From 4a62cfd7670c55916f0f97d61843269a2f042bb5 Mon Sep 17 00:00:00 2001 From: Ivan Anfimov Date: Wed, 8 Oct 2025 12:25:20 +0000 Subject: [PATCH] Remove outdated tasks Move AIDE database into place / Create AIDE cron job CentOS 7 now not supported. Change-Id: I86c7b7c5f6adaf4dc0ae61e3b1b973f3dd5950a5 Signed-off-by: Ivan Anfimov --- tasks/rhel7stig/aide.yml | 31 ------------------------------- 1 file changed, 31 deletions(-) diff --git a/tasks/rhel7stig/aide.yml b/tasks/rhel7stig/aide.yml index 3c64c570..13efd8e2 100644 --- a/tasks/rhel7stig/aide.yml +++ b/tasks/rhel7stig/aide.yml @@ -108,34 +108,3 @@ - medium - aide - V-71973 - -# NOTE(mhayden): This is only needed for CentOS 7, RHEL 7 and SUSE since Ubuntu -# copies the new AIDE database into place automatically with its AIDE wrapper -# script. -- name: Move AIDE database into place - ansible.builtin.command: "mv {{ aide_database_out_file }} {{ aide_database_file }}" - changed_when: false - when: - - aide_init is not skipped - - ansible_facts['pkg_mgr'] == 'dnf' - tags: - - medium - - aide - - V-71973 - -# NOTE(mhayden): This is only needed for CentOS 7, RHEL 7 and SUSE since the AIDE -# package doesn't come with a cron job file. Ubuntu packages a cron job for -# AIDE checks already. -- name: Create AIDE cron job - ansible.builtin.cron: - name: aide - cron_file: aide - user: root - special_time: daily - job: "/sbin/aide --check | /bin/mail -s \"$HOSTNAME - Daily aide integrity check run\" root" - when: - - ansible_facts['pkg_mgr'] == 'dnf' - tags: - - medium - - aide - - V-71975