Marek Küthe 14c9b1256e Adjuct MTU | hai 4 meses | |
---|---|---|
group_vars | hai 8 meses | |
host_vars | hai 4 meses | |
roles | hai 4 meses | |
.ansible-lint | hai 1 ano | |
.gitignore | hai 1 ano | |
.yamlfmt | hai 1 ano | |
LICENSE | hai 1 ano | |
README.md | hai 9 meses | |
ansible.cfg | hai 1 ano | |
inventory.yml | hai 1 ano | |
pw_file.sh | hai 1 ano | |
reseau.mk16.de.yml | hai 4 meses | |
update.yml | hai 7 meses |
Roles
motd
- Removes long motd messagepackages
- Update, upgrade, and autoremove packages. Install a few useful packages.install-nftables
- Install firewallconfig-nftables
- Add firewall rulesfail2ban
- Install fail2ban and configuring it for SSH
sysctl-tweaks
- Install a few sysctl-tweaks
unattended-upgrades
- Install and enable unattended-upgrades
babeld-compile
- Compiles babeld from upstream git repo and install it
fastd-compile
- Compiles fastd from upstream git repo and install it
babelweb2-compile
- Fetch and compile babelweb2
babelweb2
- Enabled babelweb2 for autostart and setup a nginx reverse proxy for it
nginx
- Install and enable nginx for autostart
dummy-interface
- Configures a dummy interface for crxn and a static route in the kernel
babeld
- babeld configuration files
gre
- Install GRE peer configurations
vxlan
- Install VXLAN peer configurations
openvpn
- Install OpenVPN peer configurations
fastd
- Install fastd peer configurations
wireguard
- Install wireguard peer configurations
hardening
- Disables core dumping and downloads a few packages to improve system security
coredns
- Install coredns and create a empty configuration file