Saturday, December 30, 2006

New Redhat/Fedora/RHEL/CentOS build

My ToDo list for new Redhat-derivative builds:
  • start with minimal package and add
  • change font in /etc/sysconfig/i18n to lat0-08
  • append vga=1 phrase to /boot/grub/grub.conf kernel line
  • remove irda, isdn, pcmcia and similar packages
  • enable yum nightly
  • change httpd, sshd to use non-standard ports (update /etc/sysconfig/iptables accordingly)
  • harden sshd (e.g., no root login, protocol 2, strict modes)
  • revisit chkconfig to make sure services are started (or not) on reboots