STOR2RRD on Hardened Linux?

I'm looking at using STOR2RRD to monitor a device that is in PCI compliant environment. Anything touching this environment must be hardened to reduce OS and application surface area.

The STOR2RRD/LPAR2RRD appliance allows ssh logins as root which is one major thing that would need to be disabled. Was there any effort to build the appliance with a minimal Linux? 

I'm assuming the best option would be to build a minimal linux host, follow steps for pre-reqs and install STOR2RRD. Is there any additional information available for such a minimal secure installation that avoids known pitfalls?

Thank you.

Comments

  • Hi,

    disable root loging if you want, it is standart CentOS 7 linux.
    There is installed only minimal set of packages necessary to run our services and some debug tools.
Sign In or Register to comment.