Define a complete security baseline and monitor the baseline's rules. The definition of the baseline should be done in Hiera. The purpose of the module is to give the ability to setup a complete security baseline which not necessarily have to stick to industry security guides like the CIS benchmarks.
suggest separating the firewall dep version change to a separate PR; that might make it easier to review and merge that one (assuming that change does not require the rest of the changes)
Unit tests run and pass.
Changelog and metadata not updated.
Thanks.