ansible-hardening/doc/source/stig-notes/V-51363_developer.rst
Major Hayden 088884c731 Ensure that doc linting is included in the linters test
The 'docs' tox target executes the doc8 lint test which may result in
failures when testing documentation builds, but OpenStack-CI does not
execute that tox target.

In order to ensure that we catch all standard documentation syntax
errors and prevent them from merging, this patch includes the docs
target in the 'linters' chain of tests.

Fixes for any failures which result from executing this test are also
included in the patch.

Change-Id: I80c2ce387e59a30c34bf2252a54037c00b420380
2016-07-25 10:45:11 -05:00

380 B

For Ubuntu, the standard AppArmor policies provided by the AppArmor package are loaded. The OpenStack-Ansible project also configures AppArmor to limit the actions of containers and reduce the changes (and potential damages) of a container breakout.

On CentOS 7, the selinux-policy-targeted package provides SELinux policies that enforce limits on system services and users.