blob: 6566b9056c840dc401f35731bd011432179a574e [file] [log] [blame]
vexxhost-bot6e0e4362024-06-01 21:24:08 +02001# SPDX-License-Identifier: Apache-2.0
vexxhost-bot65e04a22024-06-26 15:46:55 +02002# Atmosphere-Rebuild-Time: 2024-06-25T22:49:25Z
Mohammed Naser37694382024-04-02 21:11:31 -04003
Mohammed Naserd30f18d2024-04-17 01:20:43 -04004ARG RELEASE
5
Yaguang Tangba6760e2024-12-13 12:59:40 +08006FROM harbor.atmosphere.dev/library/openstack-runtime:${RELEASE}
Mohammed Naserda994232024-04-13 12:34:01 -04007RUN <<EOF bash -xe
8apt-get update -qq
9apt-get install -qq -y --no-install-recommends \
vexxhost-bota2b34ce2025-01-08 21:17:31 -050010 iproute2 \
Mohammed Naserda994232024-04-13 12:34:01 -040011 openssh-server \
12 openssh-client
13EOF
14RUN <<EOF bash -xe
15chown -R nova: /etc/ssh
16mkdir /var/run/sshd
17chmod 0755 /var/run/sshd
18EOF
vexxhost-bot9676d282024-06-05 20:52:26 +020019COPY <<EOF /etc/ssh/sshd_config.d/00-hardening.conf
20Ciphers aes256-ctr,aes192-ctr
21MACs hmac-sha2-512,hmac-sha2-256
22KexAlgorithms diffie-hellman-group-exchange-sha256
23HostKeyAlgorithms ecdsa-sha2-nistp256,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521
24MaxAuthTries 3
25EOF