mirror of
https://github.com/ansible-lockdown/RHEL9-CIS.git
synced 2025-12-24 22:23:06 +00:00
Removed -automated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
This commit is contained in:
parent
83bd6cd87c
commit
50d4cd83aa
11 changed files with 2 additions and 28 deletions
|
|
@ -21,7 +21,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level2-workstation
|
||||
- automated
|
||||
- patch
|
||||
- mounts
|
||||
- removable_storage
|
||||
|
|
|
|||
|
|
@ -61,7 +61,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- rule_1.2.2
|
||||
|
||||
|
|
|
|||
|
|
@ -9,7 +9,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- rule_1.6.1.1
|
||||
|
||||
|
|
@ -45,7 +44,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- selinux
|
||||
- patch
|
||||
- rule_1.6.1.3
|
||||
|
|
@ -61,7 +59,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- selinux
|
||||
- patch
|
||||
- rule_1.6.1.4
|
||||
|
|
@ -78,7 +75,6 @@
|
|||
tags:
|
||||
- level2-server
|
||||
- level2-workstation
|
||||
- automated
|
||||
- selinux
|
||||
- patch
|
||||
- rule_1.6.1.5
|
||||
|
|
@ -106,7 +102,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- audit
|
||||
- services
|
||||
- rule_1.6.1.6
|
||||
|
|
@ -120,7 +115,6 @@
|
|||
- "'setroubleshoot' in ansible_facts.packages"
|
||||
tags:
|
||||
- level1-server
|
||||
- automated
|
||||
- selinux
|
||||
- patch
|
||||
- rule_1.6.1.7
|
||||
|
|
@ -134,6 +128,5 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- rule_1.6.1.8
|
||||
|
|
|
|||
|
|
@ -9,7 +9,6 @@
|
|||
- "'gdm' in ansible_facts.packages"
|
||||
tags:
|
||||
- level2-server
|
||||
- automated
|
||||
- patch
|
||||
- gui
|
||||
- gdm
|
||||
|
|
@ -39,7 +38,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- gui
|
||||
- gdm
|
||||
|
|
@ -67,7 +65,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- gui
|
||||
- rule_1.8.3
|
||||
|
|
@ -92,7 +89,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level2-workstation
|
||||
- automated
|
||||
- patch
|
||||
- gui
|
||||
- rule_1.8.6
|
||||
|
|
@ -109,7 +105,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- gui
|
||||
- rule_1.8.4
|
||||
|
|
|
|||
|
|
@ -11,7 +11,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- telnet
|
||||
- rule_2.3.1
|
||||
|
|
@ -27,7 +26,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- ldap
|
||||
- rule_2.3.2
|
||||
|
|
@ -43,7 +41,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- tftp
|
||||
- rule_2.3.3
|
||||
|
|
@ -59,7 +56,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- ftp
|
||||
- rule_2.3.4
|
||||
|
|
|
|||
|
|
@ -11,7 +11,6 @@
|
|||
tags:
|
||||
- level2-server
|
||||
- level2-workstation
|
||||
- automated
|
||||
- patch
|
||||
- auditd
|
||||
- rule_4.1.2.1
|
||||
|
|
|
|||
|
|
@ -61,7 +61,6 @@
|
|||
tags:
|
||||
- level2-server
|
||||
- level2-workstation
|
||||
- automated
|
||||
- patch
|
||||
- auditd
|
||||
- rule_4.1.3.5
|
||||
|
|
|
|||
|
|
@ -63,7 +63,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- journald
|
||||
- rule_4.2.2.1.4
|
||||
|
|
@ -98,7 +97,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- audit
|
||||
- journald
|
||||
- rule_4.2.2.2
|
||||
|
|
@ -114,7 +112,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- journald
|
||||
- rule_4.2.2.3
|
||||
|
|
@ -130,7 +127,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- journald
|
||||
- rule_4.2.2.4
|
||||
|
|
@ -184,7 +180,7 @@
|
|||
- name: "4.2.2.7 | AUDIT | Ensure journald default file permissions configured | Set live file"
|
||||
ansible.builtin.set_fact:
|
||||
systemd_conf_file: /etc/tmpfiles.d/systemd.conf
|
||||
when: rhel9cis_4_2_2_7_override_stat.exists
|
||||
when: rhel9cis_4_2_2_7_override.stat.exists
|
||||
|
||||
- name: "4.2.2.7 | PATCH | Ensure journald default file permissions configured | Set permission"
|
||||
ansible.builtin.lineinfile:
|
||||
|
|
|
|||
|
|
@ -21,7 +21,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- logfiles
|
||||
- rule_4.2.3
|
||||
|
|
|
|||
|
|
@ -142,7 +142,6 @@
|
|||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- automated
|
||||
- patch
|
||||
- files
|
||||
- permissions
|
||||
|
|
|
|||
|
|
@ -14,7 +14,7 @@
|
|||
#
|
||||
# warn_count the main variable for the number of warnings and each time a warn_control_id is added
|
||||
# the count increases by a value of 1
|
||||
- name: "NO CONTROL ID | AUDIT | Set fact for manual task warning."
|
||||
- name: "{{ warn_control_id }} | AUDIT | Set fact for manual task warning."
|
||||
ansible.builtin.set_fact:
|
||||
warn_control_list: "{{ warn_control_list }} [{{ warn_control_id }}]"
|
||||
warn_count: "{{ warn_count | int + 1 }}"
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue