logo icods

Implementation of Server Provisioning and Hardening Automation using Terraform and Ansible with NIST SP 800 – 123

Authors

  • Nelmiawati

    Politeknik Negeri Batam
    Author
  • Gunawan

    Politeknik Negeri Batam
    Author
  • Hamdani Arif

    Politeknik Negeri Batam
    Author
  • Antoni Haikal

    Politeknik Negeri Batam
    Author
  • Septafiansyah Dwi Putra

    Politeknik Negeri Lampung
    Author

DOI:

https://doi.org/10.62201/9krgf663

Keywords:

Server Provisioning, Server Hardening Automation, NIST SP 800-123, Terraform, Ansible

Abstract

Servers play an important role as the center of data processing, applications, and services used by companies. High dependence as well as reliability on servers makes them primary targets for cyberattacks such as malware, SSH attacks, and web-based attacks. In addition, manual server provisioning is time-consuming and prone to human error, potentially leading to security misconfigurations. This study proposes a solution through the automation of server provisioning and hardening using Terraform and Ansible based on the NIST SP 800-123 server security standard. This solution was designed to speed up server provisioning processes and ensure consistent and effective implementation of security configurations. The results demonstrate a halving in provisioning and hardening time when compared to manual processes. There were 64.29%, or 18 out of 28, checklists that were met. Vulnerability assessment using Lynis shows 71 of the hardening index, while OpenVAS found 1 low level after hardening. Additionally, SSH penetration testing showed a 100% prevention rate against unauthorized access. By leveraging digital automation to enhance IT infrastructure security, this solution contributes to building a more secure and reliable digital ecosystem.

Downloads

Published

2025-08-14