MemoryRecalls
Security
- check and apply software updates
- cf man:cron-apt
- in particular server with unfiltered open ports
- follow the related mailing lists
- failed access
auth.log- cf man:iptables (with
) and man:fail2ban
- cf man:iptables (with
- check against passwords stored in plain text
- using
man:find / -...,grep /dev/memeven search engines- in particular in specific locations (users storage, logs, backups, ...)
- periodically generate new passwords
- maintaining independence between accounts (locally and remotely too)
- using
- save logs remotely and check for integrity
See also
Motivated by
- early January 2012 incident, cf Projetautonomieenergetique?action=diff#diff1325526379
CONTENT
CONTACT
UPDATES
LAST TWEET

RSS for this page only


