Commit graph

1191 commits

Author SHA1 Message Date
Mark Bolwell
ed1bc1c074
7.1.10 extended in case file absent
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 12:26:46 +00:00
Mark Bolwell
12be5388ff
improved logic
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 12:26:19 +00:00
Mark Bolwell
d6fb1734e3
fixed thanks to @brent-bean #301
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 11:27:36 +00:00
Mark Bolwell
40078515fe
updated 1.4.2 thanks to @brent-bean #300
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 11:01:35 +00:00
Mark Bolwell
5c919fb19d
added #298 & #299 thanks to @brent-bean
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 08:27:12 +00:00
Mark Bolwell
48a471a037
issue #296 thanks to @dbsanders
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 08:23:53 +00:00
Mark Bolwell
8cc3738fda
added pre-commit badge
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 08:23:24 +00:00
uk-bolly
aa7a16499f
Merge pull request #302 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-02-25 08:22:43 +00:00
pre-commit-ci[bot]
f9c7ff5949
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/gitleaks/gitleaks: v8.23.3 → v8.24.0](https://github.com/gitleaks/gitleaks/compare/v8.23.3...v8.24.0)
- [github.com/ansible-community/ansible-lint: v25.1.2 → v25.1.3](https://github.com/ansible-community/ansible-lint/compare/v25.1.2...v25.1.3)
2025-02-24 17:24:15 +00:00
uk-bolly
b7d809ff8c
Merge pull request #295 from ansible-lockdown/Feb25_updates
Feb25 updates
2025-02-20 16:39:35 +00:00
Mark Bolwell
eb77cdd367
Added precommit exclusion
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-20 11:56:30 +00:00
Mark Bolwell
3441894ab4
Lint update
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-20 11:55:59 +00:00
Mark Bolwell
d6a560b2c8
rsyslog_#294 thanks to @alopezgcp
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-20 11:54:14 +00:00
Mark Bolwell
2078657ceb
added fix for #293 thanks to @machikanta
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-20 10:22:11 +00:00
uk-bolly
92eeaaf715
Merge pull request #291 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-02-11 09:14:02 +01:00
pre-commit-ci[bot]
5e72219865
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/ansible-community/ansible-lint: v25.1.1 → v25.1.2](https://github.com/ansible-community/ansible-lint/compare/v25.1.1...v25.1.2)
2025-02-10 17:53:49 +00:00
Stephen Williams
a4867933c0
Merge pull request #289 from ansible-lockdown/7_2_9_update
updated logic on 7.2.9
2025-02-07 12:56:34 -05:00
Mark Bolwell
49807a096b
updated logic on 7.2.9
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-07 12:20:45 +00:00
uk-bolly
48cad82265
Merge pull request #287 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-02-04 06:47:06 +00:00
pre-commit-ci[bot]
f9478c0e39
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/gitleaks/gitleaks: v8.23.2 → v8.23.3](https://github.com/gitleaks/gitleaks/compare/v8.23.2...v8.23.3)
- [github.com/ansible-community/ansible-lint: v25.1.0 → v25.1.1](https://github.com/ansible-community/ansible-lint/compare/v25.1.0...v25.1.1)
2025-02-03 18:04:46 +00:00
Stephen Williams
856a56beef
Merge pull request #286 from ansible-lockdown/Jan25_updates 2025-01-31 06:20:05 -05:00
uk-bolly
6115d92973
Merge pull request #284 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-01-31 07:53:03 +00:00
Mark Bolwell
761f8517c4
fix spacing
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-30 15:34:42 +00:00
Mark Bolwell
e121cb4992
Fix quoting
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-30 15:34:30 +00:00
Mark Bolwell
fecfb7e793
addressed issue #282
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-30 12:40:52 +00:00
Mark Bolwell
b9a4503558
Updated and tested rules
