Linode Forum
Linode Community Forums
 FAQFAQ    SearchSearch    MembersMembers      Register Register 
 LoginLogin [ Anonymous ] 
Post new topic  Reply to topic
Author Message
PostPosted: Thu Nov 03, 2011 11:24 pm 
Offline
Senior Newbie

Joined: Thu Apr 30, 2009 2:37 am
Posts: 12
ICQ: 1365234
Website: http://seekeraftertruth.com
WLM: faisal_humayun@hotmail.com
Yahoo Messenger: faisal.humayun
AOL: faisal+humayun
Location: Deerfield Beach, FL
Consider these free options to harden your linode servers.

IP Tables GUI ConfigServer Services (standalone and webmin)
http://configserver.com/cp/csf.html

DenyHosts (auto-ban SSH attacks)
http://denyhosts.sourceforge.net/

Fail2ban (Harden Apache/FTP/MTAs)
http://www.fail2ban.org/wiki/index.php/Main_Page

PortSentry (works with IPTables)
http://linux.sys-con.com/node/32843

Tripwire (ubuntu) - baseline CRC file checking
http://netwizards.co.uk/installing-tripwire-on-ubuntu/

TIGER (The Unix security audit and intrusion detection tool)
http://nongnu.org/tiger/

PHP Hardening
http://www.hardened-php.net/suhosin/

_________________
Faisal Humayun


Top
   
 Post subject:
PostPosted: Thu Nov 03, 2011 11:47 pm 
Offline
Senior Member
User avatar

Joined: Sun Dec 27, 2009 11:12 pm
Posts: 1038
Location: Colorado, USA
And how much resources do all those "required" addon's use up?


Top
   
PostPosted: Thu Nov 03, 2011 11:59 pm 
Offline
Senior Member

Joined: Fri May 02, 2008 8:44 pm
Posts: 1121
fhumayun wrote:
DenyHosts (auto-ban SSH attacks)
Fail2ban (Harden Apache/FTP/MTAs)

What about just uninstalling FTP and disabling password-based SSH logins? You can't beat that.

Other tools you listed may be useful for some people, though.

Note that the core features of Suhosin are already part of Debian and Ubuntu's PHP packages. The rest of Suhosin's features can be enabled by installing php5-suhosin, though it's usually unnecessary.

As usual, the most important thing is to know when you need a tool, and to use the tool properly. People who think that they'll be safe just because they installed a certain program are even scarier than the bad guys themselves.


Top
   
Display posts from previous:  Sort by  
Post new topic  Reply to topic


Who is online

Users browsing this forum: No registered users and 7 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum

Search for:
Jump to:  
RSS

Powered by phpBB® Forum Software © phpBB Group