Commit graph

1040 commits

Author SHA1 Message Date
pre-commit-ci[bot]
68579ae85e
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/ansible-community/ansible-lint: v25.4.0 → v25.5.0](https://github.com/ansible-community/ansible-lint/compare/v25.4.0...v25.5.0)
2025-05-26 17:23:15 +00:00
uk-bolly
9ee1498c98
Merge pull request #332 from ansible-lockdown/may25_issues
May25 issues
2025-05-23 16:56:52 +01:00
Mark Bolwell
f83e5a69a2
interactive users ilogic improvements thanks to @polski-g
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-05-23 16:05:01 +01:00
Mark Bolwell
daf5a3f462
changed command to shell for grep
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-05-23 15:01:16 +01:00
Mark Bolwell
15bf03c754
added check mode logic
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-05-23 14:34:30 +01:00
Mark Bolwell
2b37d0d732
added check_mode logic
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-05-23 14:30:17 +01:00
Mark Bolwell
8d5a32bc39
added rhel9cis_rsyslog_ansiblemanage conditional
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-05-23 14:25:42 +01:00
Mark Bolwell
4948d3cb09
added ignore comments in file
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-05-23 14:22:30 +01:00
uk-bolly
90374036c4
Merge pull request #326 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-05-21 17:38:53 +01:00
pre-commit-ci[bot]
5e2e4db20e
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/gitleaks/gitleaks: v8.24.3 → v8.26.0](https://github.com/gitleaks/gitleaks/compare/v8.24.3...v8.26.0)
- [github.com/ansible-community/ansible-lint: v25.2.1 → v25.4.0](https://github.com/ansible-community/ansible-lint/compare/v25.2.1...v25.4.0)
- [github.com/adrienverge/yamllint.git: v1.37.0 → v1.37.1](https://github.com/adrienverge/yamllint.git/compare/v1.37.0...v1.37.1)
2025-05-19 17:24:24 +00:00
Fred W.
15cb6db6bf
Merge pull request #324 from ansible-lockdown/fix_rhel9cis_warning_banner
Fix for #322 thank @mindrb
2025-04-25 14:58:15 -04:00
Frederick Witty
48c05f038f
Fix for #322 thank @mindrb
Signed-off-by: Frederick Witty <frederickw@mindpointgroup.com>
2025-04-25 14:36:58 -04:00
Fred W.
612f416fc8
Merge pull request #323 from ansible-lockdown/fix_j2_sshd_weakciphers
Fix for #320 thank you @kodebach
2025-04-25 13:07:07 -04:00
Frederick Witty
dd909b48c8
Fix for #320 thank you @kodebach
Signed-off-by: Frederick Witty <frederickw@mindpointgroup.com>
2025-04-25 11:47:17 -04:00
Fred W.
c8e410928e
Merge pull request #321 from ansible-lockdown/2025update
2025 Update - April Typo Fixes + Logic update on rhel9cis_discover_int_uid
2025-04-23 17:33:16 -04:00
Frederick Witty
e27e413f94
Update URL in defaults/main
Signed-off-by: Frederick Witty <frederickw@mindpointgroup.com>
2025-04-23 16:04:16 -04:00
Frederick Witty
42024903e3
revamp set facts premlim_ max_int_uid and prelim_min_int_uid
Signed-off-by: Frederick Witty <frederickw@mindpointgroup.com>
2025-04-23 12:47:22 -04:00
Frederick Witty
350b30dfe4
prelim_ prefix added to max_int_uid and min_int_uid
Signed-off-by: Frederick Witty <frederickw@mindpointgroup.com>
2025-04-22 16:32:47 -04:00
Frederick Witty
7173eba3f6
Typo fixes v2
Signed-off-by: Frederick Witty <frederickw@mindpointgroup.com>
2025-04-22 16:29:43 -04:00
Frederick Witty
de63984cd8
Typo fixes
Signed-off-by: Frederick Witty <frederickw@mindpointgroup.com>
2025-04-22 16:10:53 -04:00
uk-bolly
4c47bb5b6b
Merge pull request #317 from ansible-lockdown/improvements
Improvements
2025-04-15 14:06:32 +01:00
Mark Bolwell
ce43c573ee
update tags and issue #311 thanks to @rilatu
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-04-15 12:54:34 +01:00
Mark Bolwell
4aeac7e662
typos and tidy up
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-04-15 11:41:46 +01:00
Mark Bolwell
b04570dfe4
removed legacy option
