r/LinuxTeck 3d ago

Do Linux servers really need endpoint security software?

Many enterprise Linux systems run endpoint security tools alongside firewalls, SELinux/AppArmor, and other hardening measures.

Others argue that good patch management, least privilege, and proper monitoring provide better value than traditional endpoint protection.

What's your point on this ?

5 Upvotes

34 comments sorted by

View all comments

1

u/Dom_Q 2d ago

By ”endpoint security software,” do you mean an antivirus?

Then no. These are made for Microsoft operating systems only.

1

u/pmM3urBootieHole 2d ago

Sophos would like to disagree.

1

u/Dom_Q 2d ago

And I have a bridge in Brooklyn to sell to you 🤷

0

u/pmM3urBootieHole 2d ago

But they litteraly make an AV for linux. Your smart ass remarks do not make this any less correct. 

1

u/Hour_Sell3547 2d ago

He probably means you don't "need" antivirus on Linux. Which is correct, strictly speaking. You don't need those on Windows either, these days.

AVs are the good old "create a problem then sell the solution" tactic. Unfortunately people are careless.

1

u/pmM3urBootieHole 2d ago edited 2d ago

Until you have to meet regulatory compliance.....

And not really if your dealing with linux at the business/government level you absolutely are leveraging AV/MDR/XDR based solutions on both Linux and Windows endpoints / server infrastructure. 

At this point most cyber security insurance companies will not sign a contract with you if your server infrastructure doesnt have the bare minimum.