bfcf6c7423
This role contains around 150 controls from the 270+ controls that exist in the RHEL 6 STIG. New controls are still being added. Implements: blueprint security-hardening Change-Id: I0578f86bf42d55242bc72b97b40a5935a3cb18d6
33 lines
938 B
YAML
33 lines
938 B
YAML
---
|
|
# Copyright 2015, Rackspace US, Inc.
|
|
#
|
|
# Licensed under the Apache License, Version 2.0 (the "License");
|
|
# you may not use this file except in compliance with the License.
|
|
# You may obtain a copy of the License at
|
|
#
|
|
# http://www.apache.org/licenses/LICENSE-2.0
|
|
#
|
|
# Unless required by applicable law or agreed to in writing, software
|
|
# distributed under the License is distributed on an "AS IS" BASIS,
|
|
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
# See the License for the specific language governing permissions and
|
|
# limitations under the License.
|
|
|
|
- name: V-38581 - Bootloader configuration files must be group-owned by root
|
|
file:
|
|
path: /boot/grub/grub.cfg
|
|
group: root
|
|
tags:
|
|
- boot
|
|
- cat2
|
|
- V-38581
|
|
|
|
- name: V-38582 - Bootloader configuration files must have mode 0644 or less
|
|
file:
|
|
path: /boot/grub/grub.cfg
|
|
mode: 0644
|
|
tags:
|
|
- boot
|
|
- cat2
|
|
- V-38582
|