fleet/it-and-security/lib/linux/policies/disk-encryption-check.yml
Allen Houchins f85dc597c1
Cleaning up policies (#25850)
In support of this issue: fleetdm/confidential#8791
2025-01-29 12:46:41 -06:00

6 lines
431 B
YAML

- name: Linux - Disk encryption enabled
query: SELECT 1 FROM mounts m, disk_encryption d WHERE m.device_alias = d.name AND d.encrypted = 1 AND m.path = '/';
critical: false
description: This policy checks if disk encryption is enabled.
resolution: Disk encryption can only be configured during initial operating system install. Please re-install your operating system ensuring disk encryption is enabled.
platform: linux