Hardening Guides¶
Baseline security configuration for operating systems, directory services, and network infrastructure — reducing attack surface before a device or service is exposed to a network or to users.
| Section | Description |
|---|---|
| Linux | Physical security, disk encryption, firewall, SSH remote access, user accounts, patching, and logging. |
| Microsoft Windows | Identity & access control, network management, application control, and storage/backup hardening. |
| Active Directory | Authentication hardening, least-privilege account tiering, Microsoft security baselines, and defenses against common AD attacks. |
| Network Devices | General hardening techniques, VPN hardening, router/switch/firewall hardening, and network monitoring tooling. |
| FortiSIEM | OS-level and network-level hardening for FortiSIEM Supervisor/Worker nodes. |