You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
| Build scripts for Bastion host:<br> - Create OS User for bastion access<br> - Amend SSH Authorized Keys of OS User for bastion access<br> - Activate firewalld<br> - Change SSH Port to within IANA Dynamic Ports range<br> - Update SELinux of port change<br> - Deny root login from Public IP |:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:| N/A | N/A |
110
-
| <br/>***Host Network Access for SAP***|||||||
111
-
| Append Network Security rules for SAP (e.g. Security Group Rules)<br> - SAP NetWeaver AS (ABAP)<br> - SAP NetWeaver AS (JAVA)<br> - SAP HANA<br> - SAP HANA XSA<br> - SAP Web Dispatcher |:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:| N/A | N/A |
112
-
| <br/>***Proxy interconnect provision for increased security hosts***|||||||
| Create DNS Records (i.e. A, CNAME, PTR) | N/A | N/A | N/A |:white_check_mark:| N/A | N/A |
116
-
| Build scripts for Bastion host:<br> - Setup BIND/named for DNS Proxy<br> - Setup Squid for Web Forward Proxy<br> - Setup Nginx for Web Reverse Proxy | N/A | N/A | N/A |:white_check_mark:| N/A | N/A |
117
-
| <br/>***Host Provision***|||||||
118
-
| Find OS Image with SAP-relevant OS Package Repositories |:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:<br/><sub>clone from Stock OS Image</sub> |:white_check_mark:|:white_check_mark:|
119
-
| Create DNS Records (i.e. A, CNAME, PTR) |:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:| N/A | N/A |
120
-
| Create Storage Volumes (defined storage profile with IOPS/GB, or custom IOPS) |:white_check_mark:|:white_check_mark:|:white_check_mark:|:warning:<br/><sub>no custom IOPS</sub> |:white_check_mark:|:white_check_mark:|
| Attach Storage Volumes to Host/s |:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|
123
-
| Build scripts for Host:<br> - Enable root login<br> - Set hostname<br> - Set DNS in resolv.conf<br> - Disks and Filesystem setup (LVM with XFS and striping, or Physical with XFS) |:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|
124
-
| Build scripts for increased security Hosts:<br> - Set DNS Proxy in resolv.conf<br> - Set Web Proxy for non-interactive login shell | N/A | N/A | N/A |:white_check_mark:|:white_check_mark:|:white_check_mark:|
125
-
| Build scripts for BYOL OS:<br> - Enable OS Subscription with BYOL, setup OS Package Repositories | N/A | N/A | N/A |:white_check_mark:|:white_check_mark:|:white_check_mark:|
| Build scripts for Bastion host:<sub><br> - Create OS User for bastion access<br> - Amend SSH Authorized Keys of OS User for bastion access<br> - Activate firewalld<br> - Change SSH Port to within IANA Dynamic Ports range<br> - Update SELinux of port change<br> - Deny root login from Public IP</sub> |:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:| N/A | N/A |
110
+
| <br/>***Host Network Access for SAP***||||||||
111
+
| Append Network Security rules for SAP (e.g. Security Group Rules)<sub><br> - SAP NetWeaver AS (ABAP)<br> - SAP NetWeaver AS (JAVA)<br> - SAP HANA<br> - SAP HANA XSA<br> - SAP Web Dispatcher</sub> |:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:| N/A | N/A |
112
+
| <br/>***Proxy interconnect provision for increased security hosts***||||||||
| Create DNS Records (i.e. A, CNAME, PTR) | N/A | N/A | N/A |N/A |:white_check_mark:| N/A | N/A |
116
+
| Build scripts for Bastion host:<sub><br> - Setup BIND/named for DNS Proxy<br> - Setup Squid for Web Forward Proxy<br> - Setup Nginx for Web Reverse Proxy</sub> | N/A| N/A | N/A | N/A |:white_check_mark:| N/A | N/A |
117
+
| <br/>***Host Provision***||||||||
118
+
| Find OS Image with SAP-relevant OS Package Repositories |:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:<br/><sub>clone from Stock OS Image</sub> |:white_check_mark:|:white_check_mark:|
119
+
| Create DNS Records (i.e. A, CNAME, PTR) |:white_check_mark:|:white_check_mark:| ::white_check_mark:|:white_check_mark:|:white_check_mark:| N/A | N/A |
120
+
| Create Storage Volumes (defined storage profile with IOPS/GB, or custom IOPS) |:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|:warning:<br/><sub>no custom IOPS</sub> |:white_check_mark:|:white_check_mark:|
| Attach Storage Volumes to Host/s |:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|
123
+
| Build scripts for Host:<sub><br> - Enable root login<br> - Set hostname<br> - Set DNS in resolv.conf<br> - Disks and Filesystem setup (LVM with XFS and striping, or Physical with XFS)</sub> |:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|:white_check_mark:|
124
+
| Build scripts for increased security Hosts:<sub><br> - Set DNS Proxy in resolv.conf<br> - Set Web Proxy for non-interactive login shell</sub> | N/A| N/A | N/A | N/A |:white_check_mark:|:white_check_mark:|:white_check_mark:|
125
+
| Build scripts for BYOL OS:<sub><br> - Enable OS Subscription with BYOL, setup OS Package Repositories</sub> | N/A| N/A | N/A | N/A |:white_check_mark:|:white_check_mark:|:white_check_mark:|
# Ansible Config - Default timeout for connection plugins to use. Equivilant to 'ansible-playbook --timeout 180' command, and creates SSH connection with '-o ConnectTimeout=180'.
23
+
export ANSIBLE_TIMEOUT=180
24
+
18
25
# Ansible Config - Forces color mode when run without a TTY
0 commit comments