diff --git a/ansible-role-requirements.yml b/ansible-role-requirements.yml index cbb8870ab9..be57215b11 100644 --- a/ansible-role-requirements.yml +++ b/ansible-role-requirements.yml @@ -1,7 +1,7 @@ - name: ansible-hardening scm: git src: https://git.openstack.org/openstack/ansible-hardening - version: d1fb76ee4f6417cf1bb965c26c9f31d7ffb719f2 + version: c05e36f48de66feb47046a0126d986fa03313f29 - name: apt_package_pinning scm: git src: https://git.openstack.org/openstack/openstack-ansible-apt_package_pinning diff --git a/group_vars/hosts.yml b/group_vars/hosts.yml index d31cc8f44d..6766276c01 100644 --- a/group_vars/hosts.yml +++ b/group_vars/hosts.yml @@ -29,4 +29,4 @@ stig_version: rhel7 security_rhel7_enable_linux_security_module: "{{ ansible_os_family == 'RedHat' | ternary(false, true) }}" # All our ansible tasks run as root user, we need to allow direct root login -security_sshd_permit_root_login: yes +security_sshd_permit_root_login: 'without-password'