}\n\n// Returns a blank string if smallest breakpoint, otherwise returns the name with a dash infront.\n// Useful for making responsive utilities.\n//\n// >> breakpoint-infix(xs, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// \"\" (Returns a blank string)\n// >> breakpoint-infix(sm, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// \"-sm\"\n@function breakpoint-infix($name, $breakpoints: $grid-breakpoints) {\n @return if(breakpoint-min($name, $breakpoints) == null, \"\", \"-#{$name}\");\n}\n\n// Media of at least the minimum breakpoint width. No query for the smallest breakpoint.\n// Makes the @content apply to the given breakpoint and wider.\n@mixin media-breakpoint-up($name, $breakpoints: $grid-breakpoints) {\n $min: breakpoint-min($name, $breakpoints);\n @if $min {\n @media (min-width: $min) {\n @content;\n }\n } @else {\n @content;\n }\n}\n\n// Media of at most the maximum breakpoint width. No query for the largest breakpoint.\n// Makes the @content apply to the given breakpoint and narrower.\n@mixin media-breakpoint-down($name, $breakpoints: $grid-breakpoints) {\n $max: breakpoint-max($name, $breakpoints);\n @if $max {\n @media (max-width: $max) {\n @content;\n }\n } @else {\n @content;\n }\n}\n\n// Media that spans multiple breakpoint widths.\n// Makes the @content apply between the min and max breakpoints\n@mixin media-breakpoint-between($lower, $upper, $breakpoints: $grid-breakpoints) {\n $min: breakpoint-min($lower, $breakpoints);\n $max: breakpoint-max($upper, $breakpoints);\n\n @media (min-width: $min) and (max-width: $max) {\n @content;\n }\n}\n\n// Media between the breakpoint's minimum and maximum widths.\n// No minimum for the smallest breakpoint, and no maximum for the largest one.\n// Makes the @content apply only to the given breakpoint, not viewports any wider or narrower.\n@mixin media-breakpoint-only($name, $breakpoints: $grid-breakpoints) {\n $min: breakpoint-min($name, $breakpoints);\n $max: breakpoint-max($name, $breakpoints);\n\n @if $min != null and $max != null {\n @media (min-width: $min) and (max-width: $max) {\n @content;\n }\n } @else if $max == null {\n @include media-breakpoint-up($name)\n } @else if $min == null {\n @include media-breakpoint-down($name)\n }\n}\n","// Framework grid generation\n//\n// Used only by Bootstrap to generate the correct number of grid classes given\n// any value of `$grid-columns`.\n\n@mixin make-grid-columns($columns: $grid-columns, $gutter: $grid-gutter-width, $breakpoints: $grid-breakpoints) {\n // Common properties for all breakpoints\n %grid-column {\n position: relative;\n width: 100%;\n min-height: 1px; // Prevent columns from collapsing when empty\n padding-right: ($gutter / 2);\n padding-left: ($gutter / 2);\n }\n\n @each $breakpoint in map-keys($breakpoints) {\n $infix: breakpoint-infix($breakpoint, $breakpoints);\n\n // Allow columns to stretch full width below their breakpoints\n @for $i from 1 through $columns {\n .col#{$infix}-#{$i} {\n @extend %grid-column;\n }\n }\n .col#{$infix},\n .col#{$infix}-auto {\n @extend %grid-column;\n }\n\n @include media-breakpoint-up($breakpoint, $breakpoints) {\n // Provide basic `.col-{bp}` classes for equal-width flexbox columns\n .col#{$infix} {\n flex-basis: 0;\n flex-grow: 1;\n max-width: 100%;\n }\n .col#{$infix}-auto {\n flex: 0 0 auto;\n width: auto;\n max-width: none; // Reset earlier grid tiers\n }\n\n @for $i from 1 through $columns {\n .col#{$infix}-#{$i} {\n @include make-col($i, $columns);\n }\n }\n\n @for $i from 1 through $columns {\n .order#{$infix}-#{$i} {\n order: $i;\n }\n }\n }\n }\n}\n","// Flex variation\n//\n// Custom styles for additional flex alignment options.\n\n@each $breakpoint in map-keys($grid-breakpoints) {\n @include media-breakpoint-up($breakpoint) {\n $infix: breakpoint-infix($breakpoint, $grid-breakpoints);\n\n .flex#{$infix}-row { flex-direction: row !important; }\n .flex#{$infix}-column { flex-direction: column !important; }\n .flex#{$infix}-row-reverse { flex-direction: row-reverse !important; }\n .flex#{$infix}-column-reverse { flex-direction: column-reverse !important; }\n\n .flex#{$infix}-wrap { flex-wrap: wrap !important; }\n .flex#{$infix}-nowrap { flex-wrap: nowrap !important; }\n .flex#{$infix}-wrap-reverse { flex-wrap: wrap-reverse !important; }\n\n .justify-content#{$infix}-start { justify-content: flex-start !important; }\n .justify-content#{$infix}-end { justify-content: flex-end !important; }\n .justify-content#{$infix}-center { justify-content: center !important; }\n .justify-content#{$infix}-between { justify-content: space-between !important; }\n .justify-content#{$infix}-around { justify-content: space-around !important; }\n\n .align-items#{$infix}-start { align-items: flex-start !important; }\n .align-items#{$infix}-end { align-items: flex-end !important; }\n .align-items#{$infix}-center { align-items: center !important; }\n .align-items#{$infix}-baseline { align-items: baseline !important; }\n .align-items#{$infix}-stretch { align-items: stretch !important; }\n\n .align-content#{$infix}-start { align-content: flex-start !important; }\n .align-content#{$infix}-end { align-content: flex-end !important; }\n .align-content#{$infix}-center { align-content: center !important; }\n .align-content#{$infix}-between { align-content: space-between !important; }\n .align-content#{$infix}-around { align-content: space-around !important; }\n .align-content#{$infix}-stretch { align-content: stretch !important; }\n\n .align-self#{$infix}-auto { align-self: auto !important; }\n .align-self#{$infix}-start { align-self: flex-start !important; }\n .align-self#{$infix}-end { align-self: flex-end !important; }\n .align-self#{$infix}-center { align-self: center !important; }\n .align-self#{$infix}-baseline { align-self: baseline !important; }\n .align-self#{$infix}-stretch { align-self: stretch !important; }\n }\n}\n"]} \ No newline at end of file diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-reboot.css b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-reboot.css new file mode 100644 index 0000000..867ee17 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-reboot.css @@ -0,0 +1,330 @@ +html { + box-sizing: border-box; + font-family: sans-serif; + line-height: 1.15; + -webkit-text-size-adjust: 100%; + -ms-text-size-adjust: 100%; + -ms-overflow-style: scrollbar; + -webkit-tap-highlight-color: transparent; +} + +*, +*::before, +*::after { + box-sizing: inherit; +} + +@-ms-viewport { + width: device-width; +} + +article, aside, dialog, figcaption, figure, footer, header, hgroup, main, nav, section { + display: block; +} + +body { + margin: 0; + font-family: -apple-system, BlinkMacSystemFont, "Segoe UI", Roboto, "Helvetica Neue", Arial, sans-serif; + font-size: 1rem; + font-weight: normal; + line-height: 1.5; + color: #212529; + background-color: #fff; +} + +[tabindex="-1"]:focus { + outline: none !important; +} + +hr { + box-sizing: content-box; + height: 0; + overflow: visible; +} + +h1, h2, h3, h4, h5, h6 { + margin-top: 0; + margin-bottom: .5rem; +} + +p { + margin-top: 0; + margin-bottom: 1rem; +} + +abbr[title], +abbr[data-original-title] { + text-decoration: underline; + -webkit-text-decoration: underline dotted; + text-decoration: underline dotted; + cursor: help; + border-bottom: 0; +} + +address { + margin-bottom: 1rem; + font-style: normal; + line-height: inherit; +} + +ol, +ul, +dl { + margin-top: 0; + margin-bottom: 1rem; +} + +ol ol, +ul ul, +ol ul, +ul ol { + margin-bottom: 0; +} + +dt { + font-weight: bold; +} + +dd { + margin-bottom: .5rem; + margin-left: 0; +} + +blockquote { + margin: 0 0 1rem; +} + +dfn { + font-style: italic; +} + +b, +strong { + font-weight: bolder; +} + +small { + font-size: 80%; +} + +sub, +sup { + position: relative; + font-size: 75%; + line-height: 0; + vertical-align: baseline; +} + +sub { + bottom: -.25em; +} + +sup { + top: -.5em; +} + +a { + color: #007bff; + text-decoration: none; + background-color: transparent; + -webkit-text-decoration-skip: objects; +} + +a:hover { + color: #0056b3; + text-decoration: underline; +} + +a:not([href]):not([tabindex]) { + color: inherit; + text-decoration: none; +} + +a:not([href]):not([tabindex]):focus, a:not([href]):not([tabindex]):hover { + color: inherit; + text-decoration: none; +} + +a:not([href]):not([tabindex]):focus { + outline: 0; +} + +pre, +code, +kbd, +samp { + font-family: monospace, monospace; + font-size: 1em; +} + +pre { + margin-top: 0; + margin-bottom: 1rem; + overflow: auto; +} + +figure { + margin: 0 0 1rem; +} + +img { + vertical-align: middle; + border-style: none; +} + +svg:not(:root) { + overflow: hidden; +} + +a, +area, +button, +[role="button"], +input, +label, +select, +summary, +textarea { + -ms-touch-action: manipulation; + touch-action: manipulation; +} + +table { + border-collapse: collapse; +} + +caption { + padding-top: 0.75rem; + padding-bottom: 0.75rem; + color: #868e96; + text-align: left; + caption-side: bottom; +} + +th { + text-align: left; +} + +label { + display: inline-block; + margin-bottom: .5rem; +} + +button:focus { + outline: 1px dotted; + outline: 5px auto -webkit-focus-ring-color; +} + +input, +button, +select, +optgroup, +textarea { + margin: 0; + font-family: inherit; + font-size: inherit; + line-height: inherit; +} + +button, +input { + overflow: visible; +} + +button, +select { + text-transform: none; +} + +button, +html [type="button"], +[type="reset"], +[type="submit"] { + -webkit-appearance: button; +} + +button::-moz-focus-inner, +[type="button"]::-moz-focus-inner, +[type="reset"]::-moz-focus-inner, +[type="submit"]::-moz-focus-inner { + padding: 0; + border-style: none; +} + +input[type="radio"], +input[type="checkbox"] { + box-sizing: border-box; + padding: 0; +} + +input[type="date"], +input[type="time"], +input[type="datetime-local"], +input[type="month"] { + -webkit-appearance: listbox; +} + +textarea { + overflow: auto; + resize: vertical; +} + +fieldset { + min-width: 0; + padding: 0; + margin: 0; + border: 0; +} + +legend { + display: block; + width: 100%; + max-width: 100%; + padding: 0; + margin-bottom: .5rem; + font-size: 1.5rem; + line-height: inherit; + color: inherit; + white-space: normal; +} + +progress { + vertical-align: baseline; +} + +[type="number"]::-webkit-inner-spin-button, +[type="number"]::-webkit-outer-spin-button { + height: auto; +} + +[type="search"] { + outline-offset: -2px; + -webkit-appearance: none; +} + +[type="search"]::-webkit-search-cancel-button, +[type="search"]::-webkit-search-decoration { + -webkit-appearance: none; +} + +::-webkit-file-upload-button { + font: inherit; + -webkit-appearance: button; +} + +output { + display: inline-block; +} + +summary { + display: list-item; +} + +template { + display: none; +} + +[hidden] { + display: none !important; +} +/*# sourceMappingURL=bootstrap-reboot.css.map */ \ No newline at end of file diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-reboot.css.map b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-reboot.css.map new file mode 100644 index 0000000..425ac48 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-reboot.css.map @@ -0,0 +1 @@ +{"version":3,"sources":["../../scss/_reboot.scss","bootstrap-reboot.css","../../scss/_variables.scss","../../scss/mixins/_hover.scss"],"names":[],"mappings":"AAoBA;EACE,uBAAsB;EACtB,wBAAuB;EACvB,kBAAiB;EACjB,+BAA8B;EAC9B,2BAA0B;EAC1B,8BAA6B;EAC7B,yCAA0C;CAC3C;;AAED;;;EAGE,oBAAmB;CACpB;;AAIC;EAAgB,oBAAmB;CCpBpC;;ADwBD;EACE,eAAc;CACf;;AAOD;EACE,UAAS;EACT,wGEoLiH;EFnLjH,gBEuLmB;EFtLnB,oBE0LyB;EFzLzB,iBE6LoB;EF5LpB,eEEgB;EFDhB,uBERW;CFSZ;;ACzBD;EDiCE,yBAAwB;CACzB;;AAQD;EACE,wBAAuB;EACvB,UAAS;EACT,kBAAiB;CAClB;;AAWD;EACE,cAAa;EACb,qBAAoB;CACrB;;AAMD;EACE,cAAa;EACb,oBAAmB;CACpB;;AASD;;EAEE,2BAA0B;EAC1B,0CAAiC;UAAjC,kCAAiC;EACjC,aAAY;EACZ,iBAAgB;CACjB;;AAED;EACE,oBAAmB;EACnB,mBAAkB;EAClB,qBAAoB;CACrB;;AAED;;;EAGE,cAAa;EACb,oBAAmB;CACpB;;AAED;;;;EAIE,iBAAgB;CACjB;;AAED;EACE,kBEqGqB;CFpGtB;;AAED;EACE,qBAAoB;EACpB,eAAc;CACf;;AAED;EACE,iBAAgB;CACjB;;AAED;EACE,mBAAkB;CACnB;;AAED;;EAEE,oBAAmB;CACpB;;AAED;EACE,eAAc;CACf;;AAOD;;EAEE,mBAAkB;EAClB,eAAc;EACd,eAAc;EACd,yBAAwB;CACzB;;AAED;EAAM,eAAc;CAAK;;AACzB;EAAM,WAAU;CAAK;;AAOrB;EACE,eElHe;EFmHf,sBExB0B;EFyB1B,8BAA6B;EAC7B,sCAAqC;CAMtC;;AG1LG;EHuLA,eE5B4C;EF6B5C,2BE5B6B;CC5JR;;AHkMzB;EACE,eAAc;EACd,sBAAqB;CAUtB;;AGnMG;EH4LA,eAAc;EACd,sBAAqB;CG1LpB;;AHoLL;EAUI,WAAU;CACX;;AAQH;;;;EAIE,kCAAiC;EACjC,eAAc;CACf;;AAED;EAEE,cAAa;EAEb,oBAAmB;EAEnB,eAAc;CACf;;AAOD;EAEE,iBAAgB;CACjB;;AAOD;EACE,uBAAsB;EACtB,mBAAkB;CACnB;;AAED;EACE,iBAAgB;CACjB;;AAaD;;;;;;;;;EASE,+BAA0B;MAA1B,2BAA0B;CAC3B;;AAOD;EACE,0BAAyB;CAC1B;;AAED;EACE,qBEEoC;EFDpC,wBECoC;EFApC,eEpPgB;EFqPhB,iBAAgB;EAChB,qBAAoB;CACrB;;AAED;EAEE,iBAAgB;CACjB;;AAOD;EAEE,sBAAqB;EACrB,qBAAoB;CACrB;;AAMD;EACE,oBAAmB;EACnB,2CAA0C;CAC3C;;AAED;;;;;EAKE,UAAS;EACT,qBAAoB;EACpB,mBAAkB;EAClB,qBAAoB;CACrB;;AAED;;EAEE,kBAAiB;CAClB;;AAED;;EAEE,qBAAoB;CACrB;;AAKD;;;;EAIE,2BAA0B;CAC3B;;AAGD;;;;EAIE,WAAU;EACV,mBAAkB;CACnB;;AAED;;EAEE,uBAAsB;EACtB,WAAU;CACX;;AAGD;;;;EASE,4BAA2B;CAC5B;;AAED;EACE,eAAc;EAEd,iBAAgB;CACjB;;AAED;EAME,aAAY;EAEZ,WAAU;EACV,UAAS;EACT,UAAS;CACV;;AAID;EACE,eAAc;EACd,YAAW;EACX,gBAAe;EACf,WAAU;EACV,qBAAoB;EACpB,kBAAiB;EACjB,qBAAoB;EACpB,eAAc;EACd,oBAAmB;CACpB;;AAED;EACE,yBAAwB;CACzB;;ACpID;;EDyIE,aAAY;CACb;;ACrID;ED4IE,qBAAoB;EACpB,yBAAwB;CACzB;;ACzID;;EDiJE,yBAAwB;CACzB;;AAOD;EACE,cAAa;EACb,2BAA0B;CAC3B;;AAMD;EACE,sBAAqB;CACtB;;AAED;EACE,mBAAkB;CACnB;;AAED;EACE,cAAa;CACd;;ACtJD;ED2JE,yBAAwB;CACzB","file":"bootstrap-reboot.css","sourcesContent":["// scss-lint:disable QualifyingElement, DuplicateProperty, VendorPrefix\n\n// Reboot\n//\n// Normalization of HTML elements, manually forked from Normalize.css to remove\n// styles targeting irrelevant browsers while applying new styles.\n//\n// Normalize is licensed MIT. https://github.com/necolas/normalize.css\n\n\n// Document\n//\n// 1. Change from `box-sizing: content-box` so that `width` is not affected by `padding` or `border`.\n// 2. Change the default font family in all browsers.\n// 3. Correct the line height in all browsers.\n// 4. Prevent adjustments of font size after orientation changes in IE on Windows Phone and in iOS.\n// 5. Setting @viewport causes scrollbars to overlap content in IE11 and Edge, so\n// we force a non-overlapping, non-auto-hiding scrollbar to counteract.\n// 6. Change the default tap highlight to be completely transparent in iOS.\n\nhtml {\n box-sizing: border-box; // 1\n font-family: sans-serif; // 2\n line-height: 1.15; // 3\n -webkit-text-size-adjust: 100%; // 4\n -ms-text-size-adjust: 100%; // 4\n -ms-overflow-style: scrollbar; // 5\n -webkit-tap-highlight-color: rgba(0,0,0,0); // 6\n}\n\n*,\n*::before,\n*::after {\n box-sizing: inherit; // 1\n}\n\n// IE10+ doesn't honor `` in some cases.\n@at-root {\n @-ms-viewport { width: device-width; }\n}\n\n// Shim for \"new\" HTML5 structural elements to display correctly (IE10, older browsers)\narticle, aside, dialog, figcaption, figure, footer, header, hgroup, main, nav, section {\n display: block;\n}\n\n// Body\n//\n// 1. Remove the margin in all browsers.\n// 2. As a best practice, apply a default `background-color`.\n\nbody {\n margin: 0; // 1\n font-family: $font-family-base;\n font-size: $font-size-base;\n font-weight: $font-weight-base;\n line-height: $line-height-base;\n color: $body-color;\n background-color: $body-bg; // 2\n}\n\n// Suppress the focus outline on elements that cannot be accessed via keyboard.\n// This prevents an unwanted focus outline from appearing around elements that\n// might still respond to pointer events.\n//\n// Credit: https://github.com/suitcss/base\n[tabindex=\"-1\"]:focus {\n outline: none !important;\n}\n\n\n// Content grouping\n//\n// 1. Add the correct box sizing in Firefox.\n// 2. Show the overflow in Edge and IE.\n\nhr {\n box-sizing: content-box; // 1\n height: 0; // 1\n overflow: visible; // 2\n}\n\n\n//\n// Typography\n//\n\n// Remove top margins from headings\n//\n// By default, `

`-`

` all receive top and bottom margins. We nuke the top\n// margin for easier control within type scales as it avoids margin collapsing.\nh1, h2, h3, h4, h5, h6 {\n margin-top: 0;\n margin-bottom: .5rem;\n}\n\n// Reset margins on paragraphs\n//\n// Similarly, the top margin on `

`s get reset. However, we also reset the\n// bottom margin to use `rem` units instead of `em`.\np {\n margin-top: 0;\n margin-bottom: 1rem;\n}\n\n// Abbreviations\n//\n// 1. Remove the bottom border in Firefox 39-.\n// 2. Add the correct text decoration in Chrome, Edge, IE, Opera, and Safari.\n// 3. Add explicit cursor to indicate changed behavior.\n// 4. Duplicate behavior to the data-* attribute for our tooltip plugin\n\nabbr[title],\nabbr[data-original-title] { // 4\n text-decoration: underline; // 2\n text-decoration: underline dotted; // 2\n cursor: help; // 3\n border-bottom: 0; // 1\n}\n\naddress {\n margin-bottom: 1rem;\n font-style: normal;\n line-height: inherit;\n}\n\nol,\nul,\ndl {\n margin-top: 0;\n margin-bottom: 1rem;\n}\n\nol ol,\nul ul,\nol ul,\nul ol {\n margin-bottom: 0;\n}\n\ndt {\n font-weight: $dt-font-weight;\n}\n\ndd {\n margin-bottom: .5rem;\n margin-left: 0; // Undo browser default\n}\n\nblockquote {\n margin: 0 0 1rem;\n}\n\ndfn {\n font-style: italic; // Add the correct font style in Android 4.3-\n}\n\nb,\nstrong {\n font-weight: bolder; // Add the correct font weight in Chrome, Edge, and Safari\n}\n\nsmall {\n font-size: 80%; // Add the correct font size in all browsers\n}\n\n//\n// Prevent `sub` and `sup` elements from affecting the line height in\n// all browsers.\n//\n\nsub,\nsup {\n position: relative;\n font-size: 75%;\n line-height: 0;\n vertical-align: baseline;\n}\n\nsub { bottom: -.25em; }\nsup { top: -.5em; }\n\n\n//\n// Links\n//\n\na {\n color: $link-color;\n text-decoration: $link-decoration;\n background-color: transparent; // Remove the gray background on active links in IE 10.\n -webkit-text-decoration-skip: objects; // Remove gaps in links underline in iOS 8+ and Safari 8+.\n\n @include hover {\n color: $link-hover-color;\n text-decoration: $link-hover-decoration;\n }\n}\n\n// And undo these styles for placeholder links/named anchors (without href)\n// which have not been made explicitly keyboard-focusable (without tabindex).\n// It would be more straightforward to just use a[href] in previous block, but that\n// causes specificity issues in many other styles that are too complex to fix.\n// See https://github.com/twbs/bootstrap/issues/19402\n\na:not([href]):not([tabindex]) {\n color: inherit;\n text-decoration: none;\n\n @include hover-focus {\n color: inherit;\n text-decoration: none;\n }\n\n &:focus {\n outline: 0;\n }\n}\n\n\n//\n// Code\n//\n\npre,\ncode,\nkbd,\nsamp {\n font-family: monospace, monospace; // Correct the inheritance and scaling of font size in all browsers.\n font-size: 1em; // Correct the odd `em` font sizing in all browsers.\n}\n\npre {\n // Remove browser default top margin\n margin-top: 0;\n // Reset browser default of `1em` to use `rem`s\n margin-bottom: 1rem;\n // Don't allow content to break outside\n overflow: auto;\n}\n\n\n//\n// Figures\n//\n\nfigure {\n // Apply a consistent margin strategy (matches our type styles).\n margin: 0 0 1rem;\n}\n\n\n//\n// Images and content\n//\n\nimg {\n vertical-align: middle;\n border-style: none; // Remove the border on images inside links in IE 10-.\n}\n\nsvg:not(:root) {\n overflow: hidden; // Hide the overflow in IE\n}\n\n\n// Avoid 300ms click delay on touch devices that support the `touch-action` CSS property.\n//\n// In particular, unlike most other browsers, IE11+Edge on Windows 10 on touch devices and IE Mobile 10-11\n// DON'T remove the click delay when `` is present.\n// However, they DO support removing the click delay via `touch-action: manipulation`.\n// See:\n// * https://v4-alpha.getbootstrap.com/content/reboot/#click-delay-optimization-for-touch\n// * http://caniuse.com/#feat=css-touch-action\n// * https://patrickhlauke.github.io/touch/tests/results/#suppressing-300ms-delay\n\na,\narea,\nbutton,\n[role=\"button\"],\ninput,\nlabel,\nselect,\nsummary,\ntextarea {\n touch-action: manipulation;\n}\n\n\n//\n// Tables\n//\n\ntable {\n border-collapse: collapse; // Prevent double borders\n}\n\ncaption {\n padding-top: $table-cell-padding;\n padding-bottom: $table-cell-padding;\n color: $text-muted;\n text-align: left;\n caption-side: bottom;\n}\n\nth {\n // Matches default `` alignment\n text-align: left;\n}\n\n\n//\n// Forms\n//\n\nlabel {\n // Allow labels to use `margin` for spacing.\n display: inline-block;\n margin-bottom: .5rem;\n}\n\n// Work around a Firefox/IE bug where the transparent `button` background\n// results in a loss of the default `button` focus styles.\n//\n// Credit: https://github.com/suitcss/base/\nbutton:focus {\n outline: 1px dotted;\n outline: 5px auto -webkit-focus-ring-color;\n}\n\ninput,\nbutton,\nselect,\noptgroup,\ntextarea {\n margin: 0; // Remove the margin in Firefox and Safari\n font-family: inherit;\n font-size: inherit;\n line-height: inherit;\n}\n\nbutton,\ninput {\n overflow: visible; // Show the overflow in Edge\n}\n\nbutton,\nselect {\n text-transform: none; // Remove the inheritance of text transform in Firefox\n}\n\n// 1. Prevent a WebKit bug where (2) destroys native `audio` and `video`\n// controls in Android 4.\n// 2. Correct the inability to style clickable types in iOS and Safari.\nbutton,\nhtml [type=\"button\"], // 1\n[type=\"reset\"],\n[type=\"submit\"] {\n -webkit-appearance: button; // 2\n}\n\n// Remove inner border and padding from Firefox, but don't restore the outline like Normalize.\nbutton::-moz-focus-inner,\n[type=\"button\"]::-moz-focus-inner,\n[type=\"reset\"]::-moz-focus-inner,\n[type=\"submit\"]::-moz-focus-inner {\n padding: 0;\n border-style: none;\n}\n\ninput[type=\"radio\"],\ninput[type=\"checkbox\"] {\n box-sizing: border-box; // 1. Add the correct box sizing in IE 10-\n padding: 0; // 2. Remove the padding in IE 10-\n}\n\n\ninput[type=\"date\"],\ninput[type=\"time\"],\ninput[type=\"datetime-local\"],\ninput[type=\"month\"] {\n // Remove the default appearance of temporal inputs to avoid a Mobile Safari\n // bug where setting a custom line-height prevents text from being vertically\n // centered within the input.\n // See https://bugs.webkit.org/show_bug.cgi?id=139848\n // and https://github.com/twbs/bootstrap/issues/11266\n -webkit-appearance: listbox;\n}\n\ntextarea {\n overflow: auto; // Remove the default vertical scrollbar in IE.\n // Textareas should really only resize vertically so they don't break their (horizontal) containers.\n resize: vertical;\n}\n\nfieldset {\n // Browsers set a default `min-width: min-content;` on fieldsets,\n // unlike e.g. `

`s, which have `min-width: 0;` by default.\n // So we reset that to ensure fieldsets behave more like a standard block element.\n // See https://github.com/twbs/bootstrap/issues/12359\n // and https://html.spec.whatwg.org/multipage/#the-fieldset-and-legend-elements\n min-width: 0;\n // Reset the default outline behavior of fieldsets so they don't affect page layout.\n padding: 0;\n margin: 0;\n border: 0;\n}\n\n// 1. Correct the text wrapping in Edge and IE.\n// 2. Correct the color inheritance from `fieldset` elements in IE.\nlegend {\n display: block;\n width: 100%;\n max-width: 100%; // 1\n padding: 0;\n margin-bottom: .5rem;\n font-size: 1.5rem;\n line-height: inherit;\n color: inherit; // 2\n white-space: normal; // 1\n}\n\nprogress {\n vertical-align: baseline; // Add the correct vertical alignment in Chrome, Firefox, and Opera.\n}\n\n// Correct the cursor style of increment and decrement buttons in Chrome.\n[type=\"number\"]::-webkit-inner-spin-button,\n[type=\"number\"]::-webkit-outer-spin-button {\n height: auto;\n}\n\n[type=\"search\"] {\n // This overrides the extra rounded corners on search inputs in iOS so that our\n // `.form-control` class can properly style them. Note that this cannot simply\n // be added to `.form-control` as it's not specific enough. For details, see\n // https://github.com/twbs/bootstrap/issues/11586.\n outline-offset: -2px; // 2. Correct the outline style in Safari.\n -webkit-appearance: none;\n}\n\n//\n// Remove the inner padding and cancel buttons in Chrome and Safari on macOS.\n//\n\n[type=\"search\"]::-webkit-search-cancel-button,\n[type=\"search\"]::-webkit-search-decoration {\n -webkit-appearance: none;\n}\n\n//\n// 1. Correct the inability to style clickable types in iOS and Safari.\n// 2. Change font properties to `inherit` in Safari.\n//\n\n::-webkit-file-upload-button {\n font: inherit; // 2\n -webkit-appearance: button; // 1\n}\n\n//\n// Correct element displays\n//\n\noutput {\n display: inline-block;\n}\n\nsummary {\n display: list-item; // Add the correct display in all browsers\n}\n\ntemplate {\n display: none; // Add the correct display in IE\n}\n\n// Always hide an element with the `hidden` HTML attribute (from PureCSS).\n// Needed for proper display in IE 10-.\n[hidden] {\n display: none !important;\n}\n","html {\n box-sizing: border-box;\n font-family: sans-serif;\n line-height: 1.15;\n -webkit-text-size-adjust: 100%;\n -ms-text-size-adjust: 100%;\n -ms-overflow-style: scrollbar;\n -webkit-tap-highlight-color: transparent;\n}\n\n*,\n*::before,\n*::after {\n box-sizing: inherit;\n}\n\n@-ms-viewport {\n width: device-width;\n}\n\narticle, aside, dialog, figcaption, figure, footer, header, hgroup, main, nav, section {\n display: block;\n}\n\nbody {\n margin: 0;\n font-family: -apple-system, BlinkMacSystemFont, \"Segoe UI\", Roboto, \"Helvetica Neue\", Arial, sans-serif;\n font-size: 1rem;\n font-weight: normal;\n line-height: 1.5;\n color: #212529;\n background-color: #fff;\n}\n\n[tabindex=\"-1\"]:focus {\n outline: none !important;\n}\n\nhr {\n box-sizing: content-box;\n height: 0;\n overflow: visible;\n}\n\nh1, h2, h3, h4, h5, h6 {\n margin-top: 0;\n margin-bottom: .5rem;\n}\n\np {\n margin-top: 0;\n margin-bottom: 1rem;\n}\n\nabbr[title],\nabbr[data-original-title] {\n text-decoration: underline;\n text-decoration: underline dotted;\n cursor: help;\n border-bottom: 0;\n}\n\naddress {\n margin-bottom: 1rem;\n font-style: normal;\n line-height: inherit;\n}\n\nol,\nul,\ndl {\n margin-top: 0;\n margin-bottom: 1rem;\n}\n\nol ol,\nul ul,\nol ul,\nul ol {\n margin-bottom: 0;\n}\n\ndt {\n font-weight: bold;\n}\n\ndd {\n margin-bottom: .5rem;\n margin-left: 0;\n}\n\nblockquote {\n margin: 0 0 1rem;\n}\n\ndfn {\n font-style: italic;\n}\n\nb,\nstrong {\n font-weight: bolder;\n}\n\nsmall {\n font-size: 80%;\n}\n\nsub,\nsup {\n position: relative;\n font-size: 75%;\n line-height: 0;\n vertical-align: baseline;\n}\n\nsub {\n bottom: -.25em;\n}\n\nsup {\n top: -.5em;\n}\n\na {\n color: #007bff;\n text-decoration: none;\n background-color: transparent;\n -webkit-text-decoration-skip: objects;\n}\n\na:hover {\n color: #0056b3;\n text-decoration: underline;\n}\n\na:not([href]):not([tabindex]) {\n color: inherit;\n text-decoration: none;\n}\n\na:not([href]):not([tabindex]):focus, a:not([href]):not([tabindex]):hover {\n color: inherit;\n text-decoration: none;\n}\n\na:not([href]):not([tabindex]):focus {\n outline: 0;\n}\n\npre,\ncode,\nkbd,\nsamp {\n font-family: monospace, monospace;\n font-size: 1em;\n}\n\npre {\n margin-top: 0;\n margin-bottom: 1rem;\n overflow: auto;\n}\n\nfigure {\n margin: 0 0 1rem;\n}\n\nimg {\n vertical-align: middle;\n border-style: none;\n}\n\nsvg:not(:root) {\n overflow: hidden;\n}\n\na,\narea,\nbutton,\n[role=\"button\"],\ninput,\nlabel,\nselect,\nsummary,\ntextarea {\n touch-action: manipulation;\n}\n\ntable {\n border-collapse: collapse;\n}\n\ncaption {\n padding-top: 0.75rem;\n padding-bottom: 0.75rem;\n color: #868e96;\n text-align: left;\n caption-side: bottom;\n}\n\nth {\n text-align: left;\n}\n\nlabel {\n display: inline-block;\n margin-bottom: .5rem;\n}\n\nbutton:focus {\n outline: 1px dotted;\n outline: 5px auto -webkit-focus-ring-color;\n}\n\ninput,\nbutton,\nselect,\noptgroup,\ntextarea {\n margin: 0;\n font-family: inherit;\n font-size: inherit;\n line-height: inherit;\n}\n\nbutton,\ninput {\n overflow: visible;\n}\n\nbutton,\nselect {\n text-transform: none;\n}\n\nbutton,\nhtml [type=\"button\"],\n[type=\"reset\"],\n[type=\"submit\"] {\n -webkit-appearance: button;\n}\n\nbutton::-moz-focus-inner,\n[type=\"button\"]::-moz-focus-inner,\n[type=\"reset\"]::-moz-focus-inner,\n[type=\"submit\"]::-moz-focus-inner {\n padding: 0;\n border-style: none;\n}\n\ninput[type=\"radio\"],\ninput[type=\"checkbox\"] {\n box-sizing: border-box;\n padding: 0;\n}\n\ninput[type=\"date\"],\ninput[type=\"time\"],\ninput[type=\"datetime-local\"],\ninput[type=\"month\"] {\n -webkit-appearance: listbox;\n}\n\ntextarea {\n overflow: auto;\n resize: vertical;\n}\n\nfieldset {\n min-width: 0;\n padding: 0;\n margin: 0;\n border: 0;\n}\n\nlegend {\n display: block;\n width: 100%;\n max-width: 100%;\n padding: 0;\n margin-bottom: .5rem;\n font-size: 1.5rem;\n line-height: inherit;\n color: inherit;\n white-space: normal;\n}\n\nprogress {\n vertical-align: baseline;\n}\n\n[type=\"number\"]::-webkit-inner-spin-button,\n[type=\"number\"]::-webkit-outer-spin-button {\n height: auto;\n}\n\n[type=\"search\"] {\n outline-offset: -2px;\n -webkit-appearance: none;\n}\n\n[type=\"search\"]::-webkit-search-cancel-button,\n[type=\"search\"]::-webkit-search-decoration {\n -webkit-appearance: none;\n}\n\n::-webkit-file-upload-button {\n font: inherit;\n -webkit-appearance: button;\n}\n\noutput {\n display: inline-block;\n}\n\nsummary {\n display: list-item;\n}\n\ntemplate {\n display: none;\n}\n\n[hidden] {\n display: none !important;\n}\n\n/*# sourceMappingURL=bootstrap-reboot.css.map */","// Variables\n//\n// Copy settings from this file into the provided `_custom.scss` to override\n// the Bootstrap defaults without modifying key, versioned files.\n//\n// Variables should follow the `$component-state-property-size` formula for\n// consistent naming. Ex: $nav-link-disabled-color and $modal-content-box-shadow-xs.\n\n// Table of Contents\n//\n// Color system\n// Options\n// Spacing\n// Body\n// Links\n// Grid breakpoints\n// Grid containers\n// Grid columns\n// Fonts\n// Components\n// Tables\n// Buttons\n// Forms\n// Dropdowns\n// Z-index master list\n// Navs\n// Navbar\n// Pagination\n// Jumbotron\n// Form states and alerts\n// Cards\n// Tooltips\n// Popovers\n// Badges\n// Modals\n// Alerts\n// Progress bars\n// List group\n// Image thumbnails\n// Figures\n// Breadcrumbs\n// Carousel\n// Close\n// Code\n\n\n//\n// Color system\n//\n\n$white: #fff !default;\n$gray-100: #f8f9fa !default;\n$gray-200: #e9ecef !default;\n$gray-300: #dee2e6 !default;\n$gray-400: #ced4da !default;\n$gray-500: #adb5bd !default;\n$gray-600: #868e96 !default;\n$gray-700: #495057 !default;\n$gray-800: #343a40 !default;\n$gray-900: #212529 !default;\n$black: #000 !default;\n\n$grays: (\n 100: $gray-100,\n 200: $gray-200,\n 300: $gray-300,\n 400: $gray-400,\n 500: $gray-500,\n 600: $gray-600,\n 700: $gray-700,\n 800: $gray-800,\n 900: $gray-900\n) !default;\n\n$blue: #007bff !default;\n$indigo: #6610f2 !default;\n$purple: #6f42c1 !default;\n$pink: #e83e8c !default;\n$red: #dc3545 !default;\n$orange: #fd7e14 !default;\n$yellow: #ffc107 !default;\n$green: #28a745 !default;\n$teal: #20c997 !default;\n$cyan: #17a2b8 !default;\n\n$colors: (\n blue: $blue,\n indigo: $indigo,\n purple: $purple,\n pink: $pink,\n red: $red,\n orange: $orange,\n yellow: $yellow,\n green: $green,\n teal: $teal,\n cyan: $cyan,\n white: $white,\n gray: $gray-600,\n gray-dark: $gray-800\n) !default;\n\n$theme-colors: (\n primary: $blue,\n secondary: $gray-600,\n success: $green,\n info: $cyan,\n warning: $yellow,\n danger: $red,\n light: $gray-100,\n dark: $gray-800\n) !default;\n\n// Set a specific jump point for requesting color jumps\n$theme-color-interval: 8% !default;\n\n\n// Options\n//\n// Quickly modify global styling by enabling or disabling optional features.\n\n$enable-rounded: true !default;\n$enable-shadows: false !default;\n$enable-gradients: false !default;\n$enable-transitions: true !default;\n$enable-hover-media-query: false !default;\n$enable-grid-classes: true !default;\n$enable-print-styles: true !default;\n\n\n// Spacing\n//\n// Control the default styling of most Bootstrap elements by modifying these\n// variables. Mostly focused on spacing.\n// You can add more entries to the $spacers map, should you need more variation.\n\n$spacer: 1rem !default;\n$spacers: (\n 0: 0,\n 1: ($spacer * .25),\n 2: ($spacer * .5),\n 3: $spacer,\n 4: ($spacer * 1.5),\n 5: ($spacer * 3)\n) !default;\n\n// This variable affects the `.h-*` and `.w-*` classes.\n$sizes: (\n 25: 25%,\n 50: 50%,\n 75: 75%,\n 100: 100%\n) !default;\n\n// Body\n//\n// Settings for the `` element.\n\n$body-bg: $white !default;\n$body-color: $gray-900 !default;\n\n// Links\n//\n// Style anchor elements.\n\n$link-color: theme-color(\"primary\") !default;\n$link-decoration: none !default;\n$link-hover-color: darken($link-color, 15%) !default;\n$link-hover-decoration: underline !default;\n\n\n// Grid breakpoints\n//\n// Define the minimum dimensions at which your layout will change,\n// adapting to different screen sizes, for use in media queries.\n\n$grid-breakpoints: (\n xs: 0,\n sm: 576px,\n md: 768px,\n lg: 992px,\n xl: 1200px\n) !default;\n@include _assert-ascending($grid-breakpoints, \"$grid-breakpoints\");\n@include _assert-starts-at-zero($grid-breakpoints);\n\n\n// Grid containers\n//\n// Define the maximum width of `.container` for different screen sizes.\n\n$container-max-widths: (\n sm: 540px,\n md: 720px,\n lg: 960px,\n xl: 1140px\n) !default;\n@include _assert-ascending($container-max-widths, \"$container-max-widths\");\n\n\n// Grid columns\n//\n// Set the number of columns and specify the width of the gutters.\n\n$grid-columns: 12 !default;\n$grid-gutter-width: 30px !default;\n\n// Components\n//\n// Define common padding and border radius sizes and more.\n\n$line-height-lg: 1.5 !default;\n$line-height-sm: 1.5 !default;\n\n$border-width: 1px !default;\n\n$border-radius: .25rem !default;\n$border-radius-lg: .3rem !default;\n$border-radius-sm: .2rem !default;\n\n$component-active-color: $white !default;\n$component-active-bg: theme-color(\"primary\") !default;\n\n$caret-width: .3em !default;\n\n$transition-base: all .2s ease-in-out !default;\n$transition-fade: opacity .15s linear !default;\n$transition-collapse: height .35s ease !default;\n\n\n// Fonts\n//\n// Font, line-height, and color for body text, headings, and more.\n\n$font-family-sans-serif: -apple-system, BlinkMacSystemFont, \"Segoe UI\", Roboto, \"Helvetica Neue\", Arial, sans-serif !default;\n$font-family-monospace: Menlo, Monaco, Consolas, \"Liberation Mono\", \"Courier New\", monospace !default;\n$font-family-base: $font-family-sans-serif !default;\n\n$font-size-base: 1rem !default; // Assumes the browser default, typically `16px`\n$font-size-lg: 1.25rem !default;\n$font-size-sm: .875rem !default;\n\n$font-weight-normal: normal !default;\n$font-weight-bold: bold !default;\n\n$font-weight-base: $font-weight-normal !default;\n$line-height-base: 1.5 !default;\n\n$h1-font-size: 2.5rem !default;\n$h2-font-size: 2rem !default;\n$h3-font-size: 1.75rem !default;\n$h4-font-size: 1.5rem !default;\n$h5-font-size: 1.25rem !default;\n$h6-font-size: 1rem !default;\n\n$headings-margin-bottom: ($spacer / 2) !default;\n$headings-font-family: inherit !default;\n$headings-font-weight: 500 !default;\n$headings-line-height: 1.1 !default;\n$headings-color: inherit !default;\n\n$display1-size: 6rem !default;\n$display2-size: 5.5rem !default;\n$display3-size: 4.5rem !default;\n$display4-size: 3.5rem !default;\n\n$display1-weight: 300 !default;\n$display2-weight: 300 !default;\n$display3-weight: 300 !default;\n$display4-weight: 300 !default;\n$display-line-height: $headings-line-height !default;\n\n$lead-font-size: 1.25rem !default;\n$lead-font-weight: 300 !default;\n\n$small-font-size: 80% !default;\n\n$text-muted: $gray-600 !default;\n\n$blockquote-small-color: $gray-600 !default;\n$blockquote-font-size: ($font-size-base * 1.25) !default;\n\n$hr-border-color: rgba($black,.1) !default;\n$hr-border-width: $border-width !default;\n\n$mark-padding: .2em !default;\n\n$dt-font-weight: $font-weight-bold !default;\n\n$kbd-box-shadow: inset 0 -.1rem 0 rgba($black,.25) !default;\n$nested-kbd-font-weight: $font-weight-bold !default;\n\n$list-inline-padding: 5px !default;\n\n$mark-bg: #fcf8e3 !default;\n\n\n// Tables\n//\n// Customizes the `.table` component with basic values, each used across all table variations.\n\n$table-cell-padding: .75rem !default;\n$table-cell-padding-sm: .3rem !default;\n\n$table-bg: transparent !default;\n$table-accent-bg: rgba($black,.05) !default;\n$table-hover-bg: rgba($black,.075) !default;\n$table-active-bg: $table-hover-bg !default;\n\n$table-border-width: $border-width !default;\n$table-border-color: $gray-200 !default;\n\n$table-head-bg: $gray-200 !default;\n$table-head-color: $gray-700 !default;\n\n$table-inverse-bg: $gray-900 !default;\n$table-inverse-accent-bg: rgba($white, .05) !default;\n$table-inverse-hover-bg: rgba($white, .075) !default;\n$table-inverse-border-color: lighten($gray-900, 7.5%) !default;\n$table-inverse-color: $body-bg !default;\n\n\n// Buttons\n//\n// For each of Bootstrap's buttons, define text, background and border color.\n\n$input-btn-padding-y: .5rem !default;\n$input-btn-padding-x: .75rem !default;\n$input-btn-line-height: 1.25 !default;\n\n$input-btn-padding-y-sm: .25rem !default;\n$input-btn-padding-x-sm: .5rem !default;\n$input-btn-line-height-sm: 1.5 !default;\n\n$input-btn-padding-y-lg: .5rem !default;\n$input-btn-padding-x-lg: 1rem !default;\n$input-btn-line-height-lg: 1.5 !default;\n\n$btn-font-weight: $font-weight-normal !default;\n$btn-box-shadow: inset 0 1px 0 rgba($white,.15), 0 1px 1px rgba($black,.075) !default;\n$btn-focus-box-shadow: 0 0 0 3px rgba(theme-color(\"primary\"), .25) !default;\n$btn-active-box-shadow: inset 0 3px 5px rgba($black,.125) !default;\n\n$btn-link-disabled-color: $gray-600 !default;\n\n$btn-block-spacing-y: .5rem !default;\n\n// Allows for customizing button radius independently from global border radius\n$btn-border-radius: $border-radius !default;\n$btn-border-radius-lg: $border-radius-lg !default;\n$btn-border-radius-sm: $border-radius-sm !default;\n\n$btn-transition: all .15s ease-in-out !default;\n\n\n// Forms\n\n$input-bg: $white !default;\n$input-disabled-bg: $gray-200 !default;\n\n$input-color: $gray-700 !default;\n$input-border-color: rgba($black,.15) !default;\n$input-btn-border-width: $border-width !default; // For form controls and buttons\n$input-box-shadow: inset 0 1px 1px rgba($black,.075) !default;\n\n$input-border-radius: $border-radius !default;\n$input-border-radius-lg: $border-radius-lg !default;\n$input-border-radius-sm: $border-radius-sm !default;\n\n$input-focus-bg: $input-bg !default;\n$input-focus-border-color: lighten(theme-color(\"primary\"), 25%) !default;\n$input-focus-box-shadow: $input-box-shadow, $btn-focus-box-shadow !default;\n$input-focus-color: $input-color !default;\n\n$input-placeholder-color: $gray-600 !default;\n\n$input-height-border: $input-btn-border-width * 2 !default;\n\n$input-height-inner: ($font-size-base * $input-btn-line-height) + ($input-btn-padding-y * 2) !default;\n$input-height: calc(#{$input-height-inner} + #{$input-height-border}) !default;\n\n$input-height-inner-sm: ($font-size-sm * $input-btn-line-height-sm) + ($input-btn-padding-y-sm * 2) !default;\n$input-height-sm: calc(#{$input-height-inner-sm} + #{$input-height-border}) !default;\n\n$input-height-inner-lg: ($font-size-sm * $input-btn-line-height-lg) + ($input-btn-padding-y-lg * 2) !default;\n$input-height-lg: calc(#{$input-height-inner-lg} + #{$input-height-border}) !default;\n\n$input-transition: border-color ease-in-out .15s, box-shadow ease-in-out .15s !default;\n\n$form-text-margin-top: .25rem !default;\n\n$form-check-margin-bottom: .5rem !default;\n$form-check-input-gutter: 1.25rem !default;\n$form-check-input-margin-y: .25rem !default;\n$form-check-input-margin-x: .25rem !default;\n\n$form-check-inline-margin-x: .75rem !default;\n\n$form-group-margin-bottom: 1rem !default;\n\n$input-group-addon-bg: $gray-200 !default;\n$input-group-addon-border-color: $input-border-color !default;\n\n$custom-control-gutter: 1.5rem !default;\n$custom-control-spacer-y: .25rem !default;\n$custom-control-spacer-x: 1rem !default;\n\n$custom-control-indicator-size: 1rem !default;\n$custom-control-indicator-bg: #ddd !default;\n$custom-control-indicator-bg-size: 50% 50% !default;\n$custom-control-indicator-box-shadow: inset 0 .25rem .25rem rgba($black,.1) !default;\n\n$custom-control-indicator-disabled-bg: $gray-200 !default;\n$custom-control-description-disabled-color: $gray-600 !default;\n\n$custom-control-indicator-checked-color: $white !default;\n$custom-control-indicator-checked-bg: theme-color(\"primary\") !default;\n$custom-control-indicator-checked-box-shadow: none !default;\n\n$custom-control-indicator-focus-box-shadow: 0 0 0 1px $body-bg, 0 0 0 3px theme-color(\"primary\") !default;\n\n$custom-control-indicator-active-color: $white !default;\n$custom-control-indicator-active-bg: lighten(theme-color(\"primary\"), 35%) !default;\n$custom-control-indicator-active-box-shadow: none !default;\n\n$custom-checkbox-indicator-border-radius: $border-radius !default;\n$custom-checkbox-indicator-icon-checked: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 8 8'%3E%3Cpath fill='#{$custom-control-indicator-checked-color}' d='M6.564.75l-3.59 3.612-1.538-1.55L0 4.26 2.974 7.25 8 2.193z'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n\n$custom-checkbox-indicator-indeterminate-bg: theme-color(\"primary\") !default;\n$custom-checkbox-indicator-indeterminate-color: $custom-control-indicator-checked-color !default;\n$custom-checkbox-indicator-icon-indeterminate: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 4 4'%3E%3Cpath stroke='#{$custom-checkbox-indicator-indeterminate-color}' d='M0 2h4'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$custom-checkbox-indicator-indeterminate-box-shadow: none !default;\n\n$custom-radio-indicator-border-radius: 50% !default;\n$custom-radio-indicator-icon-checked: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='-4 -4 8 8'%3E%3Ccircle r='3' fill='#{$custom-control-indicator-checked-color}'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n\n$custom-select-padding-y: .375rem !default;\n$custom-select-padding-x: .75rem !default;\n$custom-select-height: $input-height !default;\n$custom-select-indicator-padding: 1rem !default; // Extra padding to account for the presence of the background-image based indicator\n$custom-select-line-height: $input-btn-line-height !default;\n$custom-select-color: $input-color !default;\n$custom-select-disabled-color: $gray-600 !default;\n$custom-select-bg: $white !default;\n$custom-select-disabled-bg: $gray-200 !default;\n$custom-select-bg-size: 8px 10px !default; // In pixels because image dimensions\n$custom-select-indicator-color: #333 !default;\n$custom-select-indicator: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 4 5'%3E%3Cpath fill='#{$custom-select-indicator-color}' d='M2 0L0 2h4zm0 5L0 3h4z'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$custom-select-border-width: $input-btn-border-width !default;\n$custom-select-border-color: $input-border-color !default;\n$custom-select-border-radius: $border-radius !default;\n\n$custom-select-focus-border-color: lighten(theme-color(\"primary\"), 25%) !default;\n$custom-select-focus-box-shadow: inset 0 1px 2px rgba($black, .075), 0 0 5px rgba($custom-select-focus-border-color, .5) !default;\n\n$custom-select-font-size-sm: 75% !default;\n$custom-select-height-sm: $input-height-sm !default;\n\n$custom-file-height: 2.5rem !default;\n$custom-file-width: 14rem !default;\n$custom-file-focus-box-shadow: 0 0 0 .075rem $white, 0 0 0 .2rem theme-color(\"primary\") !default;\n\n$custom-file-padding-y: 1rem !default;\n$custom-file-padding-x: .5rem !default;\n$custom-file-line-height: 1.5 !default;\n$custom-file-color: $gray-700 !default;\n$custom-file-bg: $white !default;\n$custom-file-border-width: $border-width !default;\n$custom-file-border-color: $input-border-color !default;\n$custom-file-border-radius: $border-radius !default;\n$custom-file-box-shadow: inset 0 .2rem .4rem rgba($black,.05) !default;\n$custom-file-button-color: $custom-file-color !default;\n$custom-file-button-bg: $gray-200 !default;\n$custom-file-text: (\n placeholder: (\n en: \"Choose file...\"\n ),\n button-label: (\n en: \"Browse\"\n )\n) !default;\n\n\n// Form validation\n$form-feedback-valid-color: theme-color(\"success\") !default;\n$form-feedback-invalid-color: theme-color(\"danger\") !default;\n\n\n// Dropdowns\n//\n// Dropdown menu container and contents.\n\n$dropdown-min-width: 10rem !default;\n$dropdown-padding-y: .5rem !default;\n$dropdown-spacer: .125rem !default;\n$dropdown-bg: $white !default;\n$dropdown-border-color: rgba($black,.15) !default;\n$dropdown-border-width: $border-width !default;\n$dropdown-divider-bg: $gray-200 !default;\n$dropdown-box-shadow: 0 .5rem 1rem rgba($black,.175) !default;\n\n$dropdown-link-color: $gray-900 !default;\n$dropdown-link-hover-color: darken($gray-900, 5%) !default;\n$dropdown-link-hover-bg: $gray-100 !default;\n\n$dropdown-link-active-color: $component-active-color !default;\n$dropdown-link-active-bg: $component-active-bg !default;\n\n$dropdown-link-disabled-color: $gray-600 !default;\n\n$dropdown-item-padding-y: .25rem !default;\n$dropdown-item-padding-x: 1.5rem !default;\n\n$dropdown-header-color: $gray-600 !default;\n\n\n// Z-index master list\n//\n// Warning: Avoid customizing these values. They're used for a bird's eye view\n// of components dependent on the z-axis and are designed to all work together.\n\n$zindex-dropdown: 1000 !default;\n$zindex-sticky: 1020 !default;\n$zindex-fixed: 1030 !default;\n$zindex-modal-backdrop: 1040 !default;\n$zindex-modal: 1050 !default;\n$zindex-popover: 1060 !default;\n$zindex-tooltip: 1070 !default;\n\n// Navs\n\n$nav-link-padding-y: .5rem !default;\n$nav-link-padding-x: 1rem !default;\n$nav-link-disabled-color: $gray-600 !default;\n\n$nav-tabs-border-color: #ddd !default;\n$nav-tabs-border-width: $border-width !default;\n$nav-tabs-border-radius: $border-radius !default;\n$nav-tabs-link-hover-border-color: $gray-200 !default;\n$nav-tabs-link-active-color: $gray-700 !default;\n$nav-tabs-link-active-bg: $body-bg !default;\n$nav-tabs-link-active-border-color: #ddd !default;\n\n$nav-pills-border-radius: $border-radius !default;\n$nav-pills-link-active-color: $component-active-color !default;\n$nav-pills-link-active-bg: $component-active-bg !default;\n\n// Navbar\n\n$navbar-padding-y: ($spacer / 2) !default;\n$navbar-padding-x: $spacer !default;\n\n$navbar-brand-font-size: $font-size-lg !default;\n// Compute the navbar-brand padding-y so the navbar-brand will have the same height as navbar-text and nav-link\n$nav-link-height: $navbar-brand-font-size * $line-height-base !default;\n$navbar-brand-height: ($font-size-base * $line-height-base + $nav-link-padding-y * 2) !default;\n$navbar-brand-padding-y: ($navbar-brand-height - $nav-link-height) / 2 !default;\n\n$navbar-toggler-padding-y: .25rem !default;\n$navbar-toggler-padding-x: .75rem !default;\n$navbar-toggler-font-size: $font-size-lg !default;\n$navbar-toggler-border-radius: $btn-border-radius !default;\n\n$navbar-dark-color: rgba($white,.5) !default;\n$navbar-dark-hover-color: rgba($white,.75) !default;\n$navbar-dark-active-color: rgba($white,1) !default;\n$navbar-dark-disabled-color: rgba($white,.25) !default;\n$navbar-dark-toggler-icon-bg: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg viewBox='0 0 30 30' xmlns='http://www.w3.org/2000/svg'%3E%3Cpath stroke='#{$navbar-dark-color}' stroke-width='2' stroke-linecap='round' stroke-miterlimit='10' d='M4 7h22M4 15h22M4 23h22'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$navbar-dark-toggler-border-color: rgba($white,.1) !default;\n\n$navbar-light-color: rgba($black,.5) !default;\n$navbar-light-hover-color: rgba($black,.7) !default;\n$navbar-light-active-color: rgba($black,.9) !default;\n$navbar-light-disabled-color: rgba($black,.3) !default;\n$navbar-light-toggler-icon-bg: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg viewBox='0 0 30 30' xmlns='http://www.w3.org/2000/svg'%3E%3Cpath stroke='#{$navbar-light-color}' stroke-width='2' stroke-linecap='round' stroke-miterlimit='10' d='M4 7h22M4 15h22M4 23h22'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$navbar-light-toggler-border-color: rgba($black,.1) !default;\n\n// Pagination\n\n$pagination-padding-y: .5rem !default;\n$pagination-padding-x: .75rem !default;\n$pagination-padding-y-sm: .25rem !default;\n$pagination-padding-x-sm: .5rem !default;\n$pagination-padding-y-lg: .75rem !default;\n$pagination-padding-x-lg: 1.5rem !default;\n$pagination-line-height: 1.25 !default;\n\n$pagination-color: $link-color !default;\n$pagination-bg: $white !default;\n$pagination-border-width: $border-width !default;\n$pagination-border-color: #ddd !default;\n\n$pagination-hover-color: $link-hover-color !default;\n$pagination-hover-bg: $gray-200 !default;\n$pagination-hover-border-color: #ddd !default;\n\n$pagination-active-color: $white !default;\n$pagination-active-bg: theme-color(\"primary\") !default;\n$pagination-active-border-color: theme-color(\"primary\") !default;\n\n$pagination-disabled-color: $gray-600 !default;\n$pagination-disabled-bg: $white !default;\n$pagination-disabled-border-color: #ddd !default;\n\n\n// Jumbotron\n\n$jumbotron-padding: 2rem !default;\n$jumbotron-bg: $gray-200 !default;\n\n\n// Cards\n\n$card-spacer-y: .75rem !default;\n$card-spacer-x: 1.25rem !default;\n$card-border-width: 1px !default;\n$card-border-radius: $border-radius !default;\n$card-border-color: rgba($black,.125) !default;\n$card-inner-border-radius: calc(#{$card-border-radius} - #{$card-border-width}) !default;\n$card-cap-bg: rgba($black, .03) !default;\n$card-bg: $white !default;\n\n$card-img-overlay-padding: 1.25rem !default;\n\n$card-deck-margin: ($grid-gutter-width / 2) !default;\n\n$card-columns-count: 3 !default;\n$card-columns-gap: 1.25rem !default;\n$card-columns-margin: $card-spacer-y !default;\n\n\n// Tooltips\n\n$tooltip-max-width: 200px !default;\n$tooltip-color: $white !default;\n$tooltip-bg: $black !default;\n$tooltip-opacity: .9 !default;\n$tooltip-padding-y: 3px !default;\n$tooltip-padding-x: 8px !default;\n$tooltip-margin: 0 !default;\n\n\n$tooltip-arrow-width: 5px !default;\n$tooltip-arrow-height: 5px !default;\n$tooltip-arrow-color: $tooltip-bg !default;\n\n\n// Popovers\n\n$popover-inner-padding: 1px !default;\n$popover-bg: $white !default;\n$popover-max-width: 276px !default;\n$popover-border-width: $border-width !default;\n$popover-border-color: rgba($black,.2) !default;\n$popover-box-shadow: 0 5px 10px rgba($black,.2) !default;\n\n$popover-header-bg: darken($popover-bg, 3%) !default;\n$popover-header-color: $headings-color !default;\n$popover-header-padding-y: 8px !default;\n$popover-header-padding-x: 14px !default;\n\n$popover-body-color: $body-color !default;\n$popover-body-padding-y: 9px !default;\n$popover-body-padding-x: 14px !default;\n\n$popover-arrow-width: 10px !default;\n$popover-arrow-height: 5px !default;\n$popover-arrow-color: $popover-bg !default;\n\n$popover-arrow-outer-width: ($popover-arrow-width + 1px) !default;\n$popover-arrow-outer-color: fade-in($popover-border-color, .05) !default;\n\n\n// Badges\n\n$badge-color: $white !default;\n$badge-font-size: 75% !default;\n$badge-font-weight: $font-weight-bold !default;\n$badge-padding-y: .25em !default;\n$badge-padding-x: .4em !default;\n\n$badge-pill-padding-x: .6em !default;\n// Use a higher than normal value to ensure completely rounded edges when\n// customizing padding or font-size on labels.\n$badge-pill-border-radius: 10rem !default;\n\n\n// Modals\n\n// Padding applied to the modal body\n$modal-inner-padding: 15px !default;\n\n$modal-dialog-margin: 10px !default;\n$modal-dialog-margin-y-sm-up: 30px !default;\n\n$modal-title-line-height: $line-height-base !default;\n\n$modal-content-bg: $white !default;\n$modal-content-border-color: rgba($black,.2) !default;\n$modal-content-border-width: $border-width !default;\n$modal-content-box-shadow-xs: 0 3px 9px rgba($black,.5) !default;\n$modal-content-box-shadow-sm-up: 0 5px 15px rgba($black,.5) !default;\n\n$modal-backdrop-bg: $black !default;\n$modal-backdrop-opacity: .5 !default;\n$modal-header-border-color: $gray-200 !default;\n$modal-footer-border-color: $modal-header-border-color !default;\n$modal-header-border-width: $modal-content-border-width !default;\n$modal-footer-border-width: $modal-header-border-width !default;\n$modal-header-padding: 15px !default;\n\n$modal-lg: 800px !default;\n$modal-md: 500px !default;\n$modal-sm: 300px !default;\n\n$modal-transition: transform .3s ease-out !default;\n\n\n// Alerts\n//\n// Define alert colors, border radius, and padding.\n\n$alert-padding-y: .75rem !default;\n$alert-padding-x: 1.25rem !default;\n$alert-margin-bottom: 1rem !default;\n$alert-border-radius: $border-radius !default;\n$alert-link-font-weight: $font-weight-bold !default;\n$alert-border-width: $border-width !default;\n\n\n// Progress bars\n\n$progress-height: 1rem !default;\n$progress-font-size: .75rem !default;\n$progress-bg: $gray-200 !default;\n$progress-border-radius: $border-radius !default;\n$progress-box-shadow: inset 0 .1rem .1rem rgba($black,.1) !default;\n$progress-bar-color: $white !default;\n$progress-bar-bg: theme-color(\"primary\") !default;\n$progress-bar-animation-timing: 1s linear infinite !default;\n$progress-bar-transition: width .6s ease !default;\n\n// List group\n\n$list-group-bg: $white !default;\n$list-group-border-color: rgba($black,.125) !default;\n$list-group-border-width: $border-width !default;\n$list-group-border-radius: $border-radius !default;\n\n$list-group-item-padding-y: .75rem !default;\n$list-group-item-padding-x: 1.25rem !default;\n\n$list-group-hover-bg: $gray-100 !default;\n$list-group-active-color: $component-active-color !default;\n$list-group-active-bg: $component-active-bg !default;\n$list-group-active-border-color: $list-group-active-bg !default;\n\n$list-group-disabled-color: $gray-600 !default;\n$list-group-disabled-bg: $list-group-bg !default;\n\n$list-group-action-color: $gray-700 !default;\n$list-group-action-hover-color: $list-group-action-color !default;\n\n$list-group-action-active-color: $body-color !default;\n$list-group-action-active-bg: $gray-200 !default;\n\n\n// Image thumbnails\n\n$thumbnail-padding: .25rem !default;\n$thumbnail-bg: $body-bg !default;\n$thumbnail-border-width: $border-width !default;\n$thumbnail-border-color: #ddd !default;\n$thumbnail-border-radius: $border-radius !default;\n$thumbnail-box-shadow: 0 1px 2px rgba($black,.075) !default;\n$thumbnail-transition: all .2s ease-in-out !default;\n\n\n// Figures\n\n$figure-caption-font-size: 90% !default;\n$figure-caption-color: $gray-600 !default;\n\n\n// Breadcrumbs\n\n$breadcrumb-padding-y: .75rem !default;\n$breadcrumb-padding-x: 1rem !default;\n$breadcrumb-item-padding: .5rem !default;\n\n$breadcrumb-bg: $gray-200 !default;\n$breadcrumb-divider-color: $gray-600 !default;\n$breadcrumb-active-color: $gray-600 !default;\n$breadcrumb-divider: \"/\" !default;\n\n\n// Carousel\n\n$carousel-control-color: $white !default;\n$carousel-control-width: 15% !default;\n$carousel-control-opacity: .5 !default;\n\n$carousel-indicator-width: 30px !default;\n$carousel-indicator-height: 3px !default;\n$carousel-indicator-spacer: 3px !default;\n$carousel-indicator-active-bg: $white !default;\n\n$carousel-caption-width: 70% !default;\n$carousel-caption-color: $white !default;\n\n$carousel-control-icon-width: 20px !default;\n\n$carousel-control-prev-icon-bg: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' fill='#{$carousel-control-color}' viewBox='0 0 8 8'%3E%3Cpath d='M4 0l-4 4 4 4 1.5-1.5-2.5-2.5 2.5-2.5-1.5-1.5z'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$carousel-control-next-icon-bg: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' fill='#{$carousel-control-color}' viewBox='0 0 8 8'%3E%3Cpath d='M1.5 0l-1.5 1.5 2.5 2.5-2.5 2.5 1.5 1.5 4-4-4-4z'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n\n$carousel-transition: transform .6s ease !default;\n\n\n// Close\n\n$close-font-size: $font-size-base * 1.5 !default;\n$close-font-weight: $font-weight-bold !default;\n$close-color: $black !default;\n$close-text-shadow: 0 1px 0 $white !default;\n\n// Code\n\n$code-font-size: 90% !default;\n$code-padding-y: .2rem !default;\n$code-padding-x: .4rem !default;\n$code-color: #bd4147 !default;\n$code-bg: $gray-100 !default;\n\n$kbd-color: $white !default;\n$kbd-bg: $gray-900 !default;\n\n$pre-color: $gray-900 !default;\n$pre-scrollable-max-height: 340px !default;\n","@mixin hover {\n // TODO: re-enable along with mq4-hover-shim\n// @if $enable-hover-media-query {\n// // See Media Queries Level 4: https://drafts.csswg.org/mediaqueries/#hover\n// // Currently shimmed by https://github.com/twbs/mq4-hover-shim\n// @media (hover: hover) {\n// &:hover { @content }\n// }\n// }\n// @else {\n// scss-lint:disable Indentation\n &:hover { @content }\n// scss-lint:enable Indentation\n// }\n}\n\n\n@mixin hover-focus {\n @if $enable-hover-media-query {\n &:focus { @content }\n @include hover { @content }\n } @else {\n &:focus,\n &:hover {\n @content\n }\n }\n}\n\n@mixin plain-hover-focus {\n @if $enable-hover-media-query {\n &,\n &:focus {\n @content\n }\n @include hover { @content }\n } @else {\n &,\n &:focus,\n &:hover {\n @content\n }\n }\n}\n\n@mixin hover-focus-active {\n @if $enable-hover-media-query {\n &:focus,\n &:active {\n @content\n }\n @include hover { @content }\n } @else {\n &:focus,\n &:active,\n &:hover {\n @content\n }\n }\n}\n"]} \ No newline at end of file diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-reboot.min.css b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-reboot.min.css new file mode 100644 index 0000000..4ee4a40 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-reboot.min.css @@ -0,0 +1,2 @@ +html{box-sizing:border-box;font-family:sans-serif;line-height:1.15;-webkit-text-size-adjust:100%;-ms-text-size-adjust:100%;-ms-overflow-style:scrollbar;-webkit-tap-highlight-color:transparent}*,::after,::before{box-sizing:inherit}@-ms-viewport{width:device-width}article,aside,dialog,figcaption,figure,footer,header,hgroup,main,nav,section{display:block}body{margin:0;font-family:-apple-system,BlinkMacSystemFont,"Segoe UI",Roboto,"Helvetica Neue",Arial,sans-serif;font-size:1rem;font-weight:400;line-height:1.5;color:#212529;background-color:#fff}[tabindex="-1"]:focus{outline:0!important}hr{box-sizing:content-box;height:0;overflow:visible}h1,h2,h3,h4,h5,h6{margin-top:0;margin-bottom:.5rem}p{margin-top:0;margin-bottom:1rem}abbr[data-original-title],abbr[title]{text-decoration:underline;-webkit-text-decoration:underline dotted;text-decoration:underline dotted;cursor:help;border-bottom:0}address{margin-bottom:1rem;font-style:normal;line-height:inherit}dl,ol,ul{margin-top:0;margin-bottom:1rem}ol ol,ol ul,ul ol,ul ul{margin-bottom:0}dt{font-weight:700}dd{margin-bottom:.5rem;margin-left:0}blockquote{margin:0 0 1rem}dfn{font-style:italic}b,strong{font-weight:bolder}small{font-size:80%}sub,sup{position:relative;font-size:75%;line-height:0;vertical-align:baseline}sub{bottom:-.25em}sup{top:-.5em}a{color:#007bff;text-decoration:none;background-color:transparent;-webkit-text-decoration-skip:objects}a:hover{color:#0056b3;text-decoration:underline}a:not([href]):not([tabindex]){color:inherit;text-decoration:none}a:not([href]):not([tabindex]):focus,a:not([href]):not([tabindex]):hover{color:inherit;text-decoration:none}a:not([href]):not([tabindex]):focus{outline:0}code,kbd,pre,samp{font-family:monospace,monospace;font-size:1em}pre{margin-top:0;margin-bottom:1rem;overflow:auto}figure{margin:0 0 1rem}img{vertical-align:middle;border-style:none}svg:not(:root){overflow:hidden}[role=button],a,area,button,input,label,select,summary,textarea{-ms-touch-action:manipulation;touch-action:manipulation}table{border-collapse:collapse}caption{padding-top:.75rem;padding-bottom:.75rem;color:#868e96;text-align:left;caption-side:bottom}th{text-align:left}label{display:inline-block;margin-bottom:.5rem}button:focus{outline:1px dotted;outline:5px auto -webkit-focus-ring-color}button,input,optgroup,select,textarea{margin:0;font-family:inherit;font-size:inherit;line-height:inherit}button,input{overflow:visible}button,select{text-transform:none}[type=reset],[type=submit],button,html [type=button]{-webkit-appearance:button}[type=button]::-moz-focus-inner,[type=reset]::-moz-focus-inner,[type=submit]::-moz-focus-inner,button::-moz-focus-inner{padding:0;border-style:none}input[type=checkbox],input[type=radio]{box-sizing:border-box;padding:0}input[type=date],input[type=datetime-local],input[type=month],input[type=time]{-webkit-appearance:listbox}textarea{overflow:auto;resize:vertical}fieldset{min-width:0;padding:0;margin:0;border:0}legend{display:block;width:100%;max-width:100%;padding:0;margin-bottom:.5rem;font-size:1.5rem;line-height:inherit;color:inherit;white-space:normal}progress{vertical-align:baseline}[type=number]::-webkit-inner-spin-button,[type=number]::-webkit-outer-spin-button{height:auto}[type=search]{outline-offset:-2px;-webkit-appearance:none}[type=search]::-webkit-search-cancel-button,[type=search]::-webkit-search-decoration{-webkit-appearance:none}::-webkit-file-upload-button{font:inherit;-webkit-appearance:button}output{display:inline-block}summary{display:list-item}template{display:none}[hidden]{display:none!important} +/*# sourceMappingURL=bootstrap-reboot.min.css.map */ \ No newline at end of file diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-reboot.min.css.map b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-reboot.min.css.map new file mode 100644 index 0000000..d461cb5 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap-reboot.min.css.map @@ -0,0 +1 @@ +{"version":3,"sources":["../../scss/_reboot.scss","dist/css/bootstrap-reboot.css","bootstrap-reboot.css","../../scss/mixins/_hover.scss"],"names":[],"mappings":"AAoBA,KACE,WAAA,WACA,YAAA,WACA,YAAA,KACA,yBAAA,KACA,qBAAA,KACA,mBAAA,UACA,4BAAA,YAGF,EClBA,QADA,SDsBE,WAAA,QAKA,cAAgB,MAAA,aAIlB,QAAA,MAAA,OAAA,WAAA,OAAA,OAAA,OAAA,OAAA,KAAA,IAAA,QACE,QAAA,MAQF,KACE,OAAA,EACA,YAAA,aAAA,CAAA,kBAAA,CAAA,UAAA,CAAA,MAAA,CAAA,gBAAA,CAAA,KAAA,CAAA,WACA,UAAA,KACA,YAAA,IACA,YAAA,IACA,MAAA,QACA,iBAAA,KExBF,sBFiCE,QAAA,YASF,GACE,WAAA,YACA,OAAA,EACA,SAAA,QAYF,GAAA,GAAA,GAAA,GAAA,GAAA,GACE,WAAA,EACA,cAAA,MAOF,EACE,WAAA,EACA,cAAA,KC/CF,0BDyDA,YAEE,gBAAA,UACA,wBAAA,UAAA,OAAA,gBAAA,UAAA,OACA,OAAA,KACA,cAAA,EAGF,QACE,cAAA,KACA,WAAA,OACA,YAAA,QCpDF,GDuDA,GCxDA,GD2DE,WAAA,EACA,cAAA,KAGF,MCvDA,MACA,MAFA,MD4DE,cAAA,EAGF,GACE,YAAA,IAGF,GACE,cAAA,MACA,YAAA,EAGF,WACE,OAAA,EAAA,EAAA,KAGF,IACE,WAAA,OAGF,ECxDA,OD0DE,YAAA,OAGF,MACE,UAAA,IAQF,IC7DA,ID+DE,SAAA,SACA,UAAA,IACA,YAAA,EACA,eAAA,SAGF,IAAM,OAAA,OACN,IAAM,IAAA,MAON,EACE,MAAA,QACA,gBAAA,KACA,iBAAA,YACA,6BAAA,QGpLE,QHuLA,MAAA,QACA,gBAAA,UAUJ,8BACE,MAAA,QACA,gBAAA,KGzLE,oCAAA,oCH4LA,MAAA,QACA,gBAAA,KANJ,oCAUI,QAAA,EC/DJ,KACA,IDuEA,ICtEA,KD0EE,YAAA,SAAA,CAAA,UACA,UAAA,IAGF,IAEE,WAAA,EAEA,cAAA,KAEA,SAAA,KAQF,OAEE,OAAA,EAAA,EAAA,KAQF,IACE,eAAA,OACA,aAAA,KAGF,eACE,SAAA,OCjFF,cD+FA,ECjGA,KACA,OAEA,MACA,MACA,OACA,QACA,SDmGE,iBAAA,aAAA,aAAA,aAQF,MACE,gBAAA,SAGF,QACE,YAAA,OACA,eAAA,OACA,MAAA,QACA,WAAA,KACA,aAAA,OAGF,GAEE,WAAA,KAQF,MAEE,QAAA,aACA,cAAA,MAOF,aACE,QAAA,IAAA,OACA,QAAA,IAAA,KAAA,yBC7GF,ODgHA,MC9GA,SADA,OAEA,SDkHE,OAAA,EACA,YAAA,QACA,UAAA,QACA,YAAA,QAGF,OChHA,MDkHE,SAAA,QAGF,OChHA,ODkHE,eAAA,KC5GF,aACA,cDiHA,OCnHA,mBDuHE,mBAAA,OChHF,gCACA,+BACA,gCDkHA,yBAIE,QAAA,EACA,aAAA,KCjHF,qBDoHA,kBAEE,WAAA,WACA,QAAA,EAIF,iBCpHA,2BACA,kBAFA,iBD8HE,mBAAA,QAGF,SACE,SAAA,KAEA,OAAA,SAGF,SAME,UAAA,EAEA,QAAA,EACA,OAAA,EACA,OAAA,EAKF,OACE,QAAA,MACA,MAAA,KACA,UAAA,KACA,QAAA,EACA,cAAA,MACA,UAAA,OACA,YAAA,QACA,MAAA,QACA,YAAA,OAGF,SACE,eAAA,SEnIF,yCDGA,yCDsIE,OAAA,KEpIF,cF4IE,eAAA,KACA,mBAAA,KExIF,4CDGA,yCD8IE,mBAAA,KAQF,6BACE,KAAA,QACA,mBAAA,OAOF,OACE,QAAA,aAGF,QACE,QAAA,UAGF,SACE,QAAA,KErJF,SF2JE,QAAA","sourcesContent":["// scss-lint:disable QualifyingElement, DuplicateProperty, VendorPrefix\n\n// Reboot\n//\n// Normalization of HTML elements, manually forked from Normalize.css to remove\n// styles targeting irrelevant browsers while applying new styles.\n//\n// Normalize is licensed MIT. https://github.com/necolas/normalize.css\n\n\n// Document\n//\n// 1. Change from `box-sizing: content-box` so that `width` is not affected by `padding` or `border`.\n// 2. Change the default font family in all browsers.\n// 3. Correct the line height in all browsers.\n// 4. Prevent adjustments of font size after orientation changes in IE on Windows Phone and in iOS.\n// 5. Setting @viewport causes scrollbars to overlap content in IE11 and Edge, so\n// we force a non-overlapping, non-auto-hiding scrollbar to counteract.\n// 6. Change the default tap highlight to be completely transparent in iOS.\n\nhtml {\n box-sizing: border-box; // 1\n font-family: sans-serif; // 2\n line-height: 1.15; // 3\n -webkit-text-size-adjust: 100%; // 4\n -ms-text-size-adjust: 100%; // 4\n -ms-overflow-style: scrollbar; // 5\n -webkit-tap-highlight-color: rgba(0,0,0,0); // 6\n}\n\n*,\n*::before,\n*::after {\n box-sizing: inherit; // 1\n}\n\n// IE10+ doesn't honor `` in some cases.\n@at-root {\n @-ms-viewport { width: device-width; }\n}\n\n// Shim for \"new\" HTML5 structural elements to display correctly (IE10, older browsers)\narticle, aside, dialog, figcaption, figure, footer, header, hgroup, main, nav, section {\n display: block;\n}\n\n// Body\n//\n// 1. Remove the margin in all browsers.\n// 2. As a best practice, apply a default `background-color`.\n\nbody {\n margin: 0; // 1\n font-family: $font-family-base;\n font-size: $font-size-base;\n font-weight: $font-weight-base;\n line-height: $line-height-base;\n color: $body-color;\n background-color: $body-bg; // 2\n}\n\n// Suppress the focus outline on elements that cannot be accessed via keyboard.\n// This prevents an unwanted focus outline from appearing around elements that\n// might still respond to pointer events.\n//\n// Credit: https://github.com/suitcss/base\n[tabindex=\"-1\"]:focus {\n outline: none !important;\n}\n\n\n// Content grouping\n//\n// 1. Add the correct box sizing in Firefox.\n// 2. Show the overflow in Edge and IE.\n\nhr {\n box-sizing: content-box; // 1\n height: 0; // 1\n overflow: visible; // 2\n}\n\n\n//\n// Typography\n//\n\n// Remove top margins from headings\n//\n// By default, `

