Skip to content

Commit

Permalink
modify rule.yaml files to change the parameter name of file_owner tem…
Browse files Browse the repository at this point in the history
…plate from fileuid to uid_or_name
  • Loading branch information
alanmcanonical committed Feb 17, 2025
1 parent 3b23fff commit 3507fcf
Show file tree
Hide file tree
Showing 63 changed files with 65 additions and 65 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -43,4 +43,4 @@ template:
file_regex:
- ^.*audit(\.rules|d\.conf)$
- ^.*\.rules$
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -80,4 +80,4 @@ template:
- /sbin/auditd
{{% if 'rhel' not in product %}}- /sbin/audispd{{% endif %}}
- /sbin/augenrules
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -48,4 +48,4 @@ template:
name: file_owner
vars:
filepath: /etc/cron.d/
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -48,4 +48,4 @@ template:
name: file_owner
vars:
filepath: /etc/cron.daily/
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -37,5 +37,5 @@ template:
name: file_owner
vars:
filepath: /etc/cron.deny
fileuid: '0'
uid_or_name: '0'

Original file line number Diff line number Diff line change
Expand Up @@ -48,4 +48,4 @@ template:
name: file_owner
vars:
filepath: /etc/cron.hourly/
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -48,4 +48,4 @@ template:
name: file_owner
vars:
filepath: /etc/cron.monthly/
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -48,4 +48,4 @@ template:
name: file_owner
vars:
filepath: /etc/cron.weekly/
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -48,4 +48,4 @@ template:
name: file_owner
vars:
filepath: /etc/crontab
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -28,5 +28,5 @@ template:
vars:
filepath: /etc/at.allow
exists: true
fileuid: "0"
uid_or_name: "0"
filemode: "0640"
Original file line number Diff line number Diff line change
Expand Up @@ -35,5 +35,5 @@ template:
vars:
filepath: /etc/cron.allow
exists: true
fileuid: "0"
uid_or_name: "0"
filemode: "0600"
Original file line number Diff line number Diff line change
Expand Up @@ -37,4 +37,4 @@ template:
name: file_owner
vars:
filepath: /etc/at.allow
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -23,4 +23,4 @@ template:
name: file_owner
vars:
filepath: /etc/at.deny
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -45,4 +45,4 @@ template:
name: file_owner
vars:
filepath: /etc/cron.allow
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -30,4 +30,4 @@ template:
name: file_owner
vars:
filepath: /etc/chrony.keys
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -22,4 +22,4 @@ template:
name: file_owner
vars:
filepath: /etc/hosts.allow
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -22,4 +22,4 @@ template:
name: file_owner
vars:
filepath: /etc/hosts.deny
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -42,4 +42,4 @@ template:
name: file_owner
vars:
filepath: '/etc/ssh/sshd_config.d/'
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -52,4 +52,4 @@ template:
name: file_owner
vars:
filepath: /etc/ssh/sshd_config
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -44,4 +44,4 @@ template:
vars:
filepath: '/etc/ssh/sshd_config.d/'
file_regex: '^.*$'
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -28,7 +28,7 @@ template:
- /etc/ssh/
file_regex:
- ^.*_key$
fileuid: '0'
uid_or_name: '0'

warnings:
- general: |-
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -29,7 +29,7 @@ template:
- /etc/ssh/
file_regex:
- ^.*\.pub$
fileuid: '0'
uid_or_name: '0'

warnings:
- general: |-
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -40,13 +40,13 @@ template:
name: file_owner
vars:
filepath: /etc/issue.d/
fileuid: '0'
uid_or_name: '0'
file_regex: ^.*$
recursive: 'true'
{{%- else %}}
template:
name: file_owner
vars:
filepath: /etc/issue
fileuid: '0'
uid_or_name: '0'
{{%- endif -%}}
Original file line number Diff line number Diff line change
Expand Up @@ -39,4 +39,4 @@ template:
name: file_owner
vars:
filepath: /etc/issue.net
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -39,4 +39,4 @@ template:
name: file_owner
vars:
filepath: /etc/motd
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -31,4 +31,4 @@ template:
name: file_owner
vars:
filepath: /usr/bin/lastlog
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -56,4 +56,4 @@ template:
name: file_owner
vars:
filepath: {{{ grub2_boot_path }}}/grub.cfg
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -45,4 +45,4 @@ template:
name: file_owner
vars:
filepath: {{{ grub2_boot_path }}}/user.cfg
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -41,4 +41,4 @@ template:
name: file_owner
vars:
filepath: {{{ grub2_uefi_boot_path }}}/grub.cfg
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -43,4 +43,4 @@ template:
name: file_owner
vars:
filepath: {{{ grub2_uefi_boot_path }}}/user.cfg
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -40,4 +40,4 @@ template:
- /run/log/journal/
- /var/log/journal/
recursive: 'true'
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -33,4 +33,4 @@ template:
name: file_owner
vars:
filepath: /usr/bin/journalctl
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -61,11 +61,11 @@ template:
- /var/log/journal/
recursive: 'true'
file_regex: ^.*$
fileuid: '0'
uid_or_name: '0'

