Thursday, October 05, 2006

Management Tasks For Linux Web Hosting server

Limit compiler & fetch utilities access to root only
Correct folder permissions to prevent directory transversal
Disable Unused services
Update all server/control panel software
Harden host.conf
Harden SSH Security
Disable security risk php functions
Configure Anti-Virus Solution for Email
Modify and Maintain Mod_security for apache
Install and Maintain Mod_Evasive for apache
Install and Maintain APF (Advance Policy Firewall)
Install and Maintain BFD (Brute Force)
Install and Maintain PRM (Process Resource Monitor)
Install and Maintain SIM (System Integrity Monitor)
Maintain and Optimize Apache and MySQL
sysctl protection
syncookies protection
24/7 monitor on the following services http, https, imapd, pop3, ftp, and ssh.
Access to technicians as well as installation requirements
15 hour admin work per month
Secured /tmp /shm directories
Nobody / bad script watch
Spam watch
Datacenter reboot call in
0-day security watch and mailing lists
DDOS Mitigation and Target Determination
Logwatch
Rootkit scan nightly
MRTG Installation
Weekly security audits
Load watch and monitor every 1 minute for our technicians
Mysql Queries Check
Mysql Load / User determination
IP Blacklist Monitoring Main IP

No comments:

HOW TO: Secure and Optimize your VPS

SECURING CPANEL - WHM - AND ROOT on a VPS This will help but as mentioned in previous posts, with a VPS you do not have access to your kerna...