Skip to content

Commit

Permalink
Merge pull request #12324 from mrkanon/ansible-harden_sshd_ciphers
Browse files Browse the repository at this point in the history
Update ansible remediation to harden_sshd_ciphers_openssh_conf_crypto_policy rule
  • Loading branch information
Mab879 authored Sep 4, 2024
2 parents 7523107 + b5f8367 commit 00e258c
Show file tree
Hide file tree
Showing 9 changed files with 17 additions and 17 deletions.
Original file line number Diff line number Diff line change
@@ -1,4 +1,4 @@
# platform = Oracle Linux 8,Red Hat Enterprise Linux 8,multi_platform_fedora
# platform = Oracle Linux 8,Oracle Linux 9,Red Hat Enterprise Linux 8,multi_platform_fedora
# reboot = true
# strategy = restrict
# complexity = low
Expand Down
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
#!/bin/bash
# platform = Oracle Linux 8,Red Hat Enterprise Linux 8,multi_platform_fedora
# profiles = xccdf_org.ssgproject.content_profile_stig
# platform = Oracle Linux 8,Oracle Linux 9,Red Hat Enterprise Linux 8,multi_platform_fedora
# variables = sshd_approved_ciphers=aes256-ctr,aes192-ctr,aes128-ctr

sshd_approved_ciphers=aes256-ctr,aes192-ctr,aes128-ctr
configfile=/etc/crypto-policies/back-ends/openssh.config
Expand Down
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
#!/bin/bash
# platform = Oracle Linux 8,Red Hat Enterprise Linux 8,multi_platform_fedora
# profiles = xccdf_org.ssgproject.content_profile_stig
# platform = Oracle Linux 8,Oracle Linux 9,Red Hat Enterprise Linux 8,multi_platform_fedora
# variables = sshd_approved_ciphers=aes256-ctr,aes192-ctr,aes128-ctr

sshd_approved_ciphers=aes256-ctr,aes192-ctr,aes128-ctr
configfile=/etc/crypto-policies/back-ends/openssh.config
Expand Down
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
#!/bin/bash
# platform = Oracle Linux 8,Red Hat Enterprise Linux 8,multi_platform_fedora
# profiles = xccdf_org.ssgproject.content_profile_stig
# platform = Oracle Linux 8,Oracle Linux 9,Red Hat Enterprise Linux 8,multi_platform_fedora
# variables = sshd_approved_ciphers=aes256-ctr,aes192-ctr,aes128-ctr

sshd_approved_ciphers=aes256-ctr,aes192-ctr,aes128-ctr
configfile=/etc/crypto-policies/back-ends/openssh.config
Expand Down
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
#!/bin/bash
# platform = Oracle Linux 8,Red Hat Enterprise Linux 8,multi_platform_fedora
# profiles = xccdf_org.ssgproject.content_profile_stig
# platform = Oracle Linux 8,Oracle Linux 9,Red Hat Enterprise Linux 8,multi_platform_fedora
# variables = sshd_approved_ciphers=aes256-ctr,aes192-ctr,aes128-ctr

configfile=/etc/crypto-policies/back-ends/openssh.config

Expand Down
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
#!/bin/bash
# platform = Oracle Linux 8,Red Hat Enterprise Linux 8,multi_platform_fedora
# profiles = xccdf_org.ssgproject.content_profile_stig
# platform = Oracle Linux 8,Oracle Linux 9,Red Hat Enterprise Linux 8,multi_platform_fedora
# variables = sshd_approved_ciphers=aes256-ctr,aes192-ctr,aes128-ctr

configfile=/etc/crypto-policies/back-ends/openssh.config

Expand Down
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
#!/bin/bash
# platform = Oracle Linux 8,Red Hat Enterprise Linux 8,multi_platform_fedora
# profiles = xccdf_org.ssgproject.content_profile_stig
# platform = Oracle Linux 8,Oracle Linux 9,Red Hat Enterprise Linux 8,multi_platform_fedora
# variables = sshd_approved_ciphers=aes256-ctr,aes192-ctr,aes128-ctr

sshd_approved_ciphers=aes256-ctr,aes192-ctr,aes128-ctr
[email protected],[email protected],aes256-ctr
Expand Down
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
#!/bin/bash
# platform = Oracle Linux 8,Red Hat Enterprise Linux 8,multi_platform_fedora
# profiles = xccdf_org.ssgproject.content_profile_stig
# platform = Oracle Linux 8,Oracle Linux 9,Red Hat Enterprise Linux 8,multi_platform_fedora
# variables = sshd_approved_ciphers=aes256-ctr,aes192-ctr,aes128-ctr

[email protected],[email protected],aes256-ctr,aes256-cbc
configfile=/etc/crypto-policies/back-ends/openssh.config
Expand Down
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
#!/bin/bash
# platform = Oracle Linux 8,Red Hat Enterprise Linux 8,multi_platform_fedora
# profiles = xccdf_org.ssgproject.content_profile_stig
# platform = Oracle Linux 8,Oracle Linux 9,Red Hat Enterprise Linux 8,multi_platform_fedora
# variables = sshd_approved_ciphers=aes256-ctr,aes192-ctr,aes128-ctr

configfile=/etc/crypto-policies/back-ends/openssh.config

Expand Down

0 comments on commit 00e258c

Please sign in to comment.