ansible-hardening/doc/metadata/rhel7/RHEL-07-030512.rst
Major Hayden 1335d0b0df [Docs] Audit rules
This patch adds documentation for the audit rule changes found in:

  https://review.openstack.org/395783

Implements: blueprint security-rhel7-stig
Change-Id: I7e30f10fa0a80824cca70c6a4d77488d28573f92
2016-11-10 19:31:31 +00:00

15 lines
274 B
ReStructuredText

---
id: RHEL-07-030512
status: implemented
tag: auditd
---
The tasks add a rule to auditd that logs each time the ``gpasswd`` command
is used.
Deployers can opt-out of this change by setting an Ansible variable:
.. code-block:: yaml
security_rhel7_audit_gpasswd: no