On 4/5/19 7:37 AM, Watson Sato wrote:
Hello,
On Thu, Mar 28, 2019 at 4:50 PM Mike Johnston <mijohnst@gmail.com mailto:mijohnst@gmail.com> wrote:
I'm a new to this project and have always done my SCAP lock downs with kickstart scripts up until now. This looks to be something I switched to a long time ago. In the environment I work in, I need to make custom ISO installation disks to send out to the field. I've been testing out the 'addon xccdf_org.ssgproject.content_profile_stig-rhel7-disa' security profile and then made a custom tailored XML following the guidelines keep a few things on that were being removed. My problem is that now that I have my 'ssg-rhel7-ds-tailoring.xml' file, where do I put it in my kickstart image? I've tried copying it in the post -nochroot section of my kickstart to /tmp/openscap_data and /root/openscap_data and neither of those worked.
From what I see in the source code, the tailoring file needs to be in "/tmp/openscap_data". During the post install phase, the addon copies the file to "/root/openscap_data" and uses the tailoring from there.
Where should that be documented?