V8.03.384.2025.06.03
All checks were successful
Render Graphviz Diagrams. / Render Graphviz Diagrams. (push) Successful in 27s
All checks were successful
Render Graphviz Diagrams. / Render Graphviz Diagrams. (push) Successful in 27s
Signed-off-by: Marc S. Weidner <msw@coresecret.dev>
This commit is contained in:
@@ -59,6 +59,7 @@ add_header Strict-Transport-Security "max-age=63072000; includeSubDomains; prelo
|
|||||||
|
|
||||||
* Additionally, the entire zone is dual-signed with DNSSEC. See the current DNSSEC status at: **[DNSSEC Audit Report](/docs/AUDIT_DNSSEC.md)**
|
* Additionally, the entire zone is dual-signed with DNSSEC. See the current DNSSEC status at: **[DNSSEC Audit Report](/docs/AUDIT_DNSSEC.md)**
|
||||||
* A comprehensive TLS audit of the `git.coresecret.dev` Gitea server is also available. See: **[TLS Audit Report](/docs/AUDIT_TLS.md)**
|
* A comprehensive TLS audit of the `git.coresecret.dev` Gitea server is also available. See: **[TLS Audit Report](/docs/AUDIT_TLS.md)**
|
||||||
|
* The infrastructure of the CISS.debian.live.builder building system is visualized here. See: **[Centurion Net](/docs/CNET.md)**
|
||||||
|
|
||||||
### 1.1.3. Gitea Action Runner Hardening
|
### 1.1.3. Gitea Action Runner Hardening
|
||||||
|
|
||||||
|
|||||||
21
docs/CNET.md
Normal file
21
docs/CNET.md
Normal file
@@ -0,0 +1,21 @@
|
|||||||
|
---
|
||||||
|
gitea: none
|
||||||
|
include_toc: true
|
||||||
|
---
|
||||||
|
|
||||||
|
# 1. CISS.debian.live.builder
|
||||||
|
|
||||||
|
**Centurion Intelligence Consulting Agency Information Security Standard**<br>
|
||||||
|
*Debian Live Build Generator for hardened live environment and CISS Debian Installer*<br>
|
||||||
|
**Master Version**: 8.03<br>
|
||||||
|
**Build**: V8.03.384.2025.06.03<br>
|
||||||
|
|
||||||
|
# 2. Download the latest PUBLIC CISS.debian.live.ISO
|
||||||
|
|
||||||
|
This is an automatically generated overview of the secure ``Centurion Net`` ``CISS.debian.live.builder`` building system.
|
||||||
|
|
||||||
|

|
||||||
|
|
||||||
|
---
|
||||||
|
**[no tracking | no logging | no advertising | no profiling | no bullshit](https://coresecret.eu/)**
|
||||||
|
<!-- vim: set number et ts=2 sw=2 sts=2 ai tw=128 ft=markdown -->
|
||||||
@@ -86,10 +86,7 @@ digraph CISS_debian_live_builder {
|
|||||||
// ----- Cluster: TLS/HTTPS group (contains B-Server, cloud, and the TLS cloud) -----
|
// ----- Cluster: TLS/HTTPS group (contains B-Server, cloud, and the TLS cloud) -----
|
||||||
subgraph cluster_tls_group {
|
subgraph cluster_tls_group {
|
||||||
// The red dotted rectangle around B-Cluster, cloud, and the TLS cloud
|
// The red dotted rectangle around B-Cluster, cloud, and the TLS cloud
|
||||||
label="ECDHE-RSA-AES256-GCM-SHA384 ECDH 448 AESGCM 256\n\
|
label="TLS 1.2 || 1.3 AES256-GCM-SHA384 ECDH 448 AESGCM 256 only.";
|
||||||
ECDHE-RSA-CHACHA20-POLY1305 ECDH 448 ChaCha20 256\n\
|
|
||||||
TLS_AES_256_GCM_SHA384 ECDH 448 AESGCM 256\n\
|
|
||||||
TLS_CHACHA20_POLY1305_SHA256 ECDH 448 ChaCha20 256";
|
|
||||||
style=dashed;
|
style=dashed;
|
||||||
color=red;
|
color=red;
|
||||||
|
|
||||||
|
Before Width: | Height: | Size: 119 KiB After Width: | Height: | Size: 119 KiB |
Reference in New Issue
Block a user