Major Hayden 1de3e672b4 V-38637, V-3866{3,4,5}: Verify auditd pkg contents
Implements: blueprint security-hardening

Change-Id: I1e2cbebae26967c758db0e4f6c815e986fa43438
2015-10-15 08:07:57 -05:00

7 lines
300 B
ReStructuredText

The auditd package is verified with ``debsums`` and the playbook will fail
immediately if any of the files from the auditd package have been altered.
This could be the sign of a system compromise.
If the ``debsums`` package isn't installed, the Ansible task will install it
during the playbook run.