ansible-lockdown / UBUNTU22-CIS

Ansible role for Ubuntu22 CIS Baseline
https://ansible-lockdown.readthedocs.io/en/latest/
MIT License
155 stars 68 forks source link

improves command collection to match CIS bench #189

Closed dderemiah closed 5 months ago

dderemiah commented 5 months ago

Overall Review of Changes: Changes the collection of executable's to include snap

Issue Fixes: Replaces the collection of executable files to match the CIS benchmark procedure.

Enhancements: Typically scanners will pickup snapd executable's but ALD has been ignoring them. Most audit scanners should pass 4.1.3 now

How has this been tested?: tested locally