1. <?xml version="1.0" encoding="UTF-8"?>
  2. <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
  3. <html xmlns="http://www.w3.org/1999/xhtml" xmlns:xlink="http://www.w3.org/1999/xlink" xmlns:svg="http://www.w3.org/2000/svg">
  4.   <head>
  5.     <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" />
  6.     <title>XCCDF Test Result</title>
  7.     <meta name="generator" content="" />
  8.     <meta name="Content-Type" content="text/html;charset=utf-8" />
  9.     <style type="text/css" media="all">
  10.     html, body { background-color: black; font-family:sans-serif; margin:0; padding:0; }
  11.     abbr { text-transform:none; border:none; font-variant:normal; }
  12.     div.score-outer { height: .8em; width:100%; min-width:100px; background-color: red; }
  13.     div.score-inner { height: 100%; background-color: green; }
  14.     .score-max, .score-val, .score-percent { text-align:right; }
  15.     .score-percent { font-weight: bold; }
  16.     th, td { padding-left:.5em; padding-right:.5em; }
  17.     .rule-selected, .result-pass strong, .result-fixed strong { color:green; }
  18.     .rule-inactive, .unknown, .result-notselected strong, .result-notchecked strong, .result-notapplicable strong, .result-informational strong, .result-unknown strong { color:#555; }
  19.     .rule-notselected, .result-error strong, .result-fail strong { color:red; }
  20.     table { border-collapse: collapse; border: 1px black solid; width:100%; }
  21.     table th, thead tr { background-color:black; color:white; }
  22.     table td { border-right: 1px black solid; }
  23.     table td.result, table td.link { text-align:center; }
  24.     table td.num { text-align:right; }
  25.     div#rule-results-summary { margin-bottom: 1em; }
  26.     table tr.result-legend td { width: 10%; }
  27.     div#content p { text-align:justify; }
  28.     div.result-detail { border: 1px solid black; margin: 2em 0; padding: 0 1em; }
  29.     div#content h2 { border-bottom:2px dashed; margin-top:1em; margin-bottom:0.5em; text-align:center; }
  30.     div#content h2#summary { margin-top:0; }
  31.     h1 { margin:1em 0; }
  32.     div.raw table, div.raw table td { border:none; width:auto; padding:0; }
  33.     div.raw table { margin-left: 2em; }
  34.     div.raw table td { padding: .1em .7em; }
  35.     table tr { border-bottom: 1px dotted #000; }
  36.     dir.raw table tr { border-bottom: 0 !important; }
  37.     pre.code { background: #ccc; padding:.2em; }
  38.     ul.toc-struct li { list-style-type: none; }
  39.     div.xccdf-rule { margin-left: 10%; }
  40.     div#footer, p.remark, .link { font-size:.8em; }
  41.     thead tr td { font-weight:bold; text-align:center; }
  42.     .hidden { display:none; }
  43.     td.score-bar { text-align:center; }
  44.     td.score-bar span.media { width:100%; min-width:7em; height:.8em; display:block; margin:0; padding:0; }
  45.     .oval-results { font-size:.8em; overflow:auto; }
  46.     div#guide-top-table table { width: 100%; }
  47.     td#common-info { min-width: 25.0em; border-right: 1px solid #000; }
  48.     td#versions-revisions { width: 25.0em; }
  49.   </style>
  50.     <style type="text/css" media="screen">
  51.     div#content, div#header, div#footer { margin-left:1em; margin-right:1em; }
  52.     div#content { background-color: white; padding:2em; }
  53.     div#footer, div#header { color:white; text-align:center; }
  54.     a, a:visited { color:blue; text-decoration:underline; }
  55.     div#content p.link { text-align:right; font-size:.8em; }
  56.     div#footer a { color:white; }
  57.     div.xccdf-group, div.xccdf-rule { border-left: 3px solid white; padding-left:.3em; }
  58.     div.xccdf-group:target, div.xccdf-rule:target { border-left-color:#ccc; }
  59.     .toc-struct li:target { background:#ddd; }
  60.     abbr { border-bottom: 1px black dotted; }
  61.     abbr.date { border-bottom:none; }
  62.     pre.code { overflow:auto; }
  63.     table tbody tr:hover { background: #ccc; }
  64.     div.raw table tbody tr:hover { background: transparent !important; }
  65.   </style>
  66.     <style type="text/css" media="print">
  67.     @page { margin:3cm; }
  68.     html, body { background-color:white; font-family:serif; }
  69.     .link { display:none; }
  70.     a, a:visited { color:black; text-decoration:none; }
  71.     div#header, div#footer { text-align:center; }
  72.     div#header { padding-top:36%; }
  73.     h1 { vertical-align:center; }
  74.     h2 { page-break-before:always; }
  75.     h3, h4, h5  { page-break-after:avoid; }
  76.     pre.code { background: #ccc; }
  77.     div#footer { margin-top:auto; }
  78.     .toc-struct { page-break-after:always; }
  79.   </style>
  80.   </head>
  81.   <body>
  82.     <div id="xccdf_org.open-scap_testresult_xccdf_preupg_profile_default">
  83.       <div id="header">
  84.         <h1>XCCDF Test Result</h1>
  85.       </div>
  86.       <div id="content">
  87.         <div id="intro">
  88.           <h2>Introduction</h2>
  89.           <div>
  90.             <h3>Scanner</h3>
  91.             <ul>
  92.               <li>preupgrade-assistant-1.0.2-33.0.3.el6.centos</li>
  93.               <li>preupgrade-assistant-contents-0.5.13-1.0.5.el6.centos</li>
  94.             </ul>
  95.           </div>
  96.           <div>
  97.             <h3>Target info</h3>
  98.             <div class="raw">
  99.               <table>
  100.                 <tbody>
  101.                   <tr>
  102.                     <td valign="top">
  103.                       <h4>Targets</h4>
  104.                       <ul class="itemizedlist">
  105.                         <li>gameserver</li>
  106.                       </ul>
  107.                     </td>
  108.                     <td valign="top">
  109.                       <h4>Addresses</h4>
  110.                       <ul class="itemizedlist">
  111.                         <li>127.0.0.1</li>
  112.                         <li>192.168.0.163</li>
  113.                         <li>0:0:0:0:0:0:0:1</li>
  114.                         <li>2a02:1810:3980:0:226:55ff:feff:a7f0</li>
  115.                         <li>fe80:0:0:0:226:55ff:feff:a7f0</li>
  116.                       </ul>
  117.                     </td>
  118.                     <td></td>
  119.                     <td valign="top">
  120.                       <h4>Platforms</h4>
  121.                       <ul class="itemizedlist">
  122.                         <li>cpe:/o:centos:centos:6</li>
  123.                       </ul>
  124.                     </td>
  125.                     <td valign="top"></td>
  126.                   </tr>
  127.                 </tbody>
  128.               </table>
  129.             </div>
  130.           </div>
  131.         </div>
  132.         <div id="results-overview">
  133.           <h2>Results overview</h2>
  134.           <div id="rule-results-summary">
  135.             <h4>Rule Results Summary</h4>
  136.             <table>
  137.               <thead>
  138.                 <tr>
  139.                   <td>pass</td>
  140.                   <td>fixed</td>
  141.                   <td>fail</td>
  142.                   <td>needs inspection</td>
  143.                   <td>needs action</td>
  144.                   <td>error</td>
  145.                   <td>not selected</td>
  146.                   <td>not checked</td>
  147.                   <td>not applicable</td>
  148.                   <td>informational</td>
  149.                   <td>unknown</td>
  150.                   <td>total</td>
  151.                 </tr>
  152.               </thead>
  153.               <tbody>
  154.                 <tr class="result-legend">
  155.                   <td align="center" class="result-pass">
  156.                     <strong class="strong">23</strong>
  157.                   </td>
  158.                   <td align="center" class="result-fixed">
  159.                     <strong class="strong">5</strong>
  160.                   </td>
  161.                   <td align="center" class="result-fail">
  162.                     <strong class="strong">0</strong>
  163.                   </td>
  164.                   <td align="center" class="result-needsinspection">
  165.                     <strong class="strong">5</strong>
  166.                   </td>
  167.                   <td align="center" class="result-needsaction">
  168.                     <strong class="strong">4</strong>
  169.                   </td>
  170.                   <td align="center" class="result-error">
  171.                     <strong class="strong">0</strong>
  172.                   </td>
  173.                   <td align="center" class="result-notselected">
  174.                     <strong class="strong">5</strong>
  175.                   </td>
  176.                   <td align="center" class="result-notchecked">
  177.                     <strong class="strong">0</strong>
  178.                   </td>
  179.                   <td align="center" class="result-notapplicable">
  180.                     <strong class="strong">44</strong>
  181.                   </td>
  182.                   <td align="center" class="result-informational">
  183.                     <strong class="strong">14</strong>
  184.                   </td>
  185.                   <td align="center" class="result-unknown">
  186.                     <strong class="strong">0</strong>
  187.                   </td>
  188.                   <td align="center">
  189.                     <strong class="strong">100</strong>
  190.                   </td>
  191.                 </tr>
  192.               </tbody>
  193.             </table>
  194.           </div>
  195.           <div>
  196.             <h4 class="hidden">Rule results summary</h4>
  197.             <table>
  198.               <thead>
  199.                 <tr>
  200.                   <td>Title</td>
  201.                   <td>Result</td>
  202.                 </tr>
  203.               </thead>
  204.               <tbody>
  205.                 <tr class="result-fixed">
  206.                   <td class="id">
  207.                     <a href="#ruleresult-idp6917376">Replaced rpms</a>
  208.                   </td>
  209.                   <td class="result">
  210.                     <strong class="strong">fixed</strong>
  211.                   </td>
  212.                 </tr>
  213.                 <tr class="result-fixed">
  214.                   <td class="id">
  215.                     <a href="#ruleresult-idp6936432">package downgrades</a>
  216.                   </td>
  217.                   <td class="result">
  218.                     <strong class="strong">fixed</strong>
  219.                   </td>
  220.                 </tr>
  221.                 <tr class="result-fixed">
  222.                   <td class="id">
  223.                     <a href="#ruleresult-idp7047632">OpenSSH sysconfig migration content</a>
  224.                   </td>
  225.                   <td class="result">
  226.                     <strong class="strong">fixed</strong>
  227.                   </td>
  228.                 </tr>
  229.                 <tr class="result-fixed">
  230.                   <td class="id">
  231.                     <a href="#ruleresult-idp7090208">State of LVM2 services.</a>
  232.                   </td>
  233.                   <td class="result">
  234.                     <strong class="strong">fixed</strong>
  235.                   </td>
  236.                 </tr>
  237.                 <tr class="result-fixed">
  238.                   <td class="id">
  239.                     <a href="#ruleresult-idp7097392">device-mapper-multipath configuration compatibility check</a>
  240.                   </td>
  241.                   <td class="result">
  242.                     <strong class="strong">fixed</strong>
  243.                   </td>
  244.                 </tr>
  245.                 <tr class="result-informational">
  246.                   <td class="id">
  247.                     <a href="#ruleresult-idp6832656">VCS repositories</a>
  248.                   </td>
  249.                   <td class="result">
  250.                     <strong class="strong">informational</strong>
  251.                   </td>
  252.                 </tr>
  253.                 <tr class="result-informational">
  254.                   <td class="id">
  255.                     <a href="#ruleresult-idp6882864">Removed options in coreutils binaries</a>
  256.                   </td>
  257.                   <td class="result">
  258.                     <strong class="strong">informational</strong>
  259.                   </td>
  260.                 </tr>
  261.                 <tr class="result-informational">
  262.                   <td class="id">
  263.                     <a href="#ruleresult-idp6889472">Removed options in gawk binaries</a>
  264.                   </td>
  265.                   <td class="result">
  266.                     <strong class="strong">informational</strong>
  267.                   </td>
  268.                 </tr>
  269.                 <tr class="result-informational">
  270.                   <td class="id">
  271.                     <a href="#ruleresult-idp6895968">Removed options in netstat binary</a>
  272.                   </td>
  273.                   <td class="result">
  274.                     <strong class="strong">informational</strong>
  275.                   </td>
  276.                 </tr>
  277.                 <tr class="result-informational">
  278.                   <td class="id">
  279.                     <a href="#ruleresult-idp6928176">GMP library incompatibilities</a>
  280.                   </td>
  281.                   <td class="result">
  282.                     <strong class="strong">informational</strong>
  283.                   </td>
  284.                 </tr>
  285.                 <tr class="result-informational">
  286.                   <td class="id">
  287.                     <a href="#ruleresult-idp6972672">CVS Package Split</a>
  288.                   </td>
  289.                   <td class="result">
  290.                     <strong class="strong">informational</strong>
  291.                   </td>
  292.                 </tr>
  293.                 <tr class="result-informational">
  294.                   <td class="id">
  295.                     <a href="#ruleresult-idp6986368">httpd configuration compatibility check</a>
  296.                   </td>
  297.                   <td class="result">
  298.                     <strong class="strong">informational</strong>
  299.                   </td>
  300.                 </tr>
  301.                 <tr class="result-informational">
  302.                   <td class="id">
  303.                     <a href="#ruleresult-idp7170432">File Systems, Partitions and Mounts Configuration Review</a>
  304.                   </td>
  305.                   <td class="result">
  306.                     <strong class="strong">informational</strong>
  307.                   </td>
  308.                 </tr>
  309.                 <tr class="result-informational">
  310.                   <td class="id">
  311.                     <a href="#ruleresult-idp7185872">Sonamebumped libs</a>
  312.                   </td>
  313.                   <td class="result">
  314.                     <strong class="strong">informational</strong>
  315.                   </td>
  316.                 </tr>
  317.                 <tr class="result-informational">
  318.                   <td class="id">
  319.                     <a href="#ruleresult-idp7193232">SonameKept Reusable Dynamic Libraries</a>
  320.                   </td>
  321.                   <td class="result">
  322.                     <strong class="strong">informational</strong>
  323.                   </td>
  324.                 </tr>
  325.                 <tr class="result-informational">
  326.                   <td class="id">
  327.                     <a href="#ruleresult-idp7199648">Removed .so libs</a>
  328.                   </td>
  329.                   <td class="result">
  330.                     <strong class="strong">informational</strong>
  331.                   </td>
  332.                 </tr>
  333.                 <tr class="result-informational">
  334.                   <td class="id">
  335.                     <a href="#ruleresult-idp7233680">Content for enabling and disabling services based on CentOS 6 system</a>
  336.                   </td>
  337.                   <td class="result">
  338.                     <strong class="strong">informational</strong>
  339.                   </td>
  340.                 </tr>
  341.                 <tr class="result-informational">
  342.                   <td class="id">
  343.                     <a href="#ruleresult-idp7269824">Foreign Perl modules</a>
  344.                   </td>
  345.                   <td class="result">
  346.                     <strong class="strong">informational</strong>
  347.                   </td>
  348.                 </tr>
  349.                 <tr class="result-informational">
  350.                   <td class="id">
  351.                     <a href="#ruleresult-idp7306800">YUM</a>
  352.                   </td>
  353.                   <td class="result">
  354.                     <strong class="strong">informational</strong>
  355.                   </td>
  356.                 </tr>
  357.                 <tr class="result-needs_action">
  358.                   <td class="id">
  359.                     <a href="#ruleresult-idp6853696">Packages not signed by CentOS</a>
  360.                   </td>
  361.                   <td class="result">
  362.                     <strong class="strong">needs_action</strong>
  363.                   </td>
  364.                 </tr>
  365.                 <tr class="result-needs_action">
  366.                   <td class="id">
  367.                     <a href="#ruleresult-idp6909728">Removed rpms</a>
  368.                   </td>
  369.                   <td class="result">
  370.                     <strong class="strong">needs_action</strong>
  371.                   </td>
  372.                 </tr>
  373.                 <tr class="result-needs_action">
  374.                   <td class="id">
  375.                     <a href="#ruleresult-idp6951024">General</a>
  376.                   </td>
  377.                   <td class="result">
  378.                     <strong class="strong">needs_action</strong>
  379.                   </td>
  380.                 </tr>
  381.                 <tr class="result-needs_action">
  382.                   <td class="id">
  383.                     <a href="#ruleresult-idp7243360">Check for ethernet interface naming</a>
  384.                   </td>
  385.                   <td class="result">
  386.                     <strong class="strong">needs_action</strong>
  387.                   </td>
  388.                 </tr>
  389.                 <tr class="result-needs_inspection">
  390.                   <td class="id">
  391.                     <a href="#ruleresult-idp6670000">Configuration Files to Review</a>
  392.                   </td>
  393.                   <td class="result">
  394.                     <strong class="strong">needs_inspection</strong>
  395.                   </td>
  396.                 </tr>
  397.                 <tr class="result-needs_inspection">
  398.                   <td class="id">
  399.                     <a href="#ruleresult-idp6677232">File Lists for Manual Migration</a>
  400.                   </td>
  401.                   <td class="result">
  402.                     <strong class="strong">needs_inspection</strong>
  403.                   </td>
  404.                 </tr>
  405.                 <tr class="result-needs_inspection">
  406.                   <td class="id">
  407.                     <a href="#ruleresult-idp6861104">Obsoleted rpms</a>
  408.                   </td>
  409.                   <td class="result">
  410.                     <strong class="strong">needs_inspection</strong>
  411.                   </td>
  412.                 </tr>
  413.                 <tr class="result-needs_inspection">
  414.                   <td class="id">
  415.                     <a href="#ruleresult-idp7134784">Binary rebuilds</a>
  416.                   </td>
  417.                   <td class="result">
  418.                     <strong class="strong">needs_inspection</strong>
  419.                   </td>
  420.                 </tr>
  421.                 <tr class="result-needs_inspection">
  422.                   <td class="id">
  423.                     <a href="#ruleresult-idp7313152">Check for usage of dangerous range of UID/GIDs</a>
  424.                   </td>
  425.                   <td class="result">
  426.                     <strong class="strong">needs_inspection</strong>
  427.                   </td>
  428.                 </tr>
  429.                 <tr class="result-pass">
  430.                   <td class="id">
  431.                     <a href="#ruleresult-idp6749712">several kernel networking drivers not available in CentOS 7</a>
  432.                   </td>
  433.                   <td class="result">
  434.                     <strong class="strong">pass</strong>
  435.                   </td>
  436.                 </tr>
  437.                 <tr class="result-pass">
  438.                   <td class="id">
  439.                     <a href="#ruleresult-idp6756368">several kernel storage drivers not available in CentOS 7</a>
  440.                   </td>
  441.                   <td class="result">
  442.                     <strong class="strong">pass</strong>
  443.                   </td>
  444.                 </tr>
  445.                 <tr class="result-pass">
  446.                   <td class="id">
  447.                     <a href="#ruleresult-idp6806224">Compatibility Between iptables and ip6tables</a>
  448.                   </td>
  449.                   <td class="result">
  450.                     <strong class="strong">pass</strong>
  451.                   </td>
  452.                 </tr>
  453.                 <tr class="result-pass">
  454.                   <td class="id">
  455.                     <a href="#ruleresult-idp6812672">Net-SNMP check</a>
  456.                   </td>
  457.                   <td class="result">
  458.                     <strong class="strong">pass</strong>
  459.                   </td>
  460.                 </tr>
  461.                 <tr class="result-pass">
  462.                   <td class="id">
  463.                     <a href="#ruleresult-idp6826304">Reusable Configuration Files</a>
  464.                   </td>
  465.                   <td class="result">
  466.                     <strong class="strong">pass</strong>
  467.                   </td>
  468.                 </tr>
  469.                 <tr class="result-pass">
  470.                   <td class="id">
  471.                     <a href="#ruleresult-idp7021120">NTP configuration</a>
  472.                   </td>
  473.                   <td class="result">
  474.                     <strong class="strong">pass</strong>
  475.                   </td>
  476.                 </tr>
  477.                 <tr class="result-pass">
  478.                   <td class="id">
  479.                     <a href="#ruleresult-idp7027552">Information on time-sync.target</a>
  480.                   </td>
  481.                   <td class="result">
  482.                     <strong class="strong">pass</strong>
  483.                   </td>
  484.                 </tr>
  485.                 <tr class="result-pass">
  486.                   <td class="id">
  487.                     <a href="#ruleresult-idp7041168">OpenSSH sshd_config migration content</a>
  488.                   </td>
  489.                   <td class="result">
  490.                     <strong class="strong">pass</strong>
  491.                   </td>
  492.                 </tr>
  493.                 <tr class="result-pass">
  494.                   <td class="id">
  495.                     <a href="#ruleresult-idp7076576">Luks encrypted partition</a>
  496.                   </td>
  497.                   <td class="result">
  498.                     <strong class="strong">pass</strong>
  499.                   </td>
  500.                 </tr>
  501.                 <tr class="result-pass">
  502.                   <td class="id">
  503.                     <a href="#ruleresult-idp7128288">Architecture Support</a>
  504.                   </td>
  505.                   <td class="result">
  506.                     <strong class="strong">pass</strong>
  507.                   </td>
  508.                 </tr>
  509.                 <tr class="result-pass">
  510.                   <td class="id">
  511.                     <a href="#ruleresult-idp7141760">Debuginfo packages</a>
  512.                   </td>
  513.                   <td class="result">
  514.                     <strong class="strong">pass</strong>
  515.                   </td>
  516.                 </tr>
  517.                 <tr class="result-pass">
  518.                   <td class="id">
  519.                     <a href="#ruleresult-idp7156816">Cluster and High Availablility</a>
  520.                   </td>
  521.                   <td class="result">
  522.                     <strong class="strong">pass</strong>
  523.                   </td>
  524.                 </tr>
  525.                 <tr class="result-pass">
  526.                   <td class="id">
  527.                     <a href="#ruleresult-idp7176896">Read Only FHS directories</a>
  528.                   </td>
  529.                   <td class="result">
  530.                     <strong class="strong">pass</strong>
  531.                   </td>
  532.                 </tr>
  533.                 <tr class="result-pass">
  534.                   <td class="id">
  535.                     <a href="#ruleresult-idp7207024">In-place Upgrade Requirements for the /usr/ Directory</a>
  536.                   </td>
  537.                   <td class="result">
  538.                     <strong class="strong">pass</strong>
  539.                   </td>
  540.                 </tr>
  541.                 <tr class="result-pass">
  542.                   <td class="id">
  543.                     <a href="#ruleresult-idp7214480">CA certificate bundles modified</a>
  544.                   </td>
  545.                   <td class="result">
  546.                     <strong class="strong">pass</strong>
  547.                   </td>
  548.                 </tr>
  549.                 <tr class="result-pass">
  550.                   <td class="id">
  551.                     <a href="#ruleresult-idp7220944">Developer Tool Set packages</a>
  552.                   </td>
  553.                   <td class="result">
  554.                     <strong class="strong">pass</strong>
  555.                   </td>
  556.                 </tr>
  557.                 <tr class="result-pass">
  558.                   <td class="id">
  559.                     <a href="#ruleresult-idp7227296">Hyper-V</a>
  560.                   </td>
  561.                   <td class="result">
  562.                     <strong class="strong">pass</strong>
  563.                   </td>
  564.                 </tr>
  565.                 <tr class="result-pass">
  566.                   <td class="id">
  567.                     <a href="#ruleresult-idp7250592">User modification in /etc/rc.local and /etc/rc.d/rc.local</a>
  568.                   </td>
  569.                   <td class="result">
  570.                     <strong class="strong">pass</strong>
  571.                   </td>
  572.                 </tr>
  573.                 <tr class="result-pass">
  574.                   <td class="id">
  575.                     <a href="#ruleresult-idp7257056">cgroups configuration compatibility check</a>
  576.                   </td>
  577.                   <td class="result">
  578.                     <strong class="strong">pass</strong>
  579.                   </td>
  580.                 </tr>
  581.                 <tr class="result-pass">
  582.                   <td class="id">
  583.                     <a href="#ruleresult-idp7263472">Plugable authentication modules (PAM)</a>
  584.                   </td>
  585.                   <td class="result">
  586.                     <strong class="strong">pass</strong>
  587.                   </td>
  588.                 </tr>
  589.                 <tr class="result-pass">
  590.                   <td class="id">
  591.                     <a href="#ruleresult-idp7276208">Python 2.7.5</a>
  592.                   </td>
  593.                   <td class="result">
  594.                     <strong class="strong">pass</strong>
  595.                   </td>
  596.                 </tr>
  597.                 <tr class="result-pass">
  598.                   <td class="id">
  599.                     <a href="#ruleresult-idp7300384">System kickstart</a>
  600.                   </td>
  601.                   <td class="result">
  602.                     <strong class="strong">pass</strong>
  603.                   </td>
  604.                 </tr>
  605.                 <tr class="result-pass">
  606.                   <td class="id">
  607.                     <a href="#ruleresult-idp7319648">Incorrect usage of reserved UID/GIDs</a>
  608.                   </td>
  609.                   <td class="result">
  610.                     <strong class="strong">pass</strong>
  611.                   </td>
  612.                 </tr>
  613.               </tbody>
  614.             </table>
  615.           </div>
  616.         </div>
  617.         <div id="results-details">
  618.           <h2>Results details</h2>
  619.           <div class="result-detail" id="ruleresult-idp6670000">
  620.             <h3>Result for Configuration Files to Review</h3>
  621.             <p class="result-needs_inspection">Result: <strong class="strong">needs_inspection</strong></p>
  622.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_backup_NoverifyConfigs_noverifycfg</strong></p>
  623.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:01" class="date">2014-08-23 14:11</abbr></strong></p>
  624.             <p>
  625.         This module stores some system configuration files that can have been modified by the user when it is not possible to automatically upgrade them.
  626.        
  627.       </p>
  628.             <div class="xccdf-fixtext">
  629.               <h4 class="short">Remediation instructions</h4>
  630.               Some packages do not track the possible performed changes to system configuration files; therefore, it cannot be easily determined if the files have been modified by the user or not. In order to allow for later examination, all configuration files not handled by the migration scripts are stored in the <a href="./dirtyconf/">dirtyconf/</a> directory. The list of the stored files is available in the <a href="././kickstart/noverifycfg">./kickstart/noverifycfg</a> file. The user is advised to verify the functionality of configuration files stored by this tool after a successful upgrade.<br/>
  631. </p>
  632.             </div>
  633.             <pre class="code">
  634.               <code>
  635. INPLACERISK: SLIGHT: We detected some files where modifications are not tracked in the rpms. You may need to check their functionality after successful upgrade.
  636. </code>
  637.             </pre>
  638.             <p class="link">
  639.               <a href="#results-overview">results overview</a>
  640.             </p>
  641.           </div>
  642.           <div class="result-detail" id="ruleresult-idp6677232">
  643.             <h3>Result for File Lists for Manual Migration</h3>
  644.             <p class="result-needs_inspection">Result: <strong class="strong">needs_inspection</strong></p>
  645.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_backup_UntrackedFiles_untracked</strong></p>
  646.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:01" class="date">2014-08-23 14:11</abbr></strong></p>
  647.             <p>
  648.         This module generates lists of files, such as temporary, application, and user data files, which are not automatically migrated.
  649.        
  650.       </p>
  651.             <div class="xccdf-fixtext">
  652.               <h4 class="short">Remediation instructions</h4>
  653.               Some user data, such as user home directories and temporary files, are not tracked by the RPM database. This data will <b>not</b> be automatically migrated. To assist you with migrating the data, this module has generated the following three files.<br/>
  654. <br/>
  655. * The <a href="././kickstart/untrackedsystem">./kickstart/untrackedsystem</a> file lists the regular files on the system that will not be migrated. The list does not contain files mounted over the network, files created by runtime system operations, files in temporary locations, and user files in the /home/ or /root/ directory.<br/>
  656. <br/>
  657. * The <a href="././kickstart/untrackeduser">./kickstart/untrackeduser</a> file lists the regular local files in the /home/ and /root/ directories that will not be migrated. If the /home/ and /root/ directories are on a file system mounted over the network, this file can be empty.<br/>
  658. <br/>
  659. * The <a href="././kickstart/untrackedexpected">./kickstart/untrackedexpected</a> file lists the regular files and symlinks created by runtime system operations (for example handling runlevels, alternatives and active SELinux modules). Most likely you don&apos;t need to care about them, list is available just for completeness.<br/>
  660. <br/>
  661. * The <a href="././kickstart/untrackedtemporary">./kickstart/untrackedtemporary</a> file lists all temporary local files on the system that will not be migrated. This is essentially everything in the /cgroup/, /tmp/, and /var/ directories. Most likely you don&apos;t need to care about them, list is available just for completeness.<br/>
  662. <br/>
  663. It is recommended that you backup all data before proceeding with the upgrade to CentOS 7. This data can be quite large.<br/>
  664. <br/>
  665. If you are performing an in-place upgrade, this data should remain in its current location after the upgrade. Configuration files and other data should be reviewed to determine if any modifications are needed for use with CentOS 7. You should verify that all data was successfully maintained.<br/>
  666. <br/>
  667. If you are performing a migration upgrade, this data <b>must</b> be backed up to another storage medium. You will need to copy the data you wish to have on the new installation back into place after the upgrade is complete. Configuration files and other data should be reviewed to determine if any modifications are needed for use with CentOS 7.<br/>
  668. </p>
  669.             </div>
  670.             <pre class="code">
  671.               <code>
  672. INPLACERISK: SLIGHT: We detected some files untracked by rpms. Some of these may need manual check/migration after redhat-upgrade-tool and/or can cause conflicts or troubles during the installation. Try to reduce unnecessary untracked files before running redhat-upgrade-tool.
  673. </code>
  674.             </pre>
  675.             <p class="link">
  676.               <a href="#results-overview">results overview</a>
  677.             </p>
  678.           </div>
  679.           <div class="result-detail" id="ruleresult-idp6749712">
  680.             <h3>Result for several kernel networking drivers not available in CentOS 7</h3>
  681.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  682.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_drivers_ObsoletedNetworkDrivers_obsoletedNetworkDrivers</strong></p>
  683.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:02" class="date">2014-08-23 14:11</abbr></strong></p>
  684.             <p>
  685.         Several kernel networking drivers were removed from CentOS 7.
  686.        
  687.       </p>
  688.             <p class="link">
  689.               <a href="#results-overview">results overview</a>
  690.             </p>
  691.           </div>
  692.           <div class="result-detail" id="ruleresult-idp6756368">
  693.             <h3>Result for several kernel storage drivers not available in CentOS 7</h3>
  694.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  695.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_drivers_ObsoletedStorageDrivers_obsoletedStorageDrivers</strong></p>
  696.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:03" class="date">2014-08-23 14:11</abbr></strong></p>
  697.             <p>
  698.         Several kernel storage drivers were deprecated or removed in CentOS 7.
  699.        
  700.       </p>
  701.             <p class="link">
  702.               <a href="#results-overview">results overview</a>
  703.             </p>
  704.           </div>
  705.           <div class="result-detail" id="ruleresult-idp6806224">
  706.             <h3>Result for Compatibility Between iptables and ip6tables</h3>
  707.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  708.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_networking_iptables_check_script</strong></p>
  709.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:03" class="date">2014-08-23 14:11</abbr></strong></p>
  710.             <p>
  711.         The firewalld service is now the default firewall service.
  712.        
  713.         </p>
  714.             <p>
  715.             File(s) affected:
  716.             <ul class="itemizedlist"><li><p>/etc/sysconfig/iptables</p></li><li><p>/etc/sysconfig/ip6tables</p></li></ul></p>
  717.             <p class="link">
  718.               <a href="#results-overview">results overview</a>
  719.             </p>
  720.           </div>
  721.           <div class="result-detail" id="ruleresult-idp6812672">
  722.             <h3>Result for Net-SNMP check</h3>
  723.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  724.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_networking_net-snmp_check_script</strong></p>
  725.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:03" class="date">2014-08-23 14:11</abbr></strong></p>
  726.             <p>
  727.         Check if Net-SNMP daemon (snmpd) is enabled.
  728.        
  729.       </p>
  730.             <p class="link">
  731.               <a href="#results-overview">results overview</a>
  732.             </p>
  733.           </div>
  734.           <div class="result-detail" id="ruleresult-idp6826304">
  735.             <h3>Result for Reusable Configuration Files</h3>
  736.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  737.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_others_NoVersionChangeEtc_nochange</strong></p>
  738.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:03" class="date">2014-08-23 14:11</abbr></strong></p>
  739.             <p>
  740.         The module provides a list of the configuration files that can be reused in CentOS 7.
  741.        
  742.       </p>
  743.             <p class="link">
  744.               <a href="#results-overview">results overview</a>
  745.             </p>
  746.           </div>
  747.           <div class="result-detail" id="ruleresult-idp6832656">
  748.             <h3>Result for VCS repositories</h3>
  749.             <p class="result-informational">Result: <strong class="strong">informational</strong></p>
  750.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_others_vcsrepos_check_script</strong></p>
  751.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:03" class="date">2014-08-23 14:11</abbr></strong></p>
  752.             <p>
  753.         Find Versin Control System repositories in /home and /root - git, svn, cvs, bzr.
  754.        
  755.       </p>
  756.             <div class="xccdf-fixtext">
  757.               <h4 class="short">Remediation instructions</h4>
  758.               VCS repositories not found.<br/>
  759. </p>
  760.             </div>
  761.             <p class="link">
  762.               <a href="#results-overview">results overview</a>
  763.             </p>
  764.           </div>
  765.           <div class="result-detail" id="ruleresult-idp6853696">
  766.             <h3>Result for Packages not signed by CentOS</h3>
  767.             <p class="result-needs_action">Result: <strong class="strong">needs_action</strong></p>
  768.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_NonCentOSSignedPkg_noncentospkg</strong></p>
  769.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:03" class="date">2014-08-23 14:11</abbr></strong></p>
  770.             <p>
  771.         Packages not signed by CentOS will not be upgraded
  772.        
  773.       </p>
  774.             <div class="xccdf-fixtext">
  775.               <h4 class="short">Remediation instructions</h4>
  776.               Packages which are not signed with the official CentOS keys will not be upgraded. These packages are typically provided by third parties or have been modified in some way. There is a high risk of incompatibility with these packages as they have not been verified by CentOS. For upgrade assistance, contact the vendors of these packages.<br/>
  777. <br/>
  778. You can find a list of all unsigned packages including the vendor names in the <a href="./kickstart/noncentospkgs">kickstart/noncentospkgs</a> file.<br/>
  779. <br/>
  780. <br/>
  781. </p>
  782.             </div>
  783.             <pre class="code">
  784.               <code>
  785. INPLACERISK: HIGH: We detected some non-CentOS signed packages, you can find the list in /root/preupgrade/./kickstart/noncentospkgs. You need to handle them yourself!
  786. </code>
  787.             </pre>
  788.             <p class="link">
  789.               <a href="#results-overview">results overview</a>
  790.             </p>
  791.           </div>
  792.           <div class="result-detail" id="ruleresult-idp6861104">
  793.             <h3>Result for Obsoleted rpms</h3>
  794.             <p class="result-needs_inspection">Result: <strong class="strong">needs_inspection</strong></p>
  795.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_ObsoletedPackages_ObsoletedPkg</strong></p>
  796.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:04" class="date">2014-08-23 14:11</abbr></strong></p>
  797.             <p>
  798.         Some rpms were obsoleted from the set of the packages between CentOS 6 and CentOS 7. This content checks for the package obsoletes from your set of CentOS packages.
  799.        
  800.       </p>
  801.             <div class="xccdf-fixtext">
  802.               <h4 class="short">Remediation instructions</h4>
  803.               Some of the packages were obsoleted between CentOS 6 and CentOS 7. This means<br/>
  804. CentOS provides some alternative for them, but these alternatives may be<br/>
  805. not 100% compatible - thus we don&apos;t replace them automatically. For some of<br/>
  806. the obsoletes you will get the incompatibilities from separate preupgrade<br/>
  807. contents and you can adjust your workflow according to the changes. Sometimes,<br/>
  808. package might be replaced by several others.<br/>
  809. <br/>
  810. Following packages were obsoleted by different ones:<br/>
  811. ConsoleKit was obsoleted by systemd<br/>
  812. eggdbus was obsoleted by glib2<br/>
  813. grub was obsoleted by grub2<br/>
  814. mingetty was obsoleted by util-linux<br/>
  815. mysql-libs was obsoleted by mariadb-libs<br/>
  816. udev was obsoleted by systemd<br/>
  817. upstart was obsoleted by systemd<br/>
  818. <br/>
  819. If some NonCentOS signed package requires these packages, you may need to check if the<br/>
  820. alternative solution provided by CentOS does work for you or get the missing package<br/>
  821. from different sources than CentOS. You need to install these new packages yourself<br/>
  822. after the assessment, as CentOS can&apos;t assess the compatibility for you.<br/>
  823. </p>
  824.             </div>
  825.             <pre class="code">
  826.               <code>
  827. INPLACERISK: MEDIUM: We detected some packages installed on the system were removed (obsoleted) between CentOS 6 and CentOS 7. This may break the functionality of the packages depending on them.
  828. </code>
  829.             </pre>
  830.             <p class="link">
  831.               <a href="#results-overview">results overview</a>
  832.             </p>
  833.           </div>
  834.           <div class="result-detail" id="ruleresult-idp6882864">
  835.             <h3>Result for Removed options in coreutils binaries</h3>
  836.             <p class="result-informational">Result: <strong class="strong">informational</strong></p>
  837.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_RemovedOptions_coreutils_removedoptions</strong></p>
  838.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:04" class="date">2014-08-23 14:11</abbr></strong></p>
  839.             <p>
  840.         Some options and binaries were removed from coreutils package between CentOS 6 and CentOS 7. This informative content lists the incompatibilities.
  841.        
  842.       </p>
  843.             <div class="xccdf-fixtext">
  844.               <h4 class="short">Remediation instructions</h4>
  845.               Some options and binaries were removed from coreutils package between<br/>
  846. CentOS 6 and CentOS 7. This may break functionality of some of your scripts.<br/>
  847. All option/binaries removals with solutions are listed bellow.<br/>
  848. <br/>
  849. factor : --verbose renamed to --debug<br/>
  850. install : --preserve_context is removed, --preserve-context can be used<br/>
  851. instead<br/>
  852. nl : CentOS 6 deprecated option --page-increment removed, --line-increment<br/>
  853. can be used instead<br/>
  854. runuser and su binaries moved to util-linux rpm<br/>
  855. stat: -Z / --context option support was removed, SELinux context is now<br/>
  856. part of the default format. Formatting changed, though.<br/>
  857. touch: undocumented and deprecated --file option support removed,<br/>
  858. --reference should be used instead.<br/>
  859. mkdir,mknod,mkfifo,cp,install: short -Z option no longer accepts the argument<br/>
  860. and sets default SELinux context, --context=CTX long option has to be used<br/>
  861. for setting context to CTX<br/>
  862. <br/>
  863. Please check that your scripts are aware of these changes.<br/>
  864. </p>
  865.             </div>
  866.             <p class="link">
  867.               <a href="#results-overview">results overview</a>
  868.             </p>
  869.           </div>
  870.           <div class="result-detail" id="ruleresult-idp6889472">
  871.             <h3>Result for Removed options in gawk binaries</h3>
  872.             <p class="result-informational">Result: <strong class="strong">informational</strong></p>
  873.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_RemovedOptions_gawk_removedoptions</strong></p>
  874.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:04" class="date">2014-08-23 14:11</abbr></strong></p>
  875.             <p>
  876.         Some options and binaries were removed from gawk package between CentOS 6 and CentOS 7. This informative content lists the incompatibilities.
  877.        
