summaryrefslogtreecommitdiff
path: root/common/files
diff options
context:
space:
mode:
authorRobin Krahl <me@robin-krahl.de>2019-01-21 22:48:09 +0100
committerRobin Krahl <me@robin-krahl.de>2019-01-21 23:02:41 +0100
commit06e0f212a9f944e11851cdad57aa5efd02594370 (patch)
tree0504a946a70ed0734201f7f1094dbc6d6bbdf6eb /common/files
downloadansible-roles-06e0f212a9f944e11851cdad57aa5efd02594370.tar.gz
ansible-roles-06e0f212a9f944e11851cdad57aa5efd02594370.tar.bz2
Add common role for basic system setup
Diffstat (limited to 'common/files')
-rw-r--r--common/files/sshd_config12
-rw-r--r--common/files/sudoers2
2 files changed, 14 insertions, 0 deletions
diff --git a/common/files/sshd_config b/common/files/sshd_config
new file mode 100644
index 0000000..878b81f
--- /dev/null
+++ b/common/files/sshd_config
@@ -0,0 +1,12 @@
+# Authentication types
+ChallengeResponseAuthentication no
+PasswordAuthentication no
+PubkeyAuthentication yes
+
+# Authentication details
+AuthorizedKeysFile .ssh/authorized_keys
+PermitRootLogin no
+UsePAM yes
+
+# Subsystems
+Subsystem sftp /usr/lib/ssh/sftp-server
diff --git a/common/files/sudoers b/common/files/sudoers
new file mode 100644
index 0000000..a85e3db
--- /dev/null
+++ b/common/files/sudoers
@@ -0,0 +1,2 @@
+root ALL=(ALL) NOPASSWD: ALL
+%sudo ALL=(ALL) NOPASSWD: ALL