Tim Casey

Playing around with cloud.google

I've used AWS, Azure, linode, and now clould.google.

Google seems to have the best front end in my opinion.

You can connect to their servers from Chrome using the browser.

I setup a google Red Hat 7 instance. Out of the box it put trusted zone as active, open to the world.

I had to lock down ssh, but did not want to mess with the firewall, so instead started removing services.

Got rid of postfix which was listening on SMTP.

But chronyd listens on 323 UDP. I don't really want to turn it off since it regulates ntp.

Might be interesting to see what chronyd vulns there are, set up another vm to probe it.


