J'ai développé un petit outil open source d'audit de sécurité Linux et j'aimerais avoir des retours.
Posted by SonFire03@reddit | sysadmin | View on Reddit | 1 comments
Hi everyone,
I’ve been working on a small open-source project called IronAudit.
It is a local Linux security posture auditor written in Python. The goal is to run read-only checks on a Linux host, produce structured findings, compute a security score, and generate readable reports.
Current features:
\- local read-only Linux checks
\- SSH, firewall, users, services, permissions, updates and auth checks
\- severity-based findings
\- scoring from 0 to 100
\- remediation guidance
\- terminal output
\- JSON / Markdown / HTML reports
\- local web dashboard
\- report comparison and snapshot history
What it is not:
\- not an exploit tool
\- not a vulnerability scanner like Nessus/OpenVAS
\- not a replacement for Lynis or OpenSCAP
\- not a compliance-certified scanner
My goal is to make it useful for homelab users, students, junior sysadmins, and people who want a readable first security baseline for Linux servers.
I would really appreciate feedback on:
\- the scoring model
\- the checks that should be added or removed
\- report readability
\- README clarity
\- whether the project feels useful or redundant
\- what would make you trust or use this kind of tool
Thanks!
[https://github.com/SonFire03/IronAudit.git](https://github.com/SonFire03/IronAudit.git)
VA_Network_Nerd@reddit
Sorry, it seems this comment or thread has violated a sub-reddit rule and has been removed by a moderator.
Do Not Conduct Marketing Operations Within This Community.
Your content may be better suited for our companion sub-reddit: /r/SysAdminBlogs
If you wish to appeal this action please don't hesitate to message the moderation team.