|
| 1 | +--- |
| 2 | +# Default to auditd version 3 settings |
| 3 | +auditd::plugin_dir: '/etc/audit/plugins.d' |
| 4 | +auditd::config::audisp::syslog::type: 'always' |
| 5 | +auditd::config::audisp::syslog::syslog_path: '/sbin/audisp-syslog' |
| 6 | +auditd::config::audisp::syslog::pkg_name: 'audispd-plugins' |
| 7 | + |
| 8 | +auditd::config::audit_profiles::stig::default_suid_sgid_cmds: |
| 9 | + - "/usr/bin/at" |
| 10 | + - "/usr/bin/chage" |
| 11 | + - "/usr/bin/chcon" |
| 12 | + - "/usr/bin/chfn" |
| 13 | + - "/usr/bin/chsh" |
| 14 | + - "/usr/bin/crontab" |
| 15 | + - "/usr/bin/fusermount" |
| 16 | + - "/usr/bin/gpasswd" |
| 17 | + - "/usr/bin/incrontab" |
| 18 | + - "/usr/bin/ksu" |
| 19 | + - "/usr/bin/locate" |
| 20 | + - "/usr/bin/mount" |
| 21 | + - "/usr/bin/newgidmap" |
| 22 | + - "/usr/bin/newgrp" |
| 23 | + - "/usr/bin/newuidmap" |
| 24 | + - "/usr/bin/passwd" |
| 25 | + - "/usr/bin/pkexec" |
| 26 | + - "/usr/bin/screen" |
| 27 | + - "/usr/bin/ssh-agent" |
| 28 | + - "/usr/bin/su" |
| 29 | + - "/usr/bin/sudo" |
| 30 | + - "/usr/bin/sudoedit" |
| 31 | + - "/usr/bin/umount" |
| 32 | + - "/usr/bin/wall" |
| 33 | + - "/usr/bin/write" |
| 34 | + - "/usr/bin/Xorg" |
| 35 | + - "/usr/lib64/dbus-1/dbus-daemon-launch-helper" |
| 36 | + - "/usr/libexec/dbus-1/dbus-daemon-launch-helper" |
| 37 | + - "/usr/libexec/openssh/ssh-keysign" |
| 38 | + - "/usr/libexec/pt_chown" |
| 39 | + - "/usr/libexec/sssd/krb5_child" |
| 40 | + - "/usr/libexec/sssd/ldap_child" |
| 41 | + - "/usr/libexec/sssd/proxy_child" |
| 42 | + - "/usr/libexec/sssd/selinux_child" |
| 43 | + - "/usr/libexec/utempter/utempter" |
| 44 | + - "/usr/lib/polkit-1/polkit-agent-helper-1" |
| 45 | + - "/usr/sbin/mount.nfs" |
| 46 | + - "/usr/sbin/netreport" |
| 47 | + - "/usr/sbin/pam_timestamp_check" |
| 48 | + - "/usr/sbin/postdrop" |
| 49 | + - "/usr/sbin/postqueue" |
| 50 | + - "/usr/sbin/restorecon" |
| 51 | + - "/usr/sbin/semanage" |
| 52 | + - "/usr/sbin/setfiles" |
| 53 | + - "/usr/sbin/setsebool" |
| 54 | + - "/usr/sbin/seunshare" |
| 55 | + - "/usr/sbin/unix_chkpwd" |
| 56 | + - "/usr/sbin/userhelper" |
| 57 | + - "/usr/sbin/usernetctl" |
0 commit comments