> For the complete documentation index, see [llms.txt](https://wiki.songer.pro/interviewing/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://wiki.songer.pro/interviewing/security-domains-and-technical-aptitude/general/questions-with-steps/what-are-the-steps-when-securing-a-linux-server.md).

# What are the steps when securing a Linux server?

<details>

<summary>Install and configure a firewall:</summary>

Install and configure a firewall to protect the server from external threats.

</details>

<details>

<summary>Harden SSH</summary>

Harden the SSH protocol by disabling root login and changing the default port.

</details>

<details>

<summary>Install and configure an intrusion detection system: </summary>

Install and configure an intrusion detection system to monitor the server for malicious activities.

</details>

<details>

<summary>Lock down services</summary>

Disable services that are not needed and remove any unnecessary accounts.

</details>

<details>

<summary>Perform regular security scans</summary>

Perform regular security scans to check for vulnerabilities in the system.

</details>

<details>

<summary>Patch and update</summary>

Ensure that the system is up-to-date with the latest security patches and updates.

</details>

<details>

<summary>Monitor logs</summary>

Monitor log files for suspicious activity.

</details>

<details>

<summary>Backup regularly</summary>

Perform regular backups of the system in case of an emergency.

</details>
