This stands for Common Vulnerabilities and Exposures, and is a database containing lists of known exploits and vulnerabilities for a given platform, along with scope of the issue and mitigation steps (if known)
Livepatch
jail.conf, jail.local
Disable password authentication, disable root login, place it behind a firewall, change the default port, set up an allowed users or groups list
The principle of least privilege refers to giving users only the permissions to resources they absolutely need for their job, thus limiting the scope if they make a mistake
netstat -tulpn
cryptsetup
Custom graphs, hardware information, reports, or any other feature not mentioned
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month, and much more.