  878.       </p>
  879.             <div class="xccdf-fixtext">
  880.               <h4 class="short">Remediation instructions</h4>
  881.               Some options were removed from gawk package binaries between CentOS 6<br/>
  882. and CentOS 7. This may break functionality of some of your scripts.<br/>
  883. All option removals with solutions are listed bellow.<br/>
  884. <br/>
  885. awk/gawk/pgawk: --compat - option was removed, alternative is<br/>
  886. --traditional<br/>
  887. --copyleft - option was removed, alternative is<br/>
  888. --copyright/-C<br/>
  889. --gen-po - option was replaced by --gen-pot option<br/>
  890. --usage<br/>
  891. -D - short form of --parsedebug was changed to -Y<br/>
  892. <br/>
  893. Please check that your scripts are aware of these changes.<br/>
  894. </p>
  895.             </div>
  896.             <p class="link">
  897.               <a href="#results-overview">results overview</a>
  898.             </p>
  899.           </div>
  900.           <div class="result-detail" id="ruleresult-idp6895968">
  901.             <h3>Result for Removed options in netstat binary</h3>
  902.             <p class="result-informational">Result: <strong class="strong">informational</strong></p>
  903.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_RemovedOptions_nettools_removedoptions</strong></p>
  904.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:04" class="date">2014-08-23 14:11</abbr></strong></p>
  905.             <p>
  906.         Some options were removed from netstat binary between CentOS 6 and CentOS 7. This informative content lists the incompatibilities.
  907.        
  908.       </p>
  909.             <div class="xccdf-fixtext">
  910.               <h4 class="short">Remediation instructions</h4>
  911.               Some options were removed from netstat binary of net-tools package between<br/>
  912. CentOS 6 and CentOS 7. This may break functionality of some of your scripts.<br/>
  913. All option removals with solutions are listed bellow.<br/>
  914. <br/>
  915. netstat : -T/--notrim renamed to -W/--wide<br/>
  916. <br/>
  917. Please check that your scripts are aware of these changes.<br/>
  918. </p>
  919.             </div>
  920.             <p class="link">
  921.               <a href="#results-overview">results overview</a>
  922.             </p>
  923.           </div>
  924.           <div class="result-detail" id="ruleresult-idp6909728">
  925.             <h3>Result for Removed rpms</h3>
  926.             <p class="result-needs_action">Result: <strong class="strong">needs_action</strong></p>
  927.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_RemovedPackages_RemovedPkg</strong></p>
  928.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:05" class="date">2014-08-23 14:11</abbr></strong></p>
  929.             <p>
  930.         Some rpms were removed from the set of the packages between CentOS 6 and CentOS 7. This content checks for the package removals from your set of CentOS packages.
  931.        
  932.       </p>
  933.             <div class="xccdf-fixtext">
  934.               <h4 class="short">Remediation instructions</h4>
  935.               Some of the packages were removed between CentOS 6 and CentOS 7. This may break<br/>
  936. the upgrade for some of your packages. We are not aware of any compatible<br/>
  937. replacement for these packages.<br/>
  938. <br/>
  939. Following packages are no longer available:<br/>
  940. ConsoleKit-libs<br/>
  941. ConsoleKit-x11<br/>
  942. MAKEDEV<br/>
  943. cloog-ppl<br/>
  944. dash<br/>
  945. libc-client<br/>
  946. libgssglue<br/>
  947. libmcpp<br/>
  948. libnih<br/>
  949. libtidy<br/>
  950. mcpp<br/>
  951. mesa-dri1-drivers<br/>
  952. php-imap<br/>
  953. php-pecl-apc<br/>
  954. php-tidy<br/>
  955. ppl<br/>
  956. <br/>
  957. If some NonCentOS signed package requires these packages, you may need to ask your<br/>
  958. vendor to provide alternative solution or get the missing package from<br/>
  959. different sources than CentOS.<br/>
  960. <br/>
  961. </p>
  962.             </div>
  963.             <pre class="code">
  964.               <code>
  965. INFO distribution: Directory /root/preupgrade/postupgrade.d/clean_centos6_pkgs does not exists
  966. INPLACERISK: HIGH: After upgrading to CentOS 7 there are still some el6 packages left. Add --cleanup-post option to redhat-upgrade-tool if you want to remove them automatically.
  967. INPLACERISK: MEDIUM: We detected some packages installed on the system were removed between CentOS 6 and CentOS 7. This may break the functionality of the packages depending on them.
  968. </code>
  969.             </pre>
  970.             <p class="link">
  971.               <a href="#results-overview">results overview</a>
  972.             </p>
  973.           </div>
  974.           <div class="result-detail" id="ruleresult-idp6917376">
  975.             <h3>Result for Replaced rpms</h3>
  976.             <p class="result-fixed">Result: <strong class="strong">fixed</strong></p>
  977.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_ReplacedPackages_ReplacedPkg</strong></p>
  978.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:11" class="date">2014-08-23 14:11</abbr></strong></p>
  979.             <p>
  980.         Some rpms were replaced between CentOS 6 and CentOS 7. This content checks for the package replacements from your set of CentOS packages and generates the list of CentOS packages/yum groups for CentOS 7 kickstart.
  981.        
  982.       </p>
  983.             <div class="xccdf-fixtext">
  984.               <h4 class="short">Remediation instructions</h4>
  985.               Some of the packages were replaced between CentOS 6 and CentOS 7. This means<br/>
  986. package with different name provides 100% compatible functionality, so we<br/>
  987. can replace them automatically in the package set.<br/>
  988. For some of the replacements provides were not handled by the packages,<br/>
  989. therefore preupgrade asistant migrates them after the upgrade if necessary.<br/>
  990. <br/>
  991. Following packages were replaced:<br/>
  992. bfa-firmware was replaced by linux-firmware<br/>
  993. coreutils-libs was replaced by coreutils<br/>
  994. cryptsetup-luks-libs was replaced by cryptsetup-libs<br/>
  995. cryptsetup-luks was replaced by cryptsetup<br/>
  996. db4-devel was replaced by libdb-devel<br/>
  997. db4-utils was replaced by libdb-utils<br/>
  998. db4 was replaced by libdb<br/>
  999. dracut-kernel was replaced by dracut<br/>
  1000. iptables-ipv6 was replaced by iptables-services<br/>
  1001. kernel-firmware was replaced by linux-firmware<br/>
  1002. libudev was replaced by systemd-libs<br/>
  1003. lldpad-libs was replaced by lldpad<br/>
  1004. man was replaced by man-db<br/>
  1005. mesa-dri-filesystem was replaced by mesa-filesystem<br/>
  1006. module-init-tools was replaced by kmod<br/>
  1007. nfs-utils-lib was replaced by libnfsidmap<br/>
  1008. procps was replaced by procps-ng<br/>
  1009. ql2100-firmware was replaced by linux-firmware<br/>
  1010. ql2200-firmware was replaced by linux-firmware<br/>
  1011. ql23xx-firmware was replaced by linux-firmware<br/>
  1012. ql2400-firmware was replaced by linux-firmware<br/>
  1013. ql2500-firmware was replaced by linux-firmware<br/>
  1014. util-linux-ng was replaced by util-linux<br/>
  1015. yum-presto was replaced by yum<br/>
  1016. <br/>
  1017. If some NonCentOS signed package requires these packages, you still may want<br/>
  1018. to monitor them closely. Although the replacement should be compatible,<br/>
  1019. it can have some minor differences expectable even in the case of common<br/>
  1020. application lifecycle.<br/>
  1021. </p>
  1022.             </div>
  1023.             <p class="link">
  1024.               <a href="#results-overview">results overview</a>
  1025.             </p>
  1026.           </div>
  1027.           <div class="result-detail" id="ruleresult-idp6928176">
  1028.             <h3>Result for GMP library incompatibilities</h3>
  1029.             <p class="result-informational">Result: <strong class="strong">informational</strong></p>
  1030.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_gmp_check_script</strong></p>
  1031.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:11" class="date">2014-08-23 14:11</abbr></strong></p>
  1032.             <p>
  1033.         Incompatibilities between GMP 4 and GMP 5.1 libraries.
  1034.        
  1035.       </p>
  1036.             <div class="xccdf-fixtext">
  1037.               <h4 class="short">Remediation instructions</h4>
  1038.               GMP 5.1 is compatible with GMP 4 in major features. Incompatible changes affect only functions, which should not be used by user applications at all:<br/>
  1039. - mpn_bdivmod function<br/>
  1040. - BSDMP-like interface libmp.so<br/>
  1041. </p>
  1042.             </div>
  1043.             <p class="link">
  1044.               <a href="#results-overview">results overview</a>
  1045.             </p>
  1046.           </div>
  1047.           <div class="result-detail" id="ruleresult-idp6936432">
  1048.             <h3>Result for package downgrades</h3>
  1049.             <p class="result-fixed">Result: <strong class="strong">fixed</strong></p>
  1050.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_packages_pkgdowngrades_pkgdowngrades</strong></p>
  1051.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:11" class="date">2014-08-23 14:11</abbr></strong></p>
  1052.             <p>
  1053.         detects package downgrades from CentOS6 to CentOS7
  1054.        
  1055.       </p>
  1056.             <div class="xccdf-fixtext">
  1057.               <h4 class="short">Remediation instructions</h4>
  1058.               Some packages installed on your system have broken upgrade path from<br/>
  1059. CentOS version 6 to version 7 (the version of package is lower in<br/>
  1060. newer CentOS).<br/>
  1061. <br/>
  1062. This does not cause fail of redhat-upgrade-tool run. Packages with broken<br/>
  1063. upgrade path are fixed by postupgrade script.<br/>
  1064. <br/>
  1065. ~&gt; Optionally, if possible, you may remove packages in question from CentOS 6<br/>
  1066. system.<br/>
  1067. </p>
  1068.             </div>
  1069.             <p class="link">
  1070.               <a href="#results-overview">results overview</a>
  1071.             </p>
  1072.           </div>
  1073.           <div class="result-detail" id="ruleresult-idp6951024">
  1074.             <h3>Result for General</h3>
  1075.             <p class="result-needs_action">Result: <strong class="strong">needs_action</strong></p>
  1076.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_selinux_general_check</strong></p>
  1077.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:11" class="date">2014-08-23 14:11</abbr></strong></p>
  1078.             <p>
  1079.         There has to be some steps performed in order to have working SELinux on CentOS 7.
  1080.        
  1081.       </p>
  1082.             <div class="xccdf-fixtext">
  1083.               <h4 class="short">Remediation instructions</h4>
  1084.               We have detected that you are using SELinux. There were changes in policies which require to apply custom command before upgrade process. In order to have working SELinux on CentOS 7, you <b>HAVE TO</b> run command prior to running redhat-upgrade-tool:<br/>
  1085. semodule -r sandbox<br/>
  1086. </p>
  1087.             </div>
  1088.             <pre class="code">
  1089.               <code>
  1090. INPLACERISK: HIGH: There were changes in SELinux policies between CentOS 6 and CentOS 7. Please, check solution in order to resolve this issue.
  1091. </code>
  1092.             </pre>
  1093.             <p class="link">
  1094.               <a href="#results-overview">results overview</a>
  1095.             </p>
  1096.           </div>
  1097.           <div class="result-detail" id="ruleresult-idp6972672">
  1098.             <h3>Result for CVS Package Split</h3>
  1099.             <p class="result-informational">Result: <strong class="strong">informational</strong></p>
  1100.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_services_cvs_checkscript</strong></p>
  1101.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:11" class="date">2014-08-23 14:11</abbr></strong></p>
  1102.             <p>
  1103.         Some Concurrent Versions System (CVS) tools and documentation have been moved into separate packages and are no longer provided by the cvs packages.
  1104.        
  1105.       </p>
  1106.             <div class="xccdf-fixtext">
  1107.               <h4 class="short">Remediation instructions</h4>
  1108.               The Concurrent Versions System (CVS) server and client have not been changed significantly and should be fully compatible. However, some tools and documentation have been moved to other packages which could concern some users.<br/>
  1109. <br/>
  1110. The rcs2log and contrib utilities have been moved into the new cvs-contrib packages in order to remove the cvs packages dependency on perl and reduce the size of the cvs packages. If you require the rcs2log and contrib tools, you can install the packages manually by running the &quot;yum install cvs-contrib&quot; command as root.<br/>
  1111. <br/>
  1112. Additional documentation, such as books concerning CVS tools in the PDF format and revision control system (RCS) specification files, has been moved into the new cvs-doc package to reduce the size of the cvs packages. If you want to access this additional documentation, install the package manually by running the &quot;yum install cvs-doc&quot; command as root. The manual and Texinfo pages are still included in the cvs packages.<br/>
  1113. <br/>
  1114. These utilities and the supplemental documentation are not used by the CVS client or server. Their absence does not pose a risk when upgrading the cvs packages.<br/>
  1115. </p>
  1116.             </div>
  1117.             <p class="link">
  1118.               <a href="#results-overview">results overview</a>
  1119.             </p>
  1120.           </div>
  1121.           <div class="result-detail" id="ruleresult-idp6986368">
  1122.             <h3>Result for httpd configuration compatibility check</h3>
  1123.             <p class="result-informational">Result: <strong class="strong">informational</strong></p>
  1124.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_services_httpd_check_script</strong></p>
  1125.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:11" class="date">2014-08-23 14:11</abbr></strong></p>
  1126.             <p>
  1127.         Checks httpd configuration compatibility
  1128.        
