Skip to content
AppClap
DevSec Hardening Framework is unclaimed —
D

DevSec Hardening Framework

Server Hardening Automation·dev-sec.io

Visit

DevSec Hardening Framework is an open-source project that provides Ansible, Chef, and Puppet automation for hardening operating systems and services. It offers baselines for applications (MySQL, PostgreSQL, Apache, Nginx), components (SSH, SSL, Docker, K8S), and Linux operating systems. The framework focuses on attack surface reduction, secure configuration, and hardening of core components, and was originally developed to automate security requirements at Deutsche Telekom.

What it's for

Identify security issues and misconfigurationRemediate with automation toolingAdd security hardening to an automation frameworkHarden operating systems and core servicesVerify compliance with hardening baselines

Features 16

  • Ansible collection for hardening
  • Apache hardening baseline
  • Attack surface reduction
  • Chef cookbooks for hardening
  • Compliance testing rules for verifying applied hardening
  • Core component hardening
  • Docker hardening
  • K8S hardening
  • Linux OS hardening
  • MySQL hardening baseline
  • Nginx hardening baseline
  • PostgreSQL hardening baseline
  • Puppet modules for hardening
  • Secure default configuration
  • SSH hardening
  • SSL hardening

At a glance

free tieropen sourceself-hostable
TypeLibrary / SDK
DeploymentSelf-hosted
PlatformsLinux

Integrations

AnsibleChefPuppetInSpec
Last checked 3 days ago·