Thomas Buck
36571bace7
some fixes for debian 10
3 jaren geleden
maxbachmann
4f3d1e415f
Update security.yml
5 jaren geleden
Thomas Buck
5684f3c673
Install fail2ban with IPv6 support from stretch-backports (Debian 9).
5 jaren geleden
Thomas Buck
c71c6d8559
Use new style of calling apt in ansible
5 jaren geleden
Óscar Nájera
8f0cc14f76
Fix: Ansible uses the value present in apt module state parameter
6 jaren geleden
Laurent Arnoud
311fae7e11
Trailing whitespace
9 jaren geleden
Laurent Arnoud
3b8f15b745
Added whois for fail2ban report
Report will print: "missing whois program"
9 jaren geleden
Manfred Touron
16c93ea486
Using more verbose 'dependencies' tag (#393 )
9 jaren geleden
Manfred Touron
b49f3a6586
Tagged 'deps' aptitude tasks
9 jaren geleden
Marius Voila
b13ab39f11
cleaning security.yml
10 jaren geleden
fengor
7ed46f590c
renamed templates to be consistent with coding standard.
removed comment line in ssh_config
10 jaren geleden
fengor
39566abb6c
More secure defaults for ssh.
Ciphers, Kex and MAC can be set via defaults.var
10 jaren geleden
Marius Voila
e62bd7c71a
fail2ban support for Trusty
10 jaren geleden
Lorenzo Villani
5d1090d488
Make sure fail2ban is started
10 jaren geleden
Lorenzo Villani
d5ecf673d3
Calm OCD by sorting almost every with_items block in alphabetical order
10 jaren geleden
Justin Plock
89f018bd23
In preparation for using any 2FA solution, it will most likely need to modify sshd_config, so let's change the file in place instead of overwriting it completely.
10 jaren geleden
Alex Payne
f7f7157cec
more updated variable formatting and accommodation of the YAML parser being a fussbudget
11 jaren geleden
Luke Cyca
09c8fcb295
Named all tasks and made them idempotent where possible
11 jaren geleden
Luke Cyca
12d42ad38a
Configure sshd_config to disable PermitRootLogin and PasswordAuthentication
11 jaren geleden
Alex Payne
080d38986c
first commit
11 jaren geleden