This role contains around 150 controls from the 270+ controls that exist in the RHEL 6 STIG. New controls are still being added. Implements: blueprint security-hardening Change-Id: I0578f86bf42d55242bc72b97b40a5935a3cb18d6
6 lines
280 B
ReStructuredText
6 lines
280 B
ReStructuredText
Making adjustments to PAM configuration can be **very dangerous** for a
|
|
production system, so the Ansible task runs a check for text matching
|
|
``nullok`` in ``/etc/pam.d/common-auth`` (different than
|
|
``/etc/pam.d/system-auth`` found in RHEL 6) and prints a warning if it is
|
|
found.
|