1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19
|
# platform = multi_platform_ocp,multi_platform_rhcos
# reboot = true
# strategy = disable
# complexity = low
# disruption = medium
apiVersion: machineconfiguration.openshift.io/v1
kind: MachineConfig
spec:
config:
ignition:
version: 3.1.0
storage:
files:
- contents:
source: data:,-a%20always%2Cexit%20-F%20arch%3Db64%20-S%20{{{ NAME }}}%20-F%20exit%3D-EACCES%20-F%20auid%3E%3D{{{ auid }}}%20-F%20auid%21%3Dunset%20-F%20key%3Daccess%0A-a%20always%2Cexit%20-F%20arch%3Db64%20-S%20{{{ NAME }}}%20-F%20exit%3D-EPERM%20-F%20auid%3E%3D{{{ auid }}}%20-F%20auid%21%3Dunset%20-F%20key%3Daccess%0A-a%20always%2Cexit%20-F%20arch%3Db32%20-S%20{{{ NAME }}}%20-F%20exit%3D-EACCES%20-F%20auid%3E%3D{{{ auid }}}%20-F%20auid%21%3Dunset%20-F%20key%3Daccess%0A-a%20always%2Cexit%20-F%20arch%3Db32%20-S%20{{{ NAME }}}%20-F%20exit%3D-EPERM%20-F%20auid%3E%3D{{{ auid }}}%20-F%20auid%21%3Dunset%20-F%20key%3Daccess%0A
mode: 0644
path: /etc/audit/rules.d/75-{{{ NAME }}}_audit_rules_unsuccessful_file_modification.rules
overwrite: true
|