From d79bba53c6950f317665d586180eae2a7b1d3fe0 Mon Sep 17 00:00:00 2001 From: Ionut Pruteanu Date: Fri, 8 Dec 2023 12:01:10 +0200 Subject: [PATCH 1/2] Rsyslog subsection corrected header(was using 4.2 logging name, instead of 4.2.1. rsyslog name) Signed-off-by: Ionut Pruteanu --- tasks/section_4/main.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/tasks/section_4/main.yml b/tasks/section_4/main.yml index db729af3..d3b6b8d7 100644 --- a/tasks/section_4/main.yml +++ b/tasks/section_4/main.yml @@ -18,7 +18,7 @@ ansible.builtin.import_tasks: file: cis_4.1.4.x.yml -- name: "SECTION | 4.2 | Configure Logging" +- name: "SECTION | 4.2.1 | Configure rsyslog" ansible.builtin.import_tasks: file: cis_4.2.1.x.yml when: rhel9cis_syslog == 'rsyslog' From e0de491263db91eab4849ad471721a7ec256aadb Mon Sep 17 00:00:00 2001 From: Ionut Pruteanu Date: Fri, 8 Dec 2023 12:03:00 +0200 Subject: [PATCH 2/2] whole section defined in cis_4.2.1.x.yml gets executed only `when: rhel9cis_syslog == 'rsyslog'`, having same condition is redundant and may confuse users. Signed-off-by: Ionut Pruteanu --- tasks/section_4/cis_4.2.1.x.yml | 1 - 1 file changed, 1 deletion(-) diff --git a/tasks/section_4/cis_4.2.1.x.yml b/tasks/section_4/cis_4.2.1.x.yml index 10e0ac2e..a3f2a444 100644 --- a/tasks/section_4/cis_4.2.1.x.yml +++ b/tasks/section_4/cis_4.2.1.x.yml @@ -35,7 +35,6 @@ notify: Restart rsyslog when: - rhel9cis_rule_4_2_1_3 - - rhel9cis_syslog == "rsyslog" tags: - level1-server - level1-workstation