Re: Security checklist for new Centos server?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]



M. Fioretti wrote:
> - install dovecot (not included in centos, IIRC) and other extra
>   packages you do need

dovecot is included in CentOS - so no need to get it from somewhere
else.

> - set up itables (what would the safest iptables script to do all and
>   only the services listed above?

Depends on from where you want to connect to your imap server. From
everywhere? And ssh? The same?

If you only run sshd, imap, postfix and apache I don't really see a need
for iptables. But you might want to restrict access to sshd to a few ip
addresses if you can.

> - what else?

Don't turn off SELinux.

Cheers,

Ralph

Attachment: pgp7nTs0goNuq.pgp
Description: PGP signature

_______________________________________________
CentOS mailing list
CentOS@xxxxxxxxxx
http://lists.centos.org/mailman/listinfo/centos

[Index of Archives]     [CentOS]     [CentOS Announce]     [CentOS Development]     [CentOS ARM Devel]     [CentOS Docs]     [CentOS Virtualization]     [Carrier Grade Linux]     [Linux Media]     [Asterisk]     [DCCP]     [Netdev]     [Xorg]     [Linux USB]
  Powered by Linux