From ab8f65c82f9eb378fc8b5181d9ce8d7f68542b93 Mon Sep 17 00:00:00 2001 From: ByeonJungHun Date: Wed, 10 Jan 2024 14:19:15 +0900 Subject: [PATCH] =?UTF-8?q?=EA=B2=80=EC=82=AC=20=EA=B2=B0=EA=B3=BC=20?= =?UTF-8?q?=EC=97=85=EB=8D=B0=EC=9D=B4=ED=8A=B8?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- ansible/01_old/inventory/.DS_Store | Bin 6148 -> 0 bytes ansible/01_old/roles/.DS_Store | Bin 6148 -> 0 bytes .../01_old/roles/security-settings/.DS_Store | Bin 6148 -> 0 bytes ansible/01_old/roles/teleport/.DS_Store | Bin 6148 -> 0 bytes .../roles/security-settings/.DS_Store | Bin 6148 -> 0 bytes ansible/infra_setting/roles/.DS_Store | Bin 6148 -> 0 bytes .../roles/connect-settings/.DS_Store | Bin 6148 -> 0 bytes ansible/security_check/README.md | 94 ------------------ .../roles/security_check/files/rocky.sh | 4 +- ansible/security_check/test | 15 +++ ansible/teleport_setting/roles/.DS_Store | Bin 6148 -> 0 bytes .../teleport_setting/roles/teleport/.DS_Store | Bin 6148 -> 0 bytes 12 files changed, 17 insertions(+), 96 deletions(-) delete mode 100644 ansible/01_old/inventory/.DS_Store delete mode 100644 ansible/01_old/roles/.DS_Store delete mode 100644 ansible/01_old/roles/security-settings/.DS_Store delete mode 100644 ansible/01_old/roles/teleport/.DS_Store delete mode 100644 ansible/01_old/security-settings/roles/security-settings/.DS_Store delete mode 100644 ansible/infra_setting/roles/.DS_Store delete mode 100644 ansible/infra_setting/roles/connect-settings/.DS_Store create mode 100644 ansible/security_check/test delete mode 100644 ansible/teleport_setting/roles/.DS_Store delete mode 100644 ansible/teleport_setting/roles/teleport/.DS_Store diff --git a/ansible/01_old/inventory/.DS_Store b/ansible/01_old/inventory/.DS_Store deleted file mode 100644 index 5008ddfcf53c02e82d7eee2e57c38e5672ef89f6..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 6148 zcmeH~Jr2S!425mzP>H1@V-^m;4Wg<&0T*E43hX&L&p$$qDprKhvt+--jT7}7np#A3 zem<@ulZcFPQ@L2!n>{z**++&mCkOWA81W14cNZlEfg7;MkzE(HCqgga^y>{tEnwC%0;vJ&^%eQ zLs35+`xjp>T0lGKLxdl_aGu+r_BB~vojm!M|QSDM65rKwuo9p#Gwiss~DaTwXSqd7OZ6%$n+j1 zNg7c^1NuAX?F^0q$H04IK%L!>G^BuX{O+IMGuSdZr8q3}VVKGgo;TqzP4c4Cxn&EB zjiu!kzQWh|v418@zX*zP-Va8<)zhJrX*in);ZYKogVyJtGAn{4i$^*jiDJ0?`ITgm zEcr-o=AgAPnRGkdw&?YCrfo6V>TdVi;>XVS>9oneeBInV7@VgUnY=Q* zGL#`LA1uz`8j}~&y!1y|Dzj5~s$D*Tju>TZjDnU>LI3ERwiK8rnwY#U#QaC9kI3O5 zA*K{M)D^#|3l(#TJxYA`J=Fs3Vc~1F$i^k%7;p@{CIhNI2&h8OVr5X54h*^l05)LO zg1PD?RE)6bS*#3V1;R`y(1bGEVlWd9yRd$q#mb-wCuW-uX5Y+ghr;yRvA@vn#5{v; zbPPBK9x||K9$V`E-+#XUe;DMR90QJlS~0*Hd;VS@DcQSqE;)7A3g`(`iSnxq>JSX} iI@S|)6|Y0JU`?nA(6d+>gazXM2xuDI;23yQ2JQf8*x3mH diff --git a/ansible/01_old/roles/security-settings/.DS_Store b/ansible/01_old/roles/security-settings/.DS_Store deleted file mode 100644 index 8bec8722c381ca317bf822109fde6f2fef5be2e9..