forked from ansible-lockdown/RHEL9-CIS
updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
This commit is contained in:
parent
efdcb0b6f5
commit
f808f30173
24 changed files with 769 additions and 923 deletions
26
tasks/section_2/cis_2.4.yml
Normal file
26
tasks/section_2/cis_2.4.yml
Normal file
|
|
@ -0,0 +1,26 @@
|
|||
---
|
||||
|
||||
- name: "2.4 | AUDIT | Ensure nonessential services are removed or masked"
|
||||
block:
|
||||
- name: "2.4 | AUDIT | Ensure nonessential services are removed or masked | Get list of services"
|
||||
shell: systemctl list-units --type=service
|
||||
changed_when: false
|
||||
failed_when: false
|
||||
check_mode: no
|
||||
register: rhel8cis_2_4_services
|
||||
|
||||
- name: "2.4 | AUDIT | Ensure nonessential services are removed or masked | Display list of services"
|
||||
debug:
|
||||
msg:
|
||||
- "Alert! Below are the list of services, both active and inactive"
|
||||
- "Please review to make sure all are essential"
|
||||
- "{{ rhel8cis_2_4_services.stdout_lines }}"
|
||||
when:
|
||||
- rhel8cis_rule_2_4
|
||||
tags:
|
||||
- level1-server
|
||||
- level1-workstation
|
||||
- manual
|
||||
- audit
|
||||
- services
|
||||
- rule_2.4
|
||||
Loading…
Add table
Add a link
Reference in a new issue