Commit graph

14 commits

Author SHA1 Message Date
Christian Fraß f55f317cef [fix] role:nginx 2024-06-06 13:47:26 +02:00
Christian Fraß 53c31d1187 Merge branch 'dev-nginx-hardening_1' into temp 2024-06-01 18:16:47 +02:00
Christian Fraß aeac7cceab [sty] roles:tls hardening:format 2024-06-01 18:14:21 +02:00
Christian Fraß 35688eddaf [fix] roles with ufw incocation 2024-06-01 17:23:42 +02:00
Christian Fraß 8c7b10f852 [fix] roles with ufw incocation 2024-06-01 17:17:40 +02:00
Christian Fraß abdd13264f [fix] role:nginx 2024-06-01 16:25:51 +02:00
Christian Fraß 72cec2758c [fix] role:nginx 2024-06-01 16:17:11 +02:00
Christian Fraß 1bae250945 [fix] role:nginx 2024-06-01 16:06:35 +02:00
Christian Fraß 6239a095b6 [res] 2024-05-20 22:41:50 +02:00
Christian Fraß 882286e1a7 Apply 1 suggestion(s) to 1 file(s) 2024-04-24 17:33:35 +00:00
Marius Melzer 65b00c8840 Add ufw role
- Enable ufw and by default deny incoming traffic
- in other roles: if ufw (role) is enabled, then allow necessary ports
2024-04-20 17:08:39 +02:00
Marius Melzer dcc52b04cc Generate dhparams instead of using a checked in file 2024-04-20 13:11:26 +02:00
Marius Melzer a03e50c933 Harden nginx ssl/tls config
According to https://ssl-config.mozilla.org/
2024-04-19 00:28:45 +02:00
Christian Fraß 59211fba86 [int] 2024-03-29 17:21:05 +01:00