fix: clarify audit side effects and boot-check scope

This commit is contained in:
martino
2026-09-17 18:23:56 +02:00
parent dede876f0b
commit 60f71c0c8a
6 changed files with 177 additions and 14 deletions
+4 -4
View File
@@ -5081,7 +5081,7 @@
"evidenceObserved": "Observed evidence",
"evidenceExcerpt": "Compact view. The complete source evidence remains stored with this assessment.",
"annexScope": "Complete source evidence for results that require attention, record an observation or could not be verified.",
"readOnlyScope": "The assessment does not change configuration. Read commands and, when needed, Lynis may generate logs or reports.",
"readOnlyScope": "The assessment inspects host settings and health. It can write reports and logs; boot status checks can temporarily mount EFI system partitions.",
"capacity": "Capacity",
"used": "Used",
"free": "Free",
@@ -5182,7 +5182,7 @@
"neverRun": "This host has not been assessed yet.",
"lastRun": "Last assessed on {when}",
"stale": "{days} days ago",
"readOnlyNotice": "The assessment only reads the host. It makes no changes.",
"readOnlyNotice": "The assessment inspects host settings and health. It can write reports and logs; boot status checks can temporarily mount EFI system partitions.",
"unverifiedChecks": "Not taken: {checks}. Each says in its own evidence what it could not read.",
"noFindings": "No findings match the current filter.",
"affectedCount": "{count} affected",
@@ -5403,7 +5403,7 @@
},
"boot_loader": {
"title": "Boot loader",
"rationale": "The EFI system partitions proxmox-boot-tool reports and the kernels each one carries. No partition is mounted and no boot is attempted.",
"rationale": "The EFI system partitions proxmox-boot-tool reports and the kernels each one carries. proxmox-boot-tool status can temporarily mount EFI system partitions; no boot is attempted.",
"summary": {
"synchronised": "The {total} boot partitions carry the same kernels",
"attention": "{count} of {total} boot partitions need review",
@@ -5891,7 +5891,7 @@
"scope": "Scope of this report",
"scopeText": "This document reports the {profile} profile on the node named in the header, at the moment of the run.",
"scopeLocal": "It covers this node only. Guests on other nodes and their configuration are outside it.",
"scopeReadOnly": "Every check reads configuration and state that already exists; none modifies the host.",
"scopeReadOnly": "The assessment inspects host settings and health. It can write reports and logs; boot status checks can temporarily mount EFI system partitions.",
"scopeMoment": "It describes the state at the time of the run, not a period of time.",
"notRead": "Sources that could not be read:",
"uplink": "Uplink",