We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent e27e14c commit 9df2892Copy full SHA for 9df2892
roles/splunk/tasks/configure_facl.yml
@@ -20,13 +20,12 @@
20
- true
21
- false
22
23
- - name: Add logrotate script to enforce splunk user facls
24
- template:
25
- src: splunk_facl.j2
26
- dest: /etc/logrotate.d/splunk_facl
27
- owner: root
28
- group: root
29
- become: true
+ - name: Add setfacl to logrotate script
+ lineinfile:
+ path: /etc/logrotate.d/syslog
+ insertbefore: ' endscript'
+ line: ' /usr/bin/setfacl -Rm u:{{ splunk_nix_user }}:rx /var/log'
+ become: True
30
31
- name: Check if auditd.conf is present
32
stat:
roles/splunk/templates/splunk_facl.j2
0 commit comments