From c4c58299c2536d18318b5d62452f874585c39089 Mon Sep 17 00:00:00 2001 From: James Antill Date: Fri, 13 Feb 2026 16:07:37 -0500 Subject: [PATCH] check-etc: Add playbook to check /etc for old/unmanaged files. Signed-off-by: James Antill --- playbooks/check-etc.yml | 1484 +++++++++++++++++++++++++++++++++++++++ 1 file changed, 1484 insertions(+) create mode 100644 playbooks/check-etc.yml diff --git a/playbooks/check-etc.yml b/playbooks/check-etc.yml new file mode 100644 index 0000000000..899b06d924 --- /dev/null +++ b/playbooks/check-etc.yml @@ -0,0 +1,1484 @@ +# Check the files in /etc ... should probably use --limit and/or be much +# more clever so we can easily do per. host things. But this helps with the +# obvious problem of leftover files. +--- +- name: Audit /etc for unowned and unknown files + hosts: all + become: yes + vars: + # Add files here for things that store data in /etc/ + known_prefixes: + - /etc/dnf/modules.d + - /etc/lvm/archive + - /etc/lvm/backup + - /etc/lvm/devices/backup + - /etc/dirsrv/slapd-STG-FEDORAPROJECT-ORG + - /etc/libvirt/storage + - /etc/libvirt/qemu + - /etc/NetworkManager/system-connections + - /etc/udev/rules.d + - /etc/ipatuura-container-config + - /etc/containers/systemd/ipatuura.container + - /etc/ipa-tuura + + # Add files here that you know are safe but aren't from an RPM + known_filenames: + # NM files: + - /etc/NetworkManager/conf.d/00-nbde_client.conf + - /etc/NetworkManager/conf.d/noautodefault.conf + + # Email aliases files: + - /etc/aliases.db + - /etc/aliases.lmdb + + # Ansible files: + - /etc/ansible/facts.d/install_date.fact + + # Dracut files: + - /etc/dracut.conf.d/nbde_client.conf + + # CollectD files: + - /etc/collectd.d/network.conf + - /etc/collectd.d/nfs.conf + + # Our crond conf files: + - /etc/cron.daily/data-only-backup.sh + - /etc/cron.daily/freshclam + + - /etc/cron.d/ansible-check-update-hooks + - /etc/cron.d/ansible-clamscan + - /etc/cron.d/budget-sync + - /etc/cron.d/docs-sync + - /etc/cron.d/docs-rsync + - /etc/cron.d/easyfix.cron + - /etc/cron.d/pagure-bz + - /etc/cron.d/pagure-owner-alias + - /etc/cron.d/pagure-poc + - /etc/cron.d/restart-mirrorlist-processes + - /etc/cron.d/retired-packages.cron + - /etc/cron.d/sync-budget + - /etc/cron.d/sync-codecs + - /etc/cron.d/sync-developer + - /etc/cron.d/sync-fedoraloveskde + - /etc/cron.d/sync-fedora-web + - /etc/cron.d/sync-ostree-summary + - /etc/cron.d/sync-registry-index + - /etc/cron.d/sync-review-stats.cron + - /etc/cron.d/syncDeveloper.cron + - /etc/cron.d/syncfedoraloveskde.cron + + - /etc/cron.d/sync-alt + - /etc/cron.d/sync-community + - /etc/cron.d/sync-flocktofedora + - /etc/cron.d/sync-getfedora + - /etc/cron.d/sync-iot + - /etc/cron.d/sync-labs + - /etc/cron.d/sync-mirrors + - /etc/cron.d/sync-start + + # dconf files: + - /etc/dconf/db/distro + - /etc/dconf/db/local + - /etc/dconf/db/site + + # dnf plugin files: + - /etc/dnf/libdnf5-plugins/actions.d/mod_wsgi.actions + + - /etc/fedora-gather-easyfix/template.html + + # fedora-messaging files: + - /etc/fedora-messaging/config.toml + - /etc/fedora-messaging/git-hooks-messaging.toml + - /etc/fedora-messaging/ursabot.toml + + # gitconfig files: + - /etc/gitconfig + + - /etc/gssproxy/10-ipa.conf + + # haproxy files: + - /etc/haproxy/ipa.pem + - /etc/haproxy/ocp-stg.pem + - /etc/haproxy/ocp-stg-rdu3.pem + - /etc/haproxy/ocp4.pem + + # Our HTTPd (BIG!) conf files: + - /etc/httpd/alias/ipasession.key + + - /etc/httpd/conf.d/00-backend-listen.conf + - /etc/httpd/conf.d/02-ticketkey.conf + - /etc/httpd/conf.d/03-reqtimeout.conf + - /etc/httpd/conf.d/accounts.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/accounts.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/accounts.stg.fedoraproject.org/noggin.conf + - /etc/httpd/conf.d/accounts.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/accounts.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/00-bodhi2-cutover-users-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/01-bodhi2-cutover-comments-list-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/02-bodhi2-mine-fallback-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/03-bodhi2-cutover-overrides-list-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/04-bodhi2-new-update-gotcha-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/05-bodhi2-api-version-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/06-bodhi2-login-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/07-bodhi2-logout-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/08-bodhi2-rss-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/09-bodhi2-old-search-new-search-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/89-bodhi2-icon-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/90-bodhi2-cutover-updates-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/91-bodhi2-cutover-baseline-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/admin-rewrite.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/apache-status-rewrite.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/awstats.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/collectd.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/community-redirect.conf + - /etc/httpd/conf.d/admin.fedoraproject.org.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/elections-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/fingerprints.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/haproxy.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/mailman-pipermail-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/mailman-redirectmatch.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/maps.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/mirrormanager-old.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/nagios-redirect.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/oldfas-redirect.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/pager.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/pkgdb.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/security-txt.conf + - /etc/httpd/conf.d/admin.fedoraproject.org/yk-val.conf + - /etc/httpd/conf.d/alt.fedoraproject.org/alt.conf + - /etc/httpd/conf.d/alt.fedoraproject.org/00-cloud-redirect-redirectmatch.conf + - /etc/httpd/conf.d/alt.fedoraproject.org/alt-redirectmatch.conf + - /etc/httpd/conf.d/alt.fedoraproject.org.conf + - /etc/httpd/conf.d/alt.fedoraproject.org/languages.conf + - /etc/httpd/conf.d/alt.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/alt.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/alt.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/apachestatus.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/00-apps-rewrite.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/apps.fp.o.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/calendar-redirectmatch.conf + - /etc/httpd/conf.d/apps.fedoraproject.org.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/datagrepper.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/fedcalendar-redirect.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/fedora-notifications.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/fmn-redirect.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/kerneltest-redirect.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/koschei-redirect.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/mdapi-redirect.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/packages-redirect.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/pps.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/releng-dash-redirect.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/apps.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/apps.ocp-rdu3.stg.fedoraproject.org/apps-ocp-rdu3.conf + - /etc/httpd/conf.d/apps.ocp-rdu3.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/apps.ocp-rdu3.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/apps.ocp-rdu3.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/apps.ocp-rdu3.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/apps.ocp.stg.fedoraproject.org/apps.ocp.conf + - /etc/httpd/conf.d/apps.ocp.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/apps.ocp.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/apps.ocp.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/apps.ocp.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/arm.fedoraproject.org/arm-fedoraproject-redirect.conf + - /etc/httpd/conf.d/arm.fedoraproject.org.conf + - /etc/httpd/conf.d/arm.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/arm.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/arm.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/askbeta.fedoraproject.org/askbeta-redirect.conf + - /etc/httpd/conf.d/askbeta.fedoraproject.org.conf + - /etc/httpd/conf.d/askbeta.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/askbeta.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/askbeta.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/askbot.fedoraproject.org/askbot-to-ask-redirectmatch.conf + - /etc/httpd/conf.d/askbot.fedoraproject.org.conf + - /etc/httpd/conf.d/askbot.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/askbot.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/askbot.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/ask.fedoraproject.org/askbot.conf + - /etc/httpd/conf.d/ask.fedoraproject.org.conf + - /etc/httpd/conf.d/ask.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/ask.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/ask.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/awx.fedoraproject.org.conf + - /etc/httpd/conf.d/awx.