Major Hayden bfcf6c7423 Initial import of openstack-ansible-security role
This role contains around 150 controls from the 270+ controls that exist
in the RHEL 6 STIG. New controls are still being added.

Implements: blueprint security-hardening

Change-Id: I0578f86bf42d55242bc72b97b40a5935a3cb18d6
2015-10-07 07:27:39 -05:00

293 B

The RHEL 6 STIG requires that changes to SELinux policies and configuration are audited. However, Ubuntu's preference for Mandatory Access Control (MAC) is AppArmor and openstack-ansible configures AppArmor by default.

This requirement has been modified to fit AppArmor on an Ubuntu system.