Commit graph

  • eafee7e040
    Added typo updates thanks to @DianaMariaDDM Mark Bolwell 2025-08-14 17:19:53 +01:00
  • f1e50bdc4c
    updated Mark Bolwell 2025-08-14 17:15:35 +01:00
  • 55c7fa6dd5
    added password of different LC public issue 372 Mark Bolwell 2025-08-14 17:12:56 +01:00
  • 95ed2ff03d
    changed to import task public PR 377 Mark Bolwell 2025-08-14 17:09:58 +01:00
  • 4b302f97f9
    fixed compability pre 2.14 thanks to public PR #380 Mark Bolwell 2025-08-14 16:50:41 +01:00
  • 456d203fd3
    Merge pull request #380 from numericillustration/devel uk-bolly 2025-08-14 16:30:52 +01:00
  • 55917c8daa
    udpated pre-commit hooks version Mark Bolwell 2025-08-14 16:27:41 +01:00
  • 625e4041c1
    update logic for 5.2.4 public PR #371 Mark Bolwell 2025-08-14 16:20:51 +01:00
  • 73320db603
    dont not run section 1.8 if not gdm PR #364 from public Mark Bolwell 2025-08-14 16:17:45 +01:00
  • 62095f75fe
    updated as per public PR #350 Mark Bolwell 2025-08-14 16:14:47 +01:00
  • cfbbb3339a
    renames 3 uses of ansible.builtin.systemd_service to ansible.builtin.systemd to maintain ansible 2.12+ compat. Fixes #379 Michael Hicks 2025-08-11 15:12:17 -07:00
  • a4b39e1250
    Merge pull request #375 from ansible-lockdown/audit_update uk-bolly 2025-08-05 13:20:51 +01:00
  • c501e3d210
    Merge pull request #39 from ansible-lockdown/audit_update uk-bolly 2025-08-05 13:20:34 +01:00
  • ef2c4d4ddb
    Updated audit file permissions when running audit thansk to @steve-hayes Mark Bolwell 2025-08-04 10:15:48 +01:00
  • 4b62f0fc35
    Updated post steps inline with pre steps for file permissions Mark Bolwell 2025-08-04 09:56:30 +01:00
  • 876e261d1f
    fixed issues for permissions when using fetch thanks to @steve-hayes Mark Bolwell 2025-08-04 09:53:09 +01:00
  • a0c1d95d3c
    Merge pull request #370 from ansible-lockdown/pre-commit-ci-update-config Fred W. 2025-07-25 18:14:11 -04:00
  • 8cdf5b517a Fixing pre-check for 5.2.4: allow sudo user without password if the user is configured in the exceptions for 5.2.4 Bernd Grobauer 2025-07-22 11:25:48 +02:00
  • b62a414abb
    [pre-commit.ci] pre-commit autoupdate pre-commit-ci[bot] 2025-07-21 17:28:55 +00:00
  • 751fac8a0c
    Merge pull request #368 from ansible-lockdown/devel Fred W. 2025-07-18 12:21:14 -04:00
  • feb183553c
    Merge pull request #367 from siemens/siemens/rhel9_v2_fixing_inconsistencies uk-bolly 2025-07-18 14:34:22 +01:00
  • 10d6d425ec
    Merge pull request #363 from siemens/siemens/feat/rhel9_v2_variable_documentation uk-bolly 2025-07-18 14:32:59 +01:00
  • f90e896b0c
    Fixing minor documentation issues part 3. Tomuta, Diana Maria (T CST SCC-RO) 2025-07-09 14:21:19 +03:00
  • ad8e73c3ee
    Fixing minor documentation issues part 2. Tomuta, Diana Maria (T CST SCC-RO) 2025-07-09 13:28:33 +03:00
  • 76a680bb59
    Fixing minor documentation issues. Tomuta, Diana Maria (T CST SCC-RO) 2025-07-09 12:13:45 +03:00
  • b182abf2aa
    Fixing inconsistencies for importing tasks from section 1. Tomuta, Diana Maria (T CST SCC-RO) 2025-07-08 16:38:12 +03:00
  • 4329591c90
    Fixing inconsistencies between rule ids in title, tags and when. Tomuta, Diana Maria (T CST SCC-RO) 2025-07-08 09:37:29 +03:00
  • 18493b5c37
    add disablement flag for the gdm controls (1.8.x) polski_g 2025-06-03 15:38:45 -04:00
  • 025d83d2c6
    Merge pull request #359 from siemens/siemens/feat/rhel9_v2_fix_control_6.3.3.5 uk-bolly 2025-07-04 12:10:04 +01:00
  • d25b472283
    Fixing order of configs. Tomuta, Diana Maria (T CST SCC-RO) 2025-07-04 13:50:05 +03:00
  • dfd5eb9a92
