I will harden your linux server security with cis checks
Linux System Administrator
Informazioni su questo servizio
Your Linux server is exposed to the internet 24/7. I find and fix the gaps
systematically, with an automated scanner running 79+ checks based on CIS
Benchmarks and BSI IT baseline guidance.
WHAT YOU RECEIVE
Automated security scan: SSH config, kernel parameters, firewall, audit
logging, file permissions, services, update policy
Clear findings report severity-ranked, no noise
Safe, idempotent hardening (changes are reversible and documented)
Before/after compliance report you can show your auditor
Everything runs on YOUR server via a temporary SSH key no data leaves
your system, no cloud involved
HOW IT WORKS
1. You provide SSH access (I send exact instructions 5 minutes to set up)
2. I run baseline scan apply hardening verify with second scan
3. You receive the report + a summary of every change made
WHY ME
Datacenter & infrastructure engineer. I harden production servers daily and
maintain my own open-source Ansible hardening collection. No upselling, no
fear-mongering you get a documented, verifiable result.
Message me before ordering if you have a non-standard setup (custom ports,
RHEL/SLES, containers) I'll confirm feasibility first.
Sistema operativo:
Linux
•
Unix
FAQ
Will the hardening break my running services?
No. The hardening is idempotent and conservative — I harden SSH, kernel, logging and firewall without touching your applications. Every change is documented and reversible. I recommend a snapshot/backup before we start (I'll remind you).
What access do you need?
A temporary SSH key with sudo rights. I send you copy-paste instructions. You can (and should) remove the key after delivery.
Which distributions are supported?
Debian 11/12/13 and Ubuntu 22.04/24.04 out of the box. RHEL/SLES on request via custom offer.
Is this a legal NIS2 certification?
No — certification is issued by auditors, not by a freelancer. What you get is technical hardening aligned with recognized benchmarks (CIS, BSI baseline) plus a report that supports your NIS2 documentation effort.
Is my data safe?
Yes. All work happens directly on your server. I don't copy logs, configs or data anywhere. The report is generated locally and sent to you through Fiverr.
What if I already use fail2ban / a firewall?
Perfect — the scan detects existing protections and hardens around them instead of duplicating. Mention it in your requirements.

