diff --git a/roles/wazuh/ansible-wazuh-manager/defaults/main.yml b/roles/wazuh/ansible-wazuh-manager/defaults/main.yml index 4a2442d4..1da3b48b 100644 --- a/roles/wazuh/ansible-wazuh-manager/defaults/main.yml +++ b/roles/wazuh/ansible-wazuh-manager/defaults/main.yml @@ -351,8 +351,11 @@ wazuh_manager_authd: enable: true port: 1515 use_source_ip: 'no' - force_insert: 'yes' - force_time: 0 + force: + enabled: 'yes' + key_mismatch: 'yes' + disconnected_time: '1h' + after_registration_time: '1h' purge: 'yes' use_password: 'no' ciphers: 'HIGH:!ADH:!EXP:!MD5:!RC4:!3DES:!CAMELLIA:@STRENGTH' diff --git a/roles/wazuh/ansible-wazuh-manager/templates/var-ossec-etc-ossec-server.conf.j2 b/roles/wazuh/ansible-wazuh-manager/templates/var-ossec-etc-ossec-server.conf.j2 index 3242e88b..c5c1a788 100644 --- a/roles/wazuh/ansible-wazuh-manager/templates/var-ossec-etc-ossec-server.conf.j2 +++ b/roles/wazuh/ansible-wazuh-manager/templates/var-ossec-etc-ossec-server.conf.j2 @@ -369,7 +369,9 @@ {{ command.name }} {{ command.executable }} - {{ command.expect }} + {% if command.expect is defined %} + {{ command.expect }} + {% endif %} {% if command.timeout_allowed is defined %} {{ command.timeout_allowed }} {% endif %} @@ -623,12 +625,28 @@ {% if wazuh_manager_config.authd.use_source_ip is not none %} {{wazuh_manager_config.authd.use_source_ip}} {% endif %} - {% if wazuh_manager_config.authd.force_insert is not none %} - {{wazuh_manager_config.authd.force_insert}} - {% endif %} - {% if wazuh_manager_config.authd.force_time is not none %} - {{wazuh_manager_config.authd.force_time}} - {% endif %} + + {% if wazuh_manager_config.authd.force.enabled is not none %} + {{wazuh_manager_config.authd.force.enabled}} + {% else %} + yes + {% endif %} + {% if wazuh_manager_config.authd.force.key_mismatch is not none %} + {{wazuh_manager_config.authd.force.key_mismatch}} + {% else %} + yes + {% endif %} + {% if wazuh_manager_config.authd.force.disconnected_time is not none %} + {{wazuh_manager_config.authd.force.disconnected_time}} + {% else %} + 1h + {% endif %} + {% if wazuh_manager_config.authd.force.after_registration_time is not none %} + {{wazuh_manager_config.authd.force.after_registration_time}} + {% else %} + 1h + {% endif %} + {% if wazuh_manager_config.authd.purge is not none %} {{wazuh_manager_config.authd.purge}} {% endif %}