LAN security options for the server:
- Whole disk encryption (prevents bypassing security by reading the disk with another computer).
- Dedicated server (reduces exploitable surface area).
- Automated Linux updates
- Firewall blocking all but ssh and the Noodle http[s] ports (reduces exploitable surface area).
- ssh keys (prevents password guessing on ssh).
- IDS, and resource alerts