3 ms·
The Linux hardening list lists quite some modifications but what hardening is made to SSH compared to a stock config? For Linux they summarize the list of harde
by TacticalCoder 9mo ago
The Linux hardening list lists quite some modifications but what hardening is made to SSH compared to a stock config? For Linux they summarize the list of hardened changes but for SSH I couldn't find it.
For SSH it's basically a list of default values with a comment saying "change this if you must". Some summary as to what is hardened compared to a stock SSH install would be nice.
- observationist 9mo agohttps://github.com/dev-sec/ansible-collection-hardening/blob/master/roles/ssh_hardening/CHANGELOG.md https://github.com/dev-sec/ansible-collection-hardening/blob... The changelogs contain a summary of actions and changes, and full changelogs go into detail.
- imcritic 9mo agoThat's a poor answer. Changelogs are logs of changes between versions of a project.
- schurzi 9mo agoMaintainer here, we use a collection of baselines that are derived from internal guidelines and CIS benchmarks. The baselines have some more information as to what is done. For example SSH: https://github.com/dev-sec/ssh-baseline https://github.com/dev-sec/ssh-baseline