Enable and configure firewall.
Linux server security hardening.
Linux security from the inside internal hardening generally lends itself to applications where users are allowed to execute programs within the system such as a shared hosting environment.
Read more in the article below which was originally published here on networkworld.
Linux hardening tools are typically used for configuration audit and system hardening.
Users for these tools include auditors security professionals system administrators.
Here are 23 security tips to guide you through hardening your linux operating system.
To improve the security level of a system we take different types of measures.
When hardening a linux system one of the first steps is to look at the network traffic that comes in and goes out.
Secure bios and disable usb booting.
Patch third party applications.
Most people assume that linux is already secure and that s a false assumption.
Linux hardening security tips for professionals.
There are many aspects to linux security including linux system hardening auditing and compliance.
Avoid legacy communication services.
Don t fall for this assumption and open yourself up to a potentially costly security breach.
Encrypt data communication for linux server.
So it is wise to filter out unwanted network traffic or better only allow wanted traffic.
If you are using a cloud server then your neighbor systems might not be as friendly as the ones in your own home network.
What is system hardening.
Think twice carefully before removing if your system is attached to internet and accessed by the public then think some more on it.
Keep kernel and packages up to date.
Hardening your linux server can be done in 15 steps.
Patch the operating system.
The following instructions assume that you are using centos rhel or ubuntu debian based linux distribution.
You should install aide software before connecting the system to a network if possible.
This could be the removal of an existing system service or uninstall some software components.
Disabling selinux means removing security mechanism from the system.
Security enhanced linux selinux is a compulsory access control security mechanism provided in the kernel.
Disable root console access.
Encrypt transmitted data whenever possible with password or using keys certificates.
All data transmitted over a network is open to monitoring.
Maintain user accounts and password policy.