diff --git a/handlers/main.yml b/handlers/main.yml index 96e91119..15629a14 100644 --- a/handlers/main.yml +++ b/handlers/main.yml @@ -7,8 +7,6 @@ when: - ansible_os_family == "Debian" - ansible_virtualization_type not in ["container", "docker", "podman"] - tags: - - CCE-80872-5 # https://github.com/ansible/ansible/issues/22171 - name: Restart RedHat auditd # noqa command-instead-of-module @@ -20,8 +18,6 @@ when: - ansible_os_family == "RedHat" - ansible_virtualization_type not in ["container", "docker", "podman"] - tags: - - CCE-80872-5 - name: Generate auditd rules become: true diff --git a/tasks/auditd.yml b/tasks/auditd.yml index fb7137c4..7602d3cb 100644 --- a/tasks/auditd.yml +++ b/tasks/auditd.yml @@ -2,6 +2,13 @@ - name: Configure auditd become: true block: + - name: Install initscripts + ansible.builtin.package: + name: initscripts + state: present + when: + - ansible_os_family == "RedHat" + - name: Configure Debian auditd GRUB cmdline ansible.builtin.lineinfile: line: GRUB_CMDLINE_LINUX="$GRUB_CMDLINE_LINUX {{ grub_audit_cmdline }} {{ grub_audit_backlog_cmdline }}"