Commit graph

849 commits

Author SHA1 Message Date
Mark Bolwell
2964f11041
updated pipeline workflows
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:10 +02:00
Mark Bolwell
94cddfd24a
updated Readme
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:10 +02:00
Mark Bolwell
fcda03136f
updated precommit config
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:10 +02:00
Mark Bolwell
39941adaad
fixed typo and updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:10 +02:00
Mark Bolwell
e86e5a78a5
Added pipelines
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:10 +02:00
Mark Bolwell
87d8e14e31
added centos wording
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:10 +02:00
Mark Bolwell
170026b996
updated with precommit check
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:10 +02:00
Mark Bolwell
682f7ae9af
updated file locations
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:10 +02:00
Mark Bolwell
594411d25a
moved precommit file location
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:10 +02:00
Mark Bolwell
458f72e6db
updated changelog
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:10 +02:00
Mark Bolwell
da7fa4d343
updated audit vars naming, AMD & ARM binaries
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:10 +02:00
Mark Bolwell
f8f39042fb
fix typo in bashrc path
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:10 +02:00
Mark Bolwell
0ea5650400
turned off debug
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:10 +02:00
Mark Bolwell
17f2439b33
updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:09 +02:00
Mark Bolwell
ceb0c79ce7
updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:09 +02:00
Mark Bolwell
1e3dea076b
updated 5.6.5 logic
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:09 +02:00
Mark Bolwell
c1eaab6ec1
updated content
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:09 +02:00
Mark Bolwell
4cd92d0a3e
Added pre-commit manifest file
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:09 +02:00
Mark Bolwell
80ee111c7c
updated lint
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:09 +02:00
Mark Bolwell
acb47539ca
added pre-commit files
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:09 +02:00
Mark Bolwell
16f698386c
updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:09 +02:00
Mark Bolwell
5b766c47b3
lint updates
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:09 +02:00
Mark Bolwell
74b5c1812d
updated workflow files
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:09 +02:00
Luca Berton
be0d49f2d7
Update README.md
Updated audit instructions.
Fixed typos.

Signed-off-by: Luca Berton <luca@ansiblepilot.com>
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 08:30:09 +02:00
Ionut Pruteanu
8a9c294de4
Merge branch 'siemens/feat/document_main_variables' of code.siemens.com:infosec-pss-gov/security-crafter-baseline-automations/ansible-lockdown/rhel9-cis into siemens/feat/document_main_variables 2024-01-31 00:59:15 +02:00
root@DERVISHx
917db277f8
Rebase
~~~

Fixing conflicts after rebasing current feature branch onto 'devel'
2024-01-31 00:50:34 +02:00
Marcin Dulinski
200ca1b299
Solved minor conflicts in defaults/main.yml file, when re-basing
Signed-off-by: Marcin Dulinski <martin@dulin.me.uk>
2024-01-31 00:48:05 +02:00
Ionut Pruteanu
c2f7bbf7de
Removing not useful line from docs
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 00:48:05 +02:00
Ionut Pruteanu
0ed60c583f
Revert "Added vars for streams."
[IP] I see no benefit to duplicate vars in defaults/main.yml in other files like specific vars for Alma/Rocky, especially since
we're using the same values for those vars. Also, replacing rsyslog with journald is not fine for this current doc-extension proposal.

This reverts commit a57333dcf1.
2024-01-31 00:48:05 +02:00
Ionut Pruteanu
f1dde22aaf
Improving doc for journald log parameters.
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 00:48:05 +02:00
Ionut Pruteanu
ddb5289356
Changes after rebasing, 2 2024-01-31 00:47:46 +02:00
Ionut Pruteanu
21594f72f7
Rebasing.
Documenting usage of chrony variables.

Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 00:46:09 +02:00
Ionut Pruteanu
c4fe6df3e2
Merge branch 'siemens/feat/document_main_variables' of code.siemens.com:infosec-pss-gov/security-crafter-baseline-automations/ansible-lockdown/rhel9-cis into siemens/feat/document_main_variables 2024-01-31 00:20:55 +02:00
Ionut Pruteanu
7b379fdb8c
Finalising the docs content & syntax
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-31 00:20:44 +02:00
Ionut Pruteanu
d97e42e414
Changes after rebasing, 2 2024-01-31 00:10:24 +02:00
root@DERVISHx
c2c581ecff
Added vars for streams.
Signed-off-by: root@DERVISHx <nuno.carvalho@siemens.com>
2024-01-30 23:49:47 +02:00
Ionut Pruteanu
15ef967504
Changes after rebasing. 2024-01-30 23:49:27 +02:00
Ionut Pruteanu
80d622e9b7
Doc additions for:
- Sections 2.2 && 2.3
- Section 3
- Section 4.1

Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-30 23:44:56 +02:00
Ionut Pruteanu
f7f494f7b8
Doc additions for:
- Yum repos,
- bootloader,
- crypto policies,
- SELinux
- NTP

Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-30 23:44:56 +02:00
Ionut Pruteanu
1682ff18b5
Rebasing after:
~~~
Small additions to first part of documentation.

Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-30 23:44:34 +02:00
root@DERVISHx
778110e7d6
Document variables in defaults/main.yml, Fix 5 from devel
Signed-off-by: root@DERVISHx <nuno.carvalho@siemens.com>
2024-01-30 23:41:49 +02:00
uk-bolly
3fe681c0d2
Merge pull request #159 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2024-01-26 12:50:54 +00:00
uk-bolly
b726c2e444
Merge pull request #154 from jLemmings/patch-3
Remove trailing comma to align with other roles
2024-01-26 12:44:07 +00:00
uk-bolly
902956e51d
Merge pull request #151 from sickbock/devel
Corrections to tags and a variable
2024-01-26 12:37:20 +00:00
uk-bolly
df1aef8d31
Merge pull request #148 from siemens/siemens/feat/AuditVarsRefactoring
Siemens/feat/audit vars refactoring
2024-01-26 12:34:30 +00:00
uk-bolly
ac5eee81df
Merge pull request #112 from siemens/siemens/feat/ensure_default_umask_027_5_6_5
Adding new entry in /etc/pam.d/system-auth
2024-01-26 12:32:45 +00:00
pre-commit-ci[bot]
aa8a60b4ee
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/ansible-community/ansible-lint: v6.22.1 → v6.22.2](https://github.com/ansible-community/ansible-lint/compare/v6.22.1...v6.22.2)
2024-01-22 17:33:49 +00:00
root@DERVISHx
da62626a9d
Fixing conflicts after rebasing current feature branch onto 'devel' 2024-01-19 19:59:32 +02:00
Marcin Dulinski
9ce1fb6556
Solved minor conflicts in defaults/main.yml file, when re-basing
Signed-off-by: Marcin Dulinski <martin@dulin.me.uk>
2024-01-19 19:59:04 +02:00
Ionut Pruteanu
36ab51d600
Removing not useful line from docs
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2024-01-19 16:16:18 +02:00