Simple but Effective Server Hardening

Kyle Rankin

VP of Engineering Operations

Final, Inc.


email: kyle@getfinal.com

twitter: @kylerankin


https://greenfly.org/talks/security/simple_hardening.html

Agenda

Introduction

Classic Hardening

Security Best Practices

What to Avoid

SSH Server

SSH Client

SSH 2FA

SSH 2FA Continued

Root and Sudo

Reuse Puppet Certs

Simple Cloud Hardening

General Tips

Questions?

Additional Resources