Projects Puppet

Reusable modules for managing services, configuration, and operational tooling.

20 entries

cis_benchmarks

Applies CIS benchmark remediations that are compatible with the managed host.

Why Provides a structured way to apply relevant security-baseline remediations from compliance findings while limiting each rule to the operating systems and versions it supports.

ca_cert_update

Keeps approved certificate authorities installed and updated on supported hosts.

Why Verifies certificate thumbprints before installation and keeps Puppet trust current for secure software delivery.

mde_agent

Installs the Azure Connected Machine agent and configures Microsoft Defender for Endpoint on managed hosts.

Why Provides consistent endpoint security onboarding and management configuration across supported operating systems.

fireeye_agent

Installs and configures the FireEye HX Agent on managed Red Hat, Ubuntu, and Windows hosts.

Why Uses the module-provided installer for each supported platform and generates the required agent configuration file, ensuring consistent endpoint security coverage across the environment.

programs

Manages supporting programs that do not yet belong to a dedicated module.

Why Provides a central, maintainable way to apply shared software configuration while individual capabilities are separated over time.

netbox_agent

Synchronizes host inventory and network information with NetBox.

Why Keeps device records, interfaces, and addressing data current as managed systems change.

opsview_server

Manages operational functions of an existing Opsview server deployment.

Why Keeps selected server tasks running, helps restore the application after host rebuilds, and coordinates agent credential management.

opsview_agent

Installs and configures Opsview monitoring agents across supported hosts.

Why Maintains endpoint monitoring connectivity, access, and server registration consistently.

vault_agent

Onboards hosts to HashiCorp Vault and provides shared Vault tooling for other modules.

Why Provides a consistent mechanism for managed systems to authenticate securely and access centrally controlled secrets.

puppet_agent

Installs and manages OpenVox Puppet agents, configuration, and package repositories.

Why Keeps configuration-management clients and their required local working areas consistently prepared.

nessusagent

Installs and configures Nessus agents on managed hosts.

Why Provides consistent vulnerability-assessment coverage across the environment.

lamp_server

Builds and maintains Linux web application servers.

Why Coordinates web serving, application runtime, data access, certificates, and network policy into a repeatable server baseline.

cron_updates

Manages scheduled Linux package updates and restart policy.

Why Keeps patching behavior consistent while allowing update scheduling and restart policy to be centrally controlled.

bigfix_agent

Installs and configures the BigFix agent on managed hosts.

Why Establishes endpoint-management connectivity before ongoing agent management is handed to the BigFix service.

accounts

Manages Linux account and authentication configuration.

Why Applies a consistent authentication experience for authorized users across managed hosts.

kb_page_reporter

Installs and configures an application that reports on knowledge-base content.

Why Provides repeatable content reporting and metrics for supported knowledge-base installations.

vault_server

Installs and manages standalone and clustered HashiCorp Vault servers.

Why Provides a repeatable foundation for centrally managed secrets and identity services at any scale.

ssl_cert

Manages certificate material for applications and services.

Why Keeps trusted certificate material consistent and enables dependent services to refresh when it changes.

gitlab_server

Installs and configures GitLab servers.

Why Provides a repeatable, centrally managed foundation for source control and collaboration services.

gitlab_runner

Installs, configures, and registers GitLab Runner hosts.

Why Provides a consistent execution environment for automated build and delivery workloads, including container support.