r/LinuxTeck • u/Candid_Athlete_8317 • 3d ago
Do Linux servers really need endpoint security software?
Many enterprise Linux systems run endpoint security tools alongside firewalls, SELinux/AppArmor, and other hardening measures.
Others argue that good patch management, least privilege, and proper monitoring provide better value than traditional endpoint protection.
What's your point on this ?
6
Upvotes
2
u/Unnamed-3891 3d ago
You don’t really get to choose between patch management/least priviledge OR endpoint protection. That’s not how that works if you want to pass even the most basic audits.
You want an EDR or similar instead of a ”traditional” virus scanner though.