Skip to content

ESC9-15 #32

Description

@Zamanry

Hello, since this tool's inception, it's only supported ESC1-8 while newer ESC methods have been identified:

ESC 12 (Oct/2023) is a bit more nuanced. It is mostly a physical security issue rather than a CA/template issue. I think we could still check this at a high-level by checking if lowly privileged groups have login access to CAs themselves. But I admit this is a fringe check.

I would love to be able to contribute and help fill this gap, but I do not have time to be able to help currently. For any other folks reading this, I'd recommend manually reading these links, checking your configurations, and making careful changes as necessary.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions