Mondoo 6.4 is out!
๐ฅณ Mondoo 6.4 is out! This release includes new GitHub resources and improvements to the Linux Baseline policy.
Get this release: Installation Docs | Package Downloads | Docker Container
๐ NEW FEATURESโ
New GitHub Resource Capabilitiesโ
Problem: Customers want to write Mondoo policies to ensure the security of their GitHub repositories and organizations
Solution: Mondoo is writing resources to allow users to gather critical information about the security stance of their GitHub Organization and any public repositories they wish to examine.
Connect to mondoo shell to begin discovering more about your GitHub infrastructure:
mondoo shell -t github --option token=${GH_TOKEN} --option login=USERNAME
mondoo shell -t github --option token=${GH_TOKEN} --option organization=ORGANIZATION_NAME
Ask questions and discover:
github.organization { repositories { files { path type isBinary files { path type isBinary files } } }}
github.repository("chris-rock/bubbletea") { files { content} }
Assess:
github.organization { repositories { default=defaultBranchName branches.where(name == default) { protected }}}
github.repository("chris-rock/bubbletea") { archived == false hasIssues == true}
Keep an eye out for our GitHub Security Policy that should be shipping in the next month ๐
New Enterprise Windows Installerโ
Problem: Customers want to fully automate the installation of Mondoo on Windows using MDM or configuration management solutions.
Solution: A new enterprise Mondoo MSI Installer (mondoo-enterprise.msi) has been created to make the automated setup of Mondoo simpler. This new installer requires a REGISTRATIONTOKEN
value, which it uses to automatically register the system with Mondoo and then start the service.