Enable scored reports by creating the /etc/opt/sec_mgmt/bastille/HPWeights.txt file, and populating it with an entry for each HP-UX Bastille lock-down item to be considered in the final score. The HPWeights.txt file format is similar to an HP-UX Bastille configuration file, except only entries for items to be scored are present, and the item value is always set to "1".

HP-UX Bastille detects the HPWeights.txt file when generating an assessment, and adds Weight and Score columns to the report. The final score is a percentage calculated from the number of the weighted items that have a result equal to "Yes".

Figure 3-3 Scored assessment report

The assessment report contains the following columns in addition to the columns contained in the standard report:

Weight

The weight column indicates the item was selected in the weights file.

Score

The score column displays a 1.00 if the item was both weighted and secured properly.

3.3 Assessing a system

15