Commit graph

38 commits

Author SHA1 Message Date
George Nalen
b234d04fc9
Fix for Jira Ticket sub-22 v2
Signed-off-by: George Nalen <georgen@mindpointgroup.com>
2025-04-07 16:50:37 -04:00
Mark Bolwell
b12b5dcf50
Added gui discovery and updated comments
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-09-19 12:38:49 +01:00
Mark Bolwell
3cdd2a0368
updated var naming from rhel9_cis to rhel9cis
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-09-06 14:40:52 +01:00
Mark Bolwell
2d2f281733
made ssh_config file tage always
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-09-06 14:32:48 +01:00
Mark Bolwell
b279a9fb80
Added /dev/null to exclude in prelim check shell
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-06-05 08:00:02 +01:00
uk-bolly
f8fcfe0e78
April_24 updates (#201)
* Issue #170, PR #181 thanks to @ipruteanu-sie

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* issue #182, PR #183 thansk to @ipruteanu-sie

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* PR #180 thanks to @ipruteanu-sie and @raabf

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* Addressed PR #165 thanks to @ipruteanu-sie

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* PT #184 addressed thansk to @ipruteanu-sie

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* updated credits

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* typo and ssh allow_deny comments

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* enable OS check

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* PR - #198 addressed thanks to @brakkio86

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* Addressed issue #190

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* Additional vars for issue #190

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* updated pre-commit version

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* consistent quotes around mode

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* moved audit added discoveries

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* removed unneeded vars

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* audit moved to prelim

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* tidy up

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* improved new variable usage

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* fixed logic 6.2.10

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* updated

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* addressed #197 thanks to @mark-tomich

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* updates for audit section

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* fixed naming

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* updated

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* added prelim to includes

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

---------

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-04-15 14:02:07 +01:00
uk-bolly
7d7b6132f4
March 24 to devel (#186)
* Issue #170, PR #181 thanks to @ipruteanu-sie

* issue #182, PR #183 thansk to @ipruteanu-sie

* PR #180 thanks to @ipruteanu-sie and @raabf

* Addressed PR #165 thanks to @ipruteanu-sie

* PT #184 addressed thansk to @ipruteanu-sie

* updated credits

* typo and ssh allow_deny comments

* enable OS check

---------

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-03-06 16:52:38 +00:00
uk-bolly
0f58436212
Gpg import for rhel servers (#185)
* change logic thanks to @rjacobs1990 see #175

* 1.2.1 force gpg import rhel

* fix missing facts

---------

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-03-06 09:10:06 +00:00
uk-bolly
40bc7aa082
Feb24 updates (#179)
* change logic thanks to @rjacobs1990 see #175

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* thanks to @ipruteani-sie #134

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* Thanks to @stwongst #125

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* thanks to @sgomez86 #146

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* Added updates from #115

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* removed rp_filter in post added in error

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* updated yamllint precommit

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* updated fqcn fo json_query

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* updated

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* fix typo for virt type query

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

---------

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-02-20 15:43:43 +00:00
Mark Bolwell
e82b2cefac
quoted file mode
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-09-21 16:25:59 +01:00
Mark Bolwell
04cb2e0f1d
#54 merged into new layout
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-09-06 08:44:23 +01:00
Mark Bolwell
194925be2f
consistent vars and names
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-06-07 09:24:32 +01:00
Mark Bolwell
674d3417ff
rule_1.10 updates
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-06-06 14:36:38 +01:00
Mark Bolwell
67f7c44ca8
tidy up control not required
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-13 09:45:26 +00:00
Mark Bolwell
3de7cd2f56
use new variable gpg_key_variable
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-06 11:21:33 +00:00
Mark Bolwell
a14e9c5dbe
#30 thanks to @smatterchew sshd config file dropin ability
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-20 11:31:46 +00:00
Mark Bolwell
9fe177f9ce
standardise naming and move items to prelim
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-25 11:35:47 +00:00
Mark Bolwell
a90941af41
fiex rule number 6.2.9
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-25 09:33:14 +00:00
Mark Bolwell
f8577132f0
removed old rhn check
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-25 09:29:51 +00:00
Mark Bolwell
64a3e26e4f
moved su check to prelim
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-25 09:29:19 +00:00
Mark Bolwell
fdf298328c
documented 1.2.4 for rhel
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-20 17:14:24 +00:00
Mark Bolwell
fbe238091b
Added new prelim interactive_user_home
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-19 16:25:34 +00:00
Mark Bolwell
7f48dbd2c4
added gpg-key update
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-13 13:59:53 +00:00
Mark Bolwell
acf0104f7a
lint updates
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-13 12:10:18 +00:00
Mark Bolwell
c3f680d8fb
prelim added
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-12 11:39:37 +00:00
Mark Bolwell
77dd593e0f
removed arg warn
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-01-10 11:19:41 +00:00
Mark Bolwell
226f2bc9b9
removed unnecessary become
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-09-16 15:47:38 +01:00
Mark Bolwell
1e22c13794
linting
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-09-16 11:04:19 +01:00
Mark Bolwell
cf6e08c390
added legacy mount check again
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-21 14:16:58 +01:00
Mark Bolwell
fb1c6e9232
added libselinux requirement
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-17 11:24:14 +01:00
Mark Bolwell
08e48fbe83
updated grub controls
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-11 17:38:01 +01:00
Mark Bolwell
13a6746997
lint
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-05 10:24:47 +01:00
Mark Bolwell
2d21f8a98e
tidy up vars
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-01 17:09:53 +01:00
Mark Bolwell
f0c4701dbd
updated controls
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-04-01 15:26:13 +01:00
uk-bolly
02a36f7f8d
Fix in logic for Alma (#4)
* container standards

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* logic on handlers

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* initial container ignore

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* tags and containder discovery

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* logic on auditd task

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* tags and crypto logic

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* distro update for rocky

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* system_is_container updates

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* ssh pkg check

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* logrotate pkg check

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* logic in container check

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* add pkg fact and audit conditionals

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* tidy up crypto step

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* Added missing tags

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* container vars file now a variable

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* added uid discovery and usage

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* Updated OS checks and conditionals

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* fixed empty become

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* change audit to include task

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* Added OS_specific vars

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* updated import/include

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* OS Specific vars

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* updated tags

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* updated changed_when

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* fixed UID logic

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* changed reboot var

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* changed skip_reboot var name

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* masked only

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* fix logic

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* remove debug update logic 6.2.8

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* initial

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>

* removed CentOS

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-02-02 11:25:03 +00:00
Mark Bolwell
54f4e0b4b8
boolean variable true/false
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-01-13 16:51:17 +00:00
Mark Bolwell
3b19db6812
replaced command with shell
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-01-13 11:27:26 +00:00
Mark Bolwell
a54b5216eb
Initial
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-01-07 09:06:18 +00:00