dockpack.base_common
base_common is a role that sets up basic and secure settings for CentOS 7.
- The openssh-server is secured according to ssh-audit standards.
- This configuration removes the old ssh-rsa host key that is no longer recommended.
Requirements
This role is for systems that are similar to RHEL.
Role Variables
server:
install: true
packages:
- policycoreutils-python
- libsemanage-python
- postfix
# sshd settings
Ciphers: [email protected],[email protected],[email protected],aes256-ctr,aes192-ctr,aes128-ctr
HostKeyAlgorithms: [email protected],ssh-ed25519
KexAlgorithms: [email protected],diffie-hellman-group18-sha512,diffie-hellman-group16-sha512,diffie-hellman-group14-sha256
MACs: [email protected],[email protected],[email protected]
Dependencies
base_common can be used by other base roles.
Example Usage
Check out a full build server example at https://github.com/bbaassssiiee/buildserver
License
MIT
Author Information
Bas Meijer
@bbaassssiiee
Installa
ansible-galaxy install dockpack.base_common
Licenza
Unknown
Download
645
Proprietario
CI/CD