forked from ansible-lockdown/RHEL9-CIS
removed args
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
This commit is contained in:
parent
793b1e1666
commit
bcc5922832
1 changed files with 0 additions and 4 deletions
|
|
@ -4,8 +4,6 @@
|
||||||
block:
|
block:
|
||||||
- name: "6.1.1 | AUDIT | Audit system file permissions | Audit the packages"
|
- name: "6.1.1 | AUDIT | Audit system file permissions | Audit the packages"
|
||||||
shell: rpm -Va --nomtime --nosize --nomd5 --nolinkto
|
shell: rpm -Va --nomtime --nosize --nomd5 --nolinkto
|
||||||
args:
|
|
||||||
warn: false
|
|
||||||
changed_when: false
|
changed_when: false
|
||||||
failed_when: false
|
failed_when: false
|
||||||
register: rhel9cis_6_1_1_packages_rpm
|
register: rhel9cis_6_1_1_packages_rpm
|
||||||
|
|
@ -48,8 +46,6 @@
|
||||||
|
|
||||||
- name: "6.1.2 | PATCH | Ensure sticky bit is set on all world-writable directories"
|
- name: "6.1.2 | PATCH | Ensure sticky bit is set on all world-writable directories"
|
||||||
shell: df --local -P | awk {'if (NR!=1) print $6'} | xargs -I '{}' find '{}' -xdev -type d -perm -0002 2>/dev/null | xargs chmod a+t
|
shell: df --local -P | awk {'if (NR!=1) print $6'} | xargs -I '{}' find '{}' -xdev -type d -perm -0002 2>/dev/null | xargs chmod a+t
|
||||||
args:
|
|
||||||
warn: false
|
|
||||||
changed_when: false
|
changed_when: false
|
||||||
failed_when: false
|
failed_when: false
|
||||||
when:
|
when:
|
||||||
|
|
|
||||||
Loading…
Add table
Add a link
Reference in a new issue