Implementation of Server Provisioning and Hardening Automation using Terraform and Ansible with NIST SP 800 – 123
DOI:
https://doi.org/10.62201/9krgf663Keywords:
Server Provisioning, Server Hardening Automation, NIST SP 800-123, Terraform, AnsibleAbstract
Servers play an important role as the center of data processing, applications, and services used by companies. High dependence as well as reliability on servers makes them primary targets for cyberattacks such as malware, SSH attacks, and web-based attacks. In addition, manual server provisioning is time-consuming and prone to human error, potentially leading to security misconfigurations. This study proposes a solution through the automation of server provisioning and hardening using Terraform and Ansible based on the NIST SP 800-123 server security standard. This solution was designed to speed up server provisioning processes and ensure consistent and effective implementation of security configurations. The results demonstrate a halving in provisioning and hardening time when compared to manual processes. There were 64.29%, or 18 out of 28, checklists that were met. Vulnerability assessment using Lynis shows 71 of the hardening index, while OpenVAS found 1 low level after hardening. Additionally, SSH penetration testing showed a 100% prevention rate against unauthorized access. By leveraging digital automation to enhance IT infrastructure security, this solution contributes to building a more secure and reliable digital ecosystem.
Downloads
Published
Issue
Section
License
Copyright (c) 2025 Proceeding of International Conference on Digital, Social, and Science

This work is licensed under a Creative Commons Attribution-NonCommercial-ShareAlike 4.0 International License.







