Block a user
[CRITICAL] Authentik Stage 2: Enable OIDC Integration in MAS
[CRITICAL] Hetzner Cloud Firewall: Default-Deny Setup
[CRITICAL] SSH Hardening: Key-Only Authentication
[CRITICAL] Hetzner Cloud Firewall: Default-Deny Setup
✅ COMPLETE (2026-05-15)
Hetzner Cloud Firewall konfiguriert:
- SSH: Port 2248, spezifische IPs (178.25.213.70, 2a02:8108:0:2f::/64)
- HTTP/HTTPS: Any IPv4/IPv6 (80, 443)
- TURN/STUN: WebRTC…
[CRITICAL] SSH Hardening: Key-Only Authentication
✅ COMPLETE (2026-05-15)
SSH Hardening auf K3S Host (49.13.132.245:2248):
- PasswordAuthentication: no ✅ (key-only login)
- PermitRootLogin: no ✅ (root disabled)
- MaxAuthTries: 3 ✅…
[CRITICAL] Authentik Stage 2: Enable OIDC Integration in MAS
✅ COMPLETE (2026-05-15)
Erledigte Steps:
- Authentik Admin UI konfiguriert (OIDC Provider, Application, Enrollment Flow)
- MAS
upstream_oauth2_configmit Client credentials aktualisiert …
sorb
released M4: Monitoring (Alloy, Prometheus, Loki) with Selendis remote write - COMPLETE at sorb/axion1337.chat-gitops
2026-05-14 22:00:10 +00:00
sorb
released M3: TURN server (coturn) for WebRTC video calls - COMPLETE at sorb/axion1337.chat-gitops
2026-05-14 21:59:55 +00:00
sorb
released M2: Element Web themes (7), desktop setup scripts, admin panel - COMPLETE at sorb/axion1337.chat-gitops
2026-05-14 21:59:42 +00:00
[HIGH] NetworkPolicies: Default-Deny in Matrix Namespace