computer-playbook/docs/guides/user/Security_Guidelines.md

2.1 KiB
Raw Blame History

Security Guidelines

CyMaIS is designed with security in mind. However, while following our guidelines can greatly improve your systems security, no IT system can be 100% secure. Please report any vulnerabilities as soon as possible.

For optimal personal security, we strongly recommend the following:

  • Use a Password Manager
    Use a reliable password manager such as KeePass 🔐. (Learn more about password managers on Wikipedia.) KeePass is available for both smartphones and PCs, and it can automatically generate strong, random passwords.

  • Enable Two-Factor Authentication (2FA)
    Always enable 2FA whenever possible. Many password managers (like KeePass) can generate TOTP tokens, adding an extra layer of security even if your password is compromised.
    Synchronize your password database across devices using the Nextcloud Client 📱💻.

  • Use Encrypted Systems
    We recommend running CyMaIS only on systems with full disk encryption. For example, Linux distributions such as Manjaro (based on ArchLinux) with desktop environments like GNOME provide excellent security. (Learn more about disk encryption on Wikipedia.)

  • Beware of Phishing and Social Engineering
    Always verify email senders, avoid clicking on unknown links, and never share your passwords or 2FA codes with anyone. (Learn more about Phishing and Social Engineering on Wikipedia.)

Following these guidelines will significantly enhance your personal security—but remember, no system is completely immune to risk.

A tutorial how to setup secure password management you will find here