forked from ansible-lockdown/RHEL9-CIS
updated include/import tasks
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
This commit is contained in:
parent
3b19db6812
commit
819c942d8f
7 changed files with 86 additions and 70 deletions
|
|
@ -1,41 +1,41 @@
|
|||
---
|
||||
|
||||
- name: "SECTION | 3.1.x | Packet and IP redirection"
|
||||
include: cis_3.1.x.yml
|
||||
include_tasks: cis_3.1.x.yml
|
||||
|
||||
- name: "SECTION | 3.2.x | Network Parameters (Host Only)"
|
||||
include: cis_3.2.x.yml
|
||||
include_tasks: cis_3.2.x.yml
|
||||
|
||||
- name: "SECTION | 3.3.x | Uncommon Network Protocols"
|
||||
include: cis_3.3.x.yml
|
||||
include_tasks: cis_3.3.x.yml
|
||||
|
||||
- name: "SECTION | 3.4.1.x | firewall defined"
|
||||
include: cis_3.4.1.1.yml
|
||||
include_tasks: cis_3.4.1.1.yml
|
||||
|
||||
- name: "SECTION | 3.4.2.x | firewalld firewall"
|
||||
include: cis_3.4.2.x.yml
|
||||
import_tasks: cis_3.4.2.x.yml
|
||||
when:
|
||||
- rhel9cis_firewall == "firewalld"
|
||||
|
||||
- name: "SECTION | 3.4.3.x | Configure nftables firewall"
|
||||
include: cis_3.4.3.x.yml
|
||||
import_tasks: cis_3.4.3.x.yml
|
||||
when:
|
||||
- rhel9cis_firewall == "nftables"
|
||||
|
||||
- name: "SECTION | 3.4.4.1.x | Configure iptables IPv4"
|
||||
include: cis_3.4.4.1.x.yml
|
||||
import_tasks: cis_3.4.4.1.x.yml
|
||||
when:
|
||||
- rhel9cis_firewall == "iptables"
|
||||
|
||||
- name: "SECTION | 3.4.4.2.x | Configure iptables IPv6"
|
||||
include: cis_3.4.4.2.x.yml
|
||||
import_tasks: cis_3.4.4.2.x.yml
|
||||
when:
|
||||
- ( rhel9cis_firewall == "iptables" and rhel9cis_ipv6_required )
|
||||
|
||||
- name: "SECTION | 3.5 | Configure wireless"
|
||||
include: cis_3.5.yml
|
||||
include_tasks: cis_3.5.yml
|
||||
|
||||
- name: "SECTION | 3.5 | disable IPv6"
|
||||
include: cis_3.5.yml
|
||||
import_tasks: cis_3.5.yml
|
||||
when:
|
||||
- not rhel9cis_ipv6_required
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue