Been working on a project that requires me to automate the hardening of my ESXi 6.5 hypervisor using Ansible by following the VMware Hardening Guidelines 6.5. So I’ve been wondering whether there’s anyone out there that have tried to use any automation scripting tools like Ansible to do automation of hardening on their hypervisor and have some sort of pointers or playbooks that have been done so that I could refer to. I can’t seem to find any sort of resources out on the net that touches on this after researching for a while. Any help would be great !
There are several projects that deal with Ansible as a hardening tool,
I'm not familiar with hypervisor specific ones but you can look at
these:
https://github.com/ansible/ansible-lockdown
https://github.com/openstack/openstack-ansible-security