Answer the question
In order to leave comments, you need to log in
How to protect your dedicated server from hacking?
I recently purchased a dedicated server from hatzner. I learned how to install the system and configure it. But what about security? We need good advice on which ports are better to close right away, how to protect yourself from netscan abuse, and what roles and services it is better not to install. The server will be used to visit sites closed in Ukraine and download files from the cloud.
Correction: Windows Server R2 2012 is installed on the server
Answer the question
In order to leave comments, you need to log in
The basic set is simple:
- we close all ports, we open only those that are needed
- administrative access - via a non-standard port, with a kilometer password, and preferably without a password using a key
The rest depends on the operating system. The Google keyword is hardening: linux hardening, nginx hardening, etc.
Hatzner has a firewall in lk. There and close all access, except for your or not only IP. Eats IP must be fixed
Correction: Windows Server R2 2012 is installed on the server
what ports should be closed immediatelyWe close everything that is not necessary for the immediate operation of the server.
what roles and services are better not to installIt's better not to install crooked and obsolete services. The former may contain malicious code, while the latter may contain system exploits.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question