| SERVER HARDENING / SECURITY SERVICES : Linux / FreeBSD |
There is a general misconception out there that a linux/bsd system is a secured system from the start. This is a myth. All opterating systems come with default settings, and Linux/BSD based systems are no different and depending on the flavour, come with a lot of lax permission system enabled. Anyone intent on compromising your server can easily find out passively what operating system, and server software including specific version information. It is only a little jump from there to finding out what known vulnerbilities exist for those systems and exploit them. This information is available on the internet free of charge to anyone and you can be sure anyone seriously wanting to harm you or your business presence online will see these information.
Our techs are able harden default system settings, permissions, modify the parameteres under which many of services run on the server, and remove un-needed services that, at best use precious server resources and at worse could be a security breach. We also install protective services and put in place monitoring that make it very difficult to compromise the servers. Some of the things we do routinely do are ( this is NOT COMPREHENSIVE ): |
- Core Software Upgrade / Kernel Upgrade - with appropriate security patches
- ( Basic ) Installation of Adaptive Software Firewall
- DoS/DDoS hardening with Kernel Tuning
- ( Basic ) Password Failure Login notification with brute force detectors
- ( Basic ) Disabling/Removing insecure/un-needed services
- Track down Spammers
- Track down resource hog sites
- Audit logfiles
- Scan for rootkits
- ( Basic ) Remove Default System Users
- Install protective services : SNORT/ACID/MRTG/TripWire/AIDE - etc.
- Install Process Monitor / System Integrity Monitor
- ( Basic ) Secure Path Protection
- Root Suid bit removal from system binaries that require it not.
- Harden APACHE defaults and install security modules
- ( Basic ) Secure Partition Mount Options
- Anti Spam / Anti Virus Protection ( Exim / PostFix / Qmail )
- AND MANY MORE ...
|
ADVANCED
BASIC
|
| |
| SERVER HARDENING / SECURITY SERVICES : Windows 2000/2003 |
Windows servers have a bad reputation for being insecure. In a lot of cases this is a situation born out of misconfiguring or deploying the server to the world without adequately taking precautions against known vulnerbilities and default system settings. Our security package for Windows 2000/2003 is designed to be a good one time improvement on the server. However for best results this should be deployed with our monthly management package.
|
|
| |
| OTHER REQUESTED TASKS |
| LINUX Kernel Upgrade with GrSecurity ( ** Recommended ) / OpenWall |
|
| LINUX/BSD Kernel Upgrade |
|
| LINUX/BSD General Security Admin Task ( per hour ) |
|
| LINUX/BSD Install and configure Firewall |
|
| LINUX/BSD Recover Hacked Server / Restore & Audit / Restore from Slave drive |
|
| WIN General Security Task ( per hour ) |
|
| DO NOT SEE SOMETHING ON THE LIST ? EMAIL : SALES |
|
| |
| Please note that all these services mentioned in the list and on the page are FREE with our monthly management packages for subscribed servers. |
| |
|