Commit graph

312 commits

Author SHA1 Message Date
da6853532a [mod] todo 2024-06-04 00:00:09 +02:00
da1ad77dab [res] 2024-06-03 23:59:58 +02:00
d912a168a2 [mod] role:authelia 2024-06-01 19:26:22 +02:00
aeac7cceab [sty] roles:tls hardening:format 2024-06-01 18:14:21 +02:00
c7c9e6895c [fix] roles with ufw incocation 2024-06-01 17:56:28 +02:00
2ac8c9c4c3 [fix] role:ufw:add missing become:true directives [mod] role:ufw:use fully qualified names for ansible tasks 2024-06-01 13:49:11 +02:00
434c901173 [mod] role:system-basics renamed to system_basics 2024-06-01 13:47:47 +02:00
0e913099e6 [fix] role:system-basics:add missing become:true directives [mod] role:system-basisc:also install htop and tmux 2024-06-01 13:47:20 +02:00
8d57e57df8 [mod] role:unattended-upgrades renamed to unattended_upgrades 2024-06-01 13:44:51 +02:00
715d39716c [fix] install required packages [fix] add missing become:true directives [mod] use fully qualified names for ansible tasks 2024-06-01 13:43:40 +02:00
Marius Melzer
389b171401 Apply review comments 2024-04-24 20:03:44 +02:00
e70ab02fed Apply 6 suggestion(s) to 2 file(s) 2024-04-24 17:38:11 +00:00
882286e1a7 Apply 1 suggestion(s) to 1 file(s) 2024-04-24 17:33:35 +00:00
Marius Melzer
65b00c8840 Add ufw role
- Enable ufw and by default deny incoming traffic
- in other roles: if ufw (role) is enabled, then allow necessary ports
2024-04-20 17:08:39 +02:00
Marius Melzer
fcad5b9354 Add unattended upgrades
Enable unattended upgrades and triggers unattended reboots (23:55 after an
upgrade which needs reboot).

Attention: this is specific to debian-style linux systems (Debian, Ubuntu,...).
2024-04-20 15:24:38 +02:00
Marius Melzer
139ba7504a Add system-basics role
- set time zone
- limit journal size
- set vim as editor
- limit ssh login to pubkey
2024-04-20 15:23:38 +02:00
Marius Melzer
dcc52b04cc Generate dhparams instead of using a checked in file 2024-04-20 13:11:26 +02:00
Marius Melzer
a03e50c933 Harden nginx ssl/tls config
According to https://ssl-config.mozilla.org/
2024-04-19 00:28:45 +02:00
f231fb75b0 [add] todo 2024-04-14 11:23:57 +02:00
7f555a86c3 [mod] role:gitlab:SMTP-Anbindung hinzugefügt 2024-04-14 11:23:32 +02:00
0e3ae3d901 [fix] tools:check-json-syntax 2024-04-12 21:53:39 +02:00
a209387e20 [add] role:synapse:vardef 2024-04-12 20:19:57 +02:00
6c4e68298b [mod] role:synapse:Schalter für federation 2024-04-05 13:39:26 +02:00
00049a180d [fix] role:dokuwiki 2024-04-05 13:31:43 +02:00
fc472c2938 [mod] readme 2024-03-29 18:31:43 +01:00
975fcb8cd5 Merge branch 'galaxy' into 'main'
Ansible Galaxy nutzen

See merge request roydfalk/ansible-base!1
2024-03-29 17:27:27 +00:00
91ddc35809 [issue-1] Umbennung zu linke.standard 2024-03-29 18:11:33 +01:00
59211fba86 [int] 2024-03-29 17:21:05 +01:00
b3474ad2cb [int] 2024-03-29 16:55:35 +01:00
ca13385889 [fix] role:gitlab-and-nginx 2024-03-22 13:19:22 +01:00
9b6ffc04c3 [fix] role:gitlab 2024-03-22 13:19:10 +01:00
09047036e0 Merge branch 'main' into dev-gitlab 2024-03-22 11:11:01 +01:00
00caddcbd4 [fix] role:authelia 2024-03-22 00:27:57 +01:00
1c42cd5d6d Merge branch 'dev-dokuwiki' 2024-03-22 00:00:36 +01:00
338c9fdcfe [fix] role:hedgedoc 2024-03-22 00:00:08 +01:00
f805a66dd5 [fix] role:hedgedoc 2024-03-21 23:59:44 +01:00
cb404cdb7a [fix] role:authelia-for-dokuwiki 2024-03-21 23:57:00 +01:00
dfe11c11f5 [fix] role:hedgedoc 2024-03-21 23:44:45 +01:00
dfacaf791f [fix] role:authelia-for-dokuwiki 2024-03-21 23:44:26 +01:00
d5dc2c15e5 [fix] role:dokuwiki 2024-03-21 23:43:20 +01:00
947f6e0e74 [fix] role:dokuwiki 2024-03-21 22:07:39 +01:00
4be31f6a74 [mod] role:dokuwiki 2024-03-21 21:14:04 +01:00
f0be18c815 [mod] role:gitlab 2024-03-21 08:03:59 +01:00
5f100c3959 [mod] role:postgresql-for-gitlab 2024-03-21 08:03:21 +01:00
62a2ec5da4 [fix] role:authelia-for-gitlab 2024-03-21 08:02:47 +01:00
3dbb54059c [mod] role:gitlab 2024-03-20 21:09:38 +01:00
5a19718c62 [add] role:postgresql-for-gitlab 2024-03-20 21:08:54 +01:00
512b36be82 [add] role:gitlab-and-nginx 2024-03-20 20:54:12 +01:00
14ff9dfc9f [mod] role:gitlab 2024-03-20 20:47:09 +01:00
c03109b7aa [mod] role:authelia-for-gitlab 2024-03-20 20:46:48 +01:00