ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    How do I make sure my server is secure?

    IT Discussion
    6
    8
    989
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • ?
      A Former User
      last edited by

      How do I make sure my server is secure?

      It's CentOS7 running a basic LAMP stack.

      1 Reply Last reply Reply Quote 4
      • StrongBadS
        StrongBad
        last edited by

        Fail2Ban, that's always my first add on.

        thanksajdotcomT 1 Reply Last reply Reply Quote 1
        • StrongBadS
          StrongBad
          last edited by

          Make sure you keep the firewall on and as tight as you can. And make sure SELinux is enabled.

          1 Reply Last reply Reply Quote 0
          • StrongBadS
            StrongBad
            last edited by

            CentOS 7 is very secure out of the box. You are pretty locked down right out of the gate.

            1 Reply Last reply Reply Quote 0
            • scottalanmillerS
              scottalanmiller
              last edited by

              If you know that there are IP ranges that you do not need need exposed, you can lock down your firewall to disallow whole ranges, like those from certain countries. But this blocks legit users in those countries too.

              1 Reply Last reply Reply Quote 0
              • AmbarishrhA
                Ambarishrh
                last edited by Ambarishrh

                Check out Lynis. It does a full scan on your server and give you a report on the security.
                http://www.tecmint.com/install-lynis-auditing-tool-in-rhel-centos-fedora/

                My list is as below:

                Setup server

                install lynis scan and fix the security issues.

                use webmin and install configserver firewall.

                Check server security with that, can tweak a lot of settings with that to reach a good security score.

                Lock down access to specific IPs like to few network/Vpn/to jump server.

                To know more about csf http://configserver.com/cp/csf.html

                1 Reply Last reply Reply Quote 2
                • DashrenderD
                  Dashrender
                  last edited by

                  Great thread, when I go to deploy ScreenConnect next week I'll be looking to this thread.

                  1 Reply Last reply Reply Quote 1
                  • thanksajdotcomT
                    thanksajdotcom @StrongBad
                    last edited by

                    @StrongBad said:

                    Fail2Ban, that's always my first add on.

                    Ditto this.

                    1 Reply Last reply Reply Quote 0
                    • 1 / 1
                    • First post
                      Last post