Skip to content

Commit c69454d

Browse files
authored
Merge pull request #11170 from rumch-se/fix_in_audit_rules_suid_privilege_function
A fix into ansible part of the rule audit_rules_suid_privilege_function
2 parents 13bbd54 + c1b87fd commit c69454d

File tree

1 file changed

+5
-11
lines changed
  • linux_os/guide/system/auditing/auditd_configure_rules/audit_rules_suid_privilege_function/ansible

1 file changed

+5
-11
lines changed

linux_os/guide/system/auditing/auditd_configure_rules/audit_rules_suid_privilege_function/ansible/shared.yml

Lines changed: 5 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -26,13 +26,6 @@
2626
- name: Service facts
2727
ansible.builtin.service_facts:
2828

29-
- name: Check the rules script being used
30-
ansible.builtin.command:
31-
grep '^ExecStartPost' /usr/lib/systemd/system/auditd.service
32-
register: check_rules_scripts_result
33-
changed_when: false
34-
failed_when: false
35-
3629
- name: Set suid_audit_rules fact
3730
ansible.builtin.set_fact:
3831
suid_audit_rules:
@@ -52,8 +45,8 @@
5245
regexp: "{{ item.regex }}"
5346
create: yes
5447
when:
55-
- '"auditd.service" in ansible_facts.services'
56-
- '"augenrules" in check_rules_scripts_result.stdout'
48+
- ('"auditd.service" in ansible_facts.services' or
49+
'"augenrules.service" in ansible_facts.services')
5750
register: augenrules_audit_rules_privilege_function_update_result
5851
with_items: "{{ suid_audit_rules }}"
5952

@@ -64,10 +57,11 @@
6457
regexp: "{{ item.regex }}"
6558
create: yes
6659
when:
67-
- '"auditd.service" in ansible_facts.services'
68-
- '"auditctl" in check_rules_scripts_result.stdout'
60+
- ('"auditd.service" in ansible_facts.services' or
61+
'"augenrules.service" in ansible_facts.services')
6962
register: auditctl_audit_rules_privilege_function_update_result
7063
with_items: "{{ suid_audit_rules }}"
64+
7165
{{%- if product in ['sle12', 'sle15'] %}}
7266
- name: Restart auditd.service
7367
ansible.builtin.systemd:

0 commit comments

Comments
 (0)