[olug] Building a web server for both security and performance in 2011

Barry Von Ahsen barry at vonahsen.com
Wed Aug 31 23:36:02 UTC 2011


generally I:

* don't load/remove modules I don't need
* remove the dumb default .conf files my distro adds (centos/rhel)
* run mod_security
* run php-suhosin

in theory, also run selinux/apparmor, but it's usually been more trouble 
than it's worth

-barry




On 08/30/2011 04:51 PM, T. J. Brumfield wrote:
> I've tried to keep up on best practices over the years, but I'm always
> wondering if there are tips and tricks out there that I'm not aware of,
> especially when it comes to securing a web server.
>
> If you were putting together a standard for a web Linux server today, what
> would you recommend?
>
> -- T. J. Brumfield
> _______________________________________________
> OLUG mailing list
> OLUG at olug.org
> https://lists.olug.org/mailman/listinfo/olug




More information about the OLUG mailing list