feat: add proxmox exceptions

This commit is contained in:
Simon Cornet 2025-06-22 14:54:19 +02:00
commit abb854ebee

View file

@ -6,10 +6,17 @@ ListenAddress 0.0.0.0
ListenAddress ::
# hostkey
{% if inventory_hostname in groups['proxmox'] %}
HostKey /etc/ssh/ssh_host_rsa_key
{% endif %}
HostKey /etc/ssh/ssh_host_ed25519_key
# Authentication
PermitRootLogin no
{% if inventory_hostname in groups['proxmox'] %}
PermitRootLogin yes
{% else %}
PermitRootLogin no
{% endif %}
# Hardening
StrictModes yes
@ -19,7 +26,11 @@ LoginGraceTime 15
MaxSessions 8
PasswordAuthentication no
PubkeyAuthentication yes
{% if inventory_hostname in groups['proxmox'] %}
AllowUsers ansible drone hugo root simon
{% else %}
AllowUsers ansible drone hugo simon
{% endif %}
VersionAddendum ""
IgnoreRhosts yes
UseDNS no