CHAPTER 22Understanding Basic Linux Security
At its most basic level, securing an Ubuntu system starts with physical security, data security, user accounts protection, and software security. Over time, you need to monitor that system to make sure it remains safe.
Some of the questions that you need to ask yourself are as follows:
- Who can get to the system physically?
- Are backup copies of data being made in case of disaster?
- How well are user accounts secured?
- Does the software come from a secure Ubuntu distribution, and are security patches up to date?
- Have you been monitoring the system to make sure that it hasn’t been cracked or corrupted?
This chapter starts by covering basic Ubuntu security topics. Subsequent chapters go deeper into advanced security mechanisms.
Implementing Physical Security
A lock on the computer server room door is the first line of defense. Although a very simple concept, it’s often ignored. Access to the physical server means access to all of the data that it contains. No security software can fully protect your systems if someone with malicious intent has physical access to the Linux server.
Basic server room physical security includes items such as these:
- A lock or security alarm on the server room door
- Access controls that allow only authorized access and that identify who accessed the room and when the access occurred, such as a card key entry ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access