Releases: ansible-lockdown/AMAZON2-CIS
CIS v3.0.0 -Updates March 2026
Overview
March 26 alignment v3.0.0
- Run all rules against Amazon/amazon2 folders
- Common files alignment: LICENSE, CONTRIBUTING.rst, .github/workflows
- Lint converted AMAZON2-CIS-Audit vars/CIS.yml from 4-space to 2-space
- added missing variable definitions in defaults (amazon2cis_rule_1_1_3/4/5, amazon2cis_nft_tables_autoNewTable, amazon2cis_firewall_interface)
- Updated to latest versions
- Removed QA report md files
- March26 align merge
- Common files alignment: LICENSE, CONTRIBUTING, workflows, vars merge
- CIS remediation validation: task titles and tags aligned to canonical; rule_3.4.1.2 tag fixed
- 6.1.x: Paths and titles aligned for 6.1.3–6.1.10; 6.1.12 logic and content improved.
- Section 2: 2.1.12 updated for correct package.
- Section 4: 4.3.4 logic updated; 4.5.1.x var naming and controls updated (exclude connected user).
- Section 5: 5.1.4 improved.
- Section 3: Typo fix in 3.4.3.5; audit logic fixes.
- Titles & tags: Titles updated; tag/level fixes; spelling/typos fixed.
- Variables: Var naming aligned and standardised; vars moved to correct location.
- Behaviour:
skip_rebootset to true; tmp and wifi discovery logic updated. - Audit/template: Template added to auditd steps.
- Linting: YAML spacing, layout, and lint alignment; aligned with new standards.
- Other: Git ignore updated; handler name casing and lint updates.
What's Changed
- March26 align by @uk-bolly in #71
- March26 align by @uk-bolly in #72
- March26 align by @uk-bolly in #73
- Release sync to main by @uk-bolly in #74
Full Changelog: 3.0.1...3.0.2
CIS v3.0.0 - Dec25 updates
CIS 3.0.0 - applied fixed and updates from NOV25
Remediate
pre-commit update
What's Changed
- [pre-commit.ci] pre-commit autoupdate by @pre-commit-ci[bot] in #66
- [pre-commit.ci] pre-commit autoupdate by @pre-commit-ci[bot] in #67
- [pre-commit.ci] pre-commit autoupdate by @pre-commit-ci[bot] in #68
- Dec25 Updates by @uk-bolly in #69
Full Changelog: 3.0.0...3.0.1
CIS v3.0.0 - Nov25 updates
CIS 3.0.0 - applied fixed and updates from NOV25
Remediate
workflow updates
README updates
pre-commit update
What's Changed
- April updates by @uk-bolly in #49
- [pre-commit.ci] pre-commit autoupdate by @pre-commit-ci[bot] in #50
- [pre-commit.ci] pre-commit autoupdate by @pre-commit-ci[bot] in #51
- [pre-commit.ci] pre-commit autoupdate by @pre-commit-ci[bot] in #52
- [pre-commit.ci] pre-commit autoupdate by @pre-commit-ci[bot] in #53
- [pre-commit.ci] pre-commit autoupdate by @pre-commit-ci[bot] in #54
- [pre-commit.ci] pre-commit autoupdate by @pre-commit-ci[bot] in #55
- [pre-commit.ci] pre-commit autoupdate by @pre-commit-ci[bot] in #56
- Final updates by @uk-bolly in #57
- Added fixed workflow file by @uk-bolly in #59
- [pre-commit.ci] pre-commit autoupdate by @pre-commit-ci[bot] in #58
- updated workflow permissions by @uk-bolly in #60
- Add workflow auto add issue to project by @frederickw082922 in #61
- .github standardization by @frederickw082922 in #62
- [pre-commit.ci] pre-commit autoupdate by @pre-commit-ci[bot] in #63
- Update README by @uk-bolly in #64
- Update main with latest changes by @uk-bolly in #65
New Contributors
- @pre-commit-ci[bot] made their first contribution in #50
- @frederickw082922 made their first contribution in #61
Full Changelog: 1.3.1...3.0.0
v3.0.0 March25 update
Remediate
V3 release
audit updates
lint
pre-commit updates
What's Changed
- fixed handler for ssh line 221 by @uk-bolly in #41
- Update section names and conditions by @mfortin in #42
- removed legacy references to 6.2.12-17 issue #43 by @uk-bolly in #45
- removed legacy data 6.2.12-17 by @uk-bolly in #46
- updated workflow and gitignore by @uk-bolly in #47
- Release to main by @uk-bolly in #48
Full Changelog: 1.3.0...1.3.1
Benchmark 3.0.0
Remediate
V3 release
new workflow
audit updates
jmespath dependency remavl
lint
pre-commit updates
#35
#36
#37
#38
Audit
Updates to logic
improved copy/download setup for running audit
What's Changed
- Cis v3 by @uk-bolly in #35
- updated variables by @uk-bolly in #36
- tidy up workflows by @uk-bolly in #37
- update to /tmp mount systemd file by @uk-bolly in #38
- devel to main v3 release by @uk-bolly in #39
Full Changelog: 1.2.2...1.3.0
Final Benchmark 2.0.0 Release
CIS Version: 2.0.0 7-28-2021
Remediate
Issues closed and PRs merged - What's changed
lint
#21
improvements to 1.1.2 logic
What's Changed
Full Changelog: 1.1.0...1.2.2
What's Changed
- May23 updates by @uk-bolly in #20
- June24 issues by @uk-bolly in #30
- Issue 31 redo by @mfortin in #33
- Updates for final release v2.0 by @uk-bolly in #34
New Contributors
Full Changelog: 1.2.1...1.2.2
Cis 2.0.0 - updates and improvements
Summary
Audit alignments
lint updates and improvements
issues resolved
What's Changed
- Fixes lint workflow by @uk-bolly in #6
- updated the when on 1.1.3-1.1.5 by @georgenalen in #7
- updated workflow by @uk-bolly in #9
- Patch 5.4.2 to ensure account module using pam_faillock.so setup by @tonystaark in #8
- Audit workflow updates by @uk-bolly in #13
- March 23 by @uk-bolly in #14
- devel to main by @uk-bolly in #16
- Galaxy update to devel by @uk-bolly in #15
- devel to main release by @uk-bolly in #17
New Contributors
- @uk-bolly made their first contribution in #6
- @georgenalen made their first contribution in #7
- @tonystaark made their first contribution in #8
Full Changelog: 1.0.0...1.1.0
Initial Release
CIS Version: 2.0.0 07-28-21
Initial Release