File tree Expand file tree Collapse file tree 1 file changed +5
-11
lines changed
linux_os/guide/system/auditing/auditd_configure_rules/audit_rules_suid_privilege_function/ansible Expand file tree Collapse file tree 1 file changed +5
-11
lines changed Original file line number Diff line number Diff line change 2626- name : Service facts
2727 ansible.builtin.service_facts :
2828
29- - name : Check the rules script being used
30- ansible.builtin.command :
31- grep '^ExecStartPost' /usr/lib/systemd/system/auditd.service
32- register : check_rules_scripts_result
33- changed_when : false
34- failed_when : false
35-
3629- name : Set suid_audit_rules fact
3730 ansible.builtin.set_fact :
3831 suid_audit_rules :
5245 regexp : " {{ item.regex }}"
5346 create : yes
5447 when :
55- - ' "auditd.service" in ansible_facts.services'
56- - ' "augenrules" in check_rules_scripts_result.stdout '
48+ - ( '"auditd.service" in ansible_facts.services' or
49+ ' "augenrules.service " in ansible_facts.services ' )
5750 register : augenrules_audit_rules_privilege_function_update_result
5851 with_items : " {{ suid_audit_rules }}"
5952
6457 regexp : " {{ item.regex }}"
6558 create : yes
6659 when :
67- - ' "auditd.service" in ansible_facts.services'
68- - ' "auditctl " in check_rules_scripts_result.stdout '
60+ - ( '"auditd.service" in ansible_facts.services' or
61+ ' "augenrules.service " in ansible_facts.services ' )
6962 register : auditctl_audit_rules_privilege_function_update_result
7063 with_items : " {{ suid_audit_rules }}"
64+
7165{{%- if product in ['sle12', 'sle15'] %}}
7266- name : Restart auditd.service
7367 ansible.builtin.systemd :
You can’t perform that action at this time.
0 commit comments