public-health-ch/ansible/roles/dev-sec.os-hardening/tasks/limits.yml

10 lines
379 B
YAML
Raw Normal View History

2017-04-24 12:22:51 +00:00
---
- name: create limits.d-directory if it does not exist
file: path='/etc/security/limits.d' owner=root group=root mode=0755 state=directory
when: os_security_kernel_enable_core_dump
- name: create sane limits.conf
template: src='limits.conf.j2' dest='/etc/security/limits.d/10.hardcore.conf' owner=root group=root mode=0440
when: os_security_kernel_enable_core_dump