From 0588b2dd60df7faa0b8cfefd7d36db8708f2c3b7 Mon Sep 17 00:00:00 2001 From: ReachableCEO Date: Fri, 11 Jul 2025 11:48:53 -0500 Subject: [PATCH] ifdev for dev boxes, they have less hardened ssh config because vscode remote etc --- ProjectCode/Modules/Security/secharden-ssh.sh | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/ProjectCode/Modules/Security/secharden-ssh.sh b/ProjectCode/Modules/Security/secharden-ssh.sh index 0395f55..7e84ce5 100644 --- a/ProjectCode/Modules/Security/secharden-ssh.sh +++ b/ProjectCode/Modules/Security/secharden-ssh.sh @@ -53,7 +53,13 @@ if [ "$SUBODEV_CHECK" = 1 ]; then chown subodev: /home/subodev/.ssh/authorized_keys fi +export DEV_WORKSTATION_CHECK +DEV_WORKSTATION_CHECK_CHECK="$(hostname | egrep -c 'subopi-dev|CharlesDevServer' || true)" + + if [ "$DEV_WORKSTATION_CHECK" -eq 0 ]; then + cat ../../ConfigFiles/SSH/Configs/tsys-sshd-config >/etc/ssh/sshd_config +fi #Don't deploy this config to a ubuntu server, it breaks openssh server. Works on kali/debian.