Differences between revisions 1 and 4 (spanning 3 versions)
Revision 1 as of 2009-11-16 23:41:47
Size: 257
Editor: fruity
Comment:
Revision 4 as of 2009-11-17 00:49:00
Size: 281
Editor: fruity
Comment:
Deletions are marked like this. Additions are marked like this.
Line 1: Line 1:
My view on securing a debian/ubuntu machine: === My view on securing a debian/ubuntu machine: ===
Line 3: Line 3:
 1 fail2ban
 2 ssh on non standard port
 3 iptables + ulog, troubleshootinginmyownballs aka fascist firewall
 4 no sudo on the system
 5 removing __ALL__ setuid programs
 6 remote backup of log, rsyslog
 1. fail2ban

2. ssh on non standard port

3. iptables + ulog, troubleshootinginmyownballs aka fascist firewall

4. no sudo on the system

5. removing __ALL__ setuid programs

6. remote backup of log, rsyslog

My view on securing a debian/ubuntu machine:

  1. fail2ban
  2. ssh on non standard port
  3. iptables + ulog, troubleshootinginmyownballs aka fascist firewall
  4. no sudo on the system
  5. removing ALL setuid programs

  6. remote backup of log, rsyslog

fruity/AdminAndConfs/Security (last edited 2009-11-17 00:49:00 by fruity)