Secure CentOS 7 Server
-
Can't provide direct links, but any organisation claiming to offer NSA proof data hosting, is normally closed fairly quickly OR they have been proven to be mole agencies by the Government acting as informants. Providing back door access.
-
@scottalanmiller and I were talking, and his thought is, if the NSA wants the data, they can get it.
So, now the question is can we keep DO from having access to the server/data?
-
@Aaron-Studer said:
So, now the question is can we keep DO from having access to the server/data?
Who/what is DO?
-
@Breffni-Potter said:
Who/what is DO?
Digital Ocean
-
I guess I'd be worried about.
Encrypt data on the drives? They can take a copy and eventually break it if they are really keen.
Encrypt data in transit? You'd need to worry about man in the middle attack, especially as they can put physical interceptors at the data centre.
Back door server login? You've had it. -
The OP made me chuckle...
-
A proper security bod might be able to suggest various options, but once an attacker has unlimited physical access to the server, you have had it.
-
@handsofqwerty said:
The OP made me chuckle...
And you still wonder why people don't like your comments.....?
-
@Aaron-Studer said:
@handsofqwerty said:
The OP made me chuckle...
And you still wonder why people don't like your comments.....?
If you think you can hide stuff from the NSA, as @Breffni-Potter said, good freaking luck. They were spying on every American and we had no idea until a consultant leaked the info. You think they can't get at your data if you encrypt your HDD, change the root password, and setup keys? Seriously?
-
Besides, I know you said you were doing it just for fun, but did you never consider that a post like this will red flag some places? If you're trying to figure out how to beat the NSA, ummm, you're going to lose that fight my friend.
-
@handsofqwerty - We all know that even visiting a website about the topic of Encryption will add you to a watch list. I'm sure @Aaron-Studer knows this.
The day we stop asking questions for fear of the man, is the day Big Brother has taken complete power.
-
AJ - I thought by changing your username that you were turning over a new leaf. Guess not.
-
@Breffni-Potter said:
@handsofqwerty - We all know that even visiting a website about the topic of Encryption will add you to a watch list. I'm sure @Aaron-Studer knows this.
The day we stop asking questions for fear of the man, is the day Big Brother has taken complete power.
No I know. I'm not saying we should fear it or not question it. I'm just saying that thinking we can beat them at this point seems kind of silly.
-
@Aaron-Studer said:
AJ - I thought by changing your username that you were turning over a new leaf. Guess not.
I have. I just don't see the whole purpose of the post. If it's for fun, why are you hosting it? Do something like this on your own hardware.
-
@handsofqwerty You my friend have no room to talk about pointless posts....
-
@Aaron-Studer said:
@handsofqwerty You my friend have no room to talk about pointless posts.........
Please stop turning this into an argument. I'm leaving this thread because nothing good will happen if I stay.
-
And this thread locks in...... 3..... 2..... 1.....
-
EDIT: ^ argument breaker -
Sounds like a bit of fun. Let us know when if you decide to go ahead... or not if you want to be super secret
-
We have a guideline for a secured host, be it Windows or Linux. On our stuff we deploy our images, we have processes for others. We don't have one for CentOS 7, mostly because we are not deploying it yet.