-
Bug
-
Resolution: Done-Errata
-
Undefined
-
rhel-8.10.z, rhel-9.4
-
None
-
scap-security-guide-0.1.74-1.el9_4
-
None
-
None
-
rhel-sst-security-compliance
-
ssg_security
-
26
-
1
-
False
-
-
No
-
Red Hat Enterprise Linux
-
None
-
-
Pass
-
None
-
None
What were you trying to do that didn't work?
When applying `/usr/share/scap-security-guide/ansible/rhel9-playbook-cis_server_l1.yml`, authconfig features originally enabled on the system are not preserved
Please provide the package NVR for which bug is seen:
scap-security-guide-0.1.69-2.el9_2 (-72 is unconfirmed)
How reproducible:
reliably
Steps to reproduce
- select authselect profile `sssd`: authselect select sssd
- add some features like `with-mkhomedir` not present in the playbook: authselect enable-feature with-mkhomedir
- execute hardening playbook
- run authselect current
Expected results
Originally present features (like `with-mkhomedir`) are present
Actual results
Enabled features:
- with-pwhistory
- with-faillock
- links to
-
RHBA-2024:137755 scap-security-guide bug fix and enhancement update
- mentioned on