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/awx.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/awx.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/badges.fedoraproject.org/badges.conf + - /etc/httpd/conf.d/badges.fedoraproject.org.conf + - /etc/httpd/conf.d/badges.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/badges.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/badges.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/bodhi.fedoraproject.org/bodhi.conf + - /etc/httpd/conf.d/bodhi.fedoraproject.org.conf + - /etc/httpd/conf.d/bodhi.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/bodhi.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/bodhi.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/bodhi.fedoraproject.org/send-user-to-users-redirectmatch.conf + - /etc/httpd/conf.d/boot.fedoraproject.org/boot-redirect.conf + - /etc/httpd/conf.d/boot.fedoraproject.org.conf + - /etc/httpd/conf.d/boot.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/boot.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/boot.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/budget.fedoraproject.org/budget.conf + - /etc/httpd/conf.d/budget.fedoraproject.org.conf + - /etc/httpd/conf.d/budget.fedoraproject.org/languages.conf + - /etc/httpd/conf.d/budget.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/budget.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/budget.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/bugs.stg.fedoraproject.org/bugs-redirect.conf + - /etc/httpd/conf.d/bugs.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/bugs.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/bugs.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/bugs.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/bugz.fedoraproject.org/bugz.conf + - /etc/httpd/conf.d/bugz.fedoraproject.org.conf + - /etc/httpd/conf.d/bugz.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/bugz.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/bugz.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/builds.coreos.stg.fedoraproject.org/00-coreosbuild-redirect.conf + - /etc/httpd/conf.d/builds.coreos.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/builds.coreos.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/builds.coreos.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/builds.coreos.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/calendar.fedoraproject.org/calendar.conf + - /etc/httpd/conf.d/calendar.fedoraproject.org.conf + - /etc/httpd/conf.d/calendar.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/calendar.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/calendar.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/candidate-registry.fedoraproject.org/candidate-registry.conf + - /etc/httpd/conf.d/candidate-registry.fedoraproject.org.conf + - /etc/httpd/conf.d/candidate-registry.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/candidate-registry.fedoraproject.org/passwd + - /etc/httpd/conf.d/candidate-registry.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/candidate-registry.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-32bit-19-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-32bit-20-raw-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-32bit-20-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-32bit-latest-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-64bit-19-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-64bit-20-raw-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-64bit-20-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-64bit-latest-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-atomic-64bit-21-raw-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-atomic-64bit-21-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-atomic-64bit-22-raw-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-atomic-64bit-22-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-atomic-64bit-23-raw-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-atomic-64bit-23-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-atomic-64bit-latest-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-32bit-21-raw-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-32bit-21-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-32bit-22-raw-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-32bit-22-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-32bit-23-raw-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-32bit-23-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-64bit-21-raw-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-64bit-21-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-64bit-22-raw-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-64bit-22-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-64bit-23-raw-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-64bit-23-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-64bit-24-raw-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-64bit-24-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-64bit-25-raw-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-base-64bit-25-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/cloud-front-page-redirect.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/cloud.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/codecs.fedoraproject.org/codecs.conf + - /etc/httpd/conf.d/codecs.fedoraproject.org/codecs-redirectmatch.conf + - /etc/httpd/conf.d/codecs.fedoraproject.org.conf + - /etc/httpd/conf.d/codecs.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/codecs.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/codecs.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/copr.fedoraproject.org.conf + - /etc/httpd/conf.d/copr.fedoraproject.org/copr.conf + - /etc/httpd/conf.d/copr.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/copr.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/copr.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/coreos.stg.fedoraproject.org/00-coreosfaq-redirect.conf + - /etc/httpd/conf.d/coreos.stg.fedoraproject.org/01-coreos-redirect.conf + - /etc/httpd/conf.d/coreos.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/coreos.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/coreos.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/coreos.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/data-analysis.fedoraproject.org.conf + - /etc/httpd/conf.d/data-analysis.fedoraproject.org/data-analysis.conf + - /etc/httpd/conf.d/data-analysis.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/data-analysis.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/data-analysis.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/debuginfod.fedoraproject.org.conf + - /etc/httpd/conf.d/debuginfod.fedoraproject.org/debuginfod.conf + - /etc/httpd/conf.d/debuginfod.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/debuginfod.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/debuginfod.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/developer.fedoraproject.org.conf + - /etc/httpd/conf.d/developer.fedoraproject.org/developer.conf + - /etc/httpd/conf.d/developer.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/developer.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/developer.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/developers.fedoraproject.org.conf + - /etc/httpd/conf.d/developers.fedoraproject.org/developers-redirect.conf + - /etc/httpd/conf.d/developers.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/developers.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/developers.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/directory.fedoraproject.org/00-directory-redirect-redirectmatch.conf + - /etc/httpd/conf.d/directory.fedoraproject.org.conf + - /etc/httpd/conf.d/directory.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/directory.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/directory.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/discourse2fedmsg.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/discourse2fedmsg.stg.fedoraproject.org/discourse2fedmsg.conf + - /etc/httpd/conf.d/discourse2fedmsg.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/discourse2fedmsg.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/discourse2fedmsg.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/discussions.fedoraproject.org/00-discussion-redirect-redirectmatch.conf + - /etc/httpd/conf.d/discussions.fedoraproject.org.conf + - /etc/httpd/conf.d/discussions.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/discussions.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/discussions.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/dist-git/lookaside-upload.conf + - /etc/httpd/conf.d/dist-git/repolist.conf + - /etc/httpd/conf.d/docs.fedoraproject.org/00-cpe-to-cle-redirectmatch.conf + - /etc/httpd/conf.d/docs.fedoraproject.org/00-docs-dei-redirectmatch.conf + - /etc/httpd/conf.d/docs.fedoraproject.org/00-docs-operations-redirectmatch.conf + - /etc/httpd/conf.d/docs.fedoraproject.org/00-docs-rewrite.conf + - /etc/httpd/conf.d/docs.fedoraproject.org/00-kinoite-to-atomic-desktops-redirectmatch.conf + - /etc/httpd/conf.d/docs.fedoraproject.org/00-sericea-to-atomic-desktops-redirectmatch.conf + - /etc/httpd/conf.d/docs.fedoraproject.org/00-silverblue-to-atomic-desktops-redirectmatch.conf + - /etc/httpd/conf.d/docs.fedoraproject.org.conf + - /etc/httpd/conf.d/docs.fedoraproject.org/fedora-docs.conf + - /etc/httpd/conf.d/docs.fedoraproject.org/fedora-docs-old.conf + - /etc/httpd/conf.d/docs.