[openstack-dev] [openstack-ansible] Security hardening
Major Hayden
major at mhtx.net
Thu Sep 10 16:33:27 UTC 2015
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
On 09/10/2015 11:22 AM, Matthew Thode wrote:
> Sane defaults can't be used? The two bugs you listed look fine to me as
> default things to do.
Thanks, Matthew. I tend to agree.
I'm wondering if it would be best to make a "punch list" of CIS benchmarks and try to tag them with one of the following:
* Do this in OSAD
* Tell deployers how to do this (in docs)
* Tell deployers not to do this (in docs)
That could be lumped in with a spec/blueprint of some sort. Would that be beneficial?
- --
Major Hayden
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2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=rN2a
-----END PGP SIGNATURE-----
More information about the OpenStack-dev
mailing list