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 6148 zcmeHK%}T>S5Z>*NO({YS3VK`cTClAJEnY&bFJMFuDm5WRLu0lysXdfJ?)pN$h|lB9 z?gm;69!2a7?0&QJvzz%K`@3s4^wN~G0SPiRXJ$TP@;bnd{PhEd@hofsL=V=Ey!=E_c+eMH2(Wz)uX|{ve>0lQo&M}y4)ai_?m0=#Ua`AZKYIU#+70$S$k$Pf)7}#W>s)sh7|CjK~ zls@t|Q)omC5Ci{=0bUz=Ll=rNXY04}@T?Wk9-*ONT#gC|=o^;+7~no~pq$z-P=`3j XV6G8oLAy!^q>F$eggRp27Z~^g0k}&- diff --git a/ansible/01_old/roles/teleport/.DS_Store b/ansible/01_old/roles/teleport/.DS_Store deleted file mode 100644 index 1f3ccf439cf8f0103a453c9075343c852d785a98..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 6148 zcmeHK%}T>S5Z>*NO({YT3gT(OYr+0VwRj1!zJL)usMLfM4UO5-q~=fxc>sMOAH?Tz zW_JTE7LOu!26n&M`Pt2Uko{qdac3TM7;7@dENF-vl?{UCjjoajM&xRa#LtqcA4z}1 zG=I~C-(F=Y^H{X}kT&OXW&+r)JfxhV|e+%gjx^be=fg><&lQQbvBE zd;U#0&PL6>3mK{QvAq>V4a(^4ffy^8^kApD8UZk&K_fT4WTFgv0+N z2-m5AI+dFz2G{9e7bea&m}}JOjH{Jl9@Z$`^bTEYQI1o Z;%tMtMw|uhDjkq60*Vmoh=E^V;0w8(ON0Ob diff --git a/ansible/01_old/security-settings/roles/security-settings/.DS_Store b/ansible/01_old/security-settings/roles/security-settings/.DS_Store deleted file mode 100644 index 8bec8722c381ca317bf822109fde6f2fef5be2e9..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 6148 zcmeHK%}T>S5Z>*NO({YS3VK`cTClAJEnY&bFJMFuDm5WRLu0lysXdfJ?)pN$h|lB9 z?gm;69!2a7?0&QJvzz%K`@3s4^wN~G0SPiRXJ$TP@;bnd{PhEd@hofsL=V=Ey!=E_c+eMH2(Wz)uX|{ve>0lQo&M}y4)ai_?m0=#Ua`AZKYIU#+70$S$k$Pf)7}#W>s)sh7|CjK~ zls@t|Q)omC5Ci{=0bUz=Ll=rNXY04}@T?Wk9-*ONT#gC|=o^;+7~no~pq$z-P=`3j XV6G8oLAy!^q>F$eggRp27Z~^g0k}&- diff --git a/ansible/infra_setting/roles/.DS_Store b/ansible/infra_setting/roles/.DS_Store deleted file mode 100644 index 17f2c108b61b495005ce582996417109b95b1826..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 6148 zcmeHKQA@)x5WdW*9U}BWLEi$tPTZ6Y#g|g`4_MI$mD#$Y#oEZ)xrZ_6yZ#~nh`-0X zBo$?fFCsGT#^t+Q?h^84Ia_!{5jAEAS)}^xZ%njq-;mRT0L%L=S0_7p>N-sLj>q7Z#mGXUVw? zZq+C#!eW^F;ozKlCrYJJWrxve5|4WB%7My?Fv;S9PDuJOhFqK_SznEOHO%_C&JE0f z({LI+cYQqWw7X5Y)9Or`a@=lr_nLBddv7vnIIA05`^UYz^gdHhhFyVwL@mn}D|klZ z$BjM)gDh3q4aQdURQZg|05iZ0%n$?iigT7`XivNqW`G&^9R}!rkf?;7#nPa@ILOxLCQfAszP|8o-em;q*BrWg?Q!{E@zE!o;SwK=M_67>p|gyKqr l?S5Z>*NO({YS3VK`cTCi1GEM7vbFJMFuDm5WRLu0lysX3HF?)pN$h|lB9 z?gm;69!2a7?0&QJvzz%K`@3s4^wN~G0SPiRXJ-E*@b5k!}Btvh0hofsLBfro+ z|0bMdV|(vH#;F&^letO=g9(J(--dA@v!PtXL85Y9?Xa3wb8H_jm%VPkElxYVRa-2( z-Tt60&Q1oaRnyu(IzGP|PotMuzG)^oP_AUxU;*!-td;cY&f`eNPhc%Fibz6YfEXYK zh=HwSz#IowYb&d#qKN@w;3o!fe-O|R9fP?