diff --git a/defaults/main.yml b/defaults/main.yml index c61b4eae..8c2ed9ee 100644 --- a/defaults/main.yml +++ b/defaults/main.yml @@ -412,3 +412,5 @@ security_contrib_enabled: no # DANGER: SYSTEM. This will cause downtime for any services that depend on # DANGER: IPv6 network connectivity. security_contrib_disable_ipv6: no # C-00001 + +security_sysctl_file: "{{ openstack_sysctl_file | default('/etc/sysctl.conf') }}" diff --git a/tasks/rhel7stig/kernel.yml b/tasks/rhel7stig/kernel.yml index 49577a2e..5378bec1 100644 --- a/tasks/rhel7stig/kernel.yml +++ b/tasks/rhel7stig/kernel.yml @@ -31,6 +31,7 @@ name: "{{ item.name }}" value: "{{ item.value }}" state: "{{ item.enabled | ternary('present', 'absent') }}" + sysctl_file: "{{ security_sysctl_file }}" reload: yes when: - item.enabled | bool