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-30 10:19:42 +00:00
Mark Bolwell
9169957698
Updated template
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-29 14:22:24 +00:00
Mark Bolwell
ed1a209635
Updated audit rules for arch
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-29 13:54:13 +00:00
Mark Bolwell
c178cba7bc
Updated comments
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-29 13:53:58 +00:00
Mark Bolwell
d1a6f6d2b8
Updated arm discovery
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-29 10:27:20 +00:00
pre-commit-ci[bot]
ee9258a74b
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/gitleaks/gitleaks: v8.23.1 → v8.23.2](https://github.com/gitleaks/gitleaks/compare/v8.23.1...v8.23.2)
2025-01-27 17:53:00 +00:00
uk-bolly
469478e64e
Merge pull request #279 from ansible-lockdown/pr_273_alternative
pwquality 5.3.3.2.x logic updates
2025-01-22 17:21:28 +00:00
Mark Bolwell
9f3d8becf0
Improve logic for 5.3.3.2.x controls
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-22 16:56:51 +00:00
Mark Bolwell
7d49c0d27c
added fix for #280 thanks to @msachikanta
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-22 14:23:31 +00:00
Mark Bolwell
5e176d4dc9
Use new prelim task for controls based on #273
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-22 08:53:27 +00:00
Mark Bolwell
fb73b18596
Add new pwquality dicovery & title update
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-22 08:53:02 +00:00
uk-bolly
8b13921b2e
Merge pull request #278 from ansible-lockdown/issue_#272
Issue #272
2025-01-21 19:43:29 +00:00
uk-bolly
62f09eae4e
Merge pull request #277 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-01-21 16:23:40 +00:00
pre-commit-ci[bot]
6f1fce2fc4
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/gitleaks/gitleaks: v8.23.0 → v8.23.1](https://github.com/gitleaks/gitleaks/compare/v8.23.0...v8.23.1)
- [github.com/ansible-community/ansible-lint: v24.12.2 → v25.1.0](https://github.com/ansible-community/ansible-lint/compare/v24.12.2...v25.1.0)
2025-01-20 17:45:13 +00:00
uk-bolly
3ecde85486
Merge pull request #276 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-01-14 08:13:38 +00:00
pre-commit-ci[bot]
60d4e73bb0
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/gitleaks/gitleaks: v8.22.1 → v8.23.0](https://github.com/gitleaks/gitleaks/compare/v8.22.1...v8.23.0)
2025-01-13 17:49:55 +00:00
Mark Bolwell
c0ce053338
added origin #272 5.3.3.3.3
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-13 11:55:41 +00:00
Mark Bolwell
424e5f78eb
Added fix for 5.3.2.2
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-01-13 11:55:27 +00:00
uk-bolly
b683b940f5
Merge pull request #275 from jsonar-cpapke/fix_dobule_discovered_variable
remove extra discovered_ prefix from variable
2025-01-10 16:31:46 +00:00
uk-bolly
39270dbbf3
Merge pull request #274 from jsonar-cpapke/fix_pam_unix_enabled_audit
Use shell for grep with shell expansions
2025-01-10 16:31:06 +00:00
Christopher Papke
cc8e32fb2d
remove extra discovered_ prefix from variable
Signed-off-by: Christopher Papke <chris.papke@thalesgroup.com>
2025-01-07 13:01:24 -08:00
Christopher Papke
88a497b195
Use shell for grep with shell expansions
Signed-off-by: Christopher Papke <chris.papke@thalesgroup.com>
2025-01-07 12:57:02 -08:00
uk-bolly
f057484a7a
Merge pull request #271 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-01-06 15:01:01 +00:00
pre-commit-ci[bot]
58d6389d85
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/gitleaks/gitleaks: v8.22.0 → v8.22.1](https://github.com/gitleaks/gitleaks/compare/v8.22.0...v8.22.1)
2024-12-30 17:34:45 +00:00
uk-bolly
df85dc869d
Merge pull request #270 from ansible-lockdown/benchmark_v2.0.0
Title tidy up
2024-12-27 10:49:43 +00:00