issues
search
ansible-lockdown
/
UBUNTU22-CIS
Ansible role for Ubuntu22 CIS Baseline
https://ansible-lockdown.readthedocs.io/en/latest/
MIT License
155
stars
68
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Fixes a typo that keeps Chr0ny from working
#187
dderemiah
closed
6 months ago
0
Unexpected Deletion of Tanium Configuration Files during CIS Benchmark Application
#186
vivekbangare
closed
2 months ago
2
[pre-commit.ci] pre-commit autoupdate
#185
pre-commit-ci[bot]
closed
6 months ago
0
A value for var: *container_vars_file* is not defined in this role
#184
ipruteanu-sie
closed
2 months ago
2
missing grub check fails when using sysctl
#183
dderemiah
closed
6 months ago
1
5.4.1 | PATCH | Ensure password creation requirements are configured
#182
ma3s7ro
closed
2 months ago
3
Fixing issue https://github.com/ansible-lockdown/UBUNTU22-CIS/issues/180
#181
DianaMariaDDM
closed
5 months ago
3
Task 5.4.3 does not completely implement the settings required by CIS
#180
DianaMariaDDM
closed
2 months ago
2
Devel to main
#179
uk-bolly
closed
7 months ago
0
[pre-commit.ci] pre-commit autoupdate
#178
pre-commit-ci[bot]
closed
7 months ago
0
Audit standalone
#177
uk-bolly
closed
7 months ago
0
added validate to sshd tasks
#176
uk-bolly
closed
7 months ago
0
Allow partial override of the `ubtu22cis_sshd` struct
#175
rostskadat
opened
7 months ago
16
Fix inject_facts_as_vars
#174
jovial
closed
7 months ago
2
fix: #172 checks if ipv6.disable is present in GRUB_CMDLINE_LINUX bef…
#173
Jason-Hendry
closed
7 months ago
1
ipv6.disabled=1 is appended to grub every time it's run
#172
Jason-Hendry
closed
7 months ago
0
[pre-commit.ci] pre-commit autoupdate
#171
pre-commit-ci[bot]
closed
7 months ago
0
Not able to ssh after hardening of Ubuntu OS
#170
vivekbangare
closed
2 months ago
12
Devel to main
#169
uk-bolly
closed
7 months ago
0
Issue update and lint
#168
uk-bolly
closed
7 months ago
0
Merge devel to main for release
#167
uk-bolly
closed
7 months ago
0
fix: timesyncd.conf missing [Time] section
#166
colinbruner
closed
8 months ago
1
5.2.4 Script Fails if no SSH denied_users are Passed
#165
r0bc94
closed
7 months ago
1
[pre-commit.ci] pre-commit autoupdate
#164
pre-commit-ci[bot]
closed
7 months ago
0
Update Release Branch
#163
zac90
closed
7 months ago
2
fix: #161 NTP should be a space-separated list of NTP server host nam…
#162
Jason-Hendry
closed
7 months ago
0
systemd-timesyncd NTP configuration error
#161
Jeroen0494
closed
7 months ago
0
update wording and typos
#160
uk-bolly
closed
7 months ago
0
Workflow galaxy
#159
uk-bolly
closed
8 months ago
0
3.3.7 Ensure Reverse Path Filtering is enabled
#158
brisky
closed
8 months ago
1
5.6.5 Ensure default user umask is 027 or more restrictive: CIS-CAT check fails.
#157
brisky
closed
8 months ago
1
Release latest 1.2.0 to Ansible Galaxy?
#156
colinbruner
closed
7 months ago
5
[pre-commit.ci] pre-commit autoupdate
#155
pre-commit-ci[bot]
closed
8 months ago
0
All tasks under cis_3.3.x.yml (3.3.1-3.3.9) are being appled to the file defined by ubtu22cis_sysctl_network_conf but not commented from other file matches
#154
LoZZoL
closed
7 months ago
0
Controls 5.5.1.1-3 (Password expiration) have incorrect return values defined
#153
LoZZoL
closed
7 months ago
0
Please add assertion for ubtu22cis_sshd formatting
#152
dderemiah
closed
2 months ago
7
3.1.1 Regex will not match when ipv6.disable=(0|1) not already present in /etc/default/grub
#151
LoZZoL
closed
7 months ago
0
if timesyncd is not installed 2.1.1.1 errors
#150
dderemiah
closed
8 months ago
2
found cron regex typo
#149
dderemiah
closed
8 months ago
1
Siemens/feat/rule 1.6.1.3 enforce vs complain
#148
bgro
closed
8 months ago
0
adds feature to allow rsync install CIS compliant
#147
dderemiah
closed
8 months ago
0
adds feature to allow rsync install CIS compliant
#146
dderemiah
closed
8 months ago
0
5.4.3 Not being triggered due to regexp not matching.
#145
zac90
closed
7 months ago
0
Control 1.1.10 usb_storage blacklisting requires initramfs update
#144
paulquevedojdrf
closed
2 months ago
4
3.5.1.x UFW not disabling nftables
#143
zac90
closed
8 months ago
4
3.5.1.4 ipv6 settings should be configured either way
#142
zac90
closed
7 months ago
0
3.3.x ipv6 settings should be configured either way
#141
zac90
closed
5 months ago
1
3.1.1 Incorrect profile tags
#140
zac90
closed
7 months ago
1
3.2.2 incorrect conditional causing opposite effect
#139
zac90
closed
7 months ago
1
System apps aren't being fully removed
#138
zac90
closed
7 months ago
1
Previous
Next