Commit graph

111 commits

Author SHA1 Message Date
Mark Bolwell
7c09b264a1
fixed layout
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-05-16 08:52:18 +01:00
Jay Olinares
7f9b45cea3
tags added
Signed-off-by: Jay Olinares <jay.olinares@gmail.com>
2023-05-12 12:46:50 +10:00
Jay Olinares
2317abd1d2
fix https://github.com/ansible-lockdown/RHEL9-CIS/issues/58
Signed-off-by: Jay Olinares <jay.olinares@gmail.com>
2023-05-04 11:37:57 +10:00
Jay Olinares
fb4216be9f
use var values for pam_faillock
Signed-off-by: Jay Olinares <jay.olinares@gmail.com>
2023-04-15 22:21:53 +10:00
Marcin Dulinski
74e96cedd3
Fix system accounts
Signed-off-by: Marcin Dulinski <marcin.dulinski@g.network>
2023-03-17 14:39:07 +00:00
Mark Bolwell
868e74bbf4
issue 41 5.3.7 tasks
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-13 09:44:51 +00:00
Mark Bolwell
5e5174a5b0
updated marker
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-10 15:19:35 +00:00
Mark Bolwell
a14e9c5dbe
#30 thanks to @smatterchew sshd config file dropin ability
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-20 11:31:46 +00:00
Mark Bolwell
939102430c
lint updates
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-27 14:03:32 +00:00
Mark Bolwell
bf83a6b84c
Add more safety around control 5.4.2
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-27 12:19:16 +00:00
Mark Bolwell
3c72af6a83
fixed spacing
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-27 11:03:36 +00:00
Mark Bolwell
a759c38902
removed split filter allowing old ansible versions
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-27 11:03:23 +00:00
Mark Bolwell
d770c69aca
moved 5.6.6 testing to main task
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-27 11:01:41 +00:00
Mark Bolwell
9cf1f08eec
dest to path 5.2.1
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-26 14:59:18 +00:00
Mark Bolwell
388dbd797c
fix typo
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-26 14:17:29 +00:00
Mark Bolwell
89e6372648
5.6.3 tidy up
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-26 09:47:33 +00:00
Mark Bolwell
abd99426b8
replaced dest for path on file module
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-26 09:31:27 +00:00
Mark Bolwell
8694bfde75
with_items to loop
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-26 08:30:26 +00:00
Mark Bolwell
f9267a389b
remove state file on file module
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-26 08:29:03 +00:00
Mark Bolwell
3f76affa5b
changed_when for idempotency. 5.6.
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-20 13:34:30 +00:00
Mark Bolwell
999d7b5b1e
fix csv sugroup option updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-19 13:33:11 +00:00
Mark Bolwell
cb609c1f1a
fqcn update
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-19 13:31:53 +00:00
Mark Bolwell
acf0104f7a
lint updates
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-13 12:10:18 +00:00
Mark Bolwell
3ead0d63ac
warn control count updates
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-13 11:05:25 +00:00
Mark Bolwell
7c6555d92e
Lint updates & control alignment
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-13 09:09:21 +00:00
Mark Bolwell
c18151e158
linting fqcn
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-12 15:01:17 +00:00
Mark Bolwell
77dd593e0f
removed arg warn
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-10 11:19:41 +00:00
Mark Bolwell
e764ef55d5
lint updates
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-10-14 12:14:03 +01:00
Mark Bolwell
2491357136
Added login.defs 5.6.5
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-10-14 12:09:30 +01:00
Kristian
fc407f8329
tss user and spacing
Signed-off-by: Kristian <kris9854@gmail.com>
2022-09-27 17:15:49 +02:00
Mark Bolwell
3df35e03a0
lint updates
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-09-16 11:34:42 +01:00
Mark Bolwell
4705e361bf
All passwords are expired during hardening #22
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-08-23 12:21:39 +01:00
Mark Bolwell
f45bbd6ee8
#21 user accts locked during user exec
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-08-23 12:21:11 +01:00
Mark Bolwell
6b6a4a32c8
added warning count
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-20 17:13:33 +01:00
Mark Bolwell
c3c668bb8e
crypto idempotency
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-20 17:04:44 +01:00
Mark Bolwell
91da6ffaa2
updated testing
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-17 11:23:57 +01:00
Mark Bolwell
5ce4b873d7
removed rh8 checks
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-05-11 09:57:33 +01:00
Adam Lewandowski
b9a3e3d2c6 Fix UMASK hardening
Signed-off-by: Adam Lewandowski <adam.lewandowski@plxis.com>
2022-05-09 14:12:41 -04:00
Mark Bolwell
83f0fb30ec
updated regex
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-26 12:01:06 +01:00
Mark Bolwell
82d1d18504
consistent lineinfile usage
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-06 16:58:03 +01:00
Mark Bolwell
02d686f920
removed default state
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-06 16:38:24 +01:00
Mark Bolwell
9c771e03e4
use new var name
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-06 16:32:14 +01:00
Mark Bolwell
783c45d622
changed logic
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-05 16:56:27 +01:00
Mark Bolwell
13a6746997
lint
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-05 10:24:47 +01:00
Mark Bolwell
4e873bc0d6
added nfsnobody
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-05 10:09:06 +01:00
Mark Bolwell
d5065c1a82
lint
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-05 10:08:53 +01:00
Mark Bolwell
0ef9e990cc
tidy and fix titles
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-05 08:48:53 +01:00
Mark Bolwell
d9b807c325
change lineinfile to path
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-05 08:45:11 +01:00
Mark Bolwell
223254b5c9
rewrite
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-04 19:30:52 +01:00
Mark Bolwell
9a0ac22331
fix tag typo
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-04 16:20:27 +01:00