Debian系統的Java安全設置主要包括以下幾個方面:
sudo apt update
sudo apt upgrade
sudo apt get update
sudo apt get install defaultjdk
ufw
(Uncomplicated Firewall)限制入站和出站流量。sudo apt install ufw
sudo ufw enable
sudo ufw allow 80/tcp # 允許HTTP流量
sudo ufw allow 443/tcp # 允許HTTPS流量
/etc/pam.d/common-password
文件以實施密碼復雜度要求。sudo
代替直接登錄為root用戶。/etc/ssh/sshd_config
文件,禁用root遠程登錄:PermitRootLogin no
Logwatch
或 Fail2ban
自動監控并報告系統活動和安全事件。sudo systemctl list-units --type=service --state=running
sudo systemctl disable <service-name>
ssh-keygen -t rsa
ssh-copy-id <username>@<remote-host>