step the first…
by LRN on Aug.15, 2008, under b5media
So all our new b5media servers are about to be handed off to me so I can start work on turning them into a super fast, merciless thresher of incoming requests. Standing up this sort of server arrangement is a first for me, since I inherited the one b5media uses now. This is at once daunting and highly exhilarating. 40 servers, where to start?
Well the first thing I know I want to do is secure the machines to a reasonable level. This means removing any unnecessary packages, making sure only required services are running on each of the servers. I’ve chosen to run Centos 5 on these machines, as I have the most experience in RedHat variants.
To that end, here’s a link to the Secure Centos project. It’s still a work in progress, and you’ll want to double check their suggestions and not follow blindly, but it’s a great place to start for ideas and methods for securing a new server in an unmanaged environment.
Well, off I go to survey my new domain, more to come!


Follow me on Twitter
August 18th, 2008 on 1:34 am
I heard from a number of sources that the 40 boxes are getting stood up. That rocks. Glad to see that moving forward.
September 9th, 2008 on 4:45 pm
Thanks Aaron! It was a lot of work packed into a much shorter period of time than I was planning on, as I was dealing with a ridiculously distributed hacking attempt on the LW side for 1 of the 2 weeks I had between the new servers being provisioned and our deadline with Logicworks. All worked out in the end, and I couldn’t be happier with our performance under the new infrastructure.