{"id":21016735,"url":"https://github.com/gsa/security-benchmarks","last_synced_at":"2025-12-29T05:54:40.800Z","repository":{"id":58139701,"uuid":"91750360","full_name":"GSA/security-benchmarks","owner":"GSA","description":"GSA Security Benchmarks and Tools","archived":false,"fork":false,"pushed_at":"2019-09-19T14:21:26.000Z","size":1630,"stargazers_count":21,"open_issues_count":0,"forks_count":10,"subscribers_count":23,"default_branch":"master","last_synced_at":"2025-01-20T12:20:33.238Z","etag":null,"topics":["devsecops"],"latest_commit_sha":null,"homepage":"","language":null,"has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":null,"status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/GSA.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":null,"code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null}},"created_at":"2017-05-19T00:50:32.000Z","updated_at":"2024-07-08T20:42:38.000Z","dependencies_parsed_at":"2022-09-19T04:00:18.814Z","dependency_job_id":null,"html_url":"https://github.com/GSA/security-benchmarks","commit_stats":null,"previous_names":[],"tags_count":0,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/GSA%2Fsecurity-benchmarks","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/GSA%2Fsecurity-benchmarks/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/GSA%2Fsecurity-benchmarks/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/GSA%2Fsecurity-benchmarks/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/GSA","download_url":"https://codeload.github.com/GSA/security-benchmarks/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":243447512,"owners_count":20292449,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["devsecops"],"created_at":"2024-11-19T10:15:45.042Z","updated_at":"2025-12-29T05:54:40.758Z","avatar_url":"https://github.com/GSA.png","language":null,"funding_links":[],"categories":[],"sub_categories":[],"readme":"# GSA Security Benchmarks [![CircleCI](https://circleci.com/gh/GSA/security-benchmarks.svg?style=svg)](https://circleci.com/gh/GSA/security-benchmarks)\n\nWelcome to the General Services Administration Security Benchmarks repository. As automated implementation and verification content is developed and updated, it will be posted here. This content is provided as a tool to facilitate implementation and verification of security settings required by the GSA Security Benchmarks.\n\n## What are GSA Security Benchmarks?\n\nThe GSA publishes security guides for various operating systems and applications commonly used at the agency. For more information, please refer to the published guides on [insite.gsa.gov](https://insite.gsa.gov/portal/content/627210) (*only accessible with GSA account*).\n\n## Available Content\n\n### Security Benchmark Documentation\n\nDependency: GSA account\n\n* [Hardening Guides](https://insite.gsa.gov/portal/content/627210) - Documents outlining the general use and standards for security benchmarks.\n* [Security Benchmark Worksheets](https://drive.google.com/drive/folders/0BwLUd26GHbxibTFROVdoSk1RNUE) - Individual worksheets itemizing the security benchmark settings.\n\n    \n### Automated Implementation\n\n#### Ansible Playbooks\n\nDependency: [Ansible](https://docs.ansible.com/ansible/latest/intro_installation.html)\n\n* [RHEL 6](https://github.com/GSA/ansible-os-rhel-6)\n* [RHEL 7](https://github.com/GSA/ansible-os-rhel-7)\n* [Ubuntu 16](https://github.com/GSA/ansible-os-ubuntu-16)\n* [Windows Server 2016](https://github.com/GSA/ansible-os-win-2016)\n\n#### GPOs\n\n* [Windows Server 2012 R2](https://github.com/GSA/ISE-Security-Benchmark-GPOs)\n\n\n\n### Automated Verification\n\nDependency: GSA account\n\n* [Tenable/Nessus Audit Files](https://drive.google.com/drive/folders/0BwLUd26GHbxiT1hMVUtRTGNKZjg) - Custom audit content for use with Tenable Security Center or Nessus Vulnerability Scanner\n* [BigFix Compliance Checklists](https://bigfixcompliance.gsa.gov:52315/scm) - Custom audit content for use with hosts that are registered with the BigFix platform.\n\nFor questions or comments, contact OCISO ISE: [ise-guides@gsa.gov](mailto:ise-guides@gsa.gov).\n\n\u003c!-- reference-style links, to de-duplicate URLs and keep the table above readable --\u003e\n\n[ClamAV]: https://www.clamav.net/\n[Cylance]:https://www.cylance.com/en_us/products/our-products/protect.html\n[FireEyeHx]:https://www.fireeye.com/blog/products-and-services/2017/09/bringing-advanced-protection-to-endpoints.html\n[GAuth]: https://github.com/GSA/d2d/blob/master/docs/linux_mfa_setup.md\n[Nessus Linux]: https://drive.google.com/open?id=0B726fftFCN-oemFRazdnM3FITE0\n[Nessus Win]: https://drive.google.com/open?id=0B726fftFCN-oQUtGWWE3SENBYjg\n[OSSEC]: https://github.helix.gsa.gov/GSASecOps/ansible-ossec-agent\n[RHEL 6]: https://github.com/GSA/ansible-os-rhel-6\n[RHEL 7]: https://github.com/GSA/ansible-os-rhel-7\n[Rohos]: https://github.com/GSA/d2d/blob/master/docs/windows_mfa_setup.md\n[Snare]: https://www.intersectalliance.com/our-product/snare-agent/\n[Ubuntu 14]: https://github.com/GSA/ansible-os-ubuntu-14\n[Ubuntu 16]: https://github.com/GSA/ansible-os-ubuntu-16\n[GPOs]: https://github.com/GSA/ISE-Security-Benchmark-GPOs\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fgsa%2Fsecurity-benchmarks","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fgsa%2Fsecurity-benchmarks","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fgsa%2Fsecurity-benchmarks/lists"}