Mark Bolwell
2de8a39cdc
updated yamllint, company naming, linting and spacing
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-12-04 12:00:12 +00:00
Mark Bolwell
f02a9d442f
added system account enhancement 5.4.2.7 thanks to @Thulium-Drake
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-11-11 17:35:12 +00:00
Mark Bolwell
879d9c9a1b
lint and var renaming
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-11-04 18:39:01 +00:00
Mark Bolwell
7c4c3f9e4d
renamed variable and updated tag
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-09-06 14:49:41 +01:00
Mark Bolwell
14d038e8eb
renamed variables
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-09-05 17:36:07 +01:00
Mark Bolwell
c58c4eb4e8
fixed 5.2.4
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-09-05 16:04:47 +01:00
Mark Bolwell
671ba154e7
linting updates
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-08-09 13:47:38 +01:00
Mark Bolwell
265423eb0a
improved tests and updated
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-08-09 13:13:17 +01:00
Mark Bolwell
565ef20715
updated authselect logic
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-08-08 11:08:09 +01:00
Mark Bolwell
9598139f4c
Add handler
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-08-08 11:07:16 +01:00
Mark Bolwell
d5b688caac
Improved logic for crypto policy additions
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-08-07 14:05:59 +01:00
Mark Bolwell
0fc418a222
v2 improvements
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-08-07 10:29:03 +01:00
Mark Bolwell
abc363f3b3
Initial
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-08-06 17:29:06 +01:00
Mark Bolwell
64abf8c475
removed files not required
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-08-06 17:28:57 +01:00
Mark Bolwell
9755b0fb62
section 5 v2 initial
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-07-24 14:00:45 +01:00
Mark Bolwell
06e96ba769
improvements
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-06-05 23:57:18 +01:00
Mark Bolwell
49296c34a2
tidy up spacing
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-06-05 17:11:17 +01:00
Mark Bolwell
5595097e78
Allowed force for command 5.4.2
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-06-05 09:52:51 +01:00
Mark Bolwell
60a9000dda
Address #191
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-06-05 09:46:14 +01:00
Mark Bolwell
bd7c4e3da2
improved tests based upon #190 thanks to @ipruteanu-sie
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-06-05 08:01:17 +01:00
Mark Bolwell
21e0bc8387
added PR details #193 thanks to @brakkio86
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-06-04 17:53:12 +01:00
uk-bolly
f8fcfe0e78
April_24 updates ( #201 )
...
* Issue #170 , PR #181 thanks to @ipruteanu-sie
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* issue #182 , PR #183 thansk to @ipruteanu-sie
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* PR #180 thanks to @ipruteanu-sie and @raabf
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* Addressed PR #165 thanks to @ipruteanu-sie
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* PT #184 addressed thansk to @ipruteanu-sie
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* updated credits
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* typo and ssh allow_deny comments
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* enable OS check
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* PR - #198 addressed thanks to @brakkio86
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* Addressed issue #190
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* Additional vars for issue #190
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* updated pre-commit version
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* consistent quotes around mode
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* moved audit added discoveries
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* removed unneeded vars
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* audit moved to prelim
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* tidy up
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* improved new variable usage
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* fixed logic 6.2.10
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* addressed #197 thanks to @mark-tomich
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* updates for audit section
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* fixed naming
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
* added prelim to includes
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
---------
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-04-15 14:02:07 +01:00
uk-bolly
7d7b6132f4
March 24 to devel ( #186 )
...
* Issue #170 , PR #181 thanks to @ipruteanu-sie
* issue #182 , PR #183 thansk to @ipruteanu-sie
* PR #180 thanks to @ipruteanu-sie and @raabf
* Addressed PR #165 thanks to @ipruteanu-sie
* PT #184 addressed thansk to @ipruteanu-sie
* updated credits
* typo and ssh allow_deny comments
* enable OS check
---------
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2024-03-06 16:52:38 +00:00
Bas Meijer
cc7f9ccfd0
X11Forwarding found in /etc/ssh/sshd_config.d/50-redhat.conf
...
Signed-off-by: Bas Meijer <bas.meijer@me.com>
2024-02-10 00:43:17 +01:00
Bas Meijer
baf8987a5f
PermitRootLogin found in /etc/ssh/sshd_config.d/01-permitrootlogin.conf
...
