File tree Expand file tree Collapse file tree 2 files changed +3
-3
lines changed
roles/ansible-os-hardening/tasks Expand file tree Collapse file tree 2 files changed +3
-3
lines changed Original file line number Diff line number Diff line change @@ -11,4 +11,4 @@ install:
1111
1212script :
1313 - ansible-playbook --syntax-check spec/travis.yml
14- - ansible-playbook --sudo -v --diff spec/travis.yml --skip-tags "sysctl"
14+ - ansible-playbook --sudo -v --diff spec/travis.yml --skip-tags "sysctl" --extra-vars "os_security_users_allow=change_user"
Original file line number Diff line number Diff line change 1414 file : dest='/etc/shadow' owner=root group=root mode=0600
1515
1616- name : change su-binary to only be accessible to user and group root
17- file : dest='/bin/su' owner=root group=root mode
18- when : security_users_allow|default(None) != None
17+ file : dest='/bin/su' owner=root group=root mode=0750
18+ when : os_security_users_allow != None
You can’t perform that action at this time.
0 commit comments