forked from ansible-lockdown/RHEL9-CIS
updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
This commit is contained in:
parent
dc5f71d461
commit
8c79bfe7fb
25 changed files with 253 additions and 266 deletions
|
|
@ -17,8 +17,8 @@
|
|||
creates: /var/lib/aide/aide.db.gz
|
||||
when: not ansible_check_mode
|
||||
when:
|
||||
- rhel8cis_config_aide
|
||||
- rhel8cis_rule_1_3_1
|
||||
- rhel9cis_config_aide
|
||||
- rhel9cis_rule_1_3_1
|
||||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
|
|
@ -30,16 +30,16 @@
|
|||
- name: "1.3.2 | PATCH | Ensure filesystem integrity is regularly checked"
|
||||
cron:
|
||||
name: Run AIDE integrity check
|
||||
cron_file: "{{ rhel8cis_aide_cron['cron_file'] }}"
|
||||
user: "{{ rhel8cis_aide_cron['cron_user'] }}"
|
||||
minute: "{{ rhel8cis_aide_cron['aide_minute'] | default('0') }}"
|
||||
hour: "{{ rhel8cis_aide_cron['aide_hour'] | default('5') }}"
|
||||
day: "{{ rhel8cis_aide_cron['aide_day'] | default('*') }}"
|
||||
month: "{{ rhel8cis_aide_cron['aide_month'] | default('*') }}"
|
||||
weekday: "{{ rhel8cis_aide_cron['aide_weekday'] | default('*') }}"
|
||||
job: "{{ rhel8cis_aide_cron['aide_job'] }}"
|
||||
cron_file: "{{ rhel9cis_aide_cron['cron_file'] }}"
|
||||
user: "{{ rhel9cis_aide_cron['cron_user'] }}"
|
||||
minute: "{{ rhel9cis_aide_cron['aide_minute'] | default('0') }}"
|
||||
hour: "{{ rhel9cis_aide_cron['aide_hour'] | default('5') }}"
|
||||
day: "{{ rhel9cis_aide_cron['aide_day'] | default('*') }}"
|
||||
month: "{{ rhel9cis_aide_cron['aide_month'] | default('*') }}"
|
||||
weekday: "{{ rhel9cis_aide_cron['aide_weekday'] | default('*') }}"
|
||||
job: "{{ rhel9cis_aide_cron['aide_job'] }}"
|
||||
when:
|
||||
- rhel8cis_rule_1_3_2
|
||||
- rhel9cis_rule_1_3_2
|
||||
- not system_is_ec2
|
||||
tags:
|
||||
- level1-server
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue