iX workshop: securing Linux servers effectively and comprehensively
Summary
In 2025 heise advertised a five-day iX workshop on hardening Linux servers with trainer Florian Winkler of B1 Systems. Topics were encryption, securing network services, two-factor authentication, SELinux and AppArmor, as well as log analysis and intrusion detection. There was also an introduction to penetration testing and practical exercises via SSH in a training environment.
Ideas
- Linux servers are increasingly the target of malware and attacks.
- Hardening ranges from physical security to monitoring and intrusion detection.
- Mandatory access control with SELinux or AppArmor limits compromised services.
- Log analysis is a prerequisite for detecting break-ins at all.
Insights
- Hardening is a bundle of measures, not a single setting.
- Whoever attacks their own systems finds weaknesses before others do.
Facts
- The dates were in August and December 2025, each as an online workshop.
- Groups were limited to a maximum of twelve participants.
References
Critique
- The text is a workshop announcement and itself conveys no concrete hardening steps.
Recommendations
- Enable SELinux or AppArmor in enforcing mode for exposed services.
- Set up central logging and alerting for security-relevant events.
Links to the original source and the Web Archive open in a new tab.