ansible-hardening/doc/metadata/rhel7/RHEL-07-010010.rst
Major Hayden 19cfb167e7 [Docs] Add 'only' to clarify status
This patch adds 'only' to the implementation status
for RHEL-07-010010 to make it more clear that the tasks will take
action on CentOS/RHEL only.

Change-Id: I15b53a62817f20a09e684bdde2aaacfa02e63c17
2016-10-31 19:02:24 +00:00

584 B

---id: RHEL-07-010010 status: implemented - red hat only tag: file_perms ---

Note

Ubuntu's debsums command does not support verification of permissions and ownership for files that were installed by packages. This STIG requirement will be skipped on Ubuntu.

The STIG requires that all files owned by an installed package must have their permissions, user ownership, and group ownership set back to the vendor defaults.

Deployers may opt-out of the change by setting the following Ansible variable:

security_reset_perm_ownership: no