  1129.         </p>
  1130.             <p>
  1131.             File(s) affected:
  1132.             <ul class="itemizedlist"><li><p>/etc/httpd/conf/httpd.conf</p></li></ul></p>
  1133.             <div class="xccdf-fixtext">
  1134.               <h4 class="short">Remediation instructions</h4>
  1135.               * httpd.conf does not include conf.modules.d/*.conf. This directory will be<br/>
  1136. included automatically.<br/>
  1137. <br/>
  1138. * httpd.conf loads modules which are loaded in conf.modules.d/*conf<br/>
  1139. in new httpd version. Following modules will be therefore removed from<br/>
  1140. httpd.conf:<br/>
  1141. <br/>
  1142. modules\/mod_actions.so<br/>
  1143. modules\/mod_alias.so<br/>
  1144. modules\/mod_auth_basic.so<br/>
  1145. modules\/mod_auth_digest.so<br/>
  1146. modules\/mod_authn_anon.so<br/>
  1147. modules\/mod_authn_dbm.so<br/>
  1148. modules\/mod_authn_file.so<br/>
  1149. modules\/mod_authz_dbm.so<br/>
  1150. modules\/mod_authz_groupfile.so<br/>
  1151. modules\/mod_authz_host.so<br/>
  1152. modules\/mod_authz_owner.so<br/>
  1153. modules\/mod_authz_user.so<br/>
  1154. modules\/mod_autoindex.so<br/>
  1155. modules\/mod_cache.so<br/>
  1156. modules\/mod_deflate.so<br/>
  1157. modules\/mod_dir.so<br/>
  1158. modules\/mod_env.so<br/>
  1159. modules\/mod_expires.so<br/>
  1160. modules\/mod_ext_filter.so<br/>
  1161. modules\/mod_headers.so<br/>
  1162. modules\/mod_include.so<br/>
  1163. modules\/mod_info.so<br/>
  1164. modules\/mod_log_config.so<br/>
  1165. modules\/mod_logio.so<br/>
  1166. modules\/mod_mime_magic.so<br/>
  1167. modules\/mod_mime.so<br/>
  1168. modules\/mod_negotiation.so<br/>
  1169. modules\/mod_rewrite.so<br/>
  1170. modules\/mod_setenvif.so<br/>
  1171. modules\/mod_status.so<br/>
  1172. modules\/mod_substitute.so<br/>
  1173. modules\/mod_suexec.so<br/>
  1174. modules\/mod_userdir.so<br/>
  1175. modules\/mod_version.so<br/>
  1176. modules\/mod_vhost_alias.so<br/>
  1177. modules\/mod_dav.so<br/>
  1178. modules\/mod_dav_fs.so<br/>
  1179. modules\/mod_proxy.so<br/>
  1180. modules\/mod_proxy_ajp.so<br/>
  1181. modules\/mod_proxy_balancer.so<br/>
  1182. modules\/mod_proxy_connect.so<br/>
  1183. modules\/mod_proxy_ftp.so<br/>
  1184. modules\/mod_proxy_http.so<br/>
  1185. modules\/mod_disk_cache.so<br/>
  1186. modules\/mod_cgi.so<br/>
  1187. modules\/mod_ldap.so<br/>
  1188. modules\/mod_authnz_ldap.so<br/>
  1189. modules\/mod_speling.so<br/>
  1190. modules\/mod_usertrack.so<br/>
  1191. <br/>
  1192. * httpd.conf loads default modules which have been removed in new version<br/>
  1193. of httpd. Following modules will be therefore removed from httpd.conf:<br/>
  1194. <br/>
  1195. modules\/mod_authn_alias.so<br/>
  1196. modules\/mod_authn_default.so<br/>
  1197. modules\/mod_authz_default.so<br/>
  1198. <br/>
  1199. * httpd config files contain deprecated Access control directives Order, Allow,<br/>
  1200. Deny, and Satisfy. The old access control idioms should be replaced<br/>
  1201. by the new authentication mechanisms, although for compatibility with old<br/>
  1202. configurations, the new module mod_access_compat is provided and loaded by<br/>
  1203. default.<br/>
  1204. <br/>
  1205. Read more on <a href="http://httpd.apache.org/docs/2.4/upgrading.html">http://httpd.apache.org/docs/2.4/upgrading.html</a> to find out solutions for these problems.<br/>
  1206. <br/>
  1207. This section of solution text shows the difference between this system<br/>
  1208. configuration of httpd and the default httpd 2.2 configuration:<br/>
  1209. <br/>
  1210. </p>
  1211.             </div>
  1212.             <pre class="code">
  1213.               <code>
  1214. LoadModule auth_basic_module modules/mod_auth_basic.so
  1215. LoadModule auth_digest_module modules/mod_auth_digest.so
  1216. LoadModule authn_file_module modules/mod_authn_file.so
  1217. LoadModule authn_alias_module modules/mod_authn_alias.so
  1218. LoadModule authn_anon_module modules/mod_authn_anon.so
  1219. LoadModule authn_dbm_module modules/mod_authn_dbm.so
  1220. LoadModule authn_default_module modules/mod_authn_default.so
  1221. LoadModule authz_host_module modules/mod_authz_host.so
  1222. LoadModule authz_user_module modules/mod_authz_user.so
  1223. LoadModule authz_owner_module modules/mod_authz_owner.so
  1224. LoadModule authz_groupfile_module modules/mod_authz_groupfile.so
  1225. LoadModule authz_dbm_module modules/mod_authz_dbm.so
  1226. LoadModule authz_default_module modules/mod_authz_default.so
  1227. LoadModule ldap_module modules/mod_ldap.so
  1228. LoadModule authnz_ldap_module modules/mod_authnz_ldap.so
  1229. LoadModule include_module modules/mod_include.so
  1230. LoadModule log_config_module modules/mod_log_config.so
  1231. LoadModule logio_module modules/mod_logio.so
  1232. LoadModule env_module modules/mod_env.so
  1233. LoadModule ext_filter_module modules/mod_ext_filter.so
  1234. LoadModule mime_magic_module modules/mod_mime_magic.so
  1235. LoadModule expires_module modules/mod_expires.so
  1236. LoadModule deflate_module modules/mod_deflate.so
  1237. LoadModule headers_module modules/mod_headers.so
  1238. LoadModule usertrack_module modules/mod_usertrack.so
  1239. LoadModule setenvif_module modules/mod_setenvif.so
  1240. LoadModule mime_module modules/mod_mime.so
  1241. LoadModule dav_module modules/mod_dav.so
  1242. LoadModule status_module modules/mod_status.so
  1243. LoadModule autoindex_module modules/mod_autoindex.so
  1244. LoadModule info_module modules/mod_info.so
  1245. LoadModule dav_fs_module modules/mod_dav_fs.so
  1246. LoadModule vhost_alias_module modules/mod_vhost_alias.so
  1247. LoadModule negotiation_module modules/mod_negotiation.so
  1248. LoadModule dir_module modules/mod_dir.so
  1249. LoadModule actions_module modules/mod_actions.so
  1250. LoadModule speling_module modules/mod_speling.so
  1251. LoadModule userdir_module modules/mod_userdir.so
  1252. LoadModule alias_module modules/mod_alias.so
  1253. LoadModule substitute_module modules/mod_substitute.so
  1254. LoadModule rewrite_module modules/mod_rewrite.so
  1255. LoadModule proxy_module modules/mod_proxy.so
  1256. LoadModule proxy_balancer_module modules/mod_proxy_balancer.so
  1257. LoadModule proxy_ftp_module modules/mod_proxy_ftp.so
  1258. LoadModule proxy_http_module modules/mod_proxy_http.so
  1259. LoadModule proxy_ajp_module modules/mod_proxy_ajp.so
  1260. LoadModule proxy_connect_module modules/mod_proxy_connect.so
  1261. LoadModule cache_module modules/mod_cache.so
  1262. LoadModule suexec_module modules/mod_suexec.so
  1263. LoadModule disk_cache_module modules/mod_disk_cache.so
  1264. LoadModule cgi_module modules/mod_cgi.so
  1265. LoadModule version_module modules/mod_version.so
  1266. LoadModule actions_module modules/mod_actions.so
  1267. LoadModule alias_module modules/mod_alias.so
  1268. LoadModule auth_basic_module modules/mod_auth_basic.so
  1269. LoadModule auth_digest_module modules/mod_auth_digest.so
  1270. LoadModule authn_anon_module modules/mod_authn_anon.so
  1271. LoadModule authn_dbm_module modules/mod_authn_dbm.so
  1272. LoadModule authn_file_module modules/mod_authn_file.so
  1273. LoadModule authz_dbm_module modules/mod_authz_dbm.so
  1274. LoadModule authz_groupfile_module modules/mod_authz_groupfile.so
  1275. LoadModule authz_host_module modules/mod_authz_host.so
  1276. LoadModule authz_owner_module modules/mod_authz_owner.so
  1277. LoadModule authz_user_module modules/mod_authz_user.so
  1278. LoadModule autoindex_module modules/mod_autoindex.so
  1279. LoadModule cache_module modules/mod_cache.so
  1280. LoadModule deflate_module modules/mod_deflate.so
  1281. LoadModule dir_module modules/mod_dir.so
  1282. LoadModule env_module modules/mod_env.so
  1283. LoadModule expires_module modules/mod_expires.so
  1284. LoadModule ext_filter_module modules/mod_ext_filter.so
  1285. LoadModule headers_module modules/mod_headers.so
  1286. LoadModule include_module modules/mod_include.so
  1287. LoadModule info_module modules/mod_info.so
  1288. LoadModule log_config_module modules/mod_log_config.so
  1289. LoadModule logio_module modules/mod_logio.so
  1290. LoadModule mime_magic_module modules/mod_mime_magic.so
  1291. LoadModule mime_module modules/mod_mime.so
  1292. LoadModule negotiation_module modules/mod_negotiation.so
  1293. LoadModule rewrite_module modules/mod_rewrite.so
  1294. LoadModule setenvif_module modules/mod_setenvif.so
  1295. LoadModule status_module modules/mod_status.so
  1296. LoadModule substitute_module modules/mod_substitute.so
  1297. LoadModule suexec_module modules/mod_suexec.so
  1298. LoadModule userdir_module modules/mod_userdir.so
  1299. LoadModule version_module modules/mod_version.so
  1300. LoadModule vhost_alias_module modules/mod_vhost_alias.so
  1301. LoadModule dav_module modules/mod_dav.so
  1302. LoadModule dav_fs_module modules/mod_dav_fs.so
  1303. LoadModule proxy_module modules/mod_proxy.so
  1304. LoadModule proxy_ajp_module modules/mod_proxy_ajp.so
  1305. LoadModule proxy_balancer_module modules/mod_proxy_balancer.so
  1306. LoadModule proxy_connect_module modules/mod_proxy_connect.so
  1307. LoadModule proxy_ftp_module modules/mod_proxy_ftp.so
  1308. LoadModule proxy_http_module modules/mod_proxy_http.so
  1309. LoadModule disk_cache_module modules/mod_disk_cache.so
  1310. LoadModule cgi_module modules/mod_cgi.so
  1311. LoadModule ldap_module modules/mod_ldap.so
  1312. LoadModule authnz_ldap_module modules/mod_authnz_ldap.so
  1313. LoadModule speling_module modules/mod_speling.so
  1314. LoadModule usertrack_module modules/mod_usertrack.so
  1315. LoadModule authn_alias_module modules/mod_authn_alias.so
  1316. LoadModule authn_default_module modules/mod_authn_default.so
  1317. LoadModule authz_default_module modules/mod_authz_default.so
  1318. LoadModule ldap_module modules/mod_ldap.so
  1319. LoadModule speling_module modules/mod_speling.so
  1320. LoadModule usertrack_module modules/mod_usertrack.so
  1321. /etc/httpd//conf/httpd.conf:    Order allow,deny
  1322. /etc/httpd//conf/httpd.conf:#        Order allow,deny
  1323. /etc/httpd//conf/httpd.conf:#        Order deny,allow
  1324. /etc/httpd//conf/httpd.conf:    Order allow,deny
  1325. /etc/httpd//conf/httpd.conf:    Order allow,deny
  1326. /etc/httpd//conf/httpd.conf:    Order allow,deny
  1327. /etc/httpd//conf/httpd.conf:        Order allow,deny
  1328. /etc/httpd//conf/httpd.conf:#    Order deny,allow
  1329. /etc/httpd//conf/httpd.conf:#    Order deny,allow
  1330. /etc/httpd//conf/httpd.conf:#    Order deny,allow
  1331. </code>
  1332.             </pre>
  1333.             <p class="link">
  1334.               <a href="#results-overview">results overview</a>
  1335.             </p>
  1336.           </div>
  1337.           <div class="result-detail" id="ruleresult-idp7021120">
  1338.             <h3>Result for NTP configuration</h3>
  1339.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  1340.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_services_ntp_configuration_ntp</strong></p>
  1341.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:11" class="date">2014-08-23 14:11</abbr></strong></p>
  1342.             <p>
  1343.         Save ntp and ntpdate configuration files which are not tracked by rpm.
  1344.        
  1345.         </p>
  1346.             <p>
  1347.             File(s) affected:
  1348.             <ul class="itemizedlist"><li><p>/etc/ntp.conf</p></li><li><p>/etc/ntp/step-tickers</p></li></ul></p>
  1349.             <p class="link">
  1350.               <a href="#results-overview">results overview</a>
  1351.             </p>
  1352.           </div>
  1353.           <div class="result-detail" id="ruleresult-idp7027552">
  1354.             <h3>Result for Information on time-sync.target</h3>
  1355.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  1356.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_services_ntp_timesync_timesync</strong></p>
  1357.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:11" class="date">2014-08-23 14:11</abbr></strong></p>
  1358.             <p>
  1359.         Check if ntpdate service is enabled and print information on starting services with clock set
  1360.        
