peter-lawrey-admin / Chronicle-Accelerate

HFT meets Blockchain in Java platform
60 stars 14 forks source link

Check server security using the Nmap tool #30

Closed tonygonzalezuk closed 6 years ago

tonygonzalezuk commented 6 years ago

Check that the database and that ServerJVM are secure and not accessible from outside

We might want to run the Nmap tool and do a port scan and analyse security weaknesses

Only the ssh port and the Tomcat port (8080) should be available from outside

motoras commented 6 years ago

This is the current nmap report. I think it looks ok, the only open ports are http 80 and 8080 plus the ssh port.

Starting Nmap 7.70 ( ) at 2018-03-28 11:48 EEST Nmap scan report for ( Host is up (0.12s latency). Not shown: 997 filtered ports PORT STATE SERVICE 22/tcp open ssh 80/tcp open http 8080/tcp open http-proxy

Nmap done: 1 IP address (1 host up) scanned in 17.17 seconds