--- id: V-72199 status: implemented tag: auditd --- Rules are added to audit all ``rename`` syscalls on the system. Deployers can opt out of this change by setting an Ansible variable: .. code-block:: yaml security_rhel7_audit_rename: no This rule is compatible with x86, x86_64, and ppc64 architectures.