Commit graph

17 commits

Author SHA1 Message Date
Christian Fraß 4a7a75651c [int] 2025-10-07 16:04:07 +02:00
Christian Fraß e175c56d61 [fix] role:nginx 2024-06-09 12:46:26 +02:00
Christian Fraß 6fe4f5fd56 [res] 2024-06-09 11:04:57 +02:00
Christian Fraß 46e239133d [res] 2024-06-09 11:02:04 +02:00
Christian Fraß d4b7b800ca [res] 2024-06-09 11:01:34 +02:00
Christian Fraß 3f0f265554 [res] 2024-06-09 11:00:09 +02:00
Christian Fraß a47662cdaa [fix] role:nginx 2024-06-06 14:51:10 +02:00
Christian Fraß 958630599d [fix] role:nginx 2024-06-06 14:50:15 +02:00
Christian Fraß 9a886a2df9 [fix] role:nginx 2024-06-06 14:48:31 +02:00
Christian Fraß 8b47912f46 [res] 2024-06-06 14:48:27 +02:00
Christian Fraß aeac7cceab [sty] roles:tls hardening:format 2024-06-01 18:14:21 +02:00
Christian Fraß c7c9e6895c [fix] roles with ufw incocation 2024-06-01 17:56:28 +02:00
Christian Fraß 882286e1a7 Apply 1 suggestion(s) to 1 file(s) 2024-04-24 17:33:35 +00:00
Marius Melzer 65b00c8840 Add ufw role
- Enable ufw and by default deny incoming traffic
- in other roles: if ufw (role) is enabled, then allow necessary ports
2024-04-20 17:08:39 +02:00
Marius Melzer dcc52b04cc Generate dhparams instead of using a checked in file 2024-04-20 13:11:26 +02:00
Marius Melzer a03e50c933 Harden nginx ssl/tls config
According to https://ssl-config.mozilla.org/
2024-04-19 00:28:45 +02:00
Christian Fraß 59211fba86 [int] 2024-03-29 17:21:05 +01:00