-
Notifications
You must be signed in to change notification settings - Fork 741
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Minimize access user paths should be fully configurable #689
Labels
Comments
Sounds reasonable. We should probably have two variables, Do you want to create a PR? |
S0obi
added a commit
to S0obi/ansible-collection-hardening
that referenced
this issue
Aug 7, 2023
Signed-off-by: Thibault Soubiran <[email protected]>
I issued #692 for your review, thanks! |
S0obi
added a commit
to S0obi/ansible-collection-hardening
that referenced
this issue
Aug 7, 2023
Signed-off-by: Thibault Soubiran <[email protected]>
rndmh3ro
pushed a commit
that referenced
this issue
Aug 24, 2023
Signed-off-by: Thibault Soubiran <[email protected]>
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Description
Hello everyone,
I would like to propose a small change in OS Hardening
minimize_access.yml
file. In some situations, specific software may install many files in the hard coded user paths (like /usr/local/bin), the execution of the playbook will then take forever (more than an hour with thousand of files). It will be nice if the list of folder is configurable so users can configure it according to their needs.Solution
https://github.com/dev-sec/ansible-collection-hardening/issues#L7-L19
Replace the hard-coded list of directories with a variable, for example
os_env_user_paths
Alternatives
No response
Additional information
...
The text was updated successfully, but these errors were encountered: