{"repo":"alivx/CIS-Ubuntu-20.04-Ansible","free":true,"listed":false,"github":"https://github.com/alivx/CIS-Ubuntu-20.04-Ansible","clone":"git clone https://github.com/alivx/CIS-Ubuntu-20.04-Ansible.git","description":"Ansible Role to Automate CIS v1.1.0 Ubuntu Linux 18.04 LTS, 20.04 LTS Remediation","language":"HTML","stars":261,"topics":["ansible","ubuntu2004","cis-benchmark","automation","cisecurity","hardening","ubuntu","cis","security","cis-benchmarks"],"license":"GPL-3.0","category":"deployment-docker-iac","readme_excerpt":"Ansible CIS Ubuntu 20.04 LTS Hardening V1.1.0 Latest ========= CIS hardened Ubuntu: cyber attack and malware prevention for mission-critical systems CIS benchmarks lock down your systems by removing: 1. non-secure programs. 2. disabling unused filesystems. 3. disabling unnecessary ports or services. 4. auditing privileged operations. 5. restricting administrative privileges. CIS benchmark recommendations are adopted in virtual machines in public and private clouds. They are also used to secure on-premises deployments. For some industries, hardening a system against a publicly known standard is a criteria auditors look for. CIS benchmarks are often a system hardening choice recommended by auditors for industries requiring PCI-DSS and HIPPA compliance, such as banking, telecommunications and healthcare. If you are attempting to obtain compliance against an industry-accepted security standard, like PCI DSS, APRA or ISO 27001, then you need to demonstrate that you have applied documented hardening standards against all systems within the scope of assessment. The Ubuntu CIS benchmarks are organised into different profiles, namely ‘Level 1’ and ‘Level 2’ intended for server and workstation environments. A Level 1 profile is intended to be a practical and prudent way to secure a system without too much performance impact. Disabling unneeded filesystems, Restricting user permissions to files and directories, Disabling unneeded services. Configuring network firewalls. A Level 2 profil","default_branch":null,"files":null,"tree":[],"storefront":"/r/alivx","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/alivx/CIS-Ubuntu-20.04-Ansible/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}