[Openstack-security] [Bug 1686110] [NEW] AIDE configuration is set AFTER the initial run

Major Hayden major at mhtx.net
Tue Apr 25 14:32:29 UTC 2017


Public bug reported:

The "Configure AIDE to verify additional properties" task runs *after*
the tasks which do the AIDE initialization.  This isn't a problem on
CentOS since the default properties meet the STIG requirements, but it
does affect Ubuntu.

The result is that Ubuntu users may see a huge AIDE update upon their
second AIDE run.

** Affects: openstack-ansible
     Importance: Low
     Assignee: Major Hayden (rackerhacker)
         Status: In Progress


** Tags: security

-- 
You received this bug notification because you are a member of OpenStack
Security, which is subscribed to OpenStack.
https://bugs.launchpad.net/bugs/1686110

Title:
  AIDE configuration is set AFTER the initial run

Status in openstack-ansible:
  In Progress

Bug description:
  The "Configure AIDE to verify additional properties" task runs *after*
  the tasks which do the AIDE initialization.  This isn't a problem on
  CentOS since the default properties meet the STIG requirements, but it
  does affect Ubuntu.

  The result is that Ubuntu users may see a huge AIDE update upon their
  second AIDE run.

To manage notifications about this bug go to:
https://bugs.launchpad.net/openstack-ansible/+bug/1686110/+subscriptions




More information about the Openstack-security mailing list