ovh / debian-cis

PCI-DSS compliant Debian 10/11/12 hardening
Other
756 stars 130 forks source link

fix: add 10s wait timeout on iptables command #151

Closed ThibaultDewailly closed 2 years ago

ThibaultDewailly commented 2 years ago

When the tested server has its iptables heavily manipulated (e.g Kubernetes) The lock aquirement can sometimes fail, hence generating false positives The command will retry 10 times with a 1 second interval