Set up ansible so it secures SSH properly. Use fail2ban or sshguard. The sSH service should integrate with the firewall and block any brute-force attempts
Description
Description
Status | Assigned | Task | ||
---|---|---|---|---|
Open | None | T3019 General Nginx metrics in prometheus | ||
Open | None | T3014 Setup dashboards in Grafana | ||
Open | None | T3015 Gather metrics about a specific assetproxy instance | ||
Open | None | T3016 System metrics | ||
Open | None | T3021 Recurrent task for backups | ||
Open | None | T3020 Support multiple instances of AssetProxy on one host | ||
Open | None | T3012 TLS certificate management | ||
Open | None | T3022 Setup the process of updating assetproxy | ||
Open | None | T3011 Ansible rule to set up one instance of AssetProxy on the target machine | ||
Open | None | T3010 Setup nodejs on the target machine | ||
Open | None | T3009 Install MongoDB | ||
Open | None | T3008 Sane defaults for the server | ||
Open | None | T3007 Secure the ssh | ||
Open | None | T3006 Prepare firewall using nftables | ||
Open | Jakski | T3005 Initialize assetproxy repository for playbooks |