Skip to content

Latest commit

 

History

History
74 lines (50 loc) · 1.38 KB

File metadata and controls

74 lines (50 loc) · 1.38 KB

Security & Monitoring Tools

A focused baseline for hardening, auditing, and visibility on a developer workstation.

Intrusion detection: Fail2ban

What it does: parses auth logs and blocks repeated offenders.

Useful checks:

sudo systemctl start fail2ban
sudo fail2ban-client status

System auditing: Lynis

What it does: runs a comprehensive host security audit and suggests remediations.

Install & run:

sudo apt install lynis -y
sudo lynis audit system

Visibility & triage

Failed logins (one‑off):

sudo cat /var/log/auth.log | grep "Failed"

Live auth log:

sudo tail -f /var/log/auth.log

Processes:

htop

Network listeners:

sudo apt install net-tools
sudo netstat -tulpn

Account isolation (browsers)

Create separate profiles for work, freelancing, and banking to isolate sessions and cookies.

Firefox Profile Manager:

firefox -P

Recommended baseline

Area Tool/Setting
Updates apt update && apt upgrade
Firewall ufw
IDS fail2ban
Auditing lynis
Monitoring htop, netstat, logs
VPN ProtonVPN / Mullvad
2FA Authenticator app