Skip to content

stackhpc/tofu-jumphost

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

12 Commits
 
 
 
 
 
 
 
 
 
 

Repository files navigation

An OpenTofu module to define a jumphost using RockyLinux.

Key features:

  • No shell access to host, only SSH tunnelling is permitted [*]
  • No default "rocky" user with passwordless sudo [*]
  • DNF updates on boot and at 3AM
  • firewalld running, only SSH permitted
  • Optionally: fail2ban running

[*] Except in a debug mode

See variables.tf for all options.

About

OpenTofu RockyLinux based jumphost

Resources

Stars

Watchers

Forks

Packages

No packages published