View previous topic :: View next topic |
Author |
Message |
InsaneHamster Guru
Joined: 02 May 2003 Posts: 435
|
Posted: Thu Feb 23, 2006 12:49 am Post subject: first time security configuration for webserver |
|
|
hi im first time configuring a server
i want to log EVERYTHING cause im on a little kids chat site and the basterds hate me and always attempt to hack me
so im just wondering whats the best way to go about it
iptables for one ?
then like mysql apache2 and those online snort scanners in php for two?
anything else
im a n00b clearly and i want to make sure its as secure as possible
at this point i will use a mail client (right now i got ssmtp gentoo)
and this mail client will send all messages to my blackberry
what would u recommend as the best mail client for a webserver with this type of forwarding
thank u |
|
Back to top |
|
|
kamagurka Veteran
Joined: 25 Jan 2004 Posts: 1026 Location: /germany/munich
|
Posted: Thu Feb 23, 2006 12:11 pm Post subject: |
|
|
I would emerge shorewall, which is a nice but powerful frontend to iptables (which is just brainfuck to configure). The default logging is from shorewall is a lot of output, and setting it to verbose (logging everything) would flood the fuck out of your poor blackberry. I still need to see the kiddy who can get past a reasonbly configured iptables on a *nix box, though.
If you want to go all out, look into honeypots and tripwire. _________________ If you loved me, you'd all kill yourselves today.
--Spider Jerusalem, the Word |
|
Back to top |
|
|
InsaneHamster Guru
Joined: 02 May 2003 Posts: 435
|
Posted: Thu Feb 23, 2006 2:42 pm Post subject: |
|
|
kamagurka wrote: | I would emerge shorewall, which is a nice but powerful frontend to iptables (which is just brainfuck to configure). The default logging is from shorewall is a lot of output, and setting it to verbose (logging everything) would flood the fuck out of your poor blackberry. I still need to see the kiddy who can get past a reasonbly configured iptables on a *nix box, though.
If you want to go all out, look into honeypots and tripwire. |
that is an incredible answer
im all over it
thank you my friend
|
|
Back to top |
|
|
think4urs11 Bodhisattva
Joined: 25 Jun 2003 Posts: 6659 Location: above the cloud
|
|
Back to top |
|
|
InsaneHamster Guru
Joined: 02 May 2003 Posts: 435
|
Posted: Thu Feb 23, 2006 3:30 pm Post subject: |
|
|
thank you also
cosidering im stuck on shorewall complaining about Policy Match: Not Available and the patches are failing lol |
|
Back to top |
|
|
|