kubeasz/roles/os-harden/tasks/modprobe.yml

15 lines
299 B
YAML

---
- name: install modprobe to disable filesystems | os-10
package:
name: '{{modprobe_package}}'
state: 'present'
- name: disable unused filesystems | os-10
template:
src: 'modprobe.j2'
dest: '/etc/modprobe.d/dev-sec.conf'
owner: 'root'
group: 'root'
mode: '0640'