diff --git a/vars/Ubuntu_18.yml b/vars/Ubuntu_18.yml index 5a136388..cb8295a4 100644 --- a/vars/Ubuntu_18.yml +++ b/vars/Ubuntu_18.yml @@ -5,36 +5,11 @@ __sshd_packages: - openssh-sftp-server __sshd_config_mode: "0644" __sshd_defaults: - Port: 22 - Protocol: 2 - HostKey: - - /etc/ssh/ssh_host_rsa_key - - /etc/ssh/ssh_host_dsa_key - - /etc/ssh/ssh_host_ecdsa_key - - /etc/ssh/ssh_host_ed25519_key - UsePrivilegeSeparation: yes - KeyRegenerationInterval: 3600 - ServerKeyBits: 1024 - SyslogFacility: AUTH - LogLevel: INFO - LoginGraceTime: 120 - PermitRootLogin: prohibit-password - StrictModes: yes - RSAAuthentication: yes - PubkeyAuthentication: yes - AuthorizedKeysFile: "%h/.ssh/authorized_keys" - IgnoreRhosts: yes - RhostsRSAAuthentication: no - HostbasedAuthentication: no - PermitEmptyPasswords: no + PasswordAuthentication: no ChallengeResponseAuthentication: no + UsePAM: yes X11Forwarding: yes - X11DisplayOffset: 10 PrintMotd: no - PrintLastLog: yes - TCPKeepAlive: yes AcceptEnv: LANG LC_* Subsystem: "sftp {{ sshd_sftp_server }}" - UsePAM: yes - UseDNS: no __sshd_os_supported: yes