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-04-15 11:40:49 +01:00
Mark Bolwell
ec57b85fdf
Updated 5.3.3.1.1 regex issue #315 thanks to @jrdbarnes
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-04-15 11:11:19 +01:00
Mark Bolwell
3d4bc2ab3d
Update name and conditionals
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-04-15 11:07:15 +01:00
Mark Bolwell
52f5f23b00
improve ansible facts conditionals
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-04-15 11:04:33 +01:00
uk-bolly
be4e3a9299
Merge pull request #316 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-04-15 11:01:09 +01:00
pre-commit-ci[bot]
ba57380a72
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/gitleaks/gitleaks: v8.24.2 → v8.24.3](https://github.com/gitleaks/gitleaks/compare/v8.24.2...v8.24.3)
2025-04-14 17:21:59 +00:00
uk-bolly
ff7da4c46f
Merge pull request #313 from ansible-lockdown/pre-commit-ci-update-config
[pre-commit.ci] pre-commit autoupdate
2025-04-09 10:37:41 +01:00
pre-commit-ci[bot]
97baa4afe0
[pre-commit.ci] pre-commit autoupdate
updates:
- [github.com/gitleaks/gitleaks: v8.24.0 → v8.24.2](https://github.com/gitleaks/gitleaks/compare/v8.24.0...v8.24.2)
- [github.com/ansible-community/ansible-lint: v25.1.3 → v25.2.1](https://github.com/ansible-community/ansible-lint/compare/v25.1.3...v25.2.1)
- [github.com/adrienverge/yamllint.git: v1.35.1 → v1.37.0](https://github.com/adrienverge/yamllint.git/compare/v1.35.1...v1.37.0)
2025-04-07 17:34:10 +00:00
uk-bolly
f434ae9608
Merge pull request #312 from ansible-lockdown/march25_updates
March25 updates
2025-04-01 13:46:28 +01:00
Mark Bolwell
bd425a068d
lint updates
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-04-01 08:14:02 +01:00
Mark Bolwell
9bbf5b7a81
updated var name to remove capital
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-04-01 08:08:28 +01:00
Mark Bolwell
fc2e153ce9
updated section naming
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-04-01 07:55:08 +01:00
Mark Bolwell
04666c219c
Added for #288 ansible_facts
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-03-31 15:13:46 +01:00
Mark Bolwell
576531e986
fetch audit and compliance facts added
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-03-31 14:50:40 +01:00
Mark Bolwell
82904557c7
updated workflows
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-03-31 12:38:51 +01:00
Mark Bolwell
7b1c8e9ef0
additional fix for #309
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-03-31 12:37:58 +01:00
Mark Bolwell
cedf510b94
addressed #309
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-03-31 12:36:27 +01:00
Mark Bolwell
b616f70d86
addressed #306
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-03-31 12:35:07 +01:00
Mark Bolwell
683177e46f
issue #305 addressed
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-03-31 12:33:56 +01:00
uk-bolly
ec30606e5c
Merge pull request #303 from ansible-lockdown/feb25_more_updates
Issues resolved enhancements
2025-02-28 16:54:17 +00:00
Mark Bolwell
a1a719fbe7
lint update
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-27 13:47:25 +00:00
Mark Bolwell
1bfde74ad6
Improve logic
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-27 13:02:54 +00:00
Mark Bolwell
4d8cc6eb60
updated minclass
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 14:04:22 +00:00
Mark Bolwell
74f17b7ee8
updated logic
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 14:04:13 +00:00
Mark Bolwell
5a612675e2
improve authselect logic
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 14:04:01 +00:00
Mark Bolwell
8cd7d765c5
updated layout
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 12:26:58 +00:00
Mark Bolwell
ed1bc1c074
7.1.10 extended in case file absent
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2025-02-26 12:26:46 +00:00