From 68d911449417c601330415431b70057d0c0b00df Mon Sep 17 00:00:00 2001 From: Kevin Fenzi Date: Mon, 3 May 2021 09:29:00 -0700 Subject: [PATCH] adjust rkhunter some more for podman and postgres Signed-off-by: Kevin Fenzi --- roles/rkhunter/templates/rkhunter.conf.j2 | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/roles/rkhunter/templates/rkhunter.conf.j2 b/roles/rkhunter/templates/rkhunter.conf.j2 index 830b76543a..3f0d29c576 100644 --- a/roles/rkhunter/templates/rkhunter.conf.j2 +++ b/roles/rkhunter/templates/rkhunter.conf.j2 @@ -393,10 +393,10 @@ ALLOWDEVFILE=/dev/shm/spice.* {% if inventory_hostname in groups['ipa'] or inventory_hostname in groups['ipa_stg'] %} ALLOWDEVFILE=/dev/shm/sem.slapd*.stats {% endif %} -{% if inventory_hostname in groups['proxies'] or inventory_hostname in groups['proxies_stg'] %} -ALLOWDEVFILE=/dev/shm/libpod_rootless_lock_441 +{% if inventory_hostname in groups['retrace'] or inventory_hostname in groups['releng_compose'] %} +ALLOWDEVFILE=/dev/shm/libpod_* {% endif %} -{% if inventory_hostname in groups['dbserver'] or inventory_hostname in groups['dbserver_stg'] or inventory_hostname in groups['pkgs'] or inventory_hostname in groups['pagure'] or inventory_hostname in groups['pagure_stg'] or inventory_hostname in groups['zabbix_stg'] %} +{% if inventory_hostname in groups['dbserver'] or inventory_hostname in groups['dbserver_stg'] or inventory_hostname in groups['pkgs'] or inventory_hostname in groups['pagure'] or inventory_hostname in groups['pagure_stg'] or inventory_hostname in groups['zabbix_stg'] or inventory_hostname in groups['retrace'] %} ALLOWDEVFILE=/dev/shm/PostgreSQL* {% endif %}