From a3a36193c023911abc8a13dd4d0e8a133397d3b0 Mon Sep 17 00:00:00 2001 From: guisea Date: Wed, 27 Jun 2018 12:42:57 +1200 Subject: [PATCH] Added block to only deal to SELinux if installed --- tasks/RedHat.yml | 21 +++++++++++++++++---- 1 file changed, 17 insertions(+), 4 deletions(-) diff --git a/tasks/RedHat.yml b/tasks/RedHat.yml index 2b72100..1f8f4e7 100644 --- a/tasks/RedHat.yml +++ b/tasks/RedHat.yml @@ -10,10 +10,23 @@ with_items: "{{ common_packages }}" tags: packages -- name: Ensure SELinux status - selinux: - state: disabled - register: sestate +- name: Check if SELinux is installed + stat: + path: /etc/selinux/config + register: se + tags: security + +- name: SELinux Management + block: + - name: selinux | Ensure SELinux status + selinux: + state: disabled + register: sestate + - name: selinux | Message Output + debug: + msg: "SELinux {{ sestate.msg }}" + when: sestate.changed + when: se.stat.exists tags: security - debug: