diff --git a/roles/rkhunter/templates/rkhunter.conf.j2 b/roles/rkhunter/templates/rkhunter.conf.j2 index a7a107242e..5fa898fc5e 100644 --- a/roles/rkhunter/templates/rkhunter.conf.j2 +++ b/roles/rkhunter/templates/rkhunter.conf.j2 @@ -165,11 +165,11 @@ ALLOW_SSH_ROOT_USER=without-password # configuration file, then a value of '2' may be set here in order to # suppress a warning message. This option has a default value of '0'. # -{% if ansible_distribution_major_version|int < 22 %} -# Fedora doesn't set protocol in ssh config +{% if ansible_distribution == 'Fedora' and ansible_distribution_major_version|int < 22 %} +# Fedora 21 doesn't set protocol in ssh config ALLOW_SSH_PROT_V1=2 {% else %} -# RHEL sets proto to v2 only +# For RHEL and Fedora 22+ we set proto to v2 only ALLOW_SSH_PROT_V1=0 {% endif %}