Game Server Security
The 10 Most Important Security Measures
1. Strong Passwords
❌ admin123
❌ password
✅ Kf8#mP2$xQ9!nL4w (random, 16+ characters)
2. Change Your RCON Password
Change the default RCON password immediately after setup. RCON gives full server access!
3. Configure Firewall
Only open the ports you need:
| What | Port | Protocol |
|---|---|---|
| Game | Game-dependent | TCP/UDP |
| RCON | Game-dependent | TCP |
| SSH | 22 | TCP |
| SFTP | 2022 | TCP |
4. Keep Software Up to Date
- Update server software regularly
- Keep plugins/mods current
- Apply operating system updates
5. Create Backups
- Automatic daily backups
- Manual backup before every major update
- Store backups in a separate location
6. Limit Admin Privileges
Only grant admin access to trusted people. Use tiered permission levels.
7. Enable Anti-Cheat
- VAC (CS2, TF2)
- BattlEye (ARK, Rust)
- EasyAntiCheat (various games)
- Server-side anti-cheat plugins
8. Protect Your Server IP
Use a domain instead of the raw IP address. In case of a DDoS attack, switching IPs is much easier.
9. Enable Logging
