How to secure a Linux host? [closed]

view full story

http://stackoverflow.com – I'm looking for suggestions around the notion of securing a Linux host in 2013... Historically I've used aspects of the following but it's been a while since I've thought about these matters and it may be time to shore up those defenses again! Securing a Linux host: Disable all insecure protocols (telnet, pop, etc) and restrict shell access to ssh2. Disable root remote log into the shell. Limit user accounts which can log into the shell. Limit the IPs which can log into a shell. Use sudo to run all your programs. Install a firewall such as iptables and drop connections from IPs that misbeh (HowTos)