mirror of
https://github.com/dev-sec/linux-baseline
synced 2025-02-17 02:08:23 +00:00
Merge pull request #33 from rndmh3ro/improve_tests
Improve Ansible tests
This commit is contained in:
commit
ba0d33e343
1 changed files with 16 additions and 0 deletions
|
@ -1,4 +1,20 @@
|
||||||
---
|
---
|
||||||
|
- name: wrapper playbook for kitchen testing "ansible-os-hardening" with custom vars for testing
|
||||||
|
hosts: localhost
|
||||||
|
roles:
|
||||||
|
- ansible-os-hardening
|
||||||
|
vars:
|
||||||
|
os_security_users_allow: change_user
|
||||||
|
os_security_kernel_enable_core_dump: true
|
||||||
|
os_security_suid_sgid_remove_from_unknown: true
|
||||||
|
os_auth_pam_passwdqc_enable: false
|
||||||
|
os_desktop_enable: true
|
||||||
|
os_env_extra_user_paths: ['/home']
|
||||||
|
os_auth_allow_homeless: true
|
||||||
|
os_security_kernel_enable_core_dump: true
|
||||||
|
os_security_suid_sgid_blacklist: ['/bin/umount']
|
||||||
|
os_security_suid_sgid_whitelist: ['/usr/bin/rlogin']
|
||||||
|
|
||||||
- name: wrapper playbook for kitchen testing "ansible-os-hardening"
|
- name: wrapper playbook for kitchen testing "ansible-os-hardening"
|
||||||
hosts: localhost
|
hosts: localhost
|
||||||
roles:
|
roles:
|
||||||
|
|
Loading…
Add table
Reference in a new issue