1、lynis命令格式:可使用man lynis 查看详细命令使用说明
lynis [scan mode] [other options]
扫描类型:
audit system:执行本地系统扫描
audit system remote <host>:执行远程系统扫描
options:
lynis audit system --quick --auditor "auditor1"
警告和建议信息:
查看日志文件:
grep Warning /var/log/lynis.log
grep Suggestion /var/log/lynis.log
lynis --tests-from-group firewalls