Help centre

Security

Harden and update servers

See how each server is set up, fix problems in a click, and install security updates on a schedule.

  1. 1

    What’s checked

    On Pro and above, Security audits each server the project runs on: SSH passwords and root sign-in, the firewall and anything open to the internet (such as a database), fail2ban, automatic updates, waiting security updates, a pending reboot, and the Ubuntu release.

  2. 2

    Fix in a click

    Findings with a fix have a button, such as Turn the firewall on or Allow SSH keys only. Fixes never remove BuildPusher’s own key access, and the server is checked again afterwards.

  3. 3

    Update windows

    Security → Servers sets a weekly window (day and hour, in UTC) when each server installs its security updates, optionally rebooting if they need it. Install updates now runs them straight away.

Still stuck? Email us, or send feedback from inside the app.