Skip to content

Hardening Guides

Baseline security configuration for operating systems, directory services, and network infrastructure — reducing attack surface before a device or service is exposed to a network or to users.

Section Description
Linux Physical security, disk encryption, firewall, SSH remote access, user accounts, patching, and logging.
Microsoft Windows Identity & access control, network management, application control, and storage/backup hardening.
Active Directory Authentication hardening, least-privilege account tiering, Microsoft security baselines, and defenses against common AD attacks.
Network Devices General hardening techniques, VPN hardening, router/switch/firewall hardening, and network monitoring tooling.
FortiSIEM OS-level and network-level hardening for FortiSIEM Supervisor/Worker nodes.