{"repo":"mist941/basic-server-configuration","free":true,"listed":false,"github":"https://github.com/mist941/basic-server-configuration","clone":"git clone https://github.com/mist941/basic-server-configuration.git","description":"An Ansible playbook for automating secure server setup and configuration with sensible defaults for systems.","language":"Shell","stars":203,"topics":["ansible","devops","linux","server","tools","system-administration","system-administration-tool"],"license":"Unlicense","category":"deployment-docker-iac","readme_excerpt":"Basic Server Configuration An Ansible playbook for automating secure server setup and configuration with sensible defaults for systems. 🚀 Features - System Updates : Keeps your servers up-to-date with the latest security patches - Logging & Reporting : - Configures system logging with rsyslog - Sets up log rotation with logrotate - Generates HTML execution reports - Maintains detailed Ansible logs - User Management : Creates a secure non-root user with sudo privileges - SSH Hardening : Configures SSH for key-based authentication only - Firewall Setup : Installs and configures UFW with secure defaults - Security Enhancements : - Fail2ban for intrusion prevention - Automatic security updates - Sensible security defaults - Time Synchronization : Configures NTP for accurate system time - Essential Packages : Installs common utilities (vim, curl, htop, git, mtr) 📋 Prerequisites - Ansible 2.9+ - SSH key pair - Target Ubuntu servers - Local environment variables 🔧 Setup & Configuration 1. Clone this repository: 2. Configure environment variables in the .env file, you can follow the sample file provided and fill in your data 3. Update the inventory.ini file with your server IP addresses: 4. Run the playbook: 🛡️ What Gets Configured - Creates a new sudo user with SSH key authentication - Disables SSH password authentication and root login - Configures firewall (UFW) to allow only SSH - Sets up Fail2ban to prevent brute-force attacks - Configures automatic security updates - Instal","default_branch":null,"files":null,"tree":[],"storefront":"/r/mist941","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/mist941/basic-server-configuration/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}