Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Need guidance with Linux server setup

Status
Not open for further replies.

jeffvb9

Technical User
Nov 14, 2002
44
US
Am new to Linux. Installing RH 8.0.

I want to set it up as a server with FTP access. Are their any really good links besides the actual redhat docs that explain the installation in good detail? I did actually install it last night with no problems but I want to make sure I did everything correctly. Any tips I should know? I know this has been asked a million times but I couldnt find any good posts.

Thanks in advance.
 
Well, im no expert in Linux server setups but i do have experience installing and configuring them. Well, you mentioned you have set it up already, so thats a good start. In my opinion, whats important now is to secure it.

Firstly, the services running. More services means more open ports. More open ports mean higher risks of being hacked into. Since you just want it to be an FTP server, then i suggest you close all other ports and services and just leave FTP running.

Secondly, user accounts for FTP. Make sure they are password protected and have good alphanumeric passwords.

Thirdly, which is think is most important, is to have a firewall. Your firewall should the first line of defense against hackers. Set it up so that it only allows incoming traffic on port 21 (FTP). Reject requests to other ports. If you are unfamiliar with firewalls, look up "rc.firewall". This is a common firewall script which has the most basic firewall rules and functions. Edit that a to suit your needs and it should protect your server.

Other than that, your FTP server should also be configured correctly. Do not allow anonymous logins, if you do allow it, be sure to restrict access to sensitve folder such as /etc/passwd. The folder for FTP uploads and downloads should have the proper resctriction to them, that is to restrict what users can do to the folders. Also restrict access to folders outside the specified FTP folder, so that remote users wont be looking into your other files.

Thats about all i can think of, security and configuration wise. Hope that gives you a rough idea on what you need to do.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top