Hello folks! I am looking for some guidance or direction on how to make sure my “server” locked down as much as possible. I know there are several websites/guides out there but was hoping I could get someone to recommend some good ones to use that cover all the bases solidly.
There are just so much info out there, wading through looking for a solid guide when you ignorant is hazardous.
Server is running Mint and hosts my Plex/Radarr/Sonarr stack. Using a locally hosted reverse proxy for any outside connections.
This started as a project to learn linux, so things are a bit shaky on linux understanding but getting better. I used GPT assistance to lock it down to the best of my ability, making sure (or I think) that most obvious firewalls rules were setup…ect.
Thanks for your help :)


Get a ai agent, run it on your server as a un privileged user and ask it to do a security audit for you, delete the account after. If you want to get fancy make a new VM and give it root and ask it to probe your production host.
Everyone’s advice here is great, but you need to test your config and systems for gaps.