Create /etc/hosts.allow
Skills in this repository
CyberStrikeus/CyberStrike - Page 145
SkillsMP has collected 7,442 skills from CyberStrikeus/CyberStrike. Open a skill to review its source and details.
CyberStrikeus/CyberStrikeShowing 40 of 7,442 collected skills.
Verify Permissions on /etc/hosts.allow
Create /etc/hosts.deny
Verify Permissions on /etc/hosts.deny
Disable DCCP
Disable SCTP
Disable RDS
Disable TIPC
Deactivate Wireless Interfaces
Ensure Firewall is active
Verify that GPG keys are configured for package manager to ensure package integrity
Verify that AIDE file integrity checking tool is installed for filesystem monitoring
Verify that a bootloader password is set to prevent unauthorized boot parameter changes
Verify that core dumps are restricted to prevent information disclosure from memory dumps
Verify that XD/NX (Execute Disable/No Execute) CPU protection is enabled to prevent buffer overflow exploitation
Verify that prelink is disabled to prevent interference with AIDE integrity checking
Verify that SELinux policy is configured to meet or exceed the default targeted policy
Verify that no daemons are running unconfined outside of SELinux policy restrictions
Verify that GDM graphical login banner is configured with appropriate warning message
Verify that the xinetd super daemon is disabled when not required
Verify that echo inetd services are disabled to reduce attack surface
Verify that time inetd services are disabled to reduce attack surface
Verify that rsh, rlogin, and rexec inetd services are disabled
Verify that talk inetd services are disabled to reduce attack surface
Verify that telnet inetd service is disabled to prevent cleartext credential exposure
Verify that tftp inetd service is disabled to prevent unauthenticated file transfers
Verify that Apache HTTP server is disabled when not required
Verify that Samba SMB file sharing service is disabled when not required
Verify that SNMP server is disabled when not required
Verify that NIS (ypserv) server is disabled when not required
Verify that Avahi mDNS/DNS-SD daemon is disabled to reduce attack surface
Verify that NFS and RPC services are disabled when not required
Verify that BIND DNS server is disabled when not required
Verify that vsftpd FTP server is disabled when not required
Verify that the NIS client (ypbind) package is not installed
Verify that the rsh client package is not installed
Verify that the talk client package is not installed
Verify that the telnet client package is not installed
Verify that the LDAP client (ldap-utils) package is not installed
Verify that IP forwarding is disabled to prevent the system from acting as a router