mirror of
https://github.com/trimstray/the-practical-linux-hardening-guide.git
synced 2025-12-06 17:22:51 +01:00
678fb1829e0989aac9fa9fff42e106060eed25ab
The Practical Linux Hardening Guide
"Did you know all your doors were locked?" - Riddick (The Chronicles of Riddick)
Created by
trimstray and
contributors
💥 Work in progress, just a moment... First, I update a Table Of Content.
Table Of Content
- Checklist - document the host information
- Pre install tasks
- Post install tasks
- Keep system updated
- Package management
- Netfilter ruleset
- TCP wrapper
- Users and groups
- System path permissions
- Disk partitions
- PAM module
- Limits
- Shadow passwords
- Linux kernel hardening
- Kernel parameters
- Remove unused modules
- Secure shared memory
- IRQ balance
- Disable compilers
- Email notifications
- Backups
- Tools
- Hardening Services
- Testing configuration
- External resources
Description
This guide details creating a secure Linux production system. OpenSCAP (C2S/CIS, STIG).
auditcentoschecklistcisguidehardeninglinuxlinux-hardeninglinux-securitymanualopenscappci-dssredhat-enterprise-linuxsecurity
Readme
658 KiB
