@ -117,55 +117,6 @@
- cat2
- V-38582
- name : V-38584 - xinetd must be uninstalled if not in use (apt)
apt:
name : xinetd
state : absent
when:
- ansible_pkg_mgr == 'apt'
- security_remove_xinetd | bool
tags:
- services
- cat3
- V-38584
- name : V-38584 - xinetd must be uninstalled if not in use (yum)
yum:
name : xinetd
state : absent
when:
- ansible_pkg_mgr == 'yum'
- security_remove_xinetd | bool
tags:
- services
- cat3
- V-38584
# Ubuntu's equivalent of Red Hat's ypserv package is 'nis'
- name : V-38603 - Remove ypserv package with apt
apt:
name : "{{ ypserv_pkg }}"
state : absent
when:
- ansible_pkg_mgr == 'apt'
- security_remove_ypserv | bool
tags:
- services
- cat2
- V-38603
- name : V-38603 - Remove ypserv package with yum
yum:
name : "{{ ypserv_pkg }}"
state : absent
when:
- ansible_pkg_mgr == 'yum'
- security_remove_ypserv | bool
tags:
- services
- cat2
- V-38603
- name : V-38605 - The cron service must be running
service:
name : "{{ cron_service }}"
@ -176,30 +127,6 @@
- cat2
- V-38605
- name : V-38606 - The tftp-server package must not be installed unless required (apt)
apt:
name : "{{ tftp_pkg }}"
state : absent
when:
- ansible_pkg_mgr == 'apt'
- security_remove_tftp_server | bool
tags:
- services
- cat2
- V-38606
- name : V-38606 - The tftp-server package must not be installed unless required (yum)
yum:
name : "{{ tftp_pkg }}"
state : absent
when:
- ansible_pkg_mgr == 'yum'
- security_remove_tftp_server | bool
tags:
- services
- cat2
- V-38606
- name : V-38618 - avahi must be disabled
service:
name : avahi-daemon
@ -213,30 +140,6 @@
- cat3
- V-38618
- name : V-38627 - Remove LDAP servers unless required (apt)
apt:
name : "{{ ldap_server_pkg }}"
state : absent
when:
- ansible_pkg_mgr == 'apt'
- security_remove_ldap_server | bool
tags:
- services
- cat3
- V-38627
- name : V-38627 - Remove LDAP servers unless required (yum)
yum:
name : "{{ ldap_server_pkg }}"
state : absent
when:
- ansible_pkg_mgr == 'yum'
- security_remove_ldap_server | bool
tags:
- services
- cat3
- V-38627
- name : V-38650 - rdisc must be disabled
service:
name : rdisc
@ -250,30 +153,6 @@
- cat3
- V-38650
- name : V-38671 - Remove sendmail with apt
apt:
name : sendmail
state : absent
when:
- ansible_pkg_mgr == 'apt'
- security_remove_sendmail | bool
tags:
- services
- cat2
- V-38671
- name : V-38671 - Remove sendmail with yum
yum:
name : sendmail
state : absent
when:
- ansible_pkg_mgr == 'yum'
- security_remove_sendmail | bool
tags:
- services
- cat2
- V-38671
- name : V-38672 - netconsole must be disabled
service:
name : netconsole
@ -286,27 +165,3 @@
- services
- cat3
- V-38672
- name : V-38676 - The X windows package must not be installed (apt)
apt:
name : "{{ xserver_pkg }}"
state : absent
when:
- ansible_pkg_mgr == 'apt'
- security_remove_xorg | bool
tags:
- services
- cat3
- V-38676
- name : V-38676 - The X windows package must not be installed (yum)
yum:
name : "{{ xserver_pkg }}"
state : absent
when:
- ansible_pkg_mgr == 'yum'
- security_remove_xorg | bool
tags:
- services
- cat3
- V-38676