This is your work, valued

HomeSec explorer

Advanced
@HomeSecExplorer

Homelab addict • Automating with Ansible • Sharing stuff • YouTube guides

Proxmox-Hardening-Guide. Security hardening guides for PVE and PBS, built on CIS Debian Benchmark with Proxmox specific best practices.

529

videos. Repo for youtube videos

11

ansible-role-autoupdate. Ansible role to install and manage automatic package updates on Debian, Ubuntu, and Rocky Linux. Uses unattended-upgrades and dnf-automatic. Safe defaults, configurable schedule, optional reboot and notifications.

7

ansible-role-sshaudit. Ansible role that hardens SSH server and client configurations based on ssh-audit recommendations. Supports Debian, Ubuntu, Rocky Linux 9, and Amazon Linux 2023. Provides safe defaults, repeatable audits, host key regeneration, brute-force mitigation and client hardening.

4

HomeSecExplorer. GitHub username repository.

2

ansible-role-cloudflared. Ansible role to install and configure Cloudflared as a DNS-over-HTTPS (DoH) proxy service on Debian, Ubuntu, and Rocky Linux. Supports multiple instances, automatic port assignment, and seamless integration with Pi-hole or standalone setups for enhanced privacy and performance.

2

ansible-role-pihole. Ansible role to install, configure, and manage Pi-hole (6.x) on Debian and Ubuntu. Supports full setup, blocklists and upstream customization (with optional Cloudflared DoH). Designed for reproducible homelab and production-grade deployments.

2

ansible-role-gitlab. Ansible role to install and configure GitLab Omnibus on Debian and Ubuntu. Supports HTTPS (self-signed or ACME), LDAP&SMTP integration and the GitLab Container Registry, designed for reproducible homelab and production-grade deployments.

1