Ansible role for security hardening
Go to file
Travis McPeak ac1093f98d Adding Vagrant setup for deploying security-ansible
This commit adds an initial Vagrant setup that will run the
security ansible tests in check mode against a clean Ubuntu
Trusty 64 image.

Change-Id: If5499dd111c66b9888d3fbc0772c568ef08954f5
Co-Authored-By: Rob Clark <robert.clark@hpe.com>
Co-Authored-By: Eric Brown <browne@vmware.com>
2016-01-25 08:04:26 -08:00
defaults Minor cleanup 2015-12-14 21:17:57 +00:00
doc Minor cleanup 2015-12-14 21:17:57 +00:00
files V-38682: Disable bluetooth modules 2015-10-14 21:23:11 -05:00
handlers Merge "V-3865{6,7}: Samba" 2015-10-27 13:11:29 +00:00
meta Fixing testing bug 2015-12-07 15:18:29 -06:00
tasks Fixing testing bug 2015-12-07 15:18:29 -06:00
templates Move template that was missed with rename 2015-11-02 10:20:20 -06:00
tests Adding Vagrant setup for deploying security-ansible 2016-01-25 08:04:26 -08:00
vars Enable role testing and make structure ansible-galaxy compatible 2015-10-09 11:47:23 +00:00
.gitignore Initial import of openstack-ansible-security role 2015-10-07 07:27:39 -05:00
.gitreview Added .gitreview 2015-10-05 17:37:21 +00:00
LICENSE Initial import of openstack-ansible-security role 2015-10-07 07:27:39 -05:00
README.md Adding Vagrant setup for deploying security-ansible 2016-01-25 08:04:26 -08:00
README.rst Add new docs URL to README 2015-10-09 08:25:56 -05:00
run_tests.sh Merging check/functional jobs into one 2015-12-03 08:58:37 -06:00
setup.cfg Initial import of openstack-ansible-security role 2015-10-07 07:27:39 -05:00
setup.py Initial import of openstack-ansible-security role 2015-10-07 07:27:39 -05:00
test-requirements.txt Rename dev-requirements.txt to test-requirements.txt 2015-11-12 19:56:44 -05:00
tox.ini Switch to testenv:functional 2015-12-18 15:44:30 -05:00
Vagrantfile Adding Vagrant setup for deploying security-ansible 2016-01-25 08:04:26 -08:00

openstack-ansible-security

The goal of the openstack-ansible-security role is to improve security within openstack-ansible deployments. The role is based on the Security Technical Implementation Guide (STIG) for Red Hat Enterprise Linux 6.

Requirements

This role can be used with or without the openstack-ansible role. It requires Ansible 1.8 at a minimum.

Role Variables

All of the variables for this role are in defaults/main.yml.

Dependencies

This role has no dependencies.

Example Playbook

Using the role is fairly straightforward:

- hosts: servers
  roles:
     - openstack-ansible-security

Running with Vagrant

Security Ansible can be easily run for testing using Vagrant.

To do so run: vagrant destroy To destroy any previously created Vagrant setup vagrant up Spin up Ubuntu Trusty VM and run ansible-security against it

License

Apache 2.0

Author Information

For more information, join #openstack-ansible on Freenode.