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/docs.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/docs.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/download.fedoraproject.org.conf + - /etc/httpd/conf.d/download.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/download.fedoraproject.org/mirrormanager-redirector.conf + - /etc/httpd/conf.d/download.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/download.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/elections.fedoraproject.org.conf + - /etc/httpd/conf.d/elections.fedoraproject.org/elections.conf + - /etc/httpd/conf.d/elections.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/elections.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/elections.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/epel.io.conf + - /etc/httpd/conf.d/epel.io/epel.io-redirect.conf + - /etc/httpd/conf.d/epel.io/logs.conf + - /etc/httpd/conf.d/epel.io/robots.conf + - /etc/httpd/conf.d/epel.io/securityheaders.conf + - /etc/httpd/conf.d/faf.fedoraproject.org.conf + - /etc/httpd/conf.d/faf.fedoraproject.org/faf.conf + - /etc/httpd/conf.d/faf.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/faf.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/faf.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/fas.fedoraproject.org.conf + - /etc/httpd/conf.d/fas.fedoraproject.org/fas-redirect.conf + - /etc/httpd/conf.d/fas.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/fas.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/fas.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/fasjson.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/fasjson.stg.fedoraproject.org/fasjson.conf + - /etc/httpd/conf.d/fasjson.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/fasjson.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/fasjson.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/fedoracommunity.org/fedoracommunity-redirect-redirectmatch.conf + - /etc/httpd/conf.d/fedorahosted.org/fedorahosted-redirects.conf + - /etc/httpd/conf.d/fedora.im.conf + - /etc/httpd/conf.d/fedora.im/logs.conf + - /etc/httpd/conf.d/fedora.im/matrix.conf + - /etc/httpd/conf.d/fedora.im/robots.conf + - /etc/httpd/conf.d/fedora.im/securityheaders.conf + - /etc/httpd/conf.d/fedoraloveskde.org.conf + - /etc/httpd/conf.d/fedoraloveskde.org/fedoraloveskde.conf + - /etc/httpd/conf.d/fedoraloveskde.org/logs.conf + - /etc/httpd/conf.d/fedoraloveskde.org/robots.conf + - /etc/httpd/conf.d/fedoraloveskde.org/securityheaders.conf + - /etc/httpd/conf.d/fedora.my.conf + - /etc/httpd/conf.d/fedora.my/fedoramy-redirect.conf + - /etc/httpd/conf.d/fedora.my/logs.conf + - /etc/httpd/conf.d/fedora.my/robots.conf + - /etc/httpd/conf.d/fedora.my/securityheaders.conf + - /etc/httpd/conf.d/fedoracommunity.org/fedoracommunity.org-web.conf + - /etc/httpd/conf.d/fedoracommunity.org/languages.conf + - /etc/httpd/conf.d/fedoraplanet.org.conf + - /etc/httpd/conf.d/fedoraplanet.org/fedoraplanet.conf + - /etc/httpd/conf.d/fedoraplanet.org/logs.conf + - /etc/httpd/conf.d/fedoraplanet.org/robots.conf + - /etc/httpd/conf.d/fedoraplanet.org/securityheaders.conf + - /etc/httpd/conf.d/fedoraproject.com.conf + - /etc/httpd/conf.d/fedoraproject.com/logs.conf + - /etc/httpd/conf.d/fedoraproject.com/robots.conf + - /etc/httpd/conf.d/fedoraproject.com/securityheaders.conf + - /etc/httpd/conf.d/fedoraproject.com/site-redirect.conf + - /etc/httpd/conf.d/fedoraproject.org/cache.conf + - /etc/httpd/conf.d/fedoraproject.org/code-of-conduct-redirect.conf + - /etc/httpd/conf.d/fedoraproject.org.conf + - /etc/httpd/conf.d/fedoraproject.org/deflate.conf + - /etc/httpd/conf.d/fedoraproject.org/docs-redirect.conf + - /etc/httpd/conf.d/fedoraproject.org/expires.conf + - /etc/httpd/conf.d/fedoraproject.org/fedorapeople-redirect.conf + - /etc/httpd/conf.d/fedoraproject.org/fedoraproject-fedoragpg-redirect.conf + - /etc/httpd/conf.d/fedoraproject.org/fedora-web.conf + - /etc/httpd/conf.d/fedoraproject.org/flathub-verified.conf + - /etc/httpd/conf.d/fedoraproject.org/fp-wiki.conf + - /etc/httpd/conf.d/fedoraproject.org/freemedia.conf + - /etc/httpd/conf.d/fedoraproject.org/hotspot.conf + - /etc/httpd/conf.d/fedoraproject.org/infofeed-redirect.conf + - /etc/httpd/conf.d/fedoraproject.org/logs.conf + - /etc/httpd/conf.d/fedoraproject.org/matrix.conf + - /etc/httpd/conf.d/fedoraproject.org/mattdm-google-validate.conf + - /etc/httpd/conf.d/fedoraproject.org/mime-types.conf + - /etc/httpd/conf.d/fedoraproject.org/people-redirect.conf + - /etc/httpd/conf.d/fedoraproject.org/persona.conf + - /etc/httpd/conf.d/fedoraproject.org/redirects.conf + - /etc/httpd/conf.d/fedoraproject.org/review-stats.conf + - /etc/httpd/conf.d/fedoraproject.org/robots.conf + - /etc/httpd/conf.d/fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/fedoraproject.org/sponsor.conf + - /etc/httpd/conf.d/flocktofedora.net.conf + - /etc/httpd/conf.d/flocktofedora.net/flocktofedora-redirect.conf + - /etc/httpd/conf.d/flocktofedora.net/logs.conf + - /etc/httpd/conf.d/flocktofedora.net/robots.conf + - /etc/httpd/conf.d/flocktofedora.net/securityheaders.conf + - /etc/httpd/conf.d/flocktofedora.org/flock-redirectmatch.conf + - /etc/httpd/conf.d/fonts.fedoraproject.org.conf + - /etc/httpd/conf.d/fonts.fedoraproject.org/fonts-wiki-redirect.conf + - /etc/httpd/conf.d/fonts.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/fonts.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/fonts.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/forge.fedoraproject.org/forge-pagure-attachments-redirectmatch.conf + - /etc/httpd/conf.d/forge.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/forge.stg.fedoraproject.org/forge.conf + - /etc/httpd/conf.d/forge.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/forge.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/forge.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/forwarded.conf + - /etc/httpd/conf.d/fpaste.org/fpaste-redirectmatch.conf + - /etc/httpd/conf.d/fudcon.fedoraproject.org.conf + - /etc/httpd/conf.d/fudcon.fedoraproject.org/fudcon-redirect.conf + - /etc/httpd/conf.d/fudcon.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/fudcon.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/fudcon.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/geoip.fedoraproject.org.conf + - /etc/httpd/conf.d/geoip.fedoraproject.org/geoip-city-wsgi-proxy.conf + - /etc/httpd/conf.d/geoip.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/geoip.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/geoip.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/getfedora.org.conf + - /etc/httpd/conf.d/getfedora.org/csp.conf + - /etc/httpd/conf.d/getfedora.org/getfedora.org.conf + - /etc/httpd/conf.d/getfedora.org/languages.conf + - /etc/httpd/conf.d/getfedora.org/logs.conf + - /etc/httpd/conf.d/getfedora.org/main-fedoraproject-redirect.conf + - /etc/httpd/conf.d/getfedora.org/robots.conf + - /etc/httpd/conf.d/getfedora.org/securityheaders.conf + - /etc/httpd/conf.d/get.fedoraproject.org.conf + - /etc/httpd/conf.d/get.fedoraproject.org/get-fedora-redirect.conf + - /etc/httpd/conf.d/get.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/get.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/get.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/git.fedorahosted.org/fedorahosted-redirects.conf + - /etc/httpd/conf.d/greenwave.fedoraproject.org.conf + - /etc/httpd/conf.d/greenwave.fedoraproject.org/greenwave.conf + - /etc/httpd/conf.d/greenwave.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/greenwave.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/greenwave.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/h2.conf + - /etc/httpd/conf.d/headers.conf + - /etc/httpd/conf.d/help.fedoraproject.org.conf + - /etc/httpd/conf.d/help.fedoraproject.org/get-help-redirect.conf + - /etc/httpd/conf.d/help.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/help.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/help.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/httpush.conf + - /etc/httpd/conf.d/id.stg.fedoraproject.org/00-ipa.conf + - /etc/httpd/conf.d/id.stg.fedoraproject.org/00-kdcproxy.conf + - /etc/httpd/conf.d/id.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/id.stg.fedoraproject.org/id.conf + - /etc/httpd/conf.d/id.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/id.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/id.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/iot.fedoraproject.org.conf + - /etc/httpd/conf.d/iot.fedoraproject.org/01-iot-redirect.conf + - /etc/httpd/conf.d/iot.fedoraproject.org/iot.conf + - /etc/httpd/conf.d/iot.fedoraproject.org/languages.conf + - /etc/httpd/conf.d/iot.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/iot.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/iot.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/join.fedoraproject.org.conf + - /etc/httpd/conf.d/join.fedoraproject.org/join-fedora-redirect.conf + - /etc/httpd/conf.d/join.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/join.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/join.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/k12linux.org.conf + - /etc/httpd/conf.d/k12linux.org/logs.conf + - /etc/httpd/conf.d/k12linux.org/robots.conf + - /etc/httpd/conf.d/k12linux.org/securityheaders.conf + - /etc/httpd/conf.d/kanban.qa.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/kanban.qa.stg.fedoraproject.org/kanban.conf + - /etc/httpd/conf.d/kanban.qa.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/kanban.qa.