https://major.io/2017/07/21/apply-stig-operating-systems-ansible-hardening/
https://docs.openstack.org/ansible-hardening/latest/getting-started.html
https://docs.openstack.org/ansible-hardening/latest/getting-started.html
ExampleSite
Apply the STIG to even more operating systems with ansible-hardening
Tons of improvements made their way into the ansible-hardening role in preparation for the OpenStack Pike release next month. The role has a new name, new documentation and extra tests.
The role uses the Security Technical Implementation Guide (STIG) produced…
The role uses the Security Technical Implementation Guide (STIG) produced…
Apply the STIG to UNIX/LINUX systems
Ansible role for security hardening
https://github.com/openstack/ansible-hardening
Ansible role for security hardening
https://github.com/openstack/ansible-hardening
GitHub
GitHub - openstack/ansible-hardening: Ansible role for security hardening. Mirror of code maintained at opendev.org.
Ansible role for security hardening. Mirror of code maintained at opendev.org. - openstack/ansible-hardening
Puppet servers exposed in the WAN
https://infosec.rm-it.de/2017/07/18/looking-at-public-puppet-servers/
https://infosec.rm-it.de/2017/07/18/looking-at-public-puppet-servers/
⚠️ OpenSSL disables TLS 1.0 and 1.1 ⚠️
https://lists.debian.org/debian-devel-announce/2017/08/msg00004.html
https://lists.debian.org/debian-devel-announce/2017/08/msg00004.html
Create local multi-node K8s clusters
https://kinvolk.io/blog/2017/08/introducing-kube-spawn-a-tool-to-create-local-multi-node-kubernetes-clusters/
https://kinvolk.io/blog/2017/08/introducing-kube-spawn-a-tool-to-create-local-multi-node-kubernetes-clusters/
#tools
collection of cli utilities for sniffing files to identify shell scripts like bash, sh, zsh, ksh...
https://github.com/mcandre/stank
collection of cli utilities for sniffing files to identify shell scripts like bash, sh, zsh, ksh...
https://github.com/mcandre/stank
GitHub
GitHub - mcandre/stank: stank: analyzers for determining whether files smell like rotten POSIX shell scripts, or faintly rosy like…
stank: analyzers for determining whether files smell like rotten POSIX shell scripts, or faintly rosy like Ruby and Python scripts - mcandre/stank
#tools
Transparent proxy server that works as a poor man's VPN. Forwards over ssh. Doesn't require admin. Works with Linux and MacOS. Supports DNS tunneling.
https://github.com/apenwarr/sshuttle
Transparent proxy server that works as a poor man's VPN. Forwards over ssh. Doesn't require admin. Works with Linux and MacOS. Supports DNS tunneling.
https://github.com/apenwarr/sshuttle
GitHub
GitHub - apenwarr/sshuttle: Wrong project! You should head over to http://github.com/sshuttle/sshuttle
Wrong project! You should head over to http://github.com/sshuttle/sshuttle - apenwarr/sshuttle
#tools
Deploys infinitely scalable serverless apps, APIs, and static websites in seconds. Currently supports NodeJS, GoLang, Python, Crystal and static sites out of the box.
https://github.com/apex/up
Deploys infinitely scalable serverless apps, APIs, and static websites in seconds. Currently supports NodeJS, GoLang, Python, Crystal and static sites out of the box.
https://github.com/apex/up
GitHub
GitHub - apex/up: Deploy infinitely scalable serverless apps, apis, and sites in seconds to AWS.
Deploy infinitely scalable serverless apps, apis, and sites in seconds to AWS. - apex/up
#tools
Analyses web apps and web pages, collecting modern performance metrics and insights on developer best practices
https://github.com/GoogleChrome/lighthouse
Analyses web apps and web pages, collecting modern performance metrics and insights on developer best practices
https://github.com/GoogleChrome/lighthouse
GitHub
GitHub - GoogleChrome/lighthouse: Automated auditing, performance metrics, and best practices for the web.
Automated auditing, performance metrics, and best practices for the web. - GoogleChrome/lighthouse