You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
This repository was archived by the owner on Jul 23, 2026. It is now read-only.
Automates the complete SCAP before/after compliance scan loop. Runs SCAP SCC headless against the target, stages XCCDF results to Compliance-Reports\Before-MFA\ or After-MFA\, feeds both files through the scap_summary Docker tool, optionally triggers the Ansible STIG hardening playbook via WSL, and generates a side-by-side delta report (Before-Report.txt → SAR-Template.md). Supports -Phase Before/After/Full, -WhatIf, and -SkipHardening. NIST controls: CA-2 (Security Assessments), RA-5 (Vulnerability Monitoring and Scanning). Author: Glenn Byron.
19
+
20
+
---
21
+
11
22
## [Lab — Session 13] — 2026-06-02
12
23
13
24
### Sync from Lab-Export, Subnet Drift Fix, First Real Screenshots
**📸 Captured — DC01 Before-MFA (44.95%) vs After-MFA (42.66%), side by side**
194
+
195
+

> - WS01 (Server 2022 STIG): 42.20% → 42.20% (no delta — same baseline, same benchmark)
194
200
> -**WO02 (Windows 11 STIG, MAC-1 Classified profile): 37.00% After-SmartCard** — 258 rules, 13 CAT I open, 122 CAT II open, 8 CAT III open
195
201
>
196
-
> See `Compliance-Reports/README.md` for the full scoring table and `Compliance-Reports/Laptop/After-SmartCard/2026-06-02_104513/` for the WO02 scan session.
197
-
> See `Screenshots/README.md` for the capture checklist.
202
+
> See `Compliance-Reports/README.md` for the scoring table and `Compliance-Reports/Laptop/After-SmartCard/2026-06-02_104513/` for the WO02 scan session.
203
+
204
+
**📸 Captured — SCC Summary Viewer for WO02 Windows 11 STIG scan**
Session `2026-06-02_104513`, scanned as `LAB\labtech` with smart card enforcement active. Links to All Settings HTML, Non-Compliance HTML, XCCDF XML, OVAL/OCIL XML, and DISA CKL checklist all visible.
0 commit comments