>wRJ#;*Jt$C5K%zKw*;av=orj3f(L}_ zR6w1|%@c#`bg&B(=NQa2>U74{$}o>vxp=&AwK~{^3TNEWNIfw?3~Vw`)k7Q4|4aB~ zN+0=~DKsJmh=G5`0I!YQ(GZFF$eggRp27Z~^g7%xjh diff --git a/ansible/security_check/README.md b/ansible/security_check/README.md index 0b2c7ee..b00ad44 100644 --- a/ansible/security_check/README.md +++ b/ansible/security_check/README.md @@ -1,103 +1,9 @@ | 이름 | 아이피 | 상태 요약 | 상세 보기 | | --- | --- | --- | --- | -| agent-master-docker | 10.10.43.185 | 취약 | http://10.10.43.42:8080/agent-master-docker.10.10.43.185.txt | -| agent-worker2-containerd | 10.10.43.187 | 취약 | http://10.10.43.42:8080/agent-worker2-containerd.10.10.43.187.txt | -| agent-worker3-crio | 10.10.43.188 | 취약 | http://10.10.43.42:8080/agent-worker3-crio.10.10.43.188.txt | -| amazon-2023 | 10.10.43.175 | 취약 | http://10.10.43.42:8080/amazon-2023.10.10.43.175.txt | -| centos-7 | 10.10.43.167 | 취약 | http://10.10.43.42:8080/centos-7.10.10.43.167.txt | -| centos-8 | 10.10.43.168 | 취약 | http://10.10.43.42:8080/centos-8.10.10.43.168.txt | -| centos-9 | 10.10.43.169 | 취약 | http://10.10.43.42:8080/centos-9.10.10.43.169.txt | -| cmoa-jaeger-master | 10.10.43.203 | 취약 | http://10.10.43.42:8080/cmoa-jaeger-master.10.10.43.203.txt | | cmoa-jaeger-master | 10.10.43.213 | 취약 | http://10.10.43.42:8080/cmoa-jaeger-master.10.10.43.213.txt | -| cmoa-jaeger-worker1 | 10.10.43.204 | 취약 | http://10.10.43.42:8080/cmoa-jaeger-worker1.10.10.43.204.txt | | cmoa-jaeger-worker1 | 10.10.43.214 | 취약 | http://10.10.43.42:8080/cmoa-jaeger-worker1.10.10.43.214.txt | -| cmoa-jaeger-worker2-crio | 10.10.43.205 | 취약 | http://10.10.43.42:8080/cmoa-jaeger-worker2-crio.10.10.43.205.txt | -| cmoa-jaeger-worker2 | 10.10.43.215 | 취약 | http://10.10.43.42:8080/cmoa-jaeger-worker2.10.10.43.215.txt | | cmoa-jspd-master | 10.10.43.206 | 취약 | http://10.10.43.42:8080/cmoa-jspd-master.10.10.43.206.txt | -| cmoa-jspd-master | 10.10.43.216 | 취약 | http://10.10.43.42:8080/cmoa-jspd-master.10.10.43.216.txt | | cmoa-jspd-worker1 | 10.10.43.207 | 취약 | http://10.10.43.42:8080/cmoa-jspd-worker1.10.10.43.207.txt | -| cmoa-jspd-worker1 | 10.10.43.217 | 취약 | http://10.10.43.42:8080/cmoa-jspd-worker1.10.10.43.217.txt | | cmoa-jspd-worker2 | 10.10.43.208 | 취약 | http://10.10.43.42:8080/cmoa-jspd-worker2.10.10.43.208.txt | -| cmoa-jspd-worker2 | 10.10.43.218 | 취약 | http://10.10.43.42:8080/cmoa-jspd-worker2.10.10.43.218.txt | -| cmoa-master-1 | 10.10.43.200 | 취약 | http://10.10.43.42:8080/cmoa-master-1.10.10.43.200.txt | -| cmoa-master-2 | 10.10.43.210 | 취약 | http://10.10.43.42:8080/cmoa-master-2.10.10.43.210.txt | -| cmoa-worker1-1 | 10.10.43.201 | 취약 | http://10.10.43.42:8080/cmoa-worker1-1.10.10.43.201.txt | | cmoa-worker1-2 | 10.10.43.211 | 취약 | http://10.10.43.42:8080/cmoa-worker1-2.10.10.43.211.txt | -| cmoa-worker2-1 | 10.10.43.202 | 취약 | http://10.10.43.42:8080/cmoa-worker2-1.10.10.43.202.txt | | cmoa-worker2-2 | 10.10.43.212 | 취약 | http://10.10.43.42:8080/cmoa-worker2-2.10.10.43.212.txt | -| cmoamgmtmaster | 10.10.43.227 | 취약 | http://10.10.43.42:8080/cmoamgmtmaster.10.10.43.227.txt | -| cmoamgmtworker | 10.10.43.228 | 취약 | http://10.10.43.42:8080/cmoamgmtworker.10.10.43.228.txt | -| db-env | 10.10.43.176 | 취약 | http://10.10.43.42:8080/db-env.10.10.43.176.txt | -| debian-12 | 10.10.43.173 | 취약 | http://10.10.43.42:8080/debian-12.10.10.43.173.txt | -| docker-node | 10.10.43.186 | 취약 | http://10.10.43.42:8080/docker-node.10.10.43.186.txt | -| docker | 10.10.43.180 | 취약 | http://10.10.43.42:8080/docker.10.10.43.180.txt | -| dsk-dev-data-common-a1 | 10.10.43.133 | 취약 | http://10.10.43.42:8080/dsk-dev-data-common-a1.10.10.43.133.txt | -| dsk-dev-data-common-b1 | 10.10.43.134 | 취약 | http://10.10.43.42:8080/dsk-dev-data-common-b1.10.10.43.134.txt | -| dsk-dev-data-common-c1 | 10.10.43.135 | 취약 | http://10.10.43.42:8080/dsk-dev-data-common-c1.10.10.43.135.txt | -| dsk-dev-data-druid-a1 | 10.10.43.114 | 취약 | http://10.10.43.42:8080/dsk-dev-data-druid-a1.10.10.43.114.txt | -| dsk-dev-data-druid-a3 | 10.10.43.139 | 취약 | http://10.10.43.42:8080/dsk-dev-data-druid-a3.10.10.43.139.txt | -| dsk-dev-data-druid-b1 | 10.10.43.115 | 취약 | http://10.10.43.42:8080/dsk-dev-data-druid-b1.10.10.43.115.txt | -| dsk-dev-data-druid-c2 | 10.10.43.138 | 취약 | http://10.10.43.42:8080/dsk-dev-data-druid-c2.10.10.43.138.txt | -| dsk-dev-data-druid-n1 | 10.10.43.117 | 취약 | http://10.10.43.42:8080/dsk-dev-data-druid-n1.10.10.43.117.txt | -| dsk-dev-data-druid-n2 | 10.10.43.118 | 취약 | http://10.10.43.42:8080/dsk-dev-data-druid-n2.10.10.43.118.txt | -| dsk-dev-data-druid-n3 | 10.10.43.119 | 취약 | http://10.10.43.42:8080/dsk-dev-data-druid-n3.10.10.43.119.txt | -| dsk-dev-data-druid-small | 10.10.43.147 | 취약 | http://10.10.43.42:8080/dsk-dev-data-druid-small.10.10.43.147.txt | -| dsk-dev-data-kafka-a1 | 10.10.43.120 | 취약 | http://10.10.43.42:8080/dsk-dev-data-kafka-a1.10.10.43.120.txt | -| dsk-dev-data-kafka-b1 | 10.10.43.121 | 취약 | http://10.10.43.42:8080/dsk-dev-data-kafka-b1.10.10.43.121.txt | -| dsk-dev-data-kafka-c1 | 10.10.43.122 | 취약 | http://10.10.43.42:8080/dsk-dev-data-kafka-c1.10.10.43.122.txt | -| dsk-dev-data-kafka-n1 | 10.10.43.148 | 취약 | http://10.10.43.42:8080/dsk-dev-data-kafka-n1.10.10.43.148.txt | -| dsk-dev-demo-master | 10.10.43.105 | 취약 | http://10.10.43.42:8080/dsk-dev-demo-master.10.10.43.105.txt | -| dsk-dev-demo-worker | 10.10.43.106 | 취약 | http://10.10.43.42:8080/dsk-dev-demo-worker.10.10.43.106.txt | -| dsk-dev-master-a1 | 10.10.43.111 | 취약 | http://10.10.43.42:8080/dsk-dev-master-a1.10.10.43.111.txt | -| dsk-dev-master-b1 | 10.10.43.112 | 취약 | http://10.10.43.42:8080/dsk-dev-master-b1.10.10.43.112.txt | -| dsk-dev-master-c1 | 10.10.43.113 | 취약 | http://10.10.43.42:8080/dsk-dev-master-c1.10.10.43.113.txt | -| dsk-dev-process-a1 | 10.10.43.123 | 취약 | http://10.10.43.42:8080/dsk-dev-process-a1.10.10.43.123.txt | -| dsk-dev-process-a2 | 10.10.43.126 | 취약 | http://10.10.43.42:8080/dsk-dev-process-a2.10.10.43.126.txt | -| dsk-dev-process-a3 | 10.10.43.129 | 취약 | http://10.10.43.42:8080/dsk-dev-process-a3.10.10.43.129.txt | -| dsk-dev-process-a4 | 10.10.43.116 | 취약 | http://10.10.43.42:8080/dsk-dev-process-a4.10.10.43.116.txt | -| dsk-dev-process-b1 | 10.10.43.124 | 취약 | http://10.10.43.42:8080/dsk-dev-process-b1.10.10.43.124.txt | -| dsk-dev-process-b2 | 10.10.43.127 | 취약 | http://10.10.43.42:8080/dsk-dev-process-b2.10.10.43.127.txt | -| dsk-dev-process-b3 | 10.10.43.130 | 취약 | http://10.10.43.42:8080/dsk-dev-process-b3.10.10.43.130.txt | -| dsk-dev-process-b4 | 10.10.43.136 | 취약 | http://10.10.43.42:8080/dsk-dev-process-b4.10.10.43.136.txt | -| dsk-dev-process-c1 | 10.10.43.125 | 취약 | http://10.10.43.42:8080/dsk-dev-process-c1.10.10.43.125.txt | -| dsk-dev-process-c2 | 10.10.43.128 | 취약 | http://10.10.43.42:8080/dsk-dev-process-c2.10.10.43.128.txt | -| dsk-dev-process-c3 | 10.10.43.131 | 취약 | http://10.10.43.42:8080/dsk-dev-process-c3.10.10.43.131.txt | -| dsk-dev-process-c4 | 10.10.43.137 | 취약 | http://10.10.43.42:8080/dsk-dev-process-c4.10.10.43.137.txt | -| dsk-dev-prometheus | 10.10.43.142 | 취약 | http://10.10.43.42:8080/dsk-dev-prometheus.10.10.43.142.txt | -| dsk-dev-temp-a1 | 10.10.43.132 | 취약 | http://10.10.43.42:8080/dsk-dev-temp-a1.10.10.43.132.txt | -| dsk-dev-temp-b1 | 10.10.43.140 | 취약 | http://10.10.43.42:8080/dsk-dev-temp-b1.10.10.43.140.txt | -| dsk-dev-temp-c1 | 10.10.43.141 | 취약 | http://10.10.43.42:8080/dsk-dev-temp-c1.10.10.43.141.txt | -| dsk-minio-master1 | 10.10.43.235 | 취약 | http://10.10.43.42:8080/dsk-minio-master1.10.10.43.235.txt | -| dsk-minio-worker1 | 10.10.43.236 | 취약 | http://10.10.43.42:8080/dsk-minio-worker1.10.10.43.236.txt | -| infra-master | 10.10.43.224 | 취약 | http://10.10.43.42:8080/infra-master.10.10.43.224.txt | -| infra-worker001 | 10.10.43.225 | 취약 | http://10.10.43.42:8080/infra-worker001.10.10.43.225.txt | -| infra-worker002 | 10.10.43.226 | 취약 | http://10.10.43.42:8080/infra-worker002.10.10.43.226.txt | -| kafka-multi-0 | 10.10.43.151 | 취약 | http://10.10.43.42:8080/kafka-multi-0.10.10.43.151.txt | -| kafka-multi-1 | 10.10.43.152 | 취약 | http://10.10.43.42:8080/kafka-multi-1.10.10.43.152.txt | -| kafka-multi-2 | 10.10.43.153 | 취약 | http://10.10.43.42:8080/kafka-multi-2.10.10.43.153.txt | -| master | 10.10.43.189 | 취약 | http://10.10.43.42:8080/master.10.10.43.189.txt | -| opensearch-data-0 | 10.10.43.144 | 취약 | http://10.10.43.42:8080/opensearch-data-0.10.10.43.144.txt | -| opensearch-data-1 | 10.10.43.145 | 취약 | http://10.10.43.42:8080/opensearch-data-1.10.10.43.145.txt | -| opensearch-master-0 | 10.10.43.143 | 취약 | http://10.10.43.42:8080/opensearch-master-0.10.10.43.143.txt | -| opensearch-search-0 | 10.10.43.146 | 취약 | http://10.10.43.42:8080/opensearch-search-0.10.10.43.146.txt | -| opensearch-test-0 | 10.10.43.195 | 취약 | http://10.10.43.42:8080/opensearch-test-0.10.10.43.195.txt | -| opensearch-test-1 | 10.10.43.196 | 취약 | http://10.10.43.42:8080/opensearch-test-1.10.10.43.196.txt | -| opensearch-test-2 | 10.10.43.197 | 취약 | http://10.10.43.42:8080/opensearch-test-2.10.10.43.197.txt | -| opensearch00 | 10.10.43.194 | 취약 | http://10.10.43.42:8080/opensearch00.10.10.43.194.txt | -| opensearch01 | 10.10.43.192 | 취약 | http://10.10.43.42:8080/opensearch01.10.10.43.192.txt | -| opensearch02 | 10.10.43.193 | 취약 | http://10.10.43.42:8080/opensearch02.10.10.43.193.txt | -| opensearch03 | 10.10.43.199 | 취약 | http://10.10.43.42:8080/opensearch03.10.10.43.199.txt | -| openshift-4-13 | 10.10.43.171 | 취약 | http://10.10.43.42:8080/openshift-4-13.10.10.43.171.txt | -| oracle-linux-9 | 10.10.43.174 | 취약 | http://10.10.43.42:8080/oracle-linux-9.10.10.43.174.txt | -| redhat-7 | 10.10.43.177 | 취약 | http://10.10.43.42:8080/redhat-7.10.10.43.177.txt | -| redhat-8 | 10.10.43.178 | 취약 | http://10.10.43.42:8080/redhat-8.10.10.43.178.txt | -| redhat-9 | 10.10.43.179 | 취약 | http://10.10.43.42:8080/redhat-9.10.10.43.179.txt | -| release-master | 10.10.43.100 | 취약 | http://10.10.43.42:8080/release-master.10.10.43.100.txt | -| releaseworker | 10.10.43.101 | 취약 | http://10.10.43.42:8080/releaseworker.10.10.43.101.txt | -| ubuntu-18-04 | 10.10.43.164 | 취약 | http://10.10.43.42:8080/ubuntu-18-04.10.10.43.164.txt | -| ubuntu-20-04 | 10.10.43.165 | 취약 | http://10.10.43.42:8080/ubuntu-20-04.10.10.43.165.txt | -| ubuntu-22-04 | 10.10.43.166 | 취약 | http://10.10.43.42:8080/ubuntu-22-04.10.10.43.166.txt | -| ubuntu2004 | 10.10.43.181 | 취약 | http://10.10.43.42:8080/ubuntu2004.10.10.43.181.txt | -| ubuntu2204 | 10.10.43.182 | 취약 | http://10.10.43.42:8080/ubuntu2204.10.10.43.182.txt | -| worker01 | 10.10.43.190 | 취약 | http://10.10.43.42:8080/worker01.10.10.43.190.txt | -| worker02 | 10.10.43.191 | 취약 | http://10.10.43.42:8080/worker02.10.10.43.191.txt | diff --git a/ansible/security_check/roles/security_check/files/rocky.sh b/ansible/security_check/roles/security_check/files/rocky.sh index e185012..2b3d930 100644 --- a/ansible/security_check/roles/security_check/files/rocky.sh +++ b/ansible/security_check/roles/security_check/files/rocky.sh @@ -3684,7 +3684,7 @@ echo "# echo "##############################################################################" >> $resultfile 2>&1 U_01 # root 계정 원격 접속 제한 -#U_02 # 랜덤 패스워드를 사용중이라 제외 +U_02 # 랜덤 패스워드를 사용중이라 제외 U_03 # 계정 잠금 임계값 설정 U_04 # 패스워드 파일 보호 U_05 # root 홈, 패스 디렉터리 권한 및 패스 설정 @@ -3769,4 +3769,4 @@ echo " ★ 양호 개수 = `cat $resultfile | grep echo " ☆ N/A 개수 = `cat $resultfile | grep '결과 : N/A' | wc -l`" >> $resultfile 2>&1 echo "" >> $resultfile 2>&1 echo "==============================================================================" >> $resultfile 2>&1 -echo "" >> $resultfile 2>&1 \ No newline at end of file +echo "" >> $resultfile 2>&1 diff --git a/ansible/security_check/test b/ansible/security_check/test new file mode 100644 index 0000000..bdc8cfb --- /dev/null +++ b/ansible/security_check/test @@ -0,0 +1,15 @@ +[all:children] +server +nas + +[server] +10.10.43.206 ansible_user=dev2-iac ansible_port=2222 +10.10.43.207 ansible_user=dev2-iac ansible_port=2222 +10.10.43.208 ansible_user=dev2-iac ansible_port=2222 +10.10.43.211 ansible_user=dev2-iac ansible_port=2222 +10.10.43.212 ansible_user=dev2-iac ansible_port=2222 +10.10.43.213 ansible_user=dev2-iac ansible_port=2222 +10.10.43.214 ansible_user=dev2-iac ansible_port=2222 + +[nas] +10.10.43.42 ansible_port=2222 ansible_user=exemdev2 \ No newline at end of file diff --git a/ansible/teleport_setting/roles/.DS_Store b/ansible/teleport_setting/roles/.DS_Store deleted file mode 100644 index 9b0c2bb765696061bcc1e2ee0d027b27a852529b..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 6148 zcmeHK%}T>S5Z-O8-BN@e6a+5|UMn`mzv3m-`T|Dupi&cBG#IlbP0gVc@&fuozK74_ z%VIE*zIV*(VhRDf*+`SDBak>15pX zlPjE^D-{KE+Yc_nVb*V~pQt$X!+4nJf^aZ|lAAj;v8PUC~WP?OX5hy zcMzM`&GQL~0b+m{SQ-ZG0VwKAvt!yQF+dFblmR>+Bq*Y5F*m4>4jAzF5#tp^6tM9w zfhaAy7IT9T0pX?;(3Em}#o(qK{L<#R7ITB9oN>J}Jjbrg?G1(N)xj@yI^(WE8i@g7 zV3C2cnKrQhpMHP;Uo4^-F+dFbD+YL_=k>aS5Z>*NO({YT3WApfuN9l(FJ3~dFJMFuDm5WRLu0lysX3HFUO->S_wad~ z+1)^k#iNLwf!%L*es(h-WPccA+?|FtV{OKm1r3p-vO>_j(p53Rh+NH)26;LTVi~NM z=5Lzt+v_Z2K1vlhRrCO_RG^~czvL3u=nR}U^O;gvO+~Me2$~Y)> zKe&m8`JlaZA(PCHlHo)pMBxxZ?r)$y!aFDnMZJ2HB$mk&Sj&tul8_i6 z28aP-U=0~Chk?~v!`i82Vt^Ry()(U8k&`>b0Km`Q!rAq(|a39%GPVE<{ aL!4u<(1^33U8MukML-ck9Wn3=4159o+)Jte