Ansible roles to apply CIS Benchmark on
- CentOS 8 based
- Nginx
Create below partitions at the time of installation. The role will not create any of these partitions.
1.1.6 | Ensure separate partition exists for /var (Scored)
1.1.7 | Ensure separate partition exists for /var/tmp (Scored)
1.1.11 | Ensure separate partition exists for /var/log (Scored)
1.1.12 | Ensure separate partition exists for /var/log/audit (Scored)
1.1.13 | Ensure separate partition exists for /home (Scored)
Distro | Status | Role |
---|---|---|
CentOS 8 | Supported (Tested) | Centos |
RHEL 8 | Supported (Tested) | Centos |
Oracle Linux 8 | Supported (Tested) | Centos |
Rocky Linux 8 | Supported (Tested) | Centos |
Debian 11 | Supported (Tested) | Nginx Hardening |
default/main.yml variables are pretty self explanatory.
- name: CIS Baseline Setup
hosts: centos
become: yes
roles:
- centos
- nginx-hardening