    Small fixes part 3. Tomuta, Diana Maria (T CST SCC-RO) 2025-07-04 13:44:46 +03:00
  • 38916aeade
    Merge pull request #361 from siemens/siemens/feat/rhel9_v2_fix_control_5.4.2.5 uk-bolly 2025-07-04 11:35:17 +01:00
  • 3778d6fb62
    improvement updated with public #361 Mark Bolwell 2025-07-04 11:34:53 +01:00
  • 1ed720e7c9
    Merge pull request #360 from siemens/siemens/feat/rhel9_v2_fix_control_6.3.4.5 uk-bolly 2025-07-04 11:33:11 +01:00
  • 0a56b16d32
    updated as per public fix #360 Mark Bolwell 2025-07-04 11:32:56 +01:00
  • 21fd466ec6
    Small fixes part 2. Tomuta, Diana Maria (T CST SCC-RO) 2025-07-04 11:58:08 +03:00
  • 778877f3f3
    Small fixes. Tomuta, Diana Maria (T CST SCC-RO) 2025-07-04 10:50:45 +03:00
  • a556750894
    Fixing issue https://code.siemens.com/infosec-pss-gov/security-crafter-baseline-automations/ansible-lockdown/rhel9-cis/-/issues/41. Tomuta, Diana Maria (T CST SCC-RO) 2025-07-03 13:03:08 +03:00
  • eaf5294c1e
    Merge pull request #38 from ansible-lockdown/benchmark_v2.0.0 jjoympg 2025-07-02 11:44:35 -04:00
  • 25b4bb780c
    Merge pull request #355 from ansible-lockdown/devel 2.0.2 jjoympg 2025-07-02 10:50:59 -04:00
  • 55744fe599
    Fixing documentation of the vars. Tomuta, Diana Maria (T CST SCC-RO) 2025-07-02 13:48:17 +03:00
  • 1bdef212bd
    Apply latest public fixes benchmark_v2.0.0 Mark Bolwell 2025-07-02 10:47:56 +01:00
  • 182e07a63f
    Merge pull request #354 from davidalexander83/devel uk-bolly 2025-07-02 10:22:20 +01:00
  • 7ec2c9bf5e
    Fix re.error due to (?i) not at start of re davidalexander83 2025-07-02 12:32:20 +10:00
  • cf8581fb03
    Merge pull request #36 from ansible-lockdown/benchmark_v2.0.0 uk-bolly 2025-07-01 16:59:02 +01:00
  • 0f5f3ee19b
    Merge pull request #37 from ansible-lockdown/rule_6.3.3.5_update jjoympg 2025-07-01 10:17:54 -04:00
  • b8ed2dfdac
    updated Mark Bolwell 2025-07-01 09:37:25 +01:00
  • 2142934148
    updated 6.3.3.5 Mark Bolwell 2025-07-01 09:29:08 +01:00
  • 968e7783d0
    Merge pull request #35 from ansible-lockdown/fix_5.2.4 Fred W. 2025-06-27 16:58:20 -04:00
  • 874890ee40
    Update site.yml hosts logic Frederick Witty 2025-06-27 12:06:18 -04:00
  • 0ee2de5e20
    Addresses #318 - Thank you @kodebach & @bgro Frederick Witty 2025-06-27 12:04:29 -04:00
  • d8af4747d4
    Merge pull request #353 from ansible-lockdown/fix_5.2.4 Fred W. 2025-06-27 11:54:19 -04:00
  • ac276f34fc
    ChangeLog versioning fix Frederick Witty 2025-06-27 11:15:19 -04:00
  • 23338ccd31
    Addresses #318 - Thank you @kodebach & @bgro Frederick Witty 2025-06-27 11:12:07 -04:00
  • 16179a658b
    Merge pull request #352 from ansible-lockdown/pre-commit-ci-update-config Fred W. 2025-06-27 09:13:10 -04:00
  • ed699a50ba
    Fixing issue https://code.siemens.com/infosec-pss-gov/security-crafter-baseline-automations/ansible-lockdown/rhel9-cis/-/issues/43 . Diana-Maria Dumitru 2025-06-26 13:35:51 +03:00
  • 5ed6abd5d3
    Fixing issue https://code.siemens.com/infosec-pss-gov/security-crafter-baseline-automations/ansible-lockdown/rhel9-cis/-/issues/42 . Tomuta, Diana Maria (T CST SCC-RO) 2025-06-26 13:29:42 +03:00
  • fc2f5895ce
    [pre-commit.ci] pre-commit autoupdate pre-commit-ci[bot] 2025-06-23 17:27:59 +00:00
  • 0efd92e2a3
    Merge pull request #31 from ansible-lockdown/JUNE2025QA Fred W. 2025-06-23 08:36:55 -04:00
  • 383822d107
    Merge pull request #33 from ansible-lockdown/audit_only_fetch uk-bolly 2025-06-20 14:41:34 +02:00
  • 48fd578ee1
    Merge pull request #351 from ansible-lockdown/audit_only_fetch uk-bolly 2025-06-20 14:41:15 +02:00
