<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Security on 1Stop</title><link>https://blogs.rameskum.com/tags/security/</link><description>Recent content in Security on 1Stop</description><image><title>1Stop</title><url>https://blogs.rameskum.com/images/og-default.png</url><link>https://blogs.rameskum.com/images/og-default.png</link></image><generator>Hugo</generator><language>en-us</language><lastBuildDate>Sun, 20 Sep 2026 15:05:00 -0400</lastBuildDate><atom:link href="https://blogs.rameskum.com/tags/security/index.xml" rel="self" type="application/rss+xml"/><item><title>New Linux Server? Do These 9 Things Before Anything Else</title><link>https://blogs.rameskum.com/posts/linux-server-setup/</link><pubDate>Sun, 20 Sep 2026 15:05:00 -0400</pubDate><guid>https://blogs.rameskum.com/posts/linux-server-setup/</guid><description>The minimum-viable hardening for a fresh Ubuntu or Debian server: system updates, a non-root user, SSH key login with password auth disabled, UFW with deny-by-default rules, SSH login logging, essential tools (git, fzf, curl, htop, fail2ban), git config, and Docker — in the right order so you never lock yourself out.</description></item></channel></rss>