This is an old revision of the document!
Default Deny for all incoming traffic
DNS-based filtering
IPTables
Network segmentation
Install Fail2Ban
Block unnecessary outgoing ports