diff --git a/defaults/main.yml b/defaults/main.yml index e098097..a1a4b5a 100644 --- a/defaults/main.yml +++ b/defaults/main.yml @@ -860,8 +860,8 @@ amzn2023cis_ssh_loglevel: INFO ## Control 4.2.16 - Ensure SSH MaxAuthTries is set to 4 or less # This variable contains the maximum number of authentication attempts permitted -# per connection. This number should be 10 or less. -amzn2023cis_ssh_maxsauthtries: 4 +# per connection. This number should be 4 or less. +amzn2023cis_ssh_maxauthtries: 4 ## Control 4.2.18 - Ensure SSH MaxSessions is set to 10 or less # This variable contains the maximum number of open sessions permitted diff --git a/tasks/section_4/cis_4.2.x.yml b/tasks/section_4/cis_4.2.x.yml index 6ba0983..06a542a 100644 --- a/tasks/section_4/cis_4.2.x.yml +++ b/tasks/section_4/cis_4.2.x.yml @@ -353,7 +353,7 @@ ansible.builtin.lineinfile: path: "{{ item.path }}" regexp: '^(#)?MaxAuthTries \d' - line: 'MaxAuthTries {{ amzn2023cis_ssh_maxsauthtries }}' + line: 'MaxAuthTries {{ amzn2023cis_ssh_maxauthtries }}' validate: sshd -t -f %s with_items: - "{{ sshd_d_conf_files.files }}"