Thomas Buck
36571bace7
some fixes for debian 10
3 gadus atpakaļ
maxbachmann
4f3d1e415f
Update security.yml
5 gadus atpakaļ
Thomas Buck
5684f3c673
Install fail2ban with IPv6 support from stretch-backports (Debian 9).
5 gadus atpakaļ
Thomas Buck
c71c6d8559
Use new style of calling apt in ansible
5 gadus atpakaļ
Óscar Nájera
8f0cc14f76
Fix: Ansible uses the value present in apt module state parameter
6 gadus atpakaļ
Laurent Arnoud
311fae7e11
Trailing whitespace
9 gadus atpakaļ
Laurent Arnoud
3b8f15b745
Added whois for fail2ban report
Report will print: "missing whois program"
9 gadus atpakaļ
Manfred Touron
16c93ea486
Using more verbose 'dependencies' tag (#393 )
9 gadus atpakaļ
Manfred Touron
b49f3a6586
Tagged 'deps' aptitude tasks
9 gadus atpakaļ
Marius Voila
b13ab39f11
cleaning security.yml
10 gadus atpakaļ
fengor
7ed46f590c
renamed templates to be consistent with coding standard.
removed comment line in ssh_config
10 gadus atpakaļ
fengor
39566abb6c
More secure defaults for ssh.
Ciphers, Kex and MAC can be set via defaults.var
10 gadus atpakaļ
Marius Voila
e62bd7c71a
fail2ban support for Trusty
10 gadus atpakaļ
Lorenzo Villani
5d1090d488
Make sure fail2ban is started
10 gadus atpakaļ
Lorenzo Villani
d5ecf673d3
Calm OCD by sorting almost every with_items block in alphabetical order
10 gadus atpakaļ
Justin Plock
89f018bd23
In preparation for using any 2FA solution, it will most likely need to modify sshd_config, so let's change the file in place instead of overwriting it completely.
10 gadus atpakaļ
Alex Payne
f7f7157cec
more updated variable formatting and accommodation of the YAML parser being a fussbudget
11 gadus atpakaļ
Luke Cyca
09c8fcb295
Named all tasks and made them idempotent where possible
11 gadus atpakaļ
Luke Cyca
12d42ad38a
Configure sshd_config to disable PermitRootLogin and PasswordAuthentication
11 gadus atpakaļ
Alex Payne
080d38986c
first commit
11 gadus atpakaļ