[CentOS] securing centos 5.2 for public usage

2010-09-18 Thread Roland RoLaNd
Dear all, i Just finished setting up an apache service on a centos 5.2 VM machine. i need to secure this machine as i'm soon to be setting a public IP over it where i'd be opening up the following services: 1. http 2. https 3. ssh Things i've done so far: 1. stopped root ssh access in

Re: [CentOS] securing centos 5.2 for public usage

2010-09-18 Thread Alexander Dalloz
Am 18.09.2010 12:08, schrieb Roland RoLaNd: Dear all, i Just finished setting up an apache service on a centos 5.2 VM machine. i need to secure this machine as i'm soon to be setting a public IP over it where i'd be opening up the following services: 1. http 2. https 3. ssh

Re: [CentOS] securing centos 5.2 for public usage

2010-09-18 Thread RedShift
On 09/18/10 12:08, Roland RoLaNd wrote: Dear all, i Just finished setting up an apache service on a centos 5.2 VM machine. i need to secure this machine as i'm soon to be setting a public IP over it where i'd be opening up the following services: 1. http 2. https 3. ssh Things

Re: [CentOS] securing centos 5.2 for public usage

2010-09-18 Thread Eero Volotinen
2010/9/18 Roland RoLaNd r_o_l_a_...@hotmail.com: Dear all, i Just finished setting up an apache service on a centos 5.2 VM machine. i need to secure this machine as i'm soon to be setting a public IP over it where i'd be opening up the following services: 1. http 2. https 3. ssh

Re: [CentOS] securing centos 5.2 for public usage

2010-09-18 Thread Tom Bishop
+1 for bastille... On 9/18/10, m.r...@5-cent.us m.r...@5-cent.us wrote: Roland RoLaNd wrote: i Just finished setting up an apache service on a centos 5.2 VM machine. i need to secure this machine as i'm soon to be setting a public IP over it where i'd be opening up the following services:

Re: [CentOS] securing centos 5.2 for public usage

2010-09-18 Thread John R. Dennison
On Sat, Sep 18, 2010 at 12:26:04PM -0400, m.r...@5-cent.us wrote: Well, you could set selinux enforcing (AUGH!!!). Another possibility is run Bastille Linux on it to harden it. I really like the latter - I used it to harden an old system of mine, first Redhat 7.x, then Redhat 9 (yes, this is