Skip to content

Commit 10568b6

Browse files
authored
Merge pull request #12905 from sej7278/alma9-more-changes
Alma9 more changes (mk2)
2 parents 797cbcc + fd3cc71 commit 10568b6

350 files changed

Lines changed: 368 additions & 319 deletions

File tree

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

controls/anssi.yml

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1246,6 +1246,7 @@ controls:
12461246
- ensure_gpgcheck_local_packages
12471247
- ensure_redhat_gpgkey_installed
12481248
- ensure_oracle_gpgkey_installed
1249+
- ensure_almalinux_gpgkey_installed
12491250

12501251
- id: R60
12511252
title: Hardened package repositories
@@ -1363,7 +1364,7 @@ controls:
13631364
When authentication takes place through a remote application (network),
13641365
the authentication protocol used by PAM must be secure (flow encryption,
13651366
remote server authentication, anti-replay mechanisms, ...).
1366-
{{% if "rhel" in product or "ol" in families %}}
1367+
{{% if "rhel" in product or "ol" in families or "almalinux" in product %}}
13671368
notes: |-
13681369
In {{{ full_name }}} systems, remote authentication is handled through sssd service.
13691370
PAM delegates requests for remote authentication to this service through a
@@ -1419,7 +1420,7 @@ controls:
14191420
When the user databases are stored on a remote network service, NSS must
14201421
be configured to establish a secure link that allows, at minimum, to
14211422
authenticate the server and protect the communication channel.
1422-
{{% if "rhel" in product or "ol" in families %}}
1423+
{{% if "rhel" in product or "ol" in families or "almalinux" in product %}}
14231424
notes: |-
14241425
A nsswitch service connecting to remote database is provided by sssd. This is checked in requirement R67.
14251426
Another such service is winbind which is by default configured to connect

docs/workshop/data/accounts_tmout/ansible/shared.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,4 @@
1-
# platform = multi_platform_rhel,multi_platform_fedora,multi_platform_ol
1+
# platform = multi_platform_rhel,multi_platform_fedora,multi_platform_ol,multi_platform_almalinux
22
# reboot = false
33
# strategy = restrict
44
# complexity = low

docs/workshop/data/accounts_tmout/bash/shared.sh

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,4 @@
1-
# platform = Red Hat Enterprise Linux 8,multi_platform_fedora,multi_platform_ol
1+
# platform = Red Hat Enterprise Linux 8,multi_platform_fedora,multi_platform_ol,multi_platform_almalinux
22
{{{ bash_instantiate_variables("var_accounts_tmout") }}}
33

44
if grep --silent ^TMOUT /etc/profile ; then

linux_os/guide/auditing/auditd_configure_rules/audit_file_deletion_events/audit_rules_file_deletion_events/bash/shared.sh

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,4 @@
1-
# platform = Red Hat Virtualization 4,multi_platform_ol,multi_platform_rhel,multi_platform_sle
1+
# platform = Red Hat Virtualization 4,multi_platform_ol,multi_platform_rhel,multi_platform_sle,multi_platform_almalinux
22

33
# Perform the remediation for the syscall rule
44
# Retrieve hardware architecture of the underlying system

linux_os/guide/auditing/auditd_configure_rules/audit_file_modification/audit_rules_unsuccessful_file_modification/bash/shared.sh

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,4 @@
1-
# platform = Red Hat Virtualization 4,multi_platform_ol,multi_platform_rhel,multi_platform_sle
1+
# platform = Red Hat Virtualization 4,multi_platform_ol,multi_platform_rhel,multi_platform_sle,multi_platform_almalinux
22

33
# Perform the remediation of the syscall rule
44
# Retrieve hardware architecture of the underlying system
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,3 @@
1-
# platform = Red Hat Virtualization 4,multi_platform_ol,multi_platform_rhel
1+
# platform = Red Hat Virtualization 4,multi_platform_ol,multi_platform_rhel,multi_platform_almalinux
22

33
{{{ bash_create_audit_remediation_unsuccessful_file_modification_detailed("/etc/audit/rules.d/30-ospp-v42-remediation.rules") }}}
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,3 @@
1-
# platform = Red Hat Virtualization 4,multi_platform_ol,multi_platform_rhel
1+
# platform = Red Hat Virtualization 4,multi_platform_ol,multi_platform_rhel,multi_platform_almalinux
22

33
{{{ bash_create_audit_remediation_unsuccessful_file_modification_detailed("/etc/audit/rules.d/30-ospp-v42-remediation.rules") }}}
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,3 @@
1-
# platform = multi_platform_rhel,multi_platform_ol
1+
# platform = multi_platform_rhel,multi_platform_ol,multi_platform_almalinux
22

33
{{{ bash_create_audit_remediation_unsuccessful_file_modification_detailed("/etc/audit/rules.d/30-ospp-v42-remediation.rules") }}}
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,3 @@
1-
# platform = Red Hat Virtualization 4,multi_platform_ol,multi_platform_rhel
1+
# platform = Red Hat Virtualization 4,multi_platform_ol,multi_platform_rhel,multi_platform_almalinux
22

33
{{{ bash_create_audit_remediation_unsuccessful_file_modification_detailed("/etc/audit/rules.d/30-ospp-v42-remediation.rules") }}}
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,3 @@
1-
# platform = Red Hat Virtualization 4,multi_platform_ol,multi_platform_rhel
1+
# platform = Red Hat Virtualization 4,multi_platform_ol,multi_platform_rhel,multi_platform_almalinux
22

33
{{{ bash_create_audit_remediation_unsuccessful_file_modification_detailed("/etc/audit/rules.d/30-ospp-v42-remediation.rules") }}}

0 commit comments

Comments
 (0)