Skip to content

Commit dfd5a13

Browse files
Add var_accounts_tmout variable definition for PCI profile
1 parent dc0816f commit dfd5a13

2 files changed

Lines changed: 6 additions & 4 deletions

File tree

products/sle12/profiles/pci-dss-4.profile

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,8 @@ description: |-
1414
selections:
1515
- pcidss_3:all:base
1616
- var_multiple_time_servers=suse
17-
- var_multiple_time_pools=suse
17+
- var_multiple_time_pools=suse
18+
- var_accounts_tmout=15_min
1819
- account_unique_id
1920
- coredump_disable_backtraces
2021
- coredump_disable_storage

products/sle15/profiles/pci-dss-4.profile

Lines changed: 4 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -16,10 +16,10 @@ selections:
1616
- ensure_pam_wheel_group_empty
1717
- sshd_strong_kex=pcidss
1818
- sshd_approved_macs=cis_sle15
19-
- sshd_approved_ciphers=cis_sle15
19+
- sshd_approved_ciphers=cis_sle15
2020
- var_multiple_time_servers=suse
21-
- var_multiple_time_pools=suse
22-
# Exclude from PCI DISS profile all rules related to ntp and timesyncd and keep only
21+
- var_multiple_time_pools=suse
22+
# Exclude from PCI DISS profile all rules related to ntp and timesyncd and keep only
2323
# rules related to chrony
2424
- '!ntpd_specify_multiple_servers'
2525
- '!ntpd_specify_remote_server'
@@ -30,3 +30,4 @@ selections:
3030
- '!use_pam_wheel_for_su'
3131
- use_pam_wheel_group_for_su
3232
- var_pam_wheel_group_for_su=cis
33+
- var_accounts_tmout=15_min

0 commit comments

Comments
 (0)