Cisco IOS Switch L2S Security Technical Implementation Guide: Version: 1: Release: 108 May 2020
Thank you for sharing these files.
I am reviewing the remediation notes and it looks like we will have to add some show commands to the device template.
Example being - "Show Vlan"
My question is; how do we set this up for the policy to read the output of the show command?
What I'm seeing on my end is it will review the most recent config type: Running. Other options are: Any, Running, Startup and Baseline.
What you can do is create a Custom Config Type and apply the STIG to that particular config.