File tree Expand file tree Collapse file tree 6 files changed +16
-0
lines changed
linux_os/guide/services/ssh/ssh_server
disable_host_auth/kubernetes
sshd_disable_compression/kubernetes
sshd_set_idle_timeout/kubernetes
sshd_set_keepalive_0/kubernetes
sshd_set_keepalive/kubernetes
shared/templates/sshd_lineinfile Expand file tree Collapse file tree 6 files changed +16
-0
lines changed Original file line number Diff line number Diff line change 1616 mode : 0600
1717 path : /etc/ssh/sshd_config
1818 overwrite : true
19+ ---
20+ {{{ kubernetes_sshd_dropin('HostbasedAuthentication no', config_basename='00-complianceascode-disable_host_auth.conf') }}}
Original file line number Diff line number Diff line change 55# complexity = low
66# disruption = low
77{{{ kubernetes_sshd_set() }}}
8+ ---
9+ {{{ kubernetes_sshd_dropin('Compression {{{ xccdf_value("var_sshd_disable_compression") }}}', config_basename='00-complianceascode-sshd_disable_compression.conf') }}}
Original file line number Diff line number Diff line change 55# complexity = low
66# disruption = low
77{{{ kubernetes_sshd_set() }}}
8+ ---
9+ {{{ kubernetes_sshd_dropin('ClientAliveInterval {{{ xccdf_value("sshd_idle_timeout_value") }}}', config_basename='00-complianceascode-sshd_set_idle_timeout.conf') }}}
Original file line number Diff line number Diff line change 55# complexity = low
66# disruption = low
77{{{ kubernetes_sshd_set() }}}
8+ ---
9+ {{{ kubernetes_sshd_dropin('ClientAliveCountMax {{{ xccdf_value("var_sshd_set_keepalive") }}}', config_basename='00-complianceascode-sshd_set_keepalive.conf') }}}
Original file line number Diff line number Diff line change 55# complexity = low
66# disruption = low
77{{{ kubernetes_sshd_set() }}}
8+ ---
9+ {{{ kubernetes_sshd_dropin('ClientAliveCountMax 0', config_basename='00-complianceascode-sshd_set_keepalive_0.conf') }}}
Original file line number Diff line number Diff line change 44# complexity = low
55# disruption = low
66{{{ kubernetes_sshd_set() }}}
7+ ---
8+ {{% if XCCDF_VARIABLE %}}
9+ {{{ kubernetes_sshd_dropin(PARAMETER ~ ' {{.'~XCCDF_VARIABLE~'}}', config_basename='00-complianceascode-' ~ PARAMETER ~ '.conf') }}}
10+ {{% else %}}
11+ {{{ kubernetes_sshd_dropin(PARAMETER ~ " " ~ VALUE,config_basename='00-complianceascode-' ~ PARAMETER ~ '.conf') }}}
12+ {{% endif %}}
You can’t perform that action at this time.
0 commit comments