Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-2666

Ansible automation cannot execute if executed as non-root

Linking RHIVOS CVEs to...Migration: Automation ...Sync from "Extern...XMLWordPrintable

    • None
    • Moderate
    • rhel-security-special-projects
    • None
    • False
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • If docs needed, set a value
    • None

      Description of problem:

      The default policy contains 2 rules to allow Ansible automation:
      -------- 8< ---------------- 8< ---------------- 8< ---------------- 8< --------
      9 allow perm=any uid=0 : dir=/tmp/ansible
      10 allow perm=any uid=0 : dir=/root/.ansible/tmp/
      -------- 8< ---------------- 8< ---------------- 8< ---------------- 8< --------

      These rules however do not apply to automation executing as a regular user or service account.

      Version-Release number of selected component (if applicable):

      fapolicyd-1.0-3.el8_3.3.x86_64

              rsroka@redhat.com Radovan Sroka (Inactive)
              rhn-support-rmetrich Renaud Métrich
              Radovan Sroka Radovan Sroka (Inactive)
              SSG Security QE SSG Security QE
              Votes:
              0 Vote for this issue
              Watchers:
              7 Start watching this issue

                Created:
                Updated:
                Resolved: