Sha256: 32b5a75a402d2fbffd857efbeb3b4e58acbdb99fec5e2e78714f2fdab3514784

Contents?: true

Size: 1.48 KB

Versions: 3

Compression:

Stored size: 1.48 KB

Contents

# encoding: utf-8
# copyright: 2015, Vulcano Security GmbH

require 'utils/simpleconfig'

module Inspec::Resources
  class LimitsConf < Inspec.resource(1)
    name 'limits_conf'
    supports platform: 'unix'
    desc 'Use the limits_conf InSpec audit resource to test configuration settings in the /etc/security/limits.conf file. The limits.conf defines limits for processes (by user and/or group names) and helps ensure that the system on which those processes are running remains stable. Each process may be assigned a hard or soft limit.'
    example "
      describe limits_conf do
        its('*') { should include ['hard','core','0'] }
      end
    "

    def initialize(path = nil)
      @conf_path = path || '/etc/security/limits.conf'
    end

    def method_missing(name)
      read_params[name.to_s]
    end

    def read_params
      return @params if defined?(@params)

      # read the file
      file = inspec.file(@conf_path)
      if !file.file?
        skip_resource "Can't find file \"#{@conf_path}\""
        return @params = {}
      end

      content = file.content
      if content.empty? && !file.empty?
        skip_resource "Can't read file \"#{@conf_path}\""
        return @params = {}
      end

      # parse the file
      conf = SimpleConfig.new(
        content,
        assignment_regex: /^\s*(\S+?)\s+(.*?)\s+(.*?)\s+(.*?)\s*$/,
        key_values: 3,
        multiple_values: true,
      )
      @params = conf.params
    end

    def to_s
      'limits.conf'
    end
  end
end

Version data entries

3 entries across 3 versions & 1 rubygems

Version Path
inspec-2.1.0 lib/resources/limits_conf.rb
inspec-2.0.45 lib/resources/limits_conf.rb
inspec-2.0.16 lib/resources/limits_conf.rb