env-ansible/tasks/hardness_check_lynis.yml

11 lines
237 B
YAML

- name: Install Lynis
ansible.builtin.git:
repo: https://github.com/CISOfy/lynis
dest: /usr/local/lynis
clone: yes
force: yes
- name: Run Lynis
ansible.builtin.shell: lynis audit system
chdir: /usr/local/lynis/