httpd.conf – Tune for lower memory utilization
httpd.conf – Add TraceEnable off
httpd.conf – SSLProtocol -ALL +SSLv3 +TLSv1
httpd.conf – SSLCipherSuite ALL:!aNULL:!ADH:!eNULL:!SSLv2:!LOW:!EXP:RC4+RSA:+HIGH:+MEDIUM
PHP.ini – expose_php off
/var/qmail/control/servercert.pem – add key
/var/qmail/control/tlsserverciphers – add ALL:!ADH:!LOW:!SSLv2:!EXP:+HIGH:+MEDIUM
/etc/courier-imap/pop3d-ssl – TLS_CIPHER_LIST=”ALL:!SSLv2:!ADH:!NULL:!EXPORT:!DES:!LOW:@STRENGTH”
/etc/courier-imap/imapd-ssl – TLS_CIPHER_LIST=”ALL:!SSLv2:!ADH:!NULL:!EXPORT:!DES:!LOW:@STRENGTH”
General notes – Zip phpMyAdmin and keep in offline status until needed
SSH – check config to force higher cipher usage
yum -y remove sendmail openssl
yum -y install autoconf automake automake17 bzip2 bzip2-devel bzip2-libs compat-gcc-34 compat-gcc-34-c++ compat-glibc compat-glibc-headers compat-libf2c compat-libgcc compat-libstdc++-296 compat-libsdc++-33 curl curl-devel expect expect-devel gcc gcc-c++ gdbm gdbm-devel gmp gmp-devel groff httpd httpd-devel httpd-manual krb5-auth-dialog krb5-devel krb5-libs krb5-workstation libgcc libidn libidn-devel libtool libtool-ltdl libtool-ltdl-devel mysql mysql-bench mysql-devel mysql-server mrtg ntp openssh openssh-clients openssh-askpass openssh-server openssl openssl-devel pcre pcre-devel perl-libwww-perl perl-Archive-Tar perl-Digest-HMAC perl-Digest-SHA1 perl-HTML-Parser perl-Net-DNS php php-ldap php-mysql php-pear php-gd php-xml redhat-rpm-config rpm rpm-build rpm-devel rpm-libs rpm-python sed setup setuptool stunnel system-config-date wget which zlib zlib-devel ncurses-devel zip groff