4
0
Fork 0
Commit graph

122 commits

Author SHA1 Message Date
Mark Bolwell
1d96539637
Exentsion to auditd
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-10-14 12:29:06 +01:00
Mark Bolwell
e764ef55d5
lint updates
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-10-14 12:14:03 +01:00
Mark Bolwell
2491357136
Added login.defs 5.6.5
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-10-14 12:09:30 +01:00
Kristian
fc407f8329
tss user and spacing
Signed-off-by: Kristian <kris9854@gmail.com>
2022-09-27 17:15:49 +02:00
Mark Bolwell
cdf8bab1ed
removed unnecessary register
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-09-16 15:48:13 +01:00
Mark Bolwell
cc2f734d57
line tidy up
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-09-16 15:47:55 +01:00
Mark Bolwell
226f2bc9b9
removed unnecessary become
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-09-16 15:47:38 +01:00
Mark Bolwell
0d155c4182
lint updates
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-09-16 14:08:16 +01:00
Mark Bolwell
3df35e03a0
lint updates
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-09-16 11:34:42 +01:00
Mark Bolwell
1992eea6da
lint updates
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-09-16 11:19:01 +01:00
Mark Bolwell
33340c7487
lint updates
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-09-16 11:10:31 +01:00
Mark Bolwell
1e22c13794
linting
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-09-16 11:04:19 +01:00
Mark Bolwell
e4bf188383
Added Assertion for passwd set on ansible user
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-09-07 13:35:36 +01:00
Mark Bolwell
4705e361bf
All passwords are expired during hardening #22
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-08-23 12:21:39 +01:00
Mark Bolwell
f45bbd6ee8
#21 user accts locked during user exec
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-08-23 12:21:11 +01:00
Mark Bolwell
c697431c00
Aded comments to each control for auditd
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-29 18:35:54 +01:00
Mark Bolwell
866eafc593
Added warning to reboot required
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-29 18:28:17 +01:00
Mark Bolwell
b842c47cd2
line spacing fixed
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-29 18:27:55 +01:00
Mark Bolwell
c0ece7f57f
fix warn consistent missing '
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-29 18:27:24 +01:00
Mark Bolwell
084e6c6760
moved some controls to handlers
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-29 17:08:38 +01:00
Mark Bolwell
69f453902f
updated 1.6.1.2
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-26 10:03:44 +01:00
Mark Bolwell
3c66b3f83c
updated rule
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-25 15:25:39 +01:00
Mark Bolwell
d3f2677fd5
new control option due to space on auditing
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-25 14:53:05 +01:00
Mark Bolwell
595b952089
tidy up ttle
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-25 14:52:48 +01:00
Mark Bolwell
6777a88719
fix logic in warning
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-25 14:52:26 +01:00
Mark Bolwell
e6191de7ed
fix logic in warning
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-25 13:26:29 +01:00
Mark Bolwell
77a73ddcae
tidy up warning message
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-25 11:28:50 +01:00
Mark Bolwell
28bbc2ff5f
1.2.2 rpm gpg key check
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-25 11:26:27 +01:00
Mark Bolwell
ba791f5494
added jounald to syslog type
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-20 17:13:47 +01:00
Mark Bolwell
6b6a4a32c8
added warning count
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-07-20 17:13:33 +01:00
Mark Bolwell
cf6e08c390
added legacy mount check again
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-21 14:16:58 +01:00
Mark Bolwell
4336bbf6b6
auditd, sysctl, become tidy up
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-20 17:07:39 +01:00
Mark Bolwell
b934cbef3f
suditd improvements
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-20 17:06:56 +01:00
Mark Bolwell
1dd2b46be6
logrotate process update
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-20 17:06:41 +01:00
Mark Bolwell
97a6a61997
container var usage
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-20 17:06:16 +01:00
Mark Bolwell
c3c668bb8e
crypto idempotency
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-20 17:04:44 +01:00
Mark Bolwell
b0e038bd45
container var usage improvement
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-20 17:03:45 +01:00
Mark Bolwell
33ebfea653
sysctl control improvements
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-20 17:03:18 +01:00
Mark Bolwell
fb1c6e9232
added libselinux requirement
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-17 11:24:14 +01:00
Mark Bolwell
91da6ffaa2
updated testing
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-17 11:23:57 +01:00
Mark Bolwell
c0c24ec8ef
improved test with idempotency
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-17 11:23:44 +01:00
Mark Bolwell
2090cc4a45
not required file
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-07 10:07:26 +01:00
Mark Bolwell
2c4718fb75
fix title
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-06-07 10:07:19 +01:00
Mark Bolwell
93e3f7bf46
conditional and warning msg std
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-05-11 11:20:12 +01:00
Mark Bolwell
2ecc61649e
Std Warning msg
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-05-11 11:19:50 +01:00
Mark Bolwell
cbb5ff7cc2
Added git install to step
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-05-11 11:19:33 +01:00
Mark Bolwell
9368c1e17e
updated for rh9
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-05-11 09:57:44 +01:00
Mark Bolwell
5ce4b873d7
removed rh8 checks
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-05-11 09:57:33 +01:00
Mark Bolwell
63c82f8305
Removed python 2/3 checks for rh7/8
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2022-05-11 09:42:31 +01:00
Adam Lewandowski
b9a3e3d2c6 Fix UMASK hardening
Signed-off-by: Adam Lewandowski <adam.lewandowski@plxis.com>
2022-05-09 14:12:41 -04:00