`-`

` all receive top and bottom margins. We nuke the top\n// margin for easier control within type scales as it avoids margin collapsing.\nh1, h2, h3, h4, h5, h6 {\n margin-top: 0;\n margin-bottom: .5rem;\n}\n\n// Reset margins on paragraphs\n//\n// Similarly, the top margin on `

`s get reset. However, we also reset the\n// bottom margin to use `rem` units instead of `em`.\np {\n margin-top: 0;\n margin-bottom: 1rem;\n}\n\n// Abbreviations\n//\n// 1. Remove the bottom border in Firefox 39-.\n// 2. Add the correct text decoration in Chrome, Edge, IE, Opera, and Safari.\n// 3. Add explicit cursor to indicate changed behavior.\n// 4. Duplicate behavior to the data-* attribute for our tooltip plugin\n\nabbr[title],\nabbr[data-original-title] { // 4\n text-decoration: underline; // 2\n text-decoration: underline dotted; // 2\n cursor: help; // 3\n border-bottom: 0; // 1\n}\n\naddress {\n margin-bottom: 1rem;\n font-style: normal;\n line-height: inherit;\n}\n\nol,\nul,\ndl {\n margin-top: 0;\n margin-bottom: 1rem;\n}\n\nol ol,\nul ul,\nol ul,\nul ol {\n margin-bottom: 0;\n}\n\ndt {\n font-weight: $dt-font-weight;\n}\n\ndd {\n margin-bottom: .5rem;\n margin-left: 0; // Undo browser default\n}\n\nblockquote {\n margin: 0 0 1rem;\n}\n\ndfn {\n font-style: italic; // Add the correct font style in Android 4.3-\n}\n\nb,\nstrong {\n font-weight: bolder; // Add the correct font weight in Chrome, Edge, and Safari\n}\n\nsmall {\n font-size: 80%; // Add the correct font size in all browsers\n}\n\n//\n// Prevent `sub` and `sup` elements from affecting the line height in\n// all browsers.\n//\n\nsub,\nsup {\n position: relative;\n font-size: 75%;\n line-height: 0;\n vertical-align: baseline;\n}\n\nsub { bottom: -.25em; }\nsup { top: -.5em; }\n\n\n//\n// Links\n//\n\na {\n color: $link-color;\n text-decoration: $link-decoration;\n background-color: transparent; // Remove the gray background on active links in IE 10.\n -webkit-text-decoration-skip: objects; // Remove gaps in links underline in iOS 8+ and Safari 8+.\n\n @include hover {\n color: $link-hover-color;\n text-decoration: $link-hover-decoration;\n }\n}\n\n// And undo these styles for placeholder links/named anchors (without href)\n// which have not been made explicitly keyboard-focusable (without tabindex).\n// It would be more straightforward to just use a[href] in previous block, but that\n// causes specificity issues in many other styles that are too complex to fix.\n// See https://github.com/twbs/bootstrap/issues/19402\n\na:not([href]):not([tabindex]) {\n color: inherit;\n text-decoration: none;\n\n @include hover-focus {\n color: inherit;\n text-decoration: none;\n }\n\n &:focus {\n outline: 0;\n }\n}\n\n\n//\n// Code\n//\n\npre,\ncode,\nkbd,\nsamp {\n font-family: monospace, monospace; // Correct the inheritance and scaling of font size in all browsers.\n font-size: 1em; // Correct the odd `em` font sizing in all browsers.\n}\n\npre {\n // Remove browser default top margin\n margin-top: 0;\n // Reset browser default of `1em` to use `rem`s\n margin-bottom: 1rem;\n // Don't allow content to break outside\n overflow: auto;\n}\n\n\n//\n// Figures\n//\n\nfigure {\n // Apply a consistent margin strategy (matches our type styles).\n margin: 0 0 1rem;\n}\n\n\n//\n// Images and content\n//\n\nimg {\n vertical-align: middle;\n border-style: none; // Remove the border on images inside links in IE 10-.\n}\n\nsvg:not(:root) {\n overflow: hidden; // Hide the overflow in IE\n}\n\n\n// Avoid 300ms click delay on touch devices that support the `touch-action` CSS property.\n//\n// In particular, unlike most other browsers, IE11+Edge on Windows 10 on touch devices and IE Mobile 10-11\n// DON'T remove the click delay when `` is present.\n// However, they DO support removing the click delay via `touch-action: manipulation`.\n// See:\n// * https://v4-alpha.getbootstrap.com/content/reboot/#click-delay-optimization-for-touch\n// * http://caniuse.com/#feat=css-touch-action\n// * https://patrickhlauke.github.io/touch/tests/results/#suppressing-300ms-delay\n\na,\narea,\nbutton,\n[role=\"button\"],\ninput,\nlabel,\nselect,\nsummary,\ntextarea {\n touch-action: manipulation;\n}\n\n\n//\n// Tables\n//\n\ntable {\n border-collapse: collapse; // Prevent double borders\n}\n\ncaption {\n padding-top: $table-cell-padding;\n padding-bottom: $table-cell-padding;\n color: $text-muted;\n text-align: left;\n caption-side: bottom;\n}\n\nth {\n // Matches default `` alignment\n text-align: left;\n}\n\n\n//\n// Forms\n//\n\nlabel {\n // Allow labels to use `margin` for spacing.\n display: inline-block;\n margin-bottom: .5rem;\n}\n\n// Work around a Firefox/IE bug where the transparent `button` background\n// results in a loss of the default `button` focus styles.\n//\n// Credit: https://github.com/suitcss/base/\nbutton:focus {\n outline: 1px dotted;\n outline: 5px auto -webkit-focus-ring-color;\n}\n\ninput,\nbutton,\nselect,\noptgroup,\ntextarea {\n margin: 0; // Remove the margin in Firefox and Safari\n font-family: inherit;\n font-size: inherit;\n line-height: inherit;\n}\n\nbutton,\ninput {\n overflow: visible; // Show the overflow in Edge\n}\n\nbutton,\nselect {\n text-transform: none; // Remove the inheritance of text transform in Firefox\n}\n\n// 1. Prevent a WebKit bug where (2) destroys native `audio` and `video`\n// controls in Android 4.\n// 2. Correct the inability to style clickable types in iOS and Safari.\nbutton,\nhtml [type=\"button\"], // 1\n[type=\"reset\"],\n[type=\"submit\"] {\n -webkit-appearance: button; // 2\n}\n\n// Remove inner border and padding from Firefox, but don't restore the outline like Normalize.\nbutton::-moz-focus-inner,\n[type=\"button\"]::-moz-focus-inner,\n[type=\"reset\"]::-moz-focus-inner,\n[type=\"submit\"]::-moz-focus-inner {\n padding: 0;\n border-style: none;\n}\n\ninput[type=\"radio\"],\ninput[type=\"checkbox\"] {\n box-sizing: border-box; // 1. Add the correct box sizing in IE 10-\n padding: 0; // 2. Remove the padding in IE 10-\n}\n\n\ninput[type=\"date\"],\ninput[type=\"time\"],\ninput[type=\"datetime-local\"],\ninput[type=\"month\"] {\n // Remove the default appearance of temporal inputs to avoid a Mobile Safari\n // bug where setting a custom line-height prevents text from being vertically\n // centered within the input.\n // See https://bugs.webkit.org/show_bug.cgi?id=139848\n // and https://github.com/twbs/bootstrap/issues/11266\n -webkit-appearance: listbox;\n}\n\ntextarea {\n overflow: auto; // Remove the default vertical scrollbar in IE.\n // Textareas should really only resize vertically so they don't break their (horizontal) containers.\n resize: vertical;\n}\n\nfieldset {\n // Browsers set a default `min-width: min-content;` on fieldsets,\n // unlike e.g. `

`s, which have `min-width: 0;` by default.\n // So we reset that to ensure fieldsets behave more like a standard block element.\n // See https://github.com/twbs/bootstrap/issues/12359\n // and https://html.spec.whatwg.org/multipage/#the-fieldset-and-legend-elements\n min-width: 0;\n // Reset the default outline behavior of fieldsets so they don't affect page layout.\n padding: 0;\n margin: 0;\n border: 0;\n}\n\n// 1. Correct the text wrapping in Edge and IE.\n// 2. Correct the color inheritance from `fieldset` elements in IE.\nlegend {\n display: block;\n width: 100%;\n max-width: 100%; // 1\n padding: 0;\n margin-bottom: .5rem;\n font-size: 1.5rem;\n line-height: inherit;\n color: inherit; // 2\n white-space: normal; // 1\n}\n\nprogress {\n vertical-align: baseline; // Add the correct vertical alignment in Chrome, Firefox, and Opera.\n}\n\n// Correct the cursor style of increment and decrement buttons in Chrome.\n[type=\"number\"]::-webkit-inner-spin-button,\n[type=\"number\"]::-webkit-outer-spin-button {\n height: auto;\n}\n\n[type=\"search\"] {\n // This overrides the extra rounded corners on search inputs in iOS so that our\n // `.form-control` class can properly style them. Note that this cannot simply\n // be added to `.form-control` as it's not specific enough. For details, see\n // https://github.com/twbs/bootstrap/issues/11586.\n outline-offset: -2px; // 2. Correct the outline style in Safari.\n -webkit-appearance: none;\n}\n\n//\n// Remove the inner padding and cancel buttons in Chrome and Safari on macOS.\n//\n\n[type=\"search\"]::-webkit-search-cancel-button,\n[type=\"search\"]::-webkit-search-decoration {\n -webkit-appearance: none;\n}\n\n//\n// 1. Correct the inability to style clickable types in iOS and Safari.\n// 2. Change font properties to `inherit` in Safari.\n//\n\n::-webkit-file-upload-button {\n font: inherit; // 2\n -webkit-appearance: button; // 1\n}\n\n//\n// Correct element displays\n//\n\noutput {\n display: inline-block;\n}\n\nsummary {\n display: list-item; // Add the correct display in all browsers\n}\n\ntemplate {\n display: none; // Add the correct display in IE\n}\n\n// Always hide an element with the `hidden` HTML attribute (from PureCSS).\n// Needed for proper display in IE 10-.\n[hidden] {\n display: none !important;\n}\n","html {\n box-sizing: border-box;\n font-family: sans-serif;\n line-height: 1.15;\n -webkit-text-size-adjust: 100%;\n -ms-text-size-adjust: 100%;\n -ms-overflow-style: scrollbar;\n -webkit-tap-highlight-color: transparent;\n}\n\n*,\n*::before,\n*::after {\n box-sizing: inherit;\n}\n\n@-ms-viewport {\n width: device-width;\n}\n\narticle, aside, dialog, figcaption, figure, footer, header, hgroup, main, nav, section {\n display: block;\n}\n\nbody {\n margin: 0;\n font-family: -apple-system, BlinkMacSystemFont, \"Segoe UI\", Roboto, \"Helvetica Neue\", Arial, sans-serif;\n font-size: 1rem;\n font-weight: normal;\n line-height: 1.5;\n color: #212529;\n background-color: #fff;\n}\n\n[tabindex=\"-1\"]:focus {\n outline: none !important;\n}\n\nhr {\n box-sizing: content-box;\n height: 0;\n overflow: visible;\n}\n\nh1, h2, h3, h4, h5, h6 {\n margin-top: 0;\n margin-bottom: .5rem;\n}\n\np {\n margin-top: 0;\n margin-bottom: 1rem;\n}\n\nabbr[title],\nabbr[data-original-title] {\n text-decoration: underline;\n -webkit-text-decoration: underline dotted;\n text-decoration: underline dotted;\n cursor: help;\n border-bottom: 0;\n}\n\naddress {\n margin-bottom: 1rem;\n font-style: normal;\n line-height: inherit;\n}\n\nol,\nul,\ndl {\n margin-top: 0;\n margin-bottom: 1rem;\n}\n\nol ol,\nul ul,\nol ul,\nul ol {\n margin-bottom: 0;\n}\n\ndt {\n font-weight: bold;\n}\n\ndd {\n margin-bottom: .5rem;\n margin-left: 0;\n}\n\nblockquote {\n margin: 0 0 1rem;\n}\n\ndfn {\n font-style: italic;\n}\n\nb,\nstrong {\n font-weight: bolder;\n}\n\nsmall {\n font-size: 80%;\n}\n\nsub,\nsup {\n position: relative;\n font-size: 75%;\n line-height: 0;\n vertical-align: baseline;\n}\n\nsub {\n bottom: -.25em;\n}\n\nsup {\n top: -.5em;\n}\n\na {\n color: #007bff;\n text-decoration: none;\n background-color: transparent;\n -webkit-text-decoration-skip: objects;\n}\n\na:hover {\n color: #0056b3;\n text-decoration: underline;\n}\n\na:not([href]):not([tabindex]) {\n color: inherit;\n text-decoration: none;\n}\n\na:not([href]):not([tabindex]):focus, a:not([href]):not([tabindex]):hover {\n color: inherit;\n text-decoration: none;\n}\n\na:not([href]):not([tabindex]):focus {\n outline: 0;\n}\n\npre,\ncode,\nkbd,\nsamp {\n font-family: monospace, monospace;\n font-size: 1em;\n}\n\npre {\n margin-top: 0;\n margin-bottom: 1rem;\n overflow: auto;\n}\n\nfigure {\n margin: 0 0 1rem;\n}\n\nimg {\n vertical-align: middle;\n border-style: none;\n}\n\nsvg:not(:root) {\n overflow: hidden;\n}\n\na,\narea,\nbutton,\n[role=\"button\"],\ninput,\nlabel,\nselect,\nsummary,\ntextarea {\n -ms-touch-action: manipulation;\n touch-action: manipulation;\n}\n\ntable {\n border-collapse: collapse;\n}\n\ncaption {\n padding-top: 0.75rem;\n padding-bottom: 0.75rem;\n color: #868e96;\n text-align: left;\n caption-side: bottom;\n}\n\nth {\n text-align: left;\n}\n\nlabel {\n display: inline-block;\n margin-bottom: .5rem;\n}\n\nbutton:focus {\n outline: 1px dotted;\n outline: 5px auto -webkit-focus-ring-color;\n}\n\ninput,\nbutton,\nselect,\noptgroup,\ntextarea {\n margin: 0;\n font-family: inherit;\n font-size: inherit;\n line-height: inherit;\n}\n\nbutton,\ninput {\n overflow: visible;\n}\n\nbutton,\nselect {\n text-transform: none;\n}\n\nbutton,\nhtml [type=\"button\"],\n[type=\"reset\"],\n[type=\"submit\"] {\n -webkit-appearance: button;\n}\n\nbutton::-moz-focus-inner,\n[type=\"button\"]::-moz-focus-inner,\n[type=\"reset\"]::-moz-focus-inner,\n[type=\"submit\"]::-moz-focus-inner {\n padding: 0;\n border-style: none;\n}\n\ninput[type=\"radio\"],\ninput[type=\"checkbox\"] {\n box-sizing: border-box;\n padding: 0;\n}\n\ninput[type=\"date\"],\ninput[type=\"time\"],\ninput[type=\"datetime-local\"],\ninput[type=\"month\"] {\n -webkit-appearance: listbox;\n}\n\ntextarea {\n overflow: auto;\n resize: vertical;\n}\n\nfieldset {\n min-width: 0;\n padding: 0;\n margin: 0;\n border: 0;\n}\n\nlegend {\n display: block;\n width: 100%;\n max-width: 100%;\n padding: 0;\n margin-bottom: .5rem;\n font-size: 1.5rem;\n line-height: inherit;\n color: inherit;\n white-space: normal;\n}\n\nprogress {\n vertical-align: baseline;\n}\n\n[type=\"number\"]::-webkit-inner-spin-button,\n[type=\"number\"]::-webkit-outer-spin-button {\n height: auto;\n}\n\n[type=\"search\"] {\n outline-offset: -2px;\n -webkit-appearance: none;\n}\n\n[type=\"search\"]::-webkit-search-cancel-button,\n[type=\"search\"]::-webkit-search-decoration {\n -webkit-appearance: none;\n}\n\n::-webkit-file-upload-button {\n font: inherit;\n -webkit-appearance: button;\n}\n\noutput {\n display: inline-block;\n}\n\nsummary {\n display: list-item;\n}\n\ntemplate {\n display: none;\n}\n\n[hidden] {\n display: none !important;\n}\n/*# sourceMappingURL=bootstrap-reboot.css.map */","html {\n box-sizing: border-box;\n font-family: sans-serif;\n line-height: 1.15;\n -webkit-text-size-adjust: 100%;\n -ms-text-size-adjust: 100%;\n -ms-overflow-style: scrollbar;\n -webkit-tap-highlight-color: transparent;\n}\n\n*,\n*::before,\n*::after {\n box-sizing: inherit;\n}\n\n@-ms-viewport {\n width: device-width;\n}\n\narticle, aside, dialog, figcaption, figure, footer, header, hgroup, main, nav, section {\n display: block;\n}\n\nbody {\n margin: 0;\n font-family: -apple-system, BlinkMacSystemFont, \"Segoe UI\", Roboto, \"Helvetica Neue\", Arial, sans-serif;\n font-size: 1rem;\n font-weight: normal;\n line-height: 1.5;\n color: #212529;\n background-color: #fff;\n}\n\n[tabindex=\"-1\"]:focus {\n outline: none !important;\n}\n\nhr {\n box-sizing: content-box;\n height: 0;\n overflow: visible;\n}\n\nh1, h2, h3, h4, h5, h6 {\n margin-top: 0;\n margin-bottom: .5rem;\n}\n\np {\n margin-top: 0;\n margin-bottom: 1rem;\n}\n\nabbr[title],\nabbr[data-original-title] {\n text-decoration: underline;\n text-decoration: underline dotted;\n cursor: help;\n border-bottom: 0;\n}\n\naddress {\n margin-bottom: 1rem;\n font-style: normal;\n line-height: inherit;\n}\n\nol,\nul,\ndl {\n margin-top: 0;\n margin-bottom: 1rem;\n}\n\nol ol,\nul ul,\nol ul,\nul ol {\n margin-bottom: 0;\n}\n\ndt {\n font-weight: bold;\n}\n\ndd {\n margin-bottom: .5rem;\n margin-left: 0;\n}\n\nblockquote {\n margin: 0 0 1rem;\n}\n\ndfn {\n font-style: italic;\n}\n\nb,\nstrong {\n font-weight: bolder;\n}\n\nsmall {\n font-size: 80%;\n}\n\nsub,\nsup {\n position: relative;\n font-size: 75%;\n line-height: 0;\n vertical-align: baseline;\n}\n\nsub {\n bottom: -.25em;\n}\n\nsup {\n top: -.5em;\n}\n\na {\n color: #007bff;\n text-decoration: none;\n background-color: transparent;\n -webkit-text-decoration-skip: objects;\n}\n\na:hover {\n color: #0056b3;\n text-decoration: underline;\n}\n\na:not([href]):not([tabindex]) {\n color: inherit;\n text-decoration: none;\n}\n\na:not([href]):not([tabindex]):focus, a:not([href]):not([tabindex]):hover {\n color: inherit;\n text-decoration: none;\n}\n\na:not([href]):not([tabindex]):focus {\n outline: 0;\n}\n\npre,\ncode,\nkbd,\nsamp {\n font-family: monospace, monospace;\n font-size: 1em;\n}\n\npre {\n margin-top: 0;\n margin-bottom: 1rem;\n overflow: auto;\n}\n\nfigure {\n margin: 0 0 1rem;\n}\n\nimg {\n vertical-align: middle;\n border-style: none;\n}\n\nsvg:not(:root) {\n overflow: hidden;\n}\n\na,\narea,\nbutton,\n[role=\"button\"],\ninput,\nlabel,\nselect,\nsummary,\ntextarea {\n touch-action: manipulation;\n}\n\ntable {\n border-collapse: collapse;\n}\n\ncaption {\n padding-top: 0.75rem;\n padding-bottom: 0.75rem;\n color: #868e96;\n text-align: left;\n caption-side: bottom;\n}\n\nth {\n text-align: left;\n}\n\nlabel {\n display: inline-block;\n margin-bottom: .5rem;\n}\n\nbutton:focus {\n outline: 1px dotted;\n outline: 5px auto -webkit-focus-ring-color;\n}\n\ninput,\nbutton,\nselect,\noptgroup,\ntextarea {\n margin: 0;\n font-family: inherit;\n font-size: inherit;\n line-height: inherit;\n}\n\nbutton,\ninput {\n overflow: visible;\n}\n\nbutton,\nselect {\n text-transform: none;\n}\n\nbutton,\nhtml [type=\"button\"],\n[type=\"reset\"],\n[type=\"submit\"] {\n -webkit-appearance: button;\n}\n\nbutton::-moz-focus-inner,\n[type=\"button\"]::-moz-focus-inner,\n[type=\"reset\"]::-moz-focus-inner,\n[type=\"submit\"]::-moz-focus-inner {\n padding: 0;\n border-style: none;\n}\n\ninput[type=\"radio\"],\ninput[type=\"checkbox\"] {\n box-sizing: border-box;\n padding: 0;\n}\n\ninput[type=\"date\"],\ninput[type=\"time\"],\ninput[type=\"datetime-local\"],\ninput[type=\"month\"] {\n -webkit-appearance: listbox;\n}\n\ntextarea {\n overflow: auto;\n resize: vertical;\n}\n\nfieldset {\n min-width: 0;\n padding: 0;\n margin: 0;\n border: 0;\n}\n\nlegend {\n display: block;\n width: 100%;\n max-width: 100%;\n padding: 0;\n margin-bottom: .5rem;\n font-size: 1.5rem;\n line-height: inherit;\n color: inherit;\n white-space: normal;\n}\n\nprogress {\n vertical-align: baseline;\n}\n\n[type=\"number\"]::-webkit-inner-spin-button,\n[type=\"number\"]::-webkit-outer-spin-button {\n height: auto;\n}\n\n[type=\"search\"] {\n outline-offset: -2px;\n -webkit-appearance: none;\n}\n\n[type=\"search\"]::-webkit-search-cancel-button,\n[type=\"search\"]::-webkit-search-decoration {\n -webkit-appearance: none;\n}\n\n::-webkit-file-upload-button {\n font: inherit;\n -webkit-appearance: button;\n}\n\noutput {\n display: inline-block;\n}\n\nsummary {\n display: list-item;\n}\n\ntemplate {\n display: none;\n}\n\n[hidden] {\n display: none !important;\n}\n\n/*# sourceMappingURL=bootstrap-reboot.css.map */","@mixin hover {\n // TODO: re-enable along with mq4-hover-shim\n// @if $enable-hover-media-query {\n// // See Media Queries Level 4: https://drafts.csswg.org/mediaqueries/#hover\n// // Currently shimmed by https://github.com/twbs/mq4-hover-shim\n// @media (hover: hover) {\n// &:hover { @content }\n// }\n// }\n// @else {\n// scss-lint:disable Indentation\n &:hover { @content }\n// scss-lint:enable Indentation\n// }\n}\n\n\n@mixin hover-focus {\n @if $enable-hover-media-query {\n &:focus { @content }\n @include hover { @content }\n } @else {\n &:focus,\n &:hover {\n @content\n }\n }\n}\n\n@mixin plain-hover-focus {\n @if $enable-hover-media-query {\n &,\n &:focus {\n @content\n }\n @include hover { @content }\n } @else {\n &,\n &:focus,\n &:hover {\n @content\n }\n }\n}\n\n@mixin hover-focus-active {\n @if $enable-hover-media-query {\n &:focus,\n &:active {\n @content\n }\n @include hover { @content }\n } @else {\n &:focus,\n &:active,\n &:hover {\n @content\n }\n }\n}\n"]} \ No newline at end of file diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap.css b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap.css new file mode 100644 index 0000000..b39107f --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap.css @@ -0,0 +1,8185 @@ +/*! + * Bootstrap v4.0.0-beta (https://getbootstrap.com) + * Copyright 2011-2017 The Bootstrap Authors + * Copyright 2011-2017 Twitter, Inc. + * Licensed under MIT (https://github.com/twbs/bootstrap/blob/master/LICENSE) + */ +@media print { + *, + *::before, + *::after { + text-shadow: none !important; + box-shadow: none !important; + } + a, + a:visited { + text-decoration: underline; + } + abbr[title]::after { + content: " (" attr(title) ")"; + } + pre { + white-space: pre-wrap !important; + } + pre, + blockquote { + border: 1px solid #999; + page-break-inside: avoid; + } + thead { + display: table-header-group; + } + tr, + img { + page-break-inside: avoid; + } + p, + h2, + h3 { + orphans: 3; + widows: 3; + } + h2, + h3 { + page-break-after: avoid; + } + .navbar { + display: none; + } + .badge { + border: 1px solid #000; + } + .table { + border-collapse: collapse !important; + } + .table td, + .table th { + background-color: #fff !important; + } + .table-bordered th, + .table-bordered td { + border: 1px solid #ddd !important; + } +} + +html { + box-sizing: border-box; + font-family: sans-serif; + line-height: 1.15; + -webkit-text-size-adjust: 100%; + -ms-text-size-adjust: 100%; + -ms-overflow-style: scrollbar; + -webkit-tap-highlight-color: transparent; +} + +*, +*::before, +*::after { + box-sizing: inherit; +} + +@-ms-viewport { + width: device-width; +} + +article, aside, dialog, figcaption, figure, footer, header, hgroup, main, nav, section { + display: block; +} + +body { + margin: 0; + font-family: -apple-system, BlinkMacSystemFont, "Segoe UI", Roboto, "Helvetica Neue", Arial, sans-serif; + font-size: 1rem; + font-weight: normal; + line-height: 1.5; + color: #212529; + background-color: #fff; +} + +[tabindex="-1"]:focus { + outline: none !important; +} + +hr { + box-sizing: content-box; + height: 0; + overflow: visible; +} + +h1, h2, h3, h4, h5, h6 { + margin-top: 0; + margin-bottom: .5rem; +} + +p { + margin-top: 0; + margin-bottom: 1rem; +} + +abbr[title], +abbr[data-original-title] { + text-decoration: underline; + -webkit-text-decoration: underline dotted; + text-decoration: underline dotted; + cursor: help; + border-bottom: 0; +} + +address { + margin-bottom: 1rem; + font-style: normal; + line-height: inherit; +} + +ol, +ul, +dl { + margin-top: 0; + margin-bottom: 1rem; +} + +ol ol, +ul ul, +ol ul, +ul ol { + margin-bottom: 0; +} + +dt { + font-weight: bold; +} + +dd { + margin-bottom: .5rem; + margin-left: 0; +} + +blockquote { + margin: 0 0 1rem; +} + +dfn { + font-style: italic; +} + +b, +strong { + font-weight: bolder; +} + +small { + font-size: 80%; +} + +sub, +sup { + position: relative; + font-size: 75%; + line-height: 0; + vertical-align: baseline; +} + +sub { + bottom: -.25em; +} + +sup { + top: -.5em; +} + +a { + color: #007bff; + text-decoration: none; + background-color: transparent; + -webkit-text-decoration-skip: objects; +} + +a:hover { + color: #0056b3; + text-decoration: underline; +} + +a:not([href]):not([tabindex]) { + color: inherit; + text-decoration: none; +} + +a:not([href]):not([tabindex]):focus, a:not([href]):not([tabindex]):hover { + color: inherit; + text-decoration: none; +} + +a:not([href]):not([tabindex]):focus { + outline: 0; +} + +pre, +code, +kbd, +samp { + font-family: monospace, monospace; + font-size: 1em; +} + +pre { + margin-top: 0; + margin-bottom: 1rem; + overflow: auto; +} + +figure { + margin: 0 0 1rem; +} + +img { + vertical-align: middle; + border-style: none; +} + +svg:not(:root) { + overflow: hidden; +} + +a, +area, +button, +[role="button"], +input, +label, +select, +summary, +textarea { + -ms-touch-action: manipulation; + touch-action: manipulation; +} + +table { + border-collapse: collapse; +} + +caption { + padding-top: 0.75rem; + padding-bottom: 0.75rem; + color: #868e96; + text-align: left; + caption-side: bottom; +} + +th { + text-align: left; +} + +label { + display: inline-block; + margin-bottom: .5rem; +} + +button:focus { + outline: 1px dotted; + outline: 5px auto -webkit-focus-ring-color; +} + +input, +button, +select, +optgroup, +textarea { + margin: 0; + font-family: inherit; + font-size: inherit; + line-height: inherit; +} + +button, +input { + overflow: visible; +} + +button, +select { + text-transform: none; +} + +button, +html [type="button"], +[type="reset"], +[type="submit"] { + -webkit-appearance: button; +} + +button::-moz-focus-inner, +[type="button"]::-moz-focus-inner, +[type="reset"]::-moz-focus-inner, +[type="submit"]::-moz-focus-inner { + padding: 0; + border-style: none; +} + +input[type="radio"], +input[type="checkbox"] { + box-sizing: border-box; + padding: 0; +} + +input[type="date"], +input[type="time"], +input[type="datetime-local"], +input[type="month"] { + -webkit-appearance: listbox; +} + +textarea { + overflow: auto; + resize: vertical; +} + +fieldset { + min-width: 0; + padding: 0; + margin: 0; + border: 0; +} + +legend { + display: block; + width: 100%; + max-width: 100%; + padding: 0; + margin-bottom: .5rem; + font-size: 1.5rem; + line-height: inherit; + color: inherit; + white-space: normal; +} + +progress { + vertical-align: baseline; +} + +[type="number"]::-webkit-inner-spin-button, +[type="number"]::-webkit-outer-spin-button { + height: auto; +} + +[type="search"] { + outline-offset: -2px; + -webkit-appearance: none; +} + +[type="search"]::-webkit-search-cancel-button, +[type="search"]::-webkit-search-decoration { + -webkit-appearance: none; +} + +::-webkit-file-upload-button { + font: inherit; + -webkit-appearance: button; +} + +output { + display: inline-block; +} + +summary { + display: list-item; +} + +template { + display: none; +} + +[hidden] { + display: none !important; +} + +h1, h2, h3, h4, h5, h6, +.h1, .h2, .h3, .h4, .h5, .h6 { + margin-bottom: 0.5rem; + font-family: inherit; + font-weight: 500; + line-height: 1.1; + color: inherit; +} + +h1, .h1 { + font-size: 2.5rem; +} + +h2, .h2 { + font-size: 2rem; +} + +h3, .h3 { + font-size: 1.75rem; +} + +h4, .h4 { + font-size: 1.5rem; +} + +h5, .h5 { + font-size: 1.25rem; +} + +h6, .h6 { + font-size: 1rem; +} + +.lead { + font-size: 1.25rem; + font-weight: 300; +} + +.display-1 { + font-size: 6rem; + font-weight: 300; + line-height: 1.1; +} + +.display-2 { + font-size: 5.5rem; + font-weight: 300; + line-height: 1.1; +} + +.display-3 { + font-size: 4.5rem; + font-weight: 300; + line-height: 1.1; +} + +.display-4 { + font-size: 3.5rem; + font-weight: 300; + line-height: 1.1; +} + +hr { + margin-top: 1rem; + margin-bottom: 1rem; + border: 0; + border-top: 1px solid rgba(0, 0, 0, 0.1); +} + +small, +.small { + font-size: 80%; + font-weight: normal; +} + +mark, +.mark { + padding: 0.2em; + background-color: #fcf8e3; +} + +.list-unstyled { + padding-left: 0; + list-style: none; +} + +.list-inline { + padding-left: 0; + list-style: none; +} + +.list-inline-item { + display: inline-block; +} + +.list-inline-item:not(:last-child) { + margin-right: 5px; +} + +.initialism { + font-size: 90%; + text-transform: uppercase; +} + +.blockquote { + margin-bottom: 1rem; + font-size: 1.25rem; +} + +.blockquote-footer { + display: block; + font-size: 80%; + color: #868e96; +} + +.blockquote-footer::before { + content: "\2014 \00A0"; +} + +.img-fluid { + max-width: 100%; + height: auto; +} + +.img-thumbnail { + padding: 0.25rem; + background-color: #fff; + border: 1px solid #ddd; + border-radius: 0.25rem; + transition: all 0.2s ease-in-out; + max-width: 100%; + height: auto; +} + +.figure { + display: inline-block; +} + +.figure-img { + margin-bottom: 0.5rem; + line-height: 1; +} + +.figure-caption { + font-size: 90%; + color: #868e96; +} + +code, +kbd, +pre, +samp { + font-family: Menlo, Monaco, Consolas, "Liberation Mono", "Courier New", monospace; +} + +code { + padding: 0.2rem 0.4rem; + font-size: 90%; + color: #bd4147; + background-color: #f8f9fa; + border-radius: 0.25rem; +} + +a > code { + padding: 0; + color: inherit; + background-color: inherit; +} + +kbd { + padding: 0.2rem 0.4rem; + font-size: 90%; + color: #fff; + background-color: #212529; + border-radius: 0.2rem; +} + +kbd kbd { + padding: 0; + font-size: 100%; + font-weight: bold; +} + +pre { + display: block; + margin-top: 0; + margin-bottom: 1rem; + font-size: 90%; + color: #212529; +} + +pre code { + padding: 0; + font-size: inherit; + color: inherit; + background-color: transparent; + border-radius: 0; +} + +.pre-scrollable { + max-height: 340px; + overflow-y: scroll; +} + +.container { + margin-right: auto; + margin-left: auto; + padding-right: 15px; + padding-left: 15px; + width: 100%; +} + +@media (min-width: 576px) { + .container { + max-width: 540px; + } +} + +@media (min-width: 768px) { + .container { + max-width: 720px; + } +} + +@media (min-width: 992px) { + .container { + max-width: 960px; + } +} + +@media (min-width: 1200px) { + .container { + max-width: 1140px; + } +} + +.container-fluid { + width: 100%; + margin-right: auto; + margin-left: auto; + padding-right: 15px; + padding-left: 15px; + width: 100%; +} + +.row { + display: -ms-flexbox; + display: flex; + -ms-flex-wrap: wrap; + flex-wrap: wrap; + margin-right: -15px; + margin-left: -15px; +} + +.no-gutters { + margin-right: 0; + margin-left: 0; +} + +.no-gutters > .col, +.no-gutters > [class*="col-"] { + padding-right: 0; + padding-left: 0; +} + +.col-1, .col-2, .col-3, .col-4, .col-5, .col-6, .col-7, .col-8, .col-9, .col-10, .col-11, .col-12, .col, +.col-auto, .col-sm-1, .col-sm-2, .col-sm-3, .col-sm-4, .col-sm-5, .col-sm-6, .col-sm-7, .col-sm-8, .col-sm-9, .col-sm-10, .col-sm-11, .col-sm-12, .col-sm, +.col-sm-auto, .col-md-1, .col-md-2, .col-md-3, .col-md-4, .col-md-5, .col-md-6, .col-md-7, .col-md-8, .col-md-9, .col-md-10, .col-md-11, .col-md-12, .col-md, +.col-md-auto, .col-lg-1, .col-lg-2, .col-lg-3, .col-lg-4, .col-lg-5, .col-lg-6, .col-lg-7, .col-lg-8, .col-lg-9, .col-lg-10, .col-lg-11, .col-lg-12, .col-lg, +.col-lg-auto, .col-xl-1, .col-xl-2, .col-xl-3, .col-xl-4, .col-xl-5, .col-xl-6, .col-xl-7, .col-xl-8, .col-xl-9, .col-xl-10, .col-xl-11, .col-xl-12, .col-xl, +.col-xl-auto { + position: relative; + width: 100%; + min-height: 1px; + padding-right: 15px; + padding-left: 15px; +} + +.col { + -ms-flex-preferred-size: 0; + flex-basis: 0; + -ms-flex-positive: 1; + flex-grow: 1; + max-width: 100%; +} + +.col-auto { + -ms-flex: 0 0 auto; + flex: 0 0 auto; + width: auto; + max-width: none; +} + +.col-1 { + -ms-flex: 0 0 8.333333%; + flex: 0 0 8.333333%; + max-width: 8.333333%; +} + +.col-2 { + -ms-flex: 0 0 16.666667%; + flex: 0 0 16.666667%; + max-width: 16.666667%; +} + +.col-3 { + -ms-flex: 0 0 25%; + flex: 0 0 25%; + max-width: 25%; +} + +.col-4 { + -ms-flex: 0 0 33.333333%; + flex: 0 0 33.333333%; + max-width: 33.333333%; +} + +.col-5 { + -ms-flex: 0 0 41.666667%; + flex: 0 0 41.666667%; + max-width: 41.666667%; +} + +.col-6 { + -ms-flex: 0 0 50%; + flex: 0 0 50%; + max-width: 50%; +} + +.col-7 { + -ms-flex: 0 0 58.333333%; + flex: 0 0 58.333333%; + max-width: 58.333333%; +} + +.col-8 { + -ms-flex: 0 0 66.666667%; + flex: 0 0 66.666667%; + max-width: 66.666667%; +} + +.col-9 { + -ms-flex: 0 0 75%; + flex: 0 0 75%; + max-width: 75%; +} + +.col-10 { + -ms-flex: 0 0 83.333333%; + flex: 0 0 83.333333%; + max-width: 83.333333%; +} + +.col-11 { + -ms-flex: 0 0 91.666667%; + flex: 0 0 91.666667%; + max-width: 91.666667%; +} + +.col-12 { + -ms-flex: 0 0 100%; + flex: 0 0 100%; + max-width: 100%; +} + +.order-1 { + -ms-flex-order: 1; + order: 1; +} + +.order-2 { + -ms-flex-order: 2; + order: 2; +} + +.order-3 { + -ms-flex-order: 3; + order: 3; +} + +.order-4 { + -ms-flex-order: 4; + order: 4; +} + +.order-5 { + -ms-flex-order: 5; + order: 5; +} + +.order-6 { + -ms-flex-order: 6; + order: 6; +} + +.order-7 { + -ms-flex-order: 7; + order: 7; +} + +.order-8 { + -ms-flex-order: 8; + order: 8; +} + +.order-9 { + -ms-flex-order: 9; + order: 9; +} + +.order-10 { + -ms-flex-order: 10; + order: 10; +} + +.order-11 { + -ms-flex-order: 11; + order: 11; +} + +.order-12 { + -ms-flex-order: 12; + order: 12; +} + +@media (min-width: 576px) { + .col-sm { + -ms-flex-preferred-size: 0; + flex-basis: 0; + -ms-flex-positive: 1; + flex-grow: 1; + max-width: 100%; + } + .col-sm-auto { + -ms-flex: 0 0 auto; + flex: 0 0 auto; + width: auto; + max-width: none; + } + .col-sm-1 { + -ms-flex: 0 0 8.333333%; + flex: 0 0 8.333333%; + max-width: 8.333333%; + } + .col-sm-2 { + -ms-flex: 0 0 16.666667%; + flex: 0 0 16.666667%; + max-width: 16.666667%; + } + .col-sm-3 { + -ms-flex: 0 0 25%; + flex: 0 0 25%; + max-width: 25%; + } + .col-sm-4 { + -ms-flex: 0 0 33.333333%; + flex: 0 0 33.333333%; + max-width: 33.333333%; + } + .col-sm-5 { + -ms-flex: 0 0 41.666667%; + flex: 0 0 41.666667%; + max-width: 41.666667%; + } + .col-sm-6 { + -ms-flex: 0 0 50%; + flex: 0 0 50%; + max-width: 50%; + } + .col-sm-7 { + -ms-flex: 0 0 58.333333%; + flex: 0 0 58.333333%; + max-width: 58.333333%; + } + .col-sm-8 { + -ms-flex: 0 0 66.666667%; + flex: 0 0 66.666667%; + max-width: 66.666667%; + } + .col-sm-9 { + -ms-flex: 0 0 75%; + flex: 0 0 75%; + max-width: 75%; + } + .col-sm-10 { + -ms-flex: 0 0 83.333333%; + flex: 0 0 83.333333%; + max-width: 83.333333%; + } + .col-sm-11 { + -ms-flex: 0 0 91.666667%; + flex: 0 0 91.666667%; + max-width: 91.666667%; + } + .col-sm-12 { + -ms-flex: 0 0 100%; + flex: 0 0 100%; + max-width: 100%; + } + .order-sm-1 { + -ms-flex-order: 1; + order: 1; + } + .order-sm-2 { + -ms-flex-order: 2; + order: 2; + } + .order-sm-3 { + -ms-flex-order: 3; + order: 3; + } + .order-sm-4 { + -ms-flex-order: 4; + order: 4; + } + .order-sm-5 { + -ms-flex-order: 5; + order: 5; + } + .order-sm-6 { + -ms-flex-order: 6; + order: 6; + } + .order-sm-7 { + -ms-flex-order: 7; + order: 7; + } + .order-sm-8 { + -ms-flex-order: 8; + order: 8; + } + .order-sm-9 { + -ms-flex-order: 9; + order: 9; + } + .order-sm-10 { + -ms-flex-order: 10; + order: 10; + } + .order-sm-11 { + -ms-flex-order: 11; + order: 11; + } + .order-sm-12 { + -ms-flex-order: 12; + order: 12; + } +} + +@media (min-width: 768px) { + .col-md { + -ms-flex-preferred-size: 0; + flex-basis: 0; + -ms-flex-positive: 1; + flex-grow: 1; + max-width: 100%; + } + .col-md-auto { + -ms-flex: 0 0 auto; + flex: 0 0 auto; + width: auto; + max-width: none; + } + .col-md-1 { + -ms-flex: 0 0 8.333333%; + flex: 0 0 8.333333%; + max-width: 8.333333%; + } + .col-md-2 { + -ms-flex: 0 0 16.666667%; + flex: 0 0 16.666667%; + max-width: 16.666667%; + } + .col-md-3 { + -ms-flex: 0 0 25%; + flex: 0 0 25%; + max-width: 25%; + } + .col-md-4 { + -ms-flex: 0 0 33.333333%; + flex: 0 0 33.333333%; + max-width: 33.333333%; + } + .col-md-5 { + -ms-flex: 0 0 41.666667%; + flex: 0 0 41.666667%; + max-width: 41.666667%; + } + .col-md-6 { + -ms-flex: 0 0 50%; + flex: 0 0 50%; + max-width: 50%; + } + .col-md-7 { + -ms-flex: 0 0 58.333333%; + flex: 0 0 58.333333%; + max-width: 58.333333%; + } + .col-md-8 { + -ms-flex: 0 0 66.666667%; + flex: 0 0 66.666667%; + max-width: 66.666667%; + } + .col-md-9 { + -ms-flex: 0 0 75%; + flex: 0 0 75%; + max-width: 75%; + } + .col-md-10 { + -ms-flex: 0 0 83.333333%; + flex: 0 0 83.333333%; + max-width: 83.333333%; + } + .col-md-11 { + -ms-flex: 0 0 91.666667%; + flex: 0 0 91.666667%; + max-width: 91.666667%; + } + .col-md-12 { + -ms-flex: 0 0 100%; + flex: 0 0 100%; + max-width: 100%; + } + .order-md-1 { + -ms-flex-order: 1; + order: 1; + } + .order-md-2 { + -ms-flex-order: 2; + order: 2; + } + .order-md-3 { + -ms-flex-order: 3; + order: 3; + } + .order-md-4 { + -ms-flex-order: 4; + order: 4; + } + .order-md-5 { + -ms-flex-order: 5; + order: 5; + } + .order-md-6 { + -ms-flex-order: 6; + order: 6; + } + .order-md-7 { + -ms-flex-order: 7; + order: 7; + } + .order-md-8 { + -ms-flex-order: 8; + order: 8; + } + .order-md-9 { + -ms-flex-order: 9; + order: 9; + } + .order-md-10 { + -ms-flex-order: 10; + order: 10; + } + .order-md-11 { + -ms-flex-order: 11; + order: 11; + } + .order-md-12 { + -ms-flex-order: 12; + order: 12; + } +} + +@media (min-width: 992px) { + .col-lg { + -ms-flex-preferred-size: 0; + flex-basis: 0; + -ms-flex-positive: 1; + flex-grow: 1; + max-width: 100%; + } + .col-lg-auto { + -ms-flex: 0 0 auto; + flex: 0 0 auto; + width: auto; + max-width: none; + } + .col-lg-1 { + -ms-flex: 0 0 8.333333%; + flex: 0 0 8.333333%; + max-width: 8.333333%; + } + .col-lg-2 { + -ms-flex: 0 0 16.666667%; + flex: 0 0 16.666667%; + max-width: 16.666667%; + } + .col-lg-3 { + -ms-flex: 0 0 25%; + flex: 0 0 25%; + max-width: 25%; + } + .col-lg-4 { + -ms-flex: 0 0 33.333333%; + flex: 0 0 33.333333%; + max-width: 33.333333%; + } + .col-lg-5 { + -ms-flex: 0 0 41.666667%; + flex: 0 0 41.666667%; + max-width: 41.666667%; + } + .col-lg-6 { + -ms-flex: 0 0 50%; + flex: 0 0 50%; + max-width: 50%; + } + .col-lg-7 { + -ms-flex: 0 0 58.333333%; + flex: 0 0 58.333333%; + max-width: 58.333333%; + } + .col-lg-8 { + -ms-flex: 0 0 66.666667%; + flex: 0 0 66.666667%; + max-width: 66.666667%; + } + .col-lg-9 { + -ms-flex: 0 0 75%; + flex: 0 0 75%; + max-width: 75%; + } + .col-lg-10 { + -ms-flex: 0 0 83.333333%; + flex: 0 0 83.333333%; + max-width: 83.333333%; + } + .col-lg-11 { + -ms-flex: 0 0 91.666667%; + flex: 0 0 91.666667%; + max-width: 91.666667%; + } + .col-lg-12 { + -ms-flex: 0 0 100%; + flex: 0 0 100%; + max-width: 100%; + } + .order-lg-1 { + -ms-flex-order: 1; + order: 1; + } + .order-lg-2 { + -ms-flex-order: 2; + order: 2; + } + .order-lg-3 { + -ms-flex-order: 3; + order: 3; + } + .order-lg-4 { + -ms-flex-order: 4; + order: 4; + } + .order-lg-5 { + -ms-flex-order: 5; + order: 5; + } + .order-lg-6 { + -ms-flex-order: 6; + order: 6; + } + .order-lg-7 { + -ms-flex-order: 7; + order: 7; + } + .order-lg-8 { + -ms-flex-order: 8; + order: 8; + } + .order-lg-9 { + -ms-flex-order: 9; + order: 9; + } + .order-lg-10 { + -ms-flex-order: 10; + order: 10; + } + .order-lg-11 { + -ms-flex-order: 11; + order: 11; + } + .order-lg-12 { + -ms-flex-order: 12; + order: 12; + } +} + +@media (min-width: 1200px) { + .col-xl { + -ms-flex-preferred-size: 0; + flex-basis: 0; + -ms-flex-positive: 1; + flex-grow: 1; + max-width: 100%; + } + .col-xl-auto { + -ms-flex: 0 0 auto; + flex: 0 0 auto; + width: auto; + max-width: none; + } + .col-xl-1 { + -ms-flex: 0 0 8.333333%; + flex: 0 0 8.333333%; + max-width: 8.333333%; + } + .col-xl-2 { + -ms-flex: 0 0 16.666667%; + flex: 0 0 16.666667%; + max-width: 16.666667%; + } + .col-xl-3 { + -ms-flex: 0 0 25%; + flex: 0 0 25%; + max-width: 25%; + } + .col-xl-4 { + -ms-flex: 0 0 33.333333%; + flex: 0 0 33.333333%; + max-width: 33.333333%; + } + .col-xl-5 { + -ms-flex: 0 0 41.666667%; + flex: 0 0 41.666667%; + max-width: 41.666667%; + } + .col-xl-6 { + -ms-flex: 0 0 50%; + flex: 0 0 50%; + max-width: 50%; + } + .col-xl-7 { + -ms-flex: 0 0 58.333333%; + flex: 0 0 58.333333%; + max-width: 58.333333%; + } + .col-xl-8 { + -ms-flex: 0 0 66.666667%; + flex: 0 0 66.666667%; + max-width: 66.666667%; + } + .col-xl-9 { + -ms-flex: 0 0 75%; + flex: 0 0 75%; + max-width: 75%; + } + .col-xl-10 { + -ms-flex: 0 0 83.333333%; + flex: 0 0 83.333333%; + max-width: 83.333333%; + } + .col-xl-11 { + -ms-flex: 0 0 91.666667%; + flex: 0 0 91.666667%; + max-width: 91.666667%; + } + .col-xl-12 { + -ms-flex: 0 0 100%; + flex: 0 0 100%; + max-width: 100%; + } + .order-xl-1 { + -ms-flex-order: 1; + order: 1; + } + .order-xl-2 { + -ms-flex-order: 2; + order: 2; + } + .order-xl-3 { + -ms-flex-order: 3; + order: 3; + } + .order-xl-4 { + -ms-flex-order: 4; + order: 4; + } + .order-xl-5 { + -ms-flex-order: 5; + order: 5; + } + .order-xl-6 { + -ms-flex-order: 6; + order: 6; + } + .order-xl-7 { + -ms-flex-order: 7; + order: 7; + } + .order-xl-8 { + -ms-flex-order: 8; + order: 8; + } + .order-xl-9 { + -ms-flex-order: 9; + order: 9; + } + .order-xl-10 { + -ms-flex-order: 10; + order: 10; + } + .order-xl-11 { + -ms-flex-order: 11; + order: 11; + } + .order-xl-12 { + -ms-flex-order: 12; + order: 12; + } +} + +.table { + width: 100%; + max-width: 100%; + margin-bottom: 1rem; + background-color: transparent; +} + +.table th, +.table td { + padding: 0.75rem; + vertical-align: top; + border-top: 1px solid #e9ecef; +} + +.table thead th { + vertical-align: bottom; + border-bottom: 2px solid #e9ecef; +} + +.table tbody + tbody { + border-top: 2px solid #e9ecef; +} + +.table .table { + background-color: #fff; +} + +.table-sm th, +.table-sm td { + padding: 0.3rem; +} + +.table-bordered { + border: 1px solid #e9ecef; +} + +.table-bordered th, +.table-bordered td { + border: 1px solid #e9ecef; +} + +.table-bordered thead th, +.table-bordered thead td { + border-bottom-width: 2px; +} + +.table-striped tbody tr:nth-of-type(odd) { + background-color: rgba(0, 0, 0, 0.05); +} + +.table-hover tbody tr:hover { + background-color: rgba(0, 0, 0, 0.075); +} + +.table-primary, +.table-primary > th, +.table-primary > td { + background-color: #b8daff; +} + +.table-hover .table-primary:hover { + background-color: #9fcdff; +} + +.table-hover .table-primary:hover > td, +.table-hover .table-primary:hover > th { + background-color: #9fcdff; +} + +.table-secondary, +.table-secondary > th, +.table-secondary > td { + background-color: #dddfe2; +} + +.table-hover .table-secondary:hover { + background-color: #cfd2d6; +} + +.table-hover .table-secondary:hover > td, +.table-hover .table-secondary:hover > th { + background-color: #cfd2d6; +} + +.table-success, +.table-success > th, +.table-success > td { + background-color: #c3e6cb; +} + +.table-hover .table-success:hover { + background-color: #b1dfbb; +} + +.table-hover .table-success:hover > td, +.table-hover .table-success:hover > th { + background-color: #b1dfbb; +} + +.table-info, +.table-info > th, +.table-info > td { + background-color: #bee5eb; +} + +.table-hover .table-info:hover { + background-color: #abdde5; +} + +.table-hover .table-info:hover > td, +.table-hover .table-info:hover > th { + background-color: #abdde5; +} + +.table-warning, +.table-warning > th, +.table-warning > td { + background-color: #ffeeba; +} + +.table-hover .table-warning:hover { + background-color: #ffe8a1; +} + +.table-hover .table-warning:hover > td, +.table-hover .table-warning:hover > th { + background-color: #ffe8a1; +} + +.table-danger, +.table-danger > th, +.table-danger > td { + background-color: #f5c6cb; +} + +.table-hover .table-danger:hover { + background-color: #f1b0b7; +} + +.table-hover .table-danger:hover > td, +.table-hover .table-danger:hover > th { + background-color: #f1b0b7; +} + +.table-light, +.table-light > th, +.table-light > td { + background-color: #fdfdfe; +} + +.table-hover .table-light:hover { + background-color: #ececf6; +} + +.table-hover .table-light:hover > td, +.table-hover .table-light:hover > th { + background-color: #ececf6; +} + +.table-dark, +.table-dark > th, +.table-dark > td { + background-color: #c6c8ca; +} + +.table-hover .table-dark:hover { + background-color: #b9bbbe; +} + +.table-hover .table-dark:hover > td, +.table-hover .table-dark:hover > th { + background-color: #b9bbbe; +} + +.table-active, +.table-active > th, +.table-active > td { + background-color: rgba(0, 0, 0, 0.075); +} + +.table-hover .table-active:hover { + background-color: rgba(0, 0, 0, 0.075); +} + +.table-hover .table-active:hover > td, +.table-hover .table-active:hover > th { + background-color: rgba(0, 0, 0, 0.075); +} + +.thead-inverse th { + color: #fff; + background-color: #212529; +} + +.thead-default th { + color: #495057; + background-color: #e9ecef; +} + +.table-inverse { + color: #fff; + background-color: #212529; +} + +.table-inverse th, +.table-inverse td, +.table-inverse thead th { + border-color: #32383e; +} + +.table-inverse.table-bordered { + border: 0; +} + +.table-inverse.table-striped tbody tr:nth-of-type(odd) { + background-color: rgba(255, 255, 255, 0.05); +} + +.table-inverse.table-hover tbody tr:hover { + background-color: rgba(255, 255, 255, 0.075); +} + +@media (max-width: 991px) { + .table-responsive { + display: block; + width: 100%; + overflow-x: auto; + -ms-overflow-style: -ms-autohiding-scrollbar; + } + .table-responsive.table-bordered { + border: 0; + } +} + +.form-control { + display: block; + width: 100%; + padding: 0.5rem 0.75rem; + font-size: 1rem; + line-height: 1.25; + color: #495057; + background-color: #fff; + background-image: none; + background-clip: padding-box; + border: 1px solid rgba(0, 0, 0, 0.15); + border-radius: 0.25rem; + transition: border-color ease-in-out 0.15s, box-shadow ease-in-out 0.15s; +} + +.form-control::-ms-expand { + background-color: transparent; + border: 0; +} + +.form-control:focus { + color: #495057; + background-color: #fff; + border-color: #80bdff; + outline: none; +} + +.form-control::-webkit-input-placeholder { + color: #868e96; + opacity: 1; +} + +.form-control:-ms-input-placeholder { + color: #868e96; + opacity: 1; +} + +.form-control::placeholder { + color: #868e96; + opacity: 1; +} + +.form-control:disabled, .form-control[readonly] { + background-color: #e9ecef; + opacity: 1; +} + +select.form-control:not([size]):not([multiple]) { + height: calc(2.25rem + 2px); +} + +select.form-control:focus::-ms-value { + color: #495057; + background-color: #fff; +} + +.form-control-file, +.form-control-range { + display: block; +} + +.col-form-label { + padding-top: calc(0.5rem - 1px * 2); + padding-bottom: calc(0.5rem - 1px * 2); + margin-bottom: 0; +} + +.col-form-label-lg { + padding-top: calc(0.5rem - 1px * 2); + padding-bottom: calc(0.5rem - 1px * 2); + font-size: 1.25rem; +} + +.col-form-label-sm { + padding-top: calc(0.25rem - 1px * 2); + padding-bottom: calc(0.25rem - 1px * 2); + font-size: 0.875rem; +} + +.col-form-legend { + padding-top: 0.5rem; + padding-bottom: 0.5rem; + margin-bottom: 0; + font-size: 1rem; +} + +.form-control-plaintext { + padding-top: 0.5rem; + padding-bottom: 0.5rem; + margin-bottom: 0; + line-height: 1.25; + border: solid transparent; + border-width: 1px 0; +} + +.form-control-plaintext.form-control-sm, .input-group-sm > .form-control-plaintext.form-control, +.input-group-sm > .form-control-plaintext.input-group-addon, +.input-group-sm > .input-group-btn > .form-control-plaintext.btn, .form-control-plaintext.form-control-lg, .input-group-lg > .form-control-plaintext.form-control, +.input-group-lg > .form-control-plaintext.input-group-addon, +.input-group-lg > .input-group-btn > .form-control-plaintext.btn { + padding-right: 0; + padding-left: 0; +} + +.form-control-sm, .input-group-sm > .form-control, +.input-group-sm > .input-group-addon, +.input-group-sm > .input-group-btn > .btn { + padding: 0.25rem 0.5rem; + font-size: 0.875rem; + line-height: 1.5; + border-radius: 0.2rem; +} + +select.form-control-sm:not([size]):not([multiple]), .input-group-sm > select.form-control:not([size]):not([multiple]), +.input-group-sm > select.input-group-addon:not([size]):not([multiple]), +.input-group-sm > .input-group-btn > select.btn:not([size]):not([multiple]) { + height: calc(1.8125rem + 2px); +} + +.form-control-lg, .input-group-lg > .form-control, +.input-group-lg > .input-group-addon, +.input-group-lg > .input-group-btn > .btn { + padding: 0.5rem 1rem; + font-size: 1.25rem; + line-height: 1.5; + border-radius: 0.3rem; +} + +select.form-control-lg:not([size]):not([multiple]), .input-group-lg > select.form-control:not([size]):not([multiple]), +.input-group-lg > select.input-group-addon:not([size]):not([multiple]), +.input-group-lg > .input-group-btn > select.btn:not([size]):not([multiple]) { + height: calc(2.3125rem + 2px); +} + +.form-group { + margin-bottom: 1rem; +} + +.form-text { + display: block; + margin-top: 0.25rem; +} + +.form-row { + display: -ms-flexbox; + display: flex; + -ms-flex-wrap: wrap; + flex-wrap: wrap; + margin-right: -5px; + margin-left: -5px; +} + +.form-row > .col, +.form-row > [class*="col-"] { + padding-right: 5px; + padding-left: 5px; +} + +.form-check { + position: relative; + display: block; + margin-bottom: 0.5rem; +} + +.form-check.disabled .form-check-label { + color: #868e96; +} + +.form-check-label { + padding-left: 1.25rem; + margin-bottom: 0; +} + +.form-check-input { + position: absolute; + margin-top: 0.25rem; + margin-left: -1.25rem; +} + +.form-check-input:only-child { + position: static; +} + +.form-check-inline { + display: inline-block; +} + +.form-check-inline .form-check-label { + vertical-align: middle; +} + +.form-check-inline + .form-check-inline { + margin-left: 0.75rem; +} + +.invalid-feedback { + display: none; + margin-top: .25rem; + font-size: .875rem; + color: #dc3545; +} + +.invalid-tooltip { + position: absolute; + top: 100%; + z-index: 5; + display: none; + width: 250px; + padding: .5rem; + margin-top: .1rem; + font-size: .875rem; + line-height: 1; + color: #fff; + background-color: rgba(220, 53, 69, 0.8); + border-radius: .2rem; +} + +.was-validated .form-control:valid, .form-control.is-valid, .was-validated +.custom-select:valid, +.custom-select.is-valid { + border-color: #28a745; +} + +.was-validated .form-control:valid:focus, .form-control.is-valid:focus, .was-validated +.custom-select:valid:focus, +.custom-select.is-valid:focus { + box-shadow: 0 0 0 0.2rem rgba(40, 167, 69, 0.25); +} + +.was-validated .form-control:valid ~ .invalid-feedback, +.was-validated .form-control:valid ~ .invalid-tooltip, .form-control.is-valid ~ .invalid-feedback, +.form-control.is-valid ~ .invalid-tooltip, .was-validated +.custom-select:valid ~ .invalid-feedback, +.was-validated +.custom-select:valid ~ .invalid-tooltip, +.custom-select.is-valid ~ .invalid-feedback, +.custom-select.is-valid ~ .invalid-tooltip { + display: block; +} + +.was-validated .form-check-input:valid + .form-check-label, .form-check-input.is-valid + .form-check-label { + color: #28a745; +} + +.was-validated .custom-control-input:valid ~ .custom-control-indicator, .custom-control-input.is-valid ~ .custom-control-indicator { + background-color: rgba(40, 167, 69, 0.25); +} + +.was-validated .custom-control-input:valid ~ .custom-control-description, .custom-control-input.is-valid ~ .custom-control-description { + color: #28a745; +} + +.was-validated .custom-file-input:valid ~ .custom-file-control, .custom-file-input.is-valid ~ .custom-file-control { + border-color: #28a745; +} + +.was-validated .custom-file-input:valid ~ .custom-file-control::before, .custom-file-input.is-valid ~ .custom-file-control::before { + border-color: inherit; +} + +.was-validated .custom-file-input:valid:focus, .custom-file-input.is-valid:focus { + box-shadow: 0 0 0 0.2rem rgba(40, 167, 69, 0.25); +} + +.was-validated .form-control:invalid, .form-control.is-invalid, .was-validated +.custom-select:invalid, +.custom-select.is-invalid { + border-color: #dc3545; +} + +.was-validated .form-control:invalid:focus, .form-control.is-invalid:focus, .was-validated +.custom-select:invalid:focus, +.custom-select.is-invalid:focus { + box-shadow: 0 0 0 0.2rem rgba(220, 53, 69, 0.25); +} + +.was-validated .form-control:invalid ~ .invalid-feedback, +.was-validated .form-control:invalid ~ .invalid-tooltip, .form-control.is-invalid ~ .invalid-feedback, +.form-control.is-invalid ~ .invalid-tooltip, .was-validated +.custom-select:invalid ~ .invalid-feedback, +.was-validated +.custom-select:invalid ~ .invalid-tooltip, +.custom-select.is-invalid ~ .invalid-feedback, +.custom-select.is-invalid ~ .invalid-tooltip { + display: block; +} + +.was-validated .form-check-input:invalid + .form-check-label, .form-check-input.is-invalid + .form-check-label { + color: #dc3545; +} + +.was-validated .custom-control-input:invalid ~ .custom-control-indicator, .custom-control-input.is-invalid ~ .custom-control-indicator { + background-color: rgba(220, 53, 69, 0.25); +} + +.was-validated .custom-control-input:invalid ~ .custom-control-description, .custom-control-input.is-invalid ~ .custom-control-description { + color: #dc3545; +} + +.was-validated .custom-file-input:invalid ~ .custom-file-control, .custom-file-input.is-invalid ~ .custom-file-control { + border-color: #dc3545; +} + +.was-validated .custom-file-input:invalid ~ .custom-file-control::before, .custom-file-input.is-invalid ~ .custom-file-control::before { + border-color: inherit; +} + +.was-validated .custom-file-input:invalid:focus, .custom-file-input.is-invalid:focus { + box-shadow: 0 0 0 0.2rem rgba(220, 53, 69, 0.25); +} + +.form-inline { + display: -ms-flexbox; + display: flex; + -ms-flex-flow: row wrap; + flex-flow: row wrap; + -ms-flex-align: center; + align-items: center; +} + +.form-inline .form-check { + width: 100%; +} + +@media (min-width: 576px) { + .form-inline label { + display: -ms-flexbox; + display: flex; + -ms-flex-align: center; + align-items: center; + -ms-flex-pack: center; + justify-content: center; + margin-bottom: 0; + } + .form-inline .form-group { + display: -ms-flexbox; + display: flex; + -ms-flex: 0 0 auto; + flex: 0 0 auto; + -ms-flex-flow: row wrap; + flex-flow: row wrap; + -ms-flex-align: center; + align-items: center; + margin-bottom: 0; + } + .form-inline .form-control { + display: inline-block; + width: auto; + vertical-align: middle; + } + .form-inline .form-control-plaintext { + display: inline-block; + } + .form-inline .input-group { + width: auto; + } + .form-inline .form-control-label { + margin-bottom: 0; + vertical-align: middle; + } + .form-inline .form-check { + display: -ms-flexbox; + display: flex; + -ms-flex-align: center; + align-items: center; + -ms-flex-pack: center; + justify-content: center; + width: auto; + margin-top: 0; + margin-bottom: 0; + } + .form-inline .form-check-label { + padding-left: 0; + } + .form-inline .form-check-input { + position: relative; + margin-top: 0; + margin-right: 0.25rem; + margin-left: 0; + } + .form-inline .custom-control { + display: -ms-flexbox; + display: flex; + -ms-flex-align: center; + align-items: center; + -ms-flex-pack: center; + justify-content: center; + padding-left: 0; + } + .form-inline .custom-control-indicator { + position: static; + display: inline-block; + margin-right: 0.25rem; + vertical-align: text-bottom; + } + .form-inline .has-feedback .form-control-feedback { + top: 0; + } +} + +.btn { + display: inline-block; + font-weight: normal; + text-align: center; + white-space: nowrap; + vertical-align: middle; + -webkit-user-select: none; + -moz-user-select: none; + -ms-user-select: none; + user-select: none; + border: 1px solid transparent; + padding: 0.5rem 0.75rem; + font-size: 1rem; + line-height: 1.25; + border-radius: 0.25rem; + transition: all 0.15s ease-in-out; +} + +.btn:focus, .btn:hover { + text-decoration: none; +} + +.btn:focus, .btn.focus { + outline: 0; + box-shadow: 0 0 0 3px rgba(0, 123, 255, 0.25); +} + +.btn.disabled, .btn:disabled { + opacity: .65; +} + +.btn:active, .btn.active { + background-image: none; +} + +a.btn.disabled, +fieldset[disabled] a.btn { + pointer-events: none; +} + +.btn-primary { + color: #fff; + background-color: #007bff; + border-color: #007bff; +} + +.btn-primary:hover { + color: #fff; + background-color: #0069d9; + border-color: #0062cc; +} + +.btn-primary:focus, .btn-primary.focus { + box-shadow: 0 0 0 3px rgba(0, 123, 255, 0.5); +} + +.btn-primary.disabled, .btn-primary:disabled { + background-color: #007bff; + border-color: #007bff; +} + +.btn-primary:active, .btn-primary.active, +.show > .btn-primary.dropdown-toggle { + background-color: #0069d9; + background-image: none; + border-color: #0062cc; +} + +.btn-secondary { + color: #fff; + background-color: #868e96; + border-color: #868e96; +} + +.btn-secondary:hover { + color: #fff; + background-color: #727b84; + border-color: #6c757d; +} + +.btn-secondary:focus, .btn-secondary.focus { + box-shadow: 0 0 0 3px rgba(134, 142, 150, 0.5); +} + +.btn-secondary.disabled, .btn-secondary:disabled { + background-color: #868e96; + border-color: #868e96; +} + +.btn-secondary:active, .btn-secondary.active, +.show > .btn-secondary.dropdown-toggle { + background-color: #727b84; + background-image: none; + border-color: #6c757d; +} + +.btn-success { + color: #fff; + background-color: #28a745; + border-color: #28a745; +} + +.btn-success:hover { + color: #fff; + background-color: #218838; + border-color: #1e7e34; +} + +.btn-success:focus, .btn-success.focus { + box-shadow: 0 0 0 3px rgba(40, 167, 69, 0.5); +} + +.btn-success.disabled, .btn-success:disabled { + background-color: #28a745; + border-color: #28a745; +} + +.btn-success:active, .btn-success.active, +.show > .btn-success.dropdown-toggle { + background-color: #218838; + background-image: none; + border-color: #1e7e34; +} + +.btn-info { + color: #fff; + background-color: #17a2b8; + border-color: #17a2b8; +} + +.btn-info:hover { + color: #fff; + background-color: #138496; + border-color: #117a8b; +} + +.btn-info:focus, .btn-info.focus { + box-shadow: 0 0 0 3px rgba(23, 162, 184, 0.5); +} + +.btn-info.disabled, .btn-info:disabled { + background-color: #17a2b8; + border-color: #17a2b8; +} + +.btn-info:active, .btn-info.active, +.show > .btn-info.dropdown-toggle { + background-color: #138496; + background-image: none; + border-color: #117a8b; +} + +.btn-warning { + color: #111; + background-color: #ffc107; + border-color: #ffc107; +} + +.btn-warning:hover { + color: #111; + background-color: #e0a800; + border-color: #d39e00; +} + +.btn-warning:focus, .btn-warning.focus { + box-shadow: 0 0 0 3px rgba(255, 193, 7, 0.5); +} + +.btn-warning.disabled, .btn-warning:disabled { + background-color: #ffc107; + border-color: #ffc107; +} + +.btn-warning:active, .btn-warning.active, +.show > .btn-warning.dropdown-toggle { + background-color: #e0a800; + background-image: none; + border-color: #d39e00; +} + +.btn-danger { + color: #fff; + background-color: #dc3545; + border-color: #dc3545; +} + +.btn-danger:hover { + color: #fff; + background-color: #c82333; + border-color: #bd2130; +} + +.btn-danger:focus, .btn-danger.focus { + box-shadow: 0 0 0 3px rgba(220, 53, 69, 0.5); +} + +.btn-danger.disabled, .btn-danger:disabled { + background-color: #dc3545; + border-color: #dc3545; +} + +.btn-danger:active, .btn-danger.active, +.show > .btn-danger.dropdown-toggle { + background-color: #c82333; + background-image: none; + border-color: #bd2130; +} + +.btn-light { + color: #111; + background-color: #f8f9fa; + border-color: #f8f9fa; +} + +.btn-light:hover { + color: #111; + background-color: #e2e6ea; + border-color: #dae0e5; +} + +.btn-light:focus, .btn-light.focus { + box-shadow: 0 0 0 3px rgba(248, 249, 250, 0.5); +} + +.btn-light.disabled, .btn-light:disabled { + background-color: #f8f9fa; + border-color: #f8f9fa; +} + +.btn-light:active, .btn-light.active, +.show > .btn-light.dropdown-toggle { + background-color: #e2e6ea; + background-image: none; + border-color: #dae0e5; +} + +.btn-dark { + color: #fff; + background-color: #343a40; + border-color: #343a40; +} + +.btn-dark:hover { + color: #fff; + background-color: #23272b; + border-color: #1d2124; +} + +.btn-dark:focus, .btn-dark.focus { + box-shadow: 0 0 0 3px rgba(52, 58, 64, 0.5); +} + +.btn-dark.disabled, .btn-dark:disabled { + background-color: #343a40; + border-color: #343a40; +} + +.btn-dark:active, .btn-dark.active, +.show > .btn-dark.dropdown-toggle { + background-color: #23272b; + background-image: none; + border-color: #1d2124; +} + +.btn-outline-primary { + color: #007bff; + background-color: transparent; + background-image: none; + border-color: #007bff; +} + +.btn-outline-primary:hover { + color: #fff; + background-color: #007bff; + border-color: #007bff; +} + +.btn-outline-primary:focus, .btn-outline-primary.focus { + box-shadow: 0 0 0 3px rgba(0, 123, 255, 0.5); +} + +.btn-outline-primary.disabled, .btn-outline-primary:disabled { + color: #007bff; + background-color: transparent; +} + +.btn-outline-primary:active, .btn-outline-primary.active, +.show > .btn-outline-primary.dropdown-toggle { + color: #fff; + background-color: #007bff; + border-color: #007bff; +} + +.btn-outline-secondary { + color: #868e96; + background-color: transparent; + background-image: none; + border-color: #868e96; +} + +.btn-outline-secondary:hover { + color: #fff; + background-color: #868e96; + border-color: #868e96; +} + +.btn-outline-secondary:focus, .btn-outline-secondary.focus { + box-shadow: 0 0 0 3px rgba(134, 142, 150, 0.5); +} + +.btn-outline-secondary.disabled, .btn-outline-secondary:disabled { + color: #868e96; + background-color: transparent; +} + +.btn-outline-secondary:active, .btn-outline-secondary.active, +.show > .btn-outline-secondary.dropdown-toggle { + color: #fff; + background-color: #868e96; + border-color: #868e96; +} + +.btn-outline-success { + color: #28a745; + background-color: transparent; + background-image: none; + border-color: #28a745; +} + +.btn-outline-success:hover { + color: #fff; + background-color: #28a745; + border-color: #28a745; +} + +.btn-outline-success:focus, .btn-outline-success.focus { + box-shadow: 0 0 0 3px rgba(40, 167, 69, 0.5); +} + +.btn-outline-success.disabled, .btn-outline-success:disabled { + color: #28a745; + background-color: transparent; +} + +.btn-outline-success:active, .btn-outline-success.active, +.show > .btn-outline-success.dropdown-toggle { + color: #fff; + background-color: #28a745; + border-color: #28a745; +} + +.btn-outline-info { + color: #17a2b8; + background-color: transparent; + background-image: none; + border-color: #17a2b8; +} + +.btn-outline-info:hover { + color: #fff; + background-color: #17a2b8; + border-color: #17a2b8; +} + +.btn-outline-info:focus, .btn-outline-info.focus { + box-shadow: 0 0 0 3px rgba(23, 162, 184, 0.5); +} + +.btn-outline-info.disabled, .btn-outline-info:disabled { + color: #17a2b8; + background-color: transparent; +} + +.btn-outline-info:active, .btn-outline-info.active, +.show > .btn-outline-info.dropdown-toggle { + color: #fff; + background-color: #17a2b8; + border-color: #17a2b8; +} + +.btn-outline-warning { + color: #ffc107; + background-color: transparent; + background-image: none; + border-color: #ffc107; +} + +.btn-outline-warning:hover { + color: #fff; + background-color: #ffc107; + border-color: #ffc107; +} + +.btn-outline-warning:focus, .btn-outline-warning.focus { + box-shadow: 0 0 0 3px rgba(255, 193, 7, 0.5); +} + +.btn-outline-warning.disabled, .btn-outline-warning:disabled { + color: #ffc107; + background-color: transparent; +} + +.btn-outline-warning:active, .btn-outline-warning.active, +.show > .btn-outline-warning.dropdown-toggle { + color: #fff; + background-color: #ffc107; + border-color: #ffc107; +} + +.btn-outline-danger { + color: #dc3545; + background-color: transparent; + background-image: none; + border-color: #dc3545; +} + +.btn-outline-danger:hover { + color: #fff; + background-color: #dc3545; + border-color: #dc3545; +} + +.btn-outline-danger:focus, .btn-outline-danger.focus { + box-shadow: 0 0 0 3px rgba(220, 53, 69, 0.5); +} + +.btn-outline-danger.disabled, .btn-outline-danger:disabled { + color: #dc3545; + background-color: transparent; +} + +.btn-outline-danger:active, .btn-outline-danger.active, +.show > .btn-outline-danger.dropdown-toggle { + color: #fff; + background-color: #dc3545; + border-color: #dc3545; +} + +.btn-outline-light { + color: #f8f9fa; + background-color: transparent; + background-image: none; + border-color: #f8f9fa; +} + +.btn-outline-light:hover { + color: #fff; + background-color: #f8f9fa; + border-color: #f8f9fa; +} + +.btn-outline-light:focus, .btn-outline-light.focus { + box-shadow: 0 0 0 3px rgba(248, 249, 250, 0.5); +} + +.btn-outline-light.disabled, .btn-outline-light:disabled { + color: #f8f9fa; + background-color: transparent; +} + +.btn-outline-light:active, .btn-outline-light.active, +.show > .btn-outline-light.dropdown-toggle { + color: #fff; + background-color: #f8f9fa; + border-color: #f8f9fa; +} + +.btn-outline-dark { + color: #343a40; + background-color: transparent; + background-image: none; + border-color: #343a40; +} + +.btn-outline-dark:hover { + color: #fff; + background-color: #343a40; + border-color: #343a40; +} + +.btn-outline-dark:focus, .btn-outline-dark.focus { + box-shadow: 0 0 0 3px rgba(52, 58, 64, 0.5); +} + +.btn-outline-dark.disabled, .btn-outline-dark:disabled { + color: #343a40; + background-color: transparent; +} + +.btn-outline-dark:active, .btn-outline-dark.active, +.show > .btn-outline-dark.dropdown-toggle { + color: #fff; + background-color: #343a40; + border-color: #343a40; +} + +.btn-link { + font-weight: normal; + color: #007bff; + border-radius: 0; +} + +.btn-link, .btn-link:active, .btn-link.active, .btn-link:disabled { + background-color: transparent; +} + +.btn-link, .btn-link:focus, .btn-link:active { + border-color: transparent; + box-shadow: none; +} + +.btn-link:hover { + border-color: transparent; +} + +.btn-link:focus, .btn-link:hover { + color: #0056b3; + text-decoration: underline; + background-color: transparent; +} + +.btn-link:disabled { + color: #868e96; +} + +.btn-link:disabled:focus, .btn-link:disabled:hover { + text-decoration: none; +} + +.btn-lg, .btn-group-lg > .btn { + padding: 0.5rem 1rem; + font-size: 1.25rem; + line-height: 1.5; + border-radius: 0.3rem; +} + +.btn-sm, .btn-group-sm > .btn { + padding: 0.25rem 0.5rem; + font-size: 0.875rem; + line-height: 1.5; + border-radius: 0.2rem; +} + +.btn-block { + display: block; + width: 100%; +} + +.btn-block + .btn-block { + margin-top: 0.5rem; +} + +input[type="submit"].btn-block, +input[type="reset"].btn-block, +input[type="button"].btn-block { + width: 100%; +} + +.fade { + opacity: 0; + transition: opacity 0.15s linear; +} + +.fade.show { + opacity: 1; +} + +.collapse { + display: none; +} + +.collapse.show { + display: block; +} + +tr.collapse.show { + display: table-row; +} + +tbody.collapse.show { + display: table-row-group; +} + +.collapsing { + position: relative; + height: 0; + overflow: hidden; + transition: height 0.35s ease; +} + +.dropup, +.dropdown { + position: relative; +} + +.dropdown-toggle::after { + display: inline-block; + width: 0; + height: 0; + margin-left: 0.255em; + vertical-align: 0.255em; + content: ""; + border-top: 0.3em solid; + border-right: 0.3em solid transparent; + border-left: 0.3em solid transparent; +} + +.dropdown-toggle:empty::after { + margin-left: 0; +} + +.dropup .dropdown-menu { + margin-top: 0; + margin-bottom: 0.125rem; +} + +.dropup .dropdown-toggle::after { + border-top: 0; + border-bottom: 0.3em solid; +} + +.dropdown-menu { + position: absolute; + top: 100%; + left: 0; + z-index: 1000; + display: none; + float: left; + min-width: 10rem; + padding: 0.5rem 0; + margin: 0.125rem 0 0; + font-size: 1rem; + color: #212529; + text-align: left; + list-style: none; + background-color: #fff; + background-clip: padding-box; + border: 1px solid rgba(0, 0, 0, 0.15); + border-radius: 0.25rem; +} + +.dropdown-divider { + height: 0; + margin: 0.5rem 0; + overflow: hidden; + border-top: 1px solid #e9ecef; +} + +.dropdown-item { + display: block; + width: 100%; + padding: 0.25rem 1.5rem; + clear: both; + font-weight: normal; + color: #212529; + text-align: inherit; + white-space: nowrap; + background: none; + border: 0; +} + +.dropdown-item:focus, .dropdown-item:hover { + color: #16181b; + text-decoration: none; + background-color: #f8f9fa; +} + +.dropdown-item.active, .dropdown-item:active { + color: #fff; + text-decoration: none; + background-color: #007bff; +} + +.dropdown-item.disabled, .dropdown-item:disabled { + color: #868e96; + background-color: transparent; +} + +.show > a { + outline: 0; +} + +.dropdown-menu.show { + display: block; +} + +.dropdown-header { + display: block; + padding: 0.5rem 1.5rem; + margin-bottom: 0; + font-size: 0.875rem; + color: #868e96; + white-space: nowrap; +} + +.btn-group, +.btn-group-vertical { + position: relative; + display: -ms-inline-flexbox; + display: inline-flex; + vertical-align: middle; +} + +.btn-group > .btn, +.btn-group-vertical > .btn { + position: relative; + -ms-flex: 0 1 auto; + flex: 0 1 auto; + margin-bottom: 0; +} + +.btn-group > .btn:hover, +.btn-group-vertical > .btn:hover { + z-index: 2; +} + +.btn-group > .btn:focus, .btn-group > .btn:active, .btn-group > .btn.active, +.btn-group-vertical > .btn:focus, +.btn-group-vertical > .btn:active, +.btn-group-vertical > .btn.active { + z-index: 2; +} + +.btn-group .btn + .btn, +.btn-group .btn + .btn-group, +.btn-group .btn-group + .btn, +.btn-group .btn-group + .btn-group, +.btn-group-vertical .btn + .btn, +.btn-group-vertical .btn + .btn-group, +.btn-group-vertical .btn-group + .btn, +.btn-group-vertical .btn-group + .btn-group { + margin-left: -1px; +} + +.btn-toolbar { + display: -ms-flexbox; + display: flex; + -ms-flex-wrap: wrap; + flex-wrap: wrap; + -ms-flex-pack: start; + justify-content: flex-start; +} + +.btn-toolbar .input-group { + width: auto; +} + +.btn-group > .btn:not(:first-child):not(:last-child):not(.dropdown-toggle) { + border-radius: 0; +} + +.btn-group > .btn:first-child { + margin-left: 0; +} + +.btn-group > .btn:first-child:not(:last-child):not(.dropdown-toggle) { + border-top-right-radius: 0; + border-bottom-right-radius: 0; +} + +.btn-group > .btn:last-child:not(:first-child), +.btn-group > .dropdown-toggle:not(:first-child) { + border-top-left-radius: 0; + border-bottom-left-radius: 0; +} + +.btn-group > .btn-group { + float: left; +} + +.btn-group > .btn-group:not(:first-child):not(:last-child) > .btn { + border-radius: 0; +} + +.btn-group > .btn-group:first-child:not(:last-child) > .btn:last-child, +.btn-group > .btn-group:first-child:not(:last-child) > .dropdown-toggle { + border-top-right-radius: 0; + border-bottom-right-radius: 0; +} + +.btn-group > .btn-group:last-child:not(:first-child) > .btn:first-child { + border-top-left-radius: 0; + border-bottom-left-radius: 0; +} + +.btn + .dropdown-toggle-split { + padding-right: 0.5625rem; + padding-left: 0.5625rem; +} + +.btn + .dropdown-toggle-split::after { + margin-left: 0; +} + +.btn-sm + .dropdown-toggle-split, .btn-group-sm > .btn + .dropdown-toggle-split { + padding-right: 0.375rem; + padding-left: 0.375rem; +} + +.btn-lg + .dropdown-toggle-split, .btn-group-lg > .btn + .dropdown-toggle-split { + padding-right: 0.75rem; + padding-left: 0.75rem; +} + +.btn-group-vertical { + display: -ms-inline-flexbox; + display: inline-flex; + -ms-flex-direction: column; + flex-direction: column; + -ms-flex-align: start; + align-items: flex-start; + -ms-flex-pack: center; + justify-content: center; +} + +.btn-group-vertical .btn, +.btn-group-vertical .btn-group { + width: 100%; +} + +.btn-group-vertical > .btn + .btn, +.btn-group-vertical > .btn + .btn-group, +.btn-group-vertical > .btn-group + .btn, +.btn-group-vertical > .btn-group + .btn-group { + margin-top: -1px; + margin-left: 0; +} + +.btn-group-vertical > .btn:not(:first-child):not(:last-child) { + border-radius: 0; +} + +.btn-group-vertical > .btn:first-child:not(:last-child) { + border-bottom-right-radius: 0; + border-bottom-left-radius: 0; +} + +.btn-group-vertical > .btn:last-child:not(:first-child) { + border-top-left-radius: 0; + border-top-right-radius: 0; +} + +.btn-group-vertical > .btn-group:not(:first-child):not(:last-child) > .btn { + border-radius: 0; +} + +.btn-group-vertical > .btn-group:first-child:not(:last-child) > .btn:last-child, +.btn-group-vertical > .btn-group:first-child:not(:last-child) > .dropdown-toggle { + border-bottom-right-radius: 0; + border-bottom-left-radius: 0; +} + +.btn-group-vertical > .btn-group:last-child:not(:first-child) > .btn:first-child { + border-top-left-radius: 0; + border-top-right-radius: 0; +} + +[data-toggle="buttons"] > .btn input[type="radio"], +[data-toggle="buttons"] > .btn input[type="checkbox"], +[data-toggle="buttons"] > .btn-group > .btn input[type="radio"], +[data-toggle="buttons"] > .btn-group > .btn input[type="checkbox"] { + position: absolute; + clip: rect(0, 0, 0, 0); + pointer-events: none; +} + +.input-group { + position: relative; + display: -ms-flexbox; + display: flex; + width: 100%; +} + +.input-group .form-control { + position: relative; + z-index: 2; + -ms-flex: 1 1 auto; + flex: 1 1 auto; + width: 1%; + margin-bottom: 0; +} + +.input-group .form-control:focus, .input-group .form-control:active, .input-group .form-control:hover { + z-index: 3; +} + +.input-group-addon, +.input-group-btn, +.input-group .form-control { + display: -ms-flexbox; + display: flex; + -ms-flex-align: center; + align-items: center; +} + +.input-group-addon:not(:first-child):not(:last-child), +.input-group-btn:not(:first-child):not(:last-child), +.input-group .form-control:not(:first-child):not(:last-child) { + border-radius: 0; +} + +.input-group-addon, +.input-group-btn { + white-space: nowrap; + vertical-align: middle; +} + +.input-group-addon { + padding: 0.5rem 0.75rem; + margin-bottom: 0; + font-size: 1rem; + font-weight: normal; + line-height: 1.25; + color: #495057; + text-align: center; + background-color: #e9ecef; + border: 1px solid rgba(0, 0, 0, 0.15); + border-radius: 0.25rem; +} + +.input-group-addon.form-control-sm, +.input-group-sm > .input-group-addon, +.input-group-sm > .input-group-btn > .input-group-addon.btn { + padding: 0.25rem 0.5rem; + font-size: 0.875rem; + border-radius: 0.2rem; +} + +.input-group-addon.form-control-lg, +.input-group-lg > .input-group-addon, +.input-group-lg > .input-group-btn > .input-group-addon.btn { + padding: 0.5rem 1rem; + font-size: 1.25rem; + border-radius: 0.3rem; +} + +.input-group-addon input[type="radio"], +.input-group-addon input[type="checkbox"] { + margin-top: 0; +} + +.input-group .form-control:not(:last-child), +.input-group-addon:not(:last-child), +.input-group-btn:not(:last-child) > .btn, +.input-group-btn:not(:last-child) > .btn-group > .btn, +.input-group-btn:not(:last-child) > .dropdown-toggle, +.input-group-btn:not(:first-child) > .btn:not(:last-child):not(.dropdown-toggle), +.input-group-btn:not(:first-child) > .btn-group:not(:last-child) > .btn { + border-top-right-radius: 0; + border-bottom-right-radius: 0; +} + +.input-group-addon:not(:last-child) { + border-right: 0; +} + +.input-group .form-control:not(:first-child), +.input-group-addon:not(:first-child), +.input-group-btn:not(:first-child) > .btn, +.input-group-btn:not(:first-child) > .btn-group > .btn, +.input-group-btn:not(:first-child) > .dropdown-toggle, +.input-group-btn:not(:last-child) > .btn:not(:first-child), +.input-group-btn:not(:last-child) > .btn-group:not(:first-child) > .btn { + border-top-left-radius: 0; + border-bottom-left-radius: 0; +} + +.form-control + .input-group-addon:not(:first-child) { + border-left: 0; +} + +.input-group-btn { + position: relative; + font-size: 0; + white-space: nowrap; +} + +.input-group-btn > .btn { + position: relative; +} + +.input-group-btn > .btn + .btn { + margin-left: -1px; +} + +.input-group-btn > .btn:focus, .input-group-btn > .btn:active, .input-group-btn > .btn:hover { + z-index: 3; +} + +.input-group-btn:not(:last-child) > .btn, +.input-group-btn:not(:last-child) > .btn-group { + margin-right: -1px; +} + +.input-group-btn:not(:first-child) > .btn, +.input-group-btn:not(:first-child) > .btn-group { + z-index: 2; + margin-left: -1px; +} + +.input-group-btn:not(:first-child) > .btn:focus, .input-group-btn:not(:first-child) > .btn:active, .input-group-btn:not(:first-child) > .btn:hover, +.input-group-btn:not(:first-child) > .btn-group:focus, +.input-group-btn:not(:first-child) > .btn-group:active, +.input-group-btn:not(:first-child) > .btn-group:hover { + z-index: 3; +} + +.custom-control { + position: relative; + display: -ms-inline-flexbox; + display: inline-flex; + min-height: 1.5rem; + padding-left: 1.5rem; + margin-right: 1rem; +} + +.custom-control-input { + position: absolute; + z-index: -1; + opacity: 0; +} + +.custom-control-input:checked ~ .custom-control-indicator { + color: #fff; + background-color: #007bff; +} + +.custom-control-input:focus ~ .custom-control-indicator { + box-shadow: 0 0 0 1px #fff, 0 0 0 3px #007bff; +} + +.custom-control-input:active ~ .custom-control-indicator { + color: #fff; + background-color: #b3d7ff; +} + +.custom-control-input:disabled ~ .custom-control-indicator { + background-color: #e9ecef; +} + +.custom-control-input:disabled ~ .custom-control-description { + color: #868e96; +} + +.custom-control-indicator { + position: absolute; + top: 0.25rem; + left: 0; + display: block; + width: 1rem; + height: 1rem; + pointer-events: none; + -webkit-user-select: none; + -moz-user-select: none; + -ms-user-select: none; + user-select: none; + background-color: #ddd; + background-repeat: no-repeat; + background-position: center center; + background-size: 50% 50%; +} + +.custom-checkbox .custom-control-indicator { + border-radius: 0.25rem; +} + +.custom-checkbox .custom-control-input:checked ~ .custom-control-indicator { + background-image: url("data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 8 8'%3E%3Cpath fill='%23fff' d='M6.564.75l-3.59 3.612-1.538-1.55L0 4.26 2.974 7.25 8 2.193z'/%3E%3C/svg%3E"); +} + +.custom-checkbox .custom-control-input:indeterminate ~ .custom-control-indicator { + background-color: #007bff; + background-image: url("data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 4 4'%3E%3Cpath stroke='%23fff' d='M0 2h4'/%3E%3C/svg%3E"); +} + +.custom-radio .custom-control-indicator { + border-radius: 50%; +} + +.custom-radio .custom-control-input:checked ~ .custom-control-indicator { + background-image: url("data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='-4 -4 8 8'%3E%3Ccircle r='3' fill='%23fff'/%3E%3C/svg%3E"); +} + +.custom-controls-stacked { + display: -ms-flexbox; + display: flex; + -ms-flex-direction: column; + flex-direction: column; +} + +.custom-controls-stacked .custom-control { + margin-bottom: 0.25rem; +} + +.custom-controls-stacked .custom-control + .custom-control { + margin-left: 0; +} + +.custom-select { + display: inline-block; + max-width: 100%; + height: calc(2.25rem + 2px); + padding: 0.375rem 1.75rem 0.375rem 0.75rem; + line-height: 1.25; + color: #495057; + vertical-align: middle; + background: #fff url("data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 4 5'%3E%3Cpath fill='%23333' d='M2 0L0 2h4zm0 5L0 3h4z'/%3E%3C/svg%3E") no-repeat right 0.75rem center; + background-size: 8px 10px; + border: 1px solid rgba(0, 0, 0, 0.15); + border-radius: 0.25rem; + -webkit-appearance: none; + -moz-appearance: none; + appearance: none; +} + +.custom-select:focus { + border-color: #80bdff; + outline: none; +} + +.custom-select:focus::-ms-value { + color: #495057; + background-color: #fff; +} + +.custom-select:disabled { + color: #868e96; + background-color: #e9ecef; +} + +.custom-select::-ms-expand { + opacity: 0; +} + +.custom-select-sm { + height: calc(1.8125rem + 2px); + padding-top: 0.375rem; + padding-bottom: 0.375rem; + font-size: 75%; +} + +.custom-file { + position: relative; + display: inline-block; + max-width: 100%; + height: 2.5rem; + margin-bottom: 0; +} + +.custom-file-input { + min-width: 14rem; + max-width: 100%; + height: 2.5rem; + margin: 0; + opacity: 0; +} + +.custom-file-control { + position: absolute; + top: 0; + right: 0; + left: 0; + z-index: 5; + height: 2.5rem; + padding: 0.5rem 1rem; + line-height: 1.5; + color: #495057; + pointer-events: none; + -webkit-user-select: none; + -moz-user-select: none; + -ms-user-select: none; + user-select: none; + background-color: #fff; + border: 1px solid rgba(0, 0, 0, 0.15); + border-radius: 0.25rem; +} + +.custom-file-control:lang(en):empty::after { + content: "Choose file..."; +} + +.custom-file-control::before { + position: absolute; + top: -1px; + right: -1px; + bottom: -1px; + z-index: 6; + display: block; + height: 2.5rem; + padding: 0.5rem 1rem; + line-height: 1.5; + color: #495057; + background-color: #e9ecef; + border: 1px solid rgba(0, 0, 0, 0.15); + border-radius: 0 0.25rem 0.25rem 0; +} + +.custom-file-control:lang(en)::before { + content: "Browse"; +} + +.nav { + display: -ms-flexbox; + display: flex; + -ms-flex-wrap: wrap; + flex-wrap: wrap; + padding-left: 0; + margin-bottom: 0; + list-style: none; +} + +.nav-link { + display: block; + padding: 0.5rem 1rem; +} + +.nav-link:focus, .nav-link:hover { + text-decoration: none; +} + +.nav-link.disabled { + color: #868e96; +} + +.nav-tabs { + border-bottom: 1px solid #ddd; +} + +.nav-tabs .nav-item { + margin-bottom: -1px; +} + +.nav-tabs .nav-link { + border: 1px solid transparent; + border-top-left-radius: 0.25rem; + border-top-right-radius: 0.25rem; +} + +.nav-tabs .nav-link:focus, .nav-tabs .nav-link:hover { + border-color: #e9ecef #e9ecef #ddd; +} + +.nav-tabs .nav-link.disabled { + color: #868e96; + background-color: transparent; + border-color: transparent; +} + +.nav-tabs .nav-link.active, +.nav-tabs .nav-item.show .nav-link { + color: #495057; + background-color: #fff; + border-color: #ddd #ddd #fff; +} + +.nav-tabs .dropdown-menu { + margin-top: -1px; + border-top-left-radius: 0; + border-top-right-radius: 0; +} + +.nav-pills .nav-link { + border-radius: 0.25rem; +} + +.nav-pills .nav-link.active, +.show > .nav-pills .nav-link { + color: #fff; + background-color: #007bff; +} + +.nav-fill .nav-item { + -ms-flex: 1 1 auto; + flex: 1 1 auto; + text-align: center; +} + +.nav-justified .nav-item { + -ms-flex-preferred-size: 0; + flex-basis: 0; + -ms-flex-positive: 1; + flex-grow: 1; + text-align: center; +} + +.tab-content > .tab-pane { + display: none; +} + +.tab-content > .active { + display: block; +} + +.navbar { + position: relative; + display: -ms-flexbox; + display: flex; + -ms-flex-wrap: wrap; + flex-wrap: wrap; + -ms-flex-align: center; + align-items: center; + -ms-flex-pack: justify; + justify-content: space-between; + padding: 0.5rem 1rem; +} + +.navbar > .container, +.navbar > .container-fluid { + display: -ms-flexbox; + display: flex; + -ms-flex-wrap: wrap; + flex-wrap: wrap; + -ms-flex-align: center; + align-items: center; + -ms-flex-pack: justify; + justify-content: space-between; +} + +.navbar-brand { + display: inline-block; + padding-top: 0.3125rem; + padding-bottom: 0.3125rem; + margin-right: 1rem; + font-size: 1.25rem; + line-height: inherit; + white-space: nowrap; +} + +.navbar-brand:focus, .navbar-brand:hover { + text-decoration: none; +} + +.navbar-nav { + display: -ms-flexbox; + display: flex; + -ms-flex-direction: column; + flex-direction: column; + padding-left: 0; + margin-bottom: 0; + list-style: none; +} + +.navbar-nav .nav-link { + padding-right: 0; + padding-left: 0; +} + +.navbar-nav .dropdown-menu { + position: static; + float: none; +} + +.navbar-text { + display: inline-block; + padding-top: 0.5rem; + padding-bottom: 0.5rem; +} + +.navbar-collapse { + -ms-flex-preferred-size: 100%; + flex-basis: 100%; + -ms-flex-align: center; + align-items: center; +} + +.navbar-toggler { + padding: 0.25rem 0.75rem; + font-size: 1.25rem; + line-height: 1; + background: transparent; + border: 1px solid transparent; + border-radius: 0.25rem; +} + +.navbar-toggler:focus, .navbar-toggler:hover { + text-decoration: none; +} + +.navbar-toggler-icon { + display: inline-block; + width: 1.5em; + height: 1.5em; + vertical-align: middle; + content: ""; + background: no-repeat center center; + background-size: 100% 100%; +} + +@media (max-width: 575px) { + .navbar-expand-sm > .container, + .navbar-expand-sm > .container-fluid { + padding-right: 0; + padding-left: 0; + } +} + +@media (min-width: 576px) { + .navbar-expand-sm { + -ms-flex-direction: row; + flex-direction: row; + -ms-flex-wrap: nowrap; + flex-wrap: nowrap; + -ms-flex-pack: start; + justify-content: flex-start; + } + .navbar-expand-sm .navbar-nav { + -ms-flex-direction: row; + flex-direction: row; + } + .navbar-expand-sm .navbar-nav .dropdown-menu { + position: absolute; + } + .navbar-expand-sm .navbar-nav .dropdown-menu-right { + right: 0; + left: auto; + } + .navbar-expand-sm .navbar-nav .nav-link { + padding-right: .5rem; + padding-left: .5rem; + } + .navbar-expand-sm > .container, + .navbar-expand-sm > .container-fluid { + -ms-flex-wrap: nowrap; + flex-wrap: nowrap; + } + .navbar-expand-sm .navbar-collapse { + display: -ms-flexbox !important; + display: flex !important; + } + .navbar-expand-sm .navbar-toggler { + display: none; + } +} + +@media (max-width: 767px) { + .navbar-expand-md > .container, + .navbar-expand-md > .container-fluid { + padding-right: 0; + padding-left: 0; + } +} + +@media (min-width: 768px) { + .navbar-expand-md { + -ms-flex-direction: row; + flex-direction: row; + -ms-flex-wrap: nowrap; + flex-wrap: nowrap; + -ms-flex-pack: start; + justify-content: flex-start; + } + .navbar-expand-md .navbar-nav { + -ms-flex-direction: row; + flex-direction: row; + } + .navbar-expand-md .navbar-nav .dropdown-menu { + position: absolute; + } + .navbar-expand-md .navbar-nav .dropdown-menu-right { + right: 0; + left: auto; + } + .navbar-expand-md .navbar-nav .nav-link { + padding-right: .5rem; + padding-left: .5rem; + } + .navbar-expand-md > .container, + .navbar-expand-md > .container-fluid { + -ms-flex-wrap: nowrap; + flex-wrap: nowrap; + } + .navbar-expand-md .navbar-collapse { + display: -ms-flexbox !important; + display: flex !important; + } + .navbar-expand-md .navbar-toggler { + display: none; + } +} + +@media (max-width: 991px) { + .navbar-expand-lg > .container, + .navbar-expand-lg > .container-fluid { + padding-right: 0; + padding-left: 0; + } +} + +@media (min-width: 992px) { + .navbar-expand-lg { + -ms-flex-direction: row; + flex-direction: row; + -ms-flex-wrap: nowrap; + flex-wrap: nowrap; + -ms-flex-pack: start; + justify-content: flex-start; + } + .navbar-expand-lg .navbar-nav { + -ms-flex-direction: row; + flex-direction: row; + } + .navbar-expand-lg .navbar-nav .dropdown-menu { + position: absolute; + } + .navbar-expand-lg .navbar-nav .dropdown-menu-right { + right: 0; + left: auto; + } + .navbar-expand-lg .navbar-nav .nav-link { + padding-right: .5rem; + padding-left: .5rem; + } + .navbar-expand-lg > .container, + .navbar-expand-lg > .container-fluid { + -ms-flex-wrap: nowrap; + flex-wrap: nowrap; + } + .navbar-expand-lg .navbar-collapse { + display: -ms-flexbox !important; + display: flex !important; + } + .navbar-expand-lg .navbar-toggler { + display: none; + } +} + +@media (max-width: 1199px) { + .navbar-expand-xl > .container, + .navbar-expand-xl > .container-fluid { + padding-right: 0; + padding-left: 0; + } +} + +@media (min-width: 1200px) { + .navbar-expand-xl { + -ms-flex-direction: row; + flex-direction: row; + -ms-flex-wrap: nowrap; + flex-wrap: nowrap; + -ms-flex-pack: start; + justify-content: flex-start; + } + .navbar-expand-xl .navbar-nav { + -ms-flex-direction: row; + flex-direction: row; + } + .navbar-expand-xl .navbar-nav .dropdown-menu { + position: absolute; + } + .navbar-expand-xl .navbar-nav .dropdown-menu-right { + right: 0; + left: auto; + } + .navbar-expand-xl .navbar-nav .nav-link { + padding-right: .5rem; + padding-left: .5rem; + } + .navbar-expand-xl > .container, + .navbar-expand-xl > .container-fluid { + -ms-flex-wrap: nowrap; + flex-wrap: nowrap; + } + .navbar-expand-xl .navbar-collapse { + display: -ms-flexbox !important; + display: flex !important; + } + .navbar-expand-xl .navbar-toggler { + display: none; + } +} + +.navbar-expand { + -ms-flex-direction: row; + flex-direction: row; + -ms-flex-wrap: nowrap; + flex-wrap: nowrap; + -ms-flex-pack: start; + justify-content: flex-start; +} + +.navbar-expand > .container, +.navbar-expand > .container-fluid { + padding-right: 0; + padding-left: 0; +} + +.navbar-expand .navbar-nav { + -ms-flex-direction: row; + flex-direction: row; +} + +.navbar-expand .navbar-nav .dropdown-menu { + position: absolute; +} + +.navbar-expand .navbar-nav .dropdown-menu-right { + right: 0; + left: auto; +} + +.navbar-expand .navbar-nav .nav-link { + padding-right: .5rem; + padding-left: .5rem; +} + +.navbar-expand > .container, +.navbar-expand > .container-fluid { + -ms-flex-wrap: nowrap; + flex-wrap: nowrap; +} + +.navbar-expand .navbar-collapse { + display: -ms-flexbox !important; + display: flex !important; +} + +.navbar-expand .navbar-toggler { + display: none; +} + +.navbar-light .navbar-brand { + color: rgba(0, 0, 0, 0.9); +} + +.navbar-light .navbar-brand:focus, .navbar-light .navbar-brand:hover { + color: rgba(0, 0, 0, 0.9); +} + +.navbar-light .navbar-nav .nav-link { + color: rgba(0, 0, 0, 0.5); +} + +.navbar-light .navbar-nav .nav-link:focus, .navbar-light .navbar-nav .nav-link:hover { + color: rgba(0, 0, 0, 0.7); +} + +.navbar-light .navbar-nav .nav-link.disabled { + color: rgba(0, 0, 0, 0.3); +} + +.navbar-light .navbar-nav .show > .nav-link, +.navbar-light .navbar-nav .active > .nav-link, +.navbar-light .navbar-nav .nav-link.show, +.navbar-light .navbar-nav .nav-link.active { + color: rgba(0, 0, 0, 0.9); +} + +.navbar-light .navbar-toggler { + color: rgba(0, 0, 0, 0.5); + border-color: rgba(0, 0, 0, 0.1); +} + +.navbar-light .navbar-toggler-icon { + background-image: url("data:image/svg+xml;charset=utf8,%3Csvg viewBox='0 0 30 30' xmlns='http://www.w3.org/2000/svg'%3E%3Cpath stroke='rgba(0, 0, 0, 0.5)' stroke-width='2' stroke-linecap='round' stroke-miterlimit='10' d='M4 7h22M4 15h22M4 23h22'/%3E%3C/svg%3E"); +} + +.navbar-light .navbar-text { + color: rgba(0, 0, 0, 0.5); +} + +.navbar-dark .navbar-brand { + color: white; +} + +.navbar-dark .navbar-brand:focus, .navbar-dark .navbar-brand:hover { + color: white; +} + +.navbar-dark .navbar-nav .nav-link { + color: rgba(255, 255, 255, 0.5); +} + +.navbar-dark .navbar-nav .nav-link:focus, .navbar-dark .navbar-nav .nav-link:hover { + color: rgba(255, 255, 255, 0.75); +} + +.navbar-dark .navbar-nav .nav-link.disabled { + color: rgba(255, 255, 255, 0.25); +} + +.navbar-dark .navbar-nav .show > .nav-link, +.navbar-dark .navbar-nav .active > .nav-link, +.navbar-dark .navbar-nav .nav-link.show, +.navbar-dark .navbar-nav .nav-link.active { + color: white; +} + +.navbar-dark .navbar-toggler { + color: rgba(255, 255, 255, 0.5); + border-color: rgba(255, 255, 255, 0.1); +} + +.navbar-dark .navbar-toggler-icon { + background-image: url("data:image/svg+xml;charset=utf8,%3Csvg viewBox='0 0 30 30' xmlns='http://www.w3.org/2000/svg'%3E%3Cpath stroke='rgba(255, 255, 255, 0.5)' stroke-width='2' stroke-linecap='round' stroke-miterlimit='10' d='M4 7h22M4 15h22M4 23h22'/%3E%3C/svg%3E"); +} + +.navbar-dark .navbar-text { + color: rgba(255, 255, 255, 0.5); +} + +.card { + position: relative; + display: -ms-flexbox; + display: flex; + -ms-flex-direction: column; + flex-direction: column; + min-width: 0; + word-wrap: break-word; + background-color: #fff; + background-clip: border-box; + border: 1px solid rgba(0, 0, 0, 0.125); + border-radius: 0.25rem; +} + +.card-body { + -ms-flex: 1 1 auto; + flex: 1 1 auto; + padding: 1.25rem; +} + +.card-title { + margin-bottom: 0.75rem; +} + +.card-subtitle { + margin-top: -0.375rem; + margin-bottom: 0; +} + +.card-text:last-child { + margin-bottom: 0; +} + +.card-link:hover { + text-decoration: none; +} + +.card-link + .card-link { + margin-left: 1.25rem; +} + +.card > .list-group:first-child .list-group-item:first-child { + border-top-left-radius: 0.25rem; + border-top-right-radius: 0.25rem; +} + +.card > .list-group:last-child .list-group-item:last-child { + border-bottom-right-radius: 0.25rem; + border-bottom-left-radius: 0.25rem; +} + +.card-header { + padding: 0.75rem 1.25rem; + margin-bottom: 0; + background-color: rgba(0, 0, 0, 0.03); + border-bottom: 1px solid rgba(0, 0, 0, 0.125); +} + +.card-header:first-child { + border-radius: calc(0.25rem - 1px) calc(0.25rem - 1px) 0 0; +} + +.card-footer { + padding: 0.75rem 1.25rem; + background-color: rgba(0, 0, 0, 0.03); + border-top: 1px solid rgba(0, 0, 0, 0.125); +} + +.card-footer:last-child { + border-radius: 0 0 calc(0.25rem - 1px) calc(0.25rem - 1px); +} + +.card-header-tabs { + margin-right: -0.625rem; + margin-bottom: -0.75rem; + margin-left: -0.625rem; + border-bottom: 0; +} + +.card-header-pills { + margin-right: -0.625rem; + margin-left: -0.625rem; +} + +.card-img-overlay { + position: absolute; + top: 0; + right: 0; + bottom: 0; + left: 0; + padding: 1.25rem; +} + +.card-img { + width: 100%; + border-radius: calc(0.25rem - 1px); +} + +.card-img-top { + width: 100%; + border-top-left-radius: calc(0.25rem - 1px); + border-top-right-radius: calc(0.25rem - 1px); +} + +.card-img-bottom { + width: 100%; + border-bottom-right-radius: calc(0.25rem - 1px); + border-bottom-left-radius: calc(0.25rem - 1px); +} + +@media (min-width: 576px) { + .card-deck { + display: -ms-flexbox; + display: flex; + -ms-flex-flow: row wrap; + flex-flow: row wrap; + margin-right: -15px; + margin-left: -15px; + } + .card-deck .card { + display: -ms-flexbox; + display: flex; + -ms-flex: 1 0 0%; + flex: 1 0 0%; + -ms-flex-direction: column; + flex-direction: column; + margin-right: 15px; + margin-left: 15px; + } +} + +@media (min-width: 576px) { + .card-group { + display: -ms-flexbox; + display: flex; + -ms-flex-flow: row wrap; + flex-flow: row wrap; + } + .card-group .card { + -ms-flex: 1 0 0%; + flex: 1 0 0%; + } + .card-group .card + .card { + margin-left: 0; + border-left: 0; + } + .card-group .card:first-child { + border-top-right-radius: 0; + border-bottom-right-radius: 0; + } + .card-group .card:first-child .card-img-top { + border-top-right-radius: 0; + } + .card-group .card:first-child .card-img-bottom { + border-bottom-right-radius: 0; + } + .card-group .card:last-child { + border-top-left-radius: 0; + border-bottom-left-radius: 0; + } + .card-group .card:last-child .card-img-top { + border-top-left-radius: 0; + } + .card-group .card:last-child .card-img-bottom { + border-bottom-left-radius: 0; + } + .card-group .card:not(:first-child):not(:last-child) { + border-radius: 0; + } + .card-group .card:not(:first-child):not(:last-child) .card-img-top, + .card-group .card:not(:first-child):not(:last-child) .card-img-bottom { + border-radius: 0; + } +} + +.card-columns .card { + margin-bottom: 0.75rem; +} + +@media (min-width: 576px) { + .card-columns { + -webkit-column-count: 3; + column-count: 3; + -webkit-column-gap: 1.25rem; + column-gap: 1.25rem; + } + .card-columns .card { + display: inline-block; + width: 100%; + } +} + +.breadcrumb { + padding: 0.75rem 1rem; + margin-bottom: 1rem; + list-style: none; + background-color: #e9ecef; + border-radius: 0.25rem; +} + +.breadcrumb::after { + display: block; + clear: both; + content: ""; +} + +.breadcrumb-item { + float: left; +} + +.breadcrumb-item + .breadcrumb-item::before { + display: inline-block; + padding-right: 0.5rem; + padding-left: 0.5rem; + color: #868e96; + content: "/"; +} + +.breadcrumb-item + .breadcrumb-item:hover::before { + text-decoration: underline; +} + +.breadcrumb-item + .breadcrumb-item:hover::before { + text-decoration: none; +} + +.breadcrumb-item.active { + color: #868e96; +} + +.pagination { + display: -ms-flexbox; + display: flex; + padding-left: 0; + list-style: none; + border-radius: 0.25rem; +} + +.page-item:first-child .page-link { + margin-left: 0; + border-top-left-radius: 0.25rem; + border-bottom-left-radius: 0.25rem; +} + +.page-item:last-child .page-link { + border-top-right-radius: 0.25rem; + border-bottom-right-radius: 0.25rem; +} + +.page-item.active .page-link { + z-index: 2; + color: #fff; + background-color: #007bff; + border-color: #007bff; +} + +.page-item.disabled .page-link { + color: #868e96; + pointer-events: none; + background-color: #fff; + border-color: #ddd; +} + +.page-link { + position: relative; + display: block; + padding: 0.5rem 0.75rem; + margin-left: -1px; + line-height: 1.25; + color: #007bff; + background-color: #fff; + border: 1px solid #ddd; +} + +.page-link:focus, .page-link:hover { + color: #0056b3; + text-decoration: none; + background-color: #e9ecef; + border-color: #ddd; +} + +.pagination-lg .page-link { + padding: 0.75rem 1.5rem; + font-size: 1.25rem; + line-height: 1.5; +} + +.pagination-lg .page-item:first-child .page-link { + border-top-left-radius: 0.3rem; + border-bottom-left-radius: 0.3rem; +} + +.pagination-lg .page-item:last-child .page-link { + border-top-right-radius: 0.3rem; + border-bottom-right-radius: 0.3rem; +} + +.pagination-sm .page-link { + padding: 0.25rem 0.5rem; + font-size: 0.875rem; + line-height: 1.5; +} + +.pagination-sm .page-item:first-child .page-link { + border-top-left-radius: 0.2rem; + border-bottom-left-radius: 0.2rem; +} + +.pagination-sm .page-item:last-child .page-link { + border-top-right-radius: 0.2rem; + border-bottom-right-radius: 0.2rem; +} + +.badge { + display: inline-block; + padding: 0.25em 0.4em; + font-size: 75%; + font-weight: bold; + line-height: 1; + color: #fff; + text-align: center; + white-space: nowrap; + vertical-align: baseline; + border-radius: 0.25rem; +} + +.badge:empty { + display: none; +} + +.btn .badge { + position: relative; + top: -1px; +} + +.badge-pill { + padding-right: 0.6em; + padding-left: 0.6em; + border-radius: 10rem; +} + +.badge-primary { + color: #fff; + background-color: #007bff; +} + +.badge-primary[href]:focus, .badge-primary[href]:hover { + color: #fff; + text-decoration: none; + background-color: #0062cc; +} + +.badge-secondary { + color: #fff; + background-color: #868e96; +} + +.badge-secondary[href]:focus, .badge-secondary[href]:hover { + color: #fff; + text-decoration: none; + background-color: #6c757d; +} + +.badge-success { + color: #fff; + background-color: #28a745; +} + +.badge-success[href]:focus, .badge-success[href]:hover { + color: #fff; + text-decoration: none; + background-color: #1e7e34; +} + +.badge-info { + color: #fff; + background-color: #17a2b8; +} + +.badge-info[href]:focus, .badge-info[href]:hover { + color: #fff; + text-decoration: none; + background-color: #117a8b; +} + +.badge-warning { + color: #111; + background-color: #ffc107; +} + +.badge-warning[href]:focus, .badge-warning[href]:hover { + color: #111; + text-decoration: none; + background-color: #d39e00; +} + +.badge-danger { + color: #fff; + background-color: #dc3545; +} + +.badge-danger[href]:focus, .badge-danger[href]:hover { + color: #fff; + text-decoration: none; + background-color: #bd2130; +} + +.badge-light { + color: #111; + background-color: #f8f9fa; +} + +.badge-light[href]:focus, .badge-light[href]:hover { + color: #111; + text-decoration: none; + background-color: #dae0e5; +} + +.badge-dark { + color: #fff; + background-color: #343a40; +} + +.badge-dark[href]:focus, .badge-dark[href]:hover { + color: #fff; + text-decoration: none; + background-color: #1d2124; +} + +.jumbotron { + padding: 2rem 1rem; + margin-bottom: 2rem; + background-color: #e9ecef; + border-radius: 0.3rem; +} + +@media (min-width: 576px) { + .jumbotron { + padding: 4rem 2rem; + } +} + +.jumbotron-fluid { + padding-right: 0; + padding-left: 0; + border-radius: 0; +} + +.alert { + padding: 0.75rem 1.25rem; + margin-bottom: 1rem; + border: 1px solid transparent; + border-radius: 0.25rem; +} + +.alert-heading { + color: inherit; +} + +.alert-link { + font-weight: bold; +} + +.alert-dismissible .close { + position: relative; + top: -0.75rem; + right: -1.25rem; + padding: 0.75rem 1.25rem; + color: inherit; +} + +.alert-primary { + color: #004085; + background-color: #cce5ff; + border-color: #b8daff; +} + +.alert-primary hr { + border-top-color: #9fcdff; +} + +.alert-primary .alert-link { + color: #002752; +} + +.alert-secondary { + color: #464a4e; + background-color: #e7e8ea; + border-color: #dddfe2; +} + +.alert-secondary hr { + border-top-color: #cfd2d6; +} + +.alert-secondary .alert-link { + color: #2e3133; +} + +.alert-success { + color: #155724; + background-color: #d4edda; + border-color: #c3e6cb; +} + +.alert-success hr { + border-top-color: #b1dfbb; +} + +.alert-success .alert-link { + color: #0b2e13; +} + +.alert-info { + color: #0c5460; + background-color: #d1ecf1; + border-color: #bee5eb; +} + +.alert-info hr { + border-top-color: #abdde5; +} + +.alert-info .alert-link { + color: #062c33; +} + +.alert-warning { + color: #856404; + background-color: #fff3cd; + border-color: #ffeeba; +} + +.alert-warning hr { + border-top-color: #ffe8a1; +} + +.alert-warning .alert-link { + color: #533f03; +} + +.alert-danger { + color: #721c24; + background-color: #f8d7da; + border-color: #f5c6cb; +} + +.alert-danger hr { + border-top-color: #f1b0b7; +} + +.alert-danger .alert-link { + color: #491217; +} + +.alert-light { + color: #818182; + background-color: #fefefe; + border-color: #fdfdfe; +} + +.alert-light hr { + border-top-color: #ececf6; +} + +.alert-light .alert-link { + color: #686868; +} + +.alert-dark { + color: #1b1e21; + background-color: #d6d8d9; + border-color: #c6c8ca; +} + +.alert-dark hr { + border-top-color: #b9bbbe; +} + +.alert-dark .alert-link { + color: #040505; +} + +@-webkit-keyframes progress-bar-stripes { + from { + background-position: 1rem 0; + } + to { + background-position: 0 0; + } +} + +@keyframes progress-bar-stripes { + from { + background-position: 1rem 0; + } + to { + background-position: 0 0; + } +} + +.progress { + display: -ms-flexbox; + display: flex; + overflow: hidden; + font-size: 0.75rem; + line-height: 1rem; + text-align: center; + background-color: #e9ecef; + border-radius: 0.25rem; +} + +.progress-bar { + height: 1rem; + line-height: 1rem; + color: #fff; + background-color: #007bff; + transition: width 0.6s ease; +} + +.progress-bar-striped { + background-image: linear-gradient(45deg, rgba(255, 255, 255, 0.15) 25%, transparent 25%, transparent 50%, rgba(255, 255, 255, 0.15) 50%, rgba(255, 255, 255, 0.15) 75%, transparent 75%, transparent); + background-size: 1rem 1rem; +} + +.progress-bar-animated { + -webkit-animation: progress-bar-stripes 1s linear infinite; + animation: progress-bar-stripes 1s linear infinite; +} + +.media { + display: -ms-flexbox; + display: flex; + -ms-flex-align: start; + align-items: flex-start; +} + +.media-body { + -ms-flex: 1; + flex: 1; +} + +.list-group { + display: -ms-flexbox; + display: flex; + -ms-flex-direction: column; + flex-direction: column; + padding-left: 0; + margin-bottom: 0; +} + +.list-group-item-action { + width: 100%; + color: #495057; + text-align: inherit; +} + +.list-group-item-action:focus, .list-group-item-action:hover { + color: #495057; + text-decoration: none; + background-color: #f8f9fa; +} + +.list-group-item-action:active { + color: #212529; + background-color: #e9ecef; +} + +.list-group-item { + position: relative; + display: block; + padding: 0.75rem 1.25rem; + margin-bottom: -1px; + background-color: #fff; + border: 1px solid rgba(0, 0, 0, 0.125); +} + +.list-group-item:first-child { + border-top-left-radius: 0.25rem; + border-top-right-radius: 0.25rem; +} + +.list-group-item:last-child { + margin-bottom: 0; + border-bottom-right-radius: 0.25rem; + border-bottom-left-radius: 0.25rem; +} + +.list-group-item:focus, .list-group-item:hover { + text-decoration: none; +} + +.list-group-item.disabled, .list-group-item:disabled { + color: #868e96; + background-color: #fff; +} + +.list-group-item.active { + z-index: 2; + color: #fff; + background-color: #007bff; + border-color: #007bff; +} + +.list-group-flush .list-group-item { + border-right: 0; + border-left: 0; + border-radius: 0; +} + +.list-group-flush:first-child .list-group-item:first-child { + border-top: 0; +} + +.list-group-flush:last-child .list-group-item:last-child { + border-bottom: 0; +} + +.list-group-item-primary { + color: #004085; + background-color: #b8daff; +} + +a.list-group-item-primary, +button.list-group-item-primary { + color: #004085; +} + +a.list-group-item-primary:focus, a.list-group-item-primary:hover, +button.list-group-item-primary:focus, +button.list-group-item-primary:hover { + color: #004085; + background-color: #9fcdff; +} + +a.list-group-item-primary.active, +button.list-group-item-primary.active { + color: #fff; + background-color: #004085; + border-color: #004085; +} + +.list-group-item-secondary { + color: #464a4e; + background-color: #dddfe2; +} + +a.list-group-item-secondary, +button.list-group-item-secondary { + color: #464a4e; +} + +a.list-group-item-secondary:focus, a.list-group-item-secondary:hover, +button.list-group-item-secondary:focus, +button.list-group-item-secondary:hover { + color: #464a4e; + background-color: #cfd2d6; +} + +a.list-group-item-secondary.active, +button.list-group-item-secondary.active { + color: #fff; + background-color: #464a4e; + border-color: #464a4e; +} + +.list-group-item-success { + color: #155724; + background-color: #c3e6cb; +} + +a.list-group-item-success, +button.list-group-item-success { + color: #155724; +} + +a.list-group-item-success:focus, a.list-group-item-success:hover, +button.list-group-item-success:focus, +button.list-group-item-success:hover { + color: #155724; + background-color: #b1dfbb; +} + +a.list-group-item-success.active, +button.list-group-item-success.active { + color: #fff; + background-color: #155724; + border-color: #155724; +} + +.list-group-item-info { + color: #0c5460; + background-color: #bee5eb; +} + +a.list-group-item-info, +button.list-group-item-info { + color: #0c5460; +} + +a.list-group-item-info:focus, a.list-group-item-info:hover, +button.list-group-item-info:focus, +button.list-group-item-info:hover { + color: #0c5460; + background-color: #abdde5; +} + +a.list-group-item-info.active, +button.list-group-item-info.active { + color: #fff; + background-color: #0c5460; + border-color: #0c5460; +} + +.list-group-item-warning { + color: #856404; + background-color: #ffeeba; +} + +a.list-group-item-warning, +button.list-group-item-warning { + color: #856404; +} + +a.list-group-item-warning:focus, a.list-group-item-warning:hover, +button.list-group-item-warning:focus, +button.list-group-item-warning:hover { + color: #856404; + background-color: #ffe8a1; +} + +a.list-group-item-warning.active, +button.list-group-item-warning.active { + color: #fff; + background-color: #856404; + border-color: #856404; +} + +.list-group-item-danger { + color: #721c24; + background-color: #f5c6cb; +} + +a.list-group-item-danger, +button.list-group-item-danger { + color: #721c24; +} + +a.list-group-item-danger:focus, a.list-group-item-danger:hover, +button.list-group-item-danger:focus, +button.list-group-item-danger:hover { + color: #721c24; + background-color: #f1b0b7; +} + +a.list-group-item-danger.active, +button.list-group-item-danger.active { + color: #fff; + background-color: #721c24; + border-color: #721c24; +} + +.list-group-item-light { + color: #818182; + background-color: #fdfdfe; +} + +a.list-group-item-light, +button.list-group-item-light { + color: #818182; +} + +a.list-group-item-light:focus, a.list-group-item-light:hover, +button.list-group-item-light:focus, +button.list-group-item-light:hover { + color: #818182; + background-color: #ececf6; +} + +a.list-group-item-light.active, +button.list-group-item-light.active { + color: #fff; + background-color: #818182; + border-color: #818182; +} + +.list-group-item-dark { + color: #1b1e21; + background-color: #c6c8ca; +} + +a.list-group-item-dark, +button.list-group-item-dark { + color: #1b1e21; +} + +a.list-group-item-dark:focus, a.list-group-item-dark:hover, +button.list-group-item-dark:focus, +button.list-group-item-dark:hover { + color: #1b1e21; + background-color: #b9bbbe; +} + +a.list-group-item-dark.active, +button.list-group-item-dark.active { + color: #fff; + background-color: #1b1e21; + border-color: #1b1e21; +} + +.close { + float: right; + font-size: 1.5rem; + font-weight: bold; + line-height: 1; + color: #000; + text-shadow: 0 1px 0 #fff; + opacity: .5; +} + +.close:focus, .close:hover { + color: #000; + text-decoration: none; + opacity: .75; +} + +button.close { + padding: 0; + background: transparent; + border: 0; + -webkit-appearance: none; +} + +.modal-open { + overflow: hidden; +} + +.modal { + position: fixed; + top: 0; + right: 0; + bottom: 0; + left: 0; + z-index: 1050; + display: none; + overflow: hidden; + outline: 0; +} + +.modal.fade .modal-dialog { + transition: -webkit-transform 0.3s ease-out; + transition: transform 0.3s ease-out; + transition: transform 0.3s ease-out, -webkit-transform 0.3s ease-out; + -webkit-transform: translate(0, -25%); + transform: translate(0, -25%); +} + +.modal.show .modal-dialog { + -webkit-transform: translate(0, 0); + transform: translate(0, 0); +} + +.modal-open .modal { + overflow-x: hidden; + overflow-y: auto; +} + +.modal-dialog { + position: relative; + width: auto; + margin: 10px; +} + +.modal-content { + position: relative; + display: -ms-flexbox; + display: flex; + -ms-flex-direction: column; + flex-direction: column; + background-color: #fff; + background-clip: padding-box; + border: 1px solid rgba(0, 0, 0, 0.2); + border-radius: 0.3rem; + outline: 0; +} + +.modal-backdrop { + position: fixed; + top: 0; + right: 0; + bottom: 0; + left: 0; + z-index: 1040; + background-color: #000; +} + +.modal-backdrop.fade { + opacity: 0; +} + +.modal-backdrop.show { + opacity: 0.5; +} + +.modal-header { + display: -ms-flexbox; + display: flex; + -ms-flex-align: center; + align-items: center; + -ms-flex-pack: justify; + justify-content: space-between; + padding: 15px; + border-bottom: 1px solid #e9ecef; +} + +.modal-title { + margin-bottom: 0; + line-height: 1.5; +} + +.modal-body { + position: relative; + -ms-flex: 1 1 auto; + flex: 1 1 auto; + padding: 15px; +} + +.modal-footer { + display: -ms-flexbox; + display: flex; + -ms-flex-align: center; + align-items: center; + -ms-flex-pack: end; + justify-content: flex-end; + padding: 15px; + border-top: 1px solid #e9ecef; +} + +.modal-footer > :not(:first-child) { + margin-left: .25rem; +} + +.modal-footer > :not(:last-child) { + margin-right: .25rem; +} + +.modal-scrollbar-measure { + position: absolute; + top: -9999px; + width: 50px; + height: 50px; + overflow: scroll; +} + +@media (min-width: 576px) { + .modal-dialog { + max-width: 500px; + margin: 30px auto; + } + .modal-sm { + max-width: 300px; + } +} + +@media (min-width: 992px) { + .modal-lg { + max-width: 800px; + } +} + +.tooltip { + position: absolute; + z-index: 1070; + display: block; + margin: 0; + font-family: -apple-system, BlinkMacSystemFont, "Segoe UI", Roboto, "Helvetica Neue", Arial, sans-serif; + font-style: normal; + font-weight: normal; + line-height: 1.5; + text-align: left; + text-align: start; + text-decoration: none; + text-shadow: none; + text-transform: none; + letter-spacing: normal; + word-break: normal; + word-spacing: normal; + white-space: normal; + line-break: auto; + font-size: 0.875rem; + word-wrap: break-word; + opacity: 0; +} + +.tooltip.show { + opacity: 0.9; +} + +.tooltip .arrow { + position: absolute; + display: block; + width: 5px; + height: 5px; +} + +.tooltip.bs-tooltip-top, .tooltip.bs-tooltip-auto[x-placement^="top"] { + padding: 5px 0; +} + +.tooltip.bs-tooltip-top .arrow, .tooltip.bs-tooltip-auto[x-placement^="top"] .arrow { + bottom: 0; +} + +.tooltip.bs-tooltip-top .arrow::before, .tooltip.bs-tooltip-auto[x-placement^="top"] .arrow::before { + margin-left: -3px; + content: ""; + border-width: 5px 5px 0; + border-top-color: #000; +} + +.tooltip.bs-tooltip-right, .tooltip.bs-tooltip-auto[x-placement^="right"] { + padding: 0 5px; +} + +.tooltip.bs-tooltip-right .arrow, .tooltip.bs-tooltip-auto[x-placement^="right"] .arrow { + left: 0; +} + +.tooltip.bs-tooltip-right .arrow::before, .tooltip.bs-tooltip-auto[x-placement^="right"] .arrow::before { + margin-top: -3px; + content: ""; + border-width: 5px 5px 5px 0; + border-right-color: #000; +} + +.tooltip.bs-tooltip-bottom, .tooltip.bs-tooltip-auto[x-placement^="bottom"] { + padding: 5px 0; +} + +.tooltip.bs-tooltip-bottom .arrow, .tooltip.bs-tooltip-auto[x-placement^="bottom"] .arrow { + top: 0; +} + +.tooltip.bs-tooltip-bottom .arrow::before, .tooltip.bs-tooltip-auto[x-placement^="bottom"] .arrow::before { + margin-left: -3px; + content: ""; + border-width: 0 5px 5px; + border-bottom-color: #000; +} + +.tooltip.bs-tooltip-left, .tooltip.bs-tooltip-auto[x-placement^="left"] { + padding: 0 5px; +} + +.tooltip.bs-tooltip-left .arrow, .tooltip.bs-tooltip-auto[x-placement^="left"] .arrow { + right: 0; +} + +.tooltip.bs-tooltip-left .arrow::before, .tooltip.bs-tooltip-auto[x-placement^="left"] .arrow::before { + right: 0; + margin-top: -3px; + content: ""; + border-width: 5px 0 5px 5px; + border-left-color: #000; +} + +.tooltip .arrow::before { + position: absolute; + border-color: transparent; + border-style: solid; +} + +.tooltip-inner { + max-width: 200px; + padding: 3px 8px; + color: #fff; + text-align: center; + background-color: #000; + border-radius: 0.25rem; +} + +.popover { + position: absolute; + top: 0; + left: 0; + z-index: 1060; + display: block; + max-width: 276px; + padding: 1px; + font-family: -apple-system, BlinkMacSystemFont, "Segoe UI", Roboto, "Helvetica Neue", Arial, sans-serif; + font-style: normal; + font-weight: normal; + line-height: 1.5; + text-align: left; + text-align: start; + text-decoration: none; + text-shadow: none; + text-transform: none; + letter-spacing: normal; + word-break: normal; + word-spacing: normal; + white-space: normal; + line-break: auto; + font-size: 0.875rem; + word-wrap: break-word; + background-color: #fff; + background-clip: padding-box; + border: 1px solid rgba(0, 0, 0, 0.2); + border-radius: 0.3rem; +} + +.popover .arrow { + position: absolute; + display: block; + width: 10px; + height: 5px; +} + +.popover .arrow::before, +.popover .arrow::after { + position: absolute; + display: block; + border-color: transparent; + border-style: solid; +} + +.popover .arrow::before { + content: ""; + border-width: 11px; +} + +.popover .arrow::after { + content: ""; + border-width: 11px; +} + +.popover.bs-popover-top, .popover.bs-popover-auto[x-placement^="top"] { + margin-bottom: 10px; +} + +.popover.bs-popover-top .arrow, .popover.bs-popover-auto[x-placement^="top"] .arrow { + bottom: 0; +} + +.popover.bs-popover-top .arrow::before, .popover.bs-popover-auto[x-placement^="top"] .arrow::before, +.popover.bs-popover-top .arrow::after, .popover.bs-popover-auto[x-placement^="top"] .arrow::after { + border-bottom-width: 0; +} + +.popover.bs-popover-top .arrow::before, .popover.bs-popover-auto[x-placement^="top"] .arrow::before { + bottom: -11px; + margin-left: -6px; + border-top-color: rgba(0, 0, 0, 0.25); +} + +.popover.bs-popover-top .arrow::after, .popover.bs-popover-auto[x-placement^="top"] .arrow::after { + bottom: -10px; + margin-left: -6px; + border-top-color: #fff; +} + +.popover.bs-popover-right, .popover.bs-popover-auto[x-placement^="right"] { + margin-left: 10px; +} + +.popover.bs-popover-right .arrow, .popover.bs-popover-auto[x-placement^="right"] .arrow { + left: 0; +} + +.popover.bs-popover-right .arrow::before, .popover.bs-popover-auto[x-placement^="right"] .arrow::before, +.popover.bs-popover-right .arrow::after, .popover.bs-popover-auto[x-placement^="right"] .arrow::after { + margin-top: -8px; + border-left-width: 0; +} + +.popover.bs-popover-right .arrow::before, .popover.bs-popover-auto[x-placement^="right"] .arrow::before { + left: -11px; + border-right-color: rgba(0, 0, 0, 0.25); +} + +.popover.bs-popover-right .arrow::after, .popover.bs-popover-auto[x-placement^="right"] .arrow::after { + left: -10px; + border-right-color: #fff; +} + +.popover.bs-popover-bottom, .popover.bs-popover-auto[x-placement^="bottom"] { + margin-top: 10px; +} + +.popover.bs-popover-bottom .arrow, .popover.bs-popover-auto[x-placement^="bottom"] .arrow { + top: 0; +} + +.popover.bs-popover-bottom .arrow::before, .popover.bs-popover-auto[x-placement^="bottom"] .arrow::before, +.popover.bs-popover-bottom .arrow::after, .popover.bs-popover-auto[x-placement^="bottom"] .arrow::after { + margin-left: -7px; + border-top-width: 0; +} + +.popover.bs-popover-bottom .arrow::before, .popover.bs-popover-auto[x-placement^="bottom"] .arrow::before { + top: -11px; + border-bottom-color: rgba(0, 0, 0, 0.25); +} + +.popover.bs-popover-bottom .arrow::after, .popover.bs-popover-auto[x-placement^="bottom"] .arrow::after { + top: -10px; + border-bottom-color: #fff; +} + +.popover.bs-popover-bottom .popover-header::before, .popover.bs-popover-auto[x-placement^="bottom"] .popover-header::before { + position: absolute; + top: 0; + left: 50%; + display: block; + width: 20px; + margin-left: -10px; + content: ""; + border-bottom: 1px solid #f7f7f7; +} + +.popover.bs-popover-left, .popover.bs-popover-auto[x-placement^="left"] { + margin-right: 10px; +} + +.popover.bs-popover-left .arrow, .popover.bs-popover-auto[x-placement^="left"] .arrow { + right: 0; +} + +.popover.bs-popover-left .arrow::before, .popover.bs-popover-auto[x-placement^="left"] .arrow::before, +.popover.bs-popover-left .arrow::after, .popover.bs-popover-auto[x-placement^="left"] .arrow::after { + margin-top: -8px; + border-right-width: 0; +} + +.popover.bs-popover-left .arrow::before, .popover.bs-popover-auto[x-placement^="left"] .arrow::before { + right: -11px; + border-left-color: rgba(0, 0, 0, 0.25); +} + +.popover.bs-popover-left .arrow::after, .popover.bs-popover-auto[x-placement^="left"] .arrow::after { + right: -10px; + border-left-color: #fff; +} + +.popover-header { + padding: 8px 14px; + margin-bottom: 0; + font-size: 1rem; + color: inherit; + background-color: #f7f7f7; + border-bottom: 1px solid #ebebeb; + border-top-left-radius: calc(0.3rem - 1px); + border-top-right-radius: calc(0.3rem - 1px); +} + +.popover-header:empty { + display: none; +} + +.popover-body { + padding: 9px 14px; + color: #212529; +} + +.carousel { + position: relative; +} + +.carousel-inner { + position: relative; + width: 100%; + overflow: hidden; +} + +.carousel-item { + position: relative; + display: none; + -ms-flex-align: center; + align-items: center; + width: 100%; + transition: -webkit-transform 0.6s ease; + transition: transform 0.6s ease; + transition: transform 0.6s ease, -webkit-transform 0.6s ease; + -webkit-backface-visibility: hidden; + backface-visibility: hidden; + -webkit-perspective: 1000px; + perspective: 1000px; +} + +.carousel-item.active, +.carousel-item-next, +.carousel-item-prev { + display: block; +} + +.carousel-item-next, +.carousel-item-prev { + position: absolute; + top: 0; +} + +.carousel-item-next.carousel-item-left, +.carousel-item-prev.carousel-item-right { + -webkit-transform: translateX(0); + transform: translateX(0); +} + +@supports ((-webkit-transform-style: preserve-3d) or (transform-style: preserve-3d)) { + .carousel-item-next.carousel-item-left, + .carousel-item-prev.carousel-item-right { + -webkit-transform: translate3d(0, 0, 0); + transform: translate3d(0, 0, 0); + } +} + +.carousel-item-next, +.active.carousel-item-right { + -webkit-transform: translateX(100%); + transform: translateX(100%); +} + +@supports ((-webkit-transform-style: preserve-3d) or (transform-style: preserve-3d)) { + .carousel-item-next, + .active.carousel-item-right { + -webkit-transform: translate3d(100%, 0, 0); + transform: translate3d(100%, 0, 0); + } +} + +.carousel-item-prev, +.active.carousel-item-left { + -webkit-transform: translateX(-100%); + transform: translateX(-100%); +} + +@supports ((-webkit-transform-style: preserve-3d) or (transform-style: preserve-3d)) { + .carousel-item-prev, + .active.carousel-item-left { + -webkit-transform: translate3d(-100%, 0, 0); + transform: translate3d(-100%, 0, 0); + } +} + +.carousel-control-prev, +.carousel-control-next { + position: absolute; + top: 0; + bottom: 0; + display: -ms-flexbox; + display: flex; + -ms-flex-align: center; + align-items: center; + -ms-flex-pack: center; + justify-content: center; + width: 15%; + color: #fff; + text-align: center; + opacity: 0.5; +} + +.carousel-control-prev:focus, .carousel-control-prev:hover, +.carousel-control-next:focus, +.carousel-control-next:hover { + color: #fff; + text-decoration: none; + outline: 0; + opacity: .9; +} + +.carousel-control-prev { + left: 0; +} + +.carousel-control-next { + right: 0; +} + +.carousel-control-prev-icon, +.carousel-control-next-icon { + display: inline-block; + width: 20px; + height: 20px; + background: transparent no-repeat center center; + background-size: 100% 100%; +} + +.carousel-control-prev-icon { + background-image: url("data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' fill='%23fff' viewBox='0 0 8 8'%3E%3Cpath d='M4 0l-4 4 4 4 1.5-1.5-2.5-2.5 2.5-2.5-1.5-1.5z'/%3E%3C/svg%3E"); +} + +.carousel-control-next-icon { + background-image: url("data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' fill='%23fff' viewBox='0 0 8 8'%3E%3Cpath d='M1.5 0l-1.5 1.5 2.5 2.5-2.5 2.5 1.5 1.5 4-4-4-4z'/%3E%3C/svg%3E"); +} + +.carousel-indicators { + position: absolute; + right: 0; + bottom: 10px; + left: 0; + z-index: 15; + display: -ms-flexbox; + display: flex; + -ms-flex-pack: center; + justify-content: center; + padding-left: 0; + margin-right: 15%; + margin-left: 15%; + list-style: none; +} + +.carousel-indicators li { + position: relative; + -ms-flex: 0 1 auto; + flex: 0 1 auto; + width: 30px; + height: 3px; + margin-right: 3px; + margin-left: 3px; + text-indent: -999px; + background-color: rgba(255, 255, 255, 0.5); +} + +.carousel-indicators li::before { + position: absolute; + top: -10px; + left: 0; + display: inline-block; + width: 100%; + height: 10px; + content: ""; +} + +.carousel-indicators li::after { + position: absolute; + bottom: -10px; + left: 0; + display: inline-block; + width: 100%; + height: 10px; + content: ""; +} + +.carousel-indicators .active { + background-color: #fff; +} + +.carousel-caption { + position: absolute; + right: 15%; + bottom: 20px; + left: 15%; + z-index: 10; + padding-top: 20px; + padding-bottom: 20px; + color: #fff; + text-align: center; +} + +.align-baseline { + vertical-align: baseline !important; +} + +.align-top { + vertical-align: top !important; +} + +.align-middle { + vertical-align: middle !important; +} + +.align-bottom { + vertical-align: bottom !important; +} + +.align-text-bottom { + vertical-align: text-bottom !important; +} + +.align-text-top { + vertical-align: text-top !important; +} + +.bg-primary { + background-color: #007bff !important; +} + +a.bg-primary:focus, a.bg-primary:hover { + background-color: #0062cc !important; +} + +.bg-secondary { + background-color: #868e96 !important; +} + +a.bg-secondary:focus, a.bg-secondary:hover { + background-color: #6c757d !important; +} + +.bg-success { + background-color: #28a745 !important; +} + +a.bg-success:focus, a.bg-success:hover { + background-color: #1e7e34 !important; +} + +.bg-info { + background-color: #17a2b8 !important; +} + +a.bg-info:focus, a.bg-info:hover { + background-color: #117a8b !important; +} + +.bg-warning { + background-color: #ffc107 !important; +} + +a.bg-warning:focus, a.bg-warning:hover { + background-color: #d39e00 !important; +} + +.bg-danger { + background-color: #dc3545 !important; +} + +a.bg-danger:focus, a.bg-danger:hover { + background-color: #bd2130 !important; +} + +.bg-light { + background-color: #f8f9fa !important; +} + +a.bg-light:focus, a.bg-light:hover { + background-color: #dae0e5 !important; +} + +.bg-dark { + background-color: #343a40 !important; +} + +a.bg-dark:focus, a.bg-dark:hover { + background-color: #1d2124 !important; +} + +.bg-white { + background-color: #fff !important; +} + +.bg-transparent { + background-color: transparent !important; +} + +.border { + border: 1px solid #e9ecef !important; +} + +.border-0 { + border: 0 !important; +} + +.border-top-0 { + border-top: 0 !important; +} + +.border-right-0 { + border-right: 0 !important; +} + +.border-bottom-0 { + border-bottom: 0 !important; +} + +.border-left-0 { + border-left: 0 !important; +} + +.border-primary { + border-color: #007bff !important; +} + +.border-secondary { + border-color: #868e96 !important; +} + +.border-success { + border-color: #28a745 !important; +} + +.border-info { + border-color: #17a2b8 !important; +} + +.border-warning { + border-color: #ffc107 !important; +} + +.border-danger { + border-color: #dc3545 !important; +} + +.border-light { + border-color: #f8f9fa !important; +} + +.border-dark { + border-color: #343a40 !important; +} + +.border-white { + border-color: #fff !important; +} + +.rounded { + border-radius: 0.25rem !important; +} + +.rounded-top { + border-top-left-radius: 0.25rem !important; + border-top-right-radius: 0.25rem !important; +} + +.rounded-right { + border-top-right-radius: 0.25rem !important; + border-bottom-right-radius: 0.25rem !important; +} + +.rounded-bottom { + border-bottom-right-radius: 0.25rem !important; + border-bottom-left-radius: 0.25rem !important; +} + +.rounded-left { + border-top-left-radius: 0.25rem !important; + border-bottom-left-radius: 0.25rem !important; +} + +.rounded-circle { + border-radius: 50%; +} + +.rounded-0 { + border-radius: 0; +} + +.clearfix::after { + display: block; + clear: both; + content: ""; +} + +.d-none { + display: none !important; +} + +.d-inline { + display: inline !important; +} + +.d-inline-block { + display: inline-block !important; +} + +.d-block { + display: block !important; +} + +.d-table { + display: table !important; +} + +.d-table-cell { + display: table-cell !important; +} + +.d-flex { + display: -ms-flexbox !important; + display: flex !important; +} + +.d-inline-flex { + display: -ms-inline-flexbox !important; + display: inline-flex !important; +} + +@media (min-width: 576px) { + .d-sm-none { + display: none !important; + } + .d-sm-inline { + display: inline !important; + } + .d-sm-inline-block { + display: inline-block !important; + } + .d-sm-block { + display: block !important; + } + .d-sm-table { + display: table !important; + } + .d-sm-table-cell { + display: table-cell !important; + } + .d-sm-flex { + display: -ms-flexbox !important; + display: flex !important; + } + .d-sm-inline-flex { + display: -ms-inline-flexbox !important; + display: inline-flex !important; + } +} + +@media (min-width: 768px) { + .d-md-none { + display: none !important; + } + .d-md-inline { + display: inline !important; + } + .d-md-inline-block { + display: inline-block !important; + } + .d-md-block { + display: block !important; + } + .d-md-table { + display: table !important; + } + .d-md-table-cell { + display: table-cell !important; + } + .d-md-flex { + display: -ms-flexbox !important; + display: flex !important; + } + .d-md-inline-flex { + display: -ms-inline-flexbox !important; + display: inline-flex !important; + } +} + +@media (min-width: 992px) { + .d-lg-none { + display: none !important; + } + .d-lg-inline { + display: inline !important; + } + .d-lg-inline-block { + display: inline-block !important; + } + .d-lg-block { + display: block !important; + } + .d-lg-table { + display: table !important; + } + .d-lg-table-cell { + display: table-cell !important; + } + .d-lg-flex { + display: -ms-flexbox !important; + display: flex !important; + } + .d-lg-inline-flex { + display: -ms-inline-flexbox !important; + display: inline-flex !important; + } +} + +@media (min-width: 1200px) { + .d-xl-none { + display: none !important; + } + .d-xl-inline { + display: inline !important; + } + .d-xl-inline-block { + display: inline-block !important; + } + .d-xl-block { + display: block !important; + } + .d-xl-table { + display: table !important; + } + .d-xl-table-cell { + display: table-cell !important; + } + .d-xl-flex { + display: -ms-flexbox !important; + display: flex !important; + } + .d-xl-inline-flex { + display: -ms-inline-flexbox !important; + display: inline-flex !important; + } +} + +.d-print-block { + display: none !important; +} + +@media print { + .d-print-block { + display: block !important; + } +} + +.d-print-inline { + display: none !important; +} + +@media print { + .d-print-inline { + display: inline !important; + } +} + +.d-print-inline-block { + display: none !important; +} + +@media print { + .d-print-inline-block { + display: inline-block !important; + } +} + +@media print { + .d-print-none { + display: none !important; + } +} + +.embed-responsive { + position: relative; + display: block; + width: 100%; + padding: 0; + overflow: hidden; +} + +.embed-responsive::before { + display: block; + content: ""; +} + +.embed-responsive .embed-responsive-item, +.embed-responsive iframe, +.embed-responsive embed, +.embed-responsive object, +.embed-responsive video { + position: absolute; + top: 0; + bottom: 0; + left: 0; + width: 100%; + height: 100%; + border: 0; +} + +.embed-responsive-21by9::before { + padding-top: 42.857143%; +} + +.embed-responsive-16by9::before { + padding-top: 56.25%; +} + +.embed-responsive-4by3::before { + padding-top: 75%; +} + +.embed-responsive-1by1::before { + padding-top: 100%; +} + +.flex-row { + -ms-flex-direction: row !important; + flex-direction: row !important; +} + +.flex-column { + -ms-flex-direction: column !important; + flex-direction: column !important; +} + +.flex-row-reverse { + -ms-flex-direction: row-reverse !important; + flex-direction: row-reverse !important; +} + +.flex-column-reverse { + -ms-flex-direction: column-reverse !important; + flex-direction: column-reverse !important; +} + +.flex-wrap { + -ms-flex-wrap: wrap !important; + flex-wrap: wrap !important; +} + +.flex-nowrap { + -ms-flex-wrap: nowrap !important; + flex-wrap: nowrap !important; +} + +.flex-wrap-reverse { + -ms-flex-wrap: wrap-reverse !important; + flex-wrap: wrap-reverse !important; +} + +.justify-content-start { + -ms-flex-pack: start !important; + justify-content: flex-start !important; +} + +.justify-content-end { + -ms-flex-pack: end !important; + justify-content: flex-end !important; +} + +.justify-content-center { + -ms-flex-pack: center !important; + justify-content: center !important; +} + +.justify-content-between { + -ms-flex-pack: justify !important; + justify-content: space-between !important; +} + +.justify-content-around { + -ms-flex-pack: distribute !important; + justify-content: space-around !important; +} + +.align-items-start { + -ms-flex-align: start !important; + align-items: flex-start !important; +} + +.align-items-end { + -ms-flex-align: end !important; + align-items: flex-end !important; +} + +.align-items-center { + -ms-flex-align: center !important; + align-items: center !important; +} + +.align-items-baseline { + -ms-flex-align: baseline !important; + align-items: baseline !important; +} + +.align-items-stretch { + -ms-flex-align: stretch !important; + align-items: stretch !important; +} + +.align-content-start { + -ms-flex-line-pack: start !important; + align-content: flex-start !important; +} + +.align-content-end { + -ms-flex-line-pack: end !important; + align-content: flex-end !important; +} + +.align-content-center { + -ms-flex-line-pack: center !important; + align-content: center !important; +} + +.align-content-between { + -ms-flex-line-pack: justify !important; + align-content: space-between !important; +} + +.align-content-around { + -ms-flex-line-pack: distribute !important; + align-content: space-around !important; +} + +.align-content-stretch { + -ms-flex-line-pack: stretch !important; + align-content: stretch !important; +} + +.align-self-auto { + -ms-flex-item-align: auto !important; + align-self: auto !important; +} + +.align-self-start { + -ms-flex-item-align: start !important; + align-self: flex-start !important; +} + +.align-self-end { + -ms-flex-item-align: end !important; + align-self: flex-end !important; +} + +.align-self-center { + -ms-flex-item-align: center !important; + align-self: center !important; +} + +.align-self-baseline { + -ms-flex-item-align: baseline !important; + align-self: baseline !important; +} + +.align-self-stretch { + -ms-flex-item-align: stretch !important; + align-self: stretch !important; +} + +@media (min-width: 576px) { + .flex-sm-row { + -ms-flex-direction: row !important; + flex-direction: row !important; + } + .flex-sm-column { + -ms-flex-direction: column !important; + flex-direction: column !important; + } + .flex-sm-row-reverse { + -ms-flex-direction: row-reverse !important; + flex-direction: row-reverse !important; + } + .flex-sm-column-reverse { + -ms-flex-direction: column-reverse !important; + flex-direction: column-reverse !important; + } + .flex-sm-wrap { + -ms-flex-wrap: wrap !important; + flex-wrap: wrap !important; + } + .flex-sm-nowrap { + -ms-flex-wrap: nowrap !important; + flex-wrap: nowrap !important; + } + .flex-sm-wrap-reverse { + -ms-flex-wrap: wrap-reverse !important; + flex-wrap: wrap-reverse !important; + } + .justify-content-sm-start { + -ms-flex-pack: start !important; + justify-content: flex-start !important; + } + .justify-content-sm-end { + -ms-flex-pack: end !important; + justify-content: flex-end !important; + } + .justify-content-sm-center { + -ms-flex-pack: center !important; + justify-content: center !important; + } + .justify-content-sm-between { + -ms-flex-pack: justify !important; + justify-content: space-between !important; + } + .justify-content-sm-around { + -ms-flex-pack: distribute !important; + justify-content: space-around !important; + } + .align-items-sm-start { + -ms-flex-align: start !important; + align-items: flex-start !important; + } + .align-items-sm-end { + -ms-flex-align: end !important; + align-items: flex-end !important; + } + .align-items-sm-center { + -ms-flex-align: center !important; + align-items: center !important; + } + .align-items-sm-baseline { + -ms-flex-align: baseline !important; + align-items: baseline !important; + } + .align-items-sm-stretch { + -ms-flex-align: stretch !important; + align-items: stretch !important; + } + .align-content-sm-start { + -ms-flex-line-pack: start !important; + align-content: flex-start !important; + } + .align-content-sm-end { + -ms-flex-line-pack: end !important; + align-content: flex-end !important; + } + .align-content-sm-center { + -ms-flex-line-pack: center !important; + align-content: center !important; + } + .align-content-sm-between { + -ms-flex-line-pack: justify !important; + align-content: space-between !important; + } + .align-content-sm-around { + -ms-flex-line-pack: distribute !important; + align-content: space-around !important; + } + .align-content-sm-stretch { + -ms-flex-line-pack: stretch !important; + align-content: stretch !important; + } + .align-self-sm-auto { + -ms-flex-item-align: auto !important; + align-self: auto !important; + } + .align-self-sm-start { + -ms-flex-item-align: start !important; + align-self: flex-start !important; + } + .align-self-sm-end { + -ms-flex-item-align: end !important; + align-self: flex-end !important; + } + .align-self-sm-center { + -ms-flex-item-align: center !important; + align-self: center !important; + } + .align-self-sm-baseline { + -ms-flex-item-align: baseline !important; + align-self: baseline !important; + } + .align-self-sm-stretch { + -ms-flex-item-align: stretch !important; + align-self: stretch !important; + } +} + +@media (min-width: 768px) { + .flex-md-row { + -ms-flex-direction: row !important; + flex-direction: row !important; + } + .flex-md-column { + -ms-flex-direction: column !important; + flex-direction: column !important; + } + .flex-md-row-reverse { + -ms-flex-direction: row-reverse !important; + flex-direction: row-reverse !important; + } + .flex-md-column-reverse { + -ms-flex-direction: column-reverse !important; + flex-direction: column-reverse !important; + } + .flex-md-wrap { + -ms-flex-wrap: wrap !important; + flex-wrap: wrap !important; + } + .flex-md-nowrap { + -ms-flex-wrap: nowrap !important; + flex-wrap: nowrap !important; + } + .flex-md-wrap-reverse { + -ms-flex-wrap: wrap-reverse !important; + flex-wrap: wrap-reverse !important; + } + .justify-content-md-start { + -ms-flex-pack: start !important; + justify-content: flex-start !important; + } + .justify-content-md-end { + -ms-flex-pack: end !important; + justify-content: flex-end !important; + } + .justify-content-md-center { + -ms-flex-pack: center !important; + justify-content: center !important; + } + .justify-content-md-between { + -ms-flex-pack: justify !important; + justify-content: space-between !important; + } + .justify-content-md-around { + -ms-flex-pack: distribute !important; + justify-content: space-around !important; + } + .align-items-md-start { + -ms-flex-align: start !important; + align-items: flex-start !important; + } + .align-items-md-end { + -ms-flex-align: end !important; + align-items: flex-end !important; + } + .align-items-md-center { + -ms-flex-align: center !important; + align-items: center !important; + } + .align-items-md-baseline { + -ms-flex-align: baseline !important; + align-items: baseline !important; + } + .align-items-md-stretch { + -ms-flex-align: stretch !important; + align-items: stretch !important; + } + .align-content-md-start { + -ms-flex-line-pack: start !important; + align-content: flex-start !important; + } + .align-content-md-end { + -ms-flex-line-pack: end !important; + align-content: flex-end !important; + } + .align-content-md-center { + -ms-flex-line-pack: center !important; + align-content: center !important; + } + .align-content-md-between { + -ms-flex-line-pack: justify !important; + align-content: space-between !important; + } + .align-content-md-around { + -ms-flex-line-pack: distribute !important; + align-content: space-around !important; + } + .align-content-md-stretch { + -ms-flex-line-pack: stretch !important; + align-content: stretch !important; + } + .align-self-md-auto { + -ms-flex-item-align: auto !important; + align-self: auto !important; + } + .align-self-md-start { + -ms-flex-item-align: start !important; + align-self: flex-start !important; + } + .align-self-md-end { + -ms-flex-item-align: end !important; + align-self: flex-end !important; + } + .align-self-md-center { + -ms-flex-item-align: center !important; + align-self: center !important; + } + .align-self-md-baseline { + -ms-flex-item-align: baseline !important; + align-self: baseline !important; + } + .align-self-md-stretch { + -ms-flex-item-align: stretch !important; + align-self: stretch !important; + } +} + +@media (min-width: 992px) { + .flex-lg-row { + -ms-flex-direction: row !important; + flex-direction: row !important; + } + .flex-lg-column { + -ms-flex-direction: column !important; + flex-direction: column !important; + } + .flex-lg-row-reverse { + -ms-flex-direction: row-reverse !important; + flex-direction: row-reverse !important; + } + .flex-lg-column-reverse { + -ms-flex-direction: column-reverse !important; + flex-direction: column-reverse !important; + } + .flex-lg-wrap { + -ms-flex-wrap: wrap !important; + flex-wrap: wrap !important; + } + .flex-lg-nowrap { + -ms-flex-wrap: nowrap !important; + flex-wrap: nowrap !important; + } + .flex-lg-wrap-reverse { + -ms-flex-wrap: wrap-reverse !important; + flex-wrap: wrap-reverse !important; + } + .justify-content-lg-start { + -ms-flex-pack: start !important; + justify-content: flex-start !important; + } + .justify-content-lg-end { + -ms-flex-pack: end !important; + justify-content: flex-end !important; + } + .justify-content-lg-center { + -ms-flex-pack: center !important; + justify-content: center !important; + } + .justify-content-lg-between { + -ms-flex-pack: justify !important; + justify-content: space-between !important; + } + .justify-content-lg-around { + -ms-flex-pack: distribute !important; + justify-content: space-around !important; + } + .align-items-lg-start { + -ms-flex-align: start !important; + align-items: flex-start !important; + } + .align-items-lg-end { + -ms-flex-align: end !important; + align-items: flex-end !important; + } + .align-items-lg-center { + -ms-flex-align: center !important; + align-items: center !important; + } + .align-items-lg-baseline { + -ms-flex-align: baseline !important; + align-items: baseline !important; + } + .align-items-lg-stretch { + -ms-flex-align: stretch !important; + align-items: stretch !important; + } + .align-content-lg-start { + -ms-flex-line-pack: start !important; + align-content: flex-start !important; + } + .align-content-lg-end { + -ms-flex-line-pack: end !important; + align-content: flex-end !important; + } + .align-content-lg-center { + -ms-flex-line-pack: center !important; + align-content: center !important; + } + .align-content-lg-between { + -ms-flex-line-pack: justify !important; + align-content: space-between !important; + } + .align-content-lg-around { + -ms-flex-line-pack: distribute !important; + align-content: space-around !important; + } + .align-content-lg-stretch { + -ms-flex-line-pack: stretch !important; + align-content: stretch !important; + } + .align-self-lg-auto { + -ms-flex-item-align: auto !important; + align-self: auto !important; + } + .align-self-lg-start { + -ms-flex-item-align: start !important; + align-self: flex-start !important; + } + .align-self-lg-end { + -ms-flex-item-align: end !important; + align-self: flex-end !important; + } + .align-self-lg-center { + -ms-flex-item-align: center !important; + align-self: center !important; + } + .align-self-lg-baseline { + -ms-flex-item-align: baseline !important; + align-self: baseline !important; + } + .align-self-lg-stretch { + -ms-flex-item-align: stretch !important; + align-self: stretch !important; + } +} + +@media (min-width: 1200px) { + .flex-xl-row { + -ms-flex-direction: row !important; + flex-direction: row !important; + } + .flex-xl-column { + -ms-flex-direction: column !important; + flex-direction: column !important; + } + .flex-xl-row-reverse { + -ms-flex-direction: row-reverse !important; + flex-direction: row-reverse !important; + } + .flex-xl-column-reverse { + -ms-flex-direction: column-reverse !important; + flex-direction: column-reverse !important; + } + .flex-xl-wrap { + -ms-flex-wrap: wrap !important; + flex-wrap: wrap !important; + } + .flex-xl-nowrap { + -ms-flex-wrap: nowrap !important; + flex-wrap: nowrap !important; + } + .flex-xl-wrap-reverse { + -ms-flex-wrap: wrap-reverse !important; + flex-wrap: wrap-reverse !important; + } + .justify-content-xl-start { + -ms-flex-pack: start !important; + justify-content: flex-start !important; + } + .justify-content-xl-end { + -ms-flex-pack: end !important; + justify-content: flex-end !important; + } + .justify-content-xl-center { + -ms-flex-pack: center !important; + justify-content: center !important; + } + .justify-content-xl-between { + -ms-flex-pack: justify !important; + justify-content: space-between !important; + } + .justify-content-xl-around { + -ms-flex-pack: distribute !important; + justify-content: space-around !important; + } + .align-items-xl-start { + -ms-flex-align: start !important; + align-items: flex-start !important; + } + .align-items-xl-end { + -ms-flex-align: end !important; + align-items: flex-end !important; + } + .align-items-xl-center { + -ms-flex-align: center !important; + align-items: center !important; + } + .align-items-xl-baseline { + -ms-flex-align: baseline !important; + align-items: baseline !important; + } + .align-items-xl-stretch { + -ms-flex-align: stretch !important; + align-items: stretch !important; + } + .align-content-xl-start { + -ms-flex-line-pack: start !important; + align-content: flex-start !important; + } + .align-content-xl-end { + -ms-flex-line-pack: end !important; + align-content: flex-end !important; + } + .align-content-xl-center { + -ms-flex-line-pack: center !important; + align-content: center !important; + } + .align-content-xl-between { + -ms-flex-line-pack: justify !important; + align-content: space-between !important; + } + .align-content-xl-around { + -ms-flex-line-pack: distribute !important; + align-content: space-around !important; + } + .align-content-xl-stretch { + -ms-flex-line-pack: stretch !important; + align-content: stretch !important; + } + .align-self-xl-auto { + -ms-flex-item-align: auto !important; + align-self: auto !important; + } + .align-self-xl-start { + -ms-flex-item-align: start !important; + align-self: flex-start !important; + } + .align-self-xl-end { + -ms-flex-item-align: end !important; + align-self: flex-end !important; + } + .align-self-xl-center { + -ms-flex-item-align: center !important; + align-self: center !important; + } + .align-self-xl-baseline { + -ms-flex-item-align: baseline !important; + align-self: baseline !important; + } + .align-self-xl-stretch { + -ms-flex-item-align: stretch !important; + align-self: stretch !important; + } +} + +.float-left { + float: left !important; +} + +.float-right { + float: right !important; +} + +.float-none { + float: none !important; +} + +@media (min-width: 576px) { + .float-sm-left { + float: left !important; + } + .float-sm-right { + float: right !important; + } + .float-sm-none { + float: none !important; + } +} + +@media (min-width: 768px) { + .float-md-left { + float: left !important; + } + .float-md-right { + float: right !important; + } + .float-md-none { + float: none !important; + } +} + +@media (min-width: 992px) { + .float-lg-left { + float: left !important; + } + .float-lg-right { + float: right !important; + } + .float-lg-none { + float: none !important; + } +} + +@media (min-width: 1200px) { + .float-xl-left { + float: left !important; + } + .float-xl-right { + float: right !important; + } + .float-xl-none { + float: none !important; + } +} + +.fixed-top { + position: fixed; + top: 0; + right: 0; + left: 0; + z-index: 1030; +} + +.fixed-bottom { + position: fixed; + right: 0; + bottom: 0; + left: 0; + z-index: 1030; +} + +@supports ((position: -webkit-sticky) or (position: sticky)) { + .sticky-top { + position: -webkit-sticky; + position: sticky; + top: 0; + z-index: 1020; + } +} + +.sr-only { + position: absolute; + width: 1px; + height: 1px; + padding: 0; + overflow: hidden; + clip: rect(0, 0, 0, 0); + white-space: nowrap; + -webkit-clip-path: inset(50%); + clip-path: inset(50%); + border: 0; +} + +.sr-only-focusable:active, .sr-only-focusable:focus { + position: static; + width: auto; + height: auto; + overflow: visible; + clip: auto; + white-space: normal; + -webkit-clip-path: none; + clip-path: none; +} + +.w-25 { + width: 25% !important; +} + +.w-50 { + width: 50% !important; +} + +.w-75 { + width: 75% !important; +} + +.w-100 { + width: 100% !important; +} + +.h-25 { + height: 25% !important; +} + +.h-50 { + height: 50% !important; +} + +.h-75 { + height: 75% !important; +} + +.h-100 { + height: 100% !important; +} + +.mw-100 { + max-width: 100% !important; +} + +.mh-100 { + max-height: 100% !important; +} + +.m-0 { + margin: 0 !important; +} + +.mt-0 { + margin-top: 0 !important; +} + +.mr-0 { + margin-right: 0 !important; +} + +.mb-0 { + margin-bottom: 0 !important; +} + +.ml-0 { + margin-left: 0 !important; +} + +.mx-0 { + margin-right: 0 !important; + margin-left: 0 !important; +} + +.my-0 { + margin-top: 0 !important; + margin-bottom: 0 !important; +} + +.m-1 { + margin: 0.25rem !important; +} + +.mt-1 { + margin-top: 0.25rem !important; +} + +.mr-1 { + margin-right: 0.25rem !important; +} + +.mb-1 { + margin-bottom: 0.25rem !important; +} + +.ml-1 { + margin-left: 0.25rem !important; +} + +.mx-1 { + margin-right: 0.25rem !important; + margin-left: 0.25rem !important; +} + +.my-1 { + margin-top: 0.25rem !important; + margin-bottom: 0.25rem !important; +} + +.m-2 { + margin: 0.5rem !important; +} + +.mt-2 { + margin-top: 0.5rem !important; +} + +.mr-2 { + margin-right: 0.5rem !important; +} + +.mb-2 { + margin-bottom: 0.5rem !important; +} + +.ml-2 { + margin-left: 0.5rem !important; +} + +.mx-2 { + margin-right: 0.5rem !important; + margin-left: 0.5rem !important; +} + +.my-2 { + margin-top: 0.5rem !important; + margin-bottom: 0.5rem !important; +} + +.m-3 { + margin: 1rem !important; +} + +.mt-3 { + margin-top: 1rem !important; +} + +.mr-3 { + margin-right: 1rem !important; +} + +.mb-3 { + margin-bottom: 1rem !important; +} + +.ml-3 { + margin-left: 1rem !important; +} + +.mx-3 { + margin-right: 1rem !important; + margin-left: 1rem !important; +} + +.my-3 { + margin-top: 1rem !important; + margin-bottom: 1rem !important; +} + +.m-4 { + margin: 1.5rem !important; +} + +.mt-4 { + margin-top: 1.5rem !important; +} + +.mr-4 { + margin-right: 1.5rem !important; +} + +.mb-4 { + margin-bottom: 1.5rem !important; +} + +.ml-4 { + margin-left: 1.5rem !important; +} + +.mx-4 { + margin-right: 1.5rem !important; + margin-left: 1.5rem !important; +} + +.my-4 { + margin-top: 1.5rem !important; + margin-bottom: 1.5rem !important; +} + +.m-5 { + margin: 3rem !important; +} + +.mt-5 { + margin-top: 3rem !important; +} + +.mr-5 { + margin-right: 3rem !important; +} + +.mb-5 { + margin-bottom: 3rem !important; +} + +.ml-5 { + margin-left: 3rem !important; +} + +.mx-5 { + margin-right: 3rem !important; + margin-left: 3rem !important; +} + +.my-5 { + margin-top: 3rem !important; + margin-bottom: 3rem !important; +} + +.p-0 { + padding: 0 !important; +} + +.pt-0 { + padding-top: 0 !important; +} + +.pr-0 { + padding-right: 0 !important; +} + +.pb-0 { + padding-bottom: 0 !important; +} + +.pl-0 { + padding-left: 0 !important; +} + +.px-0 { + padding-right: 0 !important; + padding-left: 0 !important; +} + +.py-0 { + padding-top: 0 !important; + padding-bottom: 0 !important; +} + +.p-1 { + padding: 0.25rem !important; +} + +.pt-1 { + padding-top: 0.25rem !important; +} + +.pr-1 { + padding-right: 0.25rem !important; +} + +.pb-1 { + padding-bottom: 0.25rem !important; +} + +.pl-1 { + padding-left: 0.25rem !important; +} + +.px-1 { + padding-right: 0.25rem !important; + padding-left: 0.25rem !important; +} + +.py-1 { + padding-top: 0.25rem !important; + padding-bottom: 0.25rem !important; +} + +.p-2 { + padding: 0.5rem !important; +} + +.pt-2 { + padding-top: 0.5rem !important; +} + +.pr-2 { + padding-right: 0.5rem !important; +} + +.pb-2 { + padding-bottom: 0.5rem !important; +} + +.pl-2 { + padding-left: 0.5rem !important; +} + +.px-2 { + padding-right: 0.5rem !important; + padding-left: 0.5rem !important; +} + +.py-2 { + padding-top: 0.5rem !important; + padding-bottom: 0.5rem !important; +} + +.p-3 { + padding: 1rem !important; +} + +.pt-3 { + padding-top: 1rem !important; +} + +.pr-3 { + padding-right: 1rem !important; +} + +.pb-3 { + padding-bottom: 1rem !important; +} + +.pl-3 { + padding-left: 1rem !important; +} + +.px-3 { + padding-right: 1rem !important; + padding-left: 1rem !important; +} + +.py-3 { + padding-top: 1rem !important; + padding-bottom: 1rem !important; +} + +.p-4 { + padding: 1.5rem !important; +} + +.pt-4 { + padding-top: 1.5rem !important; +} + +.pr-4 { + padding-right: 1.5rem !important; +} + +.pb-4 { + padding-bottom: 1.5rem !important; +} + +.pl-4 { + padding-left: 1.5rem !important; +} + +.px-4 { + padding-right: 1.5rem !important; + padding-left: 1.5rem !important; +} + +.py-4 { + padding-top: 1.5rem !important; + padding-bottom: 1.5rem !important; +} + +.p-5 { + padding: 3rem !important; +} + +.pt-5 { + padding-top: 3rem !important; +} + +.pr-5 { + padding-right: 3rem !important; +} + +.pb-5 { + padding-bottom: 3rem !important; +} + +.pl-5 { + padding-left: 3rem !important; +} + +.px-5 { + padding-right: 3rem !important; + padding-left: 3rem !important; +} + +.py-5 { + padding-top: 3rem !important; + padding-bottom: 3rem !important; +} + +.m-auto { + margin: auto !important; +} + +.mt-auto { + margin-top: auto !important; +} + +.mr-auto { + margin-right: auto !important; +} + +.mb-auto { + margin-bottom: auto !important; +} + +.ml-auto { + margin-left: auto !important; +} + +.mx-auto { + margin-right: auto !important; + margin-left: auto !important; +} + +.my-auto { + margin-top: auto !important; + margin-bottom: auto !important; +} + +@media (min-width: 576px) { + .m-sm-0 { + margin: 0 !important; + } + .mt-sm-0 { + margin-top: 0 !important; + } + .mr-sm-0 { + margin-right: 0 !important; + } + .mb-sm-0 { + margin-bottom: 0 !important; + } + .ml-sm-0 { + margin-left: 0 !important; + } + .mx-sm-0 { + margin-right: 0 !important; + margin-left: 0 !important; + } + .my-sm-0 { + margin-top: 0 !important; + margin-bottom: 0 !important; + } + .m-sm-1 { + margin: 0.25rem !important; + } + .mt-sm-1 { + margin-top: 0.25rem !important; + } + .mr-sm-1 { + margin-right: 0.25rem !important; + } + .mb-sm-1 { + margin-bottom: 0.25rem !important; + } + .ml-sm-1 { + margin-left: 0.25rem !important; + } + .mx-sm-1 { + margin-right: 0.25rem !important; + margin-left: 0.25rem !important; + } + .my-sm-1 { + margin-top: 0.25rem !important; + margin-bottom: 0.25rem !important; + } + .m-sm-2 { + margin: 0.5rem !important; + } + .mt-sm-2 { + margin-top: 0.5rem !important; + } + .mr-sm-2 { + margin-right: 0.5rem !important; + } + .mb-sm-2 { + margin-bottom: 0.5rem !important; + } + .ml-sm-2 { + margin-left: 0.5rem !important; + } + .mx-sm-2 { + margin-right: 0.5rem !important; + margin-left: 0.5rem !important; + } + .my-sm-2 { + margin-top: 0.5rem !important; + margin-bottom: 0.5rem !important; + } + .m-sm-3 { + margin: 1rem !important; + } + .mt-sm-3 { + margin-top: 1rem !important; + } + .mr-sm-3 { + margin-right: 1rem !important; + } + .mb-sm-3 { + margin-bottom: 1rem !important; + } + .ml-sm-3 { + margin-left: 1rem !important; + } + .mx-sm-3 { + margin-right: 1rem !important; + margin-left: 1rem !important; + } + .my-sm-3 { + margin-top: 1rem !important; + margin-bottom: 1rem !important; + } + .m-sm-4 { + margin: 1.5rem !important; + } + .mt-sm-4 { + margin-top: 1.5rem !important; + } + .mr-sm-4 { + margin-right: 1.5rem !important; + } + .mb-sm-4 { + margin-bottom: 1.5rem !important; + } + .ml-sm-4 { + margin-left: 1.5rem !important; + } + .mx-sm-4 { + margin-right: 1.5rem !important; + margin-left: 1.5rem !important; + } + .my-sm-4 { + margin-top: 1.5rem !important; + margin-bottom: 1.5rem !important; + } + .m-sm-5 { + margin: 3rem !important; + } + .mt-sm-5 { + margin-top: 3rem !important; + } + .mr-sm-5 { + margin-right: 3rem !important; + } + .mb-sm-5 { + margin-bottom: 3rem !important; + } + .ml-sm-5 { + margin-left: 3rem !important; + } + .mx-sm-5 { + margin-right: 3rem !important; + margin-left: 3rem !important; + } + .my-sm-5 { + margin-top: 3rem !important; + margin-bottom: 3rem !important; + } + .p-sm-0 { + padding: 0 !important; + } + .pt-sm-0 { + padding-top: 0 !important; + } + .pr-sm-0 { + padding-right: 0 !important; + } + .pb-sm-0 { + padding-bottom: 0 !important; + } + .pl-sm-0 { + padding-left: 0 !important; + } + .px-sm-0 { + padding-right: 0 !important; + padding-left: 0 !important; + } + .py-sm-0 { + padding-top: 0 !important; + padding-bottom: 0 !important; + } + .p-sm-1 { + padding: 0.25rem !important; + } + .pt-sm-1 { + padding-top: 0.25rem !important; + } + .pr-sm-1 { + padding-right: 0.25rem !important; + } + .pb-sm-1 { + padding-bottom: 0.25rem !important; + } + .pl-sm-1 { + padding-left: 0.25rem !important; + } + .px-sm-1 { + padding-right: 0.25rem !important; + padding-left: 0.25rem !important; + } + .py-sm-1 { + padding-top: 0.25rem !important; + padding-bottom: 0.25rem !important; + } + .p-sm-2 { + padding: 0.5rem !important; + } + .pt-sm-2 { + padding-top: 0.5rem !important; + } + .pr-sm-2 { + padding-right: 0.5rem !important; + } + .pb-sm-2 { + padding-bottom: 0.5rem !important; + } + .pl-sm-2 { + padding-left: 0.5rem !important; + } + .px-sm-2 { + padding-right: 0.5rem !important; + padding-left: 0.5rem !important; + } + .py-sm-2 { + padding-top: 0.5rem !important; + padding-bottom: 0.5rem !important; + } + .p-sm-3 { + padding: 1rem !important; + } + .pt-sm-3 { + padding-top: 1rem !important; + } + .pr-sm-3 { + padding-right: 1rem !important; + } + .pb-sm-3 { + padding-bottom: 1rem !important; + } + .pl-sm-3 { + padding-left: 1rem !important; + } + .px-sm-3 { + padding-right: 1rem !important; + padding-left: 1rem !important; + } + .py-sm-3 { + padding-top: 1rem !important; + padding-bottom: 1rem !important; + } + .p-sm-4 { + padding: 1.5rem !important; + } + .pt-sm-4 { + padding-top: 1.5rem !important; + } + .pr-sm-4 { + padding-right: 1.5rem !important; + } + .pb-sm-4 { + padding-bottom: 1.5rem !important; + } + .pl-sm-4 { + padding-left: 1.5rem !important; + } + .px-sm-4 { + padding-right: 1.5rem !important; + padding-left: 1.5rem !important; + } + .py-sm-4 { + padding-top: 1.5rem !important; + padding-bottom: 1.5rem !important; + } + .p-sm-5 { + padding: 3rem !important; + } + .pt-sm-5 { + padding-top: 3rem !important; + } + .pr-sm-5 { + padding-right: 3rem !important; + } + .pb-sm-5 { + padding-bottom: 3rem !important; + } + .pl-sm-5 { + padding-left: 3rem !important; + } + .px-sm-5 { + padding-right: 3rem !important; + padding-left: 3rem !important; + } + .py-sm-5 { + padding-top: 3rem !important; + padding-bottom: 3rem !important; + } + .m-sm-auto { + margin: auto !important; + } + .mt-sm-auto { + margin-top: auto !important; + } + .mr-sm-auto { + margin-right: auto !important; + } + .mb-sm-auto { + margin-bottom: auto !important; + } + .ml-sm-auto { + margin-left: auto !important; + } + .mx-sm-auto { + margin-right: auto !important; + margin-left: auto !important; + } + .my-sm-auto { + margin-top: auto !important; + margin-bottom: auto !important; + } +} + +@media (min-width: 768px) { + .m-md-0 { + margin: 0 !important; + } + .mt-md-0 { + margin-top: 0 !important; + } + .mr-md-0 { + margin-right: 0 !important; + } + .mb-md-0 { + margin-bottom: 0 !important; + } + .ml-md-0 { + margin-left: 0 !important; + } + .mx-md-0 { + margin-right: 0 !important; + margin-left: 0 !important; + } + .my-md-0 { + margin-top: 0 !important; + margin-bottom: 0 !important; + } + .m-md-1 { + margin: 0.25rem !important; + } + .mt-md-1 { + margin-top: 0.25rem !important; + } + .mr-md-1 { + margin-right: 0.25rem !important; + } + .mb-md-1 { + margin-bottom: 0.25rem !important; + } + .ml-md-1 { + margin-left: 0.25rem !important; + } + .mx-md-1 { + margin-right: 0.25rem !important; + margin-left: 0.25rem !important; + } + .my-md-1 { + margin-top: 0.25rem !important; + margin-bottom: 0.25rem !important; + } + .m-md-2 { + margin: 0.5rem !important; + } + .mt-md-2 { + margin-top: 0.5rem !important; + } + .mr-md-2 { + margin-right: 0.5rem !important; + } + .mb-md-2 { + margin-bottom: 0.5rem !important; + } + .ml-md-2 { + margin-left: 0.5rem !important; + } + .mx-md-2 { + margin-right: 0.5rem !important; + margin-left: 0.5rem !important; + } + .my-md-2 { + margin-top: 0.5rem !important; + margin-bottom: 0.5rem !important; + } + .m-md-3 { + margin: 1rem !important; + } + .mt-md-3 { + margin-top: 1rem !important; + } + .mr-md-3 { + margin-right: 1rem !important; + } + .mb-md-3 { + margin-bottom: 1rem !important; + } + .ml-md-3 { + margin-left: 1rem !important; + } + .mx-md-3 { + margin-right: 1rem !important; + margin-left: 1rem !important; + } + .my-md-3 { + margin-top: 1rem !important; + margin-bottom: 1rem !important; + } + .m-md-4 { + margin: 1.5rem !important; + } + .mt-md-4 { + margin-top: 1.5rem !important; + } + .mr-md-4 { + margin-right: 1.5rem !important; + } + .mb-md-4 { + margin-bottom: 1.5rem !important; + } + .ml-md-4 { + margin-left: 1.5rem !important; + } + .mx-md-4 { + margin-right: 1.5rem !important; + margin-left: 1.5rem !important; + } + .my-md-4 { + margin-top: 1.5rem !important; + margin-bottom: 1.5rem !important; + } + .m-md-5 { + margin: 3rem !important; + } + .mt-md-5 { + margin-top: 3rem !important; + } + .mr-md-5 { + margin-right: 3rem !important; + } + .mb-md-5 { + margin-bottom: 3rem !important; + } + .ml-md-5 { + margin-left: 3rem !important; + } + .mx-md-5 { + margin-right: 3rem !important; + margin-left: 3rem !important; + } + .my-md-5 { + margin-top: 3rem !important; + margin-bottom: 3rem !important; + } + .p-md-0 { + padding: 0 !important; + } + .pt-md-0 { + padding-top: 0 !important; + } + .pr-md-0 { + padding-right: 0 !important; + } + .pb-md-0 { + padding-bottom: 0 !important; + } + .pl-md-0 { + padding-left: 0 !important; + } + .px-md-0 { + padding-right: 0 !important; + padding-left: 0 !important; + } + .py-md-0 { + padding-top: 0 !important; + padding-bottom: 0 !important; + } + .p-md-1 { + padding: 0.25rem !important; + } + .pt-md-1 { + padding-top: 0.25rem !important; + } + .pr-md-1 { + padding-right: 0.25rem !important; + } + .pb-md-1 { + padding-bottom: 0.25rem !important; + } + .pl-md-1 { + padding-left: 0.25rem !important; + } + .px-md-1 { + padding-right: 0.25rem !important; + padding-left: 0.25rem !important; + } + .py-md-1 { + padding-top: 0.25rem !important; + padding-bottom: 0.25rem !important; + } + .p-md-2 { + padding: 0.5rem !important; + } + .pt-md-2 { + padding-top: 0.5rem !important; + } + .pr-md-2 { + padding-right: 0.5rem !important; + } + .pb-md-2 { + padding-bottom: 0.5rem !important; + } + .pl-md-2 { + padding-left: 0.5rem !important; + } + .px-md-2 { + padding-right: 0.5rem !important; + padding-left: 0.5rem !important; + } + .py-md-2 { + padding-top: 0.5rem !important; + padding-bottom: 0.5rem !important; + } + .p-md-3 { + padding: 1rem !important; + } + .pt-md-3 { + padding-top: 1rem !important; + } + .pr-md-3 { + padding-right: 1rem !important; + } + .pb-md-3 { + padding-bottom: 1rem !important; + } + .pl-md-3 { + padding-left: 1rem !important; + } + .px-md-3 { + padding-right: 1rem !important; + padding-left: 1rem !important; + } + .py-md-3 { + padding-top: 1rem !important; + padding-bottom: 1rem !important; + } + .p-md-4 { + padding: 1.5rem !important; + } + .pt-md-4 { + padding-top: 1.5rem !important; + } + .pr-md-4 { + padding-right: 1.5rem !important; + } + .pb-md-4 { + padding-bottom: 1.5rem !important; + } + .pl-md-4 { + padding-left: 1.5rem !important; + } + .px-md-4 { + padding-right: 1.5rem !important; + padding-left: 1.5rem !important; + } + .py-md-4 { + padding-top: 1.5rem !important; + padding-bottom: 1.5rem !important; + } + .p-md-5 { + padding: 3rem !important; + } + .pt-md-5 { + padding-top: 3rem !important; + } + .pr-md-5 { + padding-right: 3rem !important; + } + .pb-md-5 { + padding-bottom: 3rem !important; + } + .pl-md-5 { + padding-left: 3rem !important; + } + .px-md-5 { + padding-right: 3rem !important; + padding-left: 3rem !important; + } + .py-md-5 { + padding-top: 3rem !important; + padding-bottom: 3rem !important; + } + .m-md-auto { + margin: auto !important; + } + .mt-md-auto { + margin-top: auto !important; + } + .mr-md-auto { + margin-right: auto !important; + } + .mb-md-auto { + margin-bottom: auto !important; + } + .ml-md-auto { + margin-left: auto !important; + } + .mx-md-auto { + margin-right: auto !important; + margin-left: auto !important; + } + .my-md-auto { + margin-top: auto !important; + margin-bottom: auto !important; + } +} + +@media (min-width: 992px) { + .m-lg-0 { + margin: 0 !important; + } + .mt-lg-0 { + margin-top: 0 !important; + } + .mr-lg-0 { + margin-right: 0 !important; + } + .mb-lg-0 { + margin-bottom: 0 !important; + } + .ml-lg-0 { + margin-left: 0 !important; + } + .mx-lg-0 { + margin-right: 0 !important; + margin-left: 0 !important; + } + .my-lg-0 { + margin-top: 0 !important; + margin-bottom: 0 !important; + } + .m-lg-1 { + margin: 0.25rem !important; + } + .mt-lg-1 { + margin-top: 0.25rem !important; + } + .mr-lg-1 { + margin-right: 0.25rem !important; + } + .mb-lg-1 { + margin-bottom: 0.25rem !important; + } + .ml-lg-1 { + margin-left: 0.25rem !important; + } + .mx-lg-1 { + margin-right: 0.25rem !important; + margin-left: 0.25rem !important; + } + .my-lg-1 { + margin-top: 0.25rem !important; + margin-bottom: 0.25rem !important; + } + .m-lg-2 { + margin: 0.5rem !important; + } + .mt-lg-2 { + margin-top: 0.5rem !important; + } + .mr-lg-2 { + margin-right: 0.5rem !important; + } + .mb-lg-2 { + margin-bottom: 0.5rem !important; + } + .ml-lg-2 { + margin-left: 0.5rem !important; + } + .mx-lg-2 { + margin-right: 0.5rem !important; + margin-left: 0.5rem !important; + } + .my-lg-2 { + margin-top: 0.5rem !important; + margin-bottom: 0.5rem !important; + } + .m-lg-3 { + margin: 1rem !important; + } + .mt-lg-3 { + margin-top: 1rem !important; + } + .mr-lg-3 { + margin-right: 1rem !important; + } + .mb-lg-3 { + margin-bottom: 1rem !important; + } + .ml-lg-3 { + margin-left: 1rem !important; + } + .mx-lg-3 { + margin-right: 1rem !important; + margin-left: 1rem !important; + } + .my-lg-3 { + margin-top: 1rem !important; + margin-bottom: 1rem !important; + } + .m-lg-4 { + margin: 1.5rem !important; + } + .mt-lg-4 { + margin-top: 1.5rem !important; + } + .mr-lg-4 { + margin-right: 1.5rem !important; + } + .mb-lg-4 { + margin-bottom: 1.5rem !important; + } + .ml-lg-4 { + margin-left: 1.5rem !important; + } + .mx-lg-4 { + margin-right: 1.5rem !important; + margin-left: 1.5rem !important; + } + .my-lg-4 { + margin-top: 1.5rem !important; + margin-bottom: 1.5rem !important; + } + .m-lg-5 { + margin: 3rem !important; + } + .mt-lg-5 { + margin-top: 3rem !important; + } + .mr-lg-5 { + margin-right: 3rem !important; + } + .mb-lg-5 { + margin-bottom: 3rem !important; + } + .ml-lg-5 { + margin-left: 3rem !important; + } + .mx-lg-5 { + margin-right: 3rem !important; + margin-left: 3rem !important; + } + .my-lg-5 { + margin-top: 3rem !important; + margin-bottom: 3rem !important; + } + .p-lg-0 { + padding: 0 !important; + } + .pt-lg-0 { + padding-top: 0 !important; + } + .pr-lg-0 { + padding-right: 0 !important; + } + .pb-lg-0 { + padding-bottom: 0 !important; + } + .pl-lg-0 { + padding-left: 0 !important; + } + .px-lg-0 { + padding-right: 0 !important; + padding-left: 0 !important; + } + .py-lg-0 { + padding-top: 0 !important; + padding-bottom: 0 !important; + } + .p-lg-1 { + padding: 0.25rem !important; + } + .pt-lg-1 { + padding-top: 0.25rem !important; + } + .pr-lg-1 { + padding-right: 0.25rem !important; + } + .pb-lg-1 { + padding-bottom: 0.25rem !important; + } + .pl-lg-1 { + padding-left: 0.25rem !important; + } + .px-lg-1 { + padding-right: 0.25rem !important; + padding-left: 0.25rem !important; + } + .py-lg-1 { + padding-top: 0.25rem !important; + padding-bottom: 0.25rem !important; + } + .p-lg-2 { + padding: 0.5rem !important; + } + .pt-lg-2 { + padding-top: 0.5rem !important; + } + .pr-lg-2 { + padding-right: 0.5rem !important; + } + .pb-lg-2 { + padding-bottom: 0.5rem !important; + } + .pl-lg-2 { + padding-left: 0.5rem !important; + } + .px-lg-2 { + padding-right: 0.5rem !important; + padding-left: 0.5rem !important; + } + .py-lg-2 { + padding-top: 0.5rem !important; + padding-bottom: 0.5rem !important; + } + .p-lg-3 { + padding: 1rem !important; + } + .pt-lg-3 { + padding-top: 1rem !important; + } + .pr-lg-3 { + padding-right: 1rem !important; + } + .pb-lg-3 { + padding-bottom: 1rem !important; + } + .pl-lg-3 { + padding-left: 1rem !important; + } + .px-lg-3 { + padding-right: 1rem !important; + padding-left: 1rem !important; + } + .py-lg-3 { + padding-top: 1rem !important; + padding-bottom: 1rem !important; + } + .p-lg-4 { + padding: 1.5rem !important; + } + .pt-lg-4 { + padding-top: 1.5rem !important; + } + .pr-lg-4 { + padding-right: 1.5rem !important; + } + .pb-lg-4 { + padding-bottom: 1.5rem !important; + } + .pl-lg-4 { + padding-left: 1.5rem !important; + } + .px-lg-4 { + padding-right: 1.5rem !important; + padding-left: 1.5rem !important; + } + .py-lg-4 { + padding-top: 1.5rem !important; + padding-bottom: 1.5rem !important; + } + .p-lg-5 { + padding: 3rem !important; + } + .pt-lg-5 { + padding-top: 3rem !important; + } + .pr-lg-5 { + padding-right: 3rem !important; + } + .pb-lg-5 { + padding-bottom: 3rem !important; + } + .pl-lg-5 { + padding-left: 3rem !important; + } + .px-lg-5 { + padding-right: 3rem !important; + padding-left: 3rem !important; + } + .py-lg-5 { + padding-top: 3rem !important; + padding-bottom: 3rem !important; + } + .m-lg-auto { + margin: auto !important; + } + .mt-lg-auto { + margin-top: auto !important; + } + .mr-lg-auto { + margin-right: auto !important; + } + .mb-lg-auto { + margin-bottom: auto !important; + } + .ml-lg-auto { + margin-left: auto !important; + } + .mx-lg-auto { + margin-right: auto !important; + margin-left: auto !important; + } + .my-lg-auto { + margin-top: auto !important; + margin-bottom: auto !important; + } +} + +@media (min-width: 1200px) { + .m-xl-0 { + margin: 0 !important; + } + .mt-xl-0 { + margin-top: 0 !important; + } + .mr-xl-0 { + margin-right: 0 !important; + } + .mb-xl-0 { + margin-bottom: 0 !important; + } + .ml-xl-0 { + margin-left: 0 !important; + } + .mx-xl-0 { + margin-right: 0 !important; + margin-left: 0 !important; + } + .my-xl-0 { + margin-top: 0 !important; + margin-bottom: 0 !important; + } + .m-xl-1 { + margin: 0.25rem !important; + } + .mt-xl-1 { + margin-top: 0.25rem !important; + } + .mr-xl-1 { + margin-right: 0.25rem !important; + } + .mb-xl-1 { + margin-bottom: 0.25rem !important; + } + .ml-xl-1 { + margin-left: 0.25rem !important; + } + .mx-xl-1 { + margin-right: 0.25rem !important; + margin-left: 0.25rem !important; + } + .my-xl-1 { + margin-top: 0.25rem !important; + margin-bottom: 0.25rem !important; + } + .m-xl-2 { + margin: 0.5rem !important; + } + .mt-xl-2 { + margin-top: 0.5rem !important; + } + .mr-xl-2 { + margin-right: 0.5rem !important; + } + .mb-xl-2 { + margin-bottom: 0.5rem !important; + } + .ml-xl-2 { + margin-left: 0.5rem !important; + } + .mx-xl-2 { + margin-right: 0.5rem !important; + margin-left: 0.5rem !important; + } + .my-xl-2 { + margin-top: 0.5rem !important; + margin-bottom: 0.5rem !important; + } + .m-xl-3 { + margin: 1rem !important; + } + .mt-xl-3 { + margin-top: 1rem !important; + } + .mr-xl-3 { + margin-right: 1rem !important; + } + .mb-xl-3 { + margin-bottom: 1rem !important; + } + .ml-xl-3 { + margin-left: 1rem !important; + } + .mx-xl-3 { + margin-right: 1rem !important; + margin-left: 1rem !important; + } + .my-xl-3 { + margin-top: 1rem !important; + margin-bottom: 1rem !important; + } + .m-xl-4 { + margin: 1.5rem !important; + } + .mt-xl-4 { + margin-top: 1.5rem !important; + } + .mr-xl-4 { + margin-right: 1.5rem !important; + } + .mb-xl-4 { + margin-bottom: 1.5rem !important; + } + .ml-xl-4 { + margin-left: 1.5rem !important; + } + .mx-xl-4 { + margin-right: 1.5rem !important; + margin-left: 1.5rem !important; + } + .my-xl-4 { + margin-top: 1.5rem !important; + margin-bottom: 1.5rem !important; + } + .m-xl-5 { + margin: 3rem !important; + } + .mt-xl-5 { + margin-top: 3rem !important; + } + .mr-xl-5 { + margin-right: 3rem !important; + } + .mb-xl-5 { + margin-bottom: 3rem !important; + } + .ml-xl-5 { + margin-left: 3rem !important; + } + .mx-xl-5 { + margin-right: 3rem !important; + margin-left: 3rem !important; + } + .my-xl-5 { + margin-top: 3rem !important; + margin-bottom: 3rem !important; + } + .p-xl-0 { + padding: 0 !important; + } + .pt-xl-0 { + padding-top: 0 !important; + } + .pr-xl-0 { + padding-right: 0 !important; + } + .pb-xl-0 { + padding-bottom: 0 !important; + } + .pl-xl-0 { + padding-left: 0 !important; + } + .px-xl-0 { + padding-right: 0 !important; + padding-left: 0 !important; + } + .py-xl-0 { + padding-top: 0 !important; + padding-bottom: 0 !important; + } + .p-xl-1 { + padding: 0.25rem !important; + } + .pt-xl-1 { + padding-top: 0.25rem !important; + } + .pr-xl-1 { + padding-right: 0.25rem !important; + } + .pb-xl-1 { + padding-bottom: 0.25rem !important; + } + .pl-xl-1 { + padding-left: 0.25rem !important; + } + .px-xl-1 { + padding-right: 0.25rem !important; + padding-left: 0.25rem !important; + } + .py-xl-1 { + padding-top: 0.25rem !important; + padding-bottom: 0.25rem !important; + } + .p-xl-2 { + padding: 0.5rem !important; + } + .pt-xl-2 { + padding-top: 0.5rem !important; + } + .pr-xl-2 { + padding-right: 0.5rem !important; + } + .pb-xl-2 { + padding-bottom: 0.5rem !important; + } + .pl-xl-2 { + padding-left: 0.5rem !important; + } + .px-xl-2 { + padding-right: 0.5rem !important; + padding-left: 0.5rem !important; + } + .py-xl-2 { + padding-top: 0.5rem !important; + padding-bottom: 0.5rem !important; + } + .p-xl-3 { + padding: 1rem !important; + } + .pt-xl-3 { + padding-top: 1rem !important; + } + .pr-xl-3 { + padding-right: 1rem !important; + } + .pb-xl-3 { + padding-bottom: 1rem !important; + } + .pl-xl-3 { + padding-left: 1rem !important; + } + .px-xl-3 { + padding-right: 1rem !important; + padding-left: 1rem !important; + } + .py-xl-3 { + padding-top: 1rem !important; + padding-bottom: 1rem !important; + } + .p-xl-4 { + padding: 1.5rem !important; + } + .pt-xl-4 { + padding-top: 1.5rem !important; + } + .pr-xl-4 { + padding-right: 1.5rem !important; + } + .pb-xl-4 { + padding-bottom: 1.5rem !important; + } + .pl-xl-4 { + padding-left: 1.5rem !important; + } + .px-xl-4 { + padding-right: 1.5rem !important; + padding-left: 1.5rem !important; + } + .py-xl-4 { + padding-top: 1.5rem !important; + padding-bottom: 1.5rem !important; + } + .p-xl-5 { + padding: 3rem !important; + } + .pt-xl-5 { + padding-top: 3rem !important; + } + .pr-xl-5 { + padding-right: 3rem !important; + } + .pb-xl-5 { + padding-bottom: 3rem !important; + } + .pl-xl-5 { + padding-left: 3rem !important; + } + .px-xl-5 { + padding-right: 3rem !important; + padding-left: 3rem !important; + } + .py-xl-5 { + padding-top: 3rem !important; + padding-bottom: 3rem !important; + } + .m-xl-auto { + margin: auto !important; + } + .mt-xl-auto { + margin-top: auto !important; + } + .mr-xl-auto { + margin-right: auto !important; + } + .mb-xl-auto { + margin-bottom: auto !important; + } + .ml-xl-auto { + margin-left: auto !important; + } + .mx-xl-auto { + margin-right: auto !important; + margin-left: auto !important; + } + .my-xl-auto { + margin-top: auto !important; + margin-bottom: auto !important; + } +} + +.text-justify { + text-align: justify !important; +} + +.text-nowrap { + white-space: nowrap !important; +} + +.text-truncate { + overflow: hidden; + text-overflow: ellipsis; + white-space: nowrap; +} + +.text-left { + text-align: left !important; +} + +.text-right { + text-align: right !important; +} + +.text-center { + text-align: center !important; +} + +@media (min-width: 576px) { + .text-sm-left { + text-align: left !important; + } + .text-sm-right { + text-align: right !important; + } + .text-sm-center { + text-align: center !important; + } +} + +@media (min-width: 768px) { + .text-md-left { + text-align: left !important; + } + .text-md-right { + text-align: right !important; + } + .text-md-center { + text-align: center !important; + } +} + +@media (min-width: 992px) { + .text-lg-left { + text-align: left !important; + } + .text-lg-right { + text-align: right !important; + } + .text-lg-center { + text-align: center !important; + } +} + +@media (min-width: 1200px) { + .text-xl-left { + text-align: left !important; + } + .text-xl-right { + text-align: right !important; + } + .text-xl-center { + text-align: center !important; + } +} + +.text-lowercase { + text-transform: lowercase !important; +} + +.text-uppercase { + text-transform: uppercase !important; +} + +.text-capitalize { + text-transform: capitalize !important; +} + +.font-weight-normal { + font-weight: normal; +} + +.font-weight-bold { + font-weight: bold; +} + +.font-italic { + font-style: italic; +} + +.text-white { + color: #fff !important; +} + +.text-primary { + color: #007bff !important; +} + +a.text-primary:focus, a.text-primary:hover { + color: #0062cc !important; +} + +.text-secondary { + color: #868e96 !important; +} + +a.text-secondary:focus, a.text-secondary:hover { + color: #6c757d !important; +} + +.text-success { + color: #28a745 !important; +} + +a.text-success:focus, a.text-success:hover { + color: #1e7e34 !important; +} + +.text-info { + color: #17a2b8 !important; +} + +a.text-info:focus, a.text-info:hover { + color: #117a8b !important; +} + +.text-warning { + color: #ffc107 !important; +} + +a.text-warning:focus, a.text-warning:hover { + color: #d39e00 !important; +} + +.text-danger { + color: #dc3545 !important; +} + +a.text-danger:focus, a.text-danger:hover { + color: #bd2130 !important; +} + +.text-light { + color: #f8f9fa !important; +} + +a.text-light:focus, a.text-light:hover { + color: #dae0e5 !important; +} + +.text-dark { + color: #343a40 !important; +} + +a.text-dark:focus, a.text-dark:hover { + color: #1d2124 !important; +} + +.text-muted { + color: #868e96 !important; +} + +.text-hide { + font: 0/0 a; + color: transparent; + text-shadow: none; + background-color: transparent; + border: 0; +} + +.visible { + visibility: visible !important; +} + +.invisible { + visibility: hidden !important; +} +/*# sourceMappingURL=bootstrap.css.map */ \ No newline at end of file diff --git a/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap.css.map b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap.css.map new file mode 100644 index 0000000..1453035 --- /dev/null +++ b/raw_scans/11_gcp_debian_9/otseca-1/report.1610041124/vendor/bootstrap/css/bootstrap.css.map @@ -0,0 +1 @@ +{"version":3,"sources":["../../scss/bootstrap.scss","../../scss/_print.scss","bootstrap.css","../../scss/_reboot.scss","../../scss/_variables.scss","../../scss/mixins/_hover.scss","../../scss/_type.scss","../../scss/mixins/_lists.scss","../../scss/_images.scss","../../scss/mixins/_image.scss","../../scss/mixins/_border-radius.scss","../../scss/mixins/_transition.scss","../../scss/_code.scss","../../scss/_grid.scss","../../scss/mixins/_grid.scss","../../scss/mixins/_breakpoints.scss","../../scss/mixins/_grid-framework.scss","../../scss/_tables.scss","../../scss/mixins/_table-row.scss","../../scss/_functions.scss","../../scss/_forms.scss","../../scss/mixins/_forms.scss","../../scss/_buttons.scss","../../scss/mixins/_buttons.scss","../../scss/_transitions.scss","../../scss/_dropdown.scss","../../scss/mixins/_nav-divider.scss","../../scss/_button-group.scss","../../scss/_input-group.scss","../../scss/_custom-forms.scss","../../scss/_nav.scss","../../scss/_navbar.scss","../../scss/_card.scss","../../scss/_breadcrumb.scss","../../scss/mixins/_clearfix.scss","../../scss/_pagination.scss","../../scss/mixins/_pagination.scss","../../scss/_badge.scss","../../scss/mixins/_badge.scss","../../scss/_jumbotron.scss","../../scss/_alert.scss","../../scss/mixins/_alert.scss","../../scss/_progress.scss","../../scss/mixins/_gradients.scss","../../scss/_media.scss","../../scss/_list-group.scss","../../scss/mixins/_list-group.scss","../../scss/_close.scss","../../scss/_modal.scss","../../scss/_tooltip.scss","../../scss/mixins/_reset-text.scss","../../scss/_popover.scss","../../scss/_carousel.scss","../../scss/utilities/_align.scss","../../scss/mixins/_background-variant.scss","../../scss/utilities/_background.scss","../../scss/utilities/_borders.scss","../../scss/utilities/_display.scss","../../scss/utilities/_embed.scss","../../scss/utilities/_flex.scss","../../scss/utilities/_float.scss","../../scss/mixins/_float.scss","../../scss/utilities/_position.scss","../../scss/utilities/_screenreaders.scss","../../scss/mixins/_screen-reader.scss","../../scss/utilities/_sizing.scss","../../scss/utilities/_spacing.scss","../../scss/utilities/_text.scss","../../scss/mixins/_text-truncate.scss","../../scss/mixins/_text-emphasis.scss","../../scss/mixins/_text-hide.scss","../../scss/utilities/_visibility.scss","../../scss/mixins/_visibility.scss"],"names":[],"mappings":"AAAA;;;;;GAKG;ACMD;EACE;;;IAME,6BAA4B;IAE5B,4BAA2B;GAC5B;EAED;;IAEE,2BAA0B;GAC3B;EAOD;IACE,8BAA6B;GAC9B;EAaD;IACE,iCAAgC;GACjC;EACD;;IAEE,uBAAgC;IAChC,yBAAwB;GACzB;EAOD;IACE,4BAA2B;GAC5B;EAED;;IAEE,yBAAwB;GACzB;EAED;;;IAGE,WAAU;IACV,UAAS;GACV;EAED;;IAEE,wBAAuB;GACxB;EAKD;IACE,cAAa;GACd;EACD;IACE,uBAAgC;GACjC;EAED;IACE,qCAAoC;GAMrC;EAPD;;IAKI,kCAAiC;GAClC;EAEH;;IAGI,kCAAiC;GAClC;CC3CN;;AC1CD;EACE,uBAAsB;EACtB,wBAAuB;EACvB,kBAAiB;EACjB,+BAA8B;EAC9B,2BAA0B;EAC1B,8BAA6B;EAC7B,yCAA0C;CAC3C;;AAED;;;EAGE,oBAAmB;CACpB;;AAIC;EAAgB,oBAAmB;CD4CpC;;ACxCD;EACE,eAAc;CACf;;AAOD;EACE,UAAS;EACT,wGCoLiH;EDnLjH,gBCuLmB;EDtLnB,oBC0LyB;EDzLzB,iBC6LoB;ED5LpB,eCEgB;EDDhB,uBCRW;CDSZ;;ADuCD;EC/BE,yBAAwB;CACzB;;AAQD;EACE,wBAAuB;EACvB,UAAS;EACT,kBAAiB;CAClB;;AAWD;EACE,cAAa;EACb,qBAAoB;CACrB;;AAMD;EACE,cAAa;EACb,oBAAmB;CACpB;;AASD;;EAEE,2BAA0B;EAC1B,0CAAiC;UAAjC,kCAAiC;EACjC,aAAY;EACZ,iBAAgB;CACjB;;AAED;EACE,oBAAmB;EACnB,mBAAkB;EAClB,qBAAoB;CACrB;;AAED;;;EAGE,cAAa;EACb,oBAAmB;CACpB;;AAED;;;;EAIE,iBAAgB;CACjB;;AAED;EACE,kBCqGqB;CDpGtB;;AAED;EACE,qBAAoB;EACpB,eAAc;CACf;;AAED;EACE,iBAAgB;CACjB;;AAED;EACE,mBAAkB;CACnB;;AAED;;EAEE,oBAAmB;CACpB;;AAED;EACE,eAAc;CACf;;AAOD;;EAEE,mBAAkB;EAClB,eAAc;EACd,eAAc;EACd,yBAAwB;CACzB;;AAED;EAAM,eAAc;CAAK;;AACzB;EAAM,WAAU;CAAK;;AAOrB;EACE,eClHe;EDmHf,sBCxB0B;EDyB1B,8BAA6B;EAC7B,sCAAqC;CAMtC;;AE1LG;EFuLA,eC5B4C;ED6B5C,2BC5B6B;CC5JR;;AFkMzB;EACE,eAAc;EACd,sBAAqB;CAUtB;;AEnMG;EF4LA,eAAc;EACd,sBAAqB;CE1LpB;;AFoLL;EAUI,WAAU;CACX;;AAQH;;;;EAIE,kCAAiC;EACjC,eAAc;CACf;;AAED;EAEE,cAAa;EAEb,oBAAmB;EAEnB,eAAc;CACf;;AAOD;EAEE,iBAAgB;CACjB;;AAOD;EACE,uBAAsB;EACtB,mBAAkB;CACnB;;AAED;EACE,iBAAgB;CACjB;;AAaD;;;;;;;;;EASE,+BAA0B;MAA1B,2BAA0B;CAC3B;;AAOD;EACE,0BAAyB;CAC1B;;AAED;EACE,qBCEoC;EDDpC,wBCCoC;EDApC,eCpPgB;EDqPhB,iBAAgB;EAChB,qBAAoB;CACrB;;AAED;EAEE,iBAAgB;CACjB;;AAOD;EAEE,sBAAqB;EACrB,qBAAoB;CACrB;;AAMD;EACE,oBAAmB;EACnB,2CAA0C;CAC3C;;AAED;;;;;EAKE,UAAS;EACT,qBAAoB;EACpB,mBAAkB;EAClB,qBAAoB;CACrB;;AAED;;EAEE,kBAAiB;CAClB;;AAED;;EAEE,qBAAoB;CACrB;;AAKD;;;;EAIE,2BAA0B;CAC3B;;AAGD;;;;EAIE,WAAU;EACV,mBAAkB;CACnB;;AAED;;EAEE,uBAAsB;EACtB,WAAU;CACX;;AAGD;;;;EASE,4BAA2B;CAC5B;;AAED;EACE,eAAc;EAEd,iBAAgB;CACjB;;AAED;EAME,aAAY;EAEZ,WAAU;EACV,UAAS;EACT,UAAS;CACV;;AAID;EACE,eAAc;EACd,YAAW;EACX,gBAAe;EACf,WAAU;EACV,qBAAoB;EACpB,kBAAiB;EACjB,qBAAoB;EACpB,eAAc;EACd,oBAAmB;CACpB;;AAED;EACE,yBAAwB;CACzB;;ADpED;;ECyEE,aAAY;CACb;;ADrED;EC4EE,qBAAoB;EACpB,yBAAwB;CACzB;;ADzED;;ECiFE,yBAAwB;CACzB;;AAOD;EACE,cAAa;EACb,2BAA0B;CAC3B;;AAMD;EACE,sBAAqB;CACtB;;AAED;EACE,mBAAkB;CACnB;;AAED;EACE,cAAa;CACd;;ADtFD;EC2FE,yBAAwB;CACzB;;AG5dD;;EAEE,sBFwPoC;EEvPpC,qBFwP8B;EEvP9B,iBFwP0B;EEvP1B,iBFwP0B;EEvP1B,eFwP8B;CEvP/B;;AAED;EAAU,kBF0OW;CE1OiB;;AACtC;EAAU,gBF0OS;CE1OmB;;AACtC;EAAU,mBF0OY;CE1OgB;;AACtC;EAAU,kBF0OW;CE1OiB;;AACtC;EAAU,mBF0OY;CE1OgB;;AACtC;EAAU,gBF0OS;CE1OmB;;AAEtC;EACE,mBF0PwB;EEzPxB,iBF0PoB;CEzPrB;;AAGD;EACE,gBFyOkB;EExOlB,iBF6OuB;EE5OvB,iBFoO0B;CEnO3B;;AACD;EACE,kBFqOoB;EEpOpB,iBFyOuB;EExOvB,iBF+N0B;CE9N3B;;AACD;EACE,kBFiOoB;EEhOpB,iBFqOuB;EEpOvB,iBF0N0B;CEzN3B;;AACD;EACE,kBF6NoB;EE5NpB,iBFiOuB;EEhOvB,iBFqN0B;CEpN3B;;AAOD;EACE,iBAAgB;EAChB,oBAAmB;EACnB,UAAS;EACT,yCFIW;CEHZ;;AAOD;;EAEE,eFgNmB;EE/MnB,oBF8KyB;CE7K1B;;AAED;;EAEE,eFoNiB;EEnNjB,0BF4Ne;CE3NhB;;AAOD;EC7EE,gBAAe;EACf,iBAAgB;CD8EjB;;AAGD;EClFE,gBAAe;EACf,iBAAgB;CDmFjB;;AACD;EACE,sBAAqB;CAKtB;;AAND;EAII,kBFsMqB;CErMtB;;AASH;EACE,eAAc;EACd,0BAAyB;CAC1B;;AAGD;EACE,oBFyBW;EExBX,mBFwKgD;CEvKjD;;AAED;EACE,eAAc;EACd,eAAc;EACd,eF7DgB;CEkEjB;;AARD;EAMI,uBAAsB;CACvB;;AElHH;ECIE,gBAAe;EAGf,aAAY;CDLb;;AAID;EACE,iBJkvBkC;EIjvBlC,uBJmCW;EIlCX,uBJmvBgC;EM/vB9B,uBNmN2B;EOlNzB,iCPiwB2C;EK3vB/C,gBAAe;EAGf,aAAY;CDSb;;AAMD;EAEE,sBAAqB;CACtB;;AAED;EACE,sBAA4B;EAC5B,eAAc;CACf;;AAED;EACE,eJmuB4B;EIluB5B,eJegB;CIdjB;;AIzCD;;;;EAIE,kFRqO2F;CQpO5F;;AAGD;EACE,uBRkzBiC;EQjzBjC,eR+yB+B;EQ9yB/B,eRizBmC;EQhzBnC,0BRsCgB;EM/Cd,uBNmN2B;CQjM9B;;AALC;EACE,WAAU;EACV,eAAc;EACd,0BAAyB;CAC1B;;AAIH;EACE,uBRkyBiC;EQjyBjC,eR+xB+B;EQ9xB/B,YRsBW;EQrBX,0BR8BgB;EMvDd,sBNqN0B;CQlL7B;;AAdD;EASI,WAAU;EACV,gBAAe;EACf,kBR8MmB;CQ5MpB;;AAIH;EACE,eAAc;EACd,cAAa;EACb,oBAAmB;EACnB,eR4wB+B;EQ3wB/B,eRYgB;CQFjB;;AAfD;EASI,WAAU;EACV,mBAAkB;EAClB,eAAc;EACd,8BAA6B;EAC7B,iBAAgB;CACjB;;AAIH;EACE,kBRuwBiC;EQtwBjC,mBAAkB;CACnB;;AC1DC;ECAA,mBAAkB;EAClB,kBAAiB;EACjB,oBAAuC;EACvC,mBAAuC;EACvC,YAAW;CDDV;;AEgDC;EFnDF;ICYI,iBV8KK;GSvLR;CXwlBF;;AaxiBG;EFnDF;ICYI,iBV+KK;GSxLR;CX8lBF;;Aa9iBG;EFnDF;ICYI,iBVgLK;GSzLR;CXomBF;;AapjBG;EFnDF;ICYI,kBViLM;GS1LT;CX0mBF;;AWjmBC;EACE,YAAW;ECbb,mBAAkB;EAClB,kBAAiB;EACjB,oBAAuC;EACvC,mBAAuC;EACvC,YAAW;CDWV;;AAQD;ECLA,qBAAa;EAAb,cAAa;EACb,oBAAe;MAAf,gBAAe;EACf,oBAAuC;EACvC,mBAAuC;CDItC;;AAID;EACE,gBAAe;EACf,eAAc;CAOf;;AATD;;EAMI,iBAAgB;EAChB,gBAAe;CAChB;;AGnCH;;;;;;EACE,mBAAkB;EAClB,YAAW;EACX,gBAAe;EACf,oBAA4B;EAC5B,mBAA4B;CAC7B;;AAkBG;EACE,2BAAa;MAAb,cAAa;EACb,qBAAY;MAAZ,aAAY;EACZ,gBAAe;CAChB;;AACD;EACE,mBAAc;MAAd,eAAc;EACd,YAAW;EACX,gBAAe;CAChB;;AAGC;EFFN,wBAAsC;MAAtC,oBAAsC;EAItC,qBAAuC;CEAhC;;AAFD;EFFN,yBAAsC;MAAtC,qBAAsC;EAItC,sBAAuC;CEAhC;;AAFD;EFFN,kBAAsC;MAAtC,cAAsC;EAItC,eAAuC;CEAhC;;AAFD;EFFN,yBAAsC;MAAtC,qBAAsC;EAItC,sBAAuC;CEAhC;;AAFD;EFFN,yBAAsC;MAAtC,qBAAsC;EAItC,sBAAuC;CEAhC;;AAFD;EFFN,kBAAsC;MAAtC,cAAsC;EAItC,eAAuC;CEAhC;;AAFD;EFFN,yBAAsC;MAAtC,qBAAsC;EAItC,sBAAuC;CEAhC;;AAFD;EFFN,yBAAsC;MAAtC,qBAAsC;EAItC,sBAAuC;CEAhC;;AAFD;EFFN,kBAAsC;MAAtC,cAAsC;EAItC,eAAuC;CEAhC;;AAFD;EFFN,yBAAsC;MAAtC,qBAAsC;EAItC,sBAAuC;CEAhC;;AAFD;EFFN,yBAAsC;MAAtC,qBAAsC;EAItC,sBAAuC;CEAhC;;AAFD;EFFN,mBAAsC;MAAtC,eAAsC;EAItC,gBAAuC;CEAhC;;AAID;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,kBAFU;MAEV,SAFU;CAGX;;AAFD;EACE,mBAFU;MAEV,UAFU;CAGX;;AAFD;EACE,mBAFU;MAEV,UAFU;CAGX;;AAFD;EACE,mBAFU;MAEV,UAFU;CAGX;;ADKL;ECzBE;IACE,2BAAa;QAAb,cAAa;IACb,qBAAY;QAAZ,aAAY;IACZ,gBAAe;GAChB;EACD;IACE,mBAAc;QAAd,eAAc;IACd,YAAW;IACX,gBAAe;GAChB;EAGC;IFFN,wBAAsC;QAAtC,oBAAsC;IAItC,qBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,mBAAsC;QAAtC,eAAsC;IAItC,gBAAuC;GEAhC;EAID;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;Cdg0BR;;Aa3zBG;ECzBE;IACE,2BAAa;QAAb,cAAa;IACb,qBAAY;QAAZ,aAAY;IACZ,gBAAe;GAChB;EACD;IACE,mBAAc;QAAd,eAAc;IACd,YAAW;IACX,gBAAe;GAChB;EAGC;IFFN,wBAAsC;QAAtC,oBAAsC;IAItC,qBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,mBAAsC;QAAtC,eAAsC;IAItC,gBAAuC;GEAhC;EAID;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;Cdi6BR;;Aa55BG;ECzBE;IACE,2BAAa;QAAb,cAAa;IACb,qBAAY;QAAZ,aAAY;IACZ,gBAAe;GAChB;EACD;IACE,mBAAc;QAAd,eAAc;IACd,YAAW;IACX,gBAAe;GAChB;EAGC;IFFN,wBAAsC;QAAtC,oBAAsC;IAItC,qBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,mBAAsC;QAAtC,eAAsC;IAItC,gBAAuC;GEAhC;EAID;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;CdkgCR;;Aa7/BG;ECzBE;IACE,2BAAa;QAAb,cAAa;IACb,qBAAY;QAAZ,aAAY;IACZ,gBAAe;GAChB;EACD;IACE,mBAAc;QAAd,eAAc;IACd,YAAW;IACX,gBAAe;GAChB;EAGC;IFFN,wBAAsC;QAAtC,oBAAsC;IAItC,qBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,kBAAsC;QAAtC,cAAsC;IAItC,eAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,yBAAsC;QAAtC,qBAAsC;IAItC,sBAAuC;GEAhC;EAFD;IFFN,mBAAsC;QAAtC,eAAsC;IAItC,gBAAuC;GEAhC;EAID;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,kBAFU;QAEV,SAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;EAFD;IACE,mBAFU;QAEV,UAFU;GAGX;CdmmCR;;AelpCD;EACE,YAAW;EACX,gBAAe;EACf,oBbgIW;Ea/HX,8BbuSyC;CalR1C;;AAzBD;;EAQI,iBbgSkC;Ea/RlC,oBAAmB;EACnB,8BbsCc;CarCf;;AAXH;EAcI,uBAAsB;EACtB,iCbiCc;CahCf;;AAhBH;EAmBI,8Bb6Bc;Ca5Bf;;AApBH;EAuBI,uBbuBS;CatBV;;AAQH;;EAGI,gBbsQiC;CarQlC;;AAQH;EACE,0BbGgB;CaUjB;;AAdD;;EAKI,0BbDc;CaEf;;AANH;;EAWM,yBAA8C;CAC/C;;AASL;EAEI,sCbXS;CaYV;;AAQH;EAGM,uCbvBO;CCjDY;;AaNvB;;;EAII,0BC4EmE;CD3EpE;;AAKH;EAKM,0BAJsC;CbLrB;;AaIvB;;EASQ,0BARoC;CASrC;;AApBP;;;EAII,0BC4EmE;CD3EpE;;AAKH;EAKM,0BAJsC;CbLrB;;AaIvB;;EASQ,0BARoC;CASrC;;AApBP;;;EAII,0BC4EmE;CD3EpE;;AAKH;EAKM,0BAJsC;CbLrB;;AaIvB;;EASQ,0BARoC;CASrC;;AApBP;;;EAII,0BC4EmE;CD3EpE;;AAKH;EAKM,0BAJsC;CbLrB;;AaIvB;;EASQ,0BARoC;CASrC;;AApBP;;;EAII,0BC4EmE;CD3EpE;;AAKH;EAKM,0BAJsC;CbLrB;;AaIvB;;EASQ,0BARoC;CASrC;;AApBP;;;EAII,0BC4EmE;CD3EpE;;AAKH;EAKM,0BAJsC;CbLrB;;AaIvB;;EASQ,0BARoC;CASrC;;AApBP;;;EAII,0BC4EmE;CD3EpE;;AAKH;EAKM,0BAJsC;CbLrB;;AaIvB;;EASQ,0BARoC;CASrC;;AApBP;;;EAII,0BC4EmE;CD3EpE;;AAKH;EAKM,0BAJsC;CbLrB;;AaIvB;;EASQ,0BARoC;CASrC;;AApBP;;;EAII,uCdmDO;CclDR;;AAKH;EAKM,uCAJsC;CbLrB;;AaIvB;;EASQ,uCARoC;CASrC;;ADgFT;EAEI,YbzDS;Ea0DT,0BbjDc;CakDf;;AAGH;EAEI,ebzDc;Ea0Dd,0Bb/Dc;CagEf;;AAGH;EACE,YbtEW;EauEX,0Bb9DgB;CauFjB;;AA3BD;;;EAOI,sBb+LoD;Ca9LrD;;AARH;EAWI,UAAS;CACV;;AAZH;EAgBM,4CbrFO;CasFR;;AAjBL;EAuBQ,6Cb5FK;CCvCY;;AU0DrB;EEsFJ;IAEI,eAAc;IACd,YAAW;IACX,iBAAgB;IAChB,6CAA4C;GAO/C;EAZD;IASM,UAAS;GACV;Cf2tCJ;;AkB13CD;EACE,eAAc;EACd,YAAW;EAGX,wBhB2TgC;EgB1ThC,gBhBiOmB;EgBhOnB,kBhB0T8B;EgBzT9B,ehB2CgB;EgB1ChB,uBhBmCW;EgBjCX,uBAAsB;EACtB,6BAA4B;EAC5B,sChByCW;EgBpCT,uBhB+L2B;EOlNzB,yEP6XqF;CgBtU1F;;AAtDD;EA6BI,8BAA6B;EAC7B,UAAS;CACV;;ACxBD;EACE,ejB2Cc;EiB1Cd,uBjBmCS;EiBlCT,sBjBiWiE;EiBhWjE,cAAa;CAEd;;ADbH;EAsCI,ehBYc;EgBVd,WAAU;CACX;;AAzCH;EAsCI,ehBYc;EgBVd,WAAU;CACX;;AAzCH;EAsCI,ehBYc;EgBVd,WAAU;CACX;;AAzCH;EAkDI,0BhBJc;EgBMd,WAAU;CACX;;AAGH;EAEI,4BhB0TkF;CgBzTnF;;AAHH;EAWI,ehBhBc;EgBiBd,uBhBxBS;CgByBV;;AAIH;;EAEE,eAAc;CACf;;AASD;EACE,oCAA2E;EAC3E,uCAA8E;EAC9E,iBAAgB;CACjB;;AAED;EACE,oCAA8E;EAC9E,uCAAiF;EACjF,mBhB0IsB;CgBzIvB;;AAED;EACE,qCAA8E;EAC9E,wCAAiF;EACjF,oBhBqIsB;CgBpIvB;;AASD;EACE,oBhBgN+B;EgB/M/B,uBhB+M+B;EgB9M/B,iBAAgB;EAChB,gBhBqHmB;CgBpHpB;;AAQD;EACE,oBhBmM+B;EgBlM/B,uBhBkM+B;EgBjM/B,iBAAgB;EAChB,kBhBkM8B;EgBjM9B,0BAAyB;EACzB,oBAAuC;CAOxC;;AAbD;;;;;EAUI,iBAAgB;EAChB,gBAAe;CAChB;;AAYH;;;EACE,wBhBgL+B;EgB/K/B,oBhBoFsB;EgBnFtB,iBhB+K6B;EMvU3B,sBNqN0B;CgB3D7B;;AAED;;;EAEI,8BhB2NqF;CgB1NtF;;AAGH;;;EACE,qBhBuK8B;EgBtK9B,mBhBsEsB;EgBrEtB,iBhBsK6B;EM3U3B,sBNoN0B;CgB7C7B;;AAED;;;EAEI,8BhBiNqF;CgBhNtF;;AASH;EACE,oBhBmNmC;CgBlNpC;;AAED;EACE,eAAc;EACd,oBhBqM+B;CgBpMhC;;AAOD;EACE,qBAAa;EAAb,cAAa;EACb,oBAAe;MAAf,gBAAe;EACf,mBAAkB;EAClB,kBAAiB;CAOlB;;AAXD;;EAQI,mBAAkB;EAClB,kBAAiB;CAClB;;AAQH;EACE,mBAAkB;EAClB,eAAc;EACd,sBhB0K+B;CgBnKhC;;AAVD;EAOM,ehBxKY;CgByKb;;AAIL;EACE,sBhBiKiC;EgBhKjC,iBAAgB;CACjB;;AAED;EACE,mBAAkB;EAClB,oBhB4JgC;EgB3JhC,sBhB0JiC;CgBrJlC;;AARD;EAMI,iBAAgB;CACjB;;AAIH;EACE,sBAAqB;CAStB;;AAVD;EAII,uBAAsB;CACvB;;AALH;EAQI,qBhB8I+B;CgB7IhC;;AAWH;EACE,cAAa;EACb,mBAAkB;EAClB,mBAAkB;EAClB,ehB/Le;CgBgMhB;;AAED;EACE,mBAAkB;EAClB,UAAS;EACT,WAAU;EACV,cAAa;EACb,aAAY;EACZ,eAAc;EACd,kBAAiB;EACjB,mBAAkB;EAClB,eAAc;EACd,YAAW;EACX,yChB7Me;EgB8Mf,qBAAoB;CACrB;;AClQG;;;EAEE,sBjBoDW;CiB1CZ;;AAZD;;;EAKI,iDjBiDS;CiBhDV;;AANH;;;;;;;;EAUI,eAAc;CACf;;AAOH;EAGI,ejBiCS;CiBhCV;;AAMH;EAGI,0CjBuBS;CiBtBV;;AAJH;EAMI,ejBoBS;CiBnBV;;AAMH;EAGI,sBjBUS;CiBPV;;AANH;EAKgB,sBAAqB;CAAK;;AAL1C;EAQI,iDjBKS;CiBJV;;AAlDH;;;EAEE,sBjBiDW;CiBvCZ;;AAZD;;;EAKI,iDjB8CS;CiB7CV;;AANH;;;;;;;;EAUI,eAAc;CACf;;AAOH;EAGI,ejB8BS;CiB7BV;;AAMH;EAGI,0CjBoBS;CiBnBV;;AAJH;EAMI,ejBiBS;CiBhBV;;AAMH;EAGI,sBjBOS;CiBJV;;AANH;EAKgB,sBAAqB;CAAK;;AAL1C;EAQI,iDjBES;CiBDV;;AD8NP;EACE,qBAAa;EAAb,cAAa;EACb,wBAAmB;MAAnB,oBAAmB;EACnB,uBAAmB;MAAnB,oBAAmB;CAuFpB;;AA1FD;EASI,YAAW;CACZ;;AL7PC;EKmPJ;IAeM,qBAAa;IAAb,cAAa;IACb,uBAAmB;QAAnB,oBAAmB;IACnB,sBAAuB;QAAvB,wBAAuB;IACvB,iBAAgB;GACjB;EAnBL;IAuBM,qBAAa;IAAb,cAAa;IACb,mBAAc;QAAd,eAAc;IACd,wBAAmB;QAAnB,oBAAmB;IACnB,uBAAmB;QAAnB,oBAAmB;IACnB,iBAAgB;GACjB;EA5BL;IAgCM,sBAAqB;IACrB,YAAW;IACX,uBAAsB;GACvB;EAnCL;IAuCM,sBAAqB;GACtB;EAxCL;IA2CM,YAAW;GACZ;EA5CL;IA+CM,iBAAgB;IAChB,uBAAsB;GACvB;EAjDL;IAsDM,qBAAa;IAAb,cAAa;IACb,uBAAmB;QAAnB,oBAAmB;IACnB,sBAAuB;QAAvB,wBAAuB;IACvB,YAAW;IACX,cAAa;IACb,iBAAgB;GACjB;EA5DL;IA8DM,gBAAe;GAChB;EA/DL;IAiEM,mBAAkB;IAClB,cAAa;IACb,sBhB2B4B;IgB1B5B,eAAc;GACf;EArEL;IAyEM,qBAAa;IAAb,cAAa;IACb,uBAAmB;QAAnB,oBAAmB;IACnB,sBAAuB;QAAvB,wBAAuB;IACvB,gBAAe;GAChB;EA7EL;IA+EM,iBAAgB;IAChB,sBAAqB;IACrB,sBhBa4B;IgBZ5B,4BAA2B;GAC5B;EAnFL;IAuFM,OAAM;GACP;ClBi3CJ;;AoB9uDD;EACE,sBAAqB;EACrB,oBlByOyB;EkBxOzB,mBAAkB;EAClB,oBAAmB;EACnB,uBAAsB;EACtB,0BAAiB;KAAjB,uBAAiB;MAAjB,sBAAiB;UAAjB,kBAAiB;EACjB,8BAAiD;ECiEjD,wBnBwPgC;EmBvPhC,gBnB8JmB;EmB7JnB,kBnBuP8B;EMnU5B,uBNmN2B;EOlNzB,kCP0V+C;CkBxTpD;;AjBjBG;EiBHA,sBAAqB;CjBMpB;;AiBnBL;EAiBI,WAAU;EACV,8ClBkDa;CkBjDd;;AAnBH;EAwBI,aAAY;CAEb;;AA1BH;EA8BI,uBAAsB;CAEvB;;AAIH;;EAEE,qBAAoB;CACrB;;AAQC;EHQE,YAAW;EItDb,0BnBmEe;EmBlEf,sBnBkEe;CkBnBd;;AC5CD;EJkDE,YAAW;EIhDX,0BARqF;EASrF,sBAT2H;CAU5H;;AAED;EAMI,6CnBmDW;CmBjDd;;AAGD;EAEE,0BnB4Ca;EmB3Cb,sBnB2Ca;CmB1Cd;;AAED;;EAGE,0BAhCqF;EAiCrF,uBAAsB;EACtB,sBAlC2H;CAoC5H;;ADYD;EHQE,YAAW;EItDb,0BnBiDgB;EmBhDhB,sBnBgDgB;CkBDf;;AC5CD;EJkDE,YAAW;EIhDX,0BARqF;EASrF,sBAT2H;CAU5H;;AAED;EAMI,+CnBiCY;CmB/Bf;;AAGD;EAEE,0BnB0Bc;EmBzBd,sBnByBc;CmBxBf;;AAED;;EAGE,0BAhCqF;EAiCrF,uBAAsB;EACtB,sBAlC2H;CAoC5H;;ADYD;EHQE,YAAW;EItDb,0BnB0Ee;EmBzEf,sBnByEe;CkB1Bd;;AC5CD;EJkDE,YAAW;EIhDX,0BARqF;EASrF,sBAT2H;CAU5H;;AAED;EAMI,6CnB0DW;CmBxDd;;AAGD;EAEE,0BnBmDa;EmBlDb,sBnBkDa;CmBjDd;;AAED;;EAGE,0BAhCqF;EAiCrF,uBAAsB;EACtB,sBAlC2H;CAoC5H;;ADYD;EHQE,YAAW;EItDb,0BnB4Ee;EmB3Ef,sBnB2Ee;CkB5Bd;;AC5CD;EJkDE,YAAW;EIhDX,0BARqF;EASrF,sBAT2H;CAU5H;;AAED;EAMI,8CnB4DW;CmB1Dd;;AAGD;EAEE,0BnBqDa;EmBpDb,sBnBoDa;CmBnDd;;AAED;;EAGE,0BAhCqF;EAiCrF,uBAAsB;EACtB,sBAlC2H;CAoC5H;;ADYD;EHME,YAAW;EIpDb,0BnByEe;EmBxEf,sBnBwEe;CkBzBd;;AC5CD;EJgDE,YAAW;EI9CX,0BARqF;EASrF,sBAT2H;CAU5H;;AAED;EAMI,6CnByDW;CmBvDd;;AAGD;EAEE,0BnBkDa;EmBjDb,sBnBiDa;CmBhDd;;AAED;;EAGE,0BAhCqF;EAiCrF,uBAAsB;EACtB,sBAlC2H;CAoC5H;;ADYD;EHQE,YAAW;EItDb,0BnBuEe;EmBtEf,sBnBsEe;CkBvBd;;AC5CD;EJkDE,YAAW;EIhDX,0BARqF;EASrF,sBAT2H;CAU5H;;AAED;EAMI,6CnBuDW;CmBrDd;;AAGD;EAEE,0BnBgDa;EmB/Cb,sBnB+Ca;CmB9Cd;;AAED;;EAGE,0BAhCqF;EAiCrF,uBAAsB;EACtB,sBAlC2H;CAoC5H;;ADYD;EHME,YAAW;EIpDb,0BnB4CgB;EmB3ChB,sBnB2CgB;CkBIf;;AC5CD;EJgDE,YAAW;EI9CX,0BARqF;EASrF,sBAT2H;CAU5H;;AAED;EAMI,+CnB4BY;CmB1Bf;;AAGD;EAEE,0BnBqBc;EmBpBd,sBnBoBc;CmBnBf;;AAED;;EAGE,0BAhCqF;EAiCrF,uBAAsB;EACtB,sBAlC2H;CAoC5H;;ADYD;EHQE,YAAW;EItDb,0BnBmDgB;EmBlDhB,sBnBkDgB;CkBHf;;AC5CD;EJkDE,YAAW;EIhDX,0BARqF;EASrF,sBAT2H;CAU5H;;AAED;EAMI,4CnBmCY;CmBjCf;;AAGD;EAEE,0BnB4Bc;EmB3Bd,sBnB2Bc;CmB1Bf;;AAED;;EAGE,0BAhCqF;EAiCrF,uBAAsB;EACtB,sBAlC2H;CAoC5H;;ADkBD;ECdA,enB6Be;EmB5Bf,8BAA6B;EAC7B,uBAAsB;EACtB,sBnB0Be;CkBbd;;AjBlDC;EkBwCA,YDS4C;ECR5C,0BnBsBa;EmBrBb,sBnBqBa;CC/DQ;;AkB6CvB;EAEE,6CnBgBa;CmBfd;;AAED;EAEE,enBWa;EmBVb,8BAA6B;CAC9B;;AAED;;EAGE,YDV4C;ECW5C,0BnBGa;EmBFb,sBnBEa;CmBDd;;ADdD;ECdA,enBWgB;EmBVhB,8BAA6B;EAC7B,uBAAsB;EACtB,sBnBQgB;CkBKf;;AjBlDC;EkBwCA,YDS4C;ECR5C,0BnBIc;EmBHd,sBnBGc;CC7CO;;AkB6CvB;EAEE,+CnBFc;CmBGf;;AAED;EAEE,enBPc;EmBQd,8BAA6B;CAC9B;;AAED;;EAGE,YDV4C;ECW5C,0BnBfc;EmBgBd,sBnBhBc;CmBiBf;;ADdD;ECdA,enBoCe;EmBnCf,8BAA6B;EAC7B,uBAAsB;EACtB,sBnBiCe;CkBpBd;;AjBlDC;EkBwCA,YDS4C;ECR5C,0BnB6Ba;EmB5Bb,sBnB4Ba;CCtEQ;;AkB6CvB;EAEE,6CnBuBa;CmBtBd;;AAED;EAEE,enBkBa;EmBjBb,8BAA6B;CAC9B;;AAED;;EAGE,YDV4C;ECW5C,0BnBUa;EmBTb,sBnBSa;CmBRd;;ADdD;ECdA,enBsCe;EmBrCf,8BAA6B;EAC7B,uBAAsB;EACtB,sBnBmCe;CkBtBd;;AjBlDC;EkBwCA,YDS4C;ECR5C,0BnB+Ba;EmB9Bb,sBnB8Ba;CCxEQ;;AkB6CvB;EAEE,8CnByBa;CmBxBd;;AAED;EAEE,enBoBa;EmBnBb,8BAA6B;CAC9B;;AAED;;EAGE,YDV4C;ECW5C,0BnBYa;EmBXb,sBnBWa;CmBVd;;ADdD;ECdA,enBmCe;EmBlCf,8BAA6B;EAC7B,uBAAsB;EACtB,sBnBgCe;CkBnBd;;AjBlDC;EkBwCA,YDS4C;ECR5C,0BnB4Ba;EmB3Bb,sBnB2Ba;CCrEQ;;AkB6CvB;EAEE,6CnBsBa;CmBrBd;;AAED;EAEE,enBiBa;EmBhBb,8BAA6B;CAC9B;;AAED;;EAGE,YDV4C;ECW5C,0BnBSa;EmBRb,sBnBQa;CmBPd;;ADdD;ECdA,enBiCe;EmBhCf,8BAA6B;EAC7B,uBAAsB;EACtB,sBnB8Be;CkBjBd;;AjBlDC;EkBwCA,YDS4C;ECR5C,0BnB0Ba;EmBzBb,sBnByBa;CCnEQ;;AkB6CvB;EAEE,6CnBoBa;CmBnBd;;AAED;EAEE,enBea;EmBdb,8BAA6B;CAC9B;;AAED;;EAGE,YDV4C;ECW5C,0BnBOa;EmBNb,sBnBMa;CmBLd;;ADdD;ECdA,enBMgB;EmBLhB,8BAA6B;EAC7B,uBAAsB;EACtB,sBnBGgB;CkBUf;;AjBlDC;EkBwCA,YDS4C;ECR5C,0BnBDc;EmBEd,sBnBFc;CCxCO;;AkB6CvB;EAEE,+CnBPc;CmBQf;;AAED;EAEE,enBZc;EmBad,8BAA6B;CAC9B;;AAED;;EAGE,YDV4C;ECW5C,0BnBpBc;EmBqBd,sBnBrBc;CmBsBf;;ADdD;ECdA,enBagB;EmBZhB,8BAA6B;EAC7B,uBAAsB;EACtB,sBnBUgB;CkBGf;;AjBlDC;EkBwCA,YDS4C;ECR5C,0BnBMc;EmBLd,sBnBKc;CC/CO;;AkB6CvB;EAEE,4CnBAc;CmBCf;;AAED;EAEE,enBLc;EmBMd,8BAA6B;CAC9B;;AAED;;EAGE,YDV4C;ECW5C,0BnBbc;EmBcd,sBnBdc;CmBef;;ADHH;EACE,oBlB0KyB;EkBzKzB,elBEe;EkBDf,iBAAgB;CA8BjB;;AAjCD;EASI,8BAA6B;CAE9B;;AAXH;EAeI,0BAAyB;EACzB,iBAAgB;CACjB;;AjB5EC;EiB8EA,0BAAyB;CjB9EJ;;AAWrB;EiBsEA,elB0E4C;EkBzE5C,2BlB0E6B;EkBzE7B,8BAA6B;CjBrE5B;;AiB6CL;EA2BI,elBzCc;CkB8Cf;;AjBhFC;EiB8EE,sBAAqB;CjB3EtB;;AiBqFL;EChCE,qBnBgQ8B;EmB/P9B,mBnB+JsB;EmB9JtB,iBnBkI0B;EM9MxB,sBNoN0B;CkBxG7B;;AAED;ECpCE,wBnB4P+B;EmB3P/B,oBnBgKsB;EmB/JtB,iBnBmI0B;EM/MxB,sBNqN0B;CkBrG7B;;AAOD;EACE,eAAc;EACd,YAAW;CACZ;;AAGD;EACE,mBlBsNoC;CkBrNrC;;AAGD;;;EAII,YAAW;CACZ;;AE3IH;EACE,WAAU;EbIN,iCP4NsC;CoB1N3C;;AAPD;EAKI,WAAU;CACX;;AAGH;EACE,cAAa;CAId;;AALD;EAGI,eAAc;CACf;;AAGH;EAEI,mBAAkB;CACnB;;AAGH;EAEI,yBAAwB;CACzB;;AAGH;EACE,mBAAkB;EAClB,UAAS;EACT,iBAAgB;Eb1BZ,8BP6NmC;CoBjMxC;;AChCD;;EAEE,mBAAkB;CACnB;;AAED;EAGI,sBAAqB;EACrB,SAAQ;EACR,UAAS;EACT,qBAA+B;EAC/B,wBAAkC;EAClC,YAAW;EACX,wBAA8B;EAC9B,sCAA4C;EAC5C,qCAA2C;CAC5C;;AAZH;EAeI,eAAc;CACf;;AAKH;EAEI,cAAa;EACb,wBrB+coC;CqB9crC;;AAJH;EAQM,cAAa;EACb,2BAAiC;CAClC;;AAKL;EACE,mBAAkB;EAClB,UAAS;EACT,QAAO;EACP,crB0d8B;EqBzd9B,cAAa;EACb,YAAW;EACX,iBrB0boC;EqBzbpC,kBAA8B;EAC9B,qBAA4B;EAC5B,gBrByLmB;EqBxLnB,erBMgB;EqBLhB,iBAAgB;EAChB,iBAAgB;EAChB,uBrBNW;EqBOX,6BAA4B;EAC5B,sCrBEW;EMxDT,uBNmN2B;CqB1J9B;;AAGD;EC3DE,UAAS;EACT,iBAAuB;EACvB,iBAAgB;EAChB,8BtB4CgB;CqBcjB;;AAKD;EACE,eAAc;EACd,YAAW;EACX,wBrBobqC;EqBnbrC,YAAW;EACX,oBrBqKyB;EqBpKzB,erBlBgB;EqBmBhB,oBAAmB;EACnB,oBAAmB;EACnB,iBAAgB;EAChB,UAAS;CAwBV;;ApBnFG;EoB8DA,erBiakD;EqBhalD,sBAAqB;EACrB,0BrBnCc;CC1Bb;;AoB8CL;EAoBI,YrBzCS;EqB0CT,sBAAqB;EACrB,0BrBnBa;CqBoBd;;AAvBH;EA2BI,erB1Cc;EqB2Cd,8BAA6B;CAK9B;;AAIH;EAGI,WAAU;CACX;;AAGH;EACE,eAAc;CACf;;AAGD;EACE,eAAc;EACd,uBrBoYqC;EqBnYrC,iBAAgB;EAChB,oBrBmHsB;EqBlHtB,erBrEgB;EqBsEhB,oBAAmB;CACpB;;AE5HD;;EAEE,mBAAkB;EAClB,4BAAoB;EAApB,qBAAoB;EACpB,uBAAsB;CA0BvB;;AA9BD;;EAOI,mBAAkB;EAClB,mBAAc;MAAd,eAAc;EACd,iBAAgB;CAYjB;;AArBH;;EAcM,WAAU;CtBNS;;AsBRzB;;;;EAmBM,WAAU;CACX;;AApBL;;;;;;;;EA4BI,kBvBsLc;CuBrLf;;AAIH;EACE,qBAAa;EAAb,cAAa;EACb,oBAAe;MAAf,gBAAe;EACf,qBAA2B;MAA3B,4BAA2B;CAK5B;;AARD;EAMI,YAAW;CACZ;;AAGH;EACE,iBAAgB;CACjB;;AAGD;EACE,eAAc;CAKf;;AAND;EjBlCI,2BiBsC8B;EjBrC9B,8BiBqC8B;CAC/B;;AAGH;;EjB5BI,0BiB8B2B;EjB7B3B,6BiB6B2B;CAC9B;;AAGD;EACE,YAAW;CACZ;;AACD;EACE,iBAAgB;CACjB;;AACD;;EjBtDI,2BiByD8B;EjBxD9B,8BiBwD8B;CAC/B;;AAEH;EjB9CI,0BiB+C2B;EjB9C3B,6BiB8C2B;CAC9B;;AAeD;EACE,yBAAyC;EACzC,wBAAwC;CAKzC;;AAPD;EAKI,eAAc;CACf;;AAGH;EACE,wBAA4C;EAC5C,uBAA2C;CAC5C;;AAED;EACE,uBAA4C;EAC5C,sBAA2C;CAC5C;;AAmBD;EACE,4BAAoB;EAApB,qBAAoB;EACpB,2BAAsB;MAAtB,uBAAsB;EACtB,sBAAuB;MAAvB,wBAAuB;EACvB,sBAAuB;MAAvB,wBAAuB;CAcxB;;AAlBD;;EAQI,YAAW;CACZ;;AATH;;;;EAeI,iBvBoEc;EuBnEd,eAAc;CACf;;AAGH;EAEI,iBAAgB;CACjB;;AAHH;EjB9HI,8BiBmI+B;EjBlI/B,6BiBkI+B;CAChC;;AANH;EjB5II,0BiBoJ4B;EjBnJ5B,2BiBmJ4B;CAC7B;;AAEH;EACE,iBAAgB;CACjB;;AACD;;EjB5II,8BiB+I+B;EjB9I/B,6BiB8I+B;CAChC;;AAEH;EjBhKI,0BiBiK0B;EjBhK1B,2BiBgK0B;CAC7B;;AzBu5ED;;;;EyBn4EM,mBAAkB;EAClB,uBAAmB;EACnB,qBAAoB;CACrB;;AC/LL;EACE,mBAAkB;EAClB,qBAAa;EAAb,cAAa;EACb,YAAW;CAkBZ;;AArBD;EAQI,mBAAkB;EAClB,WAAU;EACV,mBAAc;MAAd,eAAc;EAGd,UAAS;EACT,iBAAgB;CAMjB;;AApBH;EAkBM,WAAU;CvBmCX;;AuB9BL;;;EAIE,qBAAa;EAAb,cAAa;EACb,uBAAmB;MAAnB,oBAAmB;CAKpB;;AAVD;;;ElBvBI,iBkB+BwB;CACzB;;AAGH;;EAEE,oBAAmB;EACnB,uBAAsB;CACvB;;AAwBD;EACE,wBxBkQgC;EwBjQhC,iBAAgB;EAChB,gBxBuKmB;EwBtKnB,oBxB0KyB;EwBzKzB,kBxB+P8B;EwB9P9B,exBhBgB;EwBiBhB,mBAAkB;EAClB,0BxBvBgB;EwBwBhB,sCxBhBW;EMxDT,uBNmN2B;CwBpH9B;;AAhCD;;;EAcI,wBxByP6B;EwBxP7B,oBxB6JoB;EM3OpB,sBNqN0B;CwBrI3B;;AAjBH;;;EAoBI,qBxBuP4B;EwBtP5B,mBxBsJoB;EM1OpB,sBNoN0B;CwB9H3B;;AAvBH;;EA6BI,cAAa;CACd;;AASH;;;;;;;ElBzFI,2BkBgG4B;ElB/F5B,8BkB+F4B;CAC/B;;AACD;EACE,gBAAe;CAChB;;AACD;;;;;;;ElBvFI,0BkB8F2B;ElB7F3B,6BkB6F2B;CAC9B;;AACD;EACE,eAAc;CACf;;AAMD;EACE,mBAAkB;EAGlB,aAAY;EACZ,oBAAmB;CAmCpB;;AAxCD;EAUI,mBAAkB;CAUnB;;AApBH;EAaM,kBxBiEY;CwBhEb;;AAdL;EAkBM,WAAU;CvBhGX;;AuB8EL;;EA0BM,mBxBoDY;CwBnDb;;AA3BL;;EAgCM,WAAU;EACV,kBxB6CY;CwBxCb;;AAtCL;;;;EAoCQ,WAAU;CvBlHb;;AwB9CL;EACE,mBAAkB;EAClB,4BAAoB;EAApB,qBAAoB;EACpB,mBAAsC;EACtC,qBzBmY8B;EyBlY9B,mBzBoY4B;CyBnY7B;;AAED;EACE,mBAAkB;EAClB,YAAW;EACX,WAAU;CA4BX;;AA/BD;EAMI,YzByBS;EyBxBT,0BzBgDa;CyB9Cd;;AATH;EAaI,8CzB0Ca;CyBzCd;;AAdH;EAiBI,YzBcS;EyBbT,0BzBgY6E;CyB9X9E;;AApBH;EAwBM,0BzBSY;CyBRb;;AAzBL;EA4BM,ezBSY;CyBRb;;AAQL;EACE,mBAAkB;EAClB,aAA+D;EAC/D,QAAO;EACP,eAAc;EACd,YzByVwC;EyBxVxC,azBwVwC;EyBvVxC,qBAAoB;EACpB,0BAAiB;KAAjB,uBAAiB;MAAjB,sBAAiB;UAAjB,kBAAiB;EACjB,uBzBsVwC;EyBrVxC,6BAA4B;EAC5B,mCAAkC;EAClC,yBzBoV2C;CyBlV5C;;AAMD;EnBxEI,uBNmN2B;CyBxI5B;;AAHH;EAMI,2NVtCuI;CUuCxI;;AAPH;EAUI,0BzBZa;EyBab,wKV3CuI;CU6CxI;;AAOH;EAEI,mBzB8UsC;CyB7UvC;;AAHH;EAMI,qKV1DuI;CU2DxI;;AASH;EACE,qBAAa;EAAb,cAAa;EACb,2BAAsB;MAAtB,uBAAsB;CASvB;;AAXD;EAKI,uBzB8R4B;CyBzR7B;;AAVH;EAQM,eAAc;CACf;;AAWL;EACE,sBAAqB;EACrB,gBAAe;EACf,4BzBmPoF;EyBlPpF,2CzB4SuC;EyB3SvC,kBzB8L8B;EyB7L9B,ezBjFgB;EyBkFhB,uBAAsB;EACtB,oNAAsG;EACtG,0BzB+SoC;EyB9SpC,sCzBlFW;EyBoFT,uBzBuE2B;EyBnE7B,yBAAgB;KAAhB,sBAAgB;UAAhB,iBAAgB;CA2BjB;;AA3CD;EAmBI,sBzB4SmE;EyB3SnE,cAAa;CAYd;;AAhCH;EA6BM,ezBxGY;EyByGZ,uBzBhHO;CyBiHR;;AA/BL;EAmCI,ezB/Gc;EyBgHd,0BzBpHc;CyBqHf;;AArCH;EAyCI,WAAU;CACX;;AAGH;EACE,8BzB2MuF;EyB1MvF,sBzBgQwC;EyB/PxC,yBzB+PwC;EyB9PxC,ezBiR+B;CyBhRhC;;AAOD;EACE,mBAAkB;EAClB,sBAAqB;EACrB,gBAAe;EACf,ezBwQmC;EyBvQnC,iBAAgB;CACjB;;AAED;EACE,iBzBoQkC;EyBnQlC,gBAAe;EACf,ezBiQmC;EyBhQnC,UAAS;EACT,WAAU;CAKX;;AAED;EACE,mBAAkB;EAClB,OAAM;EACN,SAAQ;EACR,QAAO;EACP,WAAU;EACV,ezBkPmC;EyBjPnC,qBzBqP8B;EyBpP9B,iBzBsP6B;EyBrP7B,ezBjKgB;EyBkKhB,qBAAoB;EACpB,0BAAiB;KAAjB,uBAAiB;MAAjB,sBAAiB;UAAjB,kBAAiB;EACjB,uBzB3KW;EyB4KX,sCzBlKW;EMxDT,uBNmN2B;CyBsC9B;;AA5CD;EAmBM,0BzBsPkB;CyBrPnB;;AApBL;EAwBI,mBAAkB;EAClB,UzBrBc;EyBsBd,YzBtBc;EyBuBd,azBvBc;EyBwBd,WAAU;EACV,eAAc;EACd,ezB0NiC;EyBzNjC,qBzB6N4B;EyB5N5B,iBzB8N2B;EyB7N3B,ezBzLc;EyB0Ld,0BzB/Lc;EyBgMd,sCzBxLS;EMxDT,mCmBiPgF;CACjF;;AArCH;EAyCM,kBzBmOU;CyBlOX;;ACtPL;EACE,qBAAa;EAAb,cAAa;EACb,oBAAe;MAAf,gBAAe;EACf,gBAAe;EACf,iBAAgB;EAChB,iBAAgB;CACjB;;AAED;EACE,eAAc;EACd,qB1BogBkC;C0B1fnC;;AzBHG;EyBJA,sBAAqB;CzBOpB;;AyBZL;EAUI,e1BiCc;C0BhCf;;AAOH;EACE,8B1BsfgD;C0BpdjD;;AAnCD;EAII,oB1BkLc;C0BjLf;;AALH;EAQI,8BAAgD;EpB7BhD,gCN6M2B;EM5M3B,iCN4M2B;C0BpK5B;;AApBH;EAYM,mC1B2e4C;CC7f7C;;AyBML;EAgBM,e1BSY;E0BRZ,8BAA6B;EAC7B,0BAAyB;CAC1B;;AAnBL;;EAwBI,e1BEc;E0BDd,uB1BNS;E0BOT,6B1BPS;C0BQV;;AA3BH;EA+BI,iB1BuJc;EM3Md,0BoBsD4B;EpBrD5B,2BoBqD4B;CAC7B;;AAQH;EpBrEI,uBNmN2B;C0BrI5B;;AATH;;EAMM,Y1B7BO;E0B8BP,0B1BNW;C0BOZ;;AASL;EAEI,mBAAc;MAAd,eAAc;EACd,mBAAkB;CACnB;;AAGH;EAEI,2BAAa;MAAb,cAAa;EACb,qBAAY;MAAZ,aAAY;EACZ,mBAAkB;CACnB;;AAQH;EAEI,cAAa;CACd;;AAHH;EAKI,eAAc;CACf;;ACnGH;EACE,mBAAkB;EAClB,qBAAa;EAAb,cAAa;EACb,oBAAe;MAAf,gBAAe;EACf,uBAAmB;MAAnB,oBAAmB;EACnB,uBAA8B;MAA9B,+BAA8B;EAC9B,qB3BgHW;C2BrGZ;;AAjBD;;EAYI,qBAAa;EAAb,cAAa;EACb,oBAAe;MAAf,gBAAe;EACf,uBAAmB;MAAnB,oBAAmB;EACnB,uBAA8B;MAA9B,+BAA8B;CAC/B;;AAQH;EACE,sBAAqB;EACrB,uB3BggB+E;E2B/f/E,0B3B+f+E;E2B9f/E,mB3B0FW;E2BzFX,mB3BgMsB;E2B/LtB,qBAAoB;EACpB,oBAAmB;CAKpB;;A1B/BG;E0B6BA,sBAAqB;C1B1BpB;;A0BmCL;EACE,qBAAa;EAAb,cAAa;EACb,2BAAsB;MAAtB,uBAAsB;EACtB,gBAAe;EACf,iBAAgB;EAChB,iBAAgB;CAWjB;;AAhBD;EAQI,iBAAgB;EAChB,gBAAe;CAChB;;AAVH;EAaI,iBAAgB;EAChB,YAAW;CACZ;;AAQH;EACE,sBAAqB;EACrB,oB3B6bmC;E2B5bnC,uB3B4bmC;C2B3bpC;;AAWD;EACE,8BAAgB;MAAhB,iBAAgB;EAGhB,uBAAmB;MAAnB,oBAAmB;CACpB;;AAGD;EACE,yB3BmcyC;E2BlczC,mB3BkIsB;E2BjItB,eAAc;EACd,wBAAuB;EACvB,8BAAuC;ErB3GrC,uBNmN2B;C2BlG9B;;A1B/FG;E0B6FA,sBAAqB;C1B1FpB;;A0BgGL;EACE,sBAAqB;EACrB,aAAY;EACZ,cAAa;EACb,uBAAsB;EACtB,YAAW;EACX,oCAAmC;EACnC,2BAA0B;CAC3B;;AhB5DG;EgBqEA;;IAIM,iBAAgB;IAChB,gBAAe;GAChB;C7B46FR;;AapgGG;EgBkFA;IAUI,wBAAmB;QAAnB,oBAAmB;IACnB,sBAAiB;QAAjB,kBAAiB;IACjB,qBAA2B;QAA3B,4BAA2B;GAoC9B;EAhDD;IAeM,wBAAmB;QAAnB,oBAAmB;GAepB;EA9BL;IAkBQ,mBAAkB;GACnB;EAnBP;IAsBQ,SAAQ;IACR,WAAU;GACX;EAxBP;IA2BQ,qBAAoB;IACpB,oBAAmB;GACpB;EA7BP;;IAmCM,sBAAiB;QAAjB,kBAAiB;GAClB;EApCL;IAwCM,gCAAwB;IAAxB,yBAAwB;GACzB;EAzCL;IA6CM,cAAa;GACd;C7Bo6FR;;AavhGG;EgBqEA;;IAIM,iBAAgB;IAChB,gBAAe;GAChB;C7Bo9FR;;Aa5iGG;EgBkFA;IAUI,wBAAmB;QAAnB,oBAAmB;IACnB,sBAAiB;QAAjB,kBAAiB;IACjB,qBAA2B;QAA3B,4BAA2B;GAoC9B;EAhDD;IAeM,wBAAmB;QAAnB,oBAAmB;GAepB;EA9BL;IAkBQ,mBAAkB;GACnB;EAnBP;IAsBQ,SAAQ;IACR,WAAU;GACX;EAxBP;IA2BQ,qBAAoB;IACpB,oBAAmB;GACpB;EA7BP;;IAmCM,sBAAiB;QAAjB,kBAAiB;GAClB;EApCL;IAwCM,gCAAwB;IAAxB,yBAAwB;GACzB;EAzCL;IA6CM,cAAa;GACd;C7B48FR;;Aa/jGG;EgBqEA;;IAIM,iBAAgB;IAChB,gBAAe;GAChB;C7B4/FR;;AaplGG;EgBkFA;IAUI,wBAAmB;QAAnB,oBAAmB;IACnB,sBAAiB;QAAjB,kBAAiB;IACjB,qBAA2B;QAA3B,4BAA2B;GAoC9B;EAhDD;IAeM,wBAAmB;QAAnB,oBAAmB;GAepB;EA9BL;IAkBQ,mBAAkB;GACnB;EAnBP;IAsBQ,SAAQ;IACR,WAAU;GACX;EAxBP;IA2BQ,qBAAoB;IACpB,oBAAmB;GACpB;EA7BP;;IAmCM,sBAAiB;QAAjB,kBAAiB;GAClB;EApCL;IAwCM,gCAAwB;IAAxB,yBAAwB;GACzB;EAzCL;IA6CM,cAAa;GACd;C7Bo/FR;;AavmGG;EgBqEA;;IAIM,iBAAgB;IAChB,gBAAe;GAChB;C7BoiGR;;Aa5nGG;EgBkFA;IAUI,wBAAmB;QAAnB,oBAAmB;IACnB,sBAAiB;QAAjB,kBAAiB;IACjB,qBAA2B;QAA3B,4BAA2B;GAoC9B;EAhDD;IAeM,wBAAmB;QAAnB,oBAAmB;GAepB;EA9BL;IAkBQ,mBAAkB;GACnB;EAnBP;IAsBQ,SAAQ;IACR,WAAU;GACX;EAxBP;IA2BQ,qBAAoB;IACpB,oBAAmB;GACpB;EA7BP;;IAmCM,sBAAiB;QAAjB,kBAAiB;GAClB;EApCL;IAwCM,gCAAwB;IAAxB,yBAAwB;GACzB;EAzCL;IA6CM,cAAa;GACd;C7B4hGR;;A6B/kGD;EAeQ,wBAAmB;MAAnB,oBAAmB;EACnB,sBAAiB;MAAjB,kBAAiB;EACjB,qBAA2B;MAA3B,4BAA2B;CAoC9B;;AArDL;;EASU,iBAAgB;EAChB,gBAAe;CAChB;;AAXT;EAoBU,wBAAmB;MAAnB,oBAAmB;CAepB;;AAnCT;EAuBY,mBAAkB;CACnB;;AAxBX;EA2BY,SAAQ;EACR,WAAU;CACX;;AA7BX;EAgCY,qBAAoB;EACpB,oBAAmB;CACpB;;AAlCX;;EAwCU,sBAAiB;MAAjB,kBAAiB;CAClB;;AAzCT;EA6CU,gCAAwB;EAAxB,yBAAwB;CACzB;;AA9CT;EAkDU,cAAa;CACd;;AAYT;EAEI,0B3B1IS;C2B+IV;;AAPH;EAKM,0B3B7IO;CCnCR;;A0B2KL;EAWM,0B3BnJO;C2B4JR;;AApBL;EAcQ,0B3BtJK;CCnCR;;A0B2KL;EAkBQ,0B3B1JK;C2B2JN;;AAnBP;;;;EA0BM,0B3BlKO;C2BmKR;;AA3BL;EA+BI,0B3BvKS;E2BwKT,iC3BxKS;C2ByKV;;AAjCH;EAoCI,sQ3BqV8R;C2BpV/R;;AArCH;EAwCI,0B3BhLS;C2BiLV;;AAIH;EAEI,a3BjMS;C2BsMV;;AAPH;EAKM,a3BpMO;CCzBR;;A0BwNL;EAWM,gC3B1MO;C2BmNR;;AApBL;EAcQ,iC3B7MK;CCzBR;;A0BwNL;EAkBQ,iC3BjNK;C2BkNN;;AAnBP;;;;EA0BM,a3BzNO;C2B0NR;;AA3BL;EA+BI,gC3B9NS;E2B+NT,uC3B/NS;C2BgOV;;AAjCH;EAoCI,4Q3BiS4R;C2BhS7R;;AArCH;EAwCI,gC3BvOS;C2BwOV;;ACtRH;EACE,mBAAkB;EAClB,qBAAa;EAAb,cAAa;EACb,2BAAsB;MAAtB,uBAAsB;EACtB,aAAY;EACZ,sBAAqB;EACrB,uB5BwCW;E4BvCX,4BAA2B;EAC3B,uC5BgDW;EMxDT,uBNmN2B;C4BzM9B;;AAED;EAGE,mBAAc;MAAd,eAAc;EACd,iB5BilBgC;C4BhlBjC;;AAED;EACE,uB5B4kB+B;C4B3kBhC;;AAED;EACE,sBAAgC;EAChC,iBAAgB;CACjB;;AAED;EACE,iBAAgB;CACjB;;A3BvBG;E2B2BA,sBAAqB;C3B3BA;;A2ByBzB;EAMI,qB5B2jB8B;C4B1jB/B;;AAGH;EtBpCI,gCN6M2B;EM5M3B,iCN4M2B;C4BrK1B;;AAJL;EtBtBI,oCN+L2B;EM9L3B,mCN8L2B;C4B/J1B;;AASL;EACE,yB5BmiBgC;E4BliBhC,iBAAgB;EAChB,sC5BRW;E4BSX,8C5BTW;C4BcZ;;AATD;EtB7DI,2DsBoE8E;CAC/E;;AAGH;EACE,yB5BwhBgC;E4BvhBhC,sC5BlBW;E4BmBX,2C5BnBW;C4BwBZ;;AARD;EtBxEI,2DNqmB2E;C4BthB5E;;AAQH;EACE,wBAAkC;EAClC,wB5BugB+B;E4BtgB/B,uBAAiC;EACjC,iBAAgB;CACjB;;AAED;EACE,wBAAkC;EAClC,uBAAiC;CAClC;;AAGD;EACE,mBAAkB;EAClB,OAAM;EACN,SAAQ;EACR,UAAS;EACT,QAAO;EACP,iB5B+fgC;C4B9fjC;;AAED;EACE,YAAW;EtB9GT,mCNqmB2E;C4Brf9E;;AAGD;EACE,YAAW;EtB9GT,4CN+lB2E;EM9lB3E,6CN8lB2E;C4B/e9E;;AAED;EACE,YAAW;EtBrGT,gDNilB2E;EMhlB3E,+CNglB2E;C4B1e9E;;AjBvEG;EiB6EF;IACE,qBAAa;IAAb,cAAa;IACb,wBAAmB;QAAnB,oBAAmB;IACnB,oB5BuegD;I4BtehD,mB5BsegD;G4B7djD;EAbD;IAOI,qBAAa;IAAb,cAAa;IACb,iBAAY;QAAZ,aAAY;IACZ,2BAAsB;QAAtB,uBAAsB;IACtB,mB5Bge8C;I4B/d9C,kB5B+d8C;G4B9d/C;C9ByzGJ;;Aal5GG;EiBmGF;IACE,qBAAa;IAAb,cAAa;IACb,wBAAmB;QAAnB,oBAAmB;GA2CpB;EA7CD;IAKI,iBAAY;QAAZ,aAAY;GAuCb;EA5CH;IAQM,eAAc;IACd,eAAc;GACf;EAVL;ItB1IE,2BsByJoC;ItBxJpC,8BsBwJoC;GAQ/B;EAvBP;IAkBU,2BAA0B;GAC3B;EAnBT;IAqBU,8BAA6B;GAC9B;EAtBT;ItB5HE,0BsBqJmC;ItBpJnC,6BsBoJmC;GAQ9B;EAjCP;IA4BU,0BAAyB;GAC1B;EA7BT;IA+BU,6BAA4B;GAC7B;EAhCT;IAoCQ,iBAAgB;GAMjB;EA1CP;;IAwCU,iBAAgB;GACjB;C9B+yGV;;A8BnyGD;EAEI,uB5BkZ6B;C4BjZ9B;;AjB3JC;EiBwJJ;IAMI,wB5B2ZyB;Y4B3ZzB,gB5B2ZyB;I4B1ZzB,4B5B2Z+B;Y4B3Z/B,oB5B2Z+B;G4BpZlC;EAdD;IAUM,sBAAqB;IACrB,YAAW;GACZ;C9BsyGJ;;A+BlgHD;EACE,sB7BixBkC;E6BhxBlC,oBAAmB;EACnB,iBAAgB;EAChB,0B7BgDgB;EMhDd,uBNmN2B;C6BhN9B;;ACNC;EACE,eAAc;EACd,YAAW;EACX,YAAW;CACZ;;ADIH;EACE,YAAW;CA2BZ;;AA5BD;EAKI,sBAAqB;EACrB,sB7BowBiC;E6BnwBjC,qB7BmwBiC;E6BlwBjC,e7BuCc;E6BtCd,aAAiC;CAClC;;AAVH;EAmBI,2BAA0B;CAC3B;;AApBH;EAsBI,sBAAqB;CACtB;;AAvBH;EA0BI,e7BqBc;C6BpBf;;AEpCH;EACE,qBAAa;EAAb,cAAa;EAEb,gBAAe;EACf,iBAAgB;EzBAd,uBNmN2B;C+BjN9B;;AAED;EAGM,eAAc;EzBoBhB,gCNwL2B;EMvL3B,mCNuL2B;C+B1M1B;;AALL;EzBSI,iCNsM2B;EMrM3B,oCNqM2B;C+BrM1B;;AAVL;EAcI,WAAU;EACV,Y/B2BS;E+B1BT,0B/BkDa;E+BjDb,sB/BiDa;C+BhDd;;AAlBH;EAqBI,e/B2Bc;E+B1Bd,qBAAoB;EACpB,uB/BmBS;E+BlBT,mB/ByjBuC;C+BxjBxC;;AAGH;EACE,mBAAkB;EAClB,eAAc;EACd,wB/B4hB0C;E+B3hB1C,kBAAiB;EACjB,kB/B+hBwC;E+B9hBxC,e/BgCe;E+B/Bf,uB/BOW;E+BNX,uB/BiiByC;C+BzhB1C;;A9B9BG;E8ByBA,e/BuH4C;E+BtH5C,sBAAqB;EACrB,0B/BGc;E+BFd,mB/B+hBuC;CCxjBtC;;A+BtBH;EACE,wBhCmkBwC;EgClkBxC,mBhCyOoB;EgCxOpB,iBhC4MwB;CgC3MzB;;AAIG;E1BoBF,+BNyL0B;EMxL1B,kCNwL0B;CgC3MvB;;AAGD;E1BCF,gCNuM0B;EMtM1B,mCNsM0B;CgCtMvB;;AAfL;EACE,wBhCikBuC;EgChkBvC,oBhC0OoB;EgCzOpB,iBhC6MwB;CgC5MzB;;AAIG;E1BoBF,+BN0L0B;EMzL1B,kCNyL0B;CgC5MvB;;AAGD;E1BCF,gCNwM0B;EMvM1B,mCNuM0B;CgCvMvB;;ACbP;EACE,sBAAqB;EACrB,sBjC+pBgC;EiC9pBhC,ejC2pB+B;EiC1pB/B,kBjCyOqB;EiCxOrB,eAAc;EACd,YjCuCW;EiCtCX,mBAAkB;EAClB,oBAAmB;EACnB,yBAAwB;E3BVtB,uBNmN2B;CiClM9B;;AAhBD;EAcI,cAAa;CACd;;AAIH;EACE,mBAAkB;EAClB,UAAS;CACV;;AAMD;EACE,qBjCsoBgC;EiCroBhC,oBjCqoBgC;EMpqB9B,qBNuqB+B;CiCtoBlC;;AAOC;ElBiBE,YAAW;EmB3Db,0BlCwEe;CiC5Bd;;AhCxBC;EcuCA,YAAW;EmBtDT,sBAAqB;EACrB,0BAAkC;CjCiBnC;;AgCmBH;ElBiBE,YAAW;EmB3Db,0BlCsDgB;CiCVf;;AhCxBC;EcuCA,YAAW;EmBtDT,sBAAqB;EACrB,0BAAkC;CjCiBnC;;AgCmBH;ElBiBE,YAAW;EmB3Db,0BlC+Ee;CiCnCd;;AhCxBC;EcuCA,YAAW;EmBtDT,sBAAqB;EACrB,0BAAkC;CjCiBnC;;AgCmBH;ElBiBE,YAAW;EmB3Db,0BlCiFe;CiCrCd;;AhCxBC;EcuCA,YAAW;EmBtDT,sBAAqB;EACrB,0BAAkC;CjCiBnC;;AgCmBH;ElBeE,YAAW;EmBzDb,0BlC8Ee;CiClCd;;AhCxBC;EcqCA,YAAW;EmBpDT,sBAAqB;EACrB,0BAAkC;CjCiBnC;;AgCmBH;ElBiBE,YAAW;EmB3Db,0BlC4Ee;CiChCd;;AhCxBC;EcuCA,YAAW;EmBtDT,sBAAqB;EACrB,0BAAkC;CjCiBnC;;AgCmBH;ElBeE,YAAW;EmBzDb,0BlCiDgB;CiCLf;;AhCxBC;EcqCA,YAAW;EmBpDT,sBAAqB;EACrB,0BAAkC;CjCiBnC;;AgCmBH;ElBiBE,YAAW;EmB3Db,0BlCwDgB;CiCZf;;AhCxBC;EcuCA,YAAW;EmBtDT,sBAAqB;EACrB,0BAAkC;CjCiBnC;;AkCzBL;EACE,mBAAoD;EACpD,oBnC4lBmC;EmC3lBnC,0BnCiDgB;EMhDd,sBNoN0B;CmC/M7B;;AxB+CG;EwBxDJ;IAOI,mBnCulBiC;GmCrlBpC;CrCkvHA;;AqChvHD;EACE,iBAAgB;EAChB,gBAAe;E7BTb,iB6BUsB;CACzB;;ACXD;EACE,yBpC6sBmC;EoC5sBnC,oBpC6sBgC;EoC5sBhC,8BAA6C;E9BH3C,uBNmN2B;CoC9M9B;;AAGD;EAEE,eAAc;CACf;;AAGD;EACE,kBpC+NqB;CoC9NtB;;AAOD;EAGI,mBAAkB;EAClB,cpCkrBgC;EoCjrBhC,gBpCkrBiC;EoCjrBjC,yBpCirBiC;EoChrBjC,eAAc;CACf;;AASD;EC3CA,etBsFkE;EsBrFlE,0BtBmFuE;EsBlFvE,sBtBkFuE;CqBvCtE;;ACzCD;EACE,0BAAqC;CACtC;;AAED;EACE,eAA0B;CAC3B;;ADiCD;EC3CA,etBsFkE;EsBrFlE,0BtBmFuE;EsBlFvE,sBtBkFuE;CqBvCtE;;ACzCD;EACE,0BAAqC;CACtC;;AAED;EACE,eAA0B;CAC3B;;ADiCD;EC3CA,etBsFkE;EsBrFlE,0BtBmFuE;EsBlFvE,sBtBkFuE;CqBvCtE;;ACzCD;EACE,0BAAqC;CACtC;;AAED;EACE,eAA0B;CAC3B;;ADiCD;EC3CA,etBsFkE;EsBrFlE,0BtBmFuE;EsBlFvE,sBtBkFuE;CqBvCtE;;ACzCD;EACE,0BAAqC;CACtC;;AAED;EACE,eAA0B;CAC3B;;ADiCD;EC3CA,etBsFkE;EsBrFlE,0BtBmFuE;EsBlFvE,sBtBkFuE;CqBvCtE;;ACzCD;EACE,0BAAqC;CACtC;;AAED;EACE,eAA0B;CAC3B;;ADiCD;EC3CA,etBsFkE;EsBrFlE,0BtBmFuE;EsBlFvE,sBtBkFuE;CqBvCtE;;ACzCD;EACE,0BAAqC;CACtC;;AAED;EACE,eAA0B;CAC3B;;ADiCD;EC3CA,etBsFkE;EsBrFlE,0BtBmFuE;EsBlFvE,sBtBkFuE;CqBvCtE;;ACzCD;EACE,0BAAqC;CACtC;;AAED;EACE,eAA0B;CAC3B;;ADiCD;EC3CA,etBsFkE;EsBrFlE,0BtBmFuE;EsBlFvE,sBtBkFuE;CqBvCtE;;ACzCD;EACE,0BAAqC;CACtC;;AAED;EACE,eAA0B;CAC3B;;ACXH;EACE;IAAO,4BAAuC;GxC44H7C;EwC34HD;IAAK,yBAAwB;GxC84H5B;CACF;;AwCj5HD;EACE;IAAO,4BAAuC;GxC44H7C;EwC34HD;IAAK,yBAAwB;GxC84H5B;CACF;;AwC54HD;EACE,qBAAa;EAAb,cAAa;EACb,iBAAgB;EAChB,mBtCotBoC;EsCntBpC,kBtCktBkC;EsCjtBlC,mBAAkB;EAClB,0BtCyCgB;EMhDd,uBNmN2B;CsCzM9B;;AAED;EACE,atC0sBkC;EsCzsBlC,kBtCysBkC;EsCxsBlC,YtC+BW;EsC9BX,0BtCsDe;EOrEX,4BP8tBwC;CsC7sB7C;;AAED;ECWE,sMAA6I;EDT7I,2BtCisBkC;CsChsBnC;;AAED;EACE,2DtCosBgD;UsCpsBhD,mDtCosBgD;CsCnsBjD;;AE/BD;EACE,qBAAa;EAAb,cAAa;EACb,sBAAuB;MAAvB,wBAAuB;CACxB;;AAED;EACE,YAAO;MAAP,QAAO;CACR;;ACHD;EACE,qBAAa;EAAb,cAAa;EACb,2BAAsB;MAAtB,uBAAsB;EAGtB,gBAAe;EACf,iBAAgB;CACjB;;AAQD;EACE,YAAW;EACX,ezCoCgB;EyCnChB,oBAAmB;CAapB;;AxCbG;EwCIA,ezC+Bc;EyC9Bd,sBAAqB;EACrB,0BzCuBc;CC1Bb;;AwCNL;EAaI,ezC2Bc;EyC1Bd,0BzCmBc;CyClBf;;AAQH;EACE,mBAAkB;EAClB,eAAc;EACd,yBzCgsBsC;EyC9rBtC,oBzCsKgB;EyCrKhB,uBzCEW;EyCDX,uCzCWW;CyCiBZ;;AAnCD;EnChCI,gCN6M2B;EM5M3B,iCN4M2B;CyClK5B;;AAXH;EAcI,iBAAgB;EnChChB,oCN+L2B;EM9L3B,mCN8L2B;CyC7J5B;;AxCpCC;EwCuCA,sBAAqB;CxCpCpB;;AwCiBL;EAwBI,ezCVc;EyCWd,uBzCjBS;CyCkBV;;AA1BH;EA8BI,WAAU;EACV,YzCvBS;EyCwBT,0BzCAa;EyCCb,sBzCDa;CyCEd;;AASH;EAEI,gBAAe;EACf,eAAc;EACd,iBAAgB;CACjB;;AALH;EASM,cAAa;CACd;;AAVL;EAeM,iBAAgB;CACjB;;AClGH;EACE,e3BmFgE;E2BlFhE,0B3BgFqE;C2B/EtE;;AAGD;;EAEE,e3B4EgE;C2BhEjE;;AzCDC;;;EyCRE,e3ByE8D;E2BxE9D,0BAAyC;CzCU1C;;AyChBH;;EAUI,YAAW;EACX,0B3BmE8D;E2BlE9D,sB3BkE8D;C2BjE/D;;AAnBH;EACE,e3BmFgE;E2BlFhE,0B3BgFqE;C2B/EtE;;AAGD;;EAEE,e3B4EgE;C2BhEjE;;AzCDC;;;EyCRE,e3ByE8D;E2BxE9D,0BAAyC;CzCU1C;;AyChBH;;EAUI,YAAW;EACX,0B3BmE8D;E2BlE9D,sB3BkE8D;C2BjE/D;;AAnBH;EACE,e3BmFgE;E2BlFhE,0B3BgFqE;C2B/EtE;;AAGD;;EAEE,e3B4EgE;C2BhEjE;;AzCDC;;;EyCRE,e3ByE8D;E2BxE9D,0BAAyC;CzCU1C;;AyChBH;;EAUI,YAAW;EACX,0B3BmE8D;E2BlE9D,sB3BkE8D;C2BjE/D;;AAnBH;EACE,e3BmFgE;E2BlFhE,0B3BgFqE;C2B/EtE;;AAGD;;EAEE,e3B4EgE;C2BhEjE;;AzCDC;;;EyCRE,e3ByE8D;E2BxE9D,0BAAyC;CzCU1C;;AyChBH;;EAUI,YAAW;EACX,0B3BmE8D;E2BlE9D,sB3BkE8D;C2BjE/D;;AAnBH;EACE,e3BmFgE;E2BlFhE,0B3BgFqE;C2B/EtE;;AAGD;;EAEE,e3B4EgE;C2BhEjE;;AzCDC;;;EyCRE,e3ByE8D;E2BxE9D,0BAAyC;CzCU1C;;AyChBH;;EAUI,YAAW;EACX,0B3BmE8D;E2BlE9D,sB3BkE8D;C2BjE/D;;AAnBH;EACE,e3BmFgE;E2BlFhE,0B3BgFqE;C2B/EtE;;AAGD;;EAEE,e3B4EgE;C2BhEjE;;AzCDC;;;EyCRE,e3ByE8D;E2BxE9D,0BAAyC;CzCU1C;;AyChBH;;EAUI,YAAW;EACX,0B3BmE8D;E2BlE9D,sB3BkE8D;C2BjE/D;;AAnBH;EACE,e3BmFgE;E2BlFhE,0B3BgFqE;C2B/EtE;;AAGD;;EAEE,e3B4EgE;C2BhEjE;;AzCDC;;;EyCRE,e3ByE8D;E2BxE9D,0BAAyC;CzCU1C;;AyChBH;;EAUI,YAAW;EACX,0B3BmE8D;E2BlE9D,sB3BkE8D;C2BjE/D;;AAnBH;EACE,e3BmFgE;E2BlFhE,0B3BgFqE;C2B/EtE;;AAGD;;EAEE,e3B4EgE;C2BhEjE;;AzCDC;;;EyCRE,e3ByE8D;E2BxE9D,0BAAyC;CzCU1C;;AyChBH;;EAUI,YAAW;EACX,0B3BmE8D;E2BlE9D,sB3BkE8D;C2BjE/D;;ACtBL;EACE,aAAY;EACZ,kB3CizBiD;E2ChzBjD,kB3C+OqB;E2C9OrB,eAAc;EACd,Y3CuDW;E2CtDX,0B3C4CW;E2C3CX,YAAW;CAOZ;;A1CQG;E0CZA,Y3CkDS;E2CjDT,sBAAqB;EACrB,aAAY;C1CaX;;A0CHL;EACE,WAAU;EACV,wBAAuB;EACvB,UAAS;EACT,yBAAwB;CACzB;;ACpBD;EACE,iBAAgB;CACjB;;AAGD;EACE,gBAAe;EACf,OAAM;EACN,SAAQ;EACR,UAAS;EACT,QAAO;EACP,c5C0f8B;E4Czf9B,cAAa;EACb,iBAAgB;EAGhB,WAAU;CAWX;;AAtBD;ErCPM,4CPqsB8C;EOrsB9C,oCPqsB8C;EOrsB9C,qEPqsB8C;E4C3qBhD,sCAA6B;UAA7B,8BAA6B;CAC9B;;AApBH;EAqByB,mCAA0B;UAA1B,2BAA0B;CAAI;;AAEvD;EACE,mBAAkB;EAClB,iBAAgB;CACjB;;AAGD;EACE,mBAAkB;EAClB,YAAW;EACX,a5CuoBgC;C4CtoBjC;;AAGD;EACE,mBAAkB;EAClB,qBAAa;EAAb,cAAa;EACb,2BAAsB;MAAtB,uBAAsB;EACtB,uB5CFW;E4CGX,6BAA4B;EAC5B,qC5CMW;EMxDT,sBNoN0B;E4C9J5B,WAAU;CACX;;AAGD;EACE,gBAAe;EACf,OAAM;EACN,SAAQ;EACR,UAAS;EACT,QAAO;EACP,c5Cuc8B;E4Ctc9B,uB5CTW;C4CcZ;;AAZD;EAUW,WAAU;CAAK;;AAV1B;EAWW,a5CsnBqB;C4CtnBe;;AAK/C;EACE,qBAAa;EAAb,cAAa;EACb,uBAAmB;MAAnB,oBAAmB;EACnB,uBAA8B;MAA9B,+BAA8B;EAC9B,c5CknBgC;E4CjnBhC,iC5C/BgB;C4CgCjB;;AAGD;EACE,iBAAgB;EAChB,iB5C4JoB;C4C3JrB;;AAID;EACE,mBAAkB;EAGlB,mBAAc;MAAd,eAAc;EACd,c5C8kBgC;C4C7kBjC;;AAGD;EACE,qBAAa;EAAb,cAAa;EACb,uBAAmB;MAAnB,oBAAmB;EACnB,mBAAyB;MAAzB,0BAAyB;EACzB,c5CskBgC;E4CrkBhC,8B5CxDgB;C4C6DjB;;AAVD;EAQyB,oBAAmB;CAAK;;AARjD;EASwB,qBAAoB;CAAK;;AAIjD;EACE,mBAAkB;EAClB,aAAY;EACZ,YAAW;EACX,aAAY;EACZ,iBAAgB;CACjB;;AjClEG;EiCuEF;IACE,iB5CukB+B;I4CtkB/B,kBAAyC;GAC1C;EAMD;IAAY,iB5CgkBqB;G4ChkBG;C9CosIrC;;AapxIG;EiCoFF;IAAY,iB5C0jBqB;G4C1jBG;C9CssIrC;;A+Cj1ID;EACE,mBAAkB;EAClB,c7C2gB8B;E6C1gB9B,eAAc;EACd,U7CynB6B;E8C5nB7B,wG9CuOiH;E8CrOjH,mBAAkB;EAClB,oB9C4OyB;E8C3OzB,iB9C+OoB;E8C9OpB,iBAAgB;EAChB,kBAAiB;EACjB,sBAAqB;EACrB,kBAAiB;EACjB,qBAAoB;EACpB,uBAAsB;EACtB,mBAAkB;EAClB,qBAAoB;EACpB,oBAAmB;EACnB,iBAAgB;EDPhB,oB7CsOsB;E6CpOtB,sBAAqB;EACrB,WAAU;CAoFX;;AA/FD;EAaW,a7C6mBqB;C6C7mBQ;;AAbxC;EAgBI,mBAAkB;EAClB,eAAc;EACd,W7C8mB6B;E6C7mB7B,Y7C8mB6B;C6C7mB9B;;AApBH;EAuBI,eAA+B;CAWhC;;AAlCH;EAyBM,UAAS;CACV;;AA1BL;EA6BM,kBAAuC;EACvC,YAAW;EACX,wBAAyD;EACzD,uB7C2BO;C6C1BR;;AAjCL;EAoCI,e7C4lB6B;C6CjlB9B;;AA/CH;EAsCM,QAAO;CACR;;AAvCL;EA0CM,iBAAsC;EACtC,YAAW;EACX,4BAA8E;EAC9E,yB7CcO;C6CbR;;AA9CL;EAiDI,eAA+B;CAWhC;;AA5DH;EAmDM,OAAM;CACP;;AApDL;EAuDM,kBAAuC;EACvC,YAAW;EACX,wB7CukB2B;E6CtkB3B,0B7CCO;C6CAR;;AA3DL;EA8DI,e7CkkB6B;C6CtjB9B;;AA1EH;EAgEM,SAAQ;CACT;;AAjEL;EAoEM,SAAQ;EACR,iBAAsC;EACtC,YAAW;EACX,4B7CyjB2B;E6CxjB3B,wB7CbO;C6CcR;;AAzEL;EA2FI,mBAAkB;EAClB,0BAAyB;EACzB,oBAAmB;CACpB;;AAIH;EACE,iB7CohBiC;E6CnhBjC,iB7CwhB+B;E6CvhB/B,Y7CpDW;E6CqDX,mBAAkB;EAClB,uB7C5CW;EMxDT,uBNmN2B;C6C7G9B;;AE1GD;EACE,mBAAkB;EAClB,OAAM;EACN,QAAO;EACP,c/CygB8B;E+CxgB9B,eAAc;EACd,iB/CooByC;E+CnoBzC,a/CioBuC;E8CtoBvC,wG9CuOiH;E8CrOjH,mBAAkB;EAClB,oB9C4OyB;E8C3OzB,iB9C+OoB;E8C9OpB,iBAAgB;EAChB,kBAAiB;EACjB,sBAAqB;EACrB,kBAAiB;EACjB,qBAAoB;EACpB,uBAAsB;EACtB,mBAAkB;EAClB,qBAAoB;EACpB,oBAAmB;EACnB,iBAAgB;ECLhB,oB/CoOsB;E+ClOtB,sBAAqB;EACrB,uB/CoCW;E+CnCX,6BAA4B;EAC5B,qC/C4CW;EMxDT,sBNoN0B;C+C5C7B;;AA5KD;EAyBI,mBAAkB;EAClB,eAAc;EACd,Y/C6nBsC;E+C5nBtC,Y/C6nBqC;C+C5nBtC;;AA7BH;;EAiCI,mBAAkB;EAClB,eAAc;EACd,0BAAyB;EACzB,oBAAmB;CACpB;;AArCH;EAwCI,YAAW;EACX,mB/CmnB8D;C+ClnB/D;;AA1CH;EA4CI,YAAW;EACX,mB/C+mB8D;C+C9mB/D;;AA9CH;EAmDI,oB/CqmBsC;C+C/kBvC;;AAzEH;EAsDM,UAAS;CACV;;AAvDL;;EA2DM,uBAAsB;CACvB;;AA5DL;EA+DM,c/C6lB4D;E+C5lB5D,kBAA6C;EAC7C,sC/C4lBmE;C+C3lBpE;;AAlEL;EAqEM,cAAwC;EACxC,kBAA6C;EAC7C,uB/CrBO;C+CsBR;;AAxEL;EA4EI,kB/C4kBsC;C+CvjBvC;;AAjGH;EA+EM,QAAO;CACR;;AAhFL;;EAoFM,iBAA4C;EAC5C,qBAAoB;CACrB;;AAtFL;EAyFM,Y/CmkB4D;E+ClkB5D,wC/CmkBmE;C+ClkBpE;;AA3FL;EA8FM,YAAsC;EACtC,yB/C7CO;C+C8CR;;AAhGL;EAoGI,iB/CojBsC;C+CnhBvC;;AArIH;EAuGM,OAAM;CACP;;AAxGL;;EA4GM,kBAAuC;EACvC,oBAAmB;CACpB;;AA9GL;EAiHM,W/C2iB4D;E+C1iB5D,yC/C2iBmE;C+C1iBpE;;AAnHL;EAsHM,WAAqC;EACrC,0B/CrEO;C+CsER;;AAxHL;EA4HM,mBAAkB;EAClB,OAAM;EACN,UAAS;EACT,eAAc;EACd,YAAW;EACX,mBAAkB;EAClB,YAAW;EACX,iC/C4gBwD;C+C3gBzD;;AApIL;EAwII,mB/CghBsC;C+C3fvC;;AA7JH;EA2IM,SAAQ;CACT;;AA5IL;;EAgJM,iBAA4C;EAC5C,sBAAqB;CACtB;;AAlJL;EAqJM,a/CugB4D;E+CtgB5D,uC/CugBmE;C+CtgBpE;;AAvJL;EA0JM,aAAuC;EACvC,wB/CzGO;C+C0GR;;AAoBL;EACE,kB/CieyC;E+ChezC,iBAAgB;EAChB,gB/C0DmB;E+CzDnB,e/C8E8B;E+C7E9B,0B/C0d4D;E+Czd5D,iCAAyE;EzC5KvE,2CyC6KyE;EzC5KzE,4CyC4KyE;CAM5E;;AAbD;EAWI,cAAa;CACd;;AAGH;EACE,kB/CsdqC;E+CrdrC,e/CtIgB;C+CuIjB;;ACjMD;EACE,mBAAkB;CACnB;;AAED;EACE,mBAAkB;EAClB,YAAW;EACX,iBAAgB;CACjB;;AAED;EACE,mBAAkB;EAClB,cAAa;EACb,uBAAmB;MAAnB,oBAAmB;EACnB,YAAW;EzCVP,wCPyyB4C;EOzyB5C,gCPyyB4C;EOzyB5C,6DPyyB4C;EgD7xBhD,oCAA2B;UAA3B,4BAA2B;EAC3B,4BAAmB;UAAnB,oBAAmB;CACpB;;AAED;;;EAGE,eAAc;CACf;;AAED;;EAEE,mBAAkB;EAClB,OAAM;CACP;;AAGD;;EAEE,iCAAwB;UAAxB,yBAAwB;CAKzB;;AAHyC;EAJ1C;;IAKI,wCAA+B;YAA/B,gCAA+B;GAElC;ClD2nJA;;AkDznJD;;EAEE,oCAA2B;UAA3B,4BAA2B;CAK5B;;AAHyC;EAJ1C;;IAKI,2CAAkC;YAAlC,mCAAkC;GAErC;ClD8nJA;;AkD5nJD;;EAEE,qCAA4B;UAA5B,6BAA4B;CAK7B;;AAHyC;EAJ1C;;IAKI,4CAAmC;YAAnC,oCAAmC;GAEtC;ClDioJA;;AkD1nJD;;EAEE,mBAAkB;EAClB,OAAM;EACN,UAAS;EAET,qBAAa;EAAb,cAAa;EACb,uBAAmB;MAAnB,oBAAmB;EACnB,sBAAuB;MAAvB,wBAAuB;EACvB,WhDmtB+C;EgDltB/C,YhD1BW;EgD2BX,mBAAkB;EAClB,ahDitB8C;CgDtsB/C;;A/CnEG;;;E+C8DA,YhDlCS;EgDmCT,sBAAqB;EACrB,WAAU;EACV,YAAW;C/C9DV;;A+CiEL;EACE,QAAO;CACR;;AACD;EACE,SAAQ;CACT;;AAGD;;EAEE,sBAAqB;EACrB,YhDosBgD;EgDnsBhD,ahDmsBgD;EgDlsBhD,gDAA+C;EAC/C,2BAA0B;CAC3B;;AACD;EACE,8MjC/DyI;CiCgE1I;;AACD;EACE,gNjClEyI;CiCmE1I;;AAQD;EACE,mBAAkB;EAClB,SAAQ;EACR,aAAY;EACZ,QAAO;EACP,YAAW;EACX,qBAAa;EAAb,cAAa;EACb,sBAAuB;MAAvB,wBAAuB;EACvB,gBAAe;EAEf,kBhD6pB+C;EgD5pB/C,iBhD4pB+C;EgD3pB/C,iBAAgB;CAoCjB;;AAhDD;EAeI,mBAAkB;EAClB,mBAAc;MAAd,eAAc;EACd,YhDypB8C;EgDxpB9C,YhDypB6C;EgDxpB7C,kBhDypB6C;EgDxpB7C,iBhDwpB6C;EgDvpB7C,oBAAmB;EACnB,2ChD3FS;CgDgHV;;AA3CH;EA0BM,mBAAkB;EAClB,WAAU;EACV,QAAO;EACP,sBAAqB;EACrB,YAAW;EACX,aAAY;EACZ,YAAW;CACZ;;AAjCL;EAmCM,mBAAkB;EAClB,cAAa;EACb,QAAO;EACP,sBAAqB;EACrB,YAAW;EACX,aAAY;EACZ,YAAW;CACZ;;AA1CL;EA8CI,uBhDnHS;CgDoHV;;AAQH;EACE,mBAAkB;EAClB,WAA6C;EAC7C,aAAY;EACZ,UAA4C;EAC5C,YAAW;EACX,kBAAiB;EACjB,qBAAoB;EACpB,YhDpIW;EgDqIX,mBAAkB;CACnB;;ACxLD;EAAqB,oCAAmC;CAAK;;AAC7D;EAAqB,+BAA8B;CAAK;;AACxD;EAAqB,kCAAiC;CAAK;;AAC3D;EAAqB,kCAAiC;CAAK;;AAC3D;EAAqB,uCAAsC;CAAK;;AAChE;EAAqB,oCAAmC;CAAK;;ACF3D;EACE,qCAAmC;CACpC;;AjDiBC;EiDdE,qCAAgD;CjDiBjD;;AiDtBH;EACE,qCAAmC;CACpC;;AjDiBC;EiDdE,qCAAgD;CjDiBjD;;AiDtBH;EACE,qCAAmC;CACpC;;AjDiBC;EiDdE,qCAAgD;CjDiBjD;;AiDtBH;EACE,qCAAmC;CACpC;;AjDiBC;EiDdE,qCAAgD;CjDiBjD;;AiDtBH;EACE,qCAAmC;CACpC;;AjDiBC;EiDdE,qCAAgD;CjDiBjD;;AiDtBH;EACE,qCAAmC;CACpC;;AjDiBC;EiDdE,qCAAgD;CjDiBjD;;AiDtBH;EACE,qCAAmC;CACpC;;AjDiBC;EiDdE,qCAAgD;CjDiBjD;;AiDtBH;EACE,qCAAmC;CACpC;;AjDiBC;EiDdE,qCAAgD;CjDiBjD;;AkDrBL;EAAY,kCAAmC;CAAI;;AACnD;EAAkB,yCAAwC;CAAK;;ACD/D;EAAmB,qCAAsC;CAAI;;AAC7D;EAAmB,qBAAoB;CAAK;;AAC5C;EAAmB,yBAAwB;CAAK;;AAChD;EAAmB,2BAA0B;CAAK;;AAClD;EAAmB,4BAA2B;CAAK;;AACnD;EAAmB,0BAAyB;CAAK;;AAG/C;EACE,iCAA+B;CAChC;;AAFD;EACE,iCAA+B;CAChC;;AAFD;EACE,iCAA+B;CAChC;;AAFD;EACE,iCAA+B;CAChC;;AAFD;EACE,iCAA+B;CAChC;;AAFD;EACE,iCAA+B;CAChC;;AAFD;EACE,iCAA+B;CAChC;;AAFD;EACE,iCAA+B;CAChC;;AAGH;EACE,8BAA+B;CAChC;;AAMD;EACE,kCAAwC;CACzC;;AACD;EACE,2CAAiD;EACjD,4CAAkD;CACnD;;AACD;EACE,4CAAkD;EAClD,+CAAqD;CACtD;;AACD;EACE,+CAAqD;EACrD,8CAAoD;CACrD;;AACD;EACE,2CAAiD;EACjD,8CAAoD;CACrD;;AAED;EACE,mBAAkB;CACnB;;AAED;EACE,iBAAgB;CACjB;;AtBlDC;EACE,eAAc;EACd,YAAW;EACX,YAAW;CACZ;;AuBGC;EAA2B,yBAAwB;CAAK;;AACxD;EAA2B,2BAA0B;CAAK;;AAC1D;EAA2B,iCAAgC;CAAK;;AAChE;EAA2B,0BAAyB;CAAK;;AACzD;EAA2B,0BAAyB;CAAK;;AACzD;EAA2B,+BAA8B;CAAK;;AAC9D;EAA2B,gCAAwB;EAAxB,yBAAwB;CAAK;;AACxD;EAA2B,uCAA+B;EAA/B,gCAA+B;CAAK;;A1CyC/D;E0ChDA;IAA2B,yBAAwB;GAAK;EACxD;IAA2B,2BAA0B;GAAK;EAC1D;IAA2B,iCAAgC;GAAK;EAChE;IAA2B,0BAAyB;GAAK;EACzD;IAA2B,0BAAyB;GAAK;EACzD;IAA2B,+BAA8B;GAAK;EAC9D;IAA2B,gCAAwB;IAAxB,yBAAwB;GAAK;EACxD;IAA2B,uCAA+B;IAA/B,gCAA+B;GAAK;CvDuhKlE;;Aa9+JG;E0ChDA;IAA2B,yBAAwB;GAAK;EACxD;IAA2B,2BAA0B;GAAK;EAC1D;IAA2B,iCAAgC;GAAK;EAChE;IAA2B,0BAAyB;GAAK;EACzD;IAA2B,0BAAyB;GAAK;EACzD;IAA2B,+BAA8B;GAAK;EAC9D;IAA2B,gCAAwB;IAAxB,yBAAwB;GAAK;EACxD;IAA2B,uCAA+B;IAA/B,gCAA+B;GAAK;CvDkjKlE;;AazgKG;E0ChDA;IAA2B,yBAAwB;GAAK;EACxD;IAA2B,2BAA0B;GAAK;EAC1D;IAA2B,iCAAgC;GAAK;EAChE;IAA2B,0BAAyB;GAAK;EACzD;IAA2B,0BAAyB;GAAK;EACzD;IAA2B,+BAA8B;GAAK;EAC9D;IAA2B,gCAAwB;IAAxB,yBAAwB;GAAK;EACxD;IAA2B,uCAA+B;IAA/B,gCAA+B;GAAK;CvD6kKlE;;AapiKG;E0ChDA;IAA2B,yBAAwB;GAAK;EACxD;IAA2B,2BAA0B;GAAK;EAC1D;IAA2B,iCAAgC;GAAK;EAChE;IAA2B,0BAAyB;GAAK;EACzD;IAA2B,0BAAyB;GAAK;EACzD;IAA2B,+BAA8B;GAAK;EAC9D;IAA2B,gCAAwB;IAAxB,yBAAwB;GAAK;EACxD;IAA2B,uCAA+B;IAA/B,gCAA+B;GAAK;CvDwmKlE;;AuD/lKD;EACE,yBAAwB;CAKzB;;AAHC;EAHF;IAII,0BAAyB;GAE5B;CvDmmKA;;AuDjmKD;EACE,yBAAwB;CAKzB;;AAHC;EAHF;IAII,2BAA0B;GAE7B;CvDqmKA;;AuDnmKD;EACE,yBAAwB;CAKzB;;AAHC;EAHF;IAII,iCAAgC;GAEnC;CvDumKA;;AuDpmKC;EADF;IAEI,yBAAwB;GAE3B;CvDumKA;;AwDzpKD;EACE,mBAAkB;EAClB,eAAc;EACd,YAAW;EACX,WAAU;EACV,iBAAgB;CAoBjB;;AAzBD;EAQI,eAAc;EACd,YAAW;CACZ;;AAVH;;;;;EAiBI,mBAAkB;EAClB,OAAM;EACN,UAAS;EACT,QAAO;EACP,YAAW;EACX,aAAY;EACZ,UAAS;CACV;;AAGH;EAEI,wBAA+B;CAChC;;AAGH;EAEI,oBAA+B;CAChC;;AAGH;EAEI,iBAA8B;CAC/B;;AAGH;EAEI,kBAA8B;CAC/B;;AC1CC;EAAgC,mCAA8B;MAA9B,+BAA8B;CAAK;;AACnE;EAAgC,sCAAiC;MAAjC,kCAAiC;CAAK;;AACtE;EAAgC,2CAAsC;MAAtC,uCAAsC;CAAK;;AAC3E;EAAgC,8CAAyC;MAAzC,0CAAyC;CAAK;;AAE9E;EAA8B,+BAA0B;MAA1B,2BAA0B;CAAK;;AAC7D;EAA8B,iCAA4B;MAA5B,6BAA4B;CAAK;;AAC/D;EAA8B,uCAAkC;MAAlC,mCAAkC;CAAK;;AAErE;EAAoC,gCAAsC;MAAtC,uCAAsC;CAAK;;AAC/E;EAAoC,8BAAoC;MAApC,qCAAoC;CAAK;;AAC7E;EAAoC,iCAAkC;MAAlC,mCAAkC;CAAK;;AAC3E;EAAoC,kCAAyC;MAAzC,0CAAyC;CAAK;;AAClF;EAAoC,qCAAwC;MAAxC,yCAAwC;CAAK;;AAEjF;EAAiC,iCAAkC;MAAlC,mCAAkC;CAAK;;AACxE;EAAiC,+BAAgC;MAAhC,iCAAgC;CAAK;;AACtE;EAAiC,kCAA8B;MAA9B,+BAA8B;CAAK;;AACpE;EAAiC,oCAAgC;MAAhC,iCAAgC;CAAK;;AACtE;EAAiC,mCAA+B;MAA/B,gCAA+B;CAAK;;AAErE;EAAkC,qCAAoC;MAApC,qCAAoC;CAAK;;AAC3E;EAAkC,mCAAkC;MAAlC,mCAAkC;CAAK;;AACzE;EAAkC,sCAAgC;MAAhC,iCAAgC;CAAK;;AACvE;EAAkC,uCAAuC;MAAvC,wCAAuC;CAAK;;AAC9E;EAAkC,0CAAsC;MAAtC,uCAAsC;CAAK;;AAC7E;EAAkC,uCAAiC;MAAjC,kCAAiC;CAAK;;AAExE;EAAgC,qCAA2B;MAA3B,4BAA2B;CAAK;;AAChE;EAAgC,sCAAiC;MAAjC,kCAAiC;CAAK;;AACtE;EAAgC,oCAA+B;MAA/B,gCAA+B;CAAK;;AACpE;EAAgC,uCAA6B;MAA7B,8BAA6B;CAAK;;AAClE;EAAgC,yCAA+B;MAA/B,gCAA+B;CAAK;;AACpE;EAAgC,wCAA8B;MAA9B,+BAA8B;CAAK;;A5CenE;E4ChDA;IAAgC,mCAA8B;QAA9B,+BAA8B;GAAK;EACnE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,2CAAsC;QAAtC,uCAAsC;GAAK;EAC3E;IAAgC,8CAAyC;QAAzC,0CAAyC;GAAK;EAE9E;IAA8B,+BAA0B;QAA1B,2BAA0B;GAAK;EAC7D;IAA8B,iCAA4B;QAA5B,6BAA4B;GAAK;EAC/D;IAA8B,uCAAkC;QAAlC,mCAAkC;GAAK;EAErE;IAAoC,gCAAsC;QAAtC,uCAAsC;GAAK;EAC/E;IAAoC,8BAAoC;QAApC,qCAAoC;GAAK;EAC7E;IAAoC,iCAAkC;QAAlC,mCAAkC;GAAK;EAC3E;IAAoC,kCAAyC;QAAzC,0CAAyC;GAAK;EAClF;IAAoC,qCAAwC;QAAxC,yCAAwC;GAAK;EAEjF;IAAiC,iCAAkC;QAAlC,mCAAkC;GAAK;EACxE;IAAiC,+BAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,kCAA8B;QAA9B,+BAA8B;GAAK;EACpE;IAAiC,oCAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,mCAA+B;QAA/B,gCAA+B;GAAK;EAErE;IAAkC,qCAAoC;QAApC,qCAAoC;GAAK;EAC3E;IAAkC,mCAAkC;QAAlC,mCAAkC;GAAK;EACzE;IAAkC,sCAAgC;QAAhC,iCAAgC;GAAK;EACvE;IAAkC,uCAAuC;QAAvC,wCAAuC;GAAK;EAC9E;IAAkC,0CAAsC;QAAtC,uCAAsC;GAAK;EAC7E;IAAkC,uCAAiC;QAAjC,kCAAiC;GAAK;EAExE;IAAgC,qCAA2B;QAA3B,4BAA2B;GAAK;EAChE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,oCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,uCAA6B;QAA7B,8BAA6B;GAAK;EAClE;IAAgC,yCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,wCAA8B;QAA9B,+BAA8B;GAAK;CzD22KtE;;Aa51KG;E4ChDA;IAAgC,mCAA8B;QAA9B,+BAA8B;GAAK;EACnE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,2CAAsC;QAAtC,uCAAsC;GAAK;EAC3E;IAAgC,8CAAyC;QAAzC,0CAAyC;GAAK;EAE9E;IAA8B,+BAA0B;QAA1B,2BAA0B;GAAK;EAC7D;IAA8B,iCAA4B;QAA5B,6BAA4B;GAAK;EAC/D;IAA8B,uCAAkC;QAAlC,mCAAkC;GAAK;EAErE;IAAoC,gCAAsC;QAAtC,uCAAsC;GAAK;EAC/E;IAAoC,8BAAoC;QAApC,qCAAoC;GAAK;EAC7E;IAAoC,iCAAkC;QAAlC,mCAAkC;GAAK;EAC3E;IAAoC,kCAAyC;QAAzC,0CAAyC;GAAK;EAClF;IAAoC,qCAAwC;QAAxC,yCAAwC;GAAK;EAEjF;IAAiC,iCAAkC;QAAlC,mCAAkC;GAAK;EACxE;IAAiC,+BAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,kCAA8B;QAA9B,+BAA8B;GAAK;EACpE;IAAiC,oCAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,mCAA+B;QAA/B,gCAA+B;GAAK;EAErE;IAAkC,qCAAoC;QAApC,qCAAoC;GAAK;EAC3E;IAAkC,mCAAkC;QAAlC,mCAAkC;GAAK;EACzE;IAAkC,sCAAgC;QAAhC,iCAAgC;GAAK;EACvE;IAAkC,uCAAuC;QAAvC,wCAAuC;GAAK;EAC9E;IAAkC,0CAAsC;QAAtC,uCAAsC;GAAK;EAC7E;IAAkC,uCAAiC;QAAjC,kCAAiC;GAAK;EAExE;IAAgC,qCAA2B;QAA3B,4BAA2B;GAAK;EAChE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,oCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,uCAA6B;QAA7B,8BAA6B;GAAK;EAClE;IAAgC,yCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,wCAA8B;QAA9B,+BAA8B;GAAK;CzDq8KtE;;Aat7KG;E4ChDA;IAAgC,mCAA8B;QAA9B,+BAA8B;GAAK;EACnE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,2CAAsC;QAAtC,uCAAsC;GAAK;EAC3E;IAAgC,8CAAyC;QAAzC,0CAAyC;GAAK;EAE9E;IAA8B,+BAA0B;QAA1B,2BAA0B;GAAK;EAC7D;IAA8B,iCAA4B;QAA5B,6BAA4B;GAAK;EAC/D;IAA8B,uCAAkC;QAAlC,mCAAkC;GAAK;EAErE;IAAoC,gCAAsC;QAAtC,uCAAsC;GAAK;EAC/E;IAAoC,8BAAoC;QAApC,qCAAoC;GAAK;EAC7E;IAAoC,iCAAkC;QAAlC,mCAAkC;GAAK;EAC3E;IAAoC,kCAAyC;QAAzC,0CAAyC;GAAK;EAClF;IAAoC,qCAAwC;QAAxC,yCAAwC;GAAK;EAEjF;IAAiC,iCAAkC;QAAlC,mCAAkC;GAAK;EACxE;IAAiC,+BAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,kCAA8B;QAA9B,+BAA8B;GAAK;EACpE;IAAiC,oCAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,mCAA+B;QAA/B,gCAA+B;GAAK;EAErE;IAAkC,qCAAoC;QAApC,qCAAoC;GAAK;EAC3E;IAAkC,mCAAkC;QAAlC,mCAAkC;GAAK;EACzE;IAAkC,sCAAgC;QAAhC,iCAAgC;GAAK;EACvE;IAAkC,uCAAuC;QAAvC,wCAAuC;GAAK;EAC9E;IAAkC,0CAAsC;QAAtC,uCAAsC;GAAK;EAC7E;IAAkC,uCAAiC;QAAjC,kCAAiC;GAAK;EAExE;IAAgC,qCAA2B;QAA3B,4BAA2B;GAAK;EAChE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,oCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,uCAA6B;QAA7B,8BAA6B;GAAK;EAClE;IAAgC,yCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,wCAA8B;QAA9B,+BAA8B;GAAK;CzD+hLtE;;AahhLG;E4ChDA;IAAgC,mCAA8B;QAA9B,+BAA8B;GAAK;EACnE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,2CAAsC;QAAtC,uCAAsC;GAAK;EAC3E;IAAgC,8CAAyC;QAAzC,0CAAyC;GAAK;EAE9E;IAA8B,+BAA0B;QAA1B,2BAA0B;GAAK;EAC7D;IAA8B,iCAA4B;QAA5B,6BAA4B;GAAK;EAC/D;IAA8B,uCAAkC;QAAlC,mCAAkC;GAAK;EAErE;IAAoC,gCAAsC;QAAtC,uCAAsC;GAAK;EAC/E;IAAoC,8BAAoC;QAApC,qCAAoC;GAAK;EAC7E;IAAoC,iCAAkC;QAAlC,mCAAkC;GAAK;EAC3E;IAAoC,kCAAyC;QAAzC,0CAAyC;GAAK;EAClF;IAAoC,qCAAwC;QAAxC,yCAAwC;GAAK;EAEjF;IAAiC,iCAAkC;QAAlC,mCAAkC;GAAK;EACxE;IAAiC,+BAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,kCAA8B;QAA9B,+BAA8B;GAAK;EACpE;IAAiC,oCAAgC;QAAhC,iCAAgC;GAAK;EACtE;IAAiC,mCAA+B;QAA/B,gCAA+B;GAAK;EAErE;IAAkC,qCAAoC;QAApC,qCAAoC;GAAK;EAC3E;IAAkC,mCAAkC;QAAlC,mCAAkC;GAAK;EACzE;IAAkC,sCAAgC;QAAhC,iCAAgC;GAAK;EACvE;IAAkC,uCAAuC;QAAvC,wCAAuC;GAAK;EAC9E;IAAkC,0CAAsC;QAAtC,uCAAsC;GAAK;EAC7E;IAAkC,uCAAiC;QAAjC,kCAAiC;GAAK;EAExE;IAAgC,qCAA2B;QAA3B,4BAA2B;GAAK;EAChE;IAAgC,sCAAiC;QAAjC,kCAAiC;GAAK;EACtE;IAAgC,oCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,uCAA6B;QAA7B,8BAA6B;GAAK;EAClE;IAAgC,yCAA+B;QAA/B,gCAA+B;GAAK;EACpE;IAAgC,wCAA8B;QAA9B,+BAA8B;GAAK;CzDynLtE;;A0D9pLG;ECHF,uBAAsB;CDG2B;;AAC/C;ECDF,wBAAuB;CDC2B;;AAChD;ECCF,uBAAsB;CDD2B;;A7CkD/C;E6CpDA;ICHF,uBAAsB;GDG2B;EAC/C;ICDF,wBAAuB;GDC2B;EAChD;ICCF,uBAAsB;GDD2B;C1DorLlD;;AaloLG;E6CpDA;ICHF,uBAAsB;GDG2B;EAC/C;ICDF,wBAAuB;GDC2B;EAChD;ICCF,uBAAsB;GDD2B;C1DgsLlD;;Aa9oLG;E6CpDA;ICHF,uBAAsB;GDG2B;EAC/C;ICDF,wBAAuB;GDC2B;EAChD;ICCF,uBAAsB;GDD2B;C1D4sLlD;;Aa1pLG;E6CpDA;ICHF,uBAAsB;GDG2B;EAC/C;ICDF,wBAAuB;GDC2B;EAChD;ICCF,uBAAsB;GDD2B;C1DwtLlD;;A4D5tLD;EACE,gBAAe;EACf,OAAM;EACN,SAAQ;EACR,QAAO;EACP,c1DmgB8B;C0DlgB/B;;AAED;EACE,gBAAe;EACf,SAAQ;EACR,UAAS;EACT,QAAO;EACP,c1D2f8B;C0D1f/B;;AAG6B;EAD9B;IAEI,yBAAgB;IAAhB,iBAAgB;IAChB,OAAM;IACN,c1Dmf4B;G0Djf/B;C5D8tLA;;A6DlvLD;ECEE,mBAAkB;EAClB,WAAU;EACV,YAAW;EACX,WAAU;EACV,iBAAgB;EAChB,uBAAmB;EACnB,oBAAmB;EACnB,8BAAqB;UAArB,sBAAqB;EACrB,UAAS;CDRV;;ACkBC;EAEE,iBAAgB;EAChB,YAAW;EACX,aAAY;EACZ,kBAAiB;EACjB,WAAU;EACV,oBAAmB;EACnB,wBAAe;UAAf,gBAAe;CAChB;;AC7BC;EAAuB,sBAA4B;CAAI;;AAAvD;EAAuB,sBAA4B;CAAI;;AAAvD;EAAuB,sBAA4B;CAAI;;AAAvD;EAAuB,uBAA4B;CAAI;;AAAvD;EAAuB,uBAA4B;CAAI;;AAAvD;EAAuB,uBAA4B;CAAI;;AAAvD;EAAuB,uBAA4B;CAAI;;AAAvD;EAAuB,wBAA4B;CAAI;;AAI3D;EAAU,2BAA0B;CAAK;;AACzC;EAAU,4BAA2B;CAAK;;ACAlC;EAAiC,qBAAmC;CAAI;;AACxE;EAAiC,yBAAuC;CAAI;;AAC5E;EAAiC,2BAAyC;CAAI;;AAC9E;EAAiC,4BAA0C;CAAI;;AAC/E;EAAiC,0BAAwC;CAAI;;AAC7E;EACE,2BAAwC;EACxC,0BAAuC;CACxC;;AACD;EACE,yBAAuC;EACvC,4BAA0C;CAC3C;;AAZD;EAAiC,2BAAmC;CAAI;;AACxE;EAAiC,+BAAuC;CAAI;;AAC5E;EAAiC,iCAAyC;CAAI;;AAC9E;EAAiC,kCAA0C;CAAI;;AAC/E;EAAiC,gCAAwC;CAAI;;AAC7E;EACE,iCAAwC;EACxC,gCAAuC;CACxC;;AACD;EACE,+BAAuC;EACvC,kCAA0C;CAC3C;;AAZD;EAAiC,0BAAmC;CAAI;;AACxE;EAAiC,8BAAuC;CAAI;;AAC5E;EAAiC,gCAAyC;CAAI;;AAC9E;EAAiC,iCAA0C;CAAI;;AAC/E;EAAiC,+BAAwC;CAAI;;AAC7E;EACE,gCAAwC;EACxC,+BAAuC;CACxC;;AACD;EACE,8BAAuC;EACvC,iCAA0C;CAC3C;;AAZD;EAAiC,wBAAmC;CAAI;;AACxE;EAAiC,4BAAuC;CAAI;;AAC5E;EAAiC,8BAAyC;CAAI;;AAC9E;EAAiC,+BAA0C;CAAI;;AAC/E;EAAiC,6BAAwC;CAAI;;AAC7E;EACE,8BAAwC;EACxC,6BAAuC;CACxC;;AACD;EACE,4BAAuC;EACvC,+BAA0C;CAC3C;;AAZD;EAAiC,0BAAmC;CAAI;;AACxE;EAAiC,8BAAuC;CAAI;;AAC5E;EAAiC,gCAAyC;CAAI;;AAC9E;EAAiC,iCAA0C;CAAI;;AAC/E;EAAiC,+BAAwC;CAAI;;AAC7E;EACE,gCAAwC;EACxC,+BAAuC;CACxC;;AACD;EACE,8BAAuC;EACvC,iCAA0C;CAC3C;;AAZD;EAAiC,wBAAmC;CAAI;;AACxE;EAAiC,4BAAuC;CAAI;;AAC5E;EAAiC,8BAAyC;CAAI;;AAC9E;EAAiC,+BAA0C;CAAI;;AAC/E;EAAiC,6BAAwC;CAAI;;AAC7E;EACE,8BAAwC;EACxC,6BAAuC;CACxC;;AACD;EACE,4BAAuC;EACvC,+BAA0C;CAC3C;;AAZD;EAAiC,sBAAmC;CAAI;;AACxE;EAAiC,0BAAuC;CAAI;;AAC5E;EAAiC,4BAAyC;CAAI;;AAC9E;EAAiC,6BAA0C;CAAI;;AAC/E;EAAiC,2BAAwC;CAAI;;AAC7E;EACE,4BAAwC;EACxC,2BAAuC;CACxC;;AACD;EACE,0BAAuC;EACvC,6BAA0C;CAC3C;;AAZD;EAAiC,4BAAmC;CAAI;;AACxE;EAAiC,gCAAuC;CAAI;;AAC5E;EAAiC,kCAAyC;CAAI;;AAC9E;EAAiC,mCAA0C;CAAI;;AAC/E;EAAiC,iCAAwC;CAAI;;AAC7E;EACE,kCAAwC;EACxC,iCAAuC;CACxC;;AACD;EACE,gCAAuC;EACvC,mCAA0C;CAC3C;;AAZD;EAAiC,2BAAmC;CAAI;;AACxE;EAAiC,+BAAuC;CAAI;;AAC5E;EAAiC,iCAAyC;CAAI;;AAC9E;EAAiC,kCAA0C;CAAI;;AAC/E;EAAiC,gCAAwC;CAAI;;AAC7E;EACE,iCAAwC;EACxC,gCAAuC;CACxC;;AACD;EACE,+BAAuC;EACvC,kCAA0C;CAC3C;;AAZD;EAAiC,yBAAmC;CAAI;;AACxE;EAAiC,6BAAuC;CAAI;;AAC5E;EAAiC,+BAAyC;CAAI;;AAC9E;EAAiC,gCAA0C;CAAI;;AAC/E;EAAiC,8BAAwC;CAAI;;AAC7E;EACE,+BAAwC;EACxC,8BAAuC;CACxC;;AACD;EACE,6BAAuC;EACvC,gCAA0C;CAC3C;;AAZD;EAAiC,2BAAmC;CAAI;;AACxE;EAAiC,+BAAuC;CAAI;;AAC5E;EAAiC,iCAAyC;CAAI;;AAC9E;EAAiC,kCAA0C;CAAI;;AAC/E;EAAiC,gCAAwC;CAAI;;AAC7E;EACE,iCAAwC;EACxC,gCAAuC;CACxC;;AACD;EACE,+BAAuC;EACvC,kCAA0C;CAC3C;;AAZD;EAAiC,yBAAmC;CAAI;;AACxE;EAAiC,6BAAuC;CAAI;;AAC5E;EAAiC,+BAAyC;CAAI;;AAC9E;EAAiC,gCAA0C;CAAI;;AAC/E;EAAiC,8BAAwC;CAAI;;AAC7E;EACE,+BAAwC;EACxC,8BAAuC;CACxC;;AACD;EACE,6BAAuC;EACvC,gCAA0C;CAC3C;;AAKL;EAAoB,wBAA8B;CAAK;;AACvD;EAAoB,4BAA8B;CAAK;;AACvD;EAAoB,8BAA8B;CAAK;;AACvD;EAAoB,+BAA8B;CAAK;;AACvD;EAAoB,6BAA8B;CAAK;;AACvD;EACE,8BAA6B;EAC7B,6BAA6B;CAC9B;;AACD;EACE,4BAA8B;EAC9B,+BAA8B;CAC/B;;AnDkBD;EmD/CI;IAAiC,qBAAmC;GAAI;EACxE;IAAiC,yBAAuC;GAAI;EAC5E;IAAiC,2BAAyC;GAAI;EAC9E;IAAiC,4BAA0C;GAAI;EAC/E;IAAiC,0BAAwC;GAAI;EAC7E;IACE,2BAAwC;IACxC,0BAAuC;GACxC;EACD;IACE,yBAAuC;IACvC,4BAA0C;GAC3C;EAZD;IAAiC,2BAAmC;GAAI;EACxE;IAAiC,+BAAuC;GAAI;EAC5E;IAAiC,iCAAyC;GAAI;EAC9E;IAAiC,kCAA0C;GAAI;EAC/E;IAAiC,gCAAwC;GAAI;EAC7E;IACE,iCAAwC;IACxC,gCAAuC;GACxC;EACD;IACE,+BAAuC;IACvC,kCAA0C;GAC3C;EAZD;IAAiC,0BAAmC;GAAI;EACxE;IAAiC,8BAAuC;GAAI;EAC5E;IAAiC,gCAAyC;GAAI;EAC9E;IAAiC,iCAA0C;GAAI;EAC/E;IAAiC,+BAAwC;GAAI;EAC7E;IACE,gCAAwC;IACxC,+BAAuC;GACxC;EACD;IACE,8BAAuC;IACvC,iCAA0C;GAC3C;EAZD;IAAiC,wBAAmC;GAAI;EACxE;IAAiC,4BAAuC;GAAI;EAC5E;IAAiC,8BAAyC;GAAI;EAC9E;IAAiC,+BAA0C;GAAI;EAC/E;IAAiC,6BAAwC;GAAI;EAC7E;IACE,8BAAwC;IACxC,6BAAuC;GACxC;EACD;IACE,4BAAuC;IACvC,+BAA0C;GAC3C;EAZD;IAAiC,0BAAmC;GAAI;EACxE;IAAiC,8BAAuC;GAAI;EAC5E;IAAiC,gCAAyC;GAAI;EAC9E;IAAiC,iCAA0C;GAAI;EAC/E;IAAiC,+BAAwC;GAAI;EAC7E;IACE,gCAAwC;IACxC,+BAAuC;GACxC;EACD;IACE,8BAAuC;IACvC,iCAA0C;GAC3C;EAZD;IAAiC,wBAAmC;GAAI;EACxE;IAAiC,4BAAuC;GAAI;EAC5E;IAAiC,8BAAyC;GAAI;EAC9E;IAAiC,+BAA0C;GAAI;EAC/E;IAAiC,6BAAwC;GAAI;EAC7E;IACE,8BAAwC;IACxC,6BAAuC;GACxC;EACD;IACE,4BAAuC;IACvC,+BAA0C;GAC3C;EAZD;IAAiC,sBAAmC;GAAI;EACxE;IAAiC,0BAAuC;GAAI;EAC5E;IAAiC,4BAAyC;GAAI;EAC9E;IAAiC,6BAA0C;GAAI;EAC/E;IAAiC,2BAAwC;GAAI;EAC7E;IACE,4BAAwC;IACxC,2BAAuC;GACxC;EACD;IACE,0BAAuC;IACvC,6BAA0C;GAC3C;EAZD;IAAiC,4BAAmC;GAAI;EACxE;IAAiC,gCAAuC;GAAI;EAC5E;IAAiC,kCAAyC;GAAI;EAC9E;IAAiC,mCAA0C;GAAI;EAC/E;IAAiC,iCAAwC;GAAI;EAC7E;IACE,kCAAwC;IACxC,iCAAuC;GACxC;EACD;IACE,gCAAuC;IACvC,mCAA0C;GAC3C;EAZD;IAAiC,2BAAmC;GAAI;EACxE;IAAiC,+BAAuC;GAAI;EAC5E;IAAiC,iCAAyC;GAAI;EAC9E;IAAiC,kCAA0C;GAAI;EAC/E;IAAiC,gCAAwC;GAAI;EAC7E;IACE,iCAAwC;IACxC,gCAAuC;GACxC;EACD;IACE,+BAAuC;IACvC,kCAA0C;GAC3C;EAZD;IAAiC,yBAAmC;GAAI;EACxE;IAAiC,6BAAuC;GAAI;EAC5E;IAAiC,+BAAyC;GAAI;EAC9E;IAAiC,gCAA0C;GAAI;EAC/E;IAAiC,8BAAwC;GAAI;EAC7E;IACE,+BAAwC;IACxC,8BAAuC;GACxC;EACD;IACE,6BAAuC;IACvC,gCAA0C;GAC3C;EAZD;IAAiC,2BAAmC;GAAI;EACxE;IAAiC,+BAAuC;GAAI;EAC5E;IAAiC,iCAAyC;GAAI;EAC9E;IAAiC,kCAA0C;GAAI;EAC/E;IAAiC,gCAAwC;GAAI;EAC7E;IACE,iCAAwC;IACxC,gCAAuC;GACxC;EACD;IACE,+BAAuC;IACvC,kCAA0C;GAC3C;EAZD;IAAiC,yBAAmC;GAAI;EACxE;IAAiC,6BAAuC;GAAI;EAC5E;IAAiC,+BAAyC;GAAI;EAC9E;IAAiC,gCAA0C;GAAI;EAC/E;IAAiC,8BAAwC;GAAI;EAC7E;IACE,+BAAwC;IACxC,8BAAuC;GACxC;EACD;IACE,6BAAuC;IACvC,gCAA0C;GAC3C;EAKL;IAAoB,wBAA8B;GAAK;EACvD;IAAoB,4BAA8B;GAAK;EACvD;IAAoB,8BAA8B;GAAK;EACvD;IAAoB,+BAA8B;GAAK;EACvD;IAAoB,6BAA8B;GAAK;EACvD;IACE,8BAA6B;IAC7B,6BAA6B;GAC9B;EACD;IACE,4BAA8B;IAC9B,+BAA8B;GAC/B;ChEk8MJ;;Aah7MG;EmD/CI;IAAiC,qBAAmC;GAAI;EACxE;IAAiC,yBAAuC;GAAI;EAC5E;IAAiC,2BAAyC;GAAI;EAC9E;IAAiC,4BAA0C;GAAI;EAC/E;IAAiC,0BAAwC;GAAI;EAC7E;IACE,2BAAwC;IACxC,0BAAuC;GACxC;EACD;IACE,yBAAuC;IACvC,4BAA0C;GAC3C;EAZD;IAAiC,2BAAmC;GAAI;EACxE;IAAiC,+BAAuC;GAAI;EAC5E;IAAiC,iCAAyC;GAAI;EAC9E;IAAiC,kCAA0C;GAAI;EAC/E;IAAiC,gCAAwC;GAAI;EAC7E;IACE,iCAAwC;IACxC,gCAAuC;GACxC;EACD;IACE,+BAAuC;IACvC,kCAA0C;GAC3C;EAZD;IAAiC,0BAAmC;GAAI;EACxE;IAAiC,8BAAuC;GAAI;EAC5E;IAAiC,gCAAyC;GAAI;EAC9E;IAAiC,iCAA0C;GAAI;EAC/E;IAAiC,+BAAwC;GAAI;EAC7E;IACE,gCAAwC;IACxC,+BAAuC;GACxC;EACD;IACE,8BAAuC;IACvC,iCAA0C;GAC3C;EAZD;IAAiC,wBAAmC;GAAI;EACxE;IAAiC,4BAAuC;GAAI;EAC5E;IAAiC,8BAAyC;GAAI;EAC9E;IAAiC,+BAA0C;GAAI;EAC/E;IAAiC,6BAAwC;GAAI;EAC7E;IACE,8BAAwC;IACxC,6BAAuC;GACxC;EACD;IACE,4BAAuC;IACvC,+BAA0C;GAC3C;EAZD;IAAiC,0BAAmC;GAAI;EACxE;IAAiC,8BAAuC;GAAI;EAC5E;IAAiC,gCAAyC;GAAI;EAC9E;IAAiC,iCAA0C;GAAI;EAC/E;IAAiC,+BAAwC;GAAI;EAC7E;IACE,gCAAwC;IACxC,+BAAuC;GACxC;EACD;IACE,8BAAuC;IACvC,iCAA0C;GAC3C;EAZD;IAAiC,wBAAmC;GAAI;EACxE;IAAiC,4BAAuC;GAAI;EAC5E;IAAiC,8BAAyC;GAAI;EAC9E;IAAiC,+BAA0C;GAAI;EAC/E;IAAiC,6BAAwC;GAAI;EAC7E;IACE,8BAAwC;IACxC,6BAAuC;GACxC;EACD;IACE,4BAAuC;IACvC,+BAA0C;GAC3C;EAZD;IAAiC,sBAAmC;GAAI;EACxE;IAAiC,0BAAuC;GAAI;EAC5E;IAAiC,4BAAyC;GAAI;EAC9E;IAAiC,6BAA0C;GAAI;EAC/E;IAAiC,2BAAwC;GAAI;EAC7E;IACE,4BAAwC;IACxC,2BAAuC;GACxC;EACD;IACE,0BAAuC;IACvC,6BAA0C;GAC3C;EAZD;IAAiC,4BAAmC;GAAI;EACxE;IAAiC,gCAAuC;GAAI;EAC5E;IAAiC,kCAAyC;GAAI;EAC9E;IAAiC,mCAA0C;GAAI;EAC/E;IAAiC,iCAAwC;GAAI;EAC7E;IACE,kCAAwC;IACxC,iCAAuC;GACxC;EACD;IACE,gCAAuC;IACvC,mCAA0C;GAC3C;EAZD;IAAiC,2BAAmC;GAAI;EACxE;IAAiC,+BAAuC;GAAI;EAC5E;IAAiC,iCAAyC;GAAI;EAC9E;IAAiC,kCAA0C;GAAI;EAC/E;IAAiC,gCAAwC;GAAI;EAC7E;IACE,iCAAwC;IACxC,gCAAuC;GACxC;EACD;IACE,+BAAuC;IACvC,kCAA0C;GAC3C;EAZD;IAAiC,yBAAmC;GAAI;EACxE;IAAiC,6BAAuC;GAAI;EAC5E;IAAiC,+BAAyC;GAAI;EAC9E;IAAiC,gCAA0C;GAAI;EAC/E;IAAiC,8BAAwC;GAAI;EAC7E;IACE,+BAAwC;IACxC,8BAAuC;GACxC;EACD;IACE,6BAAuC;IACvC,gCAA0C;GAC3C;EAZD;IAAiC,2BAAmC;GAAI;EACxE;IAAiC,+BAAuC;GAAI;EAC5E;IAAiC,iCAAyC;GAAI;EAC9E;IAAiC,kCAA0C;GAAI;EAC/E;IAAiC,gCAAwC;GAAI;EAC7E;IACE,iCAAwC;IACxC,gCAAuC;GACxC;EACD;IACE,+BAAuC;IACvC,kCAA0C;GAC3C;EAZD;IAAiC,yBAAmC;GAAI;EACxE;IAAiC,6BAAuC;GAAI;EAC5E;IAAiC,+BAAyC;GAAI;EAC9E;IAAiC,gCAA0C;GAAI;EAC/E;IAAiC,8BAAwC;GAAI;EAC7E;IACE,+BAAwC;IACxC,8BAAuC;GACxC;EACD;IACE,6BAAuC;IACvC,gCAA0C;GAC3C;EAKL;IAAoB,wBAA8B;GAAK;EACvD;IAAoB,4BAA8B;GAAK;EACvD;IAAoB,8BAA8B;GAAK;EACvD;IAAoB,+BAA8B;GAAK;EACvD;IAAoB,6BAA8B;GAAK;EACvD;IACE,8BAA6B;IAC7B,6BAA6B;GAC9B;EACD;IACE,4BAA8B;IAC9B,+BAA8B;GAC/B;ChEgvNJ;;Aa9tNG;EmD/CI;IAAiC,qBAAmC;GAAI;EACxE;IAAiC,yBAAuC;GAAI;EAC5E;IAAiC,2BAAyC;GAAI;EAC9E;IAAiC,4BAA0C;GAAI;EAC/E;IAAiC,0BAAwC;GAAI;EAC7E;IACE,2BAAwC;IACxC,0BAAuC;GACxC;EACD;IACE,yBAAuC;IACvC,4BAA0C;GAC3C;EAZD;IAAiC,2BAAmC;GAAI;EACxE;IAAiC,+BAAuC;GAAI;EAC5E;IAAiC,iCAAyC;GAAI;EAC9E;IAAiC,kCAA0C;GAAI;EAC/E;IAAiC,gCAAwC;GAAI;EAC7E;IACE,iCAAwC;IACxC,gCAAuC;GACxC;EACD;IACE,+BAAuC;IACvC,kCAA0C;GAC3C;EAZD;IAAiC,0BAAmC;GAAI;EACxE;IAAiC,8BAAuC;GAAI;EAC5E;IAAiC,gCAAyC;GAAI;EAC9E;IAAiC,iCAA0C;GAAI;EAC/E;IAAiC,+BAAwC;GAAI;EAC7E;IACE,gCAAwC;IACxC,+BAAuC;GACxC;EACD;IACE,8BAAuC;IACvC,iCAA0C;GAC3C;EAZD;IAAiC,wBAAmC;GAAI;EACxE;IAAiC,4BAAuC;GAAI;EAC5E;IAAiC,8BAAyC;GAAI;EAC9E;IAAiC,+BAA0C;GAAI;EAC/E;IAAiC,6BAAwC;GAAI;EAC7E;IACE,8BAAwC;IACxC,6BAAuC;GACxC;EACD;IACE,4BAAuC;IACvC,+BAA0C;GAC3C;EAZD;IAAiC,0BAAmC;GAAI;EACxE;IAAiC,8BAAuC;GAAI;EAC5E;IAAiC,gCAAyC;GAAI;EAC9E;IAAiC,iCAA0C;GAAI;EAC/E;IAAiC,+BAAwC;GAAI;EAC7E;IACE,gCAAwC;IACxC,+BAAuC;GACxC;EACD;IACE,8BAAuC;IACvC,iCAA0C;GAC3C;EAZD;IAAiC,wBAAmC;GAAI;EACxE;IAAiC,4BAAuC;GAAI;EAC5E;IAAiC,8BAAyC;GAAI;EAC9E;IAAiC,+BAA0C;GAAI;EAC/E;IAAiC,6BAAwC;GAAI;EAC7E;IACE,8BAAwC;IACxC,6BAAuC;GACxC;EACD;IACE,4BAAuC;IACvC,+BAA0C;GAC3C;EAZD;IAAiC,sBAAmC;GAAI;EACxE;IAAiC,0BAAuC;GAAI;EAC5E;IAAiC,4BAAyC;GAAI;EAC9E;IAAiC,6BAA0C;GAAI;EAC/E;IAAiC,2BAAwC;GAAI;EAC7E;IACE,4BAAwC;IACxC,2BAAuC;GACxC;EACD;IACE,0BAAuC;IACvC,6BAA0C;GAC3C;EAZD;IAAiC,4BAAmC;GAAI;EACxE;IAAiC,gCAAuC;GAAI;EAC5E;IAAiC,kCAAyC;GAAI;EAC9E;IAAiC,mCAA0C;GAAI;EAC/E;IAAiC,iCAAwC;GAAI;EAC7E;IACE,kCAAwC;IACxC,iCAAuC;GACxC;EACD;IACE,gCAAuC;IACvC,mCAA0C;GAC3C;EAZD;IAAiC,2BAAmC;GAAI;EACxE;IAAiC,+BAAuC;GAAI;EAC5E;IAAiC,iCAAyC;GAAI;EAC9E;IAAiC,kCAA0C;GAAI;EAC/E;IAAiC,gCAAwC;GAAI;EAC7E;IACE,iCAAwC;IACxC,gCAAuC;GACxC;EACD;IACE,+BAAuC;IACvC,kCAA0C;GAC3C;EAZD;IAAiC,yBAAmC;GAAI;EACxE;IAAiC,6BAAuC;GAAI;EAC5E;IAAiC,+BAAyC;GAAI;EAC9E;IAAiC,gCAA0C;GAAI;EAC/E;IAAiC,8BAAwC;GAAI;EAC7E;IACE,+BAAwC;IACxC,8BAAuC;GACxC;EACD;IACE,6BAAuC;IACvC,gCAA0C;GAC3C;EAZD;IAAiC,2BAAmC;GAAI;EACxE;IAAiC,+BAAuC;GAAI;EAC5E;IAAiC,iCAAyC;GAAI;EAC9E;IAAiC,kCAA0C;GAAI;EAC/E;IAAiC,gCAAwC;GAAI;EAC7E;IACE,iCAAwC;IACxC,gCAAuC;GACxC;EACD;IACE,+BAAuC;IACvC,kCAA0C;GAC3C;EAZD;IAAiC,yBAAmC;GAAI;EACxE;IAAiC,6BAAuC;GAAI;EAC5E;IAAiC,+BAAyC;GAAI;EAC9E;IAAiC,gCAA0C;GAAI;EAC/E;IAAiC,8BAAwC;GAAI;EAC7E;IACE,+BAAwC;IACxC,8BAAuC;GACxC;EACD;IACE,6BAAuC;IACvC,gCAA0C;GAC3C;EAKL;IAAoB,wBAA8B;GAAK;EACvD;IAAoB,4BAA8B;GAAK;EACvD;IAAoB,8BAA8B;GAAK;EACvD;IAAoB,+BAA8B;GAAK;EACvD;IAAoB,6BAA8B;GAAK;EACvD;IACE,8BAA6B;IAC7B,6BAA6B;GAC9B;EACD;IACE,4BAA8B;IAC9B,+BAA8B;GAC/B;ChE8hOJ;;Aa5gOG;EmD/CI;IAAiC,qBAAmC;GAAI;EACxE;IAAiC,yBAAuC;GAAI;EAC5E;IAAiC,2BAAyC;GAAI;EAC9E;IAAiC,4BAA0C;GAAI;EAC/E;IAAiC,0BAAwC;GAAI;EAC7E;IACE,2BAAwC;IACxC,0BAAuC;GACxC;EACD;IACE,yBAAuC;IACvC,4BAA0C;GAC3C;EAZD;IAAiC,2BAAmC;GAAI;EACxE;IAAiC,+BAAuC;GAAI;EAC5E;IAAiC,iCAAyC;GAAI;EAC9E;IAAiC,kCAA0C;GAAI;EAC/E;IAAiC,gCAAwC;GAAI;EAC7E;IACE,iCAAwC;IACxC,gCAAuC;GACxC;EACD;IACE,+BAAuC;IACvC,kCAA0C;GAC3C;EAZD;IAAiC,0BAAmC;GAAI;EACxE;IAAiC,8BAAuC;GAAI;EAC5E;IAAiC,gCAAyC;GAAI;EAC9E;IAAiC,iCAA0C;GAAI;EAC/E;IAAiC,+BAAwC;GAAI;EAC7E;IACE,gCAAwC;IACxC,+BAAuC;GACxC;EACD;IACE,8BAAuC;IACvC,iCAA0C;GAC3C;EAZD;IAAiC,wBAAmC;GAAI;EACxE;IAAiC,4BAAuC;GAAI;EAC5E;IAAiC,8BAAyC;GAAI;EAC9E;IAAiC,+BAA0C;GAAI;EAC/E;IAAiC,6BAAwC;GAAI;EAC7E;IACE,8BAAwC;IACxC,6BAAuC;GACxC;EACD;IACE,4BAAuC;IACvC,+BAA0C;GAC3C;EAZD;IAAiC,0BAAmC;GAAI;EACxE;IAAiC,8BAAuC;GAAI;EAC5E;IAAiC,gCAAyC;GAAI;EAC9E;IAAiC,iCAA0C;GAAI;EAC/E;IAAiC,+BAAwC;GAAI;EAC7E;IACE,gCAAwC;IACxC,+BAAuC;GACxC;EACD;IACE,8BAAuC;IACvC,iCAA0C;GAC3C;EAZD;IAAiC,wBAAmC;GAAI;EACxE;IAAiC,4BAAuC;GAAI;EAC5E;IAAiC,8BAAyC;GAAI;EAC9E;IAAiC,+BAA0C;GAAI;EAC/E;IAAiC,6BAAwC;GAAI;EAC7E;IACE,8BAAwC;IACxC,6BAAuC;GACxC;EACD;IACE,4BAAuC;IACvC,+BAA0C;GAC3C;EAZD;IAAiC,sBAAmC;GAAI;EACxE;IAAiC,0BAAuC;GAAI;EAC5E;IAAiC,4BAAyC;GAAI;EAC9E;IAAiC,6BAA0C;GAAI;EAC/E;IAAiC,2BAAwC;GAAI;EAC7E;IACE,4BAAwC;IACxC,2BAAuC;GACxC;EACD;IACE,0BAAuC;IACvC,6BAA0C;GAC3C;EAZD;IAAiC,4BAAmC;GAAI;EACxE;IAAiC,gCAAuC;GAAI;EAC5E;IAAiC,kCAAyC;GAAI;EAC9E;IAAiC,mCAA0C;GAAI;EAC/E;IAAiC,iCAAwC;GAAI;EAC7E;IACE,kCAAwC;IACxC,iCAAuC;GACxC;EACD;IACE,gCAAuC;IACvC,mCAA0C;GAC3C;EAZD;IAAiC,2BAAmC;GAAI;EACxE;IAAiC,+BAAuC;GAAI;EAC5E;IAAiC,iCAAyC;GAAI;EAC9E;IAAiC,kCAA0C;GAAI;EAC/E;IAAiC,gCAAwC;GAAI;EAC7E;IACE,iCAAwC;IACxC,gCAAuC;GACxC;EACD;IACE,+BAAuC;IACvC,kCAA0C;GAC3C;EAZD;IAAiC,yBAAmC;GAAI;EACxE;IAAiC,6BAAuC;GAAI;EAC5E;IAAiC,+BAAyC;GAAI;EAC9E;IAAiC,gCAA0C;GAAI;EAC/E;IAAiC,8BAAwC;GAAI;EAC7E;IACE,+BAAwC;IACxC,8BAAuC;GACxC;EACD;IACE,6BAAuC;IACvC,gCAA0C;GAC3C;EAZD;IAAiC,2BAAmC;GAAI;EACxE;IAAiC,+BAAuC;GAAI;EAC5E;IAAiC,iCAAyC;GAAI;EAC9E;IAAiC,kCAA0C;GAAI;EAC/E;IAAiC,gCAAwC;GAAI;EAC7E;IACE,iCAAwC;IACxC,gCAAuC;GACxC;EACD;IACE,+BAAuC;IACvC,kCAA0C;GAC3C;EAZD;IAAiC,yBAAmC;GAAI;EACxE;IAAiC,6BAAuC;GAAI;EAC5E;IAAiC,+BAAyC;GAAI;EAC9E;IAAiC,gCAA0C;GAAI;EAC/E;IAAiC,8BAAwC;GAAI;EAC7E;IACE,+BAAwC;IACxC,8BAAuC;GACxC;EACD;IACE,6BAAuC;IACvC,gCAA0C;GAC3C;EAKL;IAAoB,wBAA8B;GAAK;EACvD;IAAoB,4BAA8B;GAAK;EACvD;IAAoB,8BAA8B;GAAK;EACvD;IAAoB,+BAA8B;GAAK;EACvD;IAAoB,6BAA8B;GAAK;EACvD;IACE,8BAA6B;IAC7B,6BAA6B;GAC9B;EACD;IACE,4BAA8B;IAC9B,+BAA8B;GAC/B;ChE40OJ;;AiE52OD;EAAiB,+BAA8B;CAAK;;AACpD;EAAiB,+BAA8B;CAAK;;AACpD;ECJE,iBAAgB;EAChB,wBAAuB;EACvB,oBAAmB;CDEsB;;AAQvC;EAAwB,4BAA2B;CAAK;;AACxD;EAAwB,6BAA4B;CAAK;;AACzD;EAAwB,8BAA6B;CAAK;;ApDsC1D;EoDxCA;IAAwB,4BAA2B;GAAK;EACxD;IAAwB,6BAA4B;GAAK;EACzD;IAAwB,8BAA6B;GAAK;CjEs4O7D;;Aah2OG;EoDxCA;IAAwB,4BAA2B;GAAK;EACxD;IAAwB,6BAA4B;GAAK;EACzD;IAAwB,8BAA6B;GAAK;CjEk5O7D;;Aa52OG;EoDxCA;IAAwB,4BAA2B;GAAK;EACxD;IAAwB,6BAA4B;GAAK;EACzD;IAAwB,8BAA6B;GAAK;CjE85O7D;;Aax3OG;EoDxCA;IAAwB,4BAA2B;GAAK;EACxD;IAAwB,6BAA4B;GAAK;EACzD;IAAwB,8BAA6B;GAAK;CjE06O7D;;AiEp6OD;EAAmB,qCAAoC;CAAK;;AAC5D;EAAmB,qCAAoC;CAAK;;AAC5D;EAAmB,sCAAqC;CAAK;;AAI7D;EAAsB,oB/DmNK;C+DnN+B;;AAC1D;EAAsB,kB/DmNC;C+DnNiC;;AACxD;EAAsB,mBAAkB;CAAK;;AAI7C;EAAc,uBAAsB;CAAK;;AEjCvC;EACE,0BAAwB;CACzB;;AhEiBC;EgEdE,0BAAqC;ChEiBtC;;AgEtBH;EACE,0BAAwB;CACzB;;AhEiBC;EgEdE,0BAAqC;ChEiBtC;;AgEtBH;EACE,0BAAwB;CACzB;;AhEiBC;EgEdE,0BAAqC;ChEiBtC;;AgEtBH;EACE,0BAAwB;CACzB;;AhEiBC;EgEdE,0BAAqC;ChEiBtC;;AgEtBH;EACE,0BAAwB;CACzB;;AhEiBC;EgEdE,0BAAqC;ChEiBtC;;AgEtBH;EACE,0BAAwB;CACzB;;AhEiBC;EgEdE,0BAAqC;ChEiBtC;;AgEtBH;EACE,0BAAwB;CACzB;;AhEiBC;EgEdE,0BAAqC;ChEiBtC;;AgEtBH;EACE,0BAAwB;CACzB;;AhEiBC;EgEdE,0BAAqC;ChEiBtC;;A8DiBL;EAAc,0BAA6B;CAAI;;AAI/C;EG5CE,YAAW;EACX,mBAAkB;EAClB,kBAAiB;EACjB,8BAA6B;EAC7B,UAAS;CH0CV;;AI5CD;ECDE,+BAAkC;CDGnC;;AAED;ECLE,8BAAkC;CDOnC","file":"bootstrap.css","sourcesContent":["/*!\n * Bootstrap v4.0.0-beta (https://getbootstrap.com)\n * Copyright 2011-2017 The Bootstrap Authors\n * Copyright 2011-2017 Twitter, Inc.\n * Licensed under MIT (https://github.com/twbs/bootstrap/blob/master/LICENSE)\n */\n\n@import \"functions\";\n@import \"variables\";\n@import \"mixins\";\n@import \"print\";\n@import \"reboot\";\n@import \"type\";\n@import \"images\";\n@import \"code\";\n@import \"grid\";\n@import \"tables\";\n@import \"forms\";\n@import \"buttons\";\n@import \"transitions\";\n@import \"dropdown\";\n@import \"button-group\";\n@import \"input-group\";\n@import \"custom-forms\";\n@import \"nav\";\n@import \"navbar\";\n@import \"card\";\n@import \"breadcrumb\";\n@import \"pagination\";\n@import \"badge\";\n@import \"jumbotron\";\n@import \"alert\";\n@import \"progress\";\n@import \"media\";\n@import \"list-group\";\n@import \"close\";\n@import \"modal\";\n@import \"tooltip\";\n@import \"popover\";\n@import \"carousel\";\n@import \"utilities\";\n","// scss-lint:disable QualifyingElement\n\n// Source: https://github.com/h5bp/html5-boilerplate/blob/master/src/css/main.css\n\n// ==========================================================================\n// Print styles.\n// Inlined to avoid the additional HTTP request:\n// http://www.phpied.com/delay-loading-your-print-css/\n// ==========================================================================\n\n@if $enable-print-styles {\n @media print {\n *,\n *::before,\n *::after {\n // Bootstrap specific; comment out `color` and `background`\n //color: #000 !important; // Black prints faster:\n // http://www.sanbeiji.com/archives/953\n text-shadow: none !important;\n //background: transparent !important;\n box-shadow: none !important;\n }\n\n a,\n a:visited {\n text-decoration: underline;\n }\n\n // Bootstrap specific; comment the following selector out\n //a[href]::after {\n // content: \" (\" attr(href) \")\";\n //}\n\n abbr[title]::after {\n content: \" (\" attr(title) \")\";\n }\n\n // Bootstrap specific; comment the following selector out\n //\n // Don't show links that are fragment identifiers,\n // or use the `javascript:` pseudo protocol\n //\n\n //a[href^=\"#\"]::after,\n //a[href^=\"javascript:\"]::after {\n // content: \"\";\n //}\n\n pre {\n white-space: pre-wrap !important;\n }\n pre,\n blockquote {\n border: $border-width solid #999; // Bootstrap custom code; using `$border-width` instead of 1px\n page-break-inside: avoid;\n }\n\n //\n // Printing Tables:\n // http://css-discuss.incutio.com/wiki/Printing_Tables\n //\n\n thead {\n display: table-header-group;\n }\n\n tr,\n img {\n page-break-inside: avoid;\n }\n\n p,\n h2,\n h3 {\n orphans: 3;\n widows: 3;\n }\n\n h2,\n h3 {\n page-break-after: avoid;\n }\n\n // Bootstrap specific changes start\n\n // Bootstrap components\n .navbar {\n display: none;\n }\n .badge {\n border: $border-width solid #000;\n }\n\n .table {\n border-collapse: collapse !important;\n\n td,\n th {\n background-color: #fff !important;\n }\n }\n .table-bordered {\n th,\n td {\n border: 1px solid #ddd !important;\n }\n }\n\n // Bootstrap specific changes end\n }\n}\n","/*!\n * Bootstrap v4.0.0-beta (https://getbootstrap.com)\n * Copyright 2011-2017 The Bootstrap Authors\n * Copyright 2011-2017 Twitter, Inc.\n * Licensed under MIT (https://github.com/twbs/bootstrap/blob/master/LICENSE)\n */\n@media print {\n *,\n *::before,\n *::after {\n text-shadow: none !important;\n box-shadow: none !important;\n }\n a,\n a:visited {\n text-decoration: underline;\n }\n abbr[title]::after {\n content: \" (\" attr(title) \")\";\n }\n pre {\n white-space: pre-wrap !important;\n }\n pre,\n blockquote {\n border: 1px solid #999;\n page-break-inside: avoid;\n }\n thead {\n display: table-header-group;\n }\n tr,\n img {\n page-break-inside: avoid;\n }\n p,\n h2,\n h3 {\n orphans: 3;\n widows: 3;\n }\n h2,\n h3 {\n page-break-after: avoid;\n }\n .navbar {\n display: none;\n }\n .badge {\n border: 1px solid #000;\n }\n .table {\n border-collapse: collapse !important;\n }\n .table td,\n .table th {\n background-color: #fff !important;\n }\n .table-bordered th,\n .table-bordered td {\n border: 1px solid #ddd !important;\n }\n}\n\nhtml {\n box-sizing: border-box;\n font-family: sans-serif;\n line-height: 1.15;\n -webkit-text-size-adjust: 100%;\n -ms-text-size-adjust: 100%;\n -ms-overflow-style: scrollbar;\n -webkit-tap-highlight-color: transparent;\n}\n\n*,\n*::before,\n*::after {\n box-sizing: inherit;\n}\n\n@-ms-viewport {\n width: device-width;\n}\n\narticle, aside, dialog, figcaption, figure, footer, header, hgroup, main, nav, section {\n display: block;\n}\n\nbody {\n margin: 0;\n font-family: -apple-system, BlinkMacSystemFont, \"Segoe UI\", Roboto, \"Helvetica Neue\", Arial, sans-serif;\n font-size: 1rem;\n font-weight: normal;\n line-height: 1.5;\n color: #212529;\n background-color: #fff;\n}\n\n[tabindex=\"-1\"]:focus {\n outline: none !important;\n}\n\nhr {\n box-sizing: content-box;\n height: 0;\n overflow: visible;\n}\n\nh1, h2, h3, h4, h5, h6 {\n margin-top: 0;\n margin-bottom: .5rem;\n}\n\np {\n margin-top: 0;\n margin-bottom: 1rem;\n}\n\nabbr[title],\nabbr[data-original-title] {\n text-decoration: underline;\n text-decoration: underline dotted;\n cursor: help;\n border-bottom: 0;\n}\n\naddress {\n margin-bottom: 1rem;\n font-style: normal;\n line-height: inherit;\n}\n\nol,\nul,\ndl {\n margin-top: 0;\n margin-bottom: 1rem;\n}\n\nol ol,\nul ul,\nol ul,\nul ol {\n margin-bottom: 0;\n}\n\ndt {\n font-weight: bold;\n}\n\ndd {\n margin-bottom: .5rem;\n margin-left: 0;\n}\n\nblockquote {\n margin: 0 0 1rem;\n}\n\ndfn {\n font-style: italic;\n}\n\nb,\nstrong {\n font-weight: bolder;\n}\n\nsmall {\n font-size: 80%;\n}\n\nsub,\nsup {\n position: relative;\n font-size: 75%;\n line-height: 0;\n vertical-align: baseline;\n}\n\nsub {\n bottom: -.25em;\n}\n\nsup {\n top: -.5em;\n}\n\na {\n color: #007bff;\n text-decoration: none;\n background-color: transparent;\n -webkit-text-decoration-skip: objects;\n}\n\na:hover {\n color: #0056b3;\n text-decoration: underline;\n}\n\na:not([href]):not([tabindex]) {\n color: inherit;\n text-decoration: none;\n}\n\na:not([href]):not([tabindex]):focus, a:not([href]):not([tabindex]):hover {\n color: inherit;\n text-decoration: none;\n}\n\na:not([href]):not([tabindex]):focus {\n outline: 0;\n}\n\npre,\ncode,\nkbd,\nsamp {\n font-family: monospace, monospace;\n font-size: 1em;\n}\n\npre {\n margin-top: 0;\n margin-bottom: 1rem;\n overflow: auto;\n}\n\nfigure {\n margin: 0 0 1rem;\n}\n\nimg {\n vertical-align: middle;\n border-style: none;\n}\n\nsvg:not(:root) {\n overflow: hidden;\n}\n\na,\narea,\nbutton,\n[role=\"button\"],\ninput,\nlabel,\nselect,\nsummary,\ntextarea {\n touch-action: manipulation;\n}\n\ntable {\n border-collapse: collapse;\n}\n\ncaption {\n padding-top: 0.75rem;\n padding-bottom: 0.75rem;\n color: #868e96;\n text-align: left;\n caption-side: bottom;\n}\n\nth {\n text-align: left;\n}\n\nlabel {\n display: inline-block;\n margin-bottom: .5rem;\n}\n\nbutton:focus {\n outline: 1px dotted;\n outline: 5px auto -webkit-focus-ring-color;\n}\n\ninput,\nbutton,\nselect,\noptgroup,\ntextarea {\n margin: 0;\n font-family: inherit;\n font-size: inherit;\n line-height: inherit;\n}\n\nbutton,\ninput {\n overflow: visible;\n}\n\nbutton,\nselect {\n text-transform: none;\n}\n\nbutton,\nhtml [type=\"button\"],\n[type=\"reset\"],\n[type=\"submit\"] {\n -webkit-appearance: button;\n}\n\nbutton::-moz-focus-inner,\n[type=\"button\"]::-moz-focus-inner,\n[type=\"reset\"]::-moz-focus-inner,\n[type=\"submit\"]::-moz-focus-inner {\n padding: 0;\n border-style: none;\n}\n\ninput[type=\"radio\"],\ninput[type=\"checkbox\"] {\n box-sizing: border-box;\n padding: 0;\n}\n\ninput[type=\"date\"],\ninput[type=\"time\"],\ninput[type=\"datetime-local\"],\ninput[type=\"month\"] {\n -webkit-appearance: listbox;\n}\n\ntextarea {\n overflow: auto;\n resize: vertical;\n}\n\nfieldset {\n min-width: 0;\n padding: 0;\n margin: 0;\n border: 0;\n}\n\nlegend {\n display: block;\n width: 100%;\n max-width: 100%;\n padding: 0;\n margin-bottom: .5rem;\n font-size: 1.5rem;\n line-height: inherit;\n color: inherit;\n white-space: normal;\n}\n\nprogress {\n vertical-align: baseline;\n}\n\n[type=\"number\"]::-webkit-inner-spin-button,\n[type=\"number\"]::-webkit-outer-spin-button {\n height: auto;\n}\n\n[type=\"search\"] {\n outline-offset: -2px;\n -webkit-appearance: none;\n}\n\n[type=\"search\"]::-webkit-search-cancel-button,\n[type=\"search\"]::-webkit-search-decoration {\n -webkit-appearance: none;\n}\n\n::-webkit-file-upload-button {\n font: inherit;\n -webkit-appearance: button;\n}\n\noutput {\n display: inline-block;\n}\n\nsummary {\n display: list-item;\n}\n\ntemplate {\n display: none;\n}\n\n[hidden] {\n display: none !important;\n}\n\nh1, h2, h3, h4, h5, h6,\n.h1, .h2, .h3, .h4, .h5, .h6 {\n margin-bottom: 0.5rem;\n font-family: inherit;\n font-weight: 500;\n line-height: 1.1;\n color: inherit;\n}\n\nh1, .h1 {\n font-size: 2.5rem;\n}\n\nh2, .h2 {\n font-size: 2rem;\n}\n\nh3, .h3 {\n font-size: 1.75rem;\n}\n\nh4, .h4 {\n font-size: 1.5rem;\n}\n\nh5, .h5 {\n font-size: 1.25rem;\n}\n\nh6, .h6 {\n font-size: 1rem;\n}\n\n.lead {\n font-size: 1.25rem;\n font-weight: 300;\n}\n\n.display-1 {\n font-size: 6rem;\n font-weight: 300;\n line-height: 1.1;\n}\n\n.display-2 {\n font-size: 5.5rem;\n font-weight: 300;\n line-height: 1.1;\n}\n\n.display-3 {\n font-size: 4.5rem;\n font-weight: 300;\n line-height: 1.1;\n}\n\n.display-4 {\n font-size: 3.5rem;\n font-weight: 300;\n line-height: 1.1;\n}\n\nhr {\n margin-top: 1rem;\n margin-bottom: 1rem;\n border: 0;\n border-top: 1px solid rgba(0, 0, 0, 0.1);\n}\n\nsmall,\n.small {\n font-size: 80%;\n font-weight: normal;\n}\n\nmark,\n.mark {\n padding: 0.2em;\n background-color: #fcf8e3;\n}\n\n.list-unstyled {\n padding-left: 0;\n list-style: none;\n}\n\n.list-inline {\n padding-left: 0;\n list-style: none;\n}\n\n.list-inline-item {\n display: inline-block;\n}\n\n.list-inline-item:not(:last-child) {\n margin-right: 5px;\n}\n\n.initialism {\n font-size: 90%;\n text-transform: uppercase;\n}\n\n.blockquote {\n margin-bottom: 1rem;\n font-size: 1.25rem;\n}\n\n.blockquote-footer {\n display: block;\n font-size: 80%;\n color: #868e96;\n}\n\n.blockquote-footer::before {\n content: \"\\2014 \\00A0\";\n}\n\n.img-fluid {\n max-width: 100%;\n height: auto;\n}\n\n.img-thumbnail {\n padding: 0.25rem;\n background-color: #fff;\n border: 1px solid #ddd;\n border-radius: 0.25rem;\n transition: all 0.2s ease-in-out;\n max-width: 100%;\n height: auto;\n}\n\n.figure {\n display: inline-block;\n}\n\n.figure-img {\n margin-bottom: 0.5rem;\n line-height: 1;\n}\n\n.figure-caption {\n font-size: 90%;\n color: #868e96;\n}\n\ncode,\nkbd,\npre,\nsamp {\n font-family: Menlo, Monaco, Consolas, \"Liberation Mono\", \"Courier New\", monospace;\n}\n\ncode {\n padding: 0.2rem 0.4rem;\n font-size: 90%;\n color: #bd4147;\n background-color: #f8f9fa;\n border-radius: 0.25rem;\n}\n\na > code {\n padding: 0;\n color: inherit;\n background-color: inherit;\n}\n\nkbd {\n padding: 0.2rem 0.4rem;\n font-size: 90%;\n color: #fff;\n background-color: #212529;\n border-radius: 0.2rem;\n}\n\nkbd kbd {\n padding: 0;\n font-size: 100%;\n font-weight: bold;\n}\n\npre {\n display: block;\n margin-top: 0;\n margin-bottom: 1rem;\n font-size: 90%;\n color: #212529;\n}\n\npre code {\n padding: 0;\n font-size: inherit;\n color: inherit;\n background-color: transparent;\n border-radius: 0;\n}\n\n.pre-scrollable {\n max-height: 340px;\n overflow-y: scroll;\n}\n\n.container {\n margin-right: auto;\n margin-left: auto;\n padding-right: 15px;\n padding-left: 15px;\n width: 100%;\n}\n\n@media (min-width: 576px) {\n .container {\n max-width: 540px;\n }\n}\n\n@media (min-width: 768px) {\n .container {\n max-width: 720px;\n }\n}\n\n@media (min-width: 992px) {\n .container {\n max-width: 960px;\n }\n}\n\n@media (min-width: 1200px) {\n .container {\n max-width: 1140px;\n }\n}\n\n.container-fluid {\n width: 100%;\n margin-right: auto;\n margin-left: auto;\n padding-right: 15px;\n padding-left: 15px;\n width: 100%;\n}\n\n.row {\n display: flex;\n flex-wrap: wrap;\n margin-right: -15px;\n margin-left: -15px;\n}\n\n.no-gutters {\n margin-right: 0;\n margin-left: 0;\n}\n\n.no-gutters > .col,\n.no-gutters > [class*=\"col-\"] {\n padding-right: 0;\n padding-left: 0;\n}\n\n.col-1, .col-2, .col-3, .col-4, .col-5, .col-6, .col-7, .col-8, .col-9, .col-10, .col-11, .col-12, .col,\n.col-auto, .col-sm-1, .col-sm-2, .col-sm-3, .col-sm-4, .col-sm-5, .col-sm-6, .col-sm-7, .col-sm-8, .col-sm-9, .col-sm-10, .col-sm-11, .col-sm-12, .col-sm,\n.col-sm-auto, .col-md-1, .col-md-2, .col-md-3, .col-md-4, .col-md-5, .col-md-6, .col-md-7, .col-md-8, .col-md-9, .col-md-10, .col-md-11, .col-md-12, .col-md,\n.col-md-auto, .col-lg-1, .col-lg-2, .col-lg-3, .col-lg-4, .col-lg-5, .col-lg-6, .col-lg-7, .col-lg-8, .col-lg-9, .col-lg-10, .col-lg-11, .col-lg-12, .col-lg,\n.col-lg-auto, .col-xl-1, .col-xl-2, .col-xl-3, .col-xl-4, .col-xl-5, .col-xl-6, .col-xl-7, .col-xl-8, .col-xl-9, .col-xl-10, .col-xl-11, .col-xl-12, .col-xl,\n.col-xl-auto {\n position: relative;\n width: 100%;\n min-height: 1px;\n padding-right: 15px;\n padding-left: 15px;\n}\n\n.col {\n flex-basis: 0;\n flex-grow: 1;\n max-width: 100%;\n}\n\n.col-auto {\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n}\n\n.col-1 {\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n}\n\n.col-2 {\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n}\n\n.col-3 {\n flex: 0 0 25%;\n max-width: 25%;\n}\n\n.col-4 {\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n}\n\n.col-5 {\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n}\n\n.col-6 {\n flex: 0 0 50%;\n max-width: 50%;\n}\n\n.col-7 {\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n}\n\n.col-8 {\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n}\n\n.col-9 {\n flex: 0 0 75%;\n max-width: 75%;\n}\n\n.col-10 {\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n}\n\n.col-11 {\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n}\n\n.col-12 {\n flex: 0 0 100%;\n max-width: 100%;\n}\n\n.order-1 {\n order: 1;\n}\n\n.order-2 {\n order: 2;\n}\n\n.order-3 {\n order: 3;\n}\n\n.order-4 {\n order: 4;\n}\n\n.order-5 {\n order: 5;\n}\n\n.order-6 {\n order: 6;\n}\n\n.order-7 {\n order: 7;\n}\n\n.order-8 {\n order: 8;\n}\n\n.order-9 {\n order: 9;\n}\n\n.order-10 {\n order: 10;\n}\n\n.order-11 {\n order: 11;\n}\n\n.order-12 {\n order: 12;\n}\n\n@media (min-width: 