کد:
Check /tmp is mounted as a filesystem : WARNING /tmp should be mounted as a separate filesystem with the noexec,nosuid options set
کد:
Check /etc/cron.daily/logrotate for /tmp noexec workaround : WARNING Due to a bug in logrotate if /tmp is mounted with the noexec option, you need to have logrotate use a different temporary directory. If you don't do this syslog may not restart correctly and will write to the wrong (older) log files. See here for a way to do this
کد:
Check /var/tmp is mounted as a filesystem : WARNING /var/tmp should either be symlinked to /tmp or mounted as a filesystem
کد:
Check for cxs : WARNING You should consider using cxs to scan web script and ftp uploads and user accounts for exploits uploaded to the server
کد:
Check for kernel logger : WARNING syslogd appears to be running, but not klogd which logs kernel firewall messages to syslog. You should ensure that klogd is running
کد:
Check SSH on non-standard port : WARNING You should consider moving SSH to a non-standard port [currently:22] to evade basic SSH port scans. Don't forget to open the port in the firewall first!
کد:
Check SSH PasswordAuthentication : WARNING For ultimate SSH security, you should consider disabling PasswordAuthentication and only allow access using PubkeyAuthentication
کد:
Check apache for FrontPage : WARNING Microsoft Frontpage Extensions were EOL in 2006 and there is no support for bugs or security issues. For this reason, it should be considered a security risk to continue using them. You should rebuild apache through easyapache and deselect the option to build them
کد:
Check php for ini_set disabledWARNINGYou should consider adding ini_set to the disable_functions in the PHP configuration as this setting allows PHP scripts to override global security and performance settings for PHP scripts. Adding ini_set can break PHP scripts and commenting out any use of ini_set in such scripts is advised
کد:
Check Accounts that can access a cPanel user account : WARNING You should consider setting this option to "user" after use. WHM > Tweak Settings > Accounts that can access a cPanel user account
کد:
Check nameservers : WARNING At least one of the configured nameservers:NS1.......
NS2....... should be located in a topologically and geographically dispersed location on the Internet - See RFC 2182 (Section 3.1
)
زیاده فکر کنم