ansible-lockdown / UBUNTU22-CIS

Ansible role for Ubuntu22 CIS Baseline
https://ansible-lockdown.readthedocs.io/en/latest/
MIT License
155 stars 68 forks source link

Merge devel to main for release #167

Closed uk-bolly closed 8 months ago

uk-bolly commented 8 months ago

Overall Review of Changes:

Many updates precommit lint workflows issues and PRs

Issue Fixes: thanks to @bgro

131

148

thanks to @tomi-bigpi

123

thanks to @jovial

132

thanks to @paulquevedojdrf

135

136

thanks to @zac90

138

139

140

141

142

143

145

thanks to @dderemiah

146

thanks to @lozzolloz

151

153

154

PRs

107

108

109

110

113

116

118

119

Enhancements: Huge thanks to the discord community Thanks to @loz for all the testing and feedback

1.7.1 added dymamic check to audit 4.1.4.1 & 4.1.4.5 improved logic ssh default groups emptied bootloader password default now false and improved test audit updates for documentation 1.1.1.2 conditional logic improvement 4.2.3 ensure checking for hidden logfiles sshd ciphers/macs/kex all now lists to allow greater testing correction to cis level section 6.1 mode updates @Petri and @Loz for all the testing on this partcular issue

rule 5.4.2 logic and extra variables added in defaults/main.yml

How has this been tested?: Many times manually and pipelines during PRs