maxbachmann
4f3d1e415f
Update security.yml
5 anni fa
Thomas Buck
5684f3c673
Install fail2ban with IPv6 support from stretch-backports (Debian 9).
5 anni fa
Thomas Buck
c71c6d8559
Use new style of calling apt in ansible
5 anni fa
Óscar Nájera
8f0cc14f76
Fix: Ansible uses the value present in apt module state parameter
6 anni fa
Laurent Arnoud
311fae7e11
Trailing whitespace
9 anni fa
Laurent Arnoud
3b8f15b745
Added whois for fail2ban report
Report will print: "missing whois program"
9 anni fa
Manfred Touron
16c93ea486
Using more verbose 'dependencies' tag (#393 )
9 anni fa
Manfred Touron
b49f3a6586
Tagged 'deps' aptitude tasks
9 anni fa
Marius Voila
b13ab39f11
cleaning security.yml
10 anni fa
fengor
7ed46f590c
renamed templates to be consistent with coding standard.
removed comment line in ssh_config
10 anni fa
fengor
39566abb6c
More secure defaults for ssh.
Ciphers, Kex and MAC can be set via defaults.var
10 anni fa
Marius Voila
e62bd7c71a
fail2ban support for Trusty
10 anni fa
Lorenzo Villani
5d1090d488
Make sure fail2ban is started
10 anni fa
Lorenzo Villani
d5ecf673d3
Calm OCD by sorting almost every with_items block in alphabetical order
10 anni fa
Justin Plock
89f018bd23
In preparation for using any 2FA solution, it will most likely need to modify sshd_config, so let's change the file in place instead of overwriting it completely.
10 anni fa
Alex Payne
f7f7157cec
more updated variable formatting and accommodation of the YAML parser being a fussbudget
11 anni fa
Luke Cyca
09c8fcb295
Named all tasks and made them idempotent where possible
11 anni fa
Luke Cyca
12d42ad38a
Configure sshd_config to disable PermitRootLogin and PasswordAuthentication
11 anni fa
Alex Payne
080d38986c
first commit
11 anni fa