Tutorial: How to secure your server?

Discussion in 'Security' started by olddocks, May 28, 2008.

  1. #1
    i took some time to write a tutorial on the basics of securing the linux server (server hardening).

    Basic Linux Server Security

    Install Firewall (APF or CSF Firewall with BFD)
    ModSecurity (Web application firewall)
    ModEvasive (Prevent DDOS attacks)
    Harden SSH server
    Fix Open DNS Recursion
    Install RKhunter
    Install ClamAV (Antivirus)
    XInet Servers Hardening (Disable Telnet/Finger or unwanted services)
    Securing PHP
    PortsEntry (tool to detect portscans)
    Harden host.conf (against IP spoofing)
    Check User Uploaded files
    Secure /tmp Folders (noexec, nosuid)

    Full article: see here

    Leave me a feedback if you have anything to comment! thanks :D :D
     
    olddocks, May 28, 2008 IP
  2. gkd_uk

    gkd_uk Well-Known Member

    Messages:
    979
    Likes Received:
    74
    Best Answers:
    1
    Trophy Points:
    165
    #2
    Good tutroial
    Thanks for sharing :)
     
    gkd_uk, May 28, 2008 IP
  3. IntellectToday

    IntellectToday Banned

    Messages:
    811
    Likes Received:
    9
    Best Answers:
    0
    Trophy Points:
    0
    #3
    Thank you for the tutorial.

    It's well written and very informative. =]
     
    IntellectToday, May 29, 2008 IP
  4. FaiNT15

    FaiNT15 Guest

    Best Answers:
    0
    #4
    Thanks!
    Great tutorial, just want I've been looking for
     
    FaiNT15, May 30, 2008 IP
  5. speedy23

    speedy23 Active Member

    Messages:
    399
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    53
    #5
    thanks for sharing
     
    speedy23, May 30, 2008 IP
  6. the_wanderer

    the_wanderer Peon

    Messages:
    43
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    0
    #6
    Good summary. Nice work.
     
    the_wanderer, May 31, 2008 IP
  7. tripad

    tripad Peon

    Messages:
    371
    Likes Received:
    4
    Best Answers:
    0
    Trophy Points:
    0
    #7
    the article is real good !
     
    tripad, Jun 1, 2008 IP
  8. alcoholhost

    alcoholhost Peon

    Messages:
    12
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #8
    thank you :) for article
     
    alcoholhost, Jun 5, 2008 IP
  9. risoknop

    risoknop Peon

    Messages:
    914
    Likes Received:
    24
    Best Answers:
    0
    Trophy Points:
    0
    #9
    Great guide. Thanks for that.
     
    risoknop, Jun 10, 2008 IP
  10. Revolution333

    Revolution333 Peon

    Messages:
    227
    Likes Received:
    2
    Best Answers:
    0
    Trophy Points:
    0
    #10
    Great Tutorial, I'm gonna install some of these things on my server.
     
    Revolution333, Jun 11, 2008 IP
  11. DomainCo.US

    DomainCo.US Well-Known Member

    Messages:
    2,124
    Likes Received:
    18
    Best Answers:
    0
    Trophy Points:
    100
    #11
    Thanks for this...

    I didn't see the securing temp tutorial...
     
    DomainCo.US, Jun 11, 2008 IP
  12. pneulameiro

    pneulameiro Peon

    Messages:
    440
    Likes Received:
    4
    Best Answers:
    0
    Trophy Points:
    0
    #12
    Thanks for the excellent tutorial man!
     
    pneulameiro, Jun 19, 2008 IP
  13. GLucas

    GLucas Active Member

    Messages:
    42
    Likes Received:
    2
    Best Answers:
    0
    Trophy Points:
    90
    #13
    Mod_Security installation for cPanel is quiet outdated. You don't enable it as a plugin, it is now part of EasyApache and can be compiled with it.

    But decent tutorial non the less, this are basic things that should run on every server for basic security.
     
    GLucas, Jun 20, 2008 IP
  14. Blackmane

    Blackmane Peon

    Messages:
    766
    Likes Received:
    12
    Best Answers:
    0
    Trophy Points:
    0
    #14
    Very good tutorial. Thanks.
     
    Blackmane, Jun 30, 2008 IP
  15. gbh1935

    gbh1935 Peon

    Messages:
    585
    Likes Received:
    11
    Best Answers:
    0
    Trophy Points:
    0
    #15
    Great tutorial, got a few new tricks to try from it!
     
    gbh1935, Jul 5, 2008 IP
  16. File_Wizard

    File_Wizard Well-Known Member

    Messages:
    593
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    135
    #16
    nice job but one question when i do su to root how can i adduser i tried it and it doesn`t work that`s my only down fault in not using it
     
    File_Wizard, Jul 9, 2008 IP
  17. olddocks

    olddocks Notable Member

    Messages:
    3,275
    Likes Received:
    165
    Best Answers:
    0
    Trophy Points:
    215
    #17
    Type /usr/sbin/adduser instead of just adduser
     
    olddocks, Jul 9, 2008 IP
  18. File_Wizard

    File_Wizard Well-Known Member

    Messages:
    593
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    135
    #18
    Thanks alot for the help Sir
     
    File_Wizard, Jul 9, 2008 IP
  19. jayshah

    jayshah Peon

    Messages:
    1,126
    Likes Received:
    68
    Best Answers:
    1
    Trophy Points:
    0
  20. KnbykL

    KnbykL Guest

    Messages:
    3
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #20
    Original :/
     
    KnbykL, Jul 9, 2008 IP