Security
Harden and update servers
See how each server is set up, fix problems in a click, and install security updates on a schedule.
-
1
What’s checked
On Pro and above, Security audits each server the project runs on: SSH passwords and root sign-in, the firewall and anything open to the internet (such as a database), fail2ban, automatic updates, waiting security updates, a pending reboot, and the Ubuntu release.
-
2
Fix in a click
Findings with a fix have a button, such as Turn the firewall on or Allow SSH keys only. Fixes never remove BuildPusher’s own key access, and the server is checked again afterwards.
-
3
Update windows
Security → Servers sets a weekly window (day and hour, in UTC) when each server installs its security updates, optionally rebooting if they need it. Install updates now runs them straight away.
Still stuck? Email us, or send feedback from inside the app.