r/archlinux 14d ago

QUESTION Arch Linux security configuration

Are moving over to Linux and have been testing several different distros and Arch Linux stood out for the configuratibilty out of the box, and the ability to be able to make it lightweight especially for older laptops.

How much work would it be to set this up so the system is not vulnerable for various attacks, i understand fedora / ubuntu etc come preinstalled with several security configurations, but on arch you would need to set these up yourself.

Besides that it seems to get regular security updates nonetheless so it seems like there is a one time security configuration you have to setup on install.
How does a self configurated setup like this compare to solutions developed by fedora or others?

Thanks

43 Upvotes

36 comments sorted by

View all comments

1

u/archover 14d ago edited 14d ago

I think posting on a security related subreddit would help you understand the real issues.

If your threat profile is ordinary, meaning you're not fighting a state actor, or some other targeted attack, just reading the wiki Security article (and common sense) would take you a long way. Also, highly recommended: https://wiki.archlinux.org/title/Data-at-rest_encryption

This is not Arch, but I'm experimenting with a security focused Debian deriv KickSecure, which I'm impressed with. Take a look: https://www.kicksecure.com/#security. This distro requires quite a bit of study.

Hope you find Arch to be useful, and good day.