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/kanban.qa.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/kde.fedoraproject.org.conf + - /etc/httpd/conf.d/kde.fedoraproject.org/kde-redirect.conf + - /etc/httpd/conf.d/kde.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/kde.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/kde.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/kerneltest.fedoraproject.org.conf + - /etc/httpd/conf.d/kerneltest.fedoraproject.org/kerneltest.conf + - /etc/httpd/conf.d/kerneltest.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/kerneltest.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/kerneltest.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/keys.fedoraproject.org.conf + - /etc/httpd/conf.d/keys.fedoraproject.org/keys-rewrite.conf + - /etc/httpd/conf.d/keys.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/keys.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/keys.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/kinoite.fedoraproject.org/00-kinoite-redirect-redirectmatch.conf + - /etc/httpd/conf.d/kinoite.fedoraproject.org.conf + - /etc/httpd/conf.d/kinoite.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/kinoite.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/kinoite.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/koji.fedoraproject.org.conf + - /etc/httpd/conf.d/koji.fedoraproject.org/koji.conf + - /etc/httpd/conf.d/koji.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/koji.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/koji.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/kojipkgs.fedoraproject.org.conf + - /etc/httpd/conf.d/kojipkgs.fedoraproject.org/kojipkgs.conf + - /etc/httpd/conf.d/kojipkgs.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/kojipkgs.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/kojipkgs.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/koschei.fedoraproject.org.conf + - /etc/httpd/conf.d/koschei.fedoraproject.org/koschei.conf + - /etc/httpd/conf.d/koschei.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/koschei.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/koschei.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/l10n.fedoraproject.org.conf + - /etc/httpd/conf.d/l10n.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/l10n.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/l10n.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/labs.fedoraproject.org.conf + - /etc/httpd/conf.d/labs.fedoraproject.org/labs.conf + - /etc/httpd/conf.d/labs.fedoraproject.org/labs-redirectmatch.conf + - /etc/httpd/conf.d/labs.fedoraproject.org/languages.conf + - /etc/httpd/conf.d/labs.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/labs.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/labs.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/languages.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/languages.stg.fedoraproject.org/languages-redirect.conf + - /etc/httpd/conf.d/languages.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/languages.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/languages.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/lists.fedorahosted.org.conf + - /etc/httpd/conf.d/lists.fedorahosted.org/logs.conf + - /etc/httpd/conf.d/lists.fedorahosted.org/mailman3.conf + - /etc/httpd/conf.d/lists.fedorahosted.org/robots.conf + - /etc/httpd/conf.d/lists.fedorahosted.org/securityheaders.conf + - /etc/httpd/conf.d/lists.fedoraproject.org.conf + - /etc/httpd/conf.d/lists.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/lists.fedoraproject.org/mailman3.conf + - /etc/httpd/conf.d/lists.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/lists.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/mdapi.fedoraproject.org.conf + - /etc/httpd/conf.d/mdapi.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/mdapi.fedoraproject.org/mdapi.conf + - /etc/httpd/conf.d/mdapi.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/mdapi.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/meetbot.fedoraproject.org.conf + - /etc/httpd/conf.d/meetbot.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/meetbot.fedoraproject.org/mote.conf + - /etc/httpd/conf.d/meetbot.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/meetbot.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/meetbot-raw.fedoraproject.org.conf + - /etc/httpd/conf.d/meetbot-raw.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/meetbot-raw.fedoraproject.org/meetbot.conf + - /etc/httpd/conf.d/meetbot-raw.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/meetbot-raw.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/mirrormanager.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/mirrormanager.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/mirrormanager.stg.fedoraproject.org/mirrormanager.conf + - /etc/httpd/conf.d/mirrormanager.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/mirrormanager.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/mirrors.fedoraproject.org.conf + - /etc/httpd/conf.d/mirrors.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/mirrors.fedoraproject.org/mirrors.conf + - /etc/httpd/conf.d/mirrors.fedoraproject.org/mirrormanager-mirrorlist.conf + - /etc/httpd/conf.d/mirrors.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/mirrors.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/mirrors.stg.centos.org.conf + - /etc/httpd/conf.d/mirrors.stg.centos.org/logs.conf + - /etc/httpd/conf.d/mirrors.stg.centos.org/mirrormanager-mirrorlist.conf + - /etc/httpd/conf.d/mirrors.stg.centos.org/robots.conf + - /etc/httpd/conf.d/mirrors.stg.centos.org/securityheaders.conf + - /etc/httpd/conf.d/nagios.fedoraproject.org.conf + - /etc/httpd/conf.d/nagios.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/nagios.fedoraproject.org/nagios.conf + - /etc/httpd/conf.d/nagios.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/nagios.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/nagios-rdu3.fedoraproject.org.conf + - /etc/httpd/conf.d/nagios-rdu3.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/nagios-rdu3.fedoraproject.org/nagios-rdu3.conf + - /etc/httpd/conf.d/nagios-rdu3.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/nagios-rdu3.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/neuro.fedoraproject.org.conf + - /etc/httpd/conf.d/neuro.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/neuro.fedoraproject.org/neuro-redirect.conf + - /etc/httpd/conf.d/neuro.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/neuro.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/nightly.fedoraproject.org.conf + - /etc/httpd/conf.d/nightly.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/nightly.fedoraproject.org/nightly-redirect.conf + - /etc/httpd/conf.d/nightly.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/nightly.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/notifications.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/notifications.stg.fedoraproject.org/fmn.conf + - /etc/httpd/conf.d/notifications.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/notifications.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/notifications.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/ocp-rdu3.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/ocp-rdu3.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/ocp-rdu3.stg.fedoraproject.org/ocp-rdu3.conf + - /etc/httpd/conf.d/ocp-rdu3.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/ocp-rdu3.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/ocp.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/ocp.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/ocp.stg.fedoraproject.org/ocp.conf + - /etc/httpd/conf.d/ocp.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/ocp.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/odcs.fedoraproject.org/00-old-odcs-repo-redirectmatch.conf + - /etc/httpd/conf.d/odcs.fedoraproject.org/01-old-odcs-redirect.conf + - /etc/httpd/conf.d/odcs.fedoraproject.org.conf + - /etc/httpd/conf.d/odcs.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/odcs.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/odcs.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/ols.fedoraproject.org.conf + - /etc/httpd/conf.d/ols.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/ols.fedoraproject.org/ols.conf + - /etc/httpd/conf.d/ols.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/ols.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/openqa.fedoraproject.org.conf + - /etc/httpd/conf.d/openqa.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/openqa.fedoraproject.org/openqa.conf + - /etc/httpd/conf.d/openqa.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/openqa.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/openscanhub.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/openscanhub.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/openscanhub.stg.fedoraproject.org/openscanhub.conf + - /etc/httpd/conf.d/openscanhub.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/openscanhub.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/ostree.fedoraproject.org.conf + - /etc/httpd/conf.d/ostree.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/ostree.fedoraproject.org/ostree.conf + - /etc/httpd/conf.d/ostree.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/ostree.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/packager-dashboard.fedoraproject.org.conf + - /etc/httpd/conf.d/packager-dashboard.