Signed-off-by: Bas Meijer <bas.meijer@me.com>
2024-02-10 00:43:17 +01:00
uk-bolly
902956e51d
Merge pull request #151 from sickbock/devel
...
Corrections to tags and a variable
2024-01-26 12:37:20 +00:00
uk-bolly
ac5eee81df
Merge pull request #112 from siemens/siemens/feat/ensure_default_umask_027_5_6_5
...
Adding new entry in /etc/pam.d/system-auth
2024-01-26 12:32:45 +00:00
Joachim la Poutré
3b256ff831
Update cis_5.6.1.x.yml
...
Corrected tag: rule_5.6.1.5
Signed-off-by: Joachim la Poutré <14360383+sickbock@users.noreply.github.com>
2024-01-03 11:16:20 +01:00
Joachim la Poutré
712b8b6ecd
Update cis_5.6.1.x.yml
...
Corrected tag: rule_5.6.1.1
Signed-off-by: Joachim la Poutré <14360383+sickbock@users.noreply.github.com>
2024-01-03 11:15:11 +01:00
uk-bolly
e545b89c7b
Merge pull request #145 from siemens/siemens/feat/5.4.2_addVarUsage
...
Using rhel9cis_authselect['options'], otherwise not used at all
2023-12-21 08:39:48 +00:00
Ionut Pruteanu
c19e350b7d
Using rhel9cis_authselect['options'], otherwise not used at all
...
Signed-off-by: Ionut Pruteanu <ionut.pruteanu@siemens.com>
2023-12-08 16:44:30 +02:00
Senih
cce2b25d80
Update cis_5.6.1.x.yml
...
Typo fixed from:
- rule_5.5.1.3
to:
- rule_5.6.1.3
Signed-off-by: Senih <40578755+senihucar@users.noreply.github.com>
2023-11-23 12:02:37 -08:00
root@DERVISHx
c6a51ad38a
Adding new entry in /etc/pam.d/system-auth
...
Signed-off-by: root@DERVISHx <nuno.carvalho@siemens.com>
2023-11-10 15:28:12 +00:00
Mark Bolwell
729fac3580
updated 5.6.5
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-09-22 08:44:43 +01:00
Mark Bolwell
e82b2cefac
quoted file mode
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-09-21 16:25:59 +01:00
Mark Bolwell
580ee762ee
fix filename
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-09-21 15:35:35 +01:00
Mark Bolwell
c5ed197e03
import_tasks file added
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-09-21 15:07:52 +01:00
Mark Bolwell
a67a484971
import_tasks file added
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-09-21 14:55:55 +01:00
Mark Bolwell
b631459e9b
fix typo in bashrc path
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-07-28 15:09:52 +01:00
Mark Bolwell
81b2f06dab
updated 5.6.5 logic
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-07-26 17:17:45 +01:00
Mark Bolwell
a791c81cf2
5.5.3 fix and update
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-07-26 11:42:21 +01:00
Mark Bolwell
ddec58c419
#66 5.6.5 regex improvment
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-06-28 10:49:55 +01:00
Mark Bolwell
2da0d870c8
#57
...
great catch
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-05-16 11:56:07 +01:00
Mark Bolwell
195e42e3ea
removed line and updated requirement #53
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-05-16 08:52:45 +01:00
Mark Bolwell
7c09b264a1
fixed layout
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-05-16 08:52:18 +01:00
Jay Olinares
7f9b45cea3
tags added
...
Signed-off-by: Jay Olinares <jay.olinares@gmail.com>
2023-05-12 12:46:50 +10:00
Jay Olinares
2317abd1d2
fix https://github.com/ansible-lockdown/RHEL9-CIS/issues/58
...
Signed-off-by: Jay Olinares <jay.olinares@gmail.com>
2023-05-04 11:37:57 +10:00
Jay Olinares
fb4216be9f
use var values for pam_faillock
...
Signed-off-by: Jay Olinares <jay.olinares@gmail.com>
2023-04-15 22:21:53 +10:00
Marcin Dulinski
74e96cedd3
Fix system accounts
...
Signed-off-by: Marcin Dulinski <marcin.dulinski@g.network>
2023-03-17 14:39:07 +00:00
Mark Bolwell
868e74bbf4
issue 41 5.3.7 tasks
...
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-13 09:44:51 +00:00