Security Baseline

Drop audit reports here

Or use Load reports above. Accepts the JSON that aartool inspect writes.
Load several files across hosts and runs; before and after is worked out for you.

sudo aartool inspect # this machine, reports land in ./reports aartool inspect --host 10.0.1.10 --user admin # one remote host aartool inspect --inventory inventory/hosts # a whole estate
Score by host Worst first · select one to open its findings
How exposed is the estate Open findings by reachability
Where the findings are FAIL WARN PASS
Estate heatmap Open findings per host and category · a red column is a policy problem, a red row is a machine problem · select any cell to open that host
Fix once, help most hosts