576px) {\n .col-sm {\n flex-basis: 0;\n flex-grow: 1;\n max-width: 100%;\n }\n .col-sm-auto {\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n }\n .col-sm-1 {\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n }\n .col-sm-2 {\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n }\n .col-sm-3 {\n flex: 0 0 25%;\n max-width: 25%;\n }\n .col-sm-4 {\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n }\n .col-sm-5 {\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n }\n .col-sm-6 {\n flex: 0 0 50%;\n max-width: 50%;\n }\n .col-sm-7 {\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n }\n .col-sm-8 {\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n }\n .col-sm-9 {\n flex: 0 0 75%;\n max-width: 75%;\n }\n .col-sm-10 {\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n }\n .col-sm-11 {\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n }\n .col-sm-12 {\n flex: 0 0 100%;\n max-width: 100%;\n }\n .order-sm-1 {\n order: 1;\n }\n .order-sm-2 {\n order: 2;\n }\n .order-sm-3 {\n order: 3;\n }\n .order-sm-4 {\n order: 4;\n }\n .order-sm-5 {\n order: 5;\n }\n .order-sm-6 {\n order: 6;\n }\n .order-sm-7 {\n order: 7;\n }\n .order-sm-8 {\n order: 8;\n }\n .order-sm-9 {\n order: 9;\n }\n .order-sm-10 {\n order: 10;\n }\n .order-sm-11 {\n order: 11;\n }\n .order-sm-12 {\n order: 12;\n }\n}\n\n@media (min-width: 768px) {\n .col-md {\n flex-basis: 0;\n flex-grow: 1;\n max-width: 100%;\n }\n .col-md-auto {\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n }\n .col-md-1 {\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n }\n .col-md-2 {\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n }\n .col-md-3 {\n flex: 0 0 25%;\n max-width: 25%;\n }\n .col-md-4 {\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n }\n .col-md-5 {\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n }\n .col-md-6 {\n flex: 0 0 50%;\n max-width: 50%;\n }\n .col-md-7 {\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n }\n .col-md-8 {\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n }\n .col-md-9 {\n flex: 0 0 75%;\n max-width: 75%;\n }\n .col-md-10 {\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n }\n .col-md-11 {\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n }\n .col-md-12 {\n flex: 0 0 100%;\n max-width: 100%;\n }\n .order-md-1 {\n order: 1;\n }\n .order-md-2 {\n order: 2;\n }\n .order-md-3 {\n order: 3;\n }\n .order-md-4 {\n order: 4;\n }\n .order-md-5 {\n order: 5;\n }\n .order-md-6 {\n order: 6;\n }\n .order-md-7 {\n order: 7;\n }\n .order-md-8 {\n order: 8;\n }\n .order-md-9 {\n order: 9;\n }\n .order-md-10 {\n order: 10;\n }\n .order-md-11 {\n order: 11;\n }\n .order-md-12 {\n order: 12;\n }\n}\n\n@media (min-width: 992px) {\n .col-lg {\n flex-basis: 0;\n flex-grow: 1;\n max-width: 100%;\n }\n .col-lg-auto {\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n }\n .col-lg-1 {\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n }\n .col-lg-2 {\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n }\n .col-lg-3 {\n flex: 0 0 25%;\n max-width: 25%;\n }\n .col-lg-4 {\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n }\n .col-lg-5 {\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n }\n .col-lg-6 {\n flex: 0 0 50%;\n max-width: 50%;\n }\n .col-lg-7 {\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n }\n .col-lg-8 {\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n }\n .col-lg-9 {\n flex: 0 0 75%;\n max-width: 75%;\n }\n .col-lg-10 {\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n }\n .col-lg-11 {\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n }\n .col-lg-12 {\n flex: 0 0 100%;\n max-width: 100%;\n }\n .order-lg-1 {\n order: 1;\n }\n .order-lg-2 {\n order: 2;\n }\n .order-lg-3 {\n order: 3;\n }\n .order-lg-4 {\n order: 4;\n }\n .order-lg-5 {\n order: 5;\n }\n .order-lg-6 {\n order: 6;\n }\n .order-lg-7 {\n order: 7;\n }\n .order-lg-8 {\n order: 8;\n }\n .order-lg-9 {\n order: 9;\n }\n .order-lg-10 {\n order: 10;\n }\n .order-lg-11 {\n order: 11;\n }\n .order-lg-12 {\n order: 12;\n }\n}\n\n@media (min-width: 1200px) {\n .col-xl {\n flex-basis: 0;\n flex-grow: 1;\n max-width: 100%;\n }\n .col-xl-auto {\n flex: 0 0 auto;\n width: auto;\n max-width: none;\n }\n .col-xl-1 {\n flex: 0 0 8.333333%;\n max-width: 8.333333%;\n }\n .col-xl-2 {\n flex: 0 0 16.666667%;\n max-width: 16.666667%;\n }\n .col-xl-3 {\n flex: 0 0 25%;\n max-width: 25%;\n }\n .col-xl-4 {\n flex: 0 0 33.333333%;\n max-width: 33.333333%;\n }\n .col-xl-5 {\n flex: 0 0 41.666667%;\n max-width: 41.666667%;\n }\n .col-xl-6 {\n flex: 0 0 50%;\n max-width: 50%;\n }\n .col-xl-7 {\n flex: 0 0 58.333333%;\n max-width: 58.333333%;\n }\n .col-xl-8 {\n flex: 0 0 66.666667%;\n max-width: 66.666667%;\n }\n .col-xl-9 {\n flex: 0 0 75%;\n max-width: 75%;\n }\n .col-xl-10 {\n flex: 0 0 83.333333%;\n max-width: 83.333333%;\n }\n .col-xl-11 {\n flex: 0 0 91.666667%;\n max-width: 91.666667%;\n }\n .col-xl-12 {\n flex: 0 0 100%;\n max-width: 100%;\n }\n .order-xl-1 {\n order: 1;\n }\n .order-xl-2 {\n order: 2;\n }\n .order-xl-3 {\n order: 3;\n }\n .order-xl-4 {\n order: 4;\n }\n .order-xl-5 {\n order: 5;\n }\n .order-xl-6 {\n order: 6;\n }\n .order-xl-7 {\n order: 7;\n }\n .order-xl-8 {\n order: 8;\n }\n .order-xl-9 {\n order: 9;\n }\n .order-xl-10 {\n order: 10;\n }\n .order-xl-11 {\n order: 11;\n }\n .order-xl-12 {\n order: 12;\n }\n}\n\n.table {\n width: 100%;\n max-width: 100%;\n margin-bottom: 1rem;\n background-color: transparent;\n}\n\n.table th,\n.table td {\n padding: 0.75rem;\n vertical-align: top;\n border-top: 1px solid #e9ecef;\n}\n\n.table thead th {\n vertical-align: bottom;\n border-bottom: 2px solid #e9ecef;\n}\n\n.table tbody + tbody {\n border-top: 2px solid #e9ecef;\n}\n\n.table .table {\n background-color: #fff;\n}\n\n.table-sm th,\n.table-sm td {\n padding: 0.3rem;\n}\n\n.table-bordered {\n border: 1px solid #e9ecef;\n}\n\n.table-bordered th,\n.table-bordered td {\n border: 1px solid #e9ecef;\n}\n\n.table-bordered thead th,\n.table-bordered thead td {\n border-bottom-width: 2px;\n}\n\n.table-striped tbody tr:nth-of-type(odd) {\n background-color: rgba(0, 0, 0, 0.05);\n}\n\n.table-hover tbody tr:hover {\n background-color: rgba(0, 0, 0, 0.075);\n}\n\n.table-primary,\n.table-primary > th,\n.table-primary > td {\n background-color: #b8daff;\n}\n\n.table-hover .table-primary:hover {\n background-color: #9fcdff;\n}\n\n.table-hover .table-primary:hover > td,\n.table-hover .table-primary:hover > th {\n background-color: #9fcdff;\n}\n\n.table-secondary,\n.table-secondary > th,\n.table-secondary > td {\n background-color: #dddfe2;\n}\n\n.table-hover .table-secondary:hover {\n background-color: #cfd2d6;\n}\n\n.table-hover .table-secondary:hover > td,\n.table-hover .table-secondary:hover > th {\n background-color: #cfd2d6;\n}\n\n.table-success,\n.table-success > th,\n.table-success > td {\n background-color: #c3e6cb;\n}\n\n.table-hover .table-success:hover {\n background-color: #b1dfbb;\n}\n\n.table-hover .table-success:hover > td,\n.table-hover .table-success:hover > th {\n background-color: #b1dfbb;\n}\n\n.table-info,\n.table-info > th,\n.table-info > td {\n background-color: #bee5eb;\n}\n\n.table-hover .table-info:hover {\n background-color: #abdde5;\n}\n\n.table-hover .table-info:hover > td,\n.table-hover .table-info:hover > th {\n background-color: #abdde5;\n}\n\n.table-warning,\n.table-warning > th,\n.table-warning > td {\n background-color: #ffeeba;\n}\n\n.table-hover .table-warning:hover {\n background-color: #ffe8a1;\n}\n\n.table-hover .table-warning:hover > td,\n.table-hover .table-warning:hover > th {\n background-color: #ffe8a1;\n}\n\n.table-danger,\n.table-danger > th,\n.table-danger > td {\n background-color: #f5c6cb;\n}\n\n.table-hover .table-danger:hover {\n background-color: #f1b0b7;\n}\n\n.table-hover .table-danger:hover > td,\n.table-hover .table-danger:hover > th {\n background-color: #f1b0b7;\n}\n\n.table-light,\n.table-light > th,\n.table-light > td {\n background-color: #fdfdfe;\n}\n\n.table-hover .table-light:hover {\n background-color: #ececf6;\n}\n\n.table-hover .table-light:hover > td,\n.table-hover .table-light:hover > th {\n background-color: #ececf6;\n}\n\n.table-dark,\n.table-dark > th,\n.table-dark > td {\n background-color: #c6c8ca;\n}\n\n.table-hover .table-dark:hover {\n background-color: #b9bbbe;\n}\n\n.table-hover .table-dark:hover > td,\n.table-hover .table-dark:hover > th {\n background-color: #b9bbbe;\n}\n\n.table-active,\n.table-active > th,\n.table-active > td {\n background-color: rgba(0, 0, 0, 0.075);\n}\n\n.table-hover .table-active:hover {\n background-color: rgba(0, 0, 0, 0.075);\n}\n\n.table-hover .table-active:hover > td,\n.table-hover .table-active:hover > th {\n background-color: rgba(0, 0, 0, 0.075);\n}\n\n.thead-inverse th {\n color: #fff;\n background-color: #212529;\n}\n\n.thead-default th {\n color: #495057;\n background-color: #e9ecef;\n}\n\n.table-inverse {\n color: #fff;\n background-color: #212529;\n}\n\n.table-inverse th,\n.table-inverse td,\n.table-inverse thead th {\n border-color: #32383e;\n}\n\n.table-inverse.table-bordered {\n border: 0;\n}\n\n.table-inverse.table-striped tbody tr:nth-of-type(odd) {\n background-color: rgba(255, 255, 255, 0.05);\n}\n\n.table-inverse.table-hover tbody tr:hover {\n background-color: rgba(255, 255, 255, 0.075);\n}\n\n@media (max-width: 991px) {\n .table-responsive {\n display: block;\n width: 100%;\n overflow-x: auto;\n -ms-overflow-style: -ms-autohiding-scrollbar;\n }\n .table-responsive.table-bordered {\n border: 0;\n }\n}\n\n.form-control {\n display: block;\n width: 100%;\n padding: 0.5rem 0.75rem;\n font-size: 1rem;\n line-height: 1.25;\n color: #495057;\n background-color: #fff;\n background-image: none;\n background-clip: padding-box;\n border: 1px solid rgba(0, 0, 0, 0.15);\n border-radius: 0.25rem;\n transition: border-color ease-in-out 0.15s, box-shadow ease-in-out 0.15s;\n}\n\n.form-control::-ms-expand {\n background-color: transparent;\n border: 0;\n}\n\n.form-control:focus {\n color: #495057;\n background-color: #fff;\n border-color: #80bdff;\n outline: none;\n}\n\n.form-control::placeholder {\n color: #868e96;\n opacity: 1;\n}\n\n.form-control:disabled, .form-control[readonly] {\n background-color: #e9ecef;\n opacity: 1;\n}\n\nselect.form-control:not([size]):not([multiple]) {\n height: calc(2.25rem + 2px);\n}\n\nselect.form-control:focus::-ms-value {\n color: #495057;\n background-color: #fff;\n}\n\n.form-control-file,\n.form-control-range {\n display: block;\n}\n\n.col-form-label {\n padding-top: calc(0.5rem - 1px * 2);\n padding-bottom: calc(0.5rem - 1px * 2);\n margin-bottom: 0;\n}\n\n.col-form-label-lg {\n padding-top: calc(0.5rem - 1px * 2);\n padding-bottom: calc(0.5rem - 1px * 2);\n font-size: 1.25rem;\n}\n\n.col-form-label-sm {\n padding-top: calc(0.25rem - 1px * 2);\n padding-bottom: calc(0.25rem - 1px * 2);\n font-size: 0.875rem;\n}\n\n.col-form-legend {\n padding-top: 0.5rem;\n padding-bottom: 0.5rem;\n margin-bottom: 0;\n font-size: 1rem;\n}\n\n.form-control-plaintext {\n padding-top: 0.5rem;\n padding-bottom: 0.5rem;\n margin-bottom: 0;\n line-height: 1.25;\n border: solid transparent;\n border-width: 1px 0;\n}\n\n.form-control-plaintext.form-control-sm, .input-group-sm > .form-control-plaintext.form-control,\n.input-group-sm > .form-control-plaintext.input-group-addon,\n.input-group-sm > .input-group-btn > .form-control-plaintext.btn, .form-control-plaintext.form-control-lg, .input-group-lg > .form-control-plaintext.form-control,\n.input-group-lg > .form-control-plaintext.input-group-addon,\n.input-group-lg > .input-group-btn > .form-control-plaintext.btn {\n padding-right: 0;\n padding-left: 0;\n}\n\n.form-control-sm, .input-group-sm > .form-control,\n.input-group-sm > .input-group-addon,\n.input-group-sm > .input-group-btn > .btn {\n padding: 0.25rem 0.5rem;\n font-size: 0.875rem;\n line-height: 1.5;\n border-radius: 0.2rem;\n}\n\nselect.form-control-sm:not([size]):not([multiple]), .input-group-sm > select.form-control:not([size]):not([multiple]),\n.input-group-sm > select.input-group-addon:not([size]):not([multiple]),\n.input-group-sm > .input-group-btn > select.btn:not([size]):not([multiple]) {\n height: calc(1.8125rem + 2px);\n}\n\n.form-control-lg, .input-group-lg > .form-control,\n.input-group-lg > .input-group-addon,\n.input-group-lg > .input-group-btn > .btn {\n padding: 0.5rem 1rem;\n font-size: 1.25rem;\n line-height: 1.5;\n border-radius: 0.3rem;\n}\n\nselect.form-control-lg:not([size]):not([multiple]), .input-group-lg > select.form-control:not([size]):not([multiple]),\n.input-group-lg > select.input-group-addon:not([size]):not([multiple]),\n.input-group-lg > .input-group-btn > select.btn:not([size]):not([multiple]) {\n height: calc(2.3125rem + 2px);\n}\n\n.form-group {\n margin-bottom: 1rem;\n}\n\n.form-text {\n display: block;\n margin-top: 0.25rem;\n}\n\n.form-row {\n display: flex;\n flex-wrap: wrap;\n margin-right: -5px;\n margin-left: -5px;\n}\n\n.form-row > .col,\n.form-row > [class*=\"col-\"] {\n padding-right: 5px;\n padding-left: 5px;\n}\n\n.form-check {\n position: relative;\n display: block;\n margin-bottom: 0.5rem;\n}\n\n.form-check.disabled .form-check-label {\n color: #868e96;\n}\n\n.form-check-label {\n padding-left: 1.25rem;\n margin-bottom: 0;\n}\n\n.form-check-input {\n position: absolute;\n margin-top: 0.25rem;\n margin-left: -1.25rem;\n}\n\n.form-check-input:only-child {\n position: static;\n}\n\n.form-check-inline {\n display: inline-block;\n}\n\n.form-check-inline .form-check-label {\n vertical-align: middle;\n}\n\n.form-check-inline + .form-check-inline {\n margin-left: 0.75rem;\n}\n\n.invalid-feedback {\n display: none;\n margin-top: .25rem;\n font-size: .875rem;\n color: #dc3545;\n}\n\n.invalid-tooltip {\n position: absolute;\n top: 100%;\n z-index: 5;\n display: none;\n width: 250px;\n padding: .5rem;\n margin-top: .1rem;\n font-size: .875rem;\n line-height: 1;\n color: #fff;\n background-color: rgba(220, 53, 69, 0.8);\n border-radius: .2rem;\n}\n\n.was-validated .form-control:valid, .form-control.is-valid, .was-validated\n.custom-select:valid,\n.custom-select.is-valid {\n border-color: #28a745;\n}\n\n.was-validated .form-control:valid:focus, .form-control.is-valid:focus, .was-validated\n.custom-select:valid:focus,\n.custom-select.is-valid:focus {\n box-shadow: 0 0 0 0.2rem rgba(40, 167, 69, 0.25);\n}\n\n.was-validated .form-control:valid ~ .invalid-feedback,\n.was-validated .form-control:valid ~ .invalid-tooltip, .form-control.is-valid ~ .invalid-feedback,\n.form-control.is-valid ~ .invalid-tooltip, .was-validated\n.custom-select:valid ~ .invalid-feedback,\n.was-validated\n.custom-select:valid ~ .invalid-tooltip,\n.custom-select.is-valid ~ .invalid-feedback,\n.custom-select.is-valid ~ .invalid-tooltip {\n display: block;\n}\n\n.was-validated .form-check-input:valid + .form-check-label, .form-check-input.is-valid + .form-check-label {\n color: #28a745;\n}\n\n.was-validated .custom-control-input:valid ~ .custom-control-indicator, .custom-control-input.is-valid ~ .custom-control-indicator {\n background-color: rgba(40, 167, 69, 0.25);\n}\n\n.was-validated .custom-control-input:valid ~ .custom-control-description, .custom-control-input.is-valid ~ .custom-control-description {\n color: #28a745;\n}\n\n.was-validated .custom-file-input:valid ~ .custom-file-control, .custom-file-input.is-valid ~ .custom-file-control {\n border-color: #28a745;\n}\n\n.was-validated .custom-file-input:valid ~ .custom-file-control::before, .custom-file-input.is-valid ~ .custom-file-control::before {\n border-color: inherit;\n}\n\n.was-validated .custom-file-input:valid:focus, .custom-file-input.is-valid:focus {\n box-shadow: 0 0 0 0.2rem rgba(40, 167, 69, 0.25);\n}\n\n.was-validated .form-control:invalid, .form-control.is-invalid, .was-validated\n.custom-select:invalid,\n.custom-select.is-invalid {\n border-color: #dc3545;\n}\n\n.was-validated .form-control:invalid:focus, .form-control.is-invalid:focus, .was-validated\n.custom-select:invalid:focus,\n.custom-select.is-invalid:focus {\n box-shadow: 0 0 0 0.2rem rgba(220, 53, 69, 0.25);\n}\n\n.was-validated .form-control:invalid ~ .invalid-feedback,\n.was-validated .form-control:invalid ~ .invalid-tooltip, .form-control.is-invalid ~ .invalid-feedback,\n.form-control.is-invalid ~ .invalid-tooltip, .was-validated\n.custom-select:invalid ~ .invalid-feedback,\n.was-validated\n.custom-select:invalid ~ .invalid-tooltip,\n.custom-select.is-invalid ~ .invalid-feedback,\n.custom-select.is-invalid ~ .invalid-tooltip {\n display: block;\n}\n\n.was-validated .form-check-input:invalid + .form-check-label, .form-check-input.is-invalid + .form-check-label {\n color: #dc3545;\n}\n\n.was-validated .custom-control-input:invalid ~ .custom-control-indicator, .custom-control-input.is-invalid ~ .custom-control-indicator {\n background-color: rgba(220, 53, 69, 0.25);\n}\n\n.was-validated .custom-control-input:invalid ~ .custom-control-description, .custom-control-input.is-invalid ~ .custom-control-description {\n color: #dc3545;\n}\n\n.was-validated .custom-file-input:invalid ~ .custom-file-control, .custom-file-input.is-invalid ~ .custom-file-control {\n border-color: #dc3545;\n}\n\n.was-validated .custom-file-input:invalid ~ .custom-file-control::before, .custom-file-input.is-invalid ~ .custom-file-control::before {\n border-color: inherit;\n}\n\n.was-validated .custom-file-input:invalid:focus, .custom-file-input.is-invalid:focus {\n box-shadow: 0 0 0 0.2rem rgba(220, 53, 69, 0.25);\n}\n\n.form-inline {\n display: flex;\n flex-flow: row wrap;\n align-items: center;\n}\n\n.form-inline .form-check {\n width: 100%;\n}\n\n@media (min-width: 576px) {\n .form-inline label {\n display: flex;\n align-items: center;\n justify-content: center;\n margin-bottom: 0;\n }\n .form-inline .form-group {\n display: flex;\n flex: 0 0 auto;\n flex-flow: row wrap;\n align-items: center;\n margin-bottom: 0;\n }\n .form-inline .form-control {\n display: inline-block;\n width: auto;\n vertical-align: middle;\n }\n .form-inline .form-control-plaintext {\n display: inline-block;\n }\n .form-inline .input-group {\n width: auto;\n }\n .form-inline .form-control-label {\n margin-bottom: 0;\n vertical-align: middle;\n }\n .form-inline .form-check {\n display: flex;\n align-items: center;\n justify-content: center;\n width: auto;\n margin-top: 0;\n margin-bottom: 0;\n }\n .form-inline .form-check-label {\n padding-left: 0;\n }\n .form-inline .form-check-input {\n position: relative;\n margin-top: 0;\n margin-right: 0.25rem;\n margin-left: 0;\n }\n .form-inline .custom-control {\n display: flex;\n align-items: center;\n justify-content: center;\n padding-left: 0;\n }\n .form-inline .custom-control-indicator {\n position: static;\n display: inline-block;\n margin-right: 0.25rem;\n vertical-align: text-bottom;\n }\n .form-inline .has-feedback .form-control-feedback {\n top: 0;\n }\n}\n\n.btn {\n display: inline-block;\n font-weight: normal;\n text-align: center;\n white-space: nowrap;\n vertical-align: middle;\n user-select: none;\n border: 1px solid transparent;\n padding: 0.5rem 0.75rem;\n font-size: 1rem;\n line-height: 1.25;\n border-radius: 0.25rem;\n transition: all 0.15s ease-in-out;\n}\n\n.btn:focus, .btn:hover {\n text-decoration: none;\n}\n\n.btn:focus, .btn.focus {\n outline: 0;\n box-shadow: 0 0 0 3px rgba(0, 123, 255, 0.25);\n}\n\n.btn.disabled, .btn:disabled {\n opacity: .65;\n}\n\n.btn:active, .btn.active {\n background-image: none;\n}\n\na.btn.disabled,\nfieldset[disabled] a.btn {\n pointer-events: none;\n}\n\n.btn-primary {\n color: #fff;\n background-color: #007bff;\n border-color: #007bff;\n}\n\n.btn-primary:hover {\n color: #fff;\n background-color: #0069d9;\n border-color: #0062cc;\n}\n\n.btn-primary:focus, .btn-primary.focus {\n box-shadow: 0 0 0 3px rgba(0, 123, 255, 0.5);\n}\n\n.btn-primary.disabled, .btn-primary:disabled {\n background-color: #007bff;\n border-color: #007bff;\n}\n\n.btn-primary:active, .btn-primary.active,\n.show > .btn-primary.dropdown-toggle {\n background-color: #0069d9;\n background-image: none;\n border-color: #0062cc;\n}\n\n.btn-secondary {\n color: #fff;\n background-color: #868e96;\n border-color: #868e96;\n}\n\n.btn-secondary:hover {\n color: #fff;\n background-color: #727b84;\n border-color: #6c757d;\n}\n\n.btn-secondary:focus, .btn-secondary.focus {\n box-shadow: 0 0 0 3px rgba(134, 142, 150, 0.5);\n}\n\n.btn-secondary.disabled, .btn-secondary:disabled {\n background-color: #868e96;\n border-color: #868e96;\n}\n\n.btn-secondary:active, .btn-secondary.active,\n.show > .btn-secondary.dropdown-toggle {\n background-color: #727b84;\n background-image: none;\n border-color: #6c757d;\n}\n\n.btn-success {\n color: #fff;\n background-color: #28a745;\n border-color: #28a745;\n}\n\n.btn-success:hover {\n color: #fff;\n background-color: #218838;\n border-color: #1e7e34;\n}\n\n.btn-success:focus, .btn-success.focus {\n box-shadow: 0 0 0 3px rgba(40, 167, 69, 0.5);\n}\n\n.btn-success.disabled, .btn-success:disabled {\n background-color: #28a745;\n border-color: #28a745;\n}\n\n.btn-success:active, .btn-success.active,\n.show > .btn-success.dropdown-toggle {\n background-color: #218838;\n background-image: none;\n border-color: #1e7e34;\n}\n\n.btn-info {\n color: #fff;\n background-color: #17a2b8;\n border-color: #17a2b8;\n}\n\n.btn-info:hover {\n color: #fff;\n background-color: #138496;\n border-color: #117a8b;\n}\n\n.btn-info:focus, .btn-info.focus {\n box-shadow: 0 0 0 3px rgba(23, 162, 184, 0.5);\n}\n\n.btn-info.disabled, .btn-info:disabled {\n background-color: #17a2b8;\n border-color: #17a2b8;\n}\n\n.btn-info:active, .btn-info.active,\n.show > .btn-info.dropdown-toggle {\n background-color: #138496;\n background-image: none;\n border-color: #117a8b;\n}\n\n.btn-warning {\n color: #111;\n background-color: #ffc107;\n border-color: #ffc107;\n}\n\n.btn-warning:hover {\n color: #111;\n background-color: #e0a800;\n border-color: #d39e00;\n}\n\n.btn-warning:focus, .btn-warning.focus {\n box-shadow: 0 0 0 3px rgba(255, 193, 7, 0.5);\n}\n\n.btn-warning.disabled, .btn-warning:disabled {\n background-color: #ffc107;\n border-color: #ffc107;\n}\n\n.btn-warning:active, .btn-warning.active,\n.show > .btn-warning.dropdown-toggle {\n background-color: #e0a800;\n background-image: none;\n border-color: #d39e00;\n}\n\n.btn-danger {\n color: #fff;\n background-color: #dc3545;\n border-color: #dc3545;\n}\n\n.btn-danger:hover {\n color: #fff;\n background-color: #c82333;\n border-color: #bd2130;\n}\n\n.btn-danger:focus, .btn-danger.focus {\n box-shadow: 0 0 0 3px rgba(220, 53, 69, 0.5);\n}\n\n.btn-danger.disabled, .btn-danger:disabled {\n background-color: #dc3545;\n border-color: #dc3545;\n}\n\n.btn-danger:active, .btn-danger.active,\n.show > .btn-danger.dropdown-toggle {\n background-color: #c82333;\n background-image: none;\n border-color: #bd2130;\n}\n\n.btn-light {\n color: #111;\n background-color: #f8f9fa;\n border-color: #f8f9fa;\n}\n\n.btn-light:hover {\n color: #111;\n background-color: #e2e6ea;\n border-color: #dae0e5;\n}\n\n.btn-light:focus, .btn-light.focus {\n box-shadow: 0 0 0 3px rgba(248, 249, 250, 0.5);\n}\n\n.btn-light.disabled, .btn-light:disabled {\n background-color: #f8f9fa;\n border-color: #f8f9fa;\n}\n\n.btn-light:active, .btn-light.active,\n.show > .btn-light.dropdown-toggle {\n background-color: #e2e6ea;\n background-image: none;\n border-color: #dae0e5;\n}\n\n.btn-dark {\n color: #fff;\n background-color: #343a40;\n border-color: #343a40;\n}\n\n.btn-dark:hover {\n color: #fff;\n background-color: #23272b;\n border-color: #1d2124;\n}\n\n.btn-dark:focus, .btn-dark.focus {\n box-shadow: 0 0 0 3px rgba(52, 58, 64, 0.5);\n}\n\n.btn-dark.disabled, .btn-dark:disabled {\n background-color: #343a40;\n border-color: #343a40;\n}\n\n.btn-dark:active, .btn-dark.active,\n.show > .btn-dark.dropdown-toggle {\n background-color: #23272b;\n background-image: none;\n border-color: #1d2124;\n}\n\n.btn-outline-primary {\n color: #007bff;\n background-color: transparent;\n background-image: none;\n border-color: #007bff;\n}\n\n.btn-outline-primary:hover {\n color: #fff;\n background-color: #007bff;\n border-color: #007bff;\n}\n\n.btn-outline-primary:focus, .btn-outline-primary.focus {\n box-shadow: 0 0 0 3px rgba(0, 123, 255, 0.5);\n}\n\n.btn-outline-primary.disabled, .btn-outline-primary:disabled {\n color: #007bff;\n background-color: transparent;\n}\n\n.btn-outline-primary:active, .btn-outline-primary.active,\n.show > .btn-outline-primary.dropdown-toggle {\n color: #fff;\n background-color: #007bff;\n border-color: #007bff;\n}\n\n.btn-outline-secondary {\n color: #868e96;\n background-color: transparent;\n background-image: none;\n border-color: #868e96;\n}\n\n.btn-outline-secondary:hover {\n color: #fff;\n background-color: #868e96;\n border-color: #868e96;\n}\n\n.btn-outline-secondary:focus, .btn-outline-secondary.focus {\n box-shadow: 0 0 0 3px rgba(134, 142, 150, 0.5);\n}\n\n.btn-outline-secondary.disabled, .btn-outline-secondary:disabled {\n color: #868e96;\n background-color: transparent;\n}\n\n.btn-outline-secondary:active, .btn-outline-secondary.active,\n.show > .btn-outline-secondary.dropdown-toggle {\n color: #fff;\n background-color: #868e96;\n border-color: #868e96;\n}\n\n.btn-outline-success {\n color: #28a745;\n background-color: transparent;\n background-image: none;\n border-color: #28a745;\n}\n\n.btn-outline-success:hover {\n color: #fff;\n background-color: #28a745;\n border-color: #28a745;\n}\n\n.btn-outline-success:focus, .btn-outline-success.focus {\n box-shadow: 0 0 0 3px rgba(40, 167, 69, 0.5);\n}\n\n.btn-outline-success.disabled, .btn-outline-success:disabled {\n color: #28a745;\n background-color: transparent;\n}\n\n.btn-outline-success:active, .btn-outline-success.active,\n.show > .btn-outline-success.dropdown-toggle {\n color: #fff;\n background-color: #28a745;\n border-color: #28a745;\n}\n\n.btn-outline-info {\n color: #17a2b8;\n background-color: transparent;\n background-image: none;\n border-color: #17a2b8;\n}\n\n.btn-outline-info:hover {\n color: #fff;\n background-color: #17a2b8;\n border-color: #17a2b8;\n}\n\n.btn-outline-info:focus, .btn-outline-info.focus {\n box-shadow: 0 0 0 3px rgba(23, 162, 184, 0.5);\n}\n\n.btn-outline-info.disabled, .btn-outline-info:disabled {\n color: #17a2b8;\n background-color: transparent;\n}\n\n.btn-outline-info:active, .btn-outline-info.active,\n.show > .btn-outline-info.dropdown-toggle {\n color: #fff;\n background-color: #17a2b8;\n border-color: #17a2b8;\n}\n\n.btn-outline-warning {\n color: #ffc107;\n background-color: transparent;\n background-image: none;\n border-color: #ffc107;\n}\n\n.btn-outline-warning:hover {\n color: #fff;\n background-color: #ffc107;\n border-color: #ffc107;\n}\n\n.btn-outline-warning:focus, .btn-outline-warning.focus {\n box-shadow: 0 0 0 3px rgba(255, 193, 7, 0.5);\n}\n\n.btn-outline-warning.disabled, .btn-outline-warning:disabled {\n color: #ffc107;\n background-color: transparent;\n}\n\n.btn-outline-warning:active, .btn-outline-warning.active,\n.show > .btn-outline-warning.dropdown-toggle {\n color: #fff;\n background-color: #ffc107;\n border-color: #ffc107;\n}\n\n.btn-outline-danger {\n color: #dc3545;\n background-color: transparent;\n background-image: none;\n border-color: #dc3545;\n}\n\n.btn-outline-danger:hover {\n color: #fff;\n background-color: #dc3545;\n border-color: #dc3545;\n}\n\n.btn-outline-danger:focus, .btn-outline-danger.focus {\n box-shadow: 0 0 0 3px rgba(220, 53, 69, 0.5);\n}\n\n.btn-outline-danger.disabled, .btn-outline-danger:disabled {\n color: #dc3545;\n background-color: transparent;\n}\n\n.btn-outline-danger:active, .btn-outline-danger.active,\n.show > .btn-outline-danger.dropdown-toggle {\n color: #fff;\n background-color: #dc3545;\n border-color: #dc3545;\n}\n\n.btn-outline-light {\n color: #f8f9fa;\n background-color: transparent;\n background-image: none;\n border-color: #f8f9fa;\n}\n\n.btn-outline-light:hover {\n color: #fff;\n background-color: #f8f9fa;\n border-color: #f8f9fa;\n}\n\n.btn-outline-light:focus, .btn-outline-light.focus {\n box-shadow: 0 0 0 3px rgba(248, 249, 250, 0.5);\n}\n\n.btn-outline-light.disabled, .btn-outline-light:disabled {\n color: #f8f9fa;\n background-color: transparent;\n}\n\n.btn-outline-light:active, .btn-outline-light.active,\n.show > .btn-outline-light.dropdown-toggle {\n color: #fff;\n background-color: #f8f9fa;\n border-color: #f8f9fa;\n}\n\n.btn-outline-dark {\n color: #343a40;\n background-color: transparent;\n background-image: none;\n border-color: #343a40;\n}\n\n.btn-outline-dark:hover {\n color: #fff;\n background-color: #343a40;\n border-color: #343a40;\n}\n\n.btn-outline-dark:focus, .btn-outline-dark.focus {\n box-shadow: 0 0 0 3px rgba(52, 58, 64, 0.5);\n}\n\n.btn-outline-dark.disabled, .btn-outline-dark:disabled {\n color: #343a40;\n background-color: transparent;\n}\n\n.btn-outline-dark:active, .btn-outline-dark.active,\n.show > .btn-outline-dark.dropdown-toggle {\n color: #fff;\n background-color: #343a40;\n border-color: #343a40;\n}\n\n.btn-link {\n font-weight: normal;\n color: #007bff;\n border-radius: 0;\n}\n\n.btn-link, .btn-link:active, .btn-link.active, .btn-link:disabled {\n background-color: transparent;\n}\n\n.btn-link, .btn-link:focus, .btn-link:active {\n border-color: transparent;\n box-shadow: none;\n}\n\n.btn-link:hover {\n border-color: transparent;\n}\n\n.btn-link:focus, .btn-link:hover {\n color: #0056b3;\n text-decoration: underline;\n background-color: transparent;\n}\n\n.btn-link:disabled {\n color: #868e96;\n}\n\n.btn-link:disabled:focus, .btn-link:disabled:hover {\n text-decoration: none;\n}\n\n.btn-lg, .btn-group-lg > .btn {\n padding: 0.5rem 1rem;\n font-size: 1.25rem;\n line-height: 1.5;\n border-radius: 0.3rem;\n}\n\n.btn-sm, .btn-group-sm > .btn {\n padding: 0.25rem 0.5rem;\n font-size: 0.875rem;\n line-height: 1.5;\n border-radius: 0.2rem;\n}\n\n.btn-block {\n display: block;\n width: 100%;\n}\n\n.btn-block + .btn-block {\n margin-top: 0.5rem;\n}\n\ninput[type=\"submit\"].btn-block,\ninput[type=\"reset\"].btn-block,\ninput[type=\"button\"].btn-block {\n width: 100%;\n}\n\n.fade {\n opacity: 0;\n transition: opacity 0.15s linear;\n}\n\n.fade.show {\n opacity: 1;\n}\n\n.collapse {\n display: none;\n}\n\n.collapse.show {\n display: block;\n}\n\ntr.collapse.show {\n display: table-row;\n}\n\ntbody.collapse.show {\n display: table-row-group;\n}\n\n.collapsing {\n position: relative;\n height: 0;\n overflow: hidden;\n transition: height 0.35s ease;\n}\n\n.dropup,\n.dropdown {\n position: relative;\n}\n\n.dropdown-toggle::after {\n display: inline-block;\n width: 0;\n height: 0;\n margin-left: 0.255em;\n vertical-align: 0.255em;\n content: \"\";\n border-top: 0.3em solid;\n border-right: 0.3em solid transparent;\n border-left: 0.3em solid transparent;\n}\n\n.dropdown-toggle:empty::after {\n margin-left: 0;\n}\n\n.dropup .dropdown-menu {\n margin-top: 0;\n margin-bottom: 0.125rem;\n}\n\n.dropup .dropdown-toggle::after {\n border-top: 0;\n border-bottom: 0.3em solid;\n}\n\n.dropdown-menu {\n position: absolute;\n top: 100%;\n left: 0;\n z-index: 1000;\n display: none;\n float: left;\n min-width: 10rem;\n padding: 0.5rem 0;\n margin: 0.125rem 0 0;\n font-size: 1rem;\n color: #212529;\n text-align: left;\n list-style: none;\n background-color: #fff;\n background-clip: padding-box;\n border: 1px solid rgba(0, 0, 0, 0.15);\n border-radius: 0.25rem;\n}\n\n.dropdown-divider {\n height: 0;\n margin: 0.5rem 0;\n overflow: hidden;\n border-top: 1px solid #e9ecef;\n}\n\n.dropdown-item {\n display: block;\n width: 100%;\n padding: 0.25rem 1.5rem;\n clear: both;\n font-weight: normal;\n color: #212529;\n text-align: inherit;\n white-space: nowrap;\n background: none;\n border: 0;\n}\n\n.dropdown-item:focus, .dropdown-item:hover {\n color: #16181b;\n text-decoration: none;\n background-color: #f8f9fa;\n}\n\n.dropdown-item.active, .dropdown-item:active {\n color: #fff;\n text-decoration: none;\n background-color: #007bff;\n}\n\n.dropdown-item.disabled, .dropdown-item:disabled {\n color: #868e96;\n background-color: transparent;\n}\n\n.show > a {\n outline: 0;\n}\n\n.dropdown-menu.show {\n display: block;\n}\n\n.dropdown-header {\n display: block;\n padding: 0.5rem 1.5rem;\n margin-bottom: 0;\n font-size: 0.875rem;\n color: #868e96;\n white-space: nowrap;\n}\n\n.btn-group,\n.btn-group-vertical {\n position: relative;\n display: inline-flex;\n vertical-align: middle;\n}\n\n.btn-group > .btn,\n.btn-group-vertical > .btn {\n position: relative;\n flex: 0 1 auto;\n margin-bottom: 0;\n}\n\n.btn-group > .btn:hover,\n.btn-group-vertical > .btn:hover {\n z-index: 2;\n}\n\n.btn-group > .btn:focus, .btn-group > .btn:active, .btn-group > .btn.active,\n.btn-group-vertical > .btn:focus,\n.btn-group-vertical > .btn:active,\n.btn-group-vertical > .btn.active {\n z-index: 2;\n}\n\n.btn-group .btn + .btn,\n.btn-group .btn + .btn-group,\n.btn-group .btn-group + .btn,\n.btn-group .btn-group + .btn-group,\n.btn-group-vertical .btn + .btn,\n.btn-group-vertical .btn + .btn-group,\n.btn-group-vertical .btn-group + .btn,\n.btn-group-vertical .btn-group + .btn-group {\n margin-left: -1px;\n}\n\n.btn-toolbar {\n display: flex;\n flex-wrap: wrap;\n justify-content: flex-start;\n}\n\n.btn-toolbar .input-group {\n width: auto;\n}\n\n.btn-group > .btn:not(:first-child):not(:last-child):not(.dropdown-toggle) {\n border-radius: 0;\n}\n\n.btn-group > .btn:first-child {\n margin-left: 0;\n}\n\n.btn-group > .btn:first-child:not(:last-child):not(.dropdown-toggle) {\n border-top-right-radius: 0;\n border-bottom-right-radius: 0;\n}\n\n.btn-group > .btn:last-child:not(:first-child),\n.btn-group > .dropdown-toggle:not(:first-child) {\n border-top-left-radius: 0;\n border-bottom-left-radius: 0;\n}\n\n.btn-group > .btn-group {\n float: left;\n}\n\n.btn-group > .btn-group:not(:first-child):not(:last-child) > .btn {\n border-radius: 0;\n}\n\n.btn-group > .btn-group:first-child:not(:last-child) > .btn:last-child,\n.btn-group > .btn-group:first-child:not(:last-child) > .dropdown-toggle {\n border-top-right-radius: 0;\n border-bottom-right-radius: 0;\n}\n\n.btn-group > .btn-group:last-child:not(:first-child) > .btn:first-child {\n border-top-left-radius: 0;\n border-bottom-left-radius: 0;\n}\n\n.btn + .dropdown-toggle-split {\n padding-right: 0.5625rem;\n padding-left: 0.5625rem;\n}\n\n.btn + .dropdown-toggle-split::after {\n margin-left: 0;\n}\n\n.btn-sm + .dropdown-toggle-split, .btn-group-sm > .btn + .dropdown-toggle-split {\n padding-right: 0.375rem;\n padding-left: 0.375rem;\n}\n\n.btn-lg + .dropdown-toggle-split, .btn-group-lg > .btn + .dropdown-toggle-split {\n padding-right: 0.75rem;\n padding-left: 0.75rem;\n}\n\n.btn-group-vertical {\n display: inline-flex;\n flex-direction: column;\n align-items: flex-start;\n justify-content: center;\n}\n\n.btn-group-vertical .btn,\n.btn-group-vertical .btn-group {\n width: 100%;\n}\n\n.btn-group-vertical > .btn + .btn,\n.btn-group-vertical > .btn + .btn-group,\n.btn-group-vertical > .btn-group + .btn,\n.btn-group-vertical > .btn-group + .btn-group {\n margin-top: -1px;\n margin-left: 0;\n}\n\n.btn-group-vertical > .btn:not(:first-child):not(:last-child) {\n border-radius: 0;\n}\n\n.btn-group-vertical > .btn:first-child:not(:last-child) {\n border-bottom-right-radius: 0;\n border-bottom-left-radius: 0;\n}\n\n.btn-group-vertical > .btn:last-child:not(:first-child) {\n border-top-left-radius: 0;\n border-top-right-radius: 0;\n}\n\n.btn-group-vertical > .btn-group:not(:first-child):not(:last-child) > .btn {\n border-radius: 0;\n}\n\n.btn-group-vertical > .btn-group:first-child:not(:last-child) > .btn:last-child,\n.btn-group-vertical > .btn-group:first-child:not(:last-child) > .dropdown-toggle {\n border-bottom-right-radius: 0;\n border-bottom-left-radius: 0;\n}\n\n.btn-group-vertical > .btn-group:last-child:not(:first-child) > .btn:first-child {\n border-top-left-radius: 0;\n border-top-right-radius: 0;\n}\n\n[data-toggle=\"buttons\"] > .btn input[type=\"radio\"],\n[data-toggle=\"buttons\"] > .btn input[type=\"checkbox\"],\n[data-toggle=\"buttons\"] > .btn-group > .btn input[type=\"radio\"],\n[data-toggle=\"buttons\"] > .btn-group > .btn input[type=\"checkbox\"] {\n position: absolute;\n clip: rect(0, 0, 0, 0);\n pointer-events: none;\n}\n\n.input-group {\n position: relative;\n display: flex;\n width: 100%;\n}\n\n.input-group .form-control {\n position: relative;\n z-index: 2;\n flex: 1 1 auto;\n width: 1%;\n margin-bottom: 0;\n}\n\n.input-group .form-control:focus, .input-group .form-control:active, .input-group .form-control:hover {\n z-index: 3;\n}\n\n.input-group-addon,\n.input-group-btn,\n.input-group .form-control {\n display: flex;\n align-items: center;\n}\n\n.input-group-addon:not(:first-child):not(:last-child),\n.input-group-btn:not(:first-child):not(:last-child),\n.input-group .form-control:not(:first-child):not(:last-child) {\n border-radius: 0;\n}\n\n.input-group-addon,\n.input-group-btn {\n white-space: nowrap;\n vertical-align: middle;\n}\n\n.input-group-addon {\n padding: 0.5rem 0.75rem;\n margin-bottom: 0;\n font-size: 1rem;\n font-weight: normal;\n line-height: 1.25;\n color: #495057;\n text-align: center;\n background-color: #e9ecef;\n border: 1px solid rgba(0, 0, 0, 0.15);\n border-radius: 0.25rem;\n}\n\n.input-group-addon.form-control-sm,\n.input-group-sm > .input-group-addon,\n.input-group-sm > .input-group-btn > .input-group-addon.btn {\n padding: 0.25rem 0.5rem;\n font-size: 0.875rem;\n border-radius: 0.2rem;\n}\n\n.input-group-addon.form-control-lg,\n.input-group-lg > .input-group-addon,\n.input-group-lg > .input-group-btn > .input-group-addon.btn {\n padding: 0.5rem 1rem;\n font-size: 1.25rem;\n border-radius: 0.3rem;\n}\n\n.input-group-addon input[type=\"radio\"],\n.input-group-addon input[type=\"checkbox\"] {\n margin-top: 0;\n}\n\n.input-group .form-control:not(:last-child),\n.input-group-addon:not(:last-child),\n.input-group-btn:not(:last-child) > .btn,\n.input-group-btn:not(:last-child) > .btn-group > .btn,\n.input-group-btn:not(:last-child) > .dropdown-toggle,\n.input-group-btn:not(:first-child) > .btn:not(:last-child):not(.dropdown-toggle),\n.input-group-btn:not(:first-child) > .btn-group:not(:last-child) > .btn {\n border-top-right-radius: 0;\n border-bottom-right-radius: 0;\n}\n\n.input-group-addon:not(:last-child) {\n border-right: 0;\n}\n\n.input-group .form-control:not(:first-child),\n.input-group-addon:not(:first-child),\n.input-group-btn:not(:first-child) > .btn,\n.input-group-btn:not(:first-child) > .btn-group > .btn,\n.input-group-btn:not(:first-child) > .dropdown-toggle,\n.input-group-btn:not(:last-child) > .btn:not(:first-child),\n.input-group-btn:not(:last-child) > .btn-group:not(:first-child) > .btn {\n border-top-left-radius: 0;\n border-bottom-left-radius: 0;\n}\n\n.form-control + .input-group-addon:not(:first-child) {\n border-left: 0;\n}\n\n.input-group-btn {\n position: relative;\n font-size: 0;\n white-space: nowrap;\n}\n\n.input-group-btn > .btn {\n position: relative;\n}\n\n.input-group-btn > .btn + .btn {\n margin-left: -1px;\n}\n\n.input-group-btn > .btn:focus, .input-group-btn > .btn:active, .input-group-btn > .btn:hover {\n z-index: 3;\n}\n\n.input-group-btn:not(:last-child) > .btn,\n.input-group-btn:not(:last-child) > .btn-group {\n margin-right: -1px;\n}\n\n.input-group-btn:not(:first-child) > .btn,\n.input-group-btn:not(:first-child) > .btn-group {\n z-index: 2;\n margin-left: -1px;\n}\n\n.input-group-btn:not(:first-child) > .btn:focus, .input-group-btn:not(:first-child) > .btn:active, .input-group-btn:not(:first-child) > .btn:hover,\n.input-group-btn:not(:first-child) > .btn-group:focus,\n.input-group-btn:not(:first-child) > .btn-group:active,\n.input-group-btn:not(:first-child) > .btn-group:hover {\n z-index: 3;\n}\n\n.custom-control {\n position: relative;\n display: inline-flex;\n min-height: 1.5rem;\n padding-left: 1.5rem;\n margin-right: 1rem;\n}\n\n.custom-control-input {\n position: absolute;\n z-index: -1;\n opacity: 0;\n}\n\n.custom-control-input:checked ~ .custom-control-indicator {\n color: #fff;\n background-color: #007bff;\n}\n\n.custom-control-input:focus ~ .custom-control-indicator {\n box-shadow: 0 0 0 1px #fff, 0 0 0 3px #007bff;\n}\n\n.custom-control-input:active ~ .custom-control-indicator {\n color: #fff;\n background-color: #b3d7ff;\n}\n\n.custom-control-input:disabled ~ .custom-control-indicator {\n background-color: #e9ecef;\n}\n\n.custom-control-input:disabled ~ .custom-control-description {\n color: #868e96;\n}\n\n.custom-control-indicator {\n position: absolute;\n top: 0.25rem;\n left: 0;\n display: block;\n width: 1rem;\n height: 1rem;\n pointer-events: none;\n user-select: none;\n background-color: #ddd;\n background-repeat: no-repeat;\n background-position: center center;\n background-size: 50% 50%;\n}\n\n.custom-checkbox .custom-control-indicator {\n border-radius: 0.25rem;\n}\n\n.custom-checkbox .custom-control-input:checked ~ .custom-control-indicator {\n background-image: url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 8 8'%3E%3Cpath fill='%23fff' d='M6.564.75l-3.59 3.612-1.538-1.55L0 4.26 2.974 7.25 8 2.193z'/%3E%3C/svg%3E\");\n}\n\n.custom-checkbox .custom-control-input:indeterminate ~ .custom-control-indicator {\n background-color: #007bff;\n background-image: url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 4 4'%3E%3Cpath stroke='%23fff' d='M0 2h4'/%3E%3C/svg%3E\");\n}\n\n.custom-radio .custom-control-indicator {\n border-radius: 50%;\n}\n\n.custom-radio .custom-control-input:checked ~ .custom-control-indicator {\n background-image: url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='-4 -4 8 8'%3E%3Ccircle r='3' fill='%23fff'/%3E%3C/svg%3E\");\n}\n\n.custom-controls-stacked {\n display: flex;\n flex-direction: column;\n}\n\n.custom-controls-stacked .custom-control {\n margin-bottom: 0.25rem;\n}\n\n.custom-controls-stacked .custom-control + .custom-control {\n margin-left: 0;\n}\n\n.custom-select {\n display: inline-block;\n max-width: 100%;\n height: calc(2.25rem + 2px);\n padding: 0.375rem 1.75rem 0.375rem 0.75rem;\n line-height: 1.25;\n color: #495057;\n vertical-align: middle;\n background: #fff url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 4 5'%3E%3Cpath fill='%23333' d='M2 0L0 2h4zm0 5L0 3h4z'/%3E%3C/svg%3E\") no-repeat right 0.75rem center;\n background-size: 8px 10px;\n border: 1px solid rgba(0, 0, 0, 0.15);\n border-radius: 0.25rem;\n appearance: none;\n}\n\n.custom-select:focus {\n border-color: #80bdff;\n outline: none;\n}\n\n.custom-select:focus::-ms-value {\n color: #495057;\n background-color: #fff;\n}\n\n.custom-select:disabled {\n color: #868e96;\n background-color: #e9ecef;\n}\n\n.custom-select::-ms-expand {\n opacity: 0;\n}\n\n.custom-select-sm {\n height: calc(1.8125rem + 2px);\n padding-top: 0.375rem;\n padding-bottom: 0.375rem;\n font-size: 75%;\n}\n\n.custom-file {\n position: relative;\n display: inline-block;\n max-width: 100%;\n height: 2.5rem;\n margin-bottom: 0;\n}\n\n.custom-file-input {\n min-width: 14rem;\n max-width: 100%;\n height: 2.5rem;\n margin: 0;\n opacity: 0;\n}\n\n.custom-file-control {\n position: absolute;\n top: 0;\n right: 0;\n left: 0;\n z-index: 5;\n height: 2.5rem;\n padding: 0.5rem 1rem;\n line-height: 1.5;\n color: #495057;\n pointer-events: none;\n user-select: none;\n background-color: #fff;\n border: 1px solid rgba(0, 0, 0, 0.15);\n border-radius: 0.25rem;\n}\n\n.custom-file-control:lang(en):empty::after {\n content: \"Choose file...\";\n}\n\n.custom-file-control::before {\n position: absolute;\n top: -1px;\n right: -1px;\n bottom: -1px;\n z-index: 6;\n display: block;\n height: 2.5rem;\n padding: 0.5rem 1rem;\n line-height: 1.5;\n color: #495057;\n background-color: #e9ecef;\n border: 1px solid rgba(0, 0, 0, 0.15);\n border-radius: 0 0.25rem 0.25rem 0;\n}\n\n.custom-file-control:lang(en)::before {\n content: \"Browse\";\n}\n\n.nav {\n display: flex;\n flex-wrap: wrap;\n padding-left: 0;\n margin-bottom: 0;\n list-style: none;\n}\n\n.nav-link {\n display: block;\n padding: 0.5rem 1rem;\n}\n\n.nav-link:focus, .nav-link:hover {\n text-decoration: none;\n}\n\n.nav-link.disabled {\n color: #868e96;\n}\n\n.nav-tabs {\n border-bottom: 1px solid #ddd;\n}\n\n.nav-tabs .nav-item {\n margin-bottom: -1px;\n}\n\n.nav-tabs .nav-link {\n border: 1px solid transparent;\n border-top-left-radius: 0.25rem;\n border-top-right-radius: 0.25rem;\n}\n\n.nav-tabs .nav-link:focus, .nav-tabs .nav-link:hover {\n border-color: #e9ecef #e9ecef #ddd;\n}\n\n.nav-tabs .nav-link.disabled {\n color: #868e96;\n background-color: transparent;\n border-color: transparent;\n}\n\n.nav-tabs .nav-link.active,\n.nav-tabs .nav-item.show .nav-link {\n color: #495057;\n background-color: #fff;\n border-color: #ddd #ddd #fff;\n}\n\n.nav-tabs .dropdown-menu {\n margin-top: -1px;\n border-top-left-radius: 0;\n border-top-right-radius: 0;\n}\n\n.nav-pills .nav-link {\n border-radius: 0.25rem;\n}\n\n.nav-pills .nav-link.active,\n.show > .nav-pills .nav-link {\n color: #fff;\n background-color: #007bff;\n}\n\n.nav-fill .nav-item {\n flex: 1 1 auto;\n text-align: center;\n}\n\n.nav-justified .nav-item {\n flex-basis: 0;\n flex-grow: 1;\n text-align: center;\n}\n\n.tab-content > .tab-pane {\n display: none;\n}\n\n.tab-content > .active {\n display: block;\n}\n\n.navbar {\n position: relative;\n display: flex;\n flex-wrap: wrap;\n align-items: center;\n justify-content: space-between;\n padding: 0.5rem 1rem;\n}\n\n.navbar > .container,\n.navbar > .container-fluid {\n display: flex;\n flex-wrap: wrap;\n align-items: center;\n justify-content: space-between;\n}\n\n.navbar-brand {\n display: inline-block;\n padding-top: 0.3125rem;\n padding-bottom: 0.3125rem;\n margin-right: 1rem;\n font-size: 1.25rem;\n line-height: inherit;\n white-space: nowrap;\n}\n\n.navbar-brand:focus, .navbar-brand:hover {\n text-decoration: none;\n}\n\n.navbar-nav {\n display: flex;\n flex-direction: column;\n padding-left: 0;\n margin-bottom: 0;\n list-style: none;\n}\n\n.navbar-nav .nav-link {\n padding-right: 0;\n padding-left: 0;\n}\n\n.navbar-nav .dropdown-menu {\n position: static;\n float: none;\n}\n\n.navbar-text {\n display: inline-block;\n padding-top: 0.5rem;\n padding-bottom: 0.5rem;\n}\n\n.navbar-collapse {\n flex-basis: 100%;\n align-items: center;\n}\n\n.navbar-toggler {\n padding: 0.25rem 0.75rem;\n font-size: 1.25rem;\n line-height: 1;\n background: transparent;\n border: 1px solid transparent;\n border-radius: 0.25rem;\n}\n\n.navbar-toggler:focus, .navbar-toggler:hover {\n text-decoration: none;\n}\n\n.navbar-toggler-icon {\n display: inline-block;\n width: 1.5em;\n height: 1.5em;\n vertical-align: middle;\n content: \"\";\n background: no-repeat center center;\n background-size: 100% 100%;\n}\n\n@media (max-width: 575px) {\n .navbar-expand-sm > .container,\n .navbar-expand-sm > .container-fluid {\n padding-right: 0;\n padding-left: 0;\n }\n}\n\n@media (min-width: 576px) {\n .navbar-expand-sm {\n flex-direction: row;\n flex-wrap: nowrap;\n justify-content: flex-start;\n }\n .navbar-expand-sm .navbar-nav {\n flex-direction: row;\n }\n .navbar-expand-sm .navbar-nav .dropdown-menu {\n position: absolute;\n }\n .navbar-expand-sm .navbar-nav .dropdown-menu-right {\n right: 0;\n left: auto;\n }\n .navbar-expand-sm .navbar-nav .nav-link {\n padding-right: .5rem;\n padding-left: .5rem;\n }\n .navbar-expand-sm > .container,\n .navbar-expand-sm > .container-fluid {\n flex-wrap: nowrap;\n }\n .navbar-expand-sm .navbar-collapse {\n display: flex !important;\n }\n .navbar-expand-sm .navbar-toggler {\n display: none;\n }\n}\n\n@media (max-width: 767px) {\n .navbar-expand-md > .container,\n .navbar-expand-md > .container-fluid {\n padding-right: 0;\n padding-left: 0;\n }\n}\n\n@media (min-width: 768px) {\n .navbar-expand-md {\n flex-direction: row;\n flex-wrap: nowrap;\n justify-content: flex-start;\n }\n .navbar-expand-md .navbar-nav {\n flex-direction: row;\n }\n .navbar-expand-md .navbar-nav .dropdown-menu {\n position: absolute;\n }\n .navbar-expand-md .navbar-nav .dropdown-menu-right {\n right: 0;\n left: auto;\n }\n .navbar-expand-md .navbar-nav .nav-link {\n padding-right: .5rem;\n padding-left: .5rem;\n }\n .navbar-expand-md > .container,\n .navbar-expand-md > .container-fluid {\n flex-wrap: nowrap;\n }\n .navbar-expand-md .navbar-collapse {\n display: flex !important;\n }\n .navbar-expand-md .navbar-toggler {\n display: none;\n }\n}\n\n@media (max-width: 991px) {\n .navbar-expand-lg > .container,\n .navbar-expand-lg > .container-fluid {\n padding-right: 0;\n padding-left: 0;\n }\n}\n\n@media (min-width: 992px) {\n .navbar-expand-lg {\n flex-direction: row;\n flex-wrap: nowrap;\n justify-content: flex-start;\n }\n .navbar-expand-lg .navbar-nav {\n flex-direction: row;\n }\n .navbar-expand-lg .navbar-nav .dropdown-menu {\n position: absolute;\n }\n .navbar-expand-lg .navbar-nav .dropdown-menu-right {\n right: 0;\n left: auto;\n }\n .navbar-expand-lg .navbar-nav .nav-link {\n padding-right: .5rem;\n padding-left: .5rem;\n }\n .navbar-expand-lg > .container,\n .navbar-expand-lg > .container-fluid {\n flex-wrap: nowrap;\n }\n .navbar-expand-lg .navbar-collapse {\n display: flex !important;\n }\n .navbar-expand-lg .navbar-toggler {\n display: none;\n }\n}\n\n@media (max-width: 1199px) {\n .navbar-expand-xl > .container,\n .navbar-expand-xl > .container-fluid {\n padding-right: 0;\n padding-left: 0;\n }\n}\n\n@media (min-width: 1200px) {\n .navbar-expand-xl {\n flex-direction: row;\n flex-wrap: nowrap;\n justify-content: flex-start;\n }\n .navbar-expand-xl .navbar-nav {\n flex-direction: row;\n }\n .navbar-expand-xl .navbar-nav .dropdown-menu {\n position: absolute;\n }\n .navbar-expand-xl .navbar-nav .dropdown-menu-right {\n right: 0;\n left: auto;\n }\n .navbar-expand-xl .navbar-nav .nav-link {\n padding-right: .5rem;\n padding-left: .5rem;\n }\n .navbar-expand-xl > .container,\n .navbar-expand-xl > .container-fluid {\n flex-wrap: nowrap;\n }\n .navbar-expand-xl .navbar-collapse {\n display: flex !important;\n }\n .navbar-expand-xl .navbar-toggler {\n display: none;\n }\n}\n\n.navbar-expand {\n flex-direction: row;\n flex-wrap: nowrap;\n justify-content: flex-start;\n}\n\n.navbar-expand > .container,\n.navbar-expand > .container-fluid {\n padding-right: 0;\n padding-left: 0;\n}\n\n.navbar-expand .navbar-nav {\n flex-direction: row;\n}\n\n.navbar-expand .navbar-nav .dropdown-menu {\n position: absolute;\n}\n\n.navbar-expand .navbar-nav .dropdown-menu-right {\n right: 0;\n left: auto;\n}\n\n.navbar-expand .navbar-nav .nav-link {\n padding-right: .5rem;\n padding-left: .5rem;\n}\n\n.navbar-expand > .container,\n.navbar-expand > .container-fluid {\n flex-wrap: nowrap;\n}\n\n.navbar-expand .navbar-collapse {\n display: flex !important;\n}\n\n.navbar-expand .navbar-toggler {\n display: none;\n}\n\n.navbar-light .navbar-brand {\n color: rgba(0, 0, 0, 0.9);\n}\n\n.navbar-light .navbar-brand:focus, .navbar-light .navbar-brand:hover {\n color: rgba(0, 0, 0, 0.9);\n}\n\n.navbar-light .navbar-nav .nav-link {\n color: rgba(0, 0, 0, 0.5);\n}\n\n.navbar-light .navbar-nav .nav-link:focus, .navbar-light .navbar-nav .nav-link:hover {\n color: rgba(0, 0, 0, 0.7);\n}\n\n.navbar-light .navbar-nav .nav-link.disabled {\n color: rgba(0, 0, 0, 0.3);\n}\n\n.navbar-light .navbar-nav .show > .nav-link,\n.navbar-light .navbar-nav .active > .nav-link,\n.navbar-light .navbar-nav .nav-link.show,\n.navbar-light .navbar-nav .nav-link.active {\n color: rgba(0, 0, 0, 0.9);\n}\n\n.navbar-light .navbar-toggler {\n color: rgba(0, 0, 0, 0.5);\n border-color: rgba(0, 0, 0, 0.1);\n}\n\n.navbar-light .navbar-toggler-icon {\n background-image: url(\"data:image/svg+xml;charset=utf8,%3Csvg viewBox='0 0 30 30' xmlns='http://www.w3.org/2000/svg'%3E%3Cpath stroke='rgba(0, 0, 0, 0.5)' stroke-width='2' stroke-linecap='round' stroke-miterlimit='10' d='M4 7h22M4 15h22M4 23h22'/%3E%3C/svg%3E\");\n}\n\n.navbar-light .navbar-text {\n color: rgba(0, 0, 0, 0.5);\n}\n\n.navbar-dark .navbar-brand {\n color: white;\n}\n\n.navbar-dark .navbar-brand:focus, .navbar-dark .navbar-brand:hover {\n color: white;\n}\n\n.navbar-dark .navbar-nav .nav-link {\n color: rgba(255, 255, 255, 0.5);\n}\n\n.navbar-dark .navbar-nav .nav-link:focus, .navbar-dark .navbar-nav .nav-link:hover {\n color: rgba(255, 255, 255, 0.75);\n}\n\n.navbar-dark .navbar-nav .nav-link.disabled {\n color: rgba(255, 255, 255, 0.25);\n}\n\n.navbar-dark .navbar-nav .show > .nav-link,\n.navbar-dark .navbar-nav .active > .nav-link,\n.navbar-dark .navbar-nav .nav-link.show,\n.navbar-dark .navbar-nav .nav-link.active {\n color: white;\n}\n\n.navbar-dark .navbar-toggler {\n color: rgba(255, 255, 255, 0.5);\n border-color: rgba(255, 255, 255, 0.1);\n}\n\n.navbar-dark .navbar-toggler-icon {\n background-image: url(\"data:image/svg+xml;charset=utf8,%3Csvg viewBox='0 0 30 30' xmlns='http://www.w3.org/2000/svg'%3E%3Cpath stroke='rgba(255, 255, 255, 0.5)' stroke-width='2' stroke-linecap='round' stroke-miterlimit='10' d='M4 7h22M4 15h22M4 23h22'/%3E%3C/svg%3E\");\n}\n\n.navbar-dark .navbar-text {\n color: rgba(255, 255, 255, 0.5);\n}\n\n.card {\n position: relative;\n display: flex;\n flex-direction: column;\n min-width: 0;\n word-wrap: break-word;\n background-color: #fff;\n background-clip: border-box;\n border: 1px solid rgba(0, 0, 0, 0.125);\n border-radius: 0.25rem;\n}\n\n.card-body {\n flex: 1 1 auto;\n padding: 1.25rem;\n}\n\n.card-title {\n margin-bottom: 0.75rem;\n}\n\n.card-subtitle {\n margin-top: -0.375rem;\n margin-bottom: 0;\n}\n\n.card-text:last-child {\n margin-bottom: 0;\n}\n\n.card-link:hover {\n text-decoration: none;\n}\n\n.card-link + .card-link {\n margin-left: 1.25rem;\n}\n\n.card > .list-group:first-child .list-group-item:first-child {\n border-top-left-radius: 0.25rem;\n border-top-right-radius: 0.25rem;\n}\n\n.card > .list-group:last-child .list-group-item:last-child {\n border-bottom-right-radius: 0.25rem;\n border-bottom-left-radius: 0.25rem;\n}\n\n.card-header {\n padding: 0.75rem 1.25rem;\n margin-bottom: 0;\n background-color: rgba(0, 0, 0, 0.03);\n border-bottom: 1px solid rgba(0, 0, 0, 0.125);\n}\n\n.card-header:first-child {\n border-radius: calc(0.25rem - 1px) calc(0.25rem - 1px) 0 0;\n}\n\n.card-footer {\n padding: 0.75rem 1.25rem;\n background-color: rgba(0, 0, 0, 0.03);\n border-top: 1px solid rgba(0, 0, 0, 0.125);\n}\n\n.card-footer:last-child {\n border-radius: 0 0 calc(0.25rem - 1px) calc(0.25rem - 1px);\n}\n\n.card-header-tabs {\n margin-right: -0.625rem;\n margin-bottom: -0.75rem;\n margin-left: -0.625rem;\n border-bottom: 0;\n}\n\n.card-header-pills {\n margin-right: -0.625rem;\n margin-left: -0.625rem;\n}\n\n.card-img-overlay {\n position: absolute;\n top: 0;\n right: 0;\n bottom: 0;\n left: 0;\n padding: 1.25rem;\n}\n\n.card-img {\n width: 100%;\n border-radius: calc(0.25rem - 1px);\n}\n\n.card-img-top {\n width: 100%;\n border-top-left-radius: calc(0.25rem - 1px);\n border-top-right-radius: calc(0.25rem - 1px);\n}\n\n.card-img-bottom {\n width: 100%;\n border-bottom-right-radius: calc(0.25rem - 1px);\n border-bottom-left-radius: calc(0.25rem - 1px);\n}\n\n@media (min-width: 576px) {\n .card-deck {\n display: flex;\n flex-flow: row wrap;\n margin-right: -15px;\n margin-left: -15px;\n }\n .card-deck .card {\n display: flex;\n flex: 1 0 0%;\n flex-direction: column;\n margin-right: 15px;\n margin-left: 15px;\n }\n}\n\n@media (min-width: 576px) {\n .card-group {\n display: flex;\n flex-flow: row wrap;\n }\n .card-group .card {\n flex: 1 0 0%;\n }\n .card-group .card + .card {\n margin-left: 0;\n border-left: 0;\n }\n .card-group .card:first-child {\n border-top-right-radius: 0;\n border-bottom-right-radius: 0;\n }\n .card-group .card:first-child .card-img-top {\n border-top-right-radius: 0;\n }\n .card-group .card:first-child .card-img-bottom {\n border-bottom-right-radius: 0;\n }\n .card-group .card:last-child {\n border-top-left-radius: 0;\n border-bottom-left-radius: 0;\n }\n .card-group .card:last-child .card-img-top {\n border-top-left-radius: 0;\n }\n .card-group .card:last-child .card-img-bottom {\n border-bottom-left-radius: 0;\n }\n .card-group .card:not(:first-child):not(:last-child) {\n border-radius: 0;\n }\n .card-group .card:not(:first-child):not(:last-child) .card-img-top,\n .card-group .card:not(:first-child):not(:last-child) .card-img-bottom {\n border-radius: 0;\n }\n}\n\n.card-columns .card {\n margin-bottom: 0.75rem;\n}\n\n@media (min-width: 576px) {\n .card-columns {\n column-count: 3;\n column-gap: 1.25rem;\n }\n .card-columns .card {\n display: inline-block;\n width: 100%;\n }\n}\n\n.breadcrumb {\n padding: 0.75rem 1rem;\n margin-bottom: 1rem;\n list-style: none;\n background-color: #e9ecef;\n border-radius: 0.25rem;\n}\n\n.breadcrumb::after {\n display: block;\n clear: both;\n content: \"\";\n}\n\n.breadcrumb-item {\n float: left;\n}\n\n.breadcrumb-item + .breadcrumb-item::before {\n display: inline-block;\n padding-right: 0.5rem;\n padding-left: 0.5rem;\n color: #868e96;\n content: \"/\";\n}\n\n.breadcrumb-item + .breadcrumb-item:hover::before {\n text-decoration: underline;\n}\n\n.breadcrumb-item + .breadcrumb-item:hover::before {\n text-decoration: none;\n}\n\n.breadcrumb-item.active {\n color: #868e96;\n}\n\n.pagination {\n display: flex;\n padding-left: 0;\n list-style: none;\n border-radius: 0.25rem;\n}\n\n.page-item:first-child .page-link {\n margin-left: 0;\n border-top-left-radius: 0.25rem;\n border-bottom-left-radius: 0.25rem;\n}\n\n.page-item:last-child .page-link {\n border-top-right-radius: 0.25rem;\n border-bottom-right-radius: 0.25rem;\n}\n\n.page-item.active .page-link {\n z-index: 2;\n color: #fff;\n background-color: #007bff;\n border-color: #007bff;\n}\n\n.page-item.disabled .page-link {\n color: #868e96;\n pointer-events: none;\n background-color: #fff;\n border-color: #ddd;\n}\n\n.page-link {\n position: relative;\n display: block;\n padding: 0.5rem 0.75rem;\n margin-left: -1px;\n line-height: 1.25;\n color: #007bff;\n background-color: #fff;\n border: 1px solid #ddd;\n}\n\n.page-link:focus, .page-link:hover {\n color: #0056b3;\n text-decoration: none;\n background-color: #e9ecef;\n border-color: #ddd;\n}\n\n.pagination-lg .page-link {\n padding: 0.75rem 1.5rem;\n font-size: 1.25rem;\n line-height: 1.5;\n}\n\n.pagination-lg .page-item:first-child .page-link {\n border-top-left-radius: 0.3rem;\n border-bottom-left-radius: 0.3rem;\n}\n\n.pagination-lg .page-item:last-child .page-link {\n border-top-right-radius: 0.3rem;\n border-bottom-right-radius: 0.3rem;\n}\n\n.pagination-sm .page-link {\n padding: 0.25rem 0.5rem;\n font-size: 0.875rem;\n line-height: 1.5;\n}\n\n.pagination-sm .page-item:first-child .page-link {\n border-top-left-radius: 0.2rem;\n border-bottom-left-radius: 0.2rem;\n}\n\n.pagination-sm .page-item:last-child .page-link {\n border-top-right-radius: 0.2rem;\n border-bottom-right-radius: 0.2rem;\n}\n\n.badge {\n display: inline-block;\n padding: 0.25em 0.4em;\n font-size: 75%;\n font-weight: bold;\n line-height: 1;\n color: #fff;\n text-align: center;\n white-space: nowrap;\n vertical-align: baseline;\n border-radius: 0.25rem;\n}\n\n.badge:empty {\n display: none;\n}\n\n.btn .badge {\n position: relative;\n top: -1px;\n}\n\n.badge-pill {\n padding-right: 0.6em;\n padding-left: 0.6em;\n border-radius: 10rem;\n}\n\n.badge-primary {\n color: #fff;\n background-color: #007bff;\n}\n\n.badge-primary[href]:focus, .badge-primary[href]:hover {\n color: #fff;\n text-decoration: none;\n background-color: #0062cc;\n}\n\n.badge-secondary {\n color: #fff;\n background-color: #868e96;\n}\n\n.badge-secondary[href]:focus, .badge-secondary[href]:hover {\n color: #fff;\n text-decoration: none;\n background-color: #6c757d;\n}\n\n.badge-success {\n color: #fff;\n background-color: #28a745;\n}\n\n.badge-success[href]:focus, .badge-success[href]:hover {\n color: #fff;\n text-decoration: none;\n background-color: #1e7e34;\n}\n\n.badge-info {\n color: #fff;\n background-color: #17a2b8;\n}\n\n.badge-info[href]:focus, .badge-info[href]:hover {\n color: #fff;\n text-decoration: none;\n background-color: #117a8b;\n}\n\n.badge-warning {\n color: #111;\n background-color: #ffc107;\n}\n\n.badge-warning[href]:focus, .badge-warning[href]:hover {\n color: #111;\n text-decoration: none;\n background-color: #d39e00;\n}\n\n.badge-danger {\n color: #fff;\n background-color: #dc3545;\n}\n\n.badge-danger[href]:focus, .badge-danger[href]:hover {\n color: #fff;\n text-decoration: none;\n background-color: #bd2130;\n}\n\n.badge-light {\n color: #111;\n background-color: #f8f9fa;\n}\n\n.badge-light[href]:focus, .badge-light[href]:hover {\n color: #111;\n text-decoration: none;\n background-color: #dae0e5;\n}\n\n.badge-dark {\n color: #fff;\n background-color: #343a40;\n}\n\n.badge-dark[href]:focus, .badge-dark[href]:hover {\n color: #fff;\n text-decoration: none;\n background-color: #1d2124;\n}\n\n.jumbotron {\n padding: 2rem 1rem;\n margin-bottom: 2rem;\n background-color: #e9ecef;\n border-radius: 0.3rem;\n}\n\n@media (min-width: 576px) {\n .jumbotron {\n padding: 4rem 2rem;\n }\n}\n\n.jumbotron-fluid {\n padding-right: 0;\n padding-left: 0;\n border-radius: 0;\n}\n\n.alert {\n padding: 0.75rem 1.25rem;\n margin-bottom: 1rem;\n border: 1px solid transparent;\n border-radius: 0.25rem;\n}\n\n.alert-heading {\n color: inherit;\n}\n\n.alert-link {\n font-weight: bold;\n}\n\n.alert-dismissible .close {\n position: relative;\n top: -0.75rem;\n right: -1.25rem;\n padding: 0.75rem 1.25rem;\n color: inherit;\n}\n\n.alert-primary {\n color: #004085;\n background-color: #cce5ff;\n border-color: #b8daff;\n}\n\n.alert-primary hr {\n border-top-color: #9fcdff;\n}\n\n.alert-primary .alert-link {\n color: #002752;\n}\n\n.alert-secondary {\n color: #464a4e;\n background-color: #e7e8ea;\n border-color: #dddfe2;\n}\n\n.alert-secondary hr {\n border-top-color: #cfd2d6;\n}\n\n.alert-secondary .alert-link {\n color: #2e3133;\n}\n\n.alert-success {\n color: #155724;\n background-color: #d4edda;\n border-color: #c3e6cb;\n}\n\n.alert-success hr {\n border-top-color: #b1dfbb;\n}\n\n.alert-success .alert-link {\n color: #0b2e13;\n}\n\n.alert-info {\n color: #0c5460;\n background-color: #d1ecf1;\n border-color: #bee5eb;\n}\n\n.alert-info hr {\n border-top-color: #abdde5;\n}\n\n.alert-info .alert-link {\n color: #062c33;\n}\n\n.alert-warning {\n color: #856404;\n background-color: #fff3cd;\n border-color: #ffeeba;\n}\n\n.alert-warning hr {\n border-top-color: #ffe8a1;\n}\n\n.alert-warning .alert-link {\n color: #533f03;\n}\n\n.alert-danger {\n color: #721c24;\n background-color: #f8d7da;\n border-color: #f5c6cb;\n}\n\n.alert-danger hr {\n border-top-color: #f1b0b7;\n}\n\n.alert-danger .alert-link {\n color: #491217;\n}\n\n.alert-light {\n color: #818182;\n background-color: #fefefe;\n border-color: #fdfdfe;\n}\n\n.alert-light hr {\n border-top-color: #ececf6;\n}\n\n.alert-light .alert-link {\n color: #686868;\n}\n\n.alert-dark {\n color: #1b1e21;\n background-color: #d6d8d9;\n border-color: #c6c8ca;\n}\n\n.alert-dark hr {\n border-top-color: #b9bbbe;\n}\n\n.alert-dark .alert-link {\n color: #040505;\n}\n\n@keyframes progress-bar-stripes {\n from {\n background-position: 1rem 0;\n }\n to {\n background-position: 0 0;\n }\n}\n\n.progress {\n display: flex;\n overflow: hidden;\n font-size: 0.75rem;\n line-height: 1rem;\n text-align: center;\n background-color: #e9ecef;\n border-radius: 0.25rem;\n}\n\n.progress-bar {\n height: 1rem;\n line-height: 1rem;\n color: #fff;\n background-color: #007bff;\n transition: width 0.6s ease;\n}\n\n.progress-bar-striped {\n background-image: linear-gradient(45deg, rgba(255, 255, 255, 0.15) 25%, transparent 25%, transparent 50%, rgba(255, 255, 255, 0.15) 50%, rgba(255, 255, 255, 0.15) 75%, transparent 75%, transparent);\n background-size: 1rem 1rem;\n}\n\n.progress-bar-animated {\n animation: progress-bar-stripes 1s linear infinite;\n}\n\n.media {\n display: flex;\n align-items: flex-start;\n}\n\n.media-body {\n flex: 1;\n}\n\n.list-group {\n display: flex;\n flex-direction: column;\n padding-left: 0;\n margin-bottom: 0;\n}\n\n.list-group-item-action {\n width: 100%;\n color: #495057;\n text-align: inherit;\n}\n\n.list-group-item-action:focus, .list-group-item-action:hover {\n color: #495057;\n text-decoration: none;\n background-color: #f8f9fa;\n}\n\n.list-group-item-action:active {\n color: #212529;\n background-color: #e9ecef;\n}\n\n.list-group-item {\n position: relative;\n display: block;\n padding: 0.75rem 1.25rem;\n margin-bottom: -1px;\n background-color: #fff;\n border: 1px solid rgba(0, 0, 0, 0.125);\n}\n\n.list-group-item:first-child {\n border-top-left-radius: 0.25rem;\n border-top-right-radius: 0.25rem;\n}\n\n.list-group-item:last-child {\n margin-bottom: 0;\n border-bottom-right-radius: 0.25rem;\n border-bottom-left-radius: 0.25rem;\n}\n\n.list-group-item:focus, .list-group-item:hover {\n text-decoration: none;\n}\n\n.list-group-item.disabled, .list-group-item:disabled {\n color: #868e96;\n background-color: #fff;\n}\n\n.list-group-item.active {\n z-index: 2;\n color: #fff;\n background-color: #007bff;\n border-color: #007bff;\n}\n\n.list-group-flush .list-group-item {\n border-right: 0;\n border-left: 0;\n border-radius: 0;\n}\n\n.list-group-flush:first-child .list-group-item:first-child {\n border-top: 0;\n}\n\n.list-group-flush:last-child .list-group-item:last-child {\n border-bottom: 0;\n}\n\n.list-group-item-primary {\n color: #004085;\n background-color: #b8daff;\n}\n\na.list-group-item-primary,\nbutton.list-group-item-primary {\n color: #004085;\n}\n\na.list-group-item-primary:focus, a.list-group-item-primary:hover,\nbutton.list-group-item-primary:focus,\nbutton.list-group-item-primary:hover {\n color: #004085;\n background-color: #9fcdff;\n}\n\na.list-group-item-primary.active,\nbutton.list-group-item-primary.active {\n color: #fff;\n background-color: #004085;\n border-color: #004085;\n}\n\n.list-group-item-secondary {\n color: #464a4e;\n background-color: #dddfe2;\n}\n\na.list-group-item-secondary,\nbutton.list-group-item-secondary {\n color: #464a4e;\n}\n\na.list-group-item-secondary:focus, a.list-group-item-secondary:hover,\nbutton.list-group-item-secondary:focus,\nbutton.list-group-item-secondary:hover {\n color: #464a4e;\n background-color: #cfd2d6;\n}\n\na.list-group-item-secondary.active,\nbutton.list-group-item-secondary.active {\n color: #fff;\n background-color: #464a4e;\n border-color: #464a4e;\n}\n\n.list-group-item-success {\n color: #155724;\n background-color: #c3e6cb;\n}\n\na.list-group-item-success,\nbutton.list-group-item-success {\n color: #155724;\n}\n\na.list-group-item-success:focus, a.list-group-item-success:hover,\nbutton.list-group-item-success:focus,\nbutton.list-group-item-success:hover {\n color: #155724;\n background-color: #b1dfbb;\n}\n\na.list-group-item-success.active,\nbutton.list-group-item-success.active {\n color: #fff;\n background-color: #155724;\n border-color: #155724;\n}\n\n.list-group-item-info {\n color: #0c5460;\n background-color: #bee5eb;\n}\n\na.list-group-item-info,\nbutton.list-group-item-info {\n color: #0c5460;\n}\n\na.list-group-item-info:focus, a.list-group-item-info:hover,\nbutton.list-group-item-info:focus,\nbutton.list-group-item-info:hover {\n color: #0c5460;\n background-color: #abdde5;\n}\n\na.list-group-item-info.active,\nbutton.list-group-item-info.active {\n color: #fff;\n background-color: #0c5460;\n border-color: #0c5460;\n}\n\n.list-group-item-warning {\n color: #856404;\n background-color: #ffeeba;\n}\n\na.list-group-item-warning,\nbutton.list-group-item-warning {\n color: #856404;\n}\n\na.list-group-item-warning:focus, a.list-group-item-warning:hover,\nbutton.list-group-item-warning:focus,\nbutton.list-group-item-warning:hover {\n color: #856404;\n background-color: #ffe8a1;\n}\n\na.list-group-item-warning.active,\nbutton.list-group-item-warning.active {\n color: #fff;\n background-color: #856404;\n border-color: #856404;\n}\n\n.list-group-item-danger {\n color: #721c24;\n background-color: #f5c6cb;\n}\n\na.list-group-item-danger,\nbutton.list-group-item-danger {\n color: #721c24;\n}\n\na.list-group-item-danger:focus, a.list-group-item-danger:hover,\nbutton.list-group-item-danger:focus,\nbutton.list-group-item-danger:hover {\n color: #721c24;\n background-color: #f1b0b7;\n}\n\na.list-group-item-danger.active,\nbutton.list-group-item-danger.active {\n color: #fff;\n background-color: #721c24;\n border-color: #721c24;\n}\n\n.list-group-item-light {\n color: #818182;\n background-color: #fdfdfe;\n}\n\na.list-group-item-light,\nbutton.list-group-item-light {\n color: #818182;\n}\n\na.list-group-item-light:focus, a.list-group-item-light:hover,\nbutton.list-group-item-light:focus,\nbutton.list-group-item-light:hover {\n color: #818182;\n background-color: #ececf6;\n}\n\na.list-group-item-light.active,\nbutton.list-group-item-light.active {\n color: #fff;\n background-color: #818182;\n border-color: #818182;\n}\n\n.list-group-item-dark {\n color: #1b1e21;\n background-color: #c6c8ca;\n}\n\na.list-group-item-dark,\nbutton.list-group-item-dark {\n color: #1b1e21;\n}\n\na.list-group-item-dark:focus, a.list-group-item-dark:hover,\nbutton.list-group-item-dark:focus,\nbutton.list-group-item-dark:hover {\n color: #1b1e21;\n background-color: #b9bbbe;\n}\n\na.list-group-item-dark.active,\nbutton.list-group-item-dark.active {\n color: #fff;\n background-color: #1b1e21;\n border-color: #1b1e21;\n}\n\n.close {\n float: right;\n font-size: 1.5rem;\n font-weight: bold;\n line-height: 1;\n color: #000;\n text-shadow: 0 1px 0 #fff;\n opacity: .5;\n}\n\n.close:focus, .close:hover {\n color: #000;\n text-decoration: none;\n opacity: .75;\n}\n\nbutton.close {\n padding: 0;\n background: transparent;\n border: 0;\n -webkit-appearance: none;\n}\n\n.modal-open {\n overflow: hidden;\n}\n\n.modal {\n position: fixed;\n top: 0;\n right: 0;\n bottom: 0;\n left: 0;\n z-index: 1050;\n display: none;\n overflow: hidden;\n outline: 0;\n}\n\n.modal.fade .modal-dialog {\n transition: transform 0.3s ease-out;\n transform: translate(0, -25%);\n}\n\n.modal.show .modal-dialog {\n transform: translate(0, 0);\n}\n\n.modal-open .modal {\n overflow-x: hidden;\n overflow-y: auto;\n}\n\n.modal-dialog {\n position: relative;\n width: auto;\n margin: 10px;\n}\n\n.modal-content {\n position: relative;\n display: flex;\n flex-direction: column;\n background-color: #fff;\n background-clip: padding-box;\n border: 1px solid rgba(0, 0, 0, 0.2);\n border-radius: 0.3rem;\n outline: 0;\n}\n\n.modal-backdrop {\n position: fixed;\n top: 0;\n right: 0;\n bottom: 0;\n left: 0;\n z-index: 1040;\n background-color: #000;\n}\n\n.modal-backdrop.fade {\n opacity: 0;\n}\n\n.modal-backdrop.show {\n opacity: 0.5;\n}\n\n.modal-header {\n display: flex;\n align-items: center;\n justify-content: space-between;\n padding: 15px;\n border-bottom: 1px solid #e9ecef;\n}\n\n.modal-title {\n margin-bottom: 0;\n line-height: 1.5;\n}\n\n.modal-body {\n position: relative;\n flex: 1 1 auto;\n padding: 15px;\n}\n\n.modal-footer {\n display: flex;\n align-items: center;\n justify-content: flex-end;\n padding: 15px;\n border-top: 1px solid #e9ecef;\n}\n\n.modal-footer > :not(:first-child) {\n margin-left: .25rem;\n}\n\n.modal-footer > :not(:last-child) {\n margin-right: .25rem;\n}\n\n.modal-scrollbar-measure {\n position: absolute;\n top: -9999px;\n width: 50px;\n height: 50px;\n overflow: scroll;\n}\n\n@media (min-width: 576px) {\n .modal-dialog {\n max-width: 500px;\n margin: 30px auto;\n }\n .modal-sm {\n max-width: 300px;\n }\n}\n\n@media (min-width: 992px) {\n .modal-lg {\n max-width: 800px;\n }\n}\n\n.tooltip {\n position: absolute;\n z-index: 1070;\n display: block;\n margin: 0;\n font-family: -apple-system, BlinkMacSystemFont, \"Segoe UI\", Roboto, \"Helvetica Neue\", Arial, sans-serif;\n font-style: normal;\n font-weight: normal;\n line-height: 1.5;\n text-align: left;\n text-align: start;\n text-decoration: none;\n text-shadow: none;\n text-transform: none;\n letter-spacing: normal;\n word-break: normal;\n word-spacing: normal;\n white-space: normal;\n line-break: auto;\n font-size: 0.875rem;\n word-wrap: break-word;\n opacity: 0;\n}\n\n.tooltip.show {\n opacity: 0.9;\n}\n\n.tooltip .arrow {\n position: absolute;\n display: block;\n width: 5px;\n height: 5px;\n}\n\n.tooltip.bs-tooltip-top, .tooltip.bs-tooltip-auto[x-placement^=\"top\"] {\n padding: 5px 0;\n}\n\n.tooltip.bs-tooltip-top .arrow, .tooltip.bs-tooltip-auto[x-placement^=\"top\"] .arrow {\n bottom: 0;\n}\n\n.tooltip.bs-tooltip-top .arrow::before, .tooltip.bs-tooltip-auto[x-placement^=\"top\"] .arrow::before {\n margin-left: -3px;\n content: \"\";\n border-width: 5px 5px 0;\n border-top-color: #000;\n}\n\n.tooltip.bs-tooltip-right, .tooltip.bs-tooltip-auto[x-placement^=\"right\"] {\n padding: 0 5px;\n}\n\n.tooltip.bs-tooltip-right .arrow, .tooltip.bs-tooltip-auto[x-placement^=\"right\"] .arrow {\n left: 0;\n}\n\n.tooltip.bs-tooltip-right .arrow::before, .tooltip.bs-tooltip-auto[x-placement^=\"right\"] .arrow::before {\n margin-top: -3px;\n content: \"\";\n border-width: 5px 5px 5px 0;\n border-right-color: #000;\n}\n\n.tooltip.bs-tooltip-bottom, .tooltip.bs-tooltip-auto[x-placement^=\"bottom\"] {\n padding: 5px 0;\n}\n\n.tooltip.bs-tooltip-bottom .arrow, .tooltip.bs-tooltip-auto[x-placement^=\"bottom\"] .arrow {\n top: 0;\n}\n\n.tooltip.bs-tooltip-bottom .arrow::before, .tooltip.bs-tooltip-auto[x-placement^=\"bottom\"] .arrow::before {\n margin-left: -3px;\n content: \"\";\n border-width: 0 5px 5px;\n border-bottom-color: #000;\n}\n\n.tooltip.bs-tooltip-left, .tooltip.bs-tooltip-auto[x-placement^=\"left\"] {\n padding: 0 5px;\n}\n\n.tooltip.bs-tooltip-left .arrow, .tooltip.bs-tooltip-auto[x-placement^=\"left\"] .arrow {\n right: 0;\n}\n\n.tooltip.bs-tooltip-left .arrow::before, .tooltip.bs-tooltip-auto[x-placement^=\"left\"] .arrow::before {\n right: 0;\n margin-top: -3px;\n content: \"\";\n border-width: 5px 0 5px 5px;\n border-left-color: #000;\n}\n\n.tooltip .arrow::before {\n position: absolute;\n border-color: transparent;\n border-style: solid;\n}\n\n.tooltip-inner {\n max-width: 200px;\n padding: 3px 8px;\n color: #fff;\n text-align: center;\n background-color: #000;\n border-radius: 0.25rem;\n}\n\n.popover {\n position: absolute;\n top: 0;\n left: 0;\n z-index: 1060;\n display: block;\n max-width: 276px;\n padding: 1px;\n font-family: -apple-system, BlinkMacSystemFont, \"Segoe UI\", Roboto, \"Helvetica Neue\", Arial, sans-serif;\n font-style: normal;\n font-weight: normal;\n line-height: 1.5;\n text-align: left;\n text-align: start;\n text-decoration: none;\n text-shadow: none;\n text-transform: none;\n letter-spacing: normal;\n word-break: normal;\n word-spacing: normal;\n white-space: normal;\n line-break: auto;\n font-size: 0.875rem;\n word-wrap: break-word;\n background-color: #fff;\n background-clip: padding-box;\n border: 1px solid rgba(0, 0, 0, 0.2);\n border-radius: 0.3rem;\n}\n\n.popover .arrow {\n position: absolute;\n display: block;\n width: 10px;\n height: 5px;\n}\n\n.popover .arrow::before,\n.popover .arrow::after {\n position: absolute;\n display: block;\n border-color: transparent;\n border-style: solid;\n}\n\n.popover .arrow::before {\n content: \"\";\n border-width: 11px;\n}\n\n.popover .arrow::after {\n content: \"\";\n border-width: 11px;\n}\n\n.popover.bs-popover-top, .popover.bs-popover-auto[x-placement^=\"top\"] {\n margin-bottom: 10px;\n}\n\n.popover.bs-popover-top .arrow, .popover.bs-popover-auto[x-placement^=\"top\"] .arrow {\n bottom: 0;\n}\n\n.popover.bs-popover-top .arrow::before, .popover.bs-popover-auto[x-placement^=\"top\"] .arrow::before,\n.popover.bs-popover-top .arrow::after, .popover.bs-popover-auto[x-placement^=\"top\"] .arrow::after {\n border-bottom-width: 0;\n}\n\n.popover.bs-popover-top .arrow::before, .popover.bs-popover-auto[x-placement^=\"top\"] .arrow::before {\n bottom: -11px;\n margin-left: -6px;\n border-top-color: rgba(0, 0, 0, 0.25);\n}\n\n.popover.bs-popover-top .arrow::after, .popover.bs-popover-auto[x-placement^=\"top\"] .arrow::after {\n bottom: -10px;\n margin-left: -6px;\n border-top-color: #fff;\n}\n\n.popover.bs-popover-right, .popover.bs-popover-auto[x-placement^=\"right\"] {\n margin-left: 10px;\n}\n\n.popover.bs-popover-right .arrow, .popover.bs-popover-auto[x-placement^=\"right\"] .arrow {\n left: 0;\n}\n\n.popover.bs-popover-right .arrow::before, .popover.bs-popover-auto[x-placement^=\"right\"] .arrow::before,\n.popover.bs-popover-right .arrow::after, .popover.bs-popover-auto[x-placement^=\"right\"] .arrow::after {\n margin-top: -8px;\n border-left-width: 0;\n}\n\n.popover.bs-popover-right .arrow::before, .popover.bs-popover-auto[x-placement^=\"right\"] .arrow::before {\n left: -11px;\n border-right-color: rgba(0, 0, 0, 0.25);\n}\n\n.popover.bs-popover-right .arrow::after, .popover.bs-popover-auto[x-placement^=\"right\"] .arrow::after {\n left: -10px;\n border-right-color: #fff;\n}\n\n.popover.bs-popover-bottom, .popover.bs-popover-auto[x-placement^=\"bottom\"] {\n margin-top: 10px;\n}\n\n.popover.bs-popover-bottom .arrow, .popover.bs-popover-auto[x-placement^=\"bottom\"] .arrow {\n top: 0;\n}\n\n.popover.bs-popover-bottom .arrow::before, .popover.bs-popover-auto[x-placement^=\"bottom\"] .arrow::before,\n.popover.bs-popover-bottom .arrow::after, .popover.bs-popover-auto[x-placement^=\"bottom\"] .arrow::after {\n margin-left: -7px;\n border-top-width: 0;\n}\n\n.popover.bs-popover-bottom .arrow::before, .popover.bs-popover-auto[x-placement^=\"bottom\"] .arrow::before {\n top: -11px;\n border-bottom-color: rgba(0, 0, 0, 0.25);\n}\n\n.popover.bs-popover-bottom .arrow::after, .popover.bs-popover-auto[x-placement^=\"bottom\"] .arrow::after {\n top: -10px;\n border-bottom-color: #fff;\n}\n\n.popover.bs-popover-bottom .popover-header::before, .popover.bs-popover-auto[x-placement^=\"bottom\"] .popover-header::before {\n position: absolute;\n top: 0;\n left: 50%;\n display: block;\n width: 20px;\n margin-left: -10px;\n content: \"\";\n border-bottom: 1px solid #f7f7f7;\n}\n\n.popover.bs-popover-left, .popover.bs-popover-auto[x-placement^=\"left\"] {\n margin-right: 10px;\n}\n\n.popover.bs-popover-left .arrow, .popover.bs-popover-auto[x-placement^=\"left\"] .arrow {\n right: 0;\n}\n\n.popover.bs-popover-left .arrow::before, .popover.bs-popover-auto[x-placement^=\"left\"] .arrow::before,\n.popover.bs-popover-left .arrow::after, .popover.bs-popover-auto[x-placement^=\"left\"] .arrow::after {\n margin-top: -8px;\n border-right-width: 0;\n}\n\n.popover.bs-popover-left .arrow::before, .popover.bs-popover-auto[x-placement^=\"left\"] .arrow::before {\n right: -11px;\n border-left-color: rgba(0, 0, 0, 0.25);\n}\n\n.popover.bs-popover-left .arrow::after, .popover.bs-popover-auto[x-placement^=\"left\"] .arrow::after {\n right: -10px;\n border-left-color: #fff;\n}\n\n.popover-header {\n padding: 8px 14px;\n margin-bottom: 0;\n font-size: 1rem;\n color: inherit;\n background-color: #f7f7f7;\n border-bottom: 1px solid #ebebeb;\n border-top-left-radius: calc(0.3rem - 1px);\n border-top-right-radius: calc(0.3rem - 1px);\n}\n\n.popover-header:empty {\n display: none;\n}\n\n.popover-body {\n padding: 9px 14px;\n color: #212529;\n}\n\n.carousel {\n position: relative;\n}\n\n.carousel-inner {\n position: relative;\n width: 100%;\n overflow: hidden;\n}\n\n.carousel-item {\n position: relative;\n display: none;\n align-items: center;\n width: 100%;\n transition: transform 0.6s ease;\n backface-visibility: hidden;\n perspective: 1000px;\n}\n\n.carousel-item.active,\n.carousel-item-next,\n.carousel-item-prev {\n display: block;\n}\n\n.carousel-item-next,\n.carousel-item-prev {\n position: absolute;\n top: 0;\n}\n\n.carousel-item-next.carousel-item-left,\n.carousel-item-prev.carousel-item-right {\n transform: translateX(0);\n}\n\n@supports (transform-style: preserve-3d) {\n .carousel-item-next.carousel-item-left,\n .carousel-item-prev.carousel-item-right {\n transform: translate3d(0, 0, 0);\n }\n}\n\n.carousel-item-next,\n.active.carousel-item-right {\n transform: translateX(100%);\n}\n\n@supports (transform-style: preserve-3d) {\n .carousel-item-next,\n .active.carousel-item-right {\n transform: translate3d(100%, 0, 0);\n }\n}\n\n.carousel-item-prev,\n.active.carousel-item-left {\n transform: translateX(-100%);\n}\n\n@supports (transform-style: preserve-3d) {\n .carousel-item-prev,\n .active.carousel-item-left {\n transform: translate3d(-100%, 0, 0);\n }\n}\n\n.carousel-control-prev,\n.carousel-control-next {\n position: absolute;\n top: 0;\n bottom: 0;\n display: flex;\n align-items: center;\n justify-content: center;\n width: 15%;\n color: #fff;\n text-align: center;\n opacity: 0.5;\n}\n\n.carousel-control-prev:focus, .carousel-control-prev:hover,\n.carousel-control-next:focus,\n.carousel-control-next:hover {\n color: #fff;\n text-decoration: none;\n outline: 0;\n opacity: .9;\n}\n\n.carousel-control-prev {\n left: 0;\n}\n\n.carousel-control-next {\n right: 0;\n}\n\n.carousel-control-prev-icon,\n.carousel-control-next-icon {\n display: inline-block;\n width: 20px;\n height: 20px;\n background: transparent no-repeat center center;\n background-size: 100% 100%;\n}\n\n.carousel-control-prev-icon {\n background-image: url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' fill='%23fff' viewBox='0 0 8 8'%3E%3Cpath d='M4 0l-4 4 4 4 1.5-1.5-2.5-2.5 2.5-2.5-1.5-1.5z'/%3E%3C/svg%3E\");\n}\n\n.carousel-control-next-icon {\n background-image: url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' fill='%23fff' viewBox='0 0 8 8'%3E%3Cpath d='M1.5 0l-1.5 1.5 2.5 2.5-2.5 2.5 1.5 1.5 4-4-4-4z'/%3E%3C/svg%3E\");\n}\n\n.carousel-indicators {\n position: absolute;\n right: 0;\n bottom: 10px;\n left: 0;\n z-index: 15;\n display: flex;\n justify-content: center;\n padding-left: 0;\n margin-right: 15%;\n margin-left: 15%;\n list-style: none;\n}\n\n.carousel-indicators li {\n position: relative;\n flex: 0 1 auto;\n width: 30px;\n height: 3px;\n margin-right: 3px;\n margin-left: 3px;\n text-indent: -999px;\n background-color: rgba(255, 255, 255, 0.5);\n}\n\n.carousel-indicators li::before {\n position: absolute;\n top: -10px;\n left: 0;\n display: inline-block;\n width: 100%;\n height: 10px;\n content: \"\";\n}\n\n.carousel-indicators li::after {\n position: absolute;\n bottom: -10px;\n left: 0;\n display: inline-block;\n width: 100%;\n height: 10px;\n content: \"\";\n}\n\n.carousel-indicators .active {\n background-color: #fff;\n}\n\n.carousel-caption {\n position: absolute;\n right: 15%;\n bottom: 20px;\n left: 15%;\n z-index: 10;\n padding-top: 20px;\n padding-bottom: 20px;\n color: #fff;\n text-align: center;\n}\n\n.align-baseline {\n vertical-align: baseline !important;\n}\n\n.align-top {\n vertical-align: top !important;\n}\n\n.align-middle {\n vertical-align: middle !important;\n}\n\n.align-bottom {\n vertical-align: bottom !important;\n}\n\n.align-text-bottom {\n vertical-align: text-bottom !important;\n}\n\n.align-text-top {\n vertical-align: text-top !important;\n}\n\n.bg-primary {\n background-color: #007bff !important;\n}\n\na.bg-primary:focus, a.bg-primary:hover {\n background-color: #0062cc !important;\n}\n\n.bg-secondary {\n background-color: #868e96 !important;\n}\n\na.bg-secondary:focus, a.bg-secondary:hover {\n background-color: #6c757d !important;\n}\n\n.bg-success {\n background-color: #28a745 !important;\n}\n\na.bg-success:focus, a.bg-success:hover {\n background-color: #1e7e34 !important;\n}\n\n.bg-info {\n background-color: #17a2b8 !important;\n}\n\na.bg-info:focus, a.bg-info:hover {\n background-color: #117a8b !important;\n}\n\n.bg-warning {\n background-color: #ffc107 !important;\n}\n\na.bg-warning:focus, a.bg-warning:hover {\n background-color: #d39e00 !important;\n}\n\n.bg-danger {\n background-color: #dc3545 !important;\n}\n\na.bg-danger:focus, a.bg-danger:hover {\n background-color: #bd2130 !important;\n}\n\n.bg-light {\n background-color: #f8f9fa !important;\n}\n\na.bg-light:focus, a.bg-light:hover {\n background-color: #dae0e5 !important;\n}\n\n.bg-dark {\n background-color: #343a40 !important;\n}\n\na.bg-dark:focus, a.bg-dark:hover {\n background-color: #1d2124 !important;\n}\n\n.bg-white {\n background-color: #fff !important;\n}\n\n.bg-transparent {\n background-color: transparent !important;\n}\n\n.border {\n border: 1px solid #e9ecef !important;\n}\n\n.border-0 {\n border: 0 !important;\n}\n\n.border-top-0 {\n border-top: 0 !important;\n}\n\n.border-right-0 {\n border-right: 0 !important;\n}\n\n.border-bottom-0 {\n border-bottom: 0 !important;\n}\n\n.border-left-0 {\n border-left: 0 !important;\n}\n\n.border-primary {\n border-color: #007bff !important;\n}\n\n.border-secondary {\n border-color: #868e96 !important;\n}\n\n.border-success {\n border-color: #28a745 !important;\n}\n\n.border-info {\n border-color: #17a2b8 !important;\n}\n\n.border-warning {\n border-color: #ffc107 !important;\n}\n\n.border-danger {\n border-color: #dc3545 !important;\n}\n\n.border-light {\n border-color: #f8f9fa !important;\n}\n\n.border-dark {\n border-color: #343a40 !important;\n}\n\n.border-white {\n border-color: #fff !important;\n}\n\n.rounded {\n border-radius: 0.25rem !important;\n}\n\n.rounded-top {\n border-top-left-radius: 0.25rem !important;\n border-top-right-radius: 0.25rem !important;\n}\n\n.rounded-right {\n border-top-right-radius: 0.25rem !important;\n border-bottom-right-radius: 0.25rem !important;\n}\n\n.rounded-bottom {\n border-bottom-right-radius: 0.25rem !important;\n border-bottom-left-radius: 0.25rem !important;\n}\n\n.rounded-left {\n border-top-left-radius: 0.25rem !important;\n border-bottom-left-radius: 0.25rem !important;\n}\n\n.rounded-circle {\n border-radius: 50%;\n}\n\n.rounded-0 {\n border-radius: 0;\n}\n\n.clearfix::after {\n display: block;\n clear: both;\n content: \"\";\n}\n\n.d-none {\n display: none !important;\n}\n\n.d-inline {\n display: inline !important;\n}\n\n.d-inline-block {\n display: inline-block !important;\n}\n\n.d-block {\n display: block !important;\n}\n\n.d-table {\n display: table !important;\n}\n\n.d-table-cell {\n display: table-cell !important;\n}\n\n.d-flex {\n display: flex !important;\n}\n\n.d-inline-flex {\n display: inline-flex !important;\n}\n\n@media (min-width: 576px) {\n .d-sm-none {\n display: none !important;\n }\n .d-sm-inline {\n display: inline !important;\n }\n .d-sm-inline-block {\n display: inline-block !important;\n }\n .d-sm-block {\n display: block !important;\n }\n .d-sm-table {\n display: table !important;\n }\n .d-sm-table-cell {\n display: table-cell !important;\n }\n .d-sm-flex {\n display: flex !important;\n }\n .d-sm-inline-flex {\n display: inline-flex !important;\n }\n}\n\n@media (min-width: 768px) {\n .d-md-none {\n display: none !important;\n }\n .d-md-inline {\n display: inline !important;\n }\n .d-md-inline-block {\n display: inline-block !important;\n }\n .d-md-block {\n display: block !important;\n }\n .d-md-table {\n display: table !important;\n }\n .d-md-table-cell {\n display: table-cell !important;\n }\n .d-md-flex {\n display: flex !important;\n }\n .d-md-inline-flex {\n display: inline-flex !important;\n }\n}\n\n@media (min-width: 992px) {\n .d-lg-none {\n display: none !important;\n }\n .d-lg-inline {\n display: inline !important;\n }\n .d-lg-inline-block {\n display: inline-block !important;\n }\n .d-lg-block {\n display: block !important;\n }\n .d-lg-table {\n display: table !important;\n }\n .d-lg-table-cell {\n display: table-cell !important;\n }\n .d-lg-flex {\n display: flex !important;\n }\n .d-lg-inline-flex {\n display: inline-flex !important;\n }\n}\n\n@media (min-width: 1200px) {\n .d-xl-none {\n display: none !important;\n }\n .d-xl-inline {\n display: inline !important;\n }\n .d-xl-inline-block {\n display: inline-block !important;\n }\n .d-xl-block {\n display: block !important;\n }\n .d-xl-table {\n display: table !important;\n }\n .d-xl-table-cell {\n display: table-cell !important;\n }\n .d-xl-flex {\n display: flex !important;\n }\n .d-xl-inline-flex {\n display: inline-flex !important;\n }\n}\n\n.d-print-block {\n display: none !important;\n}\n\n@media print {\n .d-print-block {\n display: block !important;\n }\n}\n\n.d-print-inline {\n display: none !important;\n}\n\n@media print {\n .d-print-inline {\n display: inline !important;\n }\n}\n\n.d-print-inline-block {\n display: none !important;\n}\n\n@media print {\n .d-print-inline-block {\n display: inline-block !important;\n }\n}\n\n@media print {\n .d-print-none {\n display: none !important;\n }\n}\n\n.embed-responsive {\n position: relative;\n display: block;\n width: 100%;\n padding: 0;\n overflow: hidden;\n}\n\n.embed-responsive::before {\n display: block;\n content: \"\";\n}\n\n.embed-responsive .embed-responsive-item,\n.embed-responsive iframe,\n.embed-responsive embed,\n.embed-responsive object,\n.embed-responsive video {\n position: absolute;\n top: 0;\n bottom: 0;\n left: 0;\n width: 100%;\n height: 100%;\n border: 0;\n}\n\n.embed-responsive-21by9::before {\n padding-top: 42.857143%;\n}\n\n.embed-responsive-16by9::before {\n padding-top: 56.25%;\n}\n\n.embed-responsive-4by3::before {\n padding-top: 75%;\n}\n\n.embed-responsive-1by1::before {\n padding-top: 100%;\n}\n\n.flex-row {\n flex-direction: row !important;\n}\n\n.flex-column {\n flex-direction: column !important;\n}\n\n.flex-row-reverse {\n flex-direction: row-reverse !important;\n}\n\n.flex-column-reverse {\n flex-direction: column-reverse !important;\n}\n\n.flex-wrap {\n flex-wrap: wrap !important;\n}\n\n.flex-nowrap {\n flex-wrap: nowrap !important;\n}\n\n.flex-wrap-reverse {\n flex-wrap: wrap-reverse !important;\n}\n\n.justify-content-start {\n justify-content: flex-start !important;\n}\n\n.justify-content-end {\n justify-content: flex-end !important;\n}\n\n.justify-content-center {\n justify-content: center !important;\n}\n\n.justify-content-between {\n justify-content: space-between !important;\n}\n\n.justify-content-around {\n justify-content: space-around !important;\n}\n\n.align-items-start {\n align-items: flex-start !important;\n}\n\n.align-items-end {\n align-items: flex-end !important;\n}\n\n.align-items-center {\n align-items: center !important;\n}\n\n.align-items-baseline {\n align-items: baseline !important;\n}\n\n.align-items-stretch {\n align-items: stretch !important;\n}\n\n.align-content-start {\n align-content: flex-start !important;\n}\n\n.align-content-end {\n align-content: flex-end !important;\n}\n\n.align-content-center {\n align-content: center !important;\n}\n\n.align-content-between {\n align-content: space-between !important;\n}\n\n.align-content-around {\n align-content: space-around !important;\n}\n\n.align-content-stretch {\n align-content: stretch !important;\n}\n\n.align-self-auto {\n align-self: auto !important;\n}\n\n.align-self-start {\n align-self: flex-start !important;\n}\n\n.align-self-end {\n align-self: flex-end !important;\n}\n\n.align-self-center {\n align-self: center !important;\n}\n\n.align-self-baseline {\n align-self: baseline !important;\n}\n\n.align-self-stretch {\n align-self: stretch !important;\n}\n\n@media (min-width: 576px) {\n .flex-sm-row {\n flex-direction: row !important;\n }\n .flex-sm-column {\n flex-direction: column !important;\n }\n .flex-sm-row-reverse {\n flex-direction: row-reverse !important;\n }\n .flex-sm-column-reverse {\n flex-direction: column-reverse !important;\n }\n .flex-sm-wrap {\n flex-wrap: wrap !important;\n }\n .flex-sm-nowrap {\n flex-wrap: nowrap !important;\n }\n .flex-sm-wrap-reverse {\n flex-wrap: wrap-reverse !important;\n }\n .justify-content-sm-start {\n justify-content: flex-start !important;\n }\n .justify-content-sm-end {\n justify-content: flex-end !important;\n }\n .justify-content-sm-center {\n justify-content: center !important;\n }\n .justify-content-sm-between {\n justify-content: space-between !important;\n }\n .justify-content-sm-around {\n justify-content: space-around !important;\n }\n .align-items-sm-start {\n align-items: flex-start !important;\n }\n .align-items-sm-end {\n align-items: flex-end !important;\n }\n .align-items-sm-center {\n align-items: center !important;\n }\n .align-items-sm-baseline {\n align-items: baseline !important;\n }\n .align-items-sm-stretch {\n align-items: stretch !important;\n }\n .align-content-sm-start {\n align-content: flex-start !important;\n }\n .align-content-sm-end {\n align-content: flex-end !important;\n }\n .align-content-sm-center {\n align-content: center !important;\n }\n .align-content-sm-between {\n align-content: space-between !important;\n }\n .align-content-sm-around {\n align-content: space-around !important;\n }\n .align-content-sm-stretch {\n align-content: stretch !important;\n }\n .align-self-sm-auto {\n align-self: auto !important;\n }\n .align-self-sm-start {\n align-self: flex-start !important;\n }\n .align-self-sm-end {\n align-self: flex-end !important;\n }\n .align-self-sm-center {\n align-self: center !important;\n }\n .align-self-sm-baseline {\n align-self: baseline !important;\n }\n .align-self-sm-stretch {\n align-self: stretch !important;\n }\n}\n\n@media (min-width: 768px) {\n .flex-md-row {\n flex-direction: row !important;\n }\n .flex-md-column {\n flex-direction: column !important;\n }\n .flex-md-row-reverse {\n flex-direction: row-reverse !important;\n }\n .flex-md-column-reverse {\n flex-direction: column-reverse !important;\n }\n .flex-md-wrap {\n flex-wrap: wrap !important;\n }\n .flex-md-nowrap {\n flex-wrap: nowrap !important;\n }\n .flex-md-wrap-reverse {\n flex-wrap: wrap-reverse !important;\n }\n .justify-content-md-start {\n justify-content: flex-start !important;\n }\n .justify-content-md-end {\n justify-content: flex-end !important;\n }\n .justify-content-md-center {\n justify-content: center !important;\n }\n .justify-content-md-between {\n justify-content: space-between !important;\n }\n .justify-content-md-around {\n justify-content: space-around !important;\n }\n .align-items-md-start {\n align-items: flex-start !important;\n }\n .align-items-md-end {\n align-items: flex-end !important;\n }\n .align-items-md-center {\n align-items: center !important;\n }\n .align-items-md-baseline {\n align-items: baseline !important;\n }\n .align-items-md-stretch {\n align-items: stretch !important;\n }\n .align-content-md-start {\n align-content: flex-start !important;\n }\n .align-content-md-end {\n align-content: flex-end !important;\n }\n .align-content-md-center {\n align-content: center !important;\n }\n .align-content-md-between {\n align-content: space-between !important;\n }\n .align-content-md-around {\n align-content: space-around !important;\n }\n .align-content-md-stretch {\n align-content: stretch !important;\n }\n .align-self-md-auto {\n align-self: auto !important;\n }\n .align-self-md-start {\n align-self: flex-start !important;\n }\n .align-self-md-end {\n align-self: flex-end !important;\n }\n .align-self-md-center {\n align-self: center !important;\n }\n .align-self-md-baseline {\n align-self: baseline !important;\n }\n .align-self-md-stretch {\n align-self: stretch !important;\n }\n}\n\n@media (min-width: 992px) {\n .flex-lg-row {\n flex-direction: row !important;\n }\n .flex-lg-column {\n flex-direction: column !important;\n }\n .flex-lg-row-reverse {\n flex-direction: row-reverse !important;\n }\n .flex-lg-column-reverse {\n flex-direction: column-reverse !important;\n }\n .flex-lg-wrap {\n flex-wrap: wrap !important;\n }\n .flex-lg-nowrap {\n flex-wrap: nowrap !important;\n }\n .flex-lg-wrap-reverse {\n flex-wrap: wrap-reverse !important;\n }\n .justify-content-lg-start {\n justify-content: flex-start !important;\n }\n .justify-content-lg-end {\n justify-content: flex-end !important;\n }\n .justify-content-lg-center {\n justify-content: center !important;\n }\n .justify-content-lg-between {\n justify-content: space-between !important;\n }\n .justify-content-lg-around {\n justify-content: space-around !important;\n }\n .align-items-lg-start {\n align-items: flex-start !important;\n }\n .align-items-lg-end {\n align-items: flex-end !important;\n }\n .align-items-lg-center {\n align-items: center !important;\n }\n .align-items-lg-baseline {\n align-items: baseline !important;\n }\n .align-items-lg-stretch {\n align-items: stretch !important;\n }\n .align-content-lg-start {\n align-content: flex-start !important;\n }\n .align-content-lg-end {\n align-content: flex-end !important;\n }\n .align-content-lg-center {\n align-content: center !important;\n }\n .align-content-lg-between {\n align-content: space-between !important;\n }\n .align-content-lg-around {\n align-content: space-around !important;\n }\n .align-content-lg-stretch {\n align-content: stretch !important;\n }\n .align-self-lg-auto {\n align-self: auto !important;\n }\n .align-self-lg-start {\n align-self: flex-start !important;\n }\n .align-self-lg-end {\n align-self: flex-end !important;\n }\n .align-self-lg-center {\n align-self: center !important;\n }\n .align-self-lg-baseline {\n align-self: baseline !important;\n }\n .align-self-lg-stretch {\n align-self: stretch !important;\n }\n}\n\n@media (min-width: 1200px) {\n .flex-xl-row {\n flex-direction: row !important;\n }\n .flex-xl-column {\n flex-direction: column !important;\n }\n .flex-xl-row-reverse {\n flex-direction: row-reverse !important;\n }\n .flex-xl-column-reverse {\n flex-direction: column-reverse !important;\n }\n .flex-xl-wrap {\n flex-wrap: wrap !important;\n }\n .flex-xl-nowrap {\n flex-wrap: nowrap !important;\n }\n .flex-xl-wrap-reverse {\n flex-wrap: wrap-reverse !important;\n }\n .justify-content-xl-start {\n justify-content: flex-start !important;\n }\n .justify-content-xl-end {\n justify-content: flex-end !important;\n }\n .justify-content-xl-center {\n justify-content: center !important;\n }\n .justify-content-xl-between {\n justify-content: space-between !important;\n }\n .justify-content-xl-around {\n justify-content: space-around !important;\n }\n .align-items-xl-start {\n align-items: flex-start !important;\n }\n .align-items-xl-end {\n align-items: flex-end !important;\n }\n .align-items-xl-center {\n align-items: center !important;\n }\n .align-items-xl-baseline {\n align-items: baseline !important;\n }\n .align-items-xl-stretch {\n align-items: stretch !important;\n }\n .align-content-xl-start {\n align-content: flex-start !important;\n }\n .align-content-xl-end {\n align-content: flex-end !important;\n }\n .align-content-xl-center {\n align-content: center !important;\n }\n .align-content-xl-between {\n align-content: space-between !important;\n }\n .align-content-xl-around {\n align-content: space-around !important;\n }\n .align-content-xl-stretch {\n align-content: stretch !important;\n }\n .align-self-xl-auto {\n align-self: auto !important;\n }\n .align-self-xl-start {\n align-self: flex-start !important;\n }\n .align-self-xl-end {\n align-self: flex-end !important;\n }\n .align-self-xl-center {\n align-self: center !important;\n }\n .align-self-xl-baseline {\n align-self: baseline !important;\n }\n .align-self-xl-stretch {\n align-self: stretch !important;\n }\n}\n\n.float-left {\n float: left !important;\n}\n\n.float-right {\n float: right !important;\n}\n\n.float-none {\n float: none !important;\n}\n\n@media (min-width: 576px) {\n .float-sm-left {\n float: left !important;\n }\n .float-sm-right {\n float: right !important;\n }\n .float-sm-none {\n float: none !important;\n }\n}\n\n@media (min-width: 768px) {\n .float-md-left {\n float: left !important;\n }\n .float-md-right {\n float: right !important;\n }\n .float-md-none {\n float: none !important;\n }\n}\n\n@media (min-width: 992px) {\n .float-lg-left {\n float: left !important;\n }\n .float-lg-right {\n float: right !important;\n }\n .float-lg-none {\n float: none !important;\n }\n}\n\n@media (min-width: 1200px) {\n .float-xl-left {\n float: left !important;\n }\n .float-xl-right {\n float: right !important;\n }\n .float-xl-none {\n float: none !important;\n }\n}\n\n.fixed-top {\n position: fixed;\n top: 0;\n right: 0;\n left: 0;\n z-index: 1030;\n}\n\n.fixed-bottom {\n position: fixed;\n right: 0;\n bottom: 0;\n left: 0;\n z-index: 1030;\n}\n\n@supports (position: sticky) {\n .sticky-top {\n position: sticky;\n top: 0;\n z-index: 1020;\n }\n}\n\n.sr-only {\n position: absolute;\n width: 1px;\n height: 1px;\n padding: 0;\n overflow: hidden;\n clip: rect(0, 0, 0, 0);\n white-space: nowrap;\n clip-path: inset(50%);\n border: 0;\n}\n\n.sr-only-focusable:active, .sr-only-focusable:focus {\n position: static;\n width: auto;\n height: auto;\n overflow: visible;\n clip: auto;\n white-space: normal;\n clip-path: none;\n}\n\n.w-25 {\n width: 25% !important;\n}\n\n.w-50 {\n width: 50% !important;\n}\n\n.w-75 {\n width: 75% !important;\n}\n\n.w-100 {\n width: 100% !important;\n}\n\n.h-25 {\n height: 25% !important;\n}\n\n.h-50 {\n height: 50% !important;\n}\n\n.h-75 {\n height: 75% !important;\n}\n\n.h-100 {\n height: 100% !important;\n}\n\n.mw-100 {\n max-width: 100% !important;\n}\n\n.mh-100 {\n max-height: 100% !important;\n}\n\n.m-0 {\n margin: 0 !important;\n}\n\n.mt-0 {\n margin-top: 0 !important;\n}\n\n.mr-0 {\n margin-right: 0 !important;\n}\n\n.mb-0 {\n margin-bottom: 0 !important;\n}\n\n.ml-0 {\n margin-left: 0 !important;\n}\n\n.mx-0 {\n margin-right: 0 !important;\n margin-left: 0 !important;\n}\n\n.my-0 {\n margin-top: 0 !important;\n margin-bottom: 0 !important;\n}\n\n.m-1 {\n margin: 0.25rem !important;\n}\n\n.mt-1 {\n margin-top: 0.25rem !important;\n}\n\n.mr-1 {\n margin-right: 0.25rem !important;\n}\n\n.mb-1 {\n margin-bottom: 0.25rem !important;\n}\n\n.ml-1 {\n margin-left: 0.25rem !important;\n}\n\n.mx-1 {\n margin-right: 0.25rem !important;\n margin-left: 0.25rem !important;\n}\n\n.my-1 {\n margin-top: 0.25rem !important;\n margin-bottom: 0.25rem !important;\n}\n\n.m-2 {\n margin: 0.5rem !important;\n}\n\n.mt-2 {\n margin-top: 0.5rem !important;\n}\n\n.mr-2 {\n margin-right: 0.5rem !important;\n}\n\n.mb-2 {\n margin-bottom: 0.5rem !important;\n}\n\n.ml-2 {\n margin-left: 0.5rem !important;\n}\n\n.mx-2 {\n margin-right: 0.5rem !important;\n margin-left: 0.5rem !important;\n}\n\n.my-2 {\n margin-top: 0.5rem !important;\n margin-bottom: 0.5rem !important;\n}\n\n.m-3 {\n margin: 1rem !important;\n}\n\n.mt-3 {\n margin-top: 1rem !important;\n}\n\n.mr-3 {\n margin-right: 1rem !important;\n}\n\n.mb-3 {\n margin-bottom: 1rem !important;\n}\n\n.ml-3 {\n margin-left: 1rem !important;\n}\n\n.mx-3 {\n margin-right: 1rem !important;\n margin-left: 1rem !important;\n}\n\n.my-3 {\n margin-top: 1rem !important;\n margin-bottom: 1rem !important;\n}\n\n.m-4 {\n margin: 1.5rem !important;\n}\n\n.mt-4 {\n margin-top: 1.5rem !important;\n}\n\n.mr-4 {\n margin-right: 1.5rem !important;\n}\n\n.mb-4 {\n margin-bottom: 1.5rem !important;\n}\n\n.ml-4 {\n margin-left: 1.5rem !important;\n}\n\n.mx-4 {\n margin-right: 1.5rem !important;\n margin-left: 1.5rem !important;\n}\n\n.my-4 {\n margin-top: 1.5rem !important;\n margin-bottom: 1.5rem !important;\n}\n\n.m-5 {\n margin: 3rem !important;\n}\n\n.mt-5 {\n margin-top: 3rem !important;\n}\n\n.mr-5 {\n margin-right: 3rem !important;\n}\n\n.mb-5 {\n margin-bottom: 3rem !important;\n}\n\n.ml-5 {\n margin-left: 3rem !important;\n}\n\n.mx-5 {\n margin-right: 3rem !important;\n margin-left: 3rem !important;\n}\n\n.my-5 {\n margin-top: 3rem !important;\n margin-bottom: 3rem !important;\n}\n\n.p-0 {\n padding: 0 !important;\n}\n\n.pt-0 {\n padding-top: 0 !important;\n}\n\n.pr-0 {\n padding-right: 0 !important;\n}\n\n.pb-0 {\n padding-bottom: 0 !important;\n}\n\n.pl-0 {\n padding-left: 0 !important;\n}\n\n.px-0 {\n padding-right: 0 !important;\n padding-left: 0 !important;\n}\n\n.py-0 {\n padding-top: 0 !important;\n padding-bottom: 0 !important;\n}\n\n.p-1 {\n padding: 0.25rem !important;\n}\n\n.pt-1 {\n padding-top: 0.25rem !important;\n}\n\n.pr-1 {\n padding-right: 0.25rem !important;\n}\n\n.pb-1 {\n padding-bottom: 0.25rem !important;\n}\n\n.pl-1 {\n padding-left: 0.25rem !important;\n}\n\n.px-1 {\n padding-right: 0.25rem !important;\n padding-left: 0.25rem !important;\n}\n\n.py-1 {\n padding-top: 0.25rem !important;\n padding-bottom: 0.25rem !important;\n}\n\n.p-2 {\n padding: 0.5rem !important;\n}\n\n.pt-2 {\n padding-top: 0.5rem !important;\n}\n\n.pr-2 {\n padding-right: 0.5rem !important;\n}\n\n.pb-2 {\n padding-bottom: 0.5rem !important;\n}\n\n.pl-2 {\n padding-left: 0.5rem !important;\n}\n\n.px-2 {\n padding-right: 0.5rem !important;\n padding-left: 0.5rem !important;\n}\n\n.py-2 {\n padding-top: 0.5rem !important;\n padding-bottom: 0.5rem !important;\n}\n\n.p-3 {\n padding: 1rem !important;\n}\n\n.pt-3 {\n padding-top: 1rem !important;\n}\n\n.pr-3 {\n padding-right: 1rem !important;\n}\n\n.pb-3 {\n padding-bottom: 1rem !important;\n}\n\n.pl-3 {\n padding-left: 1rem !important;\n}\n\n.px-3 {\n padding-right: 1rem !important;\n padding-left: 1rem !important;\n}\n\n.py-3 {\n padding-top: 1rem !important;\n padding-bottom: 1rem !important;\n}\n\n.p-4 {\n padding: 1.5rem !important;\n}\n\n.pt-4 {\n padding-top: 1.5rem !important;\n}\n\n.pr-4 {\n padding-right: 1.5rem !important;\n}\n\n.pb-4 {\n padding-bottom: 1.5rem !important;\n}\n\n.pl-4 {\n padding-left: 1.5rem !important;\n}\n\n.px-4 {\n padding-right: 1.5rem !important;\n padding-left: 1.5rem !important;\n}\n\n.py-4 {\n padding-top: 1.5rem !important;\n padding-bottom: 1.5rem !important;\n}\n\n.p-5 {\n padding: 3rem !important;\n}\n\n.pt-5 {\n padding-top: 3rem !important;\n}\n\n.pr-5 {\n padding-right: 3rem !important;\n}\n\n.pb-5 {\n padding-bottom: 3rem !important;\n}\n\n.pl-5 {\n padding-left: 3rem !important;\n}\n\n.px-5 {\n padding-right: 3rem !important;\n padding-left: 3rem !important;\n}\n\n.py-5 {\n padding-top: 3rem !important;\n padding-bottom: 3rem !important;\n}\n\n.m-auto {\n margin: auto !important;\n}\n\n.mt-auto {\n margin-top: auto !important;\n}\n\n.mr-auto {\n margin-right: auto !important;\n}\n\n.mb-auto {\n margin-bottom: auto !important;\n}\n\n.ml-auto {\n margin-left: auto !important;\n}\n\n.mx-auto {\n margin-right: auto !important;\n margin-left: auto !important;\n}\n\n.my-auto {\n margin-top: auto !important;\n margin-bottom: auto !important;\n}\n\n@media (min-width: 576px) {\n .m-sm-0 {\n margin: 0 !important;\n }\n .mt-sm-0 {\n margin-top: 0 !important;\n }\n .mr-sm-0 {\n margin-right: 0 !important;\n }\n .mb-sm-0 {\n margin-bottom: 0 !important;\n }\n .ml-sm-0 {\n margin-left: 0 !important;\n }\n .mx-sm-0 {\n margin-right: 0 !important;\n margin-left: 0 !important;\n }\n .my-sm-0 {\n margin-top: 0 !important;\n margin-bottom: 0 !important;\n }\n .m-sm-1 {\n margin: 0.25rem !important;\n }\n .mt-sm-1 {\n margin-top: 0.25rem !important;\n }\n .mr-sm-1 {\n margin-right: 0.25rem !important;\n }\n .mb-sm-1 {\n margin-bottom: 0.25rem !important;\n }\n .ml-sm-1 {\n margin-left: 0.25rem !important;\n }\n .mx-sm-1 {\n margin-right: 0.25rem !important;\n margin-left: 0.25rem !important;\n }\n .my-sm-1 {\n margin-top: 0.25rem !important;\n margin-bottom: 0.25rem !important;\n }\n .m-sm-2 {\n margin: 0.5rem !important;\n }\n .mt-sm-2 {\n margin-top: 0.5rem !important;\n }\n .mr-sm-2 {\n margin-right: 0.5rem !important;\n }\n .mb-sm-2 {\n margin-bottom: 0.5rem !important;\n }\n .ml-sm-2 {\n margin-left: 0.5rem !important;\n }\n .mx-sm-2 {\n margin-right: 0.5rem !important;\n margin-left: 0.5rem !important;\n }\n .my-sm-2 {\n margin-top: 0.5rem !important;\n margin-bottom: 0.5rem !important;\n }\n .m-sm-3 {\n margin: 1rem !important;\n }\n .mt-sm-3 {\n margin-top: 1rem !important;\n }\n .mr-sm-3 {\n margin-right: 1rem !important;\n }\n .mb-sm-3 {\n margin-bottom: 1rem !important;\n }\n .ml-sm-3 {\n margin-left: 1rem !important;\n }\n .mx-sm-3 {\n margin-right: 1rem !important;\n margin-left: 1rem !important;\n }\n .my-sm-3 {\n margin-top: 1rem !important;\n margin-bottom: 1rem !important;\n }\n .m-sm-4 {\n margin: 1.5rem !important;\n }\n .mt-sm-4 {\n margin-top: 1.5rem !important;\n }\n .mr-sm-4 {\n margin-right: 1.5rem !important;\n }\n .mb-sm-4 {\n margin-bottom: 1.5rem !important;\n }\n .ml-sm-4 {\n margin-left: 1.5rem !important;\n }\n .mx-sm-4 {\n margin-right: 1.5rem !important;\n margin-left: 1.5rem !important;\n }\n .my-sm-4 {\n margin-top: 1.5rem !important;\n margin-bottom: 1.5rem !important;\n }\n .m-sm-5 {\n margin: 3rem !important;\n }\n .mt-sm-5 {\n margin-top: 3rem !important;\n }\n .mr-sm-5 {\n margin-right: 3rem !important;\n }\n .mb-sm-5 {\n margin-bottom: 3rem !important;\n }\n .ml-sm-5 {\n margin-left: 3rem !important;\n }\n .mx-sm-5 {\n margin-right: 3rem !important;\n margin-left: 3rem !important;\n }\n .my-sm-5 {\n margin-top: 3rem !important;\n margin-bottom: 3rem !important;\n }\n .p-sm-0 {\n padding: 0 !important;\n }\n .pt-sm-0 {\n padding-top: 0 !important;\n }\n .pr-sm-0 {\n padding-right: 0 !important;\n }\n .pb-sm-0 {\n padding-bottom: 0 !important;\n }\n .pl-sm-0 {\n padding-left: 0 !important;\n }\n .px-sm-0 {\n padding-right: 0 !important;\n padding-left: 0 !important;\n }\n .py-sm-0 {\n padding-top: 0 !important;\n padding-bottom: 0 !important;\n }\n .p-sm-1 {\n padding: 0.25rem !important;\n }\n .pt-sm-1 {\n padding-top: 0.25rem !important;\n }\n .pr-sm-1 {\n padding-right: 0.25rem !important;\n }\n .pb-sm-1 {\n padding-bottom: 0.25rem !important;\n }\n .pl-sm-1 {\n padding-left: 0.25rem !important;\n }\n .px-sm-1 {\n padding-right: 0.25rem !important;\n padding-left: 0.25rem !important;\n }\n .py-sm-1 {\n padding-top: 0.25rem !important;\n padding-bottom: 0.25rem !important;\n }\n .p-sm-2 {\n padding: 0.5rem !important;\n }\n .pt-sm-2 {\n padding-top: 0.5rem !important;\n }\n .pr-sm-2 {\n padding-right: 0.5rem !important;\n }\n .pb-sm-2 {\n padding-bottom: 0.5rem !important;\n }\n .pl-sm-2 {\n padding-left: 0.5rem !important;\n }\n .px-sm-2 {\n padding-right: 0.5rem !important;\n padding-left: 0.5rem !important;\n }\n .py-sm-2 {\n padding-top: 0.5rem !important;\n padding-bottom: 0.5rem !important;\n }\n .p-sm-3 {\n padding: 1rem !important;\n }\n .pt-sm-3 {\n padding-top: 1rem !important;\n }\n .pr-sm-3 {\n padding-right: 1rem !important;\n }\n .pb-sm-3 {\n padding-bottom: 1rem !important;\n }\n .pl-sm-3 {\n padding-left: 1rem !important;\n }\n .px-sm-3 {\n padding-right: 1rem !important;\n padding-left: 1rem !important;\n }\n .py-sm-3 {\n padding-top: 1rem !important;\n padding-bottom: 1rem !important;\n }\n .p-sm-4 {\n padding: 1.5rem !important;\n }\n .pt-sm-4 {\n padding-top: 1.5rem !important;\n }\n .pr-sm-4 {\n padding-right: 1.5rem !important;\n }\n .pb-sm-4 {\n padding-bottom: 1.5rem !important;\n }\n .pl-sm-4 {\n padding-left: 1.5rem !important;\n }\n .px-sm-4 {\n padding-right: 1.5rem !important;\n padding-left: 1.5rem !important;\n }\n .py-sm-4 {\n padding-top: 1.5rem !important;\n padding-bottom: 1.5rem !important;\n }\n .p-sm-5 {\n padding: 3rem !important;\n }\n .pt-sm-5 {\n padding-top: 3rem !important;\n }\n .pr-sm-5 {\n padding-right: 3rem !important;\n }\n .pb-sm-5 {\n padding-bottom: 3rem !important;\n }\n .pl-sm-5 {\n padding-left: 3rem !important;\n }\n .px-sm-5 {\n padding-right: 3rem !important;\n padding-left: 3rem !important;\n }\n .py-sm-5 {\n padding-top: 3rem !important;\n padding-bottom: 3rem !important;\n }\n .m-sm-auto {\n margin: auto !important;\n }\n .mt-sm-auto {\n margin-top: auto !important;\n }\n .mr-sm-auto {\n margin-right: auto !important;\n }\n .mb-sm-auto {\n margin-bottom: auto !important;\n }\n .ml-sm-auto {\n margin-left: auto !important;\n }\n .mx-sm-auto {\n margin-right: auto !important;\n margin-left: auto !important;\n }\n .my-sm-auto {\n margin-top: auto !important;\n margin-bottom: auto !important;\n }\n}\n\n@media (min-width: 768px) {\n .m-md-0 {\n margin: 0 !important;\n }\n .mt-md-0 {\n margin-top: 0 !important;\n }\n .mr-md-0 {\n margin-right: 0 !important;\n }\n .mb-md-0 {\n margin-bottom: 0 !important;\n }\n .ml-md-0 {\n margin-left: 0 !important;\n }\n .mx-md-0 {\n margin-right: 0 !important;\n margin-left: 0 !important;\n }\n .my-md-0 {\n margin-top: 0 !important;\n margin-bottom: 0 !important;\n }\n .m-md-1 {\n margin: 0.25rem !important;\n }\n .mt-md-1 {\n margin-top: 0.25rem !important;\n }\n .mr-md-1 {\n margin-right: 0.25rem !important;\n }\n .mb-md-1 {\n margin-bottom: 0.25rem !important;\n }\n .ml-md-1 {\n margin-left: 0.25rem !important;\n }\n .mx-md-1 {\n margin-right: 0.25rem !important;\n margin-left: 0.25rem !important;\n }\n .my-md-1 {\n margin-top: 0.25rem !important;\n margin-bottom: 0.25rem !important;\n }\n .m-md-2 {\n margin: 0.5rem !important;\n }\n .mt-md-2 {\n margin-top: 0.5rem !important;\n }\n .mr-md-2 {\n margin-right: 0.5rem !important;\n }\n .mb-md-2 {\n margin-bottom: 0.5rem !important;\n }\n .ml-md-2 {\n margin-left: 0.5rem !important;\n }\n .mx-md-2 {\n margin-right: 0.5rem !important;\n margin-left: 0.5rem !important;\n }\n .my-md-2 {\n margin-top: 0.5rem !important;\n margin-bottom: 0.5rem !important;\n }\n .m-md-3 {\n margin: 1rem !important;\n }\n .mt-md-3 {\n margin-top: 1rem !important;\n }\n .mr-md-3 {\n margin-right: 1rem !important;\n }\n .mb-md-3 {\n margin-bottom: 1rem !important;\n }\n .ml-md-3 {\n margin-left: 1rem !important;\n }\n .mx-md-3 {\n margin-right: 1rem !important;\n margin-left: 1rem !important;\n }\n .my-md-3 {\n margin-top: 1rem !important;\n margin-bottom: 1rem !important;\n }\n .m-md-4 {\n margin: 1.5rem !important;\n }\n .mt-md-4 {\n margin-top: 1.5rem !important;\n }\n .mr-md-4 {\n margin-right: 1.5rem !important;\n }\n .mb-md-4 {\n margin-bottom: 1.5rem !important;\n }\n .ml-md-4 {\n margin-left: 1.5rem !important;\n }\n .mx-md-4 {\n margin-right: 1.5rem !important;\n margin-left: 1.5rem !important;\n }\n .my-md-4 {\n margin-top: 1.5rem !important;\n margin-bottom: 1.5rem !important;\n }\n .m-md-5 {\n margin: 3rem !important;\n }\n .mt-md-5 {\n margin-top: 3rem !important;\n }\n .mr-md-5 {\n margin-right: 3rem !important;\n }\n .mb-md-5 {\n margin-bottom: 3rem !important;\n }\n .ml-md-5 {\n margin-left: 3rem !important;\n }\n .mx-md-5 {\n margin-right: 3rem !important;\n margin-left: 3rem !important;\n }\n .my-md-5 {\n margin-top: 3rem !important;\n margin-bottom: 3rem !important;\n }\n .p-md-0 {\n padding: 0 !important;\n }\n .pt-md-0 {\n padding-top: 0 !important;\n }\n .pr-md-0 {\n padding-right: 0 !important;\n }\n .pb-md-0 {\n padding-bottom: 0 !important;\n }\n .pl-md-0 {\n padding-left: 0 !important;\n }\n .px-md-0 {\n padding-right: 0 !important;\n padding-left: 0 !important;\n }\n .py-md-0 {\n padding-top: 0 !important;\n padding-bottom: 0 !important;\n }\n .p-md-1 {\n padding: 0.25rem !important;\n }\n .pt-md-1 {\n padding-top: 0.25rem !important;\n }\n .pr-md-1 {\n padding-right: 0.25rem !important;\n }\n .pb-md-1 {\n padding-bottom: 0.25rem !important;\n }\n .pl-md-1 {\n padding-left: 0.25rem !important;\n }\n .px-md-1 {\n padding-right: 0.25rem !important;\n padding-left: 0.25rem !important;\n }\n .py-md-1 {\n padding-top: 0.25rem !important;\n padding-bottom: 0.25rem !important;\n }\n .p-md-2 {\n padding: 0.5rem !important;\n }\n .pt-md-2 {\n padding-top: 0.5rem !important;\n }\n .pr-md-2 {\n padding-right: 0.5rem !important;\n }\n .pb-md-2 {\n padding-bottom: 0.5rem !important;\n }\n .pl-md-2 {\n padding-left: 0.5rem !important;\n }\n .px-md-2 {\n padding-right: 0.5rem !important;\n padding-left: 0.5rem !important;\n }\n .py-md-2 {\n padding-top: 0.5rem !important;\n padding-bottom: 0.5rem !important;\n }\n .p-md-3 {\n padding: 1rem !important;\n }\n .pt-md-3 {\n padding-top: 1rem !important;\n }\n .pr-md-3 {\n padding-right: 1rem !important;\n }\n .pb-md-3 {\n padding-bottom: 1rem !important;\n }\n .pl-md-3 {\n padding-left: 1rem !important;\n }\n .px-md-3 {\n padding-right: 1rem !important;\n padding-left: 1rem !important;\n }\n .py-md-3 {\n padding-top: 1rem !important;\n padding-bottom: 1rem !important;\n }\n .p-md-4 {\n padding: 1.5rem !important;\n }\n .pt-md-4 {\n padding-top: 1.5rem !important;\n }\n .pr-md-4 {\n padding-right: 1.5rem !important;\n }\n .pb-md-4 {\n padding-bottom: 1.5rem !important;\n }\n .pl-md-4 {\n padding-left: 1.5rem !important;\n }\n .px-md-4 {\n padding-right: 1.5rem !important;\n padding-left: 1.5rem !important;\n }\n .py-md-4 {\n padding-top: 1.5rem !important;\n padding-bottom: 1.5rem !important;\n }\n .p-md-5 {\n padding: 3rem !important;\n }\n .pt-md-5 {\n padding-top: 3rem !important;\n }\n .pr-md-5 {\n padding-right: 3rem !important;\n }\n .pb-md-5 {\n padding-bottom: 3rem !important;\n }\n .pl-md-5 {\n padding-left: 3rem !important;\n }\n .px-md-5 {\n padding-right: 3rem !important;\n padding-left: 3rem !important;\n }\n .py-md-5 {\n padding-top: 3rem !important;\n padding-bottom: 3rem !important;\n }\n .m-md-auto {\n margin: auto !important;\n }\n .mt-md-auto {\n margin-top: auto !important;\n }\n .mr-md-auto {\n margin-right: auto !important;\n }\n .mb-md-auto {\n margin-bottom: auto !important;\n }\n .ml-md-auto {\n margin-left: auto !important;\n }\n .mx-md-auto {\n margin-right: auto !important;\n margin-left: auto !important;\n }\n .my-md-auto {\n margin-top: auto !important;\n margin-bottom: auto !important;\n }\n}\n\n@media (min-width: 992px) {\n .m-lg-0 {\n margin: 0 !important;\n }\n .mt-lg-0 {\n margin-top: 0 !important;\n }\n .mr-lg-0 {\n margin-right: 0 !important;\n }\n .mb-lg-0 {\n margin-bottom: 0 !important;\n }\n .ml-lg-0 {\n margin-left: 0 !important;\n }\n .mx-lg-0 {\n margin-right: 0 !important;\n margin-left: 0 !important;\n }\n .my-lg-0 {\n margin-top: 0 !important;\n margin-bottom: 0 !important;\n }\n .m-lg-1 {\n margin: 0.25rem !important;\n }\n .mt-lg-1 {\n margin-top: 0.25rem !important;\n }\n .mr-lg-1 {\n margin-right: 0.25rem !important;\n }\n .mb-lg-1 {\n margin-bottom: 0.25rem !important;\n }\n .ml-lg-1 {\n margin-left: 0.25rem !important;\n }\n .mx-lg-1 {\n margin-right: 0.25rem !important;\n margin-left: 0.25rem !important;\n }\n .my-lg-1 {\n margin-top: 0.25rem !important;\n margin-bottom: 0.25rem !important;\n }\n .m-lg-2 {\n margin: 0.5rem !important;\n }\n .mt-lg-2 {\n margin-top: 0.5rem !important;\n }\n .mr-lg-2 {\n margin-right: 0.5rem !important;\n }\n .mb-lg-2 {\n margin-bottom: 0.5rem !important;\n }\n .ml-lg-2 {\n margin-left: 0.5rem !important;\n }\n .mx-lg-2 {\n margin-right: 0.5rem !important;\n margin-left: 0.5rem !important;\n }\n .my-lg-2 {\n margin-top: 0.5rem !important;\n margin-bottom: 0.5rem !important;\n }\n .m-lg-3 {\n margin: 1rem !important;\n }\n .mt-lg-3 {\n margin-top: 1rem !important;\n }\n .mr-lg-3 {\n margin-right: 1rem !important;\n }\n .mb-lg-3 {\n margin-bottom: 1rem !important;\n }\n .ml-lg-3 {\n margin-left: 1rem !important;\n }\n .mx-lg-3 {\n margin-right: 1rem !important;\n margin-left: 1rem !important;\n }\n .my-lg-3 {\n margin-top: 1rem !important;\n margin-bottom: 1rem !important;\n }\n .m-lg-4 {\n margin: 1.5rem !important;\n }\n .mt-lg-4 {\n margin-top: 1.5rem !important;\n }\n .mr-lg-4 {\n margin-right: 1.5rem !important;\n }\n .mb-lg-4 {\n margin-bottom: 1.5rem !important;\n }\n .ml-lg-4 {\n margin-left: 1.5rem !important;\n }\n .mx-lg-4 {\n margin-right: 1.5rem !important;\n margin-left: 1.5rem !important;\n }\n .my-lg-4 {\n margin-top: 1.5rem !important;\n margin-bottom: 1.5rem !important;\n }\n .m-lg-5 {\n margin: 3rem !important;\n }\n .mt-lg-5 {\n margin-top: 3rem !important;\n }\n .mr-lg-5 {\n margin-right: 3rem !important;\n }\n .mb-lg-5 {\n margin-bottom: 3rem !important;\n }\n .ml-lg-5 {\n margin-left: 3rem !important;\n }\n .mx-lg-5 {\n margin-right: 3rem !important;\n margin-left: 3rem !important;\n }\n .my-lg-5 {\n margin-top: 3rem !important;\n margin-bottom: 3rem !important;\n }\n .p-lg-0 {\n padding: 0 !important;\n }\n .pt-lg-0 {\n padding-top: 0 !important;\n }\n .pr-lg-0 {\n padding-right: 0 !important;\n }\n .pb-lg-0 {\n padding-bottom: 0 !important;\n }\n .pl-lg-0 {\n padding-left: 0 !important;\n }\n .px-lg-0 {\n padding-right: 0 !important;\n padding-left: 0 !important;\n }\n .py-lg-0 {\n padding-top: 0 !important;\n padding-bottom: 0 !important;\n }\n .p-lg-1 {\n padding: 0.25rem !important;\n }\n .pt-lg-1 {\n padding-top: 0.25rem !important;\n }\n .pr-lg-1 {\n padding-right: 0.25rem !important;\n }\n .pb-lg-1 {\n padding-bottom: 0.25rem !important;\n }\n .pl-lg-1 {\n padding-left: 0.25rem !important;\n }\n .px-lg-1 {\n padding-right: 0.25rem !important;\n padding-left: 0.25rem !important;\n }\n .py-lg-1 {\n padding-top: 0.25rem !important;\n padding-bottom: 0.25rem !important;\n }\n .p-lg-2 {\n padding: 0.5rem !important;\n }\n .pt-lg-2 {\n padding-top: 0.5rem !important;\n }\n .pr-lg-2 {\n padding-right: 0.5rem !important;\n }\n .pb-lg-2 {\n padding-bottom: 0.5rem !important;\n }\n .pl-lg-2 {\n padding-left: 0.5rem !important;\n }\n .px-lg-2 {\n padding-right: 0.5rem !important;\n padding-left: 0.5rem !important;\n }\n .py-lg-2 {\n padding-top: 0.5rem !important;\n padding-bottom: 0.5rem !important;\n }\n .p-lg-3 {\n padding: 1rem !important;\n }\n .pt-lg-3 {\n padding-top: 1rem !important;\n }\n .pr-lg-3 {\n padding-right: 1rem !important;\n }\n .pb-lg-3 {\n padding-bottom: 1rem !important;\n }\n .pl-lg-3 {\n padding-left: 1rem !important;\n }\n .px-lg-3 {\n padding-right: 1rem !important;\n padding-left: 1rem !important;\n }\n .py-lg-3 {\n padding-top: 1rem !important;\n padding-bottom: 1rem !important;\n }\n .p-lg-4 {\n padding: 1.5rem !important;\n }\n .pt-lg-4 {\n padding-top: 1.5rem !important;\n }\n .pr-lg-4 {\n padding-right: 1.5rem !important;\n }\n .pb-lg-4 {\n padding-bottom: 1.5rem !important;\n }\n .pl-lg-4 {\n padding-left: 1.5rem !important;\n }\n .px-lg-4 {\n padding-right: 1.5rem !important;\n padding-left: 1.5rem !important;\n }\n .py-lg-4 {\n padding-top: 1.5rem !important;\n padding-bottom: 1.5rem !important;\n }\n .p-lg-5 {\n padding: 3rem !important;\n }\n .pt-lg-5 {\n padding-top: 3rem !important;\n }\n .pr-lg-5 {\n padding-right: 3rem !important;\n }\n .pb-lg-5 {\n padding-bottom: 3rem !important;\n }\n .pl-lg-5 {\n padding-left: 3rem !important;\n }\n .px-lg-5 {\n padding-right: 3rem !important;\n padding-left: 3rem !important;\n }\n .py-lg-5 {\n padding-top: 3rem !important;\n padding-bottom: 3rem !important;\n }\n .m-lg-auto {\n margin: auto !important;\n }\n .mt-lg-auto {\n margin-top: auto !important;\n }\n .mr-lg-auto {\n margin-right: auto !important;\n }\n .mb-lg-auto {\n margin-bottom: auto !important;\n }\n .ml-lg-auto {\n margin-left: auto !important;\n }\n .mx-lg-auto {\n margin-right: auto !important;\n margin-left: auto !important;\n }\n .my-lg-auto {\n margin-top: auto !important;\n margin-bottom: auto !important;\n }\n}\n\n@media (min-width: 1200px) {\n .m-xl-0 {\n margin: 0 !important;\n }\n .mt-xl-0 {\n margin-top: 0 !important;\n }\n .mr-xl-0 {\n margin-right: 0 !important;\n }\n .mb-xl-0 {\n margin-bottom: 0 !important;\n }\n .ml-xl-0 {\n margin-left: 0 !important;\n }\n .mx-xl-0 {\n margin-right: 0 !important;\n margin-left: 0 !important;\n }\n .my-xl-0 {\n margin-top: 0 !important;\n margin-bottom: 0 !important;\n }\n .m-xl-1 {\n margin: 0.25rem !important;\n }\n .mt-xl-1 {\n margin-top: 0.25rem !important;\n }\n .mr-xl-1 {\n margin-right: 0.25rem !important;\n }\n .mb-xl-1 {\n margin-bottom: 0.25rem !important;\n }\n .ml-xl-1 {\n margin-left: 0.25rem !important;\n }\n .mx-xl-1 {\n margin-right: 0.25rem !important;\n margin-left: 0.25rem !important;\n }\n .my-xl-1 {\n margin-top: 0.25rem !important;\n margin-bottom: 0.25rem !important;\n }\n .m-xl-2 {\n margin: 0.5rem !important;\n }\n .mt-xl-2 {\n margin-top: 0.5rem !important;\n }\n .mr-xl-2 {\n margin-right: 0.5rem !important;\n }\n .mb-xl-2 {\n margin-bottom: 0.5rem !important;\n }\n .ml-xl-2 {\n margin-left: 0.5rem !important;\n }\n .mx-xl-2 {\n margin-right: 0.5rem !important;\n margin-left: 0.5rem !important;\n }\n .my-xl-2 {\n margin-top: 0.5rem !important;\n margin-bottom: 0.5rem !important;\n }\n .m-xl-3 {\n margin: 1rem !important;\n }\n .mt-xl-3 {\n margin-top: 1rem !important;\n }\n .mr-xl-3 {\n margin-right: 1rem !important;\n }\n .mb-xl-3 {\n margin-bottom: 1rem !important;\n }\n .ml-xl-3 {\n margin-left: 1rem !important;\n }\n .mx-xl-3 {\n margin-right: 1rem !important;\n margin-left: 1rem !important;\n }\n .my-xl-3 {\n margin-top: 1rem !important;\n margin-bottom: 1rem !important;\n }\n .m-xl-4 {\n margin: 1.5rem !important;\n }\n .mt-xl-4 {\n margin-top: 1.5rem !important;\n }\n .mr-xl-4 {\n margin-right: 1.5rem !important;\n }\n .mb-xl-4 {\n margin-bottom: 1.5rem !important;\n }\n .ml-xl-4 {\n margin-left: 1.5rem !important;\n }\n .mx-xl-4 {\n margin-right: 1.5rem !important;\n margin-left: 1.5rem !important;\n }\n .my-xl-4 {\n margin-top: 1.5rem !important;\n margin-bottom: 1.5rem !important;\n }\n .m-xl-5 {\n margin: 3rem !important;\n }\n .mt-xl-5 {\n margin-top: 3rem !important;\n }\n .mr-xl-5 {\n margin-right: 3rem !important;\n }\n .mb-xl-5 {\n margin-bottom: 3rem !important;\n }\n .ml-xl-5 {\n margin-left: 3rem !important;\n }\n .mx-xl-5 {\n margin-right: 3rem !important;\n margin-left: 3rem !important;\n }\n .my-xl-5 {\n margin-top: 3rem !important;\n margin-bottom: 3rem !important;\n }\n .p-xl-0 {\n padding: 0 !important;\n }\n .pt-xl-0 {\n padding-top: 0 !important;\n }\n .pr-xl-0 {\n padding-right: 0 !important;\n }\n .pb-xl-0 {\n padding-bottom: 0 !important;\n }\n .pl-xl-0 {\n padding-left: 0 !important;\n }\n .px-xl-0 {\n padding-right: 0 !important;\n padding-left: 0 !important;\n }\n .py-xl-0 {\n padding-top: 0 !important;\n padding-bottom: 0 !important;\n }\n .p-xl-1 {\n padding: 0.25rem !important;\n }\n .pt-xl-1 {\n padding-top: 0.25rem !important;\n }\n .pr-xl-1 {\n padding-right: 0.25rem !important;\n }\n .pb-xl-1 {\n padding-bottom: 0.25rem !important;\n }\n .pl-xl-1 {\n padding-left: 0.25rem !important;\n }\n .px-xl-1 {\n padding-right: 0.25rem !important;\n padding-left: 0.25rem !important;\n }\n .py-xl-1 {\n padding-top: 0.25rem !important;\n padding-bottom: 0.25rem !important;\n }\n .p-xl-2 {\n padding: 0.5rem !important;\n }\n .pt-xl-2 {\n padding-top: 0.5rem !important;\n }\n .pr-xl-2 {\n padding-right: 0.5rem !important;\n }\n .pb-xl-2 {\n padding-bottom: 0.5rem !important;\n }\n .pl-xl-2 {\n padding-left: 0.5rem !important;\n }\n .px-xl-2 {\n padding-right: 0.5rem !important;\n padding-left: 0.5rem !important;\n }\n .py-xl-2 {\n padding-top: 0.5rem !important;\n padding-bottom: 0.5rem !important;\n }\n .p-xl-3 {\n padding: 1rem !important;\n }\n .pt-xl-3 {\n padding-top: 1rem !important;\n }\n .pr-xl-3 {\n padding-right: 1rem !important;\n }\n .pb-xl-3 {\n padding-bottom: 1rem !important;\n }\n .pl-xl-3 {\n padding-left: 1rem !important;\n }\n .px-xl-3 {\n padding-right: 1rem !important;\n padding-left: 1rem !important;\n }\n .py-xl-3 {\n padding-top: 1rem !important;\n padding-bottom: 1rem !important;\n }\n .p-xl-4 {\n padding: 1.5rem !important;\n }\n .pt-xl-4 {\n padding-top: 1.5rem !important;\n }\n .pr-xl-4 {\n padding-right: 1.5rem !important;\n }\n .pb-xl-4 {\n padding-bottom: 1.5rem !important;\n }\n .pl-xl-4 {\n padding-left: 1.5rem !important;\n }\n .px-xl-4 {\n padding-right: 1.5rem !important;\n padding-left: 1.5rem !important;\n }\n .py-xl-4 {\n padding-top: 1.5rem !important;\n padding-bottom: 1.5rem !important;\n }\n .p-xl-5 {\n padding: 3rem !important;\n }\n .pt-xl-5 {\n padding-top: 3rem !important;\n }\n .pr-xl-5 {\n padding-right: 3rem !important;\n }\n .pb-xl-5 {\n padding-bottom: 3rem !important;\n }\n .pl-xl-5 {\n padding-left: 3rem !important;\n }\n .px-xl-5 {\n padding-right: 3rem !important;\n padding-left: 3rem !important;\n }\n .py-xl-5 {\n padding-top: 3rem !important;\n padding-bottom: 3rem !important;\n }\n .m-xl-auto {\n margin: auto !important;\n }\n .mt-xl-auto {\n margin-top: auto !important;\n }\n .mr-xl-auto {\n margin-right: auto !important;\n }\n .mb-xl-auto {\n margin-bottom: auto !important;\n }\n .ml-xl-auto {\n margin-left: auto !important;\n }\n .mx-xl-auto {\n margin-right: auto !important;\n margin-left: auto !important;\n }\n .my-xl-auto {\n margin-top: auto !important;\n margin-bottom: auto !important;\n }\n}\n\n.text-justify {\n text-align: justify !important;\n}\n\n.text-nowrap {\n white-space: nowrap !important;\n}\n\n.text-truncate {\n overflow: hidden;\n text-overflow: ellipsis;\n white-space: nowrap;\n}\n\n.text-left {\n text-align: left !important;\n}\n\n.text-right {\n text-align: right !important;\n}\n\n.text-center {\n text-align: center !important;\n}\n\n@media (min-width: 576px) {\n .text-sm-left {\n text-align: left !important;\n }\n .text-sm-right {\n text-align: right !important;\n }\n .text-sm-center {\n text-align: center !important;\n }\n}\n\n@media (min-width: 768px) {\n .text-md-left {\n text-align: left !important;\n }\n .text-md-right {\n text-align: right !important;\n }\n .text-md-center {\n text-align: center !important;\n }\n}\n\n@media (min-width: 992px) {\n .text-lg-left {\n text-align: left !important;\n }\n .text-lg-right {\n text-align: right !important;\n }\n .text-lg-center {\n text-align: center !important;\n }\n}\n\n@media (min-width: 1200px) {\n .text-xl-left {\n text-align: left !important;\n }\n .text-xl-right {\n text-align: right !important;\n }\n .text-xl-center {\n text-align: center !important;\n }\n}\n\n.text-lowercase {\n text-transform: lowercase !important;\n}\n\n.text-uppercase {\n text-transform: uppercase !important;\n}\n\n.text-capitalize {\n text-transform: capitalize !important;\n}\n\n.font-weight-normal {\n font-weight: normal;\n}\n\n.font-weight-bold {\n font-weight: bold;\n}\n\n.font-italic {\n font-style: italic;\n}\n\n.text-white {\n color: #fff !important;\n}\n\n.text-primary {\n color: #007bff !important;\n}\n\na.text-primary:focus, a.text-primary:hover {\n color: #0062cc !important;\n}\n\n.text-secondary {\n color: #868e96 !important;\n}\n\na.text-secondary:focus, a.text-secondary:hover {\n color: #6c757d !important;\n}\n\n.text-success {\n color: #28a745 !important;\n}\n\na.text-success:focus, a.text-success:hover {\n color: #1e7e34 !important;\n}\n\n.text-info {\n color: #17a2b8 !important;\n}\n\na.text-info:focus, a.text-info:hover {\n color: #117a8b !important;\n}\n\n.text-warning {\n color: #ffc107 !important;\n}\n\na.text-warning:focus, a.text-warning:hover {\n color: #d39e00 !important;\n}\n\n.text-danger {\n color: #dc3545 !important;\n}\n\na.text-danger:focus, a.text-danger:hover {\n color: #bd2130 !important;\n}\n\n.text-light {\n color: #f8f9fa !important;\n}\n\na.text-light:focus, a.text-light:hover {\n color: #dae0e5 !important;\n}\n\n.text-dark {\n color: #343a40 !important;\n}\n\na.text-dark:focus, a.text-dark:hover {\n color: #1d2124 !important;\n}\n\n.text-muted {\n color: #868e96 !important;\n}\n\n.text-hide {\n font: 0/0 a;\n color: transparent;\n text-shadow: none;\n background-color: transparent;\n border: 0;\n}\n\n.visible {\n visibility: visible !important;\n}\n\n.invisible {\n visibility: hidden !important;\n}\n\n/*# sourceMappingURL=bootstrap.css.map */","// scss-lint:disable QualifyingElement, DuplicateProperty, VendorPrefix\n\n// Reboot\n//\n// Normalization of HTML elements, manually forked from Normalize.css to remove\n// styles targeting irrelevant browsers while applying new styles.\n//\n// Normalize is licensed MIT. https://github.com/necolas/normalize.css\n\n\n// Document\n//\n// 1. Change from `box-sizing: content-box` so that `width` is not affected by `padding` or `border`.\n// 2. Change the default font family in all browsers.\n// 3. Correct the line height in all browsers.\n// 4. Prevent adjustments of font size after orientation changes in IE on Windows Phone and in iOS.\n// 5. Setting @viewport causes scrollbars to overlap content in IE11 and Edge, so\n// we force a non-overlapping, non-auto-hiding scrollbar to counteract.\n// 6. Change the default tap highlight to be completely transparent in iOS.\n\nhtml {\n box-sizing: border-box; // 1\n font-family: sans-serif; // 2\n line-height: 1.15; // 3\n -webkit-text-size-adjust: 100%; // 4\n -ms-text-size-adjust: 100%; // 4\n -ms-overflow-style: scrollbar; // 5\n -webkit-tap-highlight-color: rgba(0,0,0,0); // 6\n}\n\n*,\n*::before,\n*::after {\n box-sizing: inherit; // 1\n}\n\n// IE10+ doesn't honor `` in some cases.\n@at-root {\n @-ms-viewport { width: device-width; }\n}\n\n// Shim for \"new\" HTML5 structural elements to display correctly (IE10, older browsers)\narticle, aside, dialog, figcaption, figure, footer, header, hgroup, main, nav, section {\n display: block;\n}\n\n// Body\n//\n// 1. Remove the margin in all browsers.\n// 2. As a best practice, apply a default `background-color`.\n\nbody {\n margin: 0; // 1\n font-family: $font-family-base;\n font-size: $font-size-base;\n font-weight: $font-weight-base;\n line-height: $line-height-base;\n color: $body-color;\n background-color: $body-bg; // 2\n}\n\n// Suppress the focus outline on elements that cannot be accessed via keyboard.\n// This prevents an unwanted focus outline from appearing around elements that\n// might still respond to pointer events.\n//\n// Credit: https://github.com/suitcss/base\n[tabindex=\"-1\"]:focus {\n outline: none !important;\n}\n\n\n// Content grouping\n//\n// 1. Add the correct box sizing in Firefox.\n// 2. Show the overflow in Edge and IE.\n\nhr {\n box-sizing: content-box; // 1\n height: 0; // 1\n overflow: visible; // 2\n}\n\n\n//\n// Typography\n//\n\n// Remove top margins from headings\n//\n// By default, `

