Alex Mestiashvili wrote:
Jean-Paul Lacquement wrote:+ to all , imho is good idea to use some kernel patches like grsecurity http://grsecurity.org/ .Hi,I plan to secure my Debian stable (or testing if you say it's better) server.I already did the followings: - installed chkrootkit - installed fail2ban (for ssh and proftpd) - allow only one user (not root) via /etc/ssh/sshd_config, only ssh v2 The followings daemon are installed : - proftpd - apache2 - sshWould you please list me which packages to install and which rules to apply ?Many thanks, Jean-Paul
and also great idea to have remote log server .