Re: Your Linux Desktop Security Setup
Network
DDWRT Router running recommended build - Remote Access disabled
DDWRT firewall turned on
OpenDNS with DNSCrypt
Realtime Protection
No AV running.
All ports closed - no need for a firewall.
System Hardening -- Ubuntu 12.04 Kernel 3.3.X Optimized for i5 CPUs
Pax + Grsecurity, custom kernel with custom settings.
As few programs installed as possible.
BIOS Password
Apparmor Enabled - Profiles for all programs
RBAC Enabled - System Wide, locked down user + root
Browser -- Chrome Dev
Seccomp Sandbox + Default Sandbox + AppArmor
Block 3rd Party Cookies
Built in malware protection
Default PDF reader -- no adobe necessary
Adblock Plus with DNT
HTTPS Everywhere
A "private" profile with more aggressive privacy/ data settings.
Chrome Privacy Profile
No cookies/ no data sent to Google
Block form validation
ScriptNo with strict settings
Chrome's cache is on a RAMDisk with low deny execute chmod.
Last edited by Hungry Man : April 30th, 2012 at 11:44 PM.
|