bk99.de entertain the web since 1997

iX workshop: securing Linux servers effectively and comprehensively

Summary

In 2025 heise advertised a five-day iX workshop on hardening Linux servers with trainer Florian Winkler of B1 Systems. Topics were encryption, securing network services, two-factor authentication, SELinux and AppArmor, as well as log analysis and intrusion detection. There was also an introduction to penetration testing and practical exercises via SSH in a training environment.

Ideas

  • Linux servers are increasingly the target of malware and attacks.
  • Hardening ranges from physical security to monitoring and intrusion detection.
  • Mandatory access control with SELinux or AppArmor limits compromised services.
  • Log analysis is a prerequisite for detecting break-ins at all.

Insights

  • Hardening is a bundle of measures, not a single setting.
  • Whoever attacks their own systems finds weaknesses before others do.

Facts

  • The dates were in August and December 2025, each as an online workshop.
  • Groups were limited to a maximum of twelve participants.

References

Critique

  • The text is a workshop announcement and itself conveys no concrete hardening steps.

Recommendations

  • Enable SELinux or AppArmor in enforcing mode for exposed services.
  • Set up central logging and alerting for security-relevant events.

Read the original article

Search the Web Archive