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/packager-dashboard.fedoraproject.org/packager-dashboard.conf + - /etc/httpd/conf.d/packager-dashboard.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/packager-dashboard.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/packages.fedoraproject.org.conf + - /etc/httpd/conf.d/packages.fedoraproject.org/fedora-packages-static.conf + - /etc/httpd/conf.d/packages.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/packages.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/packages.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/pagure_cron.conf + - /etc/httpd/conf.d/paste.fedoraproject.org.conf + - /etc/httpd/conf.d/paste.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/paste.fedoraproject.org/modernpaste-redirectmatch.conf + - /etc/httpd/conf.d/paste.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/paste.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/pdc.fedoraproject.org/00-old-pdc-redirect.conf + - /etc/httpd/conf.d/pdc.fedoraproject.org.conf + - /etc/httpd/conf.d/pdc.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/pdc.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/pdc.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/people.fedoraproject.org.conf + - /etc/httpd/conf.d/people.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/people.fedoraproject.org/people-fp-o-redirect.conf + - /etc/httpd/conf.d/people.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/people.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/pkgs.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/pkgs.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/pkgs.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/pkgs.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/pki.fedoraproject.org.conf + - /etc/httpd/conf.d/pki.fedoraproject.org/dogtagpki-redirect.conf + - /etc/httpd/conf.d/pki.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/pki.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/pki.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/planet.fedoraproject.org.conf + - /etc/httpd/conf.d/planet.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/planet.fedoraproject.org/planet.fedoraproject.org-redirect.conf + - /etc/httpd/conf.d/planet.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/planet.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/podcast.fedoraproject.org/00-podcast-redirect-redirectmatch.conf + - /etc/httpd/conf.d/podcast.fedoraproject.org.conf + - /etc/httpd/conf.d/podcast.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/podcast.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/podcast.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/port389.org.conf + - /etc/httpd/conf.d/port389.org/logs.conf + - /etc/httpd/conf.d/port389.org/port389-redirect.conf + - /etc/httpd/conf.d/port389.org/robots.conf + - /etc/httpd/conf.d/port389.org/securityheaders.conf + - /etc/httpd/conf.d/provision.stg.fedoraproject.org/02-iot-redirect.conf + - /etc/httpd/conf.d/provision.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/provision.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/provision.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/provision.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/qa.fedoraproject.org/blockerbugs.conf + - /etc/httpd/conf.d/qa.fedoraproject.org.conf + - /etc/httpd/conf.d/qa.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/qa.fedoraproject.org/qa-redirect.conf + - /etc/httpd/conf.d/qa.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/qa.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/raw-updates.coreos.stg.fedoraproject.org/cincinnati.conf + - /etc/httpd/conf.d/raw-updates.coreos.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/raw-updates.coreos.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/raw-updates.coreos.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/raw-updates.coreos.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/redirect.fedoraproject.org.conf + - /etc/httpd/conf.d/redirect.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/redirect.fedoraproject.org/redirect-cloudstart-redirectmatch.conf + - /etc/httpd/conf.d/redirect.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/redirect.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/registry.fedoraproject.org/00-registry-icon-rewrite.conf + - /etc/httpd/conf.d/registry.fedoraproject.org.conf + - /etc/httpd/conf.d/registry.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/registry.fedoraproject.org/passwd + - /etc/httpd/conf.d/registry.fedoraproject.org/registry-fedora.conf + - /etc/httpd/conf.d/registry.fedoraproject.org/reg-server-redirectmatch.conf + - /etc/httpd/conf.d/registry.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/registry.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/resultsdb.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/resultsdb.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/resultsdb.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/resultsdb.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/resultsdb.stg.fedoraproject.org/zz-resultsdb-resultsdb.conf + - /etc/httpd/conf.d/retrace.fedoraproject.org.conf + - /etc/httpd/conf.d/retrace.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/retrace.fedoraproject.org/retrace.conf + - /etc/httpd/conf.d/retrace.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/retrace.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/riscv-koji.fedoraproject.org.conf + - /etc/httpd/conf.d/riscv-koji.fedoraproject.org/koji.conf + - /etc/httpd/conf.d/riscv-koji.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/riscv-koji.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/riscv-koji.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/riscv-kojipkgs.fedoraproject.org.conf + - /etc/httpd/conf.d/riscv-kojipkgs.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/riscv-kojipkgs.fedoraproject.org/riscv-kojipkgs.conf + - /etc/httpd/conf.d/riscv-kojipkgs.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/riscv-kojipkgs.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/silverblue.fedoraproject.org/00-silverblue-redirect-redirectmatch.conf + - /etc/httpd/conf.d/silverblue.fedoraproject.org.conf + - /etc/httpd/conf.d/silverblue.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/silverblue.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/silverblue.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/smolts.org.conf + - /etc/httpd/conf.d/smolts.org/logs.conf + - /etc/httpd/conf.d/smolts.org/robots.conf + - /etc/httpd/conf.d/smolts.org/securityheaders.conf + - /etc/httpd/conf.d/spins.fedoraproject.org.conf + - /etc/httpd/conf.d/spins.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/spins.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/spins.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/spins.fedoraproject.org/spins-redirectmatch.conf + - /etc/httpd/conf.d/src.fedoraproject.org/cgit-redirect.conf + - /etc/httpd/conf.d/src.fedoraproject.org.conf + - /etc/httpd/conf.d/src.fedoraproject.org/expires.conf + - /etc/httpd/conf.d/src.fedoraproject.org/git.conf + - /etc/httpd/conf.d/src.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/src.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/src.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/sso.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/sso.stg.fedoraproject.org/id.conf + - /etc/httpd/conf.d/sso.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/sso.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/sso.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/start.fedoraproject.org.conf + - /etc/httpd/conf.d/start.fedoraproject.org/languages.conf + - /etc/httpd/conf.d/start.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/start.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/start.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/start.fedoraproject.org/site-redirect.conf + - /etc/httpd/conf.d/start.fedoraproject.org/start-web.conf + - /etc/httpd/conf.d/status.raw-updates.coreos.stg.fedoraproject.org/cincinnati.conf + - /etc/httpd/conf.d/status.raw-updates.coreos.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/status.raw-updates.coreos.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/status.raw-updates.coreos.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/status.raw-updates.coreos.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/status.updates.coreos.stg.fedoraproject.org/cincinnati.conf + - /etc/httpd/conf.d/status.updates.coreos.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/status.updates.coreos.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/status.updates.coreos.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/status.updates.coreos.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/stg.release-monitoring.org.conf + - /etc/httpd/conf.d/stg.release-monitoring.org/logs.conf + - /etc/httpd/conf.d/stg.release-monitoring.org/robots.conf + - /etc/httpd/conf.d/stg.release-monitoring.org/securityheaders.conf + - /etc/httpd/conf.d/stg.release-monitoring.org/stg.release-monitoring.conf + - /etc/httpd/conf.d/store.fedoraproject.org.conf + - /etc/httpd/conf.d/store.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/store.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/store.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/store.fedoraproject.org/store-redirect.conf + - /etc/httpd/conf.d/taskotron.fedoraproject.org.conf + - /etc/httpd/conf.d/taskotron.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/taskotron.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/taskotron.