From c10a33578b45ae43745c3a81f6d0f69e758c4c6c Mon Sep 17 00:00:00 2001 From: Dan D Date: Fri, 19 Apr 2024 13:16:29 -0700 Subject: [PATCH] Fixes syntax error in CIS benchmark causing control to never work Signed-off-by: Dan D --- tasks/section_5/cis_5.5.x.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/tasks/section_5/cis_5.5.x.yml b/tasks/section_5/cis_5.5.x.yml index d5492f5e..ada449c0 100644 --- a/tasks/section_5/cis_5.5.x.yml +++ b/tasks/section_5/cis_5.5.x.yml @@ -114,7 +114,7 @@ when: ubtu22cis_5_5_1_4_inactive_setting.stdout != ubtu22cis_pass.inactive | string - name: "5.5.1.4 | AUDIT | Ensure inactive password lock is 30 days or less | Get Individual users" - ansible.builtin.shell: "awk -F: '(/^[^:]+:[^!*]/ && ($7~/(\\\\s*$|-1)/ || ( $7>1 && $7<{{ ubtu22cis_pass.inactive }}))) {print $1}' /etc/shadow" + ansible.builtin.shell: "awk -F: '(/^[^:]+:[^!*]/ && ($7~/(\\s*|-1)/ || ( $7>1 && $7<{{ ubtu22cis_pass.inactive }}))) {print $1}' /etc/shadow" changed_when: false failed_when: false register: ubtu22cis_5_5_1_4_inactive_users