Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Cis v3 #35

Merged
merged 75 commits into from
Jun 17, 2024
Merged

Cis v3 #35

merged 75 commits into from
Jun 17, 2024

Conversation

uk-bolly
Copy link
Member

Overall Review of Changes:
A general description of the changes made that are being requested for merge

Issue Fixes:
Please list (using linking) any open issues this PR addresses

Enhancements:
Please list any enhancements/features that are not open issue tickets

How has this been tested?:
Please give an overview of how these changes were tested. If they were not please use N/A

Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
uk-bolly added 14 commits March 20, 2024 10:02
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
Signed-off-by: Mark Bolwell <[email protected]>
* Add logic to IAC branch

Signed-off-by: Mark Bolwell <[email protected]>

* Add logic to IAC branch

Signed-off-by: Mark Bolwell <[email protected]>

* Add logic to IAC branch

Signed-off-by: Mark Bolwell <[email protected]>

* Add logic to IAC branch

Signed-off-by: Mark Bolwell <[email protected]>

* Tidy up of naming

Signed-off-by: Mark Bolwell <[email protected]>

* Workflow alignment

Signed-off-by: Mark Bolwell <[email protected]>

* Updated

Signed-off-by: Mark Bolwell <[email protected]>

* ability to change ansible version

Signed-off-by: Mark Bolwell <[email protected]>

* tidy up

Signed-off-by: Mark Bolwell <[email protected]>

* ability to change ansible version

Signed-off-by: Mark Bolwell <[email protected]>

---------

Signed-off-by: Mark Bolwell <[email protected]>
@uk-bolly uk-bolly marked this pull request as ready for review June 10, 2024 13:18
Copy link
Contributor

@mfortin mfortin left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Excited to start testing!

@@ -0,0 +1,9 @@
# Amazon Linux 2
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Why don't you use the centralized repo for testing ?
https://github.com/ansible-lockdown/github_linux_IaC

Copy link
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This will be moved to that workflow and a new config we have, due to the way we have restricted direct changes to the workflow files we have to go through a few PRs ensuring pipelines pass before files are commited. Its on its way. :)

@uk-bolly uk-bolly requested a review from georgenalen June 13, 2024 07:47
Copy link
Contributor

@georgenalen georgenalen left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Looks good!

@uk-bolly uk-bolly merged commit 8917106 into devel Jun 17, 2024
3 checks passed
@uk-bolly uk-bolly deleted the cis_v3 branch June 17, 2024 06:30
@uk-bolly uk-bolly mentioned this pull request Aug 13, 2024
path: /etc/ssh/sshd_config
regexp: ^AddressFamily
line: AddressFamily inet
notify: Restart_sshd

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

this handler doesn't exist - it seems to be called restart sshd

Copy link
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

hi @gjacobsatl

I will raise a new PR based on this feedback, thank you for highlighting. This is an old PR that is closed.

thanks

uk-bolly

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks - appreciate it. Yeah I realise but there was less friction in adding this comment than filling out the new issue template ;)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants