Compare commits
7 Commits
d066608196
...
1.0.0-4.20
| Author | SHA1 | Date | |
|---|---|---|---|
| 054a912251 | |||
| b766962f39 | |||
| dc4f967292 | |||
| b949a0a661 | |||
| e307d7a02e | |||
| a5e4dc02ba | |||
| 1aae89edca |
40
.gitignore
vendored
40
.gitignore
vendored
@@ -1,39 +1,5 @@
|
||||
.git/
|
||||
.*.sw[op]
|
||||
.metadata
|
||||
.yardoc
|
||||
.yardwarns
|
||||
Gemfile.lock
|
||||
FileList
|
||||
.scannerwork
|
||||
*.iml
|
||||
/.bundle/
|
||||
/.idea/
|
||||
/.vagrant/
|
||||
/coverage/
|
||||
/bin/
|
||||
/doc/
|
||||
/Gemfile.local
|
||||
/Gemfile.lock
|
||||
/junit/
|
||||
/log/
|
||||
/pkg/
|
||||
/spec/fixtures/manifests/
|
||||
/spec/fixtures/modules/*
|
||||
/tmp/
|
||||
/vendor/
|
||||
/.vendor/
|
||||
/convert_report.txt
|
||||
/update_report.txt
|
||||
.DS_Store
|
||||
.project
|
||||
.envrc
|
||||
/inventory.yaml
|
||||
/spec/fixtures/litmus_inventory.yaml
|
||||
.resource_types
|
||||
.modules
|
||||
.task_cache.json
|
||||
.plan_cache.json
|
||||
.rerun.json
|
||||
bolt-debug.log
|
||||
.vscode
|
||||
.puppet-lint.rc
|
||||
.rspec
|
||||
.vscode
|
||||
3
.puppet-lint.rc
Normal file
3
.puppet-lint.rc
Normal file
@@ -0,0 +1,3 @@
|
||||
--no-variable_scope-check
|
||||
--no-top_scope_facts
|
||||
--no-140chars-check
|
||||
1
.vscode/settings.json
vendored
1
.vscode/settings.json
vendored
@@ -2,6 +2,7 @@
|
||||
"cSpell.words": [
|
||||
"getenforce",
|
||||
"policycoreutils",
|
||||
"SELINUXTYPE",
|
||||
"setenforce",
|
||||
"setools",
|
||||
"setroubleshoot",
|
||||
|
||||
@@ -32,7 +32,7 @@ See the full Puppet documentation including parameters in `docs/index.html`.
|
||||
|
||||
All dependencies must be included in the catalogue.
|
||||
|
||||
- [cd_resources](https://gitlab.confdroid.com/puppet/cd_resources) for yum repo resources.
|
||||
- [confdroid_resources](https://sourcecode.confdroid.com/confdroid/confdroid_resources) for yum repo resources.
|
||||
|
||||
## Deployment
|
||||
|
||||
@@ -58,7 +58,7 @@ All files and directories are configured with correct selinux context. If selinu
|
||||
|
||||
## Known Problems
|
||||
|
||||
- Systems reconfigured with selinux disabled require once a reboot for selinux to be enabled. This module will **__not__*- do the reboot for you to avoid unexpected outages.
|
||||
- Systems reconfigured with selinux disabled require once a reboot for selinux to be enabled. This module will **not**- do the reboot for you to avoid unexpected outages.
|
||||
|
||||
## Support
|
||||
|
||||
|
||||
@@ -22,7 +22,7 @@
|
||||
##############################################################################
|
||||
class confdroid_selinux::params (
|
||||
|
||||
Array[String] $sx_reqpackages = ['selinux-policy','policycoreutils','setroubleshoot-server','policycoreutils-python'],
|
||||
Array[String] $sx_reqpackages = ['selinux-policy','policycoreutils','setroubleshoot-server','policycoreutils-python-utils'],
|
||||
String $sx_pkg_ensure = 'latest',
|
||||
String $sx_selinux_status = 'enforcing',
|
||||
String $sx_selinux_type = 'targeted',
|
||||
@@ -36,11 +36,11 @@ class confdroid_selinux::params (
|
||||
$os_release = $facts['os']['release']['major']
|
||||
|
||||
# directories
|
||||
$sx_main_dir = '/etc/selinux'
|
||||
$sx_main_dir = '/etc/selinux'
|
||||
|
||||
# files
|
||||
$sx_main_file = "${sx_main_dir}/config"
|
||||
$sx_main_file_erb = 'confdroid_selinux/main/selinux_config.erb'
|
||||
$sx_main_file = "${sx_main_dir}/config"
|
||||
$sx_main_file_erb = 'confdroid_selinux/main/selinux_config.erb'
|
||||
|
||||
# includes must be last
|
||||
include confdroid_selinux::main::config
|
||||
|
||||
@@ -1,6 +1,7 @@
|
||||
################################################################################
|
||||
########## /etc/selinux/config managed by Puppet ##########
|
||||
########## manual changes will be overwritten !!! ##########
|
||||
########## manual changes will be overwritten !!! ##########
|
||||
########## original file: https://3for.me/wdtuj ##########
|
||||
################################################################################
|
||||
SELINUX=<%= @sx_selinux_status %>
|
||||
|
||||
|
||||
Reference in New Issue
Block a user