Optima
Mar 4 2003, 03:37 PM
I have been hacked during the weekend and my server has been restored.
I am runing plesk .. what do you advise I do to secure the server. from hackers.
I am runing PLESK dedicated server.
What software, firewall or patches should i install names and direct links would be apreciated.
I have never put any security on the server before and I was wondering what everyone is running and recommends..
Thanks for your help
Optima
Mar 4 2003, 10:07 PM
no one protects their server.. pls someone guide me as to what i should install ..
micxz
Mar 4 2003, 10:24 PM
I'm runing plesk as well.
1. Install firewall (pmfirewall is a good one for beginners)
2. Configure firewall
3. Turn off all services you don't use via /etc/init.d/ (turn off telnet)
4. Check for open mail relays!
5. Apply all Patches for that particular linux distribution
6. Install "CHKROOTKIT" (
http://forum.rackshack.net/showthread.php?...=&threadid=3755)
Hope this helps;
Optima
Mar 5 2003, 11:19 AM
Thank you ..
i will have someone else install the firewall so making it easy doesnt matter to me.. I want the best.. what is the best one?
micxz
Mar 5 2003, 02:16 PM
IPCHAINS are compiled into the kernal and "pmfirewall" is just a set of scripts to help you use/set these "IPCHAINS" module correctly.
So pmfirewall will do all the firewalling you need.
Optima
Mar 5 2003, 03:07 PM
I installed "Kiss my firewall" any comments?
micxz
Mar 5 2003, 03:47 PM
Sounds Good, does that use IPCHAINS or IPTABLES?
Optima
Mar 5 2003, 03:51 PM
ip tables..
also i am using ssh and turned of telnet
how can i find if there is any new patches for my linux?
"Check for open mail relays!" how would I do this?
what other services can i turn off?
micxz
Mar 5 2003, 04:18 PM
RELAY test:
http://relays.osirusoft.com/
&
http://www.ordb.org/submit/
SSH Rules

Telnet
And turn off ALL services your not using!!
micxz
Mar 5 2003, 04:20 PM
Oh patches;
Do a search on this forum for howto register your box for the RHN "Red Hat Network".
You can join from within the shell in the OS (redhat).
But be careful not to update certain modules that may conflict with Plesk;
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please
click here.