|
Item |
EgMix_Leve1 |
EgMix_Leve2 |
EgMix_Leve3 |
|
Price |
$20/server |
|
|
The
Advanced plan is recommended for total security. |
| |
|
General System
Security |
|
Remove os default users & groups
|
 |
 |
 |
|
Correct folder permissions to prevent
directory transversal |
 |
 |
 |
|
Remove uneeded operating system
packages |
 |
 |
 |
|
Update all server/control panel
software |
 |
 |
 |
|
Limit
compiler & fetch utilities access to root only |
|
 |
 |
|
Disable Unused services |
 |
 |
 |
|
Harden host.conf |
 |
 |
 |
Specific
Service Security |
|
Improve OpenSSH configuration to be
security oriented |
|
 |
 |
|
Disable
certain php functions (system,exec,shell_exec) |
 |
 |
 |
|
Configure
Anti-Spam solution for email |
|
 |
 |
|
Configure
Anti-Virus solution for email |
 |
 |
 |
|
Install and
configure Mod_security for apache |
|
 |
 |
|
Install and
configure Mod_dosevasive for apache |
 |
 |
 |
3rd
Party Software Installation |
|
Installation of APF (Advanced Policy
Firewall) |
 |
 |
 |
|
Installation of BFD (Brute Force
Protection) |
 |
 |
 |
|
Installation of PRM (Process Resource
Monitor) |
|
|
 |
|
Installation of SIM (System Integrity
monitor) |
 |
 |
 |
|
Installation of Chkrootkit (daily
reports will be sent) |
 |
 |
 |
|
Installation of Rkhunter (daily
reports will be sent) |
|
|
 |
Kernel &
Sysctl Based Security |
|
Upgrade
kernel to latest os release (add grsecurity or openwall - $10) |
|
 |
 |
|
Enforce LCAP limitations
|
 |
 |
 |
|
Disable IP Source Routing
|
 |
 |
 |
|
Disable ICMP Redirect Acceptance
|
 |
 |
 |
|
Enable IP Spoofing Protection
|
 |
 |
 |
|
Enable syncookie Protection
|
|
 |
 |
|
Enable misc. sysctl settings
|
|
 |
 |