Hacker News new | ask | show | jobs
by errcorrectcode 1659 days ago
Naïve, black-&-white, over-simplified, amateurish advice.

Security measures to deploy depend on the risk level involved, e.g., potential costs of being hacked.

Measures like SELinux, grsec, fwknop, snort, IDS (tripwire or Samhain), HSMs, hw entropy sources, split SSH/TLS, and microservices compartmentalized into VM containers rather than Docker have their place.