  1361.       </p>
  1362.             <p class="link">
  1363.               <a href="#results-overview">results overview</a>
  1364.             </p>
  1365.           </div>
  1366.           <div class="result-detail" id="ruleresult-idp7041168">
  1367.             <h3>Result for OpenSSH sshd_config migration content</h3>
  1368.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  1369.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_services_openssh_sshd_openssh-sshd</strong></p>
  1370.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:11" class="date">2014-08-23 14:11</abbr></strong></p>
  1371.             <p>
  1372.         This content has a aim to convert /etc/ssh/sshd_config file from openssh-server package
  1373.        
  1374.         </p>
  1375.             <p>
  1376.             File(s) affected:
  1377.             <ul class="itemizedlist"><li><p>/etc/ssh/sshd_config</p></li></ul></p>
  1378.             <p class="link">
  1379.               <a href="#results-overview">results overview</a>
  1380.             </p>
  1381.           </div>
  1382.           <div class="result-detail" id="ruleresult-idp7047632">
  1383.             <h3>Result for OpenSSH sysconfig migration content</h3>
  1384.             <p class="result-fixed">Result: <strong class="strong">fixed</strong></p>
  1385.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_services_openssh_sysconfig_openssh-sysconfig</strong></p>
  1386.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:11" class="date">2014-08-23 14:11</abbr></strong></p>
  1387.             <p>
  1388.         This content has a aim to convert /etc/sysconfig/sshd file from openssh-server package
  1389.        
  1390.         </p>
  1391.             <p>
  1392.             File(s) affected:
  1393.             <ul class="itemizedlist"><li><p>/etc/sysconfig/sshd</p></li></ul></p>
  1394.             <div class="xccdf-fixtext">
  1395.               <h4 class="short">Remediation instructions</h4>
  1396.               /etc/sysconfig/sshd will not be a shell script in CentOS 7 anymore so all &apos;export VARIABLE=VALUE&apos; has to be changed to &apos;VARIABLE=VALUE&apos;.<br/>
  1397. <br/>
  1398. # sed -i &apos;s/^export //&apos; /etc/sysconfig/sshd<br/>
  1399. <br/>
  1400. There is the /root/preupgrade/cleanconf//etc/sysconfig/sshd with the fixed configuration.<br/>
  1401. <br/>
  1402. </p>
  1403.             </div>
  1404.             <p class="link">
  1405.               <a href="#results-overview">results overview</a>
  1406.             </p>
  1407.           </div>
  1408.           <div class="result-detail" id="ruleresult-idp7076576">
  1409.             <h3>Result for Luks encrypted partition</h3>
  1410.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  1411.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_storage_luks_check</strong></p>
  1412.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:11" class="date">2014-08-23 14:11</abbr></strong></p>
  1413.             <p>
  1414.         Checks whether partition is crypted by CRYPTO-LUKS.
  1415.        
  1416.       </p>
  1417.             <p class="link">
  1418.               <a href="#results-overview">results overview</a>
  1419.             </p>
  1420.           </div>
  1421.           <div class="result-detail" id="ruleresult-idp7090208">
  1422.             <h3>Result for State of LVM2 services.</h3>
  1423.             <p class="result-fixed">Result: <strong class="strong">fixed</strong></p>
  1424.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_storage_lvm2-services_check_lvm2_services</strong></p>
  1425.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:12" class="date">2014-08-23 14:11</abbr></strong></p>
  1426.             <p>
  1427.         Some services are important for proper LVM functionality. This content checks for current state of existing services and makes sure the state is preserved over upgrade. Also, some systemd units should be enabled by default to allow for service's on-demand activation if needed.
  1428.        
  1429.       </p>
  1430.             <div class="xccdf-fixtext">
  1431.               <h4 class="short">Remediation instructions</h4>
  1432.               CentOS7 uses systemd for service management. When upgrading from CentOS6,<br/>
  1433. we need to be sure that certain services (systemd units) are enabled<br/>
  1434. or prepared for on-demand activation.<br/>
  1435. <br/>
  1436. The LVM2 monitoring service inherits the old state, which means that if<br/>
  1437. the &apos;lvm2-monitor&apos; service was enabled in CentOS6, it will also be enabled<br/>
  1438. in CentOS7 (lvm2-monitor.service) and vice versa.<br/>
  1439. <br/>
  1440. In addition to that these systemd units are enabled to allow for on-demand<br/>
  1441. service activation:<br/>
  1442. dm-event.socket<br/>
  1443. lvm2-lvmetad.socket<br/>
  1444. <br/>
  1445. The dm-event.socket is used for on-demand activation of dm-event.service.<br/>
  1446. This is an essential part of device-mapper monitoring feature (which also<br/>
  1447. covers monitoring of LVM devices).<br/>
  1448. <br/>
  1449. The lvm2-lvmetad.socket is used for on-demand activation of lvm2-lvmetad.service<br/>
  1450. which starts the lvmetad - LVM metadata daemon that is used to cache LVM<br/>
  1451. metadata so LVM commands don&apos;t need to scan devices all the time and they<br/>
  1452. can reuse cached metadata. This functionality is used by default in CentOS7.<br/>
  1453. </p>
  1454.             </div>
  1455.             <p class="link">
  1456.               <a href="#results-overview">results overview</a>
  1457.             </p>
  1458.           </div>
  1459.           <div class="result-detail" id="ruleresult-idp7097392">
  1460.             <h3>Result for device-mapper-multipath configuration compatibility check</h3>
  1461.             <p class="result-fixed">Result: <strong class="strong">fixed</strong></p>
  1462.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_storage_multipath_check</strong></p>
  1463.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:12" class="date">2014-08-23 14:11</abbr></strong></p>
  1464.             <p>
  1465.         Checks multipath configuration compatibility. Also, removes old udev multipath rules.
  1466.        
  1467.         </p>
  1468.             <p>
  1469.             File(s) affected:
  1470.             <ul class="itemizedlist"><li><p>/etc/multipath.conf</p></li></ul></p>
  1471.             <div class="xccdf-fixtext">
  1472.               <h4 class="short">Remediation instructions</h4>
  1473.               In CentOS7, multipath no longer uses the getuid_callout to determine the wwid of<br/>
  1474. a multipath device. Instead is gets the value from the udev environment, using<br/>
  1475. the attribute defined by the uid_attribute configuration parameter.  Multipath<br/>
  1476. will issue warnings if /etc/multipath.conf defines getuid_callout in CentOS7, and<br/>
  1477. will use the built-in value for uid_attribute instead.<br/>
  1478. <br/>
  1479. The way multipath determines if a user defined device configuration should<br/>
  1480. modify a builtin device configuration or create a new device configuration has<br/>
  1481. changed in CentOS7. By default in CentOS6, the user config only modified a builtin<br/>
  1482. one if the vendor, product, and revision strings of the user configuration<br/>
  1483. exactly matched the vendor, product and revision strings in the built-in<br/>
  1484. configuration. However, the vendor, product, and revision strings are<br/>
  1485. interpreted as regular expressions in order to determine which configuration to<br/>
  1486. use with a particular device.  In CentOS7 this same regular expression matching<br/>
  1487. is used to determine whether or not a user defined device config should modify<br/>
  1488. a builtin device config.  If the user config&apos;s vendor, product, and revision<br/>
  1489. strings regex-match a builtin device config&apos;s vendor, product and revision<br/>
  1490. regular expressions, then it modifies the existing config.  This means that in<br/>
  1491. CentOS6, user device configs sometimes needed to user regular expressions as<br/>
  1492. their vendor, product, and revision strings.  In CentOS7, these should be plain<br/>
  1493. strings.  On upgrade, &quot;hw_str_match yes&quot; will be added to the defaults section<br/>
  1494. of /etc/multipath.conf to force multipath to use the CentOS6 behavior, if<br/>
  1495. necessary.<br/>
  1496. <br/>
  1497. The default multipath.conf file used on fresh CentOS7 installs enables<br/>
  1498. find_multipaths by default. This will not be set on upgrades from CentOS6.<br/>
  1499. <br/>
  1500. A number of builtin configuration settings have changed in CentOS7.  These<br/>
  1501. changes were designed to improve performance in the general case.  However,<br/>
  1502. they may not be optimal for every configuration.  Users who were using the<br/>
  1503. builtin configurations for their devices should verify that the new defaults<br/>
  1504. still work well for them.<br/>
  1505. </p>
  1506.             </div>
  1507.             <p class="link">
  1508.               <a href="#results-overview">results overview</a>
  1509.             </p>
  1510.           </div>
  1511.           <div class="result-detail" id="ruleresult-idp7128288">
  1512.             <h3>Result for Architecture Support</h3>
  1513.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  1514.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_Architecture_architecture</strong></p>
  1515.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:11:12" class="date">2014-08-23 14:11</abbr></strong></p>
  1516.             <p>
  1517.         CentOS 7 does not support installations on 32-bit architectures, and performing an in-place upgrade is not possible on 32-bit systems.
  1518.        
  1519.       </p>
  1520.             <p class="link">
  1521.               <a href="#results-overview">results overview</a>
  1522.             </p>
  1523.           </div>
  1524.           <div class="result-detail" id="ruleresult-idp7134784">
  1525.             <h3>Result for Binary rebuilds</h3>
  1526.             <p class="result-needs_inspection">Result: <strong class="strong">needs_inspection</strong></p>
  1527.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_BinariesRebuild_check</strong></p>
  1528.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:14:17" class="date">2014-08-23 14:14</abbr></strong></p>
  1529.             <p>
  1530.         Check all binaries installed on the assessment system which needs to be rebuilded on the target system
  1531.        
