ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Secure CentOS 7 Server

    IT Discussion
    9
    43
    7.9k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • handsofqwertyH
      handsofqwerty
      last edited by

      The OP made me chuckle...

      ? 1 Reply Last reply Reply Quote -1
      • Deleted74295D
        Deleted74295 Banned
        last edited by

        A proper security bod might be able to suggest various options, but once an attacker has unlimited physical access to the server, you have had it.

        1 Reply Last reply Reply Quote 1
        • ?
          A Former User @handsofqwerty
          last edited by

          @handsofqwerty said:

          The OP made me chuckle...

          And you still wonder why people don't like your comments.....?

          handsofqwertyH 1 Reply Last reply Reply Quote 0
          • handsofqwertyH
            handsofqwerty @A Former User
            last edited by

            @Aaron-Studer said:

            @handsofqwerty said:

            The OP made me chuckle...

            And you still wonder why people don't like your comments.....?

            If you think you can hide stuff from the NSA, as @Breffni-Potter said, good freaking luck. They were spying on every American and we had no idea until a consultant leaked the info. You think they can't get at your data if you encrypt your HDD, change the root password, and setup keys? Seriously?

            1 Reply Last reply Reply Quote -1
            • handsofqwertyH
              handsofqwerty
              last edited by

              Besides, I know you said you were doing it just for fun, but did you never consider that a post like this will red flag some places? If you're trying to figure out how to beat the NSA, ummm, you're going to lose that fight my friend.

              1 Reply Last reply Reply Quote -1
              • Deleted74295D
                Deleted74295 Banned
                last edited by

                @handsofqwerty - We all know that even visiting a website about the topic of Encryption will add you to a watch list. 🙂 I'm sure @Aaron-Studer knows this.

                The day we stop asking questions for fear of the man, is the day Big Brother has taken complete power.

                handsofqwertyH scottalanmillerS 2 Replies Last reply Reply Quote 1
                • ?
                  A Former User
                  last edited by

                  AJ - I thought by changing your username that you were turning over a new leaf. Guess not.

                  handsofqwertyH 1 Reply Last reply Reply Quote 0
                  • handsofqwertyH
                    handsofqwerty @Deleted74295
                    last edited by

                    @Breffni-Potter said:

                    @handsofqwerty - We all know that even visiting a website about the topic of Encryption will add you to a watch list. 🙂 I'm sure @Aaron-Studer knows this.

                    The day we stop asking questions for fear of the man, is the day Big Brother has taken complete power.

                    No I know. I'm not saying we should fear it or not question it. I'm just saying that thinking we can beat them at this point seems kind of silly.

                    1 Reply Last reply Reply Quote -1
                    • handsofqwertyH
                      handsofqwerty @A Former User
                      last edited by

                      @Aaron-Studer said:

                      AJ - I thought by changing your username that you were turning over a new leaf. Guess not.

                      I have. I just don't see the whole purpose of the post. If it's for fun, why are you hosting it? Do something like this on your own hardware.

                      ? scottalanmillerS 2 Replies Last reply Reply Quote -1
                      • ?
                        A Former User @handsofqwerty
                        last edited by A Former User

                        @handsofqwerty You my friend have no room to talk about pointless posts....

                        handsofqwertyH 1 Reply Last reply Reply Quote 0
                        • handsofqwertyH
                          handsofqwerty @A Former User
                          last edited by

                          @Aaron-Studer said:

                          @handsofqwerty You my friend have no room to talk about pointless posts.........

                          Please stop turning this into an argument. I'm leaving this thread because nothing good will happen if I stay.

                          1 Reply Last reply Reply Quote -1
                          • ?
                            A Former User
                            last edited by

                            And this thread locks in...... 3..... 2..... 1.....

                            1 Reply Last reply Reply Quote -1
                            • nadnerBN
                              nadnerB
                              last edited by nadnerB

                              invalid.jpg
                              EDIT: ^ argument breaker

                              1 Reply Last reply Reply Quote 1
                              • nadnerBN
                                nadnerB
                                last edited by

                                Sounds like a bit of fun. Let us know when if you decide to go ahead... or not if you want to be super secret 😛

                                1 Reply Last reply Reply Quote 1
                                • PSX_DefectorP
                                  PSX_Defector
                                  last edited by

                                  We have a guideline for a secured host, be it Windows or Linux. On our stuff we deploy our images, we have processes for others. We don't have one for CentOS 7, mostly because we are not deploying it yet.

                                  1 Reply Last reply Reply Quote 0
                                  • IRJI
                                    IRJ
                                    last edited by

                                    No shame whatsoever in wanting privacy. Privacy is a basic right. No citizen of their own country deserves to be spied on. In the last 15 years Americans and Europeans have decided to give up freedom for security. That is always a loss in my book. Especially when the so called "security" has done nothing to stop any type of attack. The odds of dying from any type of terror is less than being attacked by a shark.

                                    1 Reply Last reply Reply Quote 2
                                    • Deleted74295D
                                      Deleted74295 Banned
                                      last edited by

                                      @IRJ
                                      But how do we prove it when everything is wrapped up in secrecy?

                                      How do we know that a major landmark was saved by security, or 100s of people did not train due to a bombing on a train, we just don't know.

                                      dafyreD IRJI 2 Replies Last reply Reply Quote 1
                                      • dafyreD
                                        dafyre @Deleted74295
                                        last edited by dafyre

                                        @Breffni-Potter I dislike secrecy -- especially in the government... If the government is going to do something, at least be bold enough to tell the public about it... Even if it is after the fact. Otherwise it comes out as a "leak" around election time and detracts from the real issues that the American public is facing.

                                        scottalanmillerS ? 2 Replies Last reply Reply Quote 1
                                        • scottalanmillerS
                                          scottalanmiller @A Former User
                                          last edited by

                                          @Aaron-Studer said:

                                          My first thought was about securing the root login so that Digital Ocean could not login to my server. With a public SSH key, that seems pretty easy to do, but you have to remember that Digital Ocean has console so in theory could still get in.

                                          None of that protects against the host getting in at all. Remember, if they are going to break the law and hack your system, they will START by taking an image of your system and transporting it somewhere that you can't see. Then they have unlimited time to pull the filesystem apart. Honestly, this would be so simple that they would never even realize that you had passwords or keys. They'd have all of your data so easily that none of that would even slow them down.

                                          Only disk or data encryption, which also prevents your system from booting on its own, will keep them from being able to see everything, anytime they decide to do so.

                                          Remember the first rule of technology security - you have to trust your administrators. In this case DO is your admin. They have access.

                                          1 Reply Last reply Reply Quote 0
                                          • scottalanmillerS
                                            scottalanmiller @dafyre
                                            last edited by

                                            @dafyre said:

                                            @Breffni-Potter I dislike secrecy -- especially in the government... If the government is going to do something, at least be bold enough to tell the public about it... Even if it is after the fact. Otherwise it comes out as a "leak" around election time and detracts from the real issues that the American public is facing.

                                            It's because the government thinks that they can claim security by obscurity and, for the most part, they are correct. Normal people confuse obscurity for security.

                                            1 Reply Last reply Reply Quote 2
                                            • 1
                                            • 2
                                            • 3
                                            • 1 / 3
                                            • First post
                                              Last post