Ingo Bente
|
a927107b28
|
Adds support to customize /etc/ssh/moduli file
|
pirms 9 gadiem |
Ingo Bente
|
83bb5ac5a0
|
adds support to harden sshd_config (KeyExchange, Ciphers, MACs)
|
pirms 9 gadiem |
Thomas Juberg
|
6b68c44583
|
Stop messing up the first line in ssh_known_hosts
|
pirms 9 gadiem |
Imran Haider
|
4dddff0ccd
|
Fix service name for Arch Linux
|
pirms 9 gadiem |
Niels Abspoel
|
2a68ccac1a
|
Add option to remove ssh_host_keys
|
pirms 9 gadiem |
Niels Abspoel
|
ca62b7d118
|
Improve default lookup
Added defaults.yaml and map.jinja similar to template-formula and salt-formula
|
pirms 9 gadiem |
jvblasco
|
60691ef20d
|
Fix bug that added : at the end of the key
|
pirms 9 gadiem |
Raphaël Hertzog
|
1b74efd2d0
|
Add a new openssh.known_hosts state
This state manages /etc/ssh/ssh_known_hosts and fills it with
public SSH host keys of other minions.
|
pirms 9 gadiem |
Marc Schiffbauer
|
c6aeaf4dc5
|
add gentoo support
|
pirms 9 gadiem |
Marc Schiffbauer
|
28e0916840
|
sort distros alphabetically
|
pirms 9 gadiem |
Bernd Schlapsi
|
6efc981885
|
Refactor auth.sls to allow more keys for one user
|
pirms 10 gadiem |
Niels Abspoel
|
33ee945557
|
Added AllowUsers,AllowGroups,DenyUsers,DenyGroups
This will add more options to set to secure openssh
- AllowUsers
- AllowGroups
- DenyUsers
- DenyGroups
|
pirms 10 gadiem |
Bohdan Kmit
|
b843d8168b
|
add ed25519 host key type; add AuthenticationMethods option
|
pirms 10 gadiem |
Niels Abspoel
|
5871efb5bd
|
added archlinux support to openssh map.jinja
|
pirms 10 gadiem |
Franz Pletz
|
5d0f69ad2c
|
Cleanups for host key pillar example
|
pirms 10 gadiem |
Franz Pletz
|
33f21a0976
|
Add support for ED25519 host keys
|
pirms 10 gadiem |
Nitin Madhok
|
620cc0f199
|
Update map.jinja
|
pirms 10 gadiem |
Nitin Madhok
|
131a5cafcb
|
Update map.jinja
|
pirms 10 gadiem |
Nitin Madhok
|
9263857193
|
Update map.jinja
Correct indentation
|
pirms 10 gadiem |
Niels Abspoel
|
1efce43d55
|
Added Opensuse support to map.jinja
|
pirms 10 gadiem |
Skyler Berg
|
a83409182f
|
Fix jinja spacing mistake for unknown options
When specifying multiple unknown ssh options, they would all appear on
the same line.
|
pirms 10 gadiem |
Tim Jones
|
09ca7de060
|
Allow newline after ListenAddress
|
pirms 10 gadiem |
Robert Fairburn
|
8616d3d130
|
fix comment
|
pirms 10 gadiem |
Robert Fairburn
|
b24101264f
|
make sure to match options as the options dict!
|
pirms 10 gadiem |
Robert Fairburn
|
1a2de43ed7
|
defaults do not need a prefix
|
pirms 10 gadiem |
Robert Fairburn
|
85c97b450a
|
fix a typo in keywords being sent improperly
|
pirms 10 gadiem |
Robert Fairburn
|
abf6e09fbb
|
Fix a typo in the match jinja
|
pirms 10 gadiem |
Robert Fairburn
|
ba72c1e8b7
|
remove prefix when not needed
|
pirms 10 gadiem |
Robert Fairburn
|
c100fc88a3
|
allow for "Match" inside of an sshd_config
|
pirms 10 gadiem |
Alan Pearce
|
6fb57f40bc
|
Config: Add support for generating keys
|
pirms 10 gadiem |
Alan Pearce
|
73eaef4ea0
|
Config: Add support for ECDSA host keys
|
pirms 10 gadiem |
Alan Pearce
|
ce46343562
|
Config: Refactor host key provisioning into loop
|
pirms 10 gadiem |
Alan Pearce
|
2876a691b0
|
Remove reference to root group
By not specifying it, root user's group should be used.
|
pirms 10 gadiem |
Alan Pearce
|
edc208b79b
|
Add FreeBSD compatibility
|
pirms 10 gadiem |
Wes Turner
|
970777b9bb
|
Add a UseDNS option to sshd_config
|
pirms 10 gadiem |
Oleg Tsarev
|
48ebd1b07b
|
Changed sshd_config generation to more readable scheme.
Synced file with default from Ubuntu 12.04 latest
|
pirms 10 gadiem |
matthew-parlette
|
cdfab3953d
|
Define a line for each option.
This provides a default option (according to the package-provided config file) for each option in the config.
|
pirms 10 gadiem |
Oleg Tsarev
|
7521398506
|
Removed unneeded whitespace from auth.sls
|
pirms 10 gadiem |
matthew-parlette
|
2f28a008c2
|
Cleared out static parts of config since it was causing issues
|
pirms 10 gadiem |
Seth House
|
b44c26cd13
|
Moved the rsa/dsa key management to config.sls
|
pirms 10 gadiem |
Carlos Perelló Marín
|
e2cddca13e
|
Reverted the namespace change to avoid conflicts and backward incompatibilities
|
pirms 11 gadiem |
Carlos Perelló Marín
|
47211d0648
|
Added support to manage ssh certificates
|
pirms 11 gadiem |
Kenny Do
|
6e418aa945
|
added a state that installs the openssh client
|
pirms 11 gadiem |
Kenny Do
|
b0c7009cb2
|
updated sshd_config file to be populated by pillar
|
pirms 11 gadiem |
Kenny Do
|
9f70270643
|
explicitly set the user, group, and mode to match the package's
sshd_config
|
pirms 11 gadiem |
Kenny Do
|
dc53d0c295
|
fixed the name of the service that the openssh config is watched by
|
pirms 11 gadiem |
Kenny Do
|
07771c0ebf
|
Split the sshd_config and banner components into sub-states
|
pirms 11 gadiem |
Kenny Do
|
0a2468d87a
|
created a map.jinja and updated openssh state to use those values
|
pirms 11 gadiem |
Mark Eggert
|
2e229681c7
|
Adding a small variable to the OpenSSH sshd_config file so that the service will work correctly on Centos 6.4 and earlier
|
pirms 11 gadiem |
Mark Eggert
|
d35929876f
|
Modifying OpenSSH formula service name on RedHat since it is called 'sshd', not 'ssh'
|
pirms 11 gadiem |