Developer on Alibaba Coud: Build your first app with APIs, SDKs, and tutorials on the Alibaba Cloud. Read more ＞
By:kapil Sharma from Linux_month (a onine monthly Linux magzine)
This article describes how to make your Linux system reliable with basic security measures.
1. Bios Security
Be sure to set the BIOS password to prevent booting from the floppy disk by changing the boot sequence in the BIOS. This prevents others from trying to start your system with a special boot disk and prevents others from entering the BIOS to change the settings (such as allowing the floppy disk to boot).
2, LILO Security
Add the following three parameters to the "/etc/lilo.conf" file: Time-out,restricted,password. These three parameters allow your system to require password verification when you start Lilo.
Edit lilo.conf file (VI/ETC/LILO.COMF), if or change these three parameters:
Because the "/etc/lilo.conf" file contains a plaintext password, it is set to read as root.
[Root@kapil/]# chmod 600/etc/lilo.conf
Update the system so that modifications made to the "/etc/lilo.conf" file work.
Use the "chattr" command to make the "/etc/lilo.conf" file immutable.
[Root@kapil/]# chattr +i/etc/lilo.conf
This will prevent any changes to "/etc/lilo.conf" (other than or other reasons)
3, delete all the special accounts
You should delete all unused default user and group accounts (such as LP, Sync, Shutdown, halt, news, UUCP, operator, games, Gopher, etc.).
[Root@kapil/]# Userdel LP
To delete a group:
[Root@kapil/]# Groupdel LP
4, choose the correct password
You should also make the following modifications before choosing the correct password:
Modify password Length: The default password length is 5 bytes when you install Linux. But that's not enough, to set it to 8. Modify the minimum password length need to edit the Login.defs file (vi/etc/login.defs), put the following line
This article is an English version of an article which is originally in the Chinese language on aliyun.com and is provided for information purposes only. This website makes no representation or warranty of any kind, either expressed or implied, as to the accuracy, completeness ownership or
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
and provide relevant evidence. A staff member will contact you within 5 working days.