A Bash script to automate the initial configuration and security hardening of Debian and Ubuntu servers.
-
Updated
Dec 10, 2025 - Shell
A Bash script to automate the initial configuration and security hardening of Debian and Ubuntu servers.
This script automates the scanning process using the OpenSCAP Security Guid to hardening Ubuntu systems, aligning with DISA-STIG compliance for Ubuntu 24.04. LTS minimum. It includes a range of security enhancements and configurations designed to strengthen the security posture of Ubuntu servers.
Basic Implementation about Security of Server and Application Server
One-command Ubuntu Server hardening to achieve cutting-edge security, with ZERO ongoing maintenance required.
Production-ready Ubuntu 24.04 security hardening with Dokploy. Automated SSH, firewall, DNS encryption, Docker & rollback. One-command install.
Linux system administration involves managing and maintaining Linux-based systems, including installing, configuring, securing, and troubleshooting various components. Given your strong background in IT, DevOps, and Linux, you might already be familiar with many aspects of system administration.
Web Server Config files
Scanner and analyzer for IPs in /var/log/auth.log
Automatically enables Cloudflare "Under Attack" mode when CPU usage is high and disables it when load returns to normal. Includes Telegram notifications.
Emergency security tools for Linux servers. Detect and remove crypto miners, backdoors, and malware.
fail2ban-ops is a collection of scripts designed to assist with the management, monitoring, and automation of Fail2Ban. These tools allow system administrators to easily check the status of Fail2Ban jails, unban IP addresses, and analyze blocked IP statistics in a firewall environment.
Secure CentOS/Rocky Linux server deployment featuring full disk encryption (LUKS), CIS-compliant hardening, intrusion prevention (Fail2Ban), system auditing (AuditD), automatic patching, and professional documentation.
This is a complete guide to securing your AWS servers for algorihtmic trading.
🔐 Secure SSH connection monitoring with Telegram notifications. Real-time alerts for SSH logins with user identification, IP tracking, and flexible notification settings. Features rate limiting, log rotation, and automated exclusions for CI/CD pipelines.
A one-click script to update and harden your Linux VPS or server. Supports: - Ubuntu - Debian - CentOS - AlmaLinux
🛡️ Automate Cloudflare "Under Attack Mode" activation based on CPU load to safeguard your sites during DDoS attacks and traffic spikes efficiently.
🔒 Secure your Ubuntu 24.04 LTS VPS and install Dokploy effortlessly with this all-in-one hardening script.
Add a description, image, and links to the server-security topic page so that developers can more easily learn about it.
To associate your repository with the server-security topic, visit your repo's landing page and select "manage topics."