hardening Ubuntu 20.04 cloudron server
-
Do ya'll use any checklists to harden your servers like CIS? I have the CIS ubuntu linux hardening checklist and i'm wondering if any of ya'll have run it and if so is there anything in there thats not obvious which will break our cloudron server functionality?
-
By "CIS", I suppose you mean this?
-
@infogulch yes. the CIS benchmarks.
-
It seems https://downloads.cisecurity.org/#/ has the PDF to download. It's a fairly big document (~500 pages). @Mastadamus on Cloudron side, the main doc we have is https://docs.cloudron.io/security/
-
@girish Over the next month, I'm going to go line by line through that CIS benchmark and implement it then check for functionality. Would you be interested in that report? My thoughts are if its compatible with Cloudron functions, it may be something worthwhile to implement as part of the install script prior to installing the actual Cloudron core components?
-
@mastadamus that will be very useful, thanks!