ansible-lockdown / AMAZON2023-CIS

Ansible role for Amazon2023 CIS Baseline
https://ansible-lockdown.readthedocs.io/en/latest/
MIT License
24 stars 18 forks source link

Some rules from 4.6.1.x are only implemented using /etc/login.defs and not using the chage tool as well #62

Closed DianaMariaDDM closed 5 months ago

DianaMariaDDM commented 6 months ago

Describe the Issue Thanks to the discovery of my colleague @ipruteanu-sie from here. I noticed that the same behavior is present on AL2023 as well.

Expected Behavior The first three rules should be implemented via /etc/login.defs and via the chage tool as CIS suggests.

Actual Behavior The rules are only implemented using /etc/login.defs.

Control(s) Affected

Environment (please complete the following information):

Additional Notes Anything additional goes here

Possible Solution The solution will be provided in a PR.