  1532.       </p>
  1533.             <div class="xccdf-fixtext">
  1534.               <h4 class="short">Remediation instructions</h4>
  1535.               This content generates the list of binaries which needs to be rebuilt<br/>
  1536. <br/>
  1537. You can find the list at:<br/>
  1538. <a href="./kickstart/binaries">kickstart/binaries</a><br/>
  1539. </p>
  1540.             </div>
  1541.             <pre class="code">
  1542.               <code>
  1543. /home/steam/csgo_ds/bin/crashhandler.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /home/steam/csgo_ds/bin/crashhandler.so)
  1544. /home/steam/csgo_ds/bin/libcef.so: /lib/libc.so.6: version `GLIBC_2.15' not found (required by /home/steam/csgo_ds/bin/libcef.so)
  1545. /home/steam/csgo_ds/bin/libcef.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /home/steam/csgo_ds/bin/libcef.so)
  1546. /home/steam/csgo_ds/bin/libsteam.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /home/steam/csgo_ds/bin/libsteam.so)
  1547. /home/steam/csgo_ds/bin/steamclient.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /home/steam/csgo_ds/bin/steamclient.so)
  1548. /home/steam/csgo_ds/bin/steamclient.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /home/steam/csgo_ds/bin/steamclient.so)
  1549. /home/steam/steamcmd/linux32/crashhandler.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /home/steam/steamcmd/linux32/crashhandler.so)
  1550. /home/steam/steamcmd/linux32/libsteam.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /home/steam/steamcmd/linux32/libsteam.so)
  1551. /home/steam/steamcmd/linux32/steamclient.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /home/steam/steamcmd/linux32/steamclient.so)
  1552. /home/steam/steamcmd/linux32/steamclient.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /home/steam/steamcmd/linux32/steamclient.so)
  1553. /home/steam/steamcmd/linux32/steamconsole.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /home/steam/steamcmd/linux32/steamconsole.so)
  1554. /home/steam/tf2_ds/bin/filesystem_stdio.so: /lib/libm.so.6: version `GLIBC_2.15' not found (required by /home/steam/tf2_ds/bin/filesystem_stdio.so)
  1555. /home/steam/tf2_ds/bin/libprofiler.so.0: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /home/steam/tf2_ds/bin/libprofiler.so.0)
  1556. /home/steam/tf2_ds/bin/libsteam_api.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /home/steam/tf2_ds/bin/libsteam_api.so)
  1557. /home/steam/tf2_ds/bin/libsteam.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /home/steam/tf2_ds/bin/libsteam.so)
  1558. /home/steam/tf2_ds/bin/libtier0.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /home/steam/tf2_ds/bin/libtier0.so)
  1559. /home/steam/tf2_ds/bin/libtier0_srv.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /home/steam/tf2_ds/bin/libtier0_srv.so)
  1560. /home/steam/tf2_ds/bin/libvstdlib.so: /lib/libm.so.6: version `GLIBC_2.15' not found (required by /home/steam/tf2_ds/bin/libvstdlib.so)
  1561. /home/steam/tf2_ds/bin/steamclient.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /home/steam/tf2_ds/bin/steamclient.so)
  1562. /home/steam/tf2_ds/bin/steamclient.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /home/steam/tf2_ds/bin/steamclient.so)
  1563. /home/steam/tf2_ds/bin/vpk_linux32: /lib/libm.so.6: version `GLIBC_2.15' not found (required by /home/steam/tf2_ds/bin/vpk_linux32)
  1564. /opt/hlserver/csgo/bin/crashhandler.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /opt/hlserver/csgo/bin/crashhandler.so)
  1565. /opt/hlserver/csgo/bin/libcef.so: /lib/libc.so.6: version `GLIBC_2.15' not found (required by /opt/hlserver/csgo/bin/libcef.so)
  1566. /opt/hlserver/csgo/bin/libcef.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /opt/hlserver/csgo/bin/libcef.so)
  1567. /opt/hlserver/csgo/bin/libsteam.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /opt/hlserver/csgo/bin/libsteam.so)
  1568. /opt/hlserver/csgo/bin/steamclient.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /opt/hlserver/csgo/bin/steamclient.so)
  1569. /opt/hlserver/csgo/bin/steamclient.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /opt/hlserver/csgo/bin/steamclient.so)
  1570. /opt/hlserver/css/bin/filesystem_stdio.so: /lib/libm.so.6: version `GLIBC_2.15' not found (required by /opt/hlserver/css/bin/filesystem_stdio.so)
  1571. /opt/hlserver/css/bin/libprofiler.so.0: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /opt/hlserver/css/bin/libprofiler.so.0)
  1572. /opt/hlserver/css/bin/libsteam_api.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /opt/hlserver/css/bin/libsteam_api.so)
  1573. /opt/hlserver/css/bin/libsteam.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /opt/hlserver/css/bin/libsteam.so)
  1574. /opt/hlserver/css/bin/libtier0.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /opt/hlserver/css/bin/libtier0.so)
  1575. /opt/hlserver/css/bin/libtier0_srv.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /opt/hlserver/css/bin/libtier0_srv.so)
  1576. /opt/hlserver/css/bin/libvstdlib.so: /lib/libm.so.6: version `GLIBC_2.15' not found (required by /opt/hlserver/css/bin/libvstdlib.so)
  1577. /opt/hlserver/css/bin/steamclient.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /opt/hlserver/css/bin/steamclient.so)
  1578. /opt/hlserver/css/bin/vpk_linux32: /lib/libm.so.6: version `GLIBC_2.15' not found (required by /opt/hlserver/css/bin/vpk_linux32)
  1579. /opt/hlserver/linux32/crashhandler.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /opt/hlserver/linux32/crashhandler.so)
  1580. /opt/hlserver/linux32/libsteam.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /opt/hlserver/linux32/libsteam.so)
  1581. /opt/hlserver/linux32/steamclient.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /opt/hlserver/linux32/steamclient.so)
  1582. /opt/hlserver/linux32/steamclient.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /opt/hlserver/linux32/steamclient.so)
  1583. /opt/hlserver/linux32/steamconsole.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /opt/hlserver/linux32/steamconsole.so)
  1584. /opt/hlserver/tf2/bin/filesystem_stdio.so: /lib/libm.so.6: version `GLIBC_2.15' not found (required by /opt/hlserver/tf2/bin/filesystem_stdio.so)
  1585. /opt/hlserver/tf2/bin/libprofiler.so.0: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /opt/hlserver/tf2/bin/libprofiler.so.0)
  1586. /opt/hlserver/tf2/bin/libsteam_api.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /opt/hlserver/tf2/bin/libsteam_api.so)
  1587. /opt/hlserver/tf2/bin/libsteam.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /opt/hlserver/tf2/bin/libsteam.so)
  1588. /opt/hlserver/tf2/bin/libtier0.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /opt/hlserver/tf2/bin/libtier0.so)
  1589. /opt/hlserver/tf2/bin/libtier0_srv.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /opt/hlserver/tf2/bin/libtier0_srv.so)
  1590. /opt/hlserver/tf2/bin/libvstdlib.so: /lib/libm.so.6: version `GLIBC_2.15' not found (required by /opt/hlserver/tf2/bin/libvstdlib.so)
  1591. /opt/hlserver/tf2/bin/steamclient.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.14' not found (required by /opt/hlserver/tf2/bin/steamclient.so)
  1592. /opt/hlserver/tf2/bin/steamclient.so: /usr/lib/libstdc++.so.6: version `GLIBCXX_3.4.15' not found (required by /opt/hlserver/tf2/bin/steamclient.so)
  1593. /opt/hlserver/tf2/bin/vpk_linux32: /lib/libm.so.6: version `GLIBC_2.15' not found (required by /opt/hlserver/tf2/bin/vpk_linux32)
  1594. INPLACERISK: SLIGHT: Some binaries untracked by RPM were discovered on the system and may need rebuild after upgrade.
  1595. INPLACERISK: SLIGHT: Some scripts untracked by RPM were discovered on the system and may not work properly after upgrade.
  1596. </code>
  1597.             </pre>
  1598.             <p class="link">
  1599.               <a href="#results-overview">results overview</a>
  1600.             </p>
  1601.           </div>
  1602.           <div class="result-detail" id="ruleresult-idp7141760">
  1603.             <h3>Result for Debuginfo packages</h3>
  1604.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  1605.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_Debuginfo_debuginfo</strong></p>
  1606.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:14:17" class="date">2014-08-23 14:14</abbr></strong></p>
  1607.             <p>
  1608.         This content checks for debuginfo packages and inform about potential risks for in-place upgrade.
  1609.        
  1610.       </p>
  1611.             <p class="link">
  1612.               <a href="#results-overview">results overview</a>
  1613.             </p>
  1614.           </div>
  1615.           <div class="result-detail" id="ruleresult-idp7156816">
  1616.             <h3>Result for Cluster and High Availablility</h3>
  1617.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  1618.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_HA-Cluster_hacluster</strong></p>
  1619.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:14:17" class="date">2014-08-23 14:14</abbr></strong></p>
  1620.             <p>
  1621.         Content checks Cluster and High Availability solutions for upgrade.
  1622.        
  1623.       </p>
  1624.             <p class="link">
  1625.               <a href="#results-overview">results overview</a>
  1626.             </p>
  1627.           </div>
  1628.           <div class="result-detail" id="ruleresult-idp7170432">
  1629.             <h3>Result for File Systems, Partitions and Mounts Configuration Review</h3>
  1630.             <p class="result-informational">Result: <strong class="strong">informational</strong></p>
  1631.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_PartitionMounts_partmounts</strong></p>
  1632.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:14:17" class="date">2014-08-23 14:14</abbr></strong></p>
  1633.             <p>
  1634.         This module describes the new default file system and stores the partitions and mounts configuration.
  1635.        
  1636.       </p>
  1637.             <div class="xccdf-fixtext">
  1638.               <h4 class="short">Remediation instructions</h4>
  1639.               CentOS 7 now uses the XFS file system as the default file system instead of the ext4 file system. If you intend to migrate the system to another machine or create a new file system, you can consider using XFS instead of ext4. Users who use a Kickstart installation can consider modifying the Kickstart configuration to use XFS.<br/>
  1640. <br/>
  1641. Additionally, information about the partitions and mounts configuration has been saved in the /root/preupgrade/kickstart/ directory. This information can be useful to users who choose to perform a system migration or convert their file systems to XFS.<br/>
  1642. </p>
  1643.             </div>
  1644.             <p class="link">
  1645.               <a href="#results-overview">results overview</a>
  1646.             </p>
  1647.           </div>
  1648.           <div class="result-detail" id="ruleresult-idp7176896">
  1649.             <h3>Result for Read Only FHS directories</h3>
  1650.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  1651.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_ReadOnlyFHS_check_script</strong></p>
  1652.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:14:17" class="date">2014-08-23 14:14</abbr></strong></p>
  1653.             <p>
  1654.         Check that critical directories of Filesystem Hierarchy Standard are not mounted read-only.
  1655.        
  1656.       </p>
  1657.             <p class="link">
  1658.               <a href="#results-overview">results overview</a>
  1659.             </p>
  1660.           </div>
  1661.           <div class="result-detail" id="ruleresult-idp7185872">
  1662.             <h3>Result for Sonamebumped libs</h3>
  1663.             <p class="result-informational">Result: <strong class="strong">informational</strong></p>
  1664.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_SonameBump_SonameBump</strong></p>
  1665.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:14:19" class="date">2014-08-23 14:14</abbr></strong></p>
  1666.             <p>
  1667.         If the dynamic library breaks the API/ABI compatibility, it is supposed to change its soname. This content checks for the soname bumps between CentOS 6 and CentOS 7 in your CentOS packages.
  1668.        
  1669.       </p>
  1670.             <div class="xccdf-fixtext">
  1671.               <h4 class="short">Remediation instructions</h4>
  1672.               Application developed in C may use dynamic libraries (.so files) to reuse the<br/>
  1673. common functions/symbols in the binary. If the library bumped its soname (<br/>
  1674. changed major version, API/ABI incompatibility), application that depends on<br/>
  1675. it may not run.<br/>
  1676. Some of the libraries changed the soname version between CentOS<br/>
  1677. 6 and CentOS 7.<br/>
  1678. <br/>
  1679. From your CentOS 6 packages, following libraries changed soname:<br/>
  1680. <br/>
  1681. libanonymous.so.2 from cyrus-sasl-lib changed to libanonymous.so.3<br/>
  1682. libconfig++.so.8 from libconfig changed to libconfig++.so.9<br/>
  1683. libconfig.so.8 from libconfig changed to libconfig.so.9<br/>
  1684. libcryptsetup.so.1 from cryptsetup-luks-libs changed to libcryptsetup.so.4<br/>
  1685. libdricore9.2.0-devel.so.1 from mesa-dri-drivers changed to libdricore9.2.2.so.1<br/>
  1686. libdrm_nouveau.so.1 from libdrm changed to libdrm_nouveau.so.2<br/>
  1687. libffi.so.5 from libffi changed to libffi.so.6<br/>
  1688. libgdbm.so.2 from gdbm changed to libgdbm.so.4<br/>
  1689. libgmp.so.3 from gmp changed to libgmp.so.10<br/>
  1690. libgnutls.so.26 from gnutls changed to libgnutls.so.28<br/>
  1691. libgnutlsxx.so.26 from gnutls changed to libgnutlsxx.so.28<br/>
  1692. libkdb5.so.6 from krb5-libs changed to libkdb5.so.7<br/>
  1693. libmpfr.so.1 from mpfr changed to libmpfr.so.4<br/>
  1694. libmysqlclient.so.16 from mysql-libs changed to libmysqlclient.so.18<br/>
  1695. libnetsnmp.so.20 from net-snmp-libs changed to libnetsnmp.so.31<br/>
  1696. libnetsnmpagent.so.20 from net-snmp-libs changed to libnetsnmpagent.so.31<br/>
  1697. libnetsnmphelpers.so.20 from net-snmp-libs changed to libnetsnmphelpers.so.31<br/>
  1698. libnetsnmpmibs.so.20 from net-snmp-libs changed to libnetsnmpmibs.so.31<br/>
  1699. libnetsnmptrapd.so.20 from net-snmp-libs changed to libnetsnmptrapd.so.31<br/>
  1700. libpcre.so.0 from pcre changed to libpcre.so.1<br/>
  1701. librpm.so.1 from rpm-libs changed to librpm.so.3<br/>
  1702. librpmbuild.so.1 from rpm-libs changed to librpmbuild.so.3<br/>
  1703. librpmio.so.1 from rpm-libs changed to librpmio.so.3<br/>
  1704. libsasl2.so.2 from cyrus-sasl-lib changed to libsasl2.so.3<br/>
  1705. libsasldb.so.2 from cyrus-sasl-lib changed to libsasldb.so.3<br/>
  1706. libtasn1.so.3 from libtasn1 changed to libtasn1.so.6<br/>
  1707. libtiff.so.3 from libtiff changed to libtiff.so.5<br/>
  1708. libtiffxx.so.3 from libtiff changed to libtiffxx.so.5<br/>
  1709. libudev.so.0 from libudev changed to libudev.so.1<br/>
  1710. libverto.so.0 from krb5-libs changed to libverto.so.1<br/>
  1711. libxtables.so.4 from iptables changed to libxtables.so.10<br/>
  1712. <br/>
  1713. We checked the requirements in Non-CentOS signed packages, but for the non<br/>
  1714. rpm-packaged binaries, you should check the compatibility list yourself<br/>
  1715. by using e.g. ldd &lt;binary&gt; command.<br/>
  1716. If some of your application uses the library on the list above, you will<br/>
  1717. need to rebuild such package/application against new library.<br/>
  1718. CentOS applications available on the CentOS 7 will handle<br/>
  1719. these bumps automatically by the update/migration to new CentOS<br/>
  1720. as they were already built against these libraries.<br/>
  1721. <br/>
  1722. </p>
  1723.             </div>
  1724.             <pre class="code">
  1725.               <code>
  1726. INPLACERISK: MEDIUM:  We detected some soname bumps in the libraries installed on the system. This may break the functionality of some of your 3rd party applications. They may need rebuild. Please check their requirements.
  1727. </code>
  1728.             </pre>
  1729.             <p class="link">
  1730.               <a href="#results-overview">results overview</a>
  1731.             </p>
  1732.           </div>
  1733.           <div class="result-detail" id="ruleresult-idp7193232">
  1734.             <h3>Result for SonameKept Reusable Dynamic Libraries</h3>
  1735.             <p class="result-informational">Result: <strong class="strong">informational</strong></p>
  1736.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_SonameKept_SonameKept</strong></p>
  1737.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:14:23" class="date">2014-08-23 14:14</abbr></strong></p>
  1738.             <p>
  1739.         This module provides an overview of the dynamic libraries from CentOS 6 that can be reused in CentOS 7, as the dynamic libraries remain compatible with both the application programming interface (API) and the application binary interface (ABI).
  1740.        
