From c29b2135af2a9ccbaf84c516d048d0e370abfecd Mon Sep 17 00:00:00 2001 From: jacob Date: Mon, 2 Oct 2023 15:56:27 -0500 Subject: [PATCH] Add CIS task fix from #154 and #153. Prevent etcd user home creation --- roles/rke2_common/tasks/cis-hardening.yml | 1 + 1 file changed, 1 insertion(+) diff --git a/roles/rke2_common/tasks/cis-hardening.yml b/roles/rke2_common/tasks/cis-hardening.yml index 13d2b58b..634661d1 100644 --- a/roles/rke2_common/tasks/cis-hardening.yml +++ b/roles/rke2_common/tasks/cis-hardening.yml @@ -15,6 +15,7 @@ comment: etcd user shell: /bin/nologin group: etcd + create_home: false - name: Copy systemctl file for kernel hardening for yum installs ansible.builtin.copy: