From 8dada7e6a619d5ba91a71b37a67d99db05d67f11 Mon Sep 17 00:00:00 2001 From: Matt Willsher Date: Thu, 23 Jul 2015 18:24:12 +0100 Subject: [PATCH 1/2] Fix HostbasedAuthentication typo --- vars/Debian.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/vars/Debian.yml b/vars/Debian.yml index d1e9af7..e4777f6 100644 --- a/vars/Debian.yml +++ b/vars/Debian.yml @@ -22,7 +22,7 @@ sshd_defaults: PubkeyAuthentication: yes IgnoreRhosts: yes RhostsRSAAuthentication: no - HostbaseAuthentication: no + HostbasedAuthentication: no PermitEmptyPasswords: no ChallengeResponseAuthentication: no X11Forwarding: yes From 125f8ae4f10cd898b96ace365d7a51adae656cbd Mon Sep 17 00:00:00 2001 From: Matt Willsher Date: Thu, 23 Jul 2015 18:29:37 +0100 Subject: [PATCH 2/2] Add DebianBanner option --- meta/options_body | 1 + templates/sshd_config.j2 | 1 + 2 files changed, 2 insertions(+) diff --git a/meta/options_body b/meta/options_body index ee54695..e1c2b98 100644 --- a/meta/options_body +++ b/meta/options_body @@ -20,6 +20,7 @@ Ciphers ClientAliveCountMax ClientAliveInterval Compression +DebianBanner DenyGroups DenyUsers ForceCommand diff --git a/templates/sshd_config.j2 b/templates/sshd_config.j2 index 71b87ff..5073cd4 100644 --- a/templates/sshd_config.j2 +++ b/templates/sshd_config.j2 @@ -90,6 +90,7 @@ Match {{ match["Condition"] }} {{ body_option("ClientAliveCountMax",sshd_ClientAliveCountMax) -}} {{ body_option("ClientAliveInterval",sshd_ClientAliveInterval) -}} {{ body_option("Compression",sshd_Compression) -}} +{{ body_option("DebianBanner",sshd_DebianBanner) -}} {{ body_option("DenyGroups",sshd_DenyGroups) -}} {{ body_option("DenyUsers",sshd_DenyUsers) -}} {{ body_option("ForceCommand",sshd_ForceCommand) -}}