ansible-personal/roles/common
Alan Orth 9ea14de6f5
roles/common: Remove Encrypt-and-MAC modes from Ubuntu 20.04 sshd_config
Recommended by ssh-audit, but also generally the concensus for a few
years that Encrypt-and-MAC is hard to get right. OpenSSH has several
Encrypt-then-MAC schemes available so we can use those.

See: https://www.daemonology.net/blog/2009-06-24-encrypt-then-mac.html
2021-07-22 12:48:12 +03:00
..
defaults roles/common: Add support for fail2ban 2019-10-26 16:36:07 +02:00
files roles/common: Remove 00-persistent-journal.conf 2021-07-21 10:02:33 +03:00
handlers Remove support for Debian 9 and Ubuntu 16.04 2020-07-14 09:45:33 +03:00
tasks roles/common: Add Spamhaus DROP lists to firewalld ipsets 2021-07-21 09:34:51 +03:00
templates roles/common: Remove Encrypt-and-MAC modes from Ubuntu 20.04 sshd_config 2021-07-22 12:48:12 +03:00