Building the Gateway
Once the gateway hardware has been assembled, it is time to install the operating system and configure it to provide the necessary services. The installation should be as minimal as possible. Any unnecessary services and programs that are installed only increase the risk that one of the programs on the gateway may be vulnerable. Do not install the X Windows System or any of the optional applications.
It is important to install the development tools and the system source code. After installation, the kernel will be recompiled and the new versions of several services might need to be downloaded and compiled, so the development tools will be necessary.
Make the /var partition of decent size during
the drive setup. A couple hundred megabytes should be more than
sufficient. A gateway can generate many logs, and this is where they
will be stored.
If the installer for the distribution you are using has a firewall-configuration section (like the current RedHat installers), leave it unchanged for now. The firewall rules will be changed once the system is running and will be more complex than the basic configuration tool in the installer can generate.
Linux Kernel Configuration
The kernel configuration should be reviewed to remove unneeded support. Take out support for anything that won’t be needed for the hardware configuration of the gateway. The general process for doing this is described in Chapter 5 (see Section 5.2 and especially Section 5.2.2). Enable the optional ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access