Differences between revisions 1 and 3 (spanning 2 versions)
Revision 1 as of 2009-11-16 23:41:47
Size: 257
Editor: fruity
Comment:
Revision 3 as of 2009-11-16 23:47:04
Size: 273
Editor: fruity
Comment:
Deletions are marked like this. Additions are marked like this.
Line 3: Line 3:
 1 fail2ban
 2 ssh on non standard port
 3 iptables + ulog, troubleshootinginmyownballs aka fascist firewall
 4 no sudo on the system
 5 removing __ALL__ setuid programs
 6 remote backup of log, rsyslog
 1. fail2ban

2. ssh on non standard port

3. iptables + ulog, troubleshootinginmyownballs aka fascist firewall

4. no sudo on the system

5. removing __ALL__ setuid programs

6. remote backup of log, rsyslog

My view on securing a debian/ubuntu machine:

  1. fail2ban
  2. ssh on non standard port
  3. iptables + ulog, troubleshootinginmyownballs aka fascist firewall
  4. no sudo on the system
  5. removing ALL setuid programs

  6. remote backup of log, rsyslog

fruity/AdminAndConfs/Security (last edited 2009-11-17 00:49:00 by fruity)