diff --git a/defaults/main.yml b/defaults/main.yml index 1cacb49a..e4d5ab44 100644 --- a/defaults/main.yml +++ b/defaults/main.yml @@ -573,7 +573,10 @@ ubtu22cis_grub_user_file: /etc/grub.d/00_user ubtu22cis_bootloader_password_hash: "grub.pbkdf2.sha512.changethispassword" # pragma: allowlist secret ubtu22cis_set_boot_pass: true -ubtu22cis_grub_file: /etc/default/grub.cfg +## Control 1.4.2 +# The grub configuration file contain senitive information, for example boot parameters or passwords. +# Specify the file here which is used by GRUB during boot. +ubtu22cis_grub_file: /boot/grub/grub.cfg ## Controls 1.6.1.x - apparmor # AppArmor security policies define what system resources applications can access and their privileges.