mirror of
https://github.com/dev-sec/ansible-collection-hardening
synced 2024-11-14 02:47:06 +00:00
17 lines
511 B
YAML
17 lines
511 B
YAML
os_packages_pam_ccreds: 'pam_ccreds'
|
|
os_packages_pam_passwdqc: 'pam_passwdqc'
|
|
os_packages_pam_cracklib: 'pam_cracklib'
|
|
os_nologin_shell_path: '/sbin/nologin'
|
|
|
|
# Different distros use different standards for /etc/shadow perms, e.g.
|
|
# RHEL derivatives use root:root 0600, whereas Debian-based use root:shadow 0640.
|
|
# You must provide key/value pairs for owner, group, and mode if overriding.
|
|
os_shadow_perms:
|
|
owner: root
|
|
group: root
|
|
mode: '0600'
|
|
|
|
os_passwd_perms:
|
|
owner: root
|
|
group: root
|
|
mode: '0644'
|