Commit graph

1000 commits

Author SHA1 Message Date
Ricky Latupeirissa
196d4c45ae
Update main.yml
rename Systemd daemon reload handler to be the same as all the notifies that want to call this.

Signed-off-by: Ricky Latupeirissa <38087794+rilatu@users.noreply.github.com>
2025-03-28 12:19:40 +01:00
Ricky Latupeirissa
7079011249
Update cis_1.5.x.yml
change notify

Signed-off-by: Ricky Latupeirissa <38087794+rilatu@users.noreply.github.com>
2025-03-28 12:18:08 +01:00
uk-bolly
ec30606e5c
Merge pull request #303 from ansible-lockdown/feb25_more_updates
Issues resolved enhancements
2025-02-28 16:54:17 +00:00
Mark Bolwell
a1a719fbe7
lint update
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-27 13:47:25 +00:00
Mark Bolwell
1bfde74ad6
Improve logic
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-27 13:02:54 +00:00
Mark Bolwell
4d8cc6eb60
updated minclass
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 14:04:22 +00:00
Mark Bolwell
74f17b7ee8
updated logic
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 14:04:13 +00:00
Mark Bolwell
5a612675e2
improve authselect logic
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 14:04:01 +00:00
Mark Bolwell
8cd7d765c5
updated layout
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 12:26:58 +00:00
Mark Bolwell
ed1bc1c074
7.1.10 extended in case file absent
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 12:26:46 +00:00
Mark Bolwell
12be5388ff
improved logic
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 12:26:19 +00:00
Mark Bolwell
d6fb1734e3
fixed thanks to @brent-bean #301
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 11:27:36 +00:00
Mark Bolwell
40078515fe
updated 1.4.2 thanks to @brent-bean #300
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 11:01:35 +00:00
Mark Bolwell
5c919fb19d
added #298 & #299 thanks to @brent-bean
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 08:27:12 +00:00
Mark Bolwell
48a471a037
issue #296 thanks to @dbsanders
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 08:23:53 +00:00
Mark Bolwell
8cc3738fda
added pre-commit badge
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 08:23:24 +00:00
uk-bolly
aa7a16499f
Merge pull request #302 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-02-25 08:22:43 +00:00
pre-commit-ci[bot]
f9c7ff5949
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/gitleaks/gitleaks: v8.23.3 → v8.24.0](https://github.com/gitleaks/gitleaks/compare/v8.23.3...v8.24.0)
- [github.com/ansible-community/ansible-lint: v25.1.2 → v25.1.3](https://github.com/ansible-community/ansible-lint/compare/v25.1.2...v25.1.3)
2025-02-24 17:24:15 +00:00
uk-bolly
b7d809ff8c
Merge pull request #295 from ansible-lockdown/Feb25_updates
Feb25 updates
2025-02-20 16:39:35 +00:00
Mark Bolwell
eb77cdd367
Added precommit exclusion
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-20 11:56:30 +00:00
Mark Bolwell
3441894ab4
Lint update
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-20 11:55:59 +00:00
Mark Bolwell
d6a560b2c8
rsyslog_#294 thanks to @alopezgcp
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-20 11:54:14 +00:00
Mark Bolwell
2078657ceb
added fix for #293 thanks to @machikanta
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-20 10:22:11 +00:00
uk-bolly
92eeaaf715
Merge pull request #291 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-02-11 09:14:02 +01:00
pre-commit-ci[bot]
5e72219865
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/ansible-community/ansible-lint: v25.1.1 → v25.1.2](https://github.com/ansible-community/ansible-lint/compare/v25.1.1...v25.1.2)
2025-02-10 17:53:49 +00:00
Stephen Williams
a4867933c0
Merge pull request #289 from ansible-lockdown/7_2_9_update
updated logic on 7.2.9
2025-02-07 12:56:34 -05:00
Mark Bolwell
49807a096b
updated logic on 7.2.9
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-07 12:20:45 +00:00
uk-bolly
48cad82265
Merge pull request #287 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-02-04 06:47:06 +00:00
pre-commit-ci[bot]
f9478c0e39
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/gitleaks/gitleaks: v8.23.2 → v8.23.3](https://github.com/gitleaks/gitleaks/compare/v8.23.2...v8.23.3)
- [github.com/ansible-community/ansible-lint: v25.1.0 → v25.1.1](https://github.com/ansible-community/ansible-lint/compare/v25.1.0...v25.1.1)
2025-02-03 18:04:46 +00:00
Stephen Williams
856a56beef
Merge pull request #286 from ansible-lockdown/Jan25_updates 2025-01-31 06:20:05 -05:00
uk-bolly
6115d92973
Merge pull request #284 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-01-31 07:53:03 +00:00
Mark Bolwell
761f8517c4
fix spacing
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-30 15:34:42 +00:00
Mark Bolwell
e121cb4992
Fix quoting
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-30 15:34:30 +00:00
Mark Bolwell
fecfb7e793
addressed issue #282
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-30 12:40:52 +00:00
Mark Bolwell
b9a4503558
Updated and tested rules
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-30 10:19:42 +00:00
Mark Bolwell
9169957698
Updated template
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-29 14:22:24 +00:00
Mark Bolwell
ed1a209635
Updated audit rules for arch
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-29 13:54:13 +00:00
Mark Bolwell
c178cba7bc
Updated comments
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-29 13:53:58 +00:00
Mark Bolwell
d1a6f6d2b8
Updated arm discovery
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-29 10:27:20 +00:00
pre-commit-ci[bot]
ee9258a74b
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/gitleaks/gitleaks: v8.23.1 → v8.23.2](https://github.com/gitleaks/gitleaks/compare/v8.23.1...v8.23.2)
2025-01-27 17:53:00 +00:00
uk-bolly
469478e64e
Merge pull request #279 from ansible-lockdown/pr_273_alternative
pwquality 5.3.3.2.x logic updates
2025-01-22 17:21:28 +00:00
Mark Bolwell
9f3d8becf0
Improve logic for 5.3.3.2.x controls
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-22 16:56:51 +00:00
Mark Bolwell
7d49c0d27c
added fix for #280 thanks to @msachikanta
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-22 14:23:31 +00:00
Mark Bolwell
5e176d4dc9
Use new prelim task for controls based on #273
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-22 08:53:27 +00:00
Mark Bolwell
fb73b18596
Add new pwquality dicovery & title update
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-22 08:53:02 +00:00
uk-bolly
8b13921b2e
Merge pull request #278 from ansible-lockdown/issue_#272
Issue #272
2025-01-21 19:43:29 +00:00
uk-bolly
62f09eae4e
Merge pull request #277 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-01-21 16:23:40 +00:00
pre-commit-ci[bot]
6f1fce2fc4
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/gitleaks/gitleaks: v8.23.0 → v8.23.1](https://github.com/gitleaks/gitleaks/compare/v8.23.0...v8.23.1)
- [github.com/ansible-community/ansible-lint: v24.12.2 → v25.1.0](https://github.com/ansible-community/ansible-lint/compare/v24.12.2...v25.1.0)
2025-01-20 17:45:13 +00:00
uk-bolly
3ecde85486
Merge pull request #276 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-01-14 08:13:38 +00:00
pre-commit-ci[bot]
60d4e73bb0
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/gitleaks/gitleaks: v8.22.1 → v8.23.0](https://github.com/gitleaks/gitleaks/compare/v8.22.1...v8.23.0)
2025-01-13 17:49:55 +00:00