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/taskotron.fedoraproject.org/taskotron-buildmaster-redirect.conf + - /etc/httpd/conf.d/taskotron.fedoraproject.org/taskotron-execdb-redirect.conf + - /etc/httpd/conf.d/taskotron.fedoraproject.org/taskotron-landing-redirect.conf + - /etc/httpd/conf.d/taskotron.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/taskotron.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/taskotron.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/taskotron.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/taskotron.stg.fedoraproject.org/taskotron-stg-redirectmatch.conf + - /etc/httpd/conf.d/testdays.fedoraproject.org.conf + - /etc/httpd/conf.d/testdays.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/testdays.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/testdays.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/testdays.fedoraproject.org/testdays.conf + - /etc/httpd/conf.d/translate.fedoraproject.org.conf + - /etc/httpd/conf.d/translate.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/translate.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/translate.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/transtats.fedoraproject.org.conf + - /etc/httpd/conf.d/transtats.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/transtats.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/transtats.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/transtats.fedoraproject.org/transtats.conf + - /etc/httpd/conf.d/updates.coreos.stg.fedoraproject.org/cincinnati.conf + - /etc/httpd/conf.d/updates.coreos.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/updates.coreos.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/updates.coreos.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/updates.coreos.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/username.id.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/username.id.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/username.id.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/username.id.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/username.id.stg.fedoraproject.org/usernameid.conf + - /etc/httpd/conf.d/waiverdb.fedoraproject.org.conf + - /etc/httpd/conf.d/waiverdb.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/waiverdb.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/waiverdb.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/waiverdb.fedoraproject.org/waiverdb.conf + - /etc/httpd/conf.d/wallpapers.fedoraproject.org.conf + - /etc/httpd/conf.d/wallpapers.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/wallpapers.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/wallpapers.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/webhook.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/webhook.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/webhook.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/webhook.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/webhook.stg.fedoraproject.org/webhook2fedmsg.conf + - /etc/httpd/conf.d/whatcanidoforfedora.org.conf + - /etc/httpd/conf.d/whatcanidoforfedora.org/logs.conf + - /etc/httpd/conf.d/whatcanidoforfedora.org/robots.conf + - /etc/httpd/conf.d/whatcanidoforfedora.org/securityheaders.conf + - /etc/httpd/conf.d/whatcanidoforfedora.org/whatcanidoforfedora.conf + - /etc/httpd/conf.d/www.fedoracommunity.org/www-fedoracommunity-redirect-redirectmatch.conf + - /etc/httpd/conf.d/z_pagure.conf + - /etc/httpd/conf.d/zabbix.fedoraproject.org.conf + - /etc/httpd/conf.d/zabbix.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/zabbix.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/zabbix.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/zabbix.stg.fedoraproject.org.conf + - /etc/httpd/conf.d/zabbix.stg.fedoraproject.org/logs.conf + - /etc/httpd/conf.d/zabbix.stg.fedoraproject.org/robots.conf + - /etc/httpd/conf.d/zabbix.stg.fedoraproject.org/securityheaders.conf + - /etc/httpd/conf.d/zabbix.stg.fedoraproject.org/zabbix.conf + + - /etc/httpd/conf.d/fp.conf + - /etc/httpd/conf.d/infrastructure.fedoraproject.org.conf + - /etc/httpd/conf.d/meetbot.conf + - /etc/httpd/conf.d/nss.conf + - /etc/httpd/conf.d/referer-override.conf + - /etc/httpd/conf.d/testproxy.conf + + - /etc/httpd/conf/cacert.pem + - /etc/httpd/conf/pkgs.fedoraproject.org_key_and_cert.pem + + - /etc/httpd/conf.d/freemedia-app.conf + - /etc/httpd/conf.d/geoip-city-wsgi.conf + - /etc/httpd/conf.d/pager-app.conf + - /etc/httpd/conf.d/wsgi.conf + + - /etc/httpd/conf.d/kojiweb-stg.conf + - /etc/httpd/conf.d/rel-eng.conf + - /etc/httpd/conf.d/repo.conf + + - /etc/httpd/conf.d/ipa-tuura.conf + + - /etc/httpd/ticketkey_staging.tkey + + # IPA files: + - /etc/ipa/certprofiles/README + - /etc/ipa/certprofiles/userCerts.conf + - /etc/ipa/custodia/custodia.conf + - /etc/ipa/custodia/server.keys + + # Kerberos keytab files: + - /etc/dirsrv/ds.keytab + - /etc/httpd.keytab + - /etc/kojid/kojid.keytab + - /etc/krb5.keytab + - /etc/pkgs.keytab + - /etc/krb5.HTTP_id.stg.fedoraproject.org.keytab + - /etc/krb5.HTTP_id.stg.fedoraproject.org.keytab.combined + - /etc/krb5.monitoring_ipa01.stg.rdu3.fedoraproject.org.keytab + - /etc/krb5.stage-users_ipa01.stg.rdu3.fedoraproject.org.keytab + - /etc/krb5.ursabot_value01.stg.rdu3.fedoraproject.org.keytab + + # Kerberos files: + - /etc/krb5.conf.d/freeipa + - /etc/krb5.conf.d/freeipa-server + + # Kernel/init files: + - /etc/kernel/cmdline + + # KOJI files: + - /etc/kojid/plugins/flatpak.conf + - /etc/kojira/extras_cacert.pem + - /etc/kojira/kojira_cert_key.pem + - /etc/koji-hub/gssapi.keytab + - /etc/koji-osbuild/builder.conf + + # FIXME: ? + - /etc/pki/tls/certs/extras_cacert.pem + - /etc/pki/tls/certs/extras_upload_cacert.pem + - /etc/pki/tls/certs/localhost.crt + - /etc/pki/tls/certs/upload_cacert.pem + - /etc/pki/tls/private/localhost.key + + + # logrotate files: + - /etc/logrotate.d/mirrormanager + - /etc/logrotate.d/rsyslog + + # LVM files: + - /etc/lvm/devices/system.devices + + # MDADM files: + - /etc/mdadm.conf + + - /etc/modprobe.d/kvm_intel.conf + + # NF Tables files: + - /etc/nftables/fedora-infra-ipv4.nft + - /etc/nftables/fedora-infra-ipv6.nft + + # Nagios files: + - /etc/nrpe.d/check_basset.cfg + - /etc/nrpe.d/check_celery_redis_queue.cfg + - /etc/nrpe.d/check_countme.cfg + - /etc/nrpe.d/check_cron.cfg + - /etc/nrpe.d/check_datanommer_history.cfg + - /etc/nrpe.d/check_disk.cfg + - /etc/nrpe.d/check_fedmsg_composer_proc.cfg + - /etc/nrpe.d/check_fedmsg_consumers.cfg + - /etc/nrpe.d/check_fedmsg_gateway_proc.cfg + - /etc/nrpe.d/check_fedmsg_hub_proc.cfg + - /etc/nrpe.d/check_fedmsg_irc_proc.cfg + - /etc/nrpe.d/check_fedmsg_relay_proc.cfg + - /etc/nrpe.d/check_fmn.cfg + - /etc/nrpe.d/check_happroxy_conns.cfg + - /etc/nrpe.d/check_ipa.cfg + - /etc/nrpe.d/check_lock.cfg + - /etc/nrpe.d/check_lock_file_age.cfg + - /etc/nrpe.d/check_memcache.cfg + - /etc/nrpe.d/check_mirrorlist_cache.cfg + - /etc/nrpe.d/check_mirrorlist_docker_proxy.cfg + - /etc/nrpe.d/check_postfix_queue.cfg + - /etc/nrpe.d/check_postfix_redhat.cfg + - /etc/nrpe.d/check_proxies.cfg + - /etc/nrpe.d/check_raid.cfg + - /etc/nrpe.d/check_readonly_fs.cfg + - /etc/nrpe.d/check_redis_proc.cfg + - /etc/nrpe.d/check_rsyslogd_proc.cfg + - /etc/nrpe.d/check_swap.cfg + - /etc/nrpe.d/check_testcloud.cfg + - /etc/nrpe.d/check_websites_buildtime.cfg + - /etc/nrpe.d/check_varnish_proc.cfg + + # NVME files: + - /etc/nvme/hostid + - /etc/nvme/hostnqn + + # Multipath files: + - /etc/multipath.conf + - /etc/multipath/wwids + - /etc/multipath/bindings + + # OpenVPN files: + - /etc/openvpn/client/ca.crt + - /etc/openvpn/client/openvpn.conf + - /etc/openvpn/fix-routes.sh + - /etc/openvpn/server/ca.crt + + # Pagure files: + - /etc/pagure/client_secrets.json + - /etc/pagure/pagure_hook.cfg + - /etc/pagure/pagure_plugins.cfg + + # PKI files: + - /etc/pki/ca-trust/extracted/pem/directory-hash/STG.FEDORAPROJECT.ORG_IPA_CA.pem + - /etc/pki/fedora-messaging/cacert.pem + - /etc/pki/fedora-messaging/mediawiki.stg-cert.pem + - /etc/pki/fedora-messaging/mediawiki.stg-key.pem + - /etc/pki/fedora-messaging/ca.crt + - /etc/pki/fedora-messaging/ipa.stg.crt + - /etc/pki/fedora-messaging/ipa.stg.key + - /etc/pki/fedora-messaging/rabbitmq-ca.crt + - /etc/pki/fedora-messaging/ursabot.crt + - /etc/pki/fedora-messaging/ursabot.key + + - /etc/pki/pki.version + + - /etc/pki/httpd/fedora-server-ca.cert + - /etc/pki/httpd/registry-ca-staging.cert + + - /etc/pki/ipa-tuura/ca.crt + - /etc/pki/ipa-tuura/server.crt + - /etc/pki/ipa-tuura/server.key + + - /etc/pki/pki.version + - /etc/pki/pki-tomcat/Catalina/localhost/ROOT.xml + - /etc/pki/pki-tomcat/Catalina/localhost/acme.xml + - /etc/pki/pki-tomcat/Catalina/localhost/ca.xml + - /etc/pki/pki-tomcat/Catalina/localhost/pki.xml + - /etc/pki/pki-tomcat/acme/configsources.conf + - /etc/pki/pki-tomcat/acme/database.conf + - /etc/pki/pki-tomcat/acme/engine.conf + - /etc/pki/pki-tomcat/acme/issuer.conf + - /etc/pki/pki-tomcat/acme/realm.conf + - /etc/pki/pki-tomcat/alias/ca.crt + - /etc/pki/pki-tomcat/alias/cert9.db + - /etc/pki/pki-tomcat/alias/key4.db + - /etc/pki/pki-tomcat/alias/pkcs11.txt + - /etc/pki/pki-tomcat/alias/pwdfile.txt + - /etc/pki/pki-tomcat/catalina.policy + - /etc/pki/pki-tomcat/ca/CS.cfg + - /etc/pki/pki-tomcat/ca/adminCert.profile + - /etc/pki/pki-tomcat/ca/caAuditSigningCert.profile + - /etc/pki/pki-tomcat/ca/caCert.profile + - /etc/pki/pki-tomcat/ca/caOCSPCert.profile + - /etc/pki/pki-tomcat/ca/emails/ExpiredUnpublishJob + - /etc/pki/pki-tomcat/ca/emails/ExpiredUnpublishJobItem + - /etc/pki/pki-tomcat/ca/emails/certIssued_CA + - /etc/pki/pki-tomcat/ca/emails/certIssued_CA.html + - /etc/pki/pki-tomcat/ca/emails/certIssued_RA + - /etc/pki/pki-tomcat/ca/emails/certIssued_RA.html + - /etc/pki/pki-tomcat/ca/emails/certRequestRejected.html + - /etc/pki/pki-tomcat/ca/emails/certRevoked_CA + - /etc/pki/pki-tomcat/ca/emails/certRevoked_CA.html + - /etc/pki/pki-tomcat/ca/emails/certRevoked_RA + - /etc/pki/pki-tomcat/ca/emails/certRevoked_RA.html + - /etc/pki/pki-tomcat/ca/emails/euJob1.html + - /etc/pki/pki-tomcat/ca/emails/euJob1Item.html + - /etc/pki/pki-tomcat/ca/emails/publishCerts.html + - /etc/pki/pki-tomcat/ca/emails/publishCertsItem.html + - /etc/pki/pki-tomcat/ca/emails/reqInQueue_CA + - /etc/pki/pki-tomcat/ca/emails/reqInQueue_CA.html + - /etc/pki/pki-tomcat/ca/emails/reqInQueue_RA + - /etc/pki/pki-tomcat/ca/emails/reqInQueue_RA.html + - /etc/pki/pki-tomcat/ca/emails/riq1Item.html + - /etc/pki/pki-tomcat/ca/emails/riq1Summary.html + - /etc/pki/pki-tomcat/ca/emails/rnJob1.txt + - /etc/pki/pki-tomcat/ca/emails/rnJob1Item.txt + - /etc/pki/pki-tomcat/ca/emails/reqInQueue_RA + - /etc/pki/pki-tomcat/ca/emails/reqInQueue_RA.html + - /etc/pki/pki-tomcat/ca/emails/riq1Item.html + - /etc/pki/pki-tomcat/ca/emails/riq1Summary.html + - /etc/pki/pki-tomcat/ca/emails/rnJob1.txt + - /etc/pki/pki-tomcat/ca/emails/rnJob1Item.txt + - /etc/pki/pki-tomcat/ca/emails/rnJob1Summary.txt + - /etc/pki/pki-tomcat/ca/flatfile.txt + - /etc/pki/pki-tomcat/ca/profiles/ca/AdminCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/DomainController.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/ECAdminCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/acmeServerCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caAdminCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caAgentFileSigning.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caAgentServerCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caAuditSigningCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCACert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCMCECUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCMCECserverCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCMCECserverCertWithCRLDP.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCMCECsubsystemCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCMCUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCMCauditSigningCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCMCcaCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCMCcaIssuanceProtectionCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCMCkraStorageCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCMCkraTransportCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCMCocspCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCMCserverCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCMCserverCertWithCRLDP.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCMCsubsystemCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caCrossSignedCACert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caDirBasedDualCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caDirPinUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caDirUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caDirUserRenewal.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caDualCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caDualRAuserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECAdminCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECAgentServerCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECDirPinUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECDirUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECDualCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECFullCMCSharedTokenCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECFullCMCUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECFullCMCUserSignedCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECInternalAuthServerCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECInternalAuthSubsystemCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECServerCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECServerCertWithCRLDP.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECServerCertWithSCT.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECSimpleCMCUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECSubsystemCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caECUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caEncECUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caEncUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caFullCMCSharedTokenCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caFullCMCUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caFullCMCUserSignedCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caIPAserviceCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caInstallCACert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caInternalAuthAuditSigningCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caInternalAuthDRMstorageCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caInternalAuthOCSPCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caInternalAuthServerCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caInternalAuthSubsystemCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caInternalAuthTransportCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caJarSigningCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caManualRenewal.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caOCSPCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caOtherCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caRACert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caRARouterCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caRAagentCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caRAserverCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caRouterCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caSSLClientSelfRenewal.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caServerCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caServerCertWithCRLDP.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caServerCertWithSCT.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caServerKeygen_DirUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caServerKeygen_UserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caSignedLogCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caSigningECUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caSigningUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caSimpleCMCUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caStorageCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caSubsystemCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caTPSCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caTempTokenDeviceKeyEnrollment.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caTempTokenUserEncryptionKeyEnrollment.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caTempTokenUserSigningKeyEnrollment.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caTokenDeviceKeyEnrollment.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caTokenMSLoginEnrollment.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caTokenUserAuthKeyRenewal.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caTokenUserDelegateAuthKeyEnrollment.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caTokenUserDelegateSigningKeyEnrollment.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caTokenUserEncryptionKeyEnrollment.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caTokenUserEncryptionKeyRenewal.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caTokenUserSigningKeyEnrollment.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caTokenUserSigningKeyRenewal.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caTransportCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caUUIDdeviceCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caUserCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/caUserSMIMEcapCert.cfg + - /etc/pki/pki-tomcat/ca/profiles/ca/estServiceCert.cfg + - /etc/pki/pki-tomcat/ca/proxy.conf + - /etc/pki/pki-tomcat/ca/registry.cfg + - /etc/pki/pki-tomcat/ca/serverCert.profile + - /etc/pki/pki-tomcat/ca/subsystemCert.profile + - /etc/pki/pki-tomcat/certs/ca_audit_signing.csr + - /etc/pki/pki-tomcat/certs/ca_ocsp_signing.csr + - /etc/pki/pki-tomcat/certs/ca_signing.csr + - /etc/pki/pki-tomcat/certs/sslserver.csr + - /etc/pki/pki-tomcat/certs/subsystem.csr + - /etc/pki/pki-tomcat/dogtag.keys + - /etc/pki/pki-tomcat/dogtag.keytab + - /etc/pki/pki-tomcat/password.conf + - /etc/pki/pki-tomcat/server.xml + - /etc/pki/pki-tomcat/serverCertNick.conf + - /etc/pki/pki-tomcat/tomcat.conf + + - /etc/pki/tls/certs/coreos.stg.fedoraproject.org.cert + - /etc/pki/tls/certs/coreos.stg.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/epel.io.cert + - /etc/pki/tls/certs/epel.io.intermediate.cert + - /etc/pki/tls/certs/fedora.im.cert + - /etc/pki/tls/certs/fedora.im.intermediate.cert + - /etc/pki/tls/certs/fedoraloveskde.org.cert + - /etc/pki/tls/certs/fedoraloveskde.org.intermediate.cert + - /etc/pki/tls/certs/fedoraplanet.org.cert + - /etc/pki/tls/certs/fedoraplanet.org.intermediate.cert + - /etc/pki/tls/certs/getfedora.org.cert + - /etc/pki/tls/certs/getfedora.org.intermediate.cert + - /etc/pki/tls/certs/kanban.qa.stg.fedoraproject.org.cert + - /etc/pki/tls/certs/kanban.qa.stg.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/lists.fedorahosted.org.cert + - /etc/pki/tls/certs/lists.fedorahosted.org.intermediate.cert + - /etc/pki/tls/certs/mirrors.stg.centos.org.cert + - /etc/pki/tls/certs/mirrors.stg.centos.org.intermediate.cert + - /etc/pki/tls/certs/pkgs.stg.fedoraproject.org.cert + - /etc/pki/tls/certs/pkgs.stg.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/postfix.pem + - /etc/pki/tls/certs/qa.fedoraproject.org.cert + - /etc/pki/tls/certs/qa.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/qa.stg.fedoraproject.org.cert + - /etc/pki/tls/certs/qa.stg.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/raw-updates.coreos.stg.fedoraproject.org.cert + - /etc/pki/tls/certs/raw-updates.coreos.stg.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/status.raw-updates.coreos.stg.fedoraproject.org.cert + - /etc/pki/tls/certs/status.raw-updates.coreos.stg.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/status.updates.coreos.stg.fedoraproject.org.cert + - /etc/pki/tls/certs/status.updates.coreos.stg.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/stg.release-monitoring.org.cert + - /etc/pki/tls/certs/stg.release-monitoring.org.intermediate.cert + - /etc/pki/tls/certs/updates.coreos.stg.fedoraproject.org.cert + - /etc/pki/tls/certs/updates.coreos.stg.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/whatcanidoforfedora.org.cert + - /etc/pki/tls/certs/whatcanidoforfedora.org.intermediate.cert + - /etc/pki/tls/certs/wildcard-2025.apps.ocp.fedoraproject.org.cert + - /etc/pki/tls/certs/wildcard-2025.apps.ocp.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/wildcard-2025.apps.ocp-rdu3.fedoraproject.org.cert + - /etc/pki/tls/certs/wildcard-2025.apps.ocp-rdu3.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/wildcard-2025.apps.ocp-rdu3.stg.fedoraproject.org.cert + - /etc/pki/tls/certs/wildcard-2025.apps.ocp-rdu3.stg.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/wildcard-2025.apps.ocp.stg.fedoraproject.org.cert + - /etc/pki/tls/certs/wildcard-2025.apps.ocp.stg.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/wildcard-2025.fedoraproject.org.cert + - /etc/pki/tls/certs/wildcard-2025.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/wildcard-2025.id.fedoraproject.org.cert + - /etc/pki/tls/certs/wildcard-2025.id.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/wildcard-2025.id.stg.fedoraproject.org.cert + - /etc/pki/tls/certs/wildcard-2025.id.stg.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/wildcard-2025.stg.fedoraproject.org.cert + - /etc/pki/tls/certs/wildcard-2025.stg.fedoraproject.org.intermediate.cert + - /etc/pki/tls/certs/wildcard-2026.stg.fedoraproject.org.cert + - /etc/pki/tls/certs/wildcard-2026.stg.fedoraproject.org.intermediate.cert + - /etc/pki/tls/private/coreos.stg.fedoraproject.org.key + - /etc/pki/tls/private/epel.io.key + - /etc/pki/tls/private/fedora.im.key + - /etc/pki/tls/private/fedoraloveskde.org.key + - /etc/pki/tls/private/fedoraplanet.org.key + - /etc/pki/tls/private/getfedora.org.key + - /etc/pki/tls/private/kanban.qa.stg.fedoraproject.org.key + - /etc/pki/tls/private/lists.fedorahosted.org.key + - /etc/pki/tls/private/mirrors.stg.centos.org.key + - /etc/pki/tls/private/pkgs.stg.fedoraproject.org.key + - /etc/pki/tls/private/postfix.key + - /etc/pki/tls/private/qa.fedoraproject.org.key + - /etc/pki/tls/private/qa.stg.fedoraproject.org.key + - /etc/pki/tls/private/raw-updates.coreos.stg.fedoraproject.org.key + - /etc/pki/tls/private/status.raw-updates.coreos.stg.fedoraproject.org.key + - /etc/pki/tls/private/status.updates.coreos.stg.fedoraproject.org.key + - /etc/pki/tls/private/stg.release-monitoring.org.key + - /etc/pki/tls/private/updates.coreos.stg.fedoraproject.org.key + - /etc/pki/tls/private/whatcanidoforfedora.org.key + - /etc/pki/tls/private/wildcard-2025.apps.ocp.fedoraproject.org.key + - /etc/pki/tls/private/wildcard-2025.apps.ocp-rdu3.fedoraproject.org.key + - /etc/pki/tls/private/wildcard-2025.apps.ocp-rdu3.stg.fedoraproject.org.key + - /etc/pki/tls/private/wildcard-2025.apps.ocp.stg.fedoraproject.org.key + - /etc/pki/tls/private/wildcard-2025.fedoraproject.org.key + - /etc/pki/tls/private/wildcard-2025.id.fedoraproject.org.key + - /etc/pki/tls/private/wildcard-2025.id.stg.fedoraproject.org.key + - /etc/pki/tls/private/wildcard-2025.stg.fedoraproject.org.key + - /etc/pki/tls/private/wildcard-2026.stg.fedoraproject.org.key + + - /etc/pki/rabbitmq/git-hooks.ca + - /etc/pki/rabbitmq/git-hooks.crt + - /etc/pki/rabbitmq/git-hooks.key + - /etc/pki/rabbitmq/kojicert/koji.ca + - /etc/pki/rabbitmq/kojicert/koji.crt + - /etc/pki/rabbitmq/kojicert/koji.key + - /etc/pki/rabbitmq/pagurecert/src.fp.o.ca + - /etc/pki/rabbitmq/pagurecert/src.fp.o.crt + - /etc/pki/rabbitmq/pagurecert/src.fp.o.key + + # Profile files: + - /etc/profile.d/setprodiad2ps1.sh # FIXME ? + - /etc/profile.d/setprodrdu3ps1.sh + - /etc/profile.d/setstgps1.sh + + # Resolve files: + - /etc/resolv.conf + + # Rsyslogd files: + - /etc/rsyslog.d/haproxy.conf + - /etc/rsyslog.d/mirrorlists.conf + - /etc/rsyslog.d/rsyslog-audit.conf + - /etc/rsyslog.d/rsyslog-disablerate.conf + - /etc/rsyslog.d/rsyslog-imjournal-limits.conf + - /etc/rsyslog.d/rsyslog-log01.conf + + # SSH files: + - /etc/ssh/sshd_config.d/04-ipa.conf + - /etc/ssh/ssh_host_ecdsa_key + - /etc/ssh/ssh_host_ecdsa_key.pub + - /etc/ssh/ssh_host_ed25519_key + - /etc/ssh/ssh_host_ed25519_key.pub + - /etc/ssh/ssh_host_rsa_key + - /etc/ssh/ssh_host_rsa_key.pub + - /etc/ssh/ssh_host_ecdsa_key-cert.pub + - /etc/ssh/ssh_host_ed25519_key-cert.pub + - /etc/ssh/ssh_host_rsa_key-cert.pub + - /etc/ssh/ssh_known_hosts + + # SSSD files: + - /etc/sssd/conf.d/fedora-nss-ignore.conf + + # sudoers files: + - /etc/sudoers.d/norequiretty + + # Sysconfig files: + - /etc/sysconfig/anaconda + - /etc/sysconfig/authconfig + - /etc/sysconfig/freshclam + + - /etc/sysconfig/ipv4-cu-aggregated.zone + - /etc/sysconfig/ipv4-ir-aggregated.zone + - /etc/sysconfig/ipv4-kp-aggregated.zone + - /etc/sysconfig/ipv4-sy-aggregated.zone + - /etc/sysconfig/ipv6-cu.zone + - /etc/sysconfig/ipv6-kp.zone + - /etc/sysconfig/ipv6-ir.zone + - /etc/sysconfig/ipv6-sy.zone + + - /etc/sysconfig/kernel + + - /etc/sysconfig/network + - /etc/sysconfig/network-scripts/ifcfg-eth0 + + - /etc/sysconfig/pki-tomcat + - /etc/sysconfig/pki/tomcat/pki-tomcat/ca/default.cfg + - /etc/sysconfig/pki/tomcat/pki-tomcat/ca/deployment.cfg + - /etc/sysconfig/pki/tomcat/pki-tomcat/ca/manifest + - /etc/sysconfig/pki/tomcat/pki-tomcat/pki-tomcat + + - /etc/sysconfig/sshd-permitrootlogin + + # SystemD files: + - /etc/systemd/system/btrfs-balance.timer.d/schedule.conf + - /etc/systemd/system/dirsrv@STG-FEDORAPROJECT-ORG.service.d/ipa-env.conf + - /etc/systemd/system/dnf-automatic.timer.d/weekdays.conf + - /etc/systemd/system/dnf5-automatic.timer.d/weekdays.conf + - /etc/systemd/system/dnf-automatic-install.timer.d/weekdays.conf + - /etc/systemd/system/git@.service + - /etc/systemd/system/httpd.service.d/env.conf + - /etc/systemd/system/httpd.service.d/httpdoverride.conf + - /etc/systemd/system/httpd.service.d/ipa.conf + - /etc/systemd/system/kojid.service + - /etc/systemd/system/mirrorlist1.service + - /etc/systemd/system/mirrorlist2.service + - /etc/systemd/system/pagure_ev.service + - /etc/systemd/system/pagure_logcom.service + - /etc/systemd/system/pagure_webhook.service + - /etc/systemd/system/pagure_worker.service + - /etc/systemd/system/pki-tomcatd@pki-tomcat.service.d/ipa.conf + - /etc/systemd/system/ursabot.service + - /etc/systemd/system/varnish.service + + + # tmpfiles files: + - /etc/tmpfiles.d/dirsrv-STG-FEDORAPROJECT-ORG.conf + + # YUM files: + - /etc/yum.repos.d/epel8.repo + - /etc/yum.repos.d/epel9.repo + - /etc/yum.repos.d/epel10.repo + - /etc/yum.repos.d/infra-tags.repo + - /etc/yum.repos.d/infra-tags-stg.repo + - /etc/yum.repos.d/rhel8.repo + - /etc/yum.repos.d/rhel9.repo + - /etc/yum.repos.d/rhel10.repo + + # Zabbix files: + - /etc/zabbix/fedora.psk + - /etc/zabbix/zabbix_agentd.d/anubis.conf + - /etc/zabbix/zabbix_agentd.d/interface-alias.conf + - /etc/zabbix/zabbix_agentd.d/ipa-backup.conf + - /etc/zabbix/zabbix_agentd.d/postfix.conf + - /etc/zabbix/zabbix_agentd.d/raid.conf + - /etc/zabbix/zabbix_agentd.conf + + # Are these known though? + - /etc/firewalld/zones/public.xml + - /etc/modules-load.d/nf_conntrack.conf + - /etc/system_identification + - /etc/varnish/secret + + + tasks: + - name: Find all files in /etc + find: + paths: /etc + excludes: + - "*~" + - "*-" + - "*.bak" + - "*.ipabkp" + - "*.old" + - "*.orig" + - "*.deleted" + - "*.rpmnew" + - "*.rpmsave" + - "*.swp" + - "*.save_by_rpm" + file_type: file + recurse: yes # Set to 'yes' if you want to check subdirectories + register: etc_files + + - name: Filter known files from list + set_fact: + filt_etc_files: >- + {{ + etc_files.files + | rejectattr('path', 'in', known_filenames) + | rejectattr('path', 'match', '^(' + (known_prefixes | join('|')) + ')') + }} + + - name: Check RPM ownership for each file + shell: "rpm -qf {{ item.path }}" + loop: "{{ filt_etc_files }}" + register: rpm_results + failed_when: false + changed_when: false + + - name: Identify files requiring attention + set_fact: + unmanaged_files: >- + {{ + rpm_results.results + | selectattr('rc', 'ne', 0) + | map(attribute='item.path') + }} + + # We can read the filenames out of the log file JSON with: + # jq .results[].msg ansible-log-JSON.txt | \ + # sed 's/"UNKNOWN File: \(- .*\)"/\1/' | sort -V + - name: Report unmanaged files + debug: + msg: "UNKNOWN File: - {{ item }}" + loop: "{{ unmanaged_files }}" + + - name: Final Status + debug: + msg: "All files in /etc are known." + when: unmanaged_files | length == 0