`-`

` all receive top and bottom margins. We nuke the top\n// margin for easier control within type scales as it avoids margin collapsing.\nh1, h2, h3, h4, h5, h6 {\n margin-top: 0;\n margin-bottom: .5rem;\n}\n\n// Reset margins on paragraphs\n//\n// Similarly, the top margin on `

`s get reset. However, we also reset the\n// bottom margin to use `rem` units instead of `em`.\np {\n margin-top: 0;\n margin-bottom: 1rem;\n}\n\n// Abbreviations\n//\n// 1. Remove the bottom border in Firefox 39-.\n// 2. Add the correct text decoration in Chrome, Edge, IE, Opera, and Safari.\n// 3. Add explicit cursor to indicate changed behavior.\n// 4. Duplicate behavior to the data-* attribute for our tooltip plugin\n\nabbr[title],\nabbr[data-original-title] { // 4\n text-decoration: underline; // 2\n text-decoration: underline dotted; // 2\n cursor: help; // 3\n border-bottom: 0; // 1\n}\n\naddress {\n margin-bottom: 1rem;\n font-style: normal;\n line-height: inherit;\n}\n\nol,\nul,\ndl {\n margin-top: 0;\n margin-bottom: 1rem;\n}\n\nol ol,\nul ul,\nol ul,\nul ol {\n margin-bottom: 0;\n}\n\ndt {\n font-weight: $dt-font-weight;\n}\n\ndd {\n margin-bottom: .5rem;\n margin-left: 0; // Undo browser default\n}\n\nblockquote {\n margin: 0 0 1rem;\n}\n\ndfn {\n font-style: italic; // Add the correct font style in Android 4.3-\n}\n\nb,\nstrong {\n font-weight: bolder; // Add the correct font weight in Chrome, Edge, and Safari\n}\n\nsmall {\n font-size: 80%; // Add the correct font size in all browsers\n}\n\n//\n// Prevent `sub` and `sup` elements from affecting the line height in\n// all browsers.\n//\n\nsub,\nsup {\n position: relative;\n font-size: 75%;\n line-height: 0;\n vertical-align: baseline;\n}\n\nsub { bottom: -.25em; }\nsup { top: -.5em; }\n\n\n//\n// Links\n//\n\na {\n color: $link-color;\n text-decoration: $link-decoration;\n background-color: transparent; // Remove the gray background on active links in IE 10.\n -webkit-text-decoration-skip: objects; // Remove gaps in links underline in iOS 8+ and Safari 8+.\n\n @include hover {\n color: $link-hover-color;\n text-decoration: $link-hover-decoration;\n }\n}\n\n// And undo these styles for placeholder links/named anchors (without href)\n// which have not been made explicitly keyboard-focusable (without tabindex).\n// It would be more straightforward to just use a[href] in previous block, but that\n// causes specificity issues in many other styles that are too complex to fix.\n// See https://github.com/twbs/bootstrap/issues/19402\n\na:not([href]):not([tabindex]) {\n color: inherit;\n text-decoration: none;\n\n @include hover-focus {\n color: inherit;\n text-decoration: none;\n }\n\n &:focus {\n outline: 0;\n }\n}\n\n\n//\n// Code\n//\n\npre,\ncode,\nkbd,\nsamp {\n font-family: monospace, monospace; // Correct the inheritance and scaling of font size in all browsers.\n font-size: 1em; // Correct the odd `em` font sizing in all browsers.\n}\n\npre {\n // Remove browser default top margin\n margin-top: 0;\n // Reset browser default of `1em` to use `rem`s\n margin-bottom: 1rem;\n // Don't allow content to break outside\n overflow: auto;\n}\n\n\n//\n// Figures\n//\n\nfigure {\n // Apply a consistent margin strategy (matches our type styles).\n margin: 0 0 1rem;\n}\n\n\n//\n// Images and content\n//\n\nimg {\n vertical-align: middle;\n border-style: none; // Remove the border on images inside links in IE 10-.\n}\n\nsvg:not(:root) {\n overflow: hidden; // Hide the overflow in IE\n}\n\n\n// Avoid 300ms click delay on touch devices that support the `touch-action` CSS property.\n//\n// In particular, unlike most other browsers, IE11+Edge on Windows 10 on touch devices and IE Mobile 10-11\n// DON'T remove the click delay when `` is present.\n// However, they DO support removing the click delay via `touch-action: manipulation`.\n// See:\n// * https://v4-alpha.getbootstrap.com/content/reboot/#click-delay-optimization-for-touch\n// * http://caniuse.com/#feat=css-touch-action\n// * https://patrickhlauke.github.io/touch/tests/results/#suppressing-300ms-delay\n\na,\narea,\nbutton,\n[role=\"button\"],\ninput,\nlabel,\nselect,\nsummary,\ntextarea {\n touch-action: manipulation;\n}\n\n\n//\n// Tables\n//\n\ntable {\n border-collapse: collapse; // Prevent double borders\n}\n\ncaption {\n padding-top: $table-cell-padding;\n padding-bottom: $table-cell-padding;\n color: $text-muted;\n text-align: left;\n caption-side: bottom;\n}\n\nth {\n // Matches default `` alignment\n text-align: left;\n}\n\n\n//\n// Forms\n//\n\nlabel {\n // Allow labels to use `margin` for spacing.\n display: inline-block;\n margin-bottom: .5rem;\n}\n\n// Work around a Firefox/IE bug where the transparent `button` background\n// results in a loss of the default `button` focus styles.\n//\n// Credit: https://github.com/suitcss/base/\nbutton:focus {\n outline: 1px dotted;\n outline: 5px auto -webkit-focus-ring-color;\n}\n\ninput,\nbutton,\nselect,\noptgroup,\ntextarea {\n margin: 0; // Remove the margin in Firefox and Safari\n font-family: inherit;\n font-size: inherit;\n line-height: inherit;\n}\n\nbutton,\ninput {\n overflow: visible; // Show the overflow in Edge\n}\n\nbutton,\nselect {\n text-transform: none; // Remove the inheritance of text transform in Firefox\n}\n\n// 1. Prevent a WebKit bug where (2) destroys native `audio` and `video`\n// controls in Android 4.\n// 2. Correct the inability to style clickable types in iOS and Safari.\nbutton,\nhtml [type=\"button\"], // 1\n[type=\"reset\"],\n[type=\"submit\"] {\n -webkit-appearance: button; // 2\n}\n\n// Remove inner border and padding from Firefox, but don't restore the outline like Normalize.\nbutton::-moz-focus-inner,\n[type=\"button\"]::-moz-focus-inner,\n[type=\"reset\"]::-moz-focus-inner,\n[type=\"submit\"]::-moz-focus-inner {\n padding: 0;\n border-style: none;\n}\n\ninput[type=\"radio\"],\ninput[type=\"checkbox\"] {\n box-sizing: border-box; // 1. Add the correct box sizing in IE 10-\n padding: 0; // 2. Remove the padding in IE 10-\n}\n\n\ninput[type=\"date\"],\ninput[type=\"time\"],\ninput[type=\"datetime-local\"],\ninput[type=\"month\"] {\n // Remove the default appearance of temporal inputs to avoid a Mobile Safari\n // bug where setting a custom line-height prevents text from being vertically\n // centered within the input.\n // See https://bugs.webkit.org/show_bug.cgi?id=139848\n // and https://github.com/twbs/bootstrap/issues/11266\n -webkit-appearance: listbox;\n}\n\ntextarea {\n overflow: auto; // Remove the default vertical scrollbar in IE.\n // Textareas should really only resize vertically so they don't break their (horizontal) containers.\n resize: vertical;\n}\n\nfieldset {\n // Browsers set a default `min-width: min-content;` on fieldsets,\n // unlike e.g. `

`s, which have `min-width: 0;` by default.\n // So we reset that to ensure fieldsets behave more like a standard block element.\n // See https://github.com/twbs/bootstrap/issues/12359\n // and https://html.spec.whatwg.org/multipage/#the-fieldset-and-legend-elements\n min-width: 0;\n // Reset the default outline behavior of fieldsets so they don't affect page layout.\n padding: 0;\n margin: 0;\n border: 0;\n}\n\n// 1. Correct the text wrapping in Edge and IE.\n// 2. Correct the color inheritance from `fieldset` elements in IE.\nlegend {\n display: block;\n width: 100%;\n max-width: 100%; // 1\n padding: 0;\n margin-bottom: .5rem;\n font-size: 1.5rem;\n line-height: inherit;\n color: inherit; // 2\n white-space: normal; // 1\n}\n\nprogress {\n vertical-align: baseline; // Add the correct vertical alignment in Chrome, Firefox, and Opera.\n}\n\n// Correct the cursor style of increment and decrement buttons in Chrome.\n[type=\"number\"]::-webkit-inner-spin-button,\n[type=\"number\"]::-webkit-outer-spin-button {\n height: auto;\n}\n\n[type=\"search\"] {\n // This overrides the extra rounded corners on search inputs in iOS so that our\n // `.form-control` class can properly style them. Note that this cannot simply\n // be added to `.form-control` as it's not specific enough. For details, see\n // https://github.com/twbs/bootstrap/issues/11586.\n outline-offset: -2px; // 2. Correct the outline style in Safari.\n -webkit-appearance: none;\n}\n\n//\n// Remove the inner padding and cancel buttons in Chrome and Safari on macOS.\n//\n\n[type=\"search\"]::-webkit-search-cancel-button,\n[type=\"search\"]::-webkit-search-decoration {\n -webkit-appearance: none;\n}\n\n//\n// 1. Correct the inability to style clickable types in iOS and Safari.\n// 2. Change font properties to `inherit` in Safari.\n//\n\n::-webkit-file-upload-button {\n font: inherit; // 2\n -webkit-appearance: button; // 1\n}\n\n//\n// Correct element displays\n//\n\noutput {\n display: inline-block;\n}\n\nsummary {\n display: list-item; // Add the correct display in all browsers\n}\n\ntemplate {\n display: none; // Add the correct display in IE\n}\n\n// Always hide an element with the `hidden` HTML attribute (from PureCSS).\n// Needed for proper display in IE 10-.\n[hidden] {\n display: none !important;\n}\n","// Variables\n//\n// Copy settings from this file into the provided `_custom.scss` to override\n// the Bootstrap defaults without modifying key, versioned files.\n//\n// Variables should follow the `$component-state-property-size` formula for\n// consistent naming. Ex: $nav-link-disabled-color and $modal-content-box-shadow-xs.\n\n// Table of Contents\n//\n// Color system\n// Options\n// Spacing\n// Body\n// Links\n// Grid breakpoints\n// Grid containers\n// Grid columns\n// Fonts\n// Components\n// Tables\n// Buttons\n// Forms\n// Dropdowns\n// Z-index master list\n// Navs\n// Navbar\n// Pagination\n// Jumbotron\n// Form states and alerts\n// Cards\n// Tooltips\n// Popovers\n// Badges\n// Modals\n// Alerts\n// Progress bars\n// List group\n// Image thumbnails\n// Figures\n// Breadcrumbs\n// Carousel\n// Close\n// Code\n\n\n//\n// Color system\n//\n\n$white: #fff !default;\n$gray-100: #f8f9fa !default;\n$gray-200: #e9ecef !default;\n$gray-300: #dee2e6 !default;\n$gray-400: #ced4da !default;\n$gray-500: #adb5bd !default;\n$gray-600: #868e96 !default;\n$gray-700: #495057 !default;\n$gray-800: #343a40 !default;\n$gray-900: #212529 !default;\n$black: #000 !default;\n\n$grays: (\n 100: $gray-100,\n 200: $gray-200,\n 300: $gray-300,\n 400: $gray-400,\n 500: $gray-500,\n 600: $gray-600,\n 700: $gray-700,\n 800: $gray-800,\n 900: $gray-900\n) !default;\n\n$blue: #007bff !default;\n$indigo: #6610f2 !default;\n$purple: #6f42c1 !default;\n$pink: #e83e8c !default;\n$red: #dc3545 !default;\n$orange: #fd7e14 !default;\n$yellow: #ffc107 !default;\n$green: #28a745 !default;\n$teal: #20c997 !default;\n$cyan: #17a2b8 !default;\n\n$colors: (\n blue: $blue,\n indigo: $indigo,\n purple: $purple,\n pink: $pink,\n red: $red,\n orange: $orange,\n yellow: $yellow,\n green: $green,\n teal: $teal,\n cyan: $cyan,\n white: $white,\n gray: $gray-600,\n gray-dark: $gray-800\n) !default;\n\n$theme-colors: (\n primary: $blue,\n secondary: $gray-600,\n success: $green,\n info: $cyan,\n warning: $yellow,\n danger: $red,\n light: $gray-100,\n dark: $gray-800\n) !default;\n\n// Set a specific jump point for requesting color jumps\n$theme-color-interval: 8% !default;\n\n\n// Options\n//\n// Quickly modify global styling by enabling or disabling optional features.\n\n$enable-rounded: true !default;\n$enable-shadows: false !default;\n$enable-gradients: false !default;\n$enable-transitions: true !default;\n$enable-hover-media-query: false !default;\n$enable-grid-classes: true !default;\n$enable-print-styles: true !default;\n\n\n// Spacing\n//\n// Control the default styling of most Bootstrap elements by modifying these\n// variables. Mostly focused on spacing.\n// You can add more entries to the $spacers map, should you need more variation.\n\n$spacer: 1rem !default;\n$spacers: (\n 0: 0,\n 1: ($spacer * .25),\n 2: ($spacer * .5),\n 3: $spacer,\n 4: ($spacer * 1.5),\n 5: ($spacer * 3)\n) !default;\n\n// This variable affects the `.h-*` and `.w-*` classes.\n$sizes: (\n 25: 25%,\n 50: 50%,\n 75: 75%,\n 100: 100%\n) !default;\n\n// Body\n//\n// Settings for the `` element.\n\n$body-bg: $white !default;\n$body-color: $gray-900 !default;\n\n// Links\n//\n// Style anchor elements.\n\n$link-color: theme-color(\"primary\") !default;\n$link-decoration: none !default;\n$link-hover-color: darken($link-color, 15%) !default;\n$link-hover-decoration: underline !default;\n\n\n// Grid breakpoints\n//\n// Define the minimum dimensions at which your layout will change,\n// adapting to different screen sizes, for use in media queries.\n\n$grid-breakpoints: (\n xs: 0,\n sm: 576px,\n md: 768px,\n lg: 992px,\n xl: 1200px\n) !default;\n@include _assert-ascending($grid-breakpoints, \"$grid-breakpoints\");\n@include _assert-starts-at-zero($grid-breakpoints);\n\n\n// Grid containers\n//\n// Define the maximum width of `.container` for different screen sizes.\n\n$container-max-widths: (\n sm: 540px,\n md: 720px,\n lg: 960px,\n xl: 1140px\n) !default;\n@include _assert-ascending($container-max-widths, \"$container-max-widths\");\n\n\n// Grid columns\n//\n// Set the number of columns and specify the width of the gutters.\n\n$grid-columns: 12 !default;\n$grid-gutter-width: 30px !default;\n\n// Components\n//\n// Define common padding and border radius sizes and more.\n\n$line-height-lg: 1.5 !default;\n$line-height-sm: 1.5 !default;\n\n$border-width: 1px !default;\n\n$border-radius: .25rem !default;\n$border-radius-lg: .3rem !default;\n$border-radius-sm: .2rem !default;\n\n$component-active-color: $white !default;\n$component-active-bg: theme-color(\"primary\") !default;\n\n$caret-width: .3em !default;\n\n$transition-base: all .2s ease-in-out !default;\n$transition-fade: opacity .15s linear !default;\n$transition-collapse: height .35s ease !default;\n\n\n// Fonts\n//\n// Font, line-height, and color for body text, headings, and more.\n\n$font-family-sans-serif: -apple-system, BlinkMacSystemFont, \"Segoe UI\", Roboto, \"Helvetica Neue\", Arial, sans-serif !default;\n$font-family-monospace: Menlo, Monaco, Consolas, \"Liberation Mono\", \"Courier New\", monospace !default;\n$font-family-base: $font-family-sans-serif !default;\n\n$font-size-base: 1rem !default; // Assumes the browser default, typically `16px`\n$font-size-lg: 1.25rem !default;\n$font-size-sm: .875rem !default;\n\n$font-weight-normal: normal !default;\n$font-weight-bold: bold !default;\n\n$font-weight-base: $font-weight-normal !default;\n$line-height-base: 1.5 !default;\n\n$h1-font-size: 2.5rem !default;\n$h2-font-size: 2rem !default;\n$h3-font-size: 1.75rem !default;\n$h4-font-size: 1.5rem !default;\n$h5-font-size: 1.25rem !default;\n$h6-font-size: 1rem !default;\n\n$headings-margin-bottom: ($spacer / 2) !default;\n$headings-font-family: inherit !default;\n$headings-font-weight: 500 !default;\n$headings-line-height: 1.1 !default;\n$headings-color: inherit !default;\n\n$display1-size: 6rem !default;\n$display2-size: 5.5rem !default;\n$display3-size: 4.5rem !default;\n$display4-size: 3.5rem !default;\n\n$display1-weight: 300 !default;\n$display2-weight: 300 !default;\n$display3-weight: 300 !default;\n$display4-weight: 300 !default;\n$display-line-height: $headings-line-height !default;\n\n$lead-font-size: 1.25rem !default;\n$lead-font-weight: 300 !default;\n\n$small-font-size: 80% !default;\n\n$text-muted: $gray-600 !default;\n\n$blockquote-small-color: $gray-600 !default;\n$blockquote-font-size: ($font-size-base * 1.25) !default;\n\n$hr-border-color: rgba($black,.1) !default;\n$hr-border-width: $border-width !default;\n\n$mark-padding: .2em !default;\n\n$dt-font-weight: $font-weight-bold !default;\n\n$kbd-box-shadow: inset 0 -.1rem 0 rgba($black,.25) !default;\n$nested-kbd-font-weight: $font-weight-bold !default;\n\n$list-inline-padding: 5px !default;\n\n$mark-bg: #fcf8e3 !default;\n\n\n// Tables\n//\n// Customizes the `.table` component with basic values, each used across all table variations.\n\n$table-cell-padding: .75rem !default;\n$table-cell-padding-sm: .3rem !default;\n\n$table-bg: transparent !default;\n$table-accent-bg: rgba($black,.05) !default;\n$table-hover-bg: rgba($black,.075) !default;\n$table-active-bg: $table-hover-bg !default;\n\n$table-border-width: $border-width !default;\n$table-border-color: $gray-200 !default;\n\n$table-head-bg: $gray-200 !default;\n$table-head-color: $gray-700 !default;\n\n$table-inverse-bg: $gray-900 !default;\n$table-inverse-accent-bg: rgba($white, .05) !default;\n$table-inverse-hover-bg: rgba($white, .075) !default;\n$table-inverse-border-color: lighten($gray-900, 7.5%) !default;\n$table-inverse-color: $body-bg !default;\n\n\n// Buttons\n//\n// For each of Bootstrap's buttons, define text, background and border color.\n\n$input-btn-padding-y: .5rem !default;\n$input-btn-padding-x: .75rem !default;\n$input-btn-line-height: 1.25 !default;\n\n$input-btn-padding-y-sm: .25rem !default;\n$input-btn-padding-x-sm: .5rem !default;\n$input-btn-line-height-sm: 1.5 !default;\n\n$input-btn-padding-y-lg: .5rem !default;\n$input-btn-padding-x-lg: 1rem !default;\n$input-btn-line-height-lg: 1.5 !default;\n\n$btn-font-weight: $font-weight-normal !default;\n$btn-box-shadow: inset 0 1px 0 rgba($white,.15), 0 1px 1px rgba($black,.075) !default;\n$btn-focus-box-shadow: 0 0 0 3px rgba(theme-color(\"primary\"), .25) !default;\n$btn-active-box-shadow: inset 0 3px 5px rgba($black,.125) !default;\n\n$btn-link-disabled-color: $gray-600 !default;\n\n$btn-block-spacing-y: .5rem !default;\n\n// Allows for customizing button radius independently from global border radius\n$btn-border-radius: $border-radius !default;\n$btn-border-radius-lg: $border-radius-lg !default;\n$btn-border-radius-sm: $border-radius-sm !default;\n\n$btn-transition: all .15s ease-in-out !default;\n\n\n// Forms\n\n$input-bg: $white !default;\n$input-disabled-bg: $gray-200 !default;\n\n$input-color: $gray-700 !default;\n$input-border-color: rgba($black,.15) !default;\n$input-btn-border-width: $border-width !default; // For form controls and buttons\n$input-box-shadow: inset 0 1px 1px rgba($black,.075) !default;\n\n$input-border-radius: $border-radius !default;\n$input-border-radius-lg: $border-radius-lg !default;\n$input-border-radius-sm: $border-radius-sm !default;\n\n$input-focus-bg: $input-bg !default;\n$input-focus-border-color: lighten(theme-color(\"primary\"), 25%) !default;\n$input-focus-box-shadow: $input-box-shadow, $btn-focus-box-shadow !default;\n$input-focus-color: $input-color !default;\n\n$input-placeholder-color: $gray-600 !default;\n\n$input-height-border: $input-btn-border-width * 2 !default;\n\n$input-height-inner: ($font-size-base * $input-btn-line-height) + ($input-btn-padding-y * 2) !default;\n$input-height: calc(#{$input-height-inner} + #{$input-height-border}) !default;\n\n$input-height-inner-sm: ($font-size-sm * $input-btn-line-height-sm) + ($input-btn-padding-y-sm * 2) !default;\n$input-height-sm: calc(#{$input-height-inner-sm} + #{$input-height-border}) !default;\n\n$input-height-inner-lg: ($font-size-sm * $input-btn-line-height-lg) + ($input-btn-padding-y-lg * 2) !default;\n$input-height-lg: calc(#{$input-height-inner-lg} + #{$input-height-border}) !default;\n\n$input-transition: border-color ease-in-out .15s, box-shadow ease-in-out .15s !default;\n\n$form-text-margin-top: .25rem !default;\n\n$form-check-margin-bottom: .5rem !default;\n$form-check-input-gutter: 1.25rem !default;\n$form-check-input-margin-y: .25rem !default;\n$form-check-input-margin-x: .25rem !default;\n\n$form-check-inline-margin-x: .75rem !default;\n\n$form-group-margin-bottom: 1rem !default;\n\n$input-group-addon-bg: $gray-200 !default;\n$input-group-addon-border-color: $input-border-color !default;\n\n$custom-control-gutter: 1.5rem !default;\n$custom-control-spacer-y: .25rem !default;\n$custom-control-spacer-x: 1rem !default;\n\n$custom-control-indicator-size: 1rem !default;\n$custom-control-indicator-bg: #ddd !default;\n$custom-control-indicator-bg-size: 50% 50% !default;\n$custom-control-indicator-box-shadow: inset 0 .25rem .25rem rgba($black,.1) !default;\n\n$custom-control-indicator-disabled-bg: $gray-200 !default;\n$custom-control-description-disabled-color: $gray-600 !default;\n\n$custom-control-indicator-checked-color: $white !default;\n$custom-control-indicator-checked-bg: theme-color(\"primary\") !default;\n$custom-control-indicator-checked-box-shadow: none !default;\n\n$custom-control-indicator-focus-box-shadow: 0 0 0 1px $body-bg, 0 0 0 3px theme-color(\"primary\") !default;\n\n$custom-control-indicator-active-color: $white !default;\n$custom-control-indicator-active-bg: lighten(theme-color(\"primary\"), 35%) !default;\n$custom-control-indicator-active-box-shadow: none !default;\n\n$custom-checkbox-indicator-border-radius: $border-radius !default;\n$custom-checkbox-indicator-icon-checked: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 8 8'%3E%3Cpath fill='#{$custom-control-indicator-checked-color}' d='M6.564.75l-3.59 3.612-1.538-1.55L0 4.26 2.974 7.25 8 2.193z'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n\n$custom-checkbox-indicator-indeterminate-bg: theme-color(\"primary\") !default;\n$custom-checkbox-indicator-indeterminate-color: $custom-control-indicator-checked-color !default;\n$custom-checkbox-indicator-icon-indeterminate: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 4 4'%3E%3Cpath stroke='#{$custom-checkbox-indicator-indeterminate-color}' d='M0 2h4'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$custom-checkbox-indicator-indeterminate-box-shadow: none !default;\n\n$custom-radio-indicator-border-radius: 50% !default;\n$custom-radio-indicator-icon-checked: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='-4 -4 8 8'%3E%3Ccircle r='3' fill='#{$custom-control-indicator-checked-color}'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n\n$custom-select-padding-y: .375rem !default;\n$custom-select-padding-x: .75rem !default;\n$custom-select-height: $input-height !default;\n$custom-select-indicator-padding: 1rem !default; // Extra padding to account for the presence of the background-image based indicator\n$custom-select-line-height: $input-btn-line-height !default;\n$custom-select-color: $input-color !default;\n$custom-select-disabled-color: $gray-600 !default;\n$custom-select-bg: $white !default;\n$custom-select-disabled-bg: $gray-200 !default;\n$custom-select-bg-size: 8px 10px !default; // In pixels because image dimensions\n$custom-select-indicator-color: #333 !default;\n$custom-select-indicator: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' viewBox='0 0 4 5'%3E%3Cpath fill='#{$custom-select-indicator-color}' d='M2 0L0 2h4zm0 5L0 3h4z'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$custom-select-border-width: $input-btn-border-width !default;\n$custom-select-border-color: $input-border-color !default;\n$custom-select-border-radius: $border-radius !default;\n\n$custom-select-focus-border-color: lighten(theme-color(\"primary\"), 25%) !default;\n$custom-select-focus-box-shadow: inset 0 1px 2px rgba($black, .075), 0 0 5px rgba($custom-select-focus-border-color, .5) !default;\n\n$custom-select-font-size-sm: 75% !default;\n$custom-select-height-sm: $input-height-sm !default;\n\n$custom-file-height: 2.5rem !default;\n$custom-file-width: 14rem !default;\n$custom-file-focus-box-shadow: 0 0 0 .075rem $white, 0 0 0 .2rem theme-color(\"primary\") !default;\n\n$custom-file-padding-y: 1rem !default;\n$custom-file-padding-x: .5rem !default;\n$custom-file-line-height: 1.5 !default;\n$custom-file-color: $gray-700 !default;\n$custom-file-bg: $white !default;\n$custom-file-border-width: $border-width !default;\n$custom-file-border-color: $input-border-color !default;\n$custom-file-border-radius: $border-radius !default;\n$custom-file-box-shadow: inset 0 .2rem .4rem rgba($black,.05) !default;\n$custom-file-button-color: $custom-file-color !default;\n$custom-file-button-bg: $gray-200 !default;\n$custom-file-text: (\n placeholder: (\n en: \"Choose file...\"\n ),\n button-label: (\n en: \"Browse\"\n )\n) !default;\n\n\n// Form validation\n$form-feedback-valid-color: theme-color(\"success\") !default;\n$form-feedback-invalid-color: theme-color(\"danger\") !default;\n\n\n// Dropdowns\n//\n// Dropdown menu container and contents.\n\n$dropdown-min-width: 10rem !default;\n$dropdown-padding-y: .5rem !default;\n$dropdown-spacer: .125rem !default;\n$dropdown-bg: $white !default;\n$dropdown-border-color: rgba($black,.15) !default;\n$dropdown-border-width: $border-width !default;\n$dropdown-divider-bg: $gray-200 !default;\n$dropdown-box-shadow: 0 .5rem 1rem rgba($black,.175) !default;\n\n$dropdown-link-color: $gray-900 !default;\n$dropdown-link-hover-color: darken($gray-900, 5%) !default;\n$dropdown-link-hover-bg: $gray-100 !default;\n\n$dropdown-link-active-color: $component-active-color !default;\n$dropdown-link-active-bg: $component-active-bg !default;\n\n$dropdown-link-disabled-color: $gray-600 !default;\n\n$dropdown-item-padding-y: .25rem !default;\n$dropdown-item-padding-x: 1.5rem !default;\n\n$dropdown-header-color: $gray-600 !default;\n\n\n// Z-index master list\n//\n// Warning: Avoid customizing these values. They're used for a bird's eye view\n// of components dependent on the z-axis and are designed to all work together.\n\n$zindex-dropdown: 1000 !default;\n$zindex-sticky: 1020 !default;\n$zindex-fixed: 1030 !default;\n$zindex-modal-backdrop: 1040 !default;\n$zindex-modal: 1050 !default;\n$zindex-popover: 1060 !default;\n$zindex-tooltip: 1070 !default;\n\n// Navs\n\n$nav-link-padding-y: .5rem !default;\n$nav-link-padding-x: 1rem !default;\n$nav-link-disabled-color: $gray-600 !default;\n\n$nav-tabs-border-color: #ddd !default;\n$nav-tabs-border-width: $border-width !default;\n$nav-tabs-border-radius: $border-radius !default;\n$nav-tabs-link-hover-border-color: $gray-200 !default;\n$nav-tabs-link-active-color: $gray-700 !default;\n$nav-tabs-link-active-bg: $body-bg !default;\n$nav-tabs-link-active-border-color: #ddd !default;\n\n$nav-pills-border-radius: $border-radius !default;\n$nav-pills-link-active-color: $component-active-color !default;\n$nav-pills-link-active-bg: $component-active-bg !default;\n\n// Navbar\n\n$navbar-padding-y: ($spacer / 2) !default;\n$navbar-padding-x: $spacer !default;\n\n$navbar-brand-font-size: $font-size-lg !default;\n// Compute the navbar-brand padding-y so the navbar-brand will have the same height as navbar-text and nav-link\n$nav-link-height: $navbar-brand-font-size * $line-height-base !default;\n$navbar-brand-height: ($font-size-base * $line-height-base + $nav-link-padding-y * 2) !default;\n$navbar-brand-padding-y: ($navbar-brand-height - $nav-link-height) / 2 !default;\n\n$navbar-toggler-padding-y: .25rem !default;\n$navbar-toggler-padding-x: .75rem !default;\n$navbar-toggler-font-size: $font-size-lg !default;\n$navbar-toggler-border-radius: $btn-border-radius !default;\n\n$navbar-dark-color: rgba($white,.5) !default;\n$navbar-dark-hover-color: rgba($white,.75) !default;\n$navbar-dark-active-color: rgba($white,1) !default;\n$navbar-dark-disabled-color: rgba($white,.25) !default;\n$navbar-dark-toggler-icon-bg: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg viewBox='0 0 30 30' xmlns='http://www.w3.org/2000/svg'%3E%3Cpath stroke='#{$navbar-dark-color}' stroke-width='2' stroke-linecap='round' stroke-miterlimit='10' d='M4 7h22M4 15h22M4 23h22'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$navbar-dark-toggler-border-color: rgba($white,.1) !default;\n\n$navbar-light-color: rgba($black,.5) !default;\n$navbar-light-hover-color: rgba($black,.7) !default;\n$navbar-light-active-color: rgba($black,.9) !default;\n$navbar-light-disabled-color: rgba($black,.3) !default;\n$navbar-light-toggler-icon-bg: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg viewBox='0 0 30 30' xmlns='http://www.w3.org/2000/svg'%3E%3Cpath stroke='#{$navbar-light-color}' stroke-width='2' stroke-linecap='round' stroke-miterlimit='10' d='M4 7h22M4 15h22M4 23h22'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$navbar-light-toggler-border-color: rgba($black,.1) !default;\n\n// Pagination\n\n$pagination-padding-y: .5rem !default;\n$pagination-padding-x: .75rem !default;\n$pagination-padding-y-sm: .25rem !default;\n$pagination-padding-x-sm: .5rem !default;\n$pagination-padding-y-lg: .75rem !default;\n$pagination-padding-x-lg: 1.5rem !default;\n$pagination-line-height: 1.25 !default;\n\n$pagination-color: $link-color !default;\n$pagination-bg: $white !default;\n$pagination-border-width: $border-width !default;\n$pagination-border-color: #ddd !default;\n\n$pagination-hover-color: $link-hover-color !default;\n$pagination-hover-bg: $gray-200 !default;\n$pagination-hover-border-color: #ddd !default;\n\n$pagination-active-color: $white !default;\n$pagination-active-bg: theme-color(\"primary\") !default;\n$pagination-active-border-color: theme-color(\"primary\") !default;\n\n$pagination-disabled-color: $gray-600 !default;\n$pagination-disabled-bg: $white !default;\n$pagination-disabled-border-color: #ddd !default;\n\n\n// Jumbotron\n\n$jumbotron-padding: 2rem !default;\n$jumbotron-bg: $gray-200 !default;\n\n\n// Cards\n\n$card-spacer-y: .75rem !default;\n$card-spacer-x: 1.25rem !default;\n$card-border-width: 1px !default;\n$card-border-radius: $border-radius !default;\n$card-border-color: rgba($black,.125) !default;\n$card-inner-border-radius: calc(#{$card-border-radius} - #{$card-border-width}) !default;\n$card-cap-bg: rgba($black, .03) !default;\n$card-bg: $white !default;\n\n$card-img-overlay-padding: 1.25rem !default;\n\n$card-deck-margin: ($grid-gutter-width / 2) !default;\n\n$card-columns-count: 3 !default;\n$card-columns-gap: 1.25rem !default;\n$card-columns-margin: $card-spacer-y !default;\n\n\n// Tooltips\n\n$tooltip-max-width: 200px !default;\n$tooltip-color: $white !default;\n$tooltip-bg: $black !default;\n$tooltip-opacity: .9 !default;\n$tooltip-padding-y: 3px !default;\n$tooltip-padding-x: 8px !default;\n$tooltip-margin: 0 !default;\n\n\n$tooltip-arrow-width: 5px !default;\n$tooltip-arrow-height: 5px !default;\n$tooltip-arrow-color: $tooltip-bg !default;\n\n\n// Popovers\n\n$popover-inner-padding: 1px !default;\n$popover-bg: $white !default;\n$popover-max-width: 276px !default;\n$popover-border-width: $border-width !default;\n$popover-border-color: rgba($black,.2) !default;\n$popover-box-shadow: 0 5px 10px rgba($black,.2) !default;\n\n$popover-header-bg: darken($popover-bg, 3%) !default;\n$popover-header-color: $headings-color !default;\n$popover-header-padding-y: 8px !default;\n$popover-header-padding-x: 14px !default;\n\n$popover-body-color: $body-color !default;\n$popover-body-padding-y: 9px !default;\n$popover-body-padding-x: 14px !default;\n\n$popover-arrow-width: 10px !default;\n$popover-arrow-height: 5px !default;\n$popover-arrow-color: $popover-bg !default;\n\n$popover-arrow-outer-width: ($popover-arrow-width + 1px) !default;\n$popover-arrow-outer-color: fade-in($popover-border-color, .05) !default;\n\n\n// Badges\n\n$badge-color: $white !default;\n$badge-font-size: 75% !default;\n$badge-font-weight: $font-weight-bold !default;\n$badge-padding-y: .25em !default;\n$badge-padding-x: .4em !default;\n\n$badge-pill-padding-x: .6em !default;\n// Use a higher than normal value to ensure completely rounded edges when\n// customizing padding or font-size on labels.\n$badge-pill-border-radius: 10rem !default;\n\n\n// Modals\n\n// Padding applied to the modal body\n$modal-inner-padding: 15px !default;\n\n$modal-dialog-margin: 10px !default;\n$modal-dialog-margin-y-sm-up: 30px !default;\n\n$modal-title-line-height: $line-height-base !default;\n\n$modal-content-bg: $white !default;\n$modal-content-border-color: rgba($black,.2) !default;\n$modal-content-border-width: $border-width !default;\n$modal-content-box-shadow-xs: 0 3px 9px rgba($black,.5) !default;\n$modal-content-box-shadow-sm-up: 0 5px 15px rgba($black,.5) !default;\n\n$modal-backdrop-bg: $black !default;\n$modal-backdrop-opacity: .5 !default;\n$modal-header-border-color: $gray-200 !default;\n$modal-footer-border-color: $modal-header-border-color !default;\n$modal-header-border-width: $modal-content-border-width !default;\n$modal-footer-border-width: $modal-header-border-width !default;\n$modal-header-padding: 15px !default;\n\n$modal-lg: 800px !default;\n$modal-md: 500px !default;\n$modal-sm: 300px !default;\n\n$modal-transition: transform .3s ease-out !default;\n\n\n// Alerts\n//\n// Define alert colors, border radius, and padding.\n\n$alert-padding-y: .75rem !default;\n$alert-padding-x: 1.25rem !default;\n$alert-margin-bottom: 1rem !default;\n$alert-border-radius: $border-radius !default;\n$alert-link-font-weight: $font-weight-bold !default;\n$alert-border-width: $border-width !default;\n\n\n// Progress bars\n\n$progress-height: 1rem !default;\n$progress-font-size: .75rem !default;\n$progress-bg: $gray-200 !default;\n$progress-border-radius: $border-radius !default;\n$progress-box-shadow: inset 0 .1rem .1rem rgba($black,.1) !default;\n$progress-bar-color: $white !default;\n$progress-bar-bg: theme-color(\"primary\") !default;\n$progress-bar-animation-timing: 1s linear infinite !default;\n$progress-bar-transition: width .6s ease !default;\n\n// List group\n\n$list-group-bg: $white !default;\n$list-group-border-color: rgba($black,.125) !default;\n$list-group-border-width: $border-width !default;\n$list-group-border-radius: $border-radius !default;\n\n$list-group-item-padding-y: .75rem !default;\n$list-group-item-padding-x: 1.25rem !default;\n\n$list-group-hover-bg: $gray-100 !default;\n$list-group-active-color: $component-active-color !default;\n$list-group-active-bg: $component-active-bg !default;\n$list-group-active-border-color: $list-group-active-bg !default;\n\n$list-group-disabled-color: $gray-600 !default;\n$list-group-disabled-bg: $list-group-bg !default;\n\n$list-group-action-color: $gray-700 !default;\n$list-group-action-hover-color: $list-group-action-color !default;\n\n$list-group-action-active-color: $body-color !default;\n$list-group-action-active-bg: $gray-200 !default;\n\n\n// Image thumbnails\n\n$thumbnail-padding: .25rem !default;\n$thumbnail-bg: $body-bg !default;\n$thumbnail-border-width: $border-width !default;\n$thumbnail-border-color: #ddd !default;\n$thumbnail-border-radius: $border-radius !default;\n$thumbnail-box-shadow: 0 1px 2px rgba($black,.075) !default;\n$thumbnail-transition: all .2s ease-in-out !default;\n\n\n// Figures\n\n$figure-caption-font-size: 90% !default;\n$figure-caption-color: $gray-600 !default;\n\n\n// Breadcrumbs\n\n$breadcrumb-padding-y: .75rem !default;\n$breadcrumb-padding-x: 1rem !default;\n$breadcrumb-item-padding: .5rem !default;\n\n$breadcrumb-bg: $gray-200 !default;\n$breadcrumb-divider-color: $gray-600 !default;\n$breadcrumb-active-color: $gray-600 !default;\n$breadcrumb-divider: \"/\" !default;\n\n\n// Carousel\n\n$carousel-control-color: $white !default;\n$carousel-control-width: 15% !default;\n$carousel-control-opacity: .5 !default;\n\n$carousel-indicator-width: 30px !default;\n$carousel-indicator-height: 3px !default;\n$carousel-indicator-spacer: 3px !default;\n$carousel-indicator-active-bg: $white !default;\n\n$carousel-caption-width: 70% !default;\n$carousel-caption-color: $white !default;\n\n$carousel-control-icon-width: 20px !default;\n\n$carousel-control-prev-icon-bg: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' fill='#{$carousel-control-color}' viewBox='0 0 8 8'%3E%3Cpath d='M4 0l-4 4 4 4 1.5-1.5-2.5-2.5 2.5-2.5-1.5-1.5z'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n$carousel-control-next-icon-bg: str-replace(url(\"data:image/svg+xml;charset=utf8,%3Csvg xmlns='http://www.w3.org/2000/svg' fill='#{$carousel-control-color}' viewBox='0 0 8 8'%3E%3Cpath d='M1.5 0l-1.5 1.5 2.5 2.5-2.5 2.5 1.5 1.5 4-4-4-4z'/%3E%3C/svg%3E\"), \"#\", \"%23\") !default;\n\n$carousel-transition: transform .6s ease !default;\n\n\n// Close\n\n$close-font-size: $font-size-base * 1.5 !default;\n$close-font-weight: $font-weight-bold !default;\n$close-color: $black !default;\n$close-text-shadow: 0 1px 0 $white !default;\n\n// Code\n\n$code-font-size: 90% !default;\n$code-padding-y: .2rem !default;\n$code-padding-x: .4rem !default;\n$code-color: #bd4147 !default;\n$code-bg: $gray-100 !default;\n\n$kbd-color: $white !default;\n$kbd-bg: $gray-900 !default;\n\n$pre-color: $gray-900 !default;\n$pre-scrollable-max-height: 340px !default;\n","@mixin hover {\n // TODO: re-enable along with mq4-hover-shim\n// @if $enable-hover-media-query {\n// // See Media Queries Level 4: https://drafts.csswg.org/mediaqueries/#hover\n// // Currently shimmed by https://github.com/twbs/mq4-hover-shim\n// @media (hover: hover) {\n// &:hover { @content }\n// }\n// }\n// @else {\n// scss-lint:disable Indentation\n &:hover { @content }\n// scss-lint:enable Indentation\n// }\n}\n\n\n@mixin hover-focus {\n @if $enable-hover-media-query {\n &:focus { @content }\n @include hover { @content }\n } @else {\n &:focus,\n &:hover {\n @content\n }\n }\n}\n\n@mixin plain-hover-focus {\n @if $enable-hover-media-query {\n &,\n &:focus {\n @content\n }\n @include hover { @content }\n } @else {\n &,\n &:focus,\n &:hover {\n @content\n }\n }\n}\n\n@mixin hover-focus-active {\n @if $enable-hover-media-query {\n &:focus,\n &:active {\n @content\n }\n @include hover { @content }\n } @else {\n &:focus,\n &:active,\n &:hover {\n @content\n }\n }\n}\n","//\n// Headings\n//\n\nh1, h2, h3, h4, h5, h6,\n.h1, .h2, .h3, .h4, .h5, .h6 {\n margin-bottom: $headings-margin-bottom;\n font-family: $headings-font-family;\n font-weight: $headings-font-weight;\n line-height: $headings-line-height;\n color: $headings-color;\n}\n\nh1, .h1 { font-size: $h1-font-size; }\nh2, .h2 { font-size: $h2-font-size; }\nh3, .h3 { font-size: $h3-font-size; }\nh4, .h4 { font-size: $h4-font-size; }\nh5, .h5 { font-size: $h5-font-size; }\nh6, .h6 { font-size: $h6-font-size; }\n\n.lead {\n font-size: $lead-font-size;\n font-weight: $lead-font-weight;\n}\n\n// Type display classes\n.display-1 {\n font-size: $display1-size;\n font-weight: $display1-weight;\n line-height: $display-line-height;\n}\n.display-2 {\n font-size: $display2-size;\n font-weight: $display2-weight;\n line-height: $display-line-height;\n}\n.display-3 {\n font-size: $display3-size;\n font-weight: $display3-weight;\n line-height: $display-line-height;\n}\n.display-4 {\n font-size: $display4-size;\n font-weight: $display4-weight;\n line-height: $display-line-height;\n}\n\n\n//\n// Horizontal rules\n//\n\nhr {\n margin-top: 1rem;\n margin-bottom: 1rem;\n border: 0;\n border-top: $hr-border-width solid $hr-border-color;\n}\n\n\n//\n// Emphasis\n//\n\nsmall,\n.small {\n font-size: $small-font-size;\n font-weight: $font-weight-normal;\n}\n\nmark,\n.mark {\n padding: $mark-padding;\n background-color: $mark-bg;\n}\n\n\n//\n// Lists\n//\n\n.list-unstyled {\n @include list-unstyled;\n}\n\n// Inline turns list items into inline-block\n.list-inline {\n @include list-unstyled;\n}\n.list-inline-item {\n display: inline-block;\n\n &:not(:last-child) {\n margin-right: $list-inline-padding;\n }\n}\n\n\n//\n// Misc\n//\n\n// Builds on `abbr`\n.initialism {\n font-size: 90%;\n text-transform: uppercase;\n}\n\n// Blockquotes\n.blockquote {\n margin-bottom: $spacer;\n font-size: $blockquote-font-size;\n}\n\n.blockquote-footer {\n display: block;\n font-size: 80%; // back to default font-size\n color: $blockquote-small-color;\n\n &::before {\n content: \"\\2014 \\00A0\"; // em dash, nbsp\n }\n}\n","// Lists\n\n// Unstyled keeps list items block level, just removes default browser padding and list-style\n@mixin list-unstyled {\n padding-left: 0;\n list-style: none;\n}\n","// Responsive images (ensure images don't scale beyond their parents)\n//\n// This is purposefully opt-in via an explicit class rather than being the default for all ``s.\n// We previously tried the \"images are responsive by default\" approach in Bootstrap v2,\n// and abandoned it in Bootstrap v3 because it breaks lots of third-party widgets (including Google Maps)\n// which weren't expecting the images within themselves to be involuntarily resized.\n// See also https://github.com/twbs/bootstrap/issues/18178\n.img-fluid {\n @include img-fluid;\n}\n\n\n// Image thumbnails\n.img-thumbnail {\n padding: $thumbnail-padding;\n background-color: $thumbnail-bg;\n border: $thumbnail-border-width solid $thumbnail-border-color;\n @include border-radius($thumbnail-border-radius);\n @include transition($thumbnail-transition);\n @include box-shadow($thumbnail-box-shadow);\n\n // Keep them at most 100% wide\n @include img-fluid;\n}\n\n//\n// Figures\n//\n\n.figure {\n // Ensures the caption's text aligns with the image.\n display: inline-block;\n}\n\n.figure-img {\n margin-bottom: ($spacer / 2);\n line-height: 1;\n}\n\n.figure-caption {\n font-size: $figure-caption-font-size;\n color: $figure-caption-color;\n}\n","// Image Mixins\n// - Responsive image\n// - Retina image\n\n\n// Responsive image\n//\n// Keep images from scaling beyond the width of their parents.\n\n@mixin img-fluid {\n // Part 1: Set a maximum relative to the parent\n max-width: 100%;\n // Part 2: Override the height to auto, otherwise images will be stretched\n // when setting a width and height attribute on the img element.\n height: auto;\n}\n\n\n// Retina image\n//\n// Short retina mixin for setting background-image and -size.\n\n@mixin img-retina($file-1x, $file-2x, $width-1x, $height-1x) {\n background-image: url($file-1x);\n\n // Autoprefixer takes care of adding -webkit-min-device-pixel-ratio and -o-min-device-pixel-ratio,\n // but doesn't convert dppx=>dpi.\n // There's no such thing as unprefixed min-device-pixel-ratio since it's nonstandard.\n // Compatibility info: http://caniuse.com/#feat=css-media-resolution\n @media\n only screen and (min-resolution: 192dpi), // IE9-11 don't support dppx\n only screen and (min-resolution: 2dppx) { // Standardized\n background-image: url($file-2x);\n background-size: $width-1x $height-1x;\n }\n}\n","// Single side border-radius\n\n@mixin border-radius($radius: $border-radius) {\n @if $enable-rounded {\n border-radius: $radius;\n }\n}\n\n@mixin border-top-radius($radius) {\n @if $enable-rounded {\n border-top-left-radius: $radius;\n border-top-right-radius: $radius;\n }\n}\n\n@mixin border-right-radius($radius) {\n @if $enable-rounded {\n border-top-right-radius: $radius;\n border-bottom-right-radius: $radius;\n }\n}\n\n@mixin border-bottom-radius($radius) {\n @if $enable-rounded {\n border-bottom-right-radius: $radius;\n border-bottom-left-radius: $radius;\n }\n}\n\n@mixin border-left-radius($radius) {\n @if $enable-rounded {\n border-top-left-radius: $radius;\n border-bottom-left-radius: $radius;\n }\n}\n","@mixin transition($transition...) {\n @if $enable-transitions {\n @if length($transition) == 0 {\n transition: $transition-base;\n } @else {\n transition: $transition;\n }\n }\n}\n","// Inline and block code styles\ncode,\nkbd,\npre,\nsamp {\n font-family: $font-family-monospace;\n}\n\n// Inline code\ncode {\n padding: $code-padding-y $code-padding-x;\n font-size: $code-font-size;\n color: $code-color;\n background-color: $code-bg;\n @include border-radius($border-radius);\n\n // Streamline the style when inside anchors to avoid broken underline and more\n a > & {\n padding: 0;\n color: inherit;\n background-color: inherit;\n }\n}\n\n// User input typically entered via keyboard\nkbd {\n padding: $code-padding-y $code-padding-x;\n font-size: $code-font-size;\n color: $kbd-color;\n background-color: $kbd-bg;\n @include border-radius($border-radius-sm);\n @include box-shadow($kbd-box-shadow);\n\n kbd {\n padding: 0;\n font-size: 100%;\n font-weight: $nested-kbd-font-weight;\n @include box-shadow(none);\n }\n}\n\n// Blocks of code\npre {\n display: block;\n margin-top: 0;\n margin-bottom: 1rem;\n font-size: $code-font-size;\n color: $pre-color;\n\n // Account for some code outputs that place code tags in pre tags\n code {\n padding: 0;\n font-size: inherit;\n color: inherit;\n background-color: transparent;\n border-radius: 0;\n }\n}\n\n// Enable scrollable blocks of code\n.pre-scrollable {\n max-height: $pre-scrollable-max-height;\n overflow-y: scroll;\n}\n","// Container widths\n//\n// Set the container width, and override it for fixed navbars in media queries.\n\n@if $enable-grid-classes {\n .container {\n @include make-container();\n @include make-container-max-widths();\n }\n}\n\n// Fluid container\n//\n// Utilizes the mixin meant for fixed width containers, but with 100% width for\n// fluid, full width layouts.\n\n@if $enable-grid-classes {\n .container-fluid {\n width: 100%;\n @include make-container();\n }\n}\n\n// Row\n//\n// Rows contain and clear the floats of your columns.\n\n@if $enable-grid-classes {\n .row {\n @include make-row();\n }\n\n // Remove the negative margin from default .row, then the horizontal padding\n // from all immediate children columns (to prevent runaway style inheritance).\n .no-gutters {\n margin-right: 0;\n margin-left: 0;\n\n > .col,\n > [class*=\"col-\"] {\n padding-right: 0;\n padding-left: 0;\n }\n }\n}\n\n// Columns\n//\n// Common styles for small and large grid columns\n\n@if $enable-grid-classes {\n @include make-grid-columns();\n}\n","/// Grid system\n//\n// Generate semantic grid columns with these mixins.\n\n@mixin make-container() {\n margin-right: auto;\n margin-left: auto;\n padding-right: ($grid-gutter-width / 2);\n padding-left: ($grid-gutter-width / 2);\n width: 100%;\n}\n\n\n// For each breakpoint, define the maximum width of the container in a media query\n@mixin make-container-max-widths($max-widths: $container-max-widths, $breakpoints: $grid-breakpoints) {\n @each $breakpoint, $container-max-width in $max-widths {\n @include media-breakpoint-up($breakpoint, $breakpoints) {\n max-width: $container-max-width;\n }\n }\n}\n\n@mixin make-row() {\n display: flex;\n flex-wrap: wrap;\n margin-right: ($grid-gutter-width / -2);\n margin-left: ($grid-gutter-width / -2);\n}\n\n@mixin make-col-ready() {\n position: relative;\n // Prevent columns from becoming too narrow when at smaller grid tiers by\n // always setting `width: 100%;`. This works because we use `flex` values\n // later on to override this initial width.\n width: 100%;\n min-height: 1px; // Prevent collapsing\n padding-right: ($grid-gutter-width / 2);\n padding-left: ($grid-gutter-width / 2);\n}\n\n@mixin make-col($size, $columns: $grid-columns) {\n flex: 0 0 percentage($size / $columns);\n // Add a `max-width` to ensure content within each column does not blow out\n // the width of the column. Applies to IE10+ and Firefox. Chrome and Safari\n // do not appear to require this.\n max-width: percentage($size / $columns);\n}\n","// Breakpoint viewport sizes and media queries.\n//\n// Breakpoints are defined as a map of (name: minimum width), order from small to large:\n//\n// (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px)\n//\n// The map defined in the `$grid-breakpoints` global variable is used as the `$breakpoints` argument by default.\n\n// Name of the next breakpoint, or null for the last breakpoint.\n//\n// >> breakpoint-next(sm)\n// md\n// >> breakpoint-next(sm, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// md\n// >> breakpoint-next(sm, $breakpoint-names: (xs sm md lg xl))\n// md\n@function breakpoint-next($name, $breakpoints: $grid-breakpoints, $breakpoint-names: map-keys($breakpoints)) {\n $n: index($breakpoint-names, $name);\n @return if($n < length($breakpoint-names), nth($breakpoint-names, $n + 1), null);\n}\n\n// Minimum breakpoint width. Null for the smallest (first) breakpoint.\n//\n// >> breakpoint-min(sm, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// 576px\n@function breakpoint-min($name, $breakpoints: $grid-breakpoints) {\n $min: map-get($breakpoints, $name);\n @return if($min != 0, $min, null);\n}\n\n// Maximum breakpoint width. Null for the largest (last) breakpoint.\n// The maximum value is calculated as the minimum of the next one less 0.1.\n//\n// >> breakpoint-max(sm, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// 767px\n@function breakpoint-max($name, $breakpoints: $grid-breakpoints) {\n $next: breakpoint-next($name, $breakpoints);\n @return if($next, breakpoint-min($next, $breakpoints) - 1px, null);\n}\n\n// Returns a blank string if smallest breakpoint, otherwise returns the name with a dash infront.\n// Useful for making responsive utilities.\n//\n// >> breakpoint-infix(xs, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// \"\" (Returns a blank string)\n// >> breakpoint-infix(sm, (xs: 0, sm: 576px, md: 768px, lg: 992px, xl: 1200px))\n// \"-sm\"\n@function breakpoint-infix($name, $breakpoints: $grid-breakpoints) {\n @return if(breakpoint-min($name, $breakpoints) == null, \"\", \"-#{$name}\");\n}\n\n// Media of at least the minimum breakpoint width. No query for the smallest breakpoint.\n// Makes the @content apply to the given breakpoint and wider.\n@mixin media-breakpoint-up($name, $breakpoints: $grid-breakpoints) {\n $min: breakpoint-min($name, $breakpoints);\n @if $min {\n @media (min-width: $min) {\n @content;\n }\n } @else {\n @content;\n }\n}\n\n// Media of at most the maximum breakpoint width. No query for the largest breakpoint.\n// Makes the @content apply to the given breakpoint and narrower.\n@mixin media-breakpoint-down($name, $breakpoints: $grid-breakpoints) {\n $max: breakpoint-max($name, $breakpoints);\n @if $max {\n @media (max-width: $max) {\n @content;\n }\n } @else {\n @content;\n }\n}\n\n// Media that spans multiple breakpoint widths.\n// Makes the @content apply between the min and max breakpoints\n@mixin media-breakpoint-between($lower, $upper, $breakpoints: $grid-breakpoints) {\n $min: breakpoint-min($lower, $breakpoints);\n $max: breakpoint-max($upper, $breakpoints);\n\n @media (min-width: $min) and (max-width: $max) {\n @content;\n }\n}\n\n// Media between the breakpoint's minimum and maximum widths.\n// No minimum for the smallest breakpoint, and no maximum for the largest one.\n// Makes the @content apply only to the given breakpoint, not viewports any wider or narrower.\n@mixin media-breakpoint-only($name, $breakpoints: $grid-breakpoints) {\n $min: breakpoint-min($name, $breakpoints);\n $max: breakpoint-max($name, $breakpoints);\n\n @if $min != null and $max != null {\n @media (min-width: $min) and (max-width: $max) {\n @content;\n }\n } @else if $max == null {\n @include media-breakpoint-up($name)\n } @else if $min == null {\n @include media-breakpoint-down($name)\n }\n}\n","// Framework grid generation\n//\n// Used only by Bootstrap to generate the correct number of grid classes given\n// any value of `$grid-columns`.\n\n@mixin make-grid-columns($columns: $grid-columns, $gutter: $grid-gutter-width, $breakpoints: $grid-breakpoints) {\n // Common properties for all breakpoints\n %grid-column {\n position: relative;\n width: 100%;\n min-height: 1px; // Prevent columns from collapsing when empty\n padding-right: ($gutter / 2);\n padding-left: ($gutter / 2);\n }\n\n @each $breakpoint in map-keys($breakpoints) {\n $infix: breakpoint-infix($breakpoint, $breakpoints);\n\n // Allow columns to stretch full width below their breakpoints\n @for $i from 1 through $columns {\n .col#{$infix}-#{$i} {\n @extend %grid-column;\n }\n }\n .col#{$infix},\n .col#{$infix}-auto {\n @extend %grid-column;\n }\n\n @include media-breakpoint-up($breakpoint, $breakpoints) {\n // Provide basic `.col-{bp}` classes for equal-width flexbox columns\n .col#{$infix} {\n flex-basis: 0;\n flex-grow: 1;\n max-width: 100%;\n }\n .col#{$infix}-auto {\n flex: 0 0 auto;\n width: auto;\n max-width: none; // Reset earlier grid tiers\n }\n\n @for $i from 1 through $columns {\n .col#{$infix}-#{$i} {\n @include make-col($i, $columns);\n }\n }\n\n @for $i from 1 through $columns {\n .order#{$infix}-#{$i} {\n order: $i;\n }\n }\n }\n }\n}\n","//\n// Basic Bootstrap table\n//\n\n.table {\n width: 100%;\n max-width: 100%;\n margin-bottom: $spacer;\n background-color: $table-bg; // Reset for nesting within parents with `background-color`.\n\n th,\n td {\n padding: $table-cell-padding;\n vertical-align: top;\n border-top: $table-border-width solid $table-border-color;\n }\n\n thead th {\n vertical-align: bottom;\n border-bottom: (2 * $table-border-width) solid $table-border-color;\n }\n\n tbody + tbody {\n border-top: (2 * $table-border-width) solid $table-border-color;\n }\n\n .table {\n background-color: $body-bg;\n }\n}\n\n\n//\n// Condensed table w/ half padding\n//\n\n.table-sm {\n th,\n td {\n padding: $table-cell-padding-sm;\n }\n}\n\n\n// Bordered version\n//\n// Add borders all around the table and between all the columns.\n\n.table-bordered {\n border: $table-border-width solid $table-border-color;\n\n th,\n td {\n border: $table-border-width solid $table-border-color;\n }\n\n thead {\n th,\n td {\n border-bottom-width: (2 * $table-border-width);\n }\n }\n}\n\n\n// Zebra-striping\n//\n// Default zebra-stripe styles (alternating gray and transparent backgrounds)\n\n.table-striped {\n tbody tr:nth-of-type(odd) {\n background-color: $table-accent-bg;\n }\n}\n\n\n// Hover effect\n//\n// Placed here since it has to come after the potential zebra striping\n\n.table-hover {\n tbody tr {\n @include hover {\n background-color: $table-hover-bg;\n }\n }\n}\n\n\n// Table backgrounds\n//\n// Exact selectors below required to override `.table-striped` and prevent\n// inheritance to nested tables.\n\n@each $color, $value in $theme-colors {\n @include table-row-variant($color, theme-color-level($color, -9));\n}\n\n@include table-row-variant(active, $table-active-bg);\n\n\n// Inverse styles\n//\n// Same table markup, but inverted color scheme: dark background and light text.\n\n.thead-inverse {\n th {\n color: $table-inverse-color;\n background-color: $table-inverse-bg;\n }\n}\n\n.thead-default {\n th {\n color: $table-head-color;\n background-color: $table-head-bg;\n }\n}\n\n.table-inverse {\n color: $table-inverse-color;\n background-color: $table-inverse-bg;\n\n th,\n td,\n thead th {\n border-color: $table-inverse-border-color;\n }\n\n &.table-bordered {\n border: 0;\n }\n\n &.table-striped {\n tbody tr:nth-of-type(odd) {\n background-color: $table-inverse-accent-bg;\n }\n }\n\n &.table-hover {\n tbody tr {\n @include hover {\n background-color: $table-inverse-hover-bg;\n }\n }\n }\n}\n\n\n// Responsive tables\n//\n// Add `.table-responsive` to `.table`s and we'll make them mobile friendly by\n// enabling horizontal scrolling. Only applies <768px. Everything above that\n// will display normally.\n\n.table-responsive {\n @include media-breakpoint-down(md) {\n display: block;\n width: 100%;\n overflow-x: auto;\n -ms-overflow-style: -ms-autohiding-scrollbar; // See https://github.com/twbs/bootstrap/pull/10057\n\n // Prevent double border on horizontal scroll due to use of `display: block;`\n &.table-bordered {\n border: 0;\n }\n }\n}\n","// Tables\n\n@mixin table-row-variant($state, $background) {\n // Exact selectors below required to override `.table-striped` and prevent\n // inheritance to nested tables.\n .table-#{$state} {\n &,\n > th,\n > td {\n background-color: $background;\n }\n }\n\n // Hover states for `.table-hover`\n // Note: this is not available for cells or rows within `thead` or `tfoot`.\n .table-hover {\n $hover-background: darken($background, 5%);\n\n .table-#{$state} {\n @include hover {\n background-color: $hover-background;\n\n > td,\n > th {\n background-color: $hover-background;\n }\n }\n }\n }\n}\n","// Bootstrap functions\n//\n// Utility mixins and functions for evalutating source code across our variables, maps, and mixins.\n\n// Ascending\n// Used to evaluate Sass maps like our grid breakpoints.\n@mixin _assert-ascending($map, $map-name) {\n $prev-key: null;\n $prev-num: null;\n @each $key, $num in $map {\n @if $prev-num == null {\n // Do nothing\n } @else if not comparable($prev-num, $num) {\n @warn \"Potentially invalid value for #{$map-name}: This map must be in ascending order, but key '#{$key}' has value #{$num} whose unit makes it incomparable to #{$prev-num}, the value of the previous key '#{$prev-key}' !\";\n } @else if $prev-num >= $num {\n @warn \"Invalid value for #{$map-name}: This map must be in ascending order, but key '#{$key}' has value #{$num} which isn't greater than #{$prev-num}, the value of the previous key '#{$prev-key}' !\";\n }\n $prev-key: $key;\n $prev-num: $num;\n }\n}\n\n// Starts at zero\n// Another grid mixin that ensures the min-width of the lowest breakpoint starts at 0.\n@mixin _assert-starts-at-zero($map) {\n $values: map-values($map);\n $first-value: nth($values, 1);\n @if $first-value != 0 {\n @warn \"First breakpoint in `$grid-breakpoints` must start at 0, but starts at #{$first-value}.\";\n }\n}\n\n// Replace `$search` with `$replace` in `$string`\n// Used on our SVG icon backgrounds for custom forms.\n//\n// @author Hugo Giraudel\n// @param {String} $string - Initial string\n// @param {String} $search - Substring to replace\n// @param {String} $replace ('') - New value\n// @return {String} - Updated string\n@function str-replace($string, $search, $replace: \"\") {\n $index: str-index($string, $search);\n\n @if $index {\n @return str-slice($string, 1, $index - 1) + $replace + str-replace(str-slice($string, $index + str-length($search)), $search, $replace);\n }\n\n @return $string;\n}\n\n// Color contrast\n@mixin color-yiq($color) {\n $r: red($color);\n $g: green($color);\n $b: blue($color);\n\n $yiq: (($r * 299) + ($g * 587) + ($b * 114)) / 1000;\n\n @if ($yiq >= 150) {\n color: #111;\n } @else {\n color: #fff;\n }\n}\n\n// Retreive color Sass maps\n@function color($key: \"blue\") {\n @return map-get($colors, $key);\n}\n\n@function theme-color($key: \"primary\") {\n @return map-get($theme-colors, $key);\n}\n\n@function grayscale($key: \"100\") {\n @return map-get($grays, $key);\n}\n\n// Request a theme color level\n@function theme-color-level($color-name: \"primary\", $level: 0) {\n $color: theme-color($color-name);\n $color-base: if($level > 0, #000, #fff);\n\n @if $level < 0 {\n // Lighter values need a quick double negative for the Sass math to work\n @return mix($color-base, $color, $level * -1 * $theme-color-interval);\n } @else {\n @return mix($color-base, $color, $level * $theme-color-interval);\n }\n}\n","// scss-lint:disable QualifyingElement, VendorPrefix\n\n//\n// Textual form controls\n//\n\n.form-control {\n display: block;\n width: 100%;\n // // Make inputs at least the height of their button counterpart (base line-height + padding + border)\n // height: $input-height;\n padding: $input-btn-padding-y $input-btn-padding-x;\n font-size: $font-size-base;\n line-height: $input-btn-line-height;\n color: $input-color;\n background-color: $input-bg;\n // Reset unusual Firefox-on-Android default style; see https://github.com/necolas/normalize.css/issues/214.\n background-image: none;\n background-clip: padding-box;\n border: $input-btn-border-width solid $input-border-color;\n\n // Note: This has no effect on `s in CSS.\n @if $enable-rounded {\n // Manually use the if/else instead of the mixin to account for iOS override\n border-radius: $input-border-radius;\n } @else {\n // Otherwise undo the iOS default\n border-radius: 0;\n }\n\n @include box-shadow($input-box-shadow);\n @include transition($input-transition);\n\n // Unstyle the caret on ` receives focus\n // in IE and (under certain conditions) Edge, as it looks bad and cannot be made to\n // match the appearance of the native widget.\n // See https://github.com/twbs/bootstrap/issues/19398.\n color: $input-color;\n background-color: $input-bg;\n }\n}\n\n// Make file inputs better match text inputs by forcing them to new lines.\n.form-control-file,\n.form-control-range {\n display: block;\n}\n\n\n//\n// Labels\n//\n\n// For use with horizontal and inline forms, when you need the label text to\n// align with the form controls.\n.col-form-label {\n padding-top: calc(#{$input-btn-padding-y} - #{$input-btn-border-width} * 2);\n padding-bottom: calc(#{$input-btn-padding-y} - #{$input-btn-border-width} * 2);\n margin-bottom: 0; // Override the `