At a minimum, you're going to want to run a file monitoring program like Aide or Samhain. They won't prevent a break-in, but they will let you know what has changed if a break-in occurs. In addition to keeping your system fully patched, you're also going to want to keep any applications your serving through Apache patched. Usually applications are the security problems, not Apache itself.
Quote:
No critical/private data on the disk
|
That's nice, but you know what? Crackers don't care. It is the
machine they are usually after, not any data.
Head over to the security forum and start reading the articles stickied at the top. unSpawn has done a fantastic job of collecting relevant info on keeping your system safe.