anthcourtney / ansible-role-cis-amazon-linux

Ansible role to apply CIS Amazon Linux Benchmark v2.0.0
MIT License
154 stars 140 forks source link

4.1.6 to 4.1.17 fixes not identified by Amazon inspector #67

Closed jvaibhav123 closed 5 years ago

jvaibhav123 commented 5 years ago

Dear Team,

I am using amazon linux 2 ("(Karoo)") AMI for fixing CIS work bench fixes. I used this module to fix the issues however i observed that amazon inspector runs shows that these issues needs to be fixed. I verified the audit rule files (/etc/audit/rules.d/audit.rules) and it has those changes. I am not sure if this is something related to inspector which is not working or something else. Does any one has faced this issue so far?

I also see some issues in PAM fixes which shows similar results.

Note: I am not sure is there is any slack channel to discuss these issues so i raised a ticket. Apologize for the same. image for the same.

jvaibhav123 commented 5 years ago

Please ignore this issue. I got help from CIS work bench sites to check actual remediation for amazon linux 2. Using those fixed the issues