Ansible role for hardening Linux
-
Updated
Jun 11, 2026 - Jinja
Ansible role for hardening Linux
SSH登录动态白名单保护器 SSH Login Dynamic Whitelist Protector
Fork: added openvpn port-share-redirect to attack parser (MERGED upstream: https://bitbucket.org/sshguard/sshguard)
Control ssh command invocation, a simplified jail that is much more restrictive.
A filter for opensmtpd to log incoming authentication attempts in a format sshguard natively supports
Ansible hardening for FreeBSD: SSH and 2FA, sshguard, CrowdSec, OpenBSM audit, AIDE, Lynis. Runs after ansible-base-freebsd, with an at(1) rollback to avoid lockouts.
To associate your repository with the sshguard topic, visit your repo's landing page and select "manage topics."