Skip to content

Puppetize instance hardening tasks #15

@chamilad

Description

@chamilad

There needs to be an option to perform instance hardening tasks such as,

  1. Cleaning bash history
  2. Strengthen Java Cryptography
  3. Restricting SSH access

These are required for deployments public PaaS providers where security hardening of the instances should be done at instance provision time.

These configuration steps should be optional and the default should be opted out. Otherwise debugging failed Puppet runs can be tricky.

For a list of hardening recommended by AWS when creating AMIs, please refer to their guide

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions