VOOZH about

URL: https://github.com/dev-sec

⇱ DevSec Hardening Framework Β· GitHub


Skip to content

DevSec Hardening Framework

πŸ‘ banner

Challenge

Running secure infrastructure is a difficult task. Although server hardening is a well-known topic with many guides out in the wild, it is still very cumbersome to apply and verify secure configuration. If you manage many server, they need to be configured properly and maintained, which is difficult and time-consuming to get right. To answer these needs for security, compliance, and maintainability, we decided to launch this project as a common ground for requirements and their fulfillment.

Vision / Goal

Our goal is simple: Create a common layer for operating system and services hardening. Even if you aren’t knee-deep in configuration manuals for services or the latest security recommendations, you will be able to implement and use this framework with ease.

Pinned Loading

  1. This Ansible collection provides battle tested hardening for Linux, SSH, nginx, MySQL

    Jinja 5.3k 827

  2. This chef cookbook provides numerous security-related configurations, providing all-round base protection.

    Ruby 450 131

  3. This puppet module provides numerous security-related configurations, providing all-round base protection.

    Puppet 291 100

  4. DevSec Linux Baseline - InSpec Profile

    Ruby 867 191

  5. CIS Docker Benchmark - InSpec Profile

    Ruby 522 118

  6. CIS Kubernetes Benchmark - InSpec Profile

    Ruby 309 77

Repositories

Showing 10 of 51 repositories
You can’t perform that action at this time.