[Open-scap] Using authconfig rather than hand editing files

Dan White d_e_white at icloud.com
Fri May 25 21:06:59 UTC 2018


I just messed up a baker’s dozen of RHEL 6 virtual machines by hand editing /etc/pam.d files system-auth-ac and password-auth-ac

I was able to un-mess 8 of them with an authconfig command.
The other 5 are in various stages of recovery.  One had a snapshot but the other 4 are Oracle servers that cannot be snapshot because of shared storage.

Anyway, what I am looking for here is some brainstorming toward implementing security settings with authconfig commands rather than hand editing the files that utility can alter.

Thanks.




More information about the Open-scap-list mailing list