Author Topic: Help Hardening SRCDS server  (Read 2096 times)

0 Members and 1 Guest are viewing this topic.

Offline The Asian Aimbot

  • Jr. Member
  • **
  • Posts: 74
  • Karma: 2
  • Rise and shine, Mr. Freeman, rise... and shine...
    • Asian Domain GMod Sandbox Server
Help Hardening SRCDS server
« on: March 05, 2017, 02:46:30 PM »
I've followed a guide from Allied Modders on hardening my server, any other tips? Thanks! :D
The Asian Toaster man who escaped the Great Martian Coup of '69, hid in Beijing for 9 months, and was cast away by the FSM. Flew away w/ GoombasTasteGood and hid in Addis Ababa after fleeing to Botswana, then to Canada.

http://www.downloadmorewam.com

Offline JamminR

  • Ulysses Team Member
  • Hero Member
  • *****
  • Posts: 8096
  • Karma: 390
  • Sertafide Ulysses Jenius
    • Team Ulysses [ULib/ULX, other fine releases]
Re: Help Hardening SRCDS server
« Reply #1 on: March 05, 2017, 07:30:12 PM »
Link, so our community can review before making tips you may have already done?
"Though a program be but three lines long, someday it will have to be maintained." -- The Tao of Programming

Offline iViscosity

  • Respected Community Member
  • Hero Member
  • *****
  • Posts: 803
  • Karma: 58
Re: Help Hardening SRCDS server
« Reply #2 on: March 05, 2017, 08:34:47 PM »
https://wiki.alliedmods.net/Srcds_hardening

Since he didn't reply, I'd ASSUME this is what he's talking about. If not, please correct me but this is what I found after searching 'Allied Modders srcds hardening'
I'm iViscosity. I like gaming and programming. Need some help? Shoot me PM.

Offline MrPresident

  • Ulysses Team Member
  • Hero Member
  • *****
  • Posts: 2728
  • Karma: 430
    • |G4P| Gman4President
Re: Help Hardening SRCDS server
« Reply #3 on: March 05, 2017, 09:52:40 PM »
sv_allowupload 0
sv_allowdownload 0
sv_allowcslua 0

Don't give FTP or RCON access to ANYONE other than yourself. I don't care if you think you trust them. I've seen so many issues of "my co-owner did this" etc etc etc
Don't put your RCON password in your server.cfg file. Put it in your command line, or don't have rcon.

Don't use workshop addons.
Don't use addons at all.. (I know this isn't really realistic.. but just know that anything you didn't make yourself COULD potentially have a backdoor, so only use trusted/vetted addons)

Don't give admin access to anyone you don't trust explicitly.
Don't allow admins things like ulx ent or ulx rcon.

That's about it really. I can't think of anything else.

Offline The Asian Aimbot

  • Jr. Member
  • **
  • Posts: 74
  • Karma: 2
  • Rise and shine, Mr. Freeman, rise... and shine...
    • Asian Domain GMod Sandbox Server
Re: Help Hardening SRCDS server
« Reply #4 on: March 07, 2017, 05:06:29 PM »
Link, so our community can review before making tips you may have already done?
sv_allowupload 0
sv_allowdownload 0
sv_allowcslua 0

Don't give FTP or RCON access to ANYONE other than yourself. I don't care if you think you trust them. I've seen so many issues of "my co-owner did this" etc etc etc
Don't put your RCON password in your server.cfg file. Put it in your command line, or don't have rcon.

Don't use workshop addons.
Don't use addons at all.. (I know this isn't really realistic.. but just know that anything you didn't make yourself COULD potentially have a backdoor, so only use trusted/vetted addons)

Don't give admin access to anyone you don't trust explicitly.
Don't allow admins things like ulx ent or ulx rcon.

That's about it really. I can't think of anything else.

I've used this tutorial here: https://forums.alliedmods.net/showthread.php?t=189327
sv_allowupload 0
sv_allowdownload 0
sv_allowcslua 0

Don't give FTP or RCON access to ANYONE other than yourself. I don't care if you think you trust them. I've seen so many issues of "my co-owner did this" etc etc etc
Don't put your RCON password in your server.cfg file. Put it in your command line, or don't have rcon.

Don't use workshop addons.
Don't use addons at all.. (I know this isn't really realistic.. but just know that anything you didn't make yourself COULD potentially have a backdoor, so only use trusted/vetted addons)

Don't give admin access to anyone you don't trust explicitly.
Don't allow admins things like ulx ent or ulx rcon.

That's about it really. I can't think of anything else.
Thanks a lot!
The Asian Toaster man who escaped the Great Martian Coup of '69, hid in Beijing for 9 months, and was cast away by the FSM. Flew away w/ GoombasTasteGood and hid in Addis Ababa after fleeing to Botswana, then to Canada.

http://www.downloadmorewam.com