[pca] PCA features: Check if SST(aka JASS) is installed on thesystem to analyze.

Martin Paul martin at par.univie.ac.at
Wed Oct 28 11:23:45 CET 2009


Glen Gunselman wrote:
> It's my understanding that the patching process ignores SST hardening.
> 
> I have seen patching "undo" hardening on Solaris 9.

It's been a long time since I used JASS/SST, but I guess it does its 
hardening mostly by changing some configuration (files), disabling 
services, etc. I'd regard a patch which reverses such a change as 
faulty; plus, as you say, pca's "--safe" should catch those.

Martin.



More information about the pca mailing list