ansible-hardening/doc/metadata/rhel7/V-72153.rst

267 B

---id: V-72153 status: implemented tag: auditd ---

The tasks add a rule to auditd that logs each time the gpasswd command is used.

Deployers can opt-out of this change by setting an Ansible variable:

security_rhel7_audit_gpasswd: no