Security Tools
Status: Optional
The 30-security-tools.sh script hardens the system and installs essential security utilities for secrets management and code auditing.
Security Features
- Firewall: Enables and configures
UFWwith a "deny incoming, allow outgoing" default policy. - Secrets: Installs
sopsandagefor modern encrypted secrets management. - Auditing: Provisions
gitleaksto prevent accidental secret commits. - Communication: Ensures
opensshandgnupgare correctly configured.
Running
bash
sudo bash workstation/30-security-tools.sh