mirror of
https://github.com/trimstray/the-practical-linux-hardening-guide.git
synced 2025-12-06 01:02:49 +01:00
68cb16049213fe832ee245e1f806f5ee2c380def
The Practical Linux Hardening Guide
"Did you know all your doors were locked?" - Riddick (The Chronicles of Riddick)
Created by
trimstray and
contributors
💥 Work in progress, just a moment... First, I update a Table Of Content.
Table Of Content
- Checklist - document the host information
- Pre install tasks
- Post install tasks
- Disk partitions
- Keep system updated
- Package management
- Netfilter ruleset
- TCP wrapper
- Users and groups
- System path permissions
- PAM module
- Limits
- Shadow passwords
- Linux kernel hardening
- Kernel parameters
- Remove unused modules
- Secure shared memory
- IRQ balance
- Disable compilers
- Email notifications
- Backups
- External devices
- Tools
- Hardening Services
- Deployment
- Testing configuration
- External resources
Description
This guide details creating a secure Linux production system. OpenSCAP (C2S/CIS, STIG).
auditcentoschecklistcisguidehardeninglinuxlinux-hardeninglinux-securitymanualopenscappci-dssredhat-enterprise-linuxsecurity
Readme
658 KiB