  1741.       </p>
  1742.             <div class="xccdf-fixtext">
  1743.               <h4 class="short">Remediation instructions</h4>
  1744.               Applications developed in the C programming language can use dynamic libraries (.so files) to reuse common functions and symbols in the binary. When the library changes its soname in a major version, the binaries normally need to be rebuilt for the new system. Some libraries have not changed their soname between CentOS 6 and CentOS 7 so it could be possible to reuse third party applications which use only these libraries without rebuilding.<br/>
  1745. <br/>
  1746. You can find the list of the unchanged dynamic libraries and their package names in the following file: <a href="././kickstart/NoSonameBumpLibs">./kickstart/NoSonameBumpLibs</a><br/>
  1747. <br/>
  1748. If it is not clear what libraries the third party binary or RPM uses, it is possible to use the ldd utility for the C binary, or run the &quot;rpm -q --whatrequires SONAME&quot; command for the whole RPM package. No problems are expected to occur if there are only .so files listed in the NoSonameBumpLibs file and unversioned shared libraries.<br/>
  1749. </p>
  1750.             </div>
  1751.             <p class="link">
  1752.               <a href="#results-overview">results overview</a>
  1753.             </p>
  1754.           </div>
  1755.           <div class="result-detail" id="ruleresult-idp7199648">
  1756.             <h3>Result for Removed .so libs</h3>
  1757.             <p class="result-informational">Result: <strong class="strong">informational</strong></p>
  1758.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_SonameRemoval_SonameRemoval</strong></p>
  1759.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:14:26" class="date">2014-08-23 14:14</abbr></strong></p>
  1760.             <p>
  1761.         Dynamic libraries are used provides symbols/functions to binaries. Some of the libraries were removed between CentOS 6 and CentOS 7. This content checks for the .so libraries removal between CentOS 6 and CentOS 7 in your CentOS packages.
  1762.        
  1763.       </p>
  1764.             <div class="xccdf-fixtext">
  1765.               <h4 class="short">Remediation instructions</h4>
  1766.               Application developed in C may use dynamic libraries (.so files) to reuse the<br/>
  1767. common functions/symbols in the binary. If the library is missing, application<br/>
  1768. will not run. Some of the libraries were removed between CentOS 6 and CentOS 7.<br/>
  1769. From your CentOS 6 packages, following libraries disappeared:<br/>
  1770. <br/>
  1771. _codecs_iso2022.so from python-libs<br/>
  1772. db2.so.0 from krb5-libs<br/>
  1773. libboundparam.so.2 from unixODBC<br/>
  1774. libc-client.so.2007 from libc-client<br/>
  1775. libck-connector.so.0 from ConsoleKit-libs<br/>
  1776. libcloog.so.0 from cloog-ppl<br/>
  1777. libcupsdriver.so.1 from cups-libs<br/>
  1778. libdrm_nouveau2.so.2 from libdrm<br/>
  1779. libeggdbus-1.so.0 from eggdbus<br/>
  1780. libevent-1.4.so.2 from libevent<br/>
  1781. libevent_core-1.4.so.2 from libevent<br/>
  1782. libevent_extra-1.4.so.2 from libevent<br/>
  1783. libgnutls-extra.so.26 from gnutls<br/>
  1784. libgpgme-pth.so.11 from gpgme<br/>
  1785. libgssglue.so.1 from libgssglue<br/>
  1786. libgtrtst.so.2 from unixODBC<br/>
  1787. libipq.so.0 from iptables<br/>
  1788. libldif-2.4.so.2 from openldap<br/>
  1789. libmcpp.so.0 from libmcpp<br/>
  1790. libmp.so.3 from gmp<br/>
  1791. libmysqlclient_r.so.16 from mysql-libs<br/>
  1792. libnih-dbus.so.1 from libnih<br/>
  1793. libnih.so.1 from libnih<br/>
  1794. libpangox-1.0.so.0 from pango<br/>
  1795. libpolkit-backend-1.so.0 from polkit<br/>
  1796. libppl.so.7 from ppl<br/>
  1797. libppl_c.so.2 from ppl<br/>
  1798. libpython2.6.so.1.0 from python-libs<br/>
  1799. librpcsecgss.so.3 from nfs-utils-lib<br/>
  1800. libsnmp.so.20 from net-snmp-libs<br/>
  1801. libstdc++-libc6.2-2.so.3 from libstdc++<br/>
  1802. libtidy-0.99.so.0 from libtidy<br/>
  1803. libusbpp-0.1.so.4 from libusb<br/>
  1804. libverto-k5ev.so.0 from krb5-libs<br/>
  1805. <br/>
  1806. We checked the requirements in Non-CentOS signed packages, but for the non<br/>
  1807. rpm-packaged binaries, you should check the compatibility list yourself<br/>
  1808. by using e.g. ldd &lt;binary&gt; command.<br/>
  1809. If some of your application uses the library on the list above, you may need<br/>
  1810. to get the .so library from different place or search for an alternative.<br/>
  1811. <br/>
  1812. </p>
  1813.             </div>
  1814.             <pre class="code">
  1815.               <code>
  1816. INPLACERISK: MEDIUM:  We detected some .so libraries installed on the system were removed between CentOS 6 and CentOS 7. This may break the functionality of some of your 3rd party applications.
  1817. </code>
  1818.             </pre>
  1819.             <p class="link">
  1820.               <a href="#results-overview">results overview</a>
  1821.             </p>
  1822.           </div>
  1823.           <div class="result-detail" id="ruleresult-idp7207024">
  1824.             <h3>Result for In-place Upgrade Requirements for the /usr/ Directory</h3>
  1825.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  1826.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_UsrPartition_usr</strong></p>
  1827.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:14:26" class="date">2014-08-23 14:14</abbr></strong></p>
  1828.             <p>
  1829.         This module determines if the /usr/ directory is located on a separate partition.
  1830.        
  1831.       </p>
  1832.             <p class="link">
  1833.               <a href="#results-overview">results overview</a>
  1834.             </p>
  1835.           </div>
  1836.           <div class="result-detail" id="ruleresult-idp7214480">
  1837.             <h3>Result for CA certificate bundles modified</h3>
  1838.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  1839.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_ca-certificates_checkbundles</strong></p>
  1840.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:14:26" class="date">2014-08-23 14:14</abbr></strong></p>
  1841.             <p>
  1842.         Later versions of CentOS include a shared store for certificate authorities. Additional trusted certificate authorities must be placed in the new location rather that modifying the distributed certificate authority bundles. The Preupgrade assistant cannot automatically identify how certificate bundles have been modified on this system.
  1843.        
  1844.       </p>
  1845.             <p class="link">
  1846.               <a href="#results-overview">results overview</a>
  1847.             </p>
  1848.           </div>
  1849.           <div class="result-detail" id="ruleresult-idp7220944">
  1850.             <h3>Result for Developer Tool Set packages</h3>
  1851.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  1852.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_dts_dts</strong></p>
  1853.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:14:26" class="date">2014-08-23 14:14</abbr></strong></p>
  1854.             <p>
  1855.         Content checks whether Red Hat Developer Tool Set packages are installed.
  1856.        
  1857.       </p>
  1858.             <p class="link">
  1859.               <a href="#results-overview">results overview</a>
  1860.             </p>
  1861.           </div>
  1862.           <div class="result-detail" id="ruleresult-idp7227296">
  1863.             <h3>Result for Hyper-V</h3>
  1864.             <p class="result-pass">Result: <strong class="strong">pass</strong></p>
  1865.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_hyperv_check</strong></p>
  1866.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:14:26" class="date">2014-08-23 14:14</abbr></strong></p>
  1867.             <p>
  1868.         Check if this system runs on Hyper-V.
  1869.        
  1870.       </p>
  1871.             <p class="link">
  1872.               <a href="#results-overview">results overview</a>
  1873.             </p>
  1874.           </div>
  1875.           <div class="result-detail" id="ruleresult-idp7233680">
  1876.             <h3>Result for Content for enabling and disabling services based on CentOS 6 system</h3>
  1877.             <p class="result-informational">Result: <strong class="strong">informational</strong></p>
  1878.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_initscripts_control_check</strong></p>
  1879.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:14:27" class="date">2014-08-23 14:14</abbr></strong></p>
  1880.             <p>
  1881.         The content checks what services are enabled or disabled on assessment system and if the services will be enabled or disabled on CentOS 7 system.
  1882.        
  1883.       </p>
  1884.             <div class="xccdf-fixtext">
  1885.               <h4 class="short">Remediation instructions</h4>
  1886.               The content detects some services who are disabled by default on CentOS 7 system.<br/>
  1887. </p>
  1888.             </div>
  1889.             <pre class="code">
  1890.               <code>
  1891. INPLACERISK: HIGH: The service blk-availability on CentOS 7 is disabled by default. Enable them via commands: systemctl enable blk-availability &amp;&amp; systemctl start blk-availability.service .
  1892. INPLACERISK: HIGH: The service fcoe on CentOS 7 is disabled by default. Enable them via commands: systemctl enable fcoe &amp;&amp; systemctl start fcoe.service .
  1893. INPLACERISK: HIGH: The service iscsi on CentOS 7 is disabled by default. Enable them via commands: systemctl enable iscsi &amp;&amp; systemctl start iscsi.service .
  1894. INPLACERISK: HIGH: The service iscsid on CentOS 7 is disabled by default. Enable them via commands: systemctl enable iscsid &amp;&amp; systemctl start iscsid.service .
  1895. INPLACERISK: HIGH: The service lldpad on CentOS 7 is disabled by default. Enable them via commands: systemctl enable lldpad &amp;&amp; systemctl start lldpad.service .
  1896. INPLACERISK: HIGH: The service messagebus on CentOS 7 is disabled by default. Enable them via commands: systemctl enable messagebus &amp;&amp; systemctl start messagebus.service .
  1897. INPLACERISK: HIGH: The service netfs on CentOS 7 is disabled by default. Enable them via commands: systemctl enable netfs &amp;&amp; systemctl start netfs.service .
  1898. INPLACERISK: HIGH: The service network on CentOS 7 is disabled by default. Enable them via commands: systemctl enable network &amp;&amp; systemctl start network.service .
  1899. INPLACERISK: HIGH: The service nfslock on CentOS 7 is disabled by default. Enable them via commands: systemctl enable nfslock &amp;&amp; systemctl start nfslock.service .
  1900. INPLACERISK: MEDIUM: The service nginx is not installed by CentOS signed packages and will not be automatically enabled after in-place upgrade.
  1901. INPLACERISK: HIGH: The service ntpd on CentOS 7 is disabled by default. Enable them via commands: systemctl enable ntpd &amp;&amp; systemctl start ntpd.service .
  1902. INPLACERISK: HIGH: The service php-fpm on CentOS 7 is disabled by default. Enable them via commands: systemctl enable php-fpm &amp;&amp; systemctl start php-fpm.service .
  1903. INPLACERISK: HIGH: The service postfix on CentOS 7 is disabled by default. Enable them via commands: systemctl enable postfix &amp;&amp; systemctl start postfix.service .
  1904. INPLACERISK: MEDIUM: The service pure-ftpd is not installed by CentOS signed packages and will not be automatically enabled after in-place upgrade.
  1905. INPLACERISK: HIGH: The service rpcgssd on CentOS 7 is disabled by default. Enable them via commands: systemctl enable rpcgssd &amp;&amp; systemctl start rpcgssd.service .
  1906. INPLACERISK: HIGH: The service udev-post on CentOS 7 is disabled by default. Enable them via commands: systemctl enable udev-post &amp;&amp; systemctl start udev-post.service .
  1907. </code>
  1908.             </pre>
  1909.             <p class="link">
  1910.               <a href="#results-overview">results overview</a>
  1911.             </p>
  1912.           </div>
  1913.           <div class="result-detail" id="ruleresult-idp7243360">
  1914.             <h3>Result for Check for ethernet interface naming</h3>
  1915.             <p class="result-needs_action">Result: <strong class="strong">needs_action</strong></p>
  1916.             <p>Rule ID: <strong class="strong">xccdf_preupg_rule_system_initscripts_ifcfg_check</strong></p>
  1917.             <p>Time: <strong class="strong"><abbr title="2014-08-23T14:14:27" class="date">2014-08-23 14:14</abbr></strong></p>
  1918.             <p>
  1919.         The content checks if network interface names set through /etc/sysconfig/network-scripts/ifcfg-* files are compatible with device naming in CentOS 7.
  1920.        
  1921.       </p>
  1922.             <div class="xccdf-fixtext">
  1923.               <h4 class="short">Remediation instructions</h4>
  1924.               CentOS 7 still offers possibility to specifying names for network interface by setting DEVICE and HWADDR options in /etc/sysconfig/network-scripts/ifcfg-* configuration files. Unfortunally udev does not support swapping interface names anymore. In the case that you set ethX names to multiple network card and kernel discovers them in different order, udev rule 60-net.rules will most likely fail.<br/>
  1925. <br/>
  1926. It is highly recommended to rename such interfaces or remove DEVICE line from ifcfg configuration files.<br/>
  1927. </p>
  1928.             </div>
  1929.             <pre class="code">
  1930.               <code>
  1931. INPLACERISK: HIGH: initscripts
  1932. </code>
  1933.             </pre>
  1934.             <p class="link">
  1935.               <a href="#results-overview">results overview</a>
  1936.             </p>
  1937.           </div>
  1938.           <div class="result-detail" id="ruleresult-idp7250592">