mirror of
https://github.com/trailofbits/algo.git
synced 2025-08-14 16:53:01 +02:00
rsyslog moved to the logging role
This commit is contained in:
parent
1adf8c3841
commit
1a7cf1034a
6 changed files with 20 additions and 18 deletions
|
@ -1,2 +1,5 @@
|
||||||
|
- name: restart rsyslog
|
||||||
|
service: name=rsyslog state=restarted
|
||||||
|
|
||||||
- name: restart auditd
|
- name: restart auditd
|
||||||
service: name=auditd state=restarted
|
service: name=auditd state=restarted
|
||||||
|
|
|
@ -1,3 +1,5 @@
|
||||||
|
# Auditd
|
||||||
|
|
||||||
- name: Auditd installed
|
- name: Auditd installed
|
||||||
apt: name=auditd state=latest
|
apt: name=auditd state=latest
|
||||||
|
|
||||||
|
@ -13,3 +15,18 @@
|
||||||
|
|
||||||
- name: Enable services
|
- name: Enable services
|
||||||
service: name=auditd enabled=yes
|
service: name=auditd enabled=yes
|
||||||
|
|
||||||
|
# Rsyslog
|
||||||
|
|
||||||
|
- name: Rsyslog configured
|
||||||
|
template: src=rsyslog.conf.j2 dest=/etc/rsyslog.conf
|
||||||
|
notify:
|
||||||
|
- restart rsyslog
|
||||||
|
|
||||||
|
- name: Rsyslog CIS configured
|
||||||
|
template: src=CIS.conf.j2 dest=/etc/rsyslog.d/CIS.conf owner=root group=root mode=0644
|
||||||
|
notify:
|
||||||
|
- restart rsyslog
|
||||||
|
|
||||||
|
- name: Enable services
|
||||||
|
service: name=rsyslog enabled=yes
|
||||||
|
|
|
@ -1,6 +1,3 @@
|
||||||
- name: restart rsyslog
|
|
||||||
service: name=rsyslog state=restarted
|
|
||||||
|
|
||||||
- name: restart ssh
|
- name: restart ssh
|
||||||
service: name=ssh state=restarted
|
service: name=ssh state=restarted
|
||||||
|
|
||||||
|
|
|
@ -30,21 +30,6 @@
|
||||||
executable: /bin/bash
|
executable: /bin/bash
|
||||||
register: privileged_programs
|
register: privileged_programs
|
||||||
|
|
||||||
# Rsyslog
|
|
||||||
|
|
||||||
- name: Rsyslog configured
|
|
||||||
template: src=rsyslog.conf.j2 dest=/etc/rsyslog.conf
|
|
||||||
notify:
|
|
||||||
- restart rsyslog
|
|
||||||
|
|
||||||
- name: Rsyslog CIS configured
|
|
||||||
template: src=CIS.conf.j2 dest=/etc/rsyslog.d/CIS.conf owner=root group=root mode=0644
|
|
||||||
notify:
|
|
||||||
- restart rsyslog
|
|
||||||
|
|
||||||
- name: Enable services
|
|
||||||
service: name=rsyslog enabled=yes
|
|
||||||
|
|
||||||
# Core dumps
|
# Core dumps
|
||||||
|
|
||||||
- name: Restrict core dumps (with PAM)
|
- name: Restrict core dumps (with PAM)
|
||||||
|
|
Loading…
Add table
Reference in a new issue