GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    Iris (iris_meredith@mastodon.social)'s status on Sunday, 26-Jan-2025 15:31:02 JST Iris Iris

    Sysadmins of Mastodon, please share your knowledge with me! I have a Hetzner server set up that's running my website on a secondary domain. Before I fully make the transition, I want to make sure security is entirely correct. I have disabled root login and am only allowing access to the user account via SSH, I have a firewall up, and everything is updated. The internal code I've written should also be up to scratch.

    What am I missing? I really want this to be as airtight as it can be.

    In conversation about 5 months ago from mastodon.social permalink
    • Embed this notice
      Rich Felker (dalias@hachyderm.io)'s status on Sunday, 26-Jan-2025 15:31:02 JST Rich Felker Rich Felker
      in reply to

      @iris_meredith Make sure all the alternative authentication stuff (kerberos, pam, etc) is disabled in your sshd config. That's where all the preauth rce exploits have historically happened.

      In conversation about 5 months ago permalink

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.