{"id":1321,"date":"2016-01-25T12:55:59","date_gmt":"2016-01-25T17:55:59","guid":{"rendered":"http:\/\/www.serverpronto.com\/spu\/?p=1321"},"modified":"2018-06-29T15:29:19","modified_gmt":"2018-06-29T20:29:19","slug":"a-simple-4-step-guide-to-increase-a-servers-physical-security","status":"publish","type":"post","link":"https:\/\/www.serverpronto.com\/spu\/2016\/01\/a-simple-4-step-guide-to-increase-a-servers-physical-security\/","title":{"rendered":"Step Guide to Increase Server Security"},"content":{"rendered":"<p>Many jump straight to software vulnerabilities, but a server security\u00c2\u00a0still needs to be given high priority and importance. The best way to ensure a server is physically secure is to choose a reputable and secure host like <a href=\"https:\/\/www.serverpronto.com\/\">ServerPronto<\/a>, but there are some steps to take if you want to create an even safer server hosting environment.<\/p>\n<p><!--more--><\/p>\n<h3>1. Ensure Your Server is in a Secure Datacenter<\/h3>\n<p>Your organization or business&#8217;s server should be in a data center that only allows authorized users and staff. Ideally, the data center will have 24\/7 video camera monitoring and restricted access points.<\/p>\n<h3>2. Disable booting from External Devices in BIOS<\/h3>\n<p>You will want to configure your BIOS to disable booting from CDs, DVDs. external devices, floppy drives, USBs, etc. This can be done in the boot menu.<\/p>\n<h3>3. Enable BIOS Password<\/h3>\n<p>Different BIOS interfaces and their supported passwords will vary, but in general, there are 3 passwords you can use to prevent someone from having unauthorized access to your server: Supervisor password, user password, and HDD password. if all the options are supported on your server, you can use supervisor password to prevent BIOS changes, user password to prevent unauthorized access to the server&#8217;s OS, and HDD password to prevent access to the hard disk and its contents (It&#8217;s almost as effective as encrypting the hard drive).<\/p>\n<h3>4. Password protect GRUB Boot Loader<\/h3>\n<p>By default, many systems do not have GRUB secured with a password. When looking to increase your Linux server&#8217;s security you can add a password line to your grub.conf file. You should be able to find the file at\u00c2\u00a0\/boot\/grub\/grub.conf<\/p>\n<p>When you find the file, add the following line for a password.<\/p>\n<pre>$ cat \/etc\/grub.conf\r\ndefault=0\r\ntimeout=15\r\npassword GrbPwd4SysAd$\r\n..<\/pre>\n<p>After adding the password, you will want to encrypt the password so that it isn&#8217;t just plain text in the grub.conf file. You can do that by doing the following:<\/p>\n<pre># grub-crypt\r\nPassword: GrbPwd4SysAd$\r\nRetype password: GrbPwd4SysAd$\r\n^9^32kwzzX.\/3WISQ0C\r\n\r\nthen<\/pre>\n<pre>$ cat \/etc\/grub.conf\r\ndefault=0\r\ntimeout=15\r\npassword --encrypted ^9^32kwzzX.\/3WISQ0C\r\n..<\/pre>\n<h2>Let&#8217;s Review<\/h2>\n<p>So, you&#8217;ve ensured your server is in a secure datacenter, disabled booting from external devices, enabled a BIOS password and password protected GRUB Bootloader. What else can you do to ensure your server security is done as possible? Ensure you are with a high-quality host (like <a href=\"https:\/\/www.serverpronto.com\/\">ServerPronto<\/a>) and check out a revolutionary new form of web hosting called geo-redundant cloud hosting. Geo-redundant cloud hosting will prevent physical failure of a server due to hardware failure, an insecure hosting environment, and other factors. Learn more about <a href=\"https:\/\/www.serverpronto.com\/geo-redundant-cloud-hosting.php\">geo-redundant cloud hosting<\/a>.<\/p>\n<p><a href=\"https:\/\/www.serverpronto.com\">ServerPronto<\/a> offers the best affordable and secure hosting service in all dedicated server packages.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Many jump straight to software vulnerabilities, but a server security\u00c2\u00a0still needs to be given high priority and importance. The best way to ensure a server is physically secure is to choose a reputable and secure host like ServerPronto, but there are some steps to take if you want to create an even safer server hosting<\/p>\n","protected":false},"author":8,"featured_media":1322,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"image","meta":{"footnotes":""},"categories":[8],"tags":[123,17,112,42,22,116,39,18],"class_list":["post-1321","post","type-post","status-publish","format-image","has-post-thumbnail","category-dedicated-server-best-practices","tag-cloud","tag-dedicated-server","tag-hosting","tag-security","tag-server","tag-server-security-2","tag-serverpronto","tag-web-hosting","post_format-post-format-image"],"_links":{"self":[{"href":"https:\/\/www.serverpronto.com\/spu\/wp-json\/wp\/v2\/posts\/1321","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.serverpronto.com\/spu\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.serverpronto.com\/spu\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.serverpronto.com\/spu\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/www.serverpronto.com\/spu\/wp-json\/wp\/v2\/comments?post=1321"}],"version-history":[{"count":6,"href":"https:\/\/www.serverpronto.com\/spu\/wp-json\/wp\/v2\/posts\/1321\/revisions"}],"predecessor-version":[{"id":2307,"href":"https:\/\/www.serverpronto.com\/spu\/wp-json\/wp\/v2\/posts\/1321\/revisions\/2307"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.serverpronto.com\/spu\/wp-json\/wp\/v2\/media\/1322"}],"wp:attachment":[{"href":"https:\/\/www.serverpronto.com\/spu\/wp-json\/wp\/v2\/media?parent=1321"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.serverpronto.com\/spu\/wp-json\/wp\/v2\/categories?post=1321"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.serverpronto.com\/spu\/wp-json\/wp\/v2\/tags?post=1321"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}