- name: Find /bin/ file(s) recursively
command: 'find -H /bin/ -perm /u+s,g+ws,o+wt -type d '
register: files_found
changed_when: false
failed_when: false
check_mode: false tags:
- configure_strategy
- dir_permissions_binary_dirs
- low_complexity
- low_disruption
- medium_severity
- no_reboot_needed
- name: Set permissions for /bin/ file(s)
file:
path: '{{ item }}'
mode: u-s,g-ws,o-wt
state: directory
with_items:
- '{{ files_found.stdout_lines }}'
tags:
- configure_strategy
- dir_permissions_binary_dirs
- low_complexity
- low_disruption
- medium_severity
- no_reboot_needed
- name: Find /sbin/ file(s) recursively
command: 'find -H /sbin/ -perm /u+s,g+ws,o+wt -type d '
register: files_found
changed_when: false
failed_when: false
check_mode: false
tags:
- configure_strategy
- dir_permissions_binary_dirs
- low_complexity
- low_disruption
- medium_severity
- no_reboot_needed
- name: Set permissions for /sbin/ file(s)
file:
path: '{{ item }}'
mode: u-s,g-ws,o-wt
state: directory
with_items:
- '{{ files_found.stdout_lines }}'
tags:
- configure_strategy
- dir_permissions_binary_dirs
- low_complexity
- low_disruption
- medium_severity
- no_reboot_needed
- name: Find /usr/bin/ file(s) recursively
command: 'find -H /usr/bin/ -perm /u+s,g+ws,o+wt -type d '
register: files_found
changed_when: false
failed_when: false
check_mode: false
tags:
- configure_strategy
- dir_permissions_binary_dirs
- low_complexity
- low_disruption
- medium_severity
- no_reboot_needed
- name: Set permissions for /usr/bin/ file(s)
file:
path: '{{ item }}'
mode: u-s,g-ws,o-wt
state: directory
with_items:
- '{{ files_found.stdout_lines }}'
tags:
- configure_strategy
- dir_permissions_binary_dirs
- low_complexity
- low_disruption
- medium_severity
- no_reboot_needed
- name: Find /usr/sbin/ file(s) recursively
command: 'find -H /usr/sbin/ -perm /u+s,g+ws,o+wt -type d '
register: files_found
changed_when: false
failed_when: false
check_mode: false
tags:
- configure_strategy
- dir_permissions_binary_dirs
- low_complexity
- low_disruption
- medium_severity
- no_reboot_needed
- name: Set permissions for /usr/sbin/ file(s)
file:
path: '{{ item }}'
mode: u-s,g-ws,o-wt
state: directory
with_items:
- '{{ files_found.stdout_lines }}'
tags:
- configure_strategy
- dir_permissions_binary_dirs
- low_complexity
- low_disruption
- medium_severity
- no_reboot_needed
- name: Find /usr/local/bin/ file(s) recursively
command: 'find -H /usr/local/bin/ -perm /u+s,g+ws,o+wt -type d '
register: files_found
changed_when: false
failed_when: false
check_mode: false
tags:
- configure_strategy
- dir_permissions_binary_dirs
- low_complexity
- low_disruption
- medium_severity
- no_reboot_needed
- name: Set permissions for /usr/local/bin/ file(s)
file:
path: '{{ item }}'
mode: u-s,g-ws,o-wt
state: directory
with_items:
- '{{ files_found.stdout_lines }}'
tags:
- configure_strategy
- dir_permissions_binary_dirs
- low_complexity
- low_disruption
- medium_severity
- no_reboot_needed
- name: Find /usr/local/sbin/ file(s) recursively
command: 'find -H /usr/local/sbin/ -perm /u+s,g+ws,o+wt -type d '
register: files_found
changed_when: false
failed_when: false
check_mode: false
tags:
- configure_strategy
- dir_permissions_binary_dirs
- low_complexity
- low_disruption
- medium_severity
- no_reboot_needed
- name: Set permissions for /usr/local/sbin/ file(s)
file:
path: '{{ item }}'
mode: u-s,g-ws,o-wt
state: directory
with_items:
- '{{ files_found.stdout_lines }}'
tags:
- configure_strategy
- dir_permissions_binary_dirs
- low_complexity
- low_disruption
- medium_severity
- no_reboot_needed
Show more