There are many aspects to linux security including linux system hardening auditing and compliance.
Linux server security hardening.
For greater linux server security hardening it s recommended that you use integrity checking software before you take a system into a production environment online.
The following instructions assume that you are using centos rhel or ubuntu debian based linux distribution.
Keep kernel and packages up to date.
This could be the removal of an existing system service or uninstall some software components.
Users for these tools include auditors security professionals system administrators.
To improve the security level of a system we take different types of measures.
Linux security from the inside internal hardening generally lends itself to applications where users are allowed to execute programs within the system such as a shared hosting environment.
Avoid legacy communication services.
Security enhanced linux selinux is a compulsory access control security mechanism provided in the kernel.
Think twice carefully before removing if your system is attached to internet and accessed by the public then think some more on it.
Enable and configure firewall.
So it is wise to filter out unwanted network traffic or better only allow wanted traffic.
Patch third party applications.
Linux hardening security tips for professionals.
When hardening a linux system one of the first steps is to look at the network traffic that comes in and goes out.
Don t fall for this assumption and open yourself up to a potentially costly security breach.
All data transmitted over a network is open to monitoring.
Patch the operating system.
Encrypt data communication for linux server.
Disable remote root access.
Here are 23 security tips to guide you through hardening your linux operating system.
Secure bios and disable usb booting.
If you are using a cloud server then your neighbor systems might not be as friendly as the ones in your own home network.
What is system hardening.
Linux server hardening security tips and checklist.
Most people assume that linux is already secure and that s a false assumption.
Maintain user accounts and password policy.
Read more in the article below which was originally published here on networkworld.
Disable root console access.
Encrypt transmitted data whenever possible with password or using keys certificates.
You should install aide software before connecting the system to a network if possible.