-
Notifications
You must be signed in to change notification settings - Fork 21
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Adds Ubuntu Jammy & Rocky 9 CIS benchmark hardening playbooks #685
Conversation
a7af96c
to
5b57320
Compare
Co-authored-by: "Dawud <[email protected]>"
5b57320
to
d040e09
Compare
Co-authored-by: Michał Nasiadka <[email protected]>
@technowhizz pointed out that we might need: https://github.com/ansible-lockdown/RHEL9-CIS/blob/9fa57a2b41bfefb0f46eb0795333e71480367642/defaults/main.yml#L499-L503 |
Just to note that setting |
Co-authored-by: Matt Crees <[email protected]>
releasenotes/notes/adds-cis-hardening-for-ubuntu-jammy-d9bf23a34c08f5be.yaml
Outdated
Show resolved
Hide resolved
Co-authored-by: Alex-Welsh <[email protected]> Co-authored-by: Mark Goddard <[email protected]> Co-authored-by: Matt Crees <[email protected]>
Did you test it with check/diff mode? |
No, that could be pretty useful though. Will see if my test environment is still on SMS. |
There seems to be a few issues in check mode:
Seems like we need check_mode: true on a few stat tasks. |
Not too surprising. Never mind. |
No description provided.