Solaris Cluster 4.x Security Compliance??
All,
I have security peeps who expect me to lockdown the Solaris 11.2 / 11.3, Solaris Cluster 4.2 / 4.3 SPARC T5 systems IAW some CIS scan.
Knowing that we have built in security "compliance" framework in Solaris 11.2/11.3, how do I obtain a Solaris "compliance list" tailored for Solaris Cluster 4 installations?? The compliance lists resides in "/usr/lib/compliance/benchmarks". There are only two lists delivered with the Solaris installation. Solaris Cluster 4.x installations do NOT add a specific "compliance list" to the benchmarks.
IP Stack:
Since CIS IP stack settings are probably determined from other O/S IP stacks, what are the Oracle/Sun recommended IP stack settings for Solaris Cluster, (all possible implementations)???