  • 37f4d0c9f0
    fixed crypto logic Mark Bolwell 2025-06-20 12:15:13 +01:00
  • 9db79097f9
    fixed crypto logic Mark Bolwell 2025-06-20 12:14:14 +01:00
  • 82cc458d7a
    Fix logic and notes for in crypto policy building Mark Bolwell 2025-06-20 11:32:31 +01:00
  • bd1547313a
    Fix logic and notes for in crypto policy building Mark Bolwell 2025-06-20 11:28:19 +01:00
  • 055cb35603
    Merge branch 'devel' into audit_only_fetch uk-bolly 2025-06-20 11:21:28 +02:00
  • aaea8352de
    updated Mark Bolwell 2025-06-19 16:33:29 +01:00
  • 379b184554
    added changed_when to fix false warning errors Mark Bolwell 2025-06-19 16:32:20 +01:00
  • d2de2783a8
    added ability to fetch audit and update title Mark Bolwell 2025-06-19 16:31:37 +01:00
  • 3dfa4f7e86
    Merge pull request #348 from ansible-lockdown/root_user_check uk-bolly 2025-06-19 17:28:45 +02:00
  • 72dfe581e9
    updated Mark Bolwell 2025-06-19 16:27:53 +01:00
  • 515d5c3bf7
    added changed_when to resolve false warning message Mark Bolwell 2025-06-19 16:26:48 +01:00
  • 908ac57db7
    enabled fetch report and updated title Mark Bolwell 2025-06-19 16:26:01 +01:00
  • 942870f78d update: change insertafter by insertbefore for MISC. LOG SETTINGS chrispipo 2025-06-18 08:37:22 +00:00
  • 3be331c0d2
    Merge pull request #32 from ansible-lockdown/June25_align Fred W. 2025-06-17 09:33:09 -04:00
  • acacb7a6bc
    QA Fixes Frederick Witty 2025-06-16 17:18:08 -04:00
  • 38a173546c
    Update auditd with check_mode Frederick Witty 2025-06-16 16:49:36 -04:00
  • b38e7d06eb
    var fixes for 1.1.2.3.x and 1.1.2.4.x Frederick Witty 2025-06-16 15:14:08 -04:00
  • 6ced990430
    Update handler naming change_requires_reboot to set reboot required Frederick Witty 2025-06-16 14:58:21 -04:00
  • 7e5fb97b9a
    updated Mark Bolwell 2025-06-16 17:23:28 +01:00
  • 3ea5b92259
    updated Mark Bolwell 2025-06-16 17:22:31 +01:00
  • 3173b74481
    updated grep command 1.3.1.6 Mark Bolwell 2025-06-16 17:21:45 +01:00
  • b65504de6b
    Updated egrep Mark Bolwell 2025-06-16 17:20:40 +01:00
  • f892525a7c
    5.1.10 and 5.1.11 updated variable naming Mark Bolwell 2025-06-16 17:19:18 +01:00
  • 02008339b4
    updated regex Mark Bolwell 2025-06-16 17:18:22 +01:00
  • 2724faf1fc
    50-redhat.conf var naming update Mark Bolwell 2025-06-16 17:17:00 +01:00
  • 1537bf72df
    5-redhat.conf var naming Mark Bolwell 2025-06-16 17:16:26 +01:00
  • 2eb85294c8
    Updated conditionals for audit steps Mark Bolwell 2025-06-16 17:15:42 +01:00
  • ce3ae8361e
    Updated logic for root password check Mark Bolwell 2025-06-16 17:14:58 +01:00
  • 6770e5a4ff
    added check_mode false to task Mark Bolwell 2025-06-16 17:13:53 +01:00
  • 27c7ec3604
    fixed typos Mark Bolwell 2025-06-16 17:12:21 +01:00
  • 35d0bf9c4b
    updated auditing conditionals Mark Bolwell 2025-06-16 13:19:14 +01:00
  • ca14eeb147
    updated Mark Bolwell 2025-06-16 10:18:26 +01:00
  • 27dc592c12
    Merge pull request #343 from polski-g/auditd_check_mode uk-bolly 2025-06-16 11:15:30 +02:00
  • 7bef2eda62
    added check_mode false Mark Bolwell 2025-06-16 10:12:27 +01:00
  • 18fc4ea585
    updated conditional var name and regex best practices Mark Bolwell 2025-06-16 10:08:56 +01:00
  • b2308ac310
    fixed typos in logic Mark Bolwell 2025-06-16 10:07:55 +01:00
  • 51b20d383d
    Renamed variable to prelim Mark Bolwell 2025-06-16 10:07:27 +01:00
  • 9f50effd30
    updated logic Mark Bolwell 2025-06-16 10:01:10 +01:00
  • 3a0ee6e9f8
    update 1.3.1.6 log to grep -E Frederick Witty 2025-06-12 15:44:03 -04:00