4
0
Fork 0
Commit graph

476 commits

Author SHA1 Message Date
Marcin Dulinski
74e96cedd3
Fix system accounts
Signed-off-by: Marcin Dulinski <marcin.dulinski@g.network>
2023-03-17 14:39:07 +00:00
uk-bolly
7dd21ee96b
Merge pull request #42 from ansible-lockdown/issues_40_41
Issues 40 41
2023-03-13 14:15:37 +00:00
Mark Bolwell
181002c23b
added benchamrk audit validation
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-13 14:04:38 +00:00
Mark Bolwell
dca936a283
updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-13 10:24:08 +00:00
Mark Bolwell
5a584e3ad7
updated audit template
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-13 10:20:02 +00:00
Mark Bolwell
8369b9a1e4
updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-13 09:48:52 +00:00
Mark Bolwell
95637e935d
updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-13 09:48:15 +00:00
Mark Bolwell
67f7c44ca8
tidy up control not required
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-13 09:45:26 +00:00
Mark Bolwell
868e74bbf4
issue 41 5.3.7 tasks
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-13 09:44:51 +00:00
Mark Bolwell
1a466b7eb7
updated caps typo
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-13 08:43:12 +00:00
Mark Bolwell
200c924655
fixed varaibles naming for tmp mount opts
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-12 14:11:01 +00:00
uk-bolly
cd66d451db
Merge pull request #37 from ansible-lockdown/auditd_improvements
Auditd improvements, workflow updates Oracle Support
2023-03-10 16:19:17 +00:00
Mark Bolwell
0a863c5848
updated comments
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-10 15:20:30 +00:00
Mark Bolwell
945fe54fe4
updated comments
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-10 15:19:52 +00:00
Mark Bolwell
5e5174a5b0
updated marker
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-10 15:19:35 +00:00
Mark Bolwell
ebdb8b9129
Updated layout
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-10 15:08:12 +00:00
Mark Bolwell
b170c4ac73
fix typo
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-10 10:13:26 +00:00
Mark Bolwell
599c6db3e1
fix typo
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-10 08:18:18 +00:00
Mark Bolwell
de2896ed73
updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-07 11:03:04 +00:00
Mark Bolwell
5a928b4304
Issue #38 thanks to bdwyertech
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-07 11:02:15 +00:00
Mark Bolwell
5984829b47
Oracle Support added
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-06 11:54:00 +00:00
Mark Bolwell
58122f2fee
updated layout
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-06 11:51:41 +00:00
Mark Bolwell
e04da88df4
Added OracleLinux support
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-06 11:22:08 +00:00
Mark Bolwell
3de7cd2f56
use new variable gpg_key_variable
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-06 11:21:33 +00:00
Mark Bolwell
c061a35b31
created new gpg_key_package variable
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-06 11:21:08 +00:00
Mark Bolwell
a307da2ab2
updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-01 10:17:46 +00:00
Mark Bolwell
03e4b0e57f
variable naming
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-01 10:17:37 +00:00
Mark Bolwell
58d3bb4e41
updated var naming
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-01 09:17:38 +00:00
Mark Bolwell
b88dca6954
updated warning for template updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-03-01 09:10:39 +00:00
Mark Bolwell
37f0eec4d4
Added audit template change warn control
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-28 14:28:48 +00:00
Mark Bolwell
0ab1bdd120
updated
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-28 08:01:57 +00:00
Mark Bolwell
f6b3e9b9e2
moved to default audit version
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-27 17:49:40 +00:00
Mark Bolwell
13705f1d12
added skip to 5.6.6 root passwd check
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-27 17:39:21 +00:00
Mark Bolwell
c119a8074f
removed urandom work
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-27 17:39:07 +00:00
Mark Bolwell
7459f1d445
idempontency improvements
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-27 17:26:34 +00:00
Mark Bolwell
969ee917ba
#36 thanks to @fahadysf
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-27 17:26:15 +00:00
Mark Bolwell
e0a490e1d5
Added POST to name
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-27 17:25:45 +00:00
Mark Bolwell
52a293e9a1
removed register
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-27 17:25:32 +00:00
uk-bolly
a58e3ff0d6
Merge pull request #35 from ansible-lockdown/issues_30_and_34
Issues 30 and 34
2023-02-22 11:46:12 +00:00
Mark Bolwell
80168bc6d4
update urandom check again
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-20 14:44:00 +00:00
Mark Bolwell
b9b283fd52
added fix for issue #30
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-20 14:16:15 +00:00
Mark Bolwell
a28c0531ee
align audit release
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-20 14:02:49 +00:00
Mark Bolwell
f9239d7a8a
updated for issue #30
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-20 11:32:26 +00:00
Mark Bolwell
642e89b20d
added issue 30 fix
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-20 11:32:03 +00:00
Mark Bolwell
a14e9c5dbe
#30 thanks to @smatterchew sshd config file dropin ability
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-20 11:31:46 +00:00
uk-bolly
2b906aa3a6
Merge pull request #33 from ansible-lockdown/rule_6_2_16
new option to 6_2_16 not follow symlinks
2023-02-20 11:07:01 +00:00
Mark Bolwell
155a6016e5
updated workflow
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-15 10:00:01 +00:00
Mark Bolwell
ca4d8764ee
updated changedlog
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-14 09:12:13 +00:00
Mark Bolwell
e5ce163fcf
new option to 6_2_16 not follow symlinks
Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
2023-02-14 08:54:21 +00:00
uk-bolly
32e795d68d
Merge pull request #31 from ansible-lockdown/CIS_v1.0.0
Release for official Cis v1.0.0
2023-02-01 13:42:45 +00:00