It scratches the surface of the most obvious stuff. I’d only add running apps in isolation (docker or adduser) and maybe fail2ban.

    • Bipta@kbin.social
      link
      fedilink
      arrow-up
      1
      arrow-down
      1
      ·
      2 years ago

      I think it’s mostly good advice. Certainly not comprehensive but this is securing servers we’re talking about.

      • NateSwift@beehaw.org
        link
        fedilink
        English
        arrow-up
        2
        ·
        2 years ago

        Explaining why something is bad advice is as important as saying it is. Otherwise it’s just a pissing match between two random people on the internet. Why also keeps people from making similar problems.