{{%- else %}}
filepath: ^/var/log/journal/.*/system.journal$
fileuid: '0'
uid_or_name: '0'
filepath_is_regex: "true"

{{%- endif %}}
Original file line number Diff line number Diff line change
Expand Up @@ -32,4 +32,4 @@ template:
name: file_owner
vars:
filepath: /etc/ipsec.d/
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -32,4 +32,4 @@ template:
name: file_owner
vars:
filepath: /etc/ipsec.conf
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -32,4 +32,4 @@ template:
name: file_owner
vars:
filepath: /etc/ipsec.secrets
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -32,4 +32,4 @@ template:
name: file_owner
vars:
filepath: /etc/iptables/
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -32,4 +32,4 @@ template:
name: file_owner
vars:
filepath: /etc/nftables/
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -31,4 +31,4 @@ template:
name: file_owner
vars:
filepath: /etc/crypttab
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -31,4 +31,4 @@ template:
vars:
filepath: /boot/
file_regex: ^.*System\.map.*$
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -43,4 +43,4 @@ template:
name: file_owner
vars:
filepath: /etc/group-
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -43,4 +43,4 @@ template:
name: file_owner
vars:
filepath: /etc/gshadow-
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -43,4 +43,4 @@ template:
name: file_owner
vars:
filepath: /etc/passwd-
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -43,4 +43,4 @@ template:
name: file_owner
vars:
filepath: /etc/shadow-
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -50,4 +50,4 @@ template:
name: file_owner
vars:
filepath: /etc/group
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -48,4 +48,4 @@ template:
name: file_owner
vars:
filepath: /etc/gshadow
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -50,4 +50,4 @@ template:
name: file_owner
vars:
filepath: /etc/passwd
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -23,4 +23,4 @@ template:
name: file_owner
vars:
filepath: /etc/security/opasswd
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -23,4 +23,4 @@ template:
name: file_owner
vars:
filepath: /etc/security/opasswd.old
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -53,4 +53,4 @@ template:
name: file_owner
vars:
filepath: /etc/shadow
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -34,4 +34,4 @@ template:
name: file_owner
vars:
filepath: /etc/shells
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -34,7 +34,7 @@ template:
name: file_owner
vars:
filepath: /var/log/
fileuid: '0'
uid_or_name: '0'

fixtext: |-
{{{ describe_file_owner(file="/var/log", owner="root") }}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -30,7 +30,7 @@ template:
name: file_owner
vars:
filepath: /var/log/messages
fileuid: '0'
uid_or_name: '0'

fixtext: |-
{{{ describe_file_owner(file="/var/log/messages", owner="root") }}}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -25,4 +25,4 @@ template:
name: file_owner
vars:
filepath: /var/log/syslog
fileuid: '104'
uid_or_name: syslog
Original file line number Diff line number Diff line change
Expand Up @@ -53,4 +53,4 @@ template:
- /usr/local/bin/
- /usr/local/sbin/
recursive: 'true'
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -61,7 +61,7 @@ template:
- /usr/lib/
- /usr/lib64/
recursive: 'true'
fileuid: '0'
uid_or_name: '0'

fixtext: |-
Configure the system-wide shared library directories within (/lib, /lib64, /usr/lib and /usr/lib64) to be protected from unauthorized access.
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -32,4 +32,4 @@ template:
name: file_owner
vars:
filepath: /etc/sysctl.d/
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -68,7 +68,7 @@ template:
- /usr/lib64/
recursive: 'true'
file_regex: ^.*$
fileuid: '0'
uid_or_name: '0'

fixtext: |-
Configure the system-wide shared library files (/lib, /lib64, /usr/lib and /usr/lib64) to be protected from unauthorized access.
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -30,4 +30,4 @@ template:
name: file_owner
vars:
filepath: /etc/selinux/
fileuid: '0'
uid_or_name: '0'
Original file line number Diff line number Diff line change
Expand Up @@ -30,4 +30,4 @@ template:
name: file_owner
vars:
filepath: /etc/sestatus.conf
fileuid: '0'
uid_or_name: '0'
Loading

0 comments on commit 3507fcf

Please sign in to comment.