4Viewes
Implementasi CIS Hardening Ubuntu Server 22.04 LTS dan SCA Wazuh pada Aplikasi MySkanema di SMKN 5 Batam
Repository Analytics
Statistic Details
0Downloaded
4Accessed per month
1Countries
Loading...
Date
Authors
Trisnawati, Fitri
Journal Title
Journal ISSN
Volume Title
Publisher
Politeknik Negeri Batam
Abstract
This study implements and evaluates CIS Benchmark Level 1 hardening on an active production Ubuntu Server 22.04 LTS supporting the MySkanema academic information system at SMKN 5 Batam, using Wazuh Security Configuration Assessment (SCA) for automated compliance validation. A pre-test/post-test design was applied on the same production server over a 26-day period, given the constraint of maintaining uninterrupted service availability throughout implementation. Results show compliance score increased from 48.3% to 57.0%, improving 18 of 207 CIS controls across SSH configuration, password policy, file permissions, firewall rules, and service hardening. This improvement did not reach conventional statistical significance (two-proportion z-test, p=0.076) consistent with the relatively short observation period. The predefined functional target of 80% compliance was not achieved, primarily due to controls requiring structural changes such as system partition separation that could not be performed without a scheduled maintenance window on the active production server. CPU usage remained at 1.5% and network latency at 0.048ms, both within acceptable thresholds, indicating hardening did not degrade system performance. Exploratory security alert observations showed day-to-day variability attributable to fluctuating external attack intensity rather than configuration changes. These findings demonstrate that CIS Benchmark hardening can be implemented on active production infrastructure without service disruption, while highlighting those structural and time constraints affecting compliance target achievement in similar vocational school environments.
Description
Citation
IEEE
