Files
ansible-hardening/doc/source/developer-notes/V-38497.rst
Major Hayden bfcf6c7423 Initial import of openstack-ansible-security role
This role contains around 150 controls from the 270+ controls that exist
in the RHEL 6 STIG. New controls are still being added.

Implements: blueprint security-hardening

Change-Id: I0578f86bf42d55242bc72b97b40a5935a3cb18d6
2015-10-07 07:27:39 -05:00

6 lines
280 B
ReStructuredText

Making adjustments to PAM configuration can be **very dangerous** for a
production system, so the Ansible task runs a check for text matching
``nullok`` in ``/etc/pam.d/common-auth`` (different than
``/etc/pam.d/system-auth`` found in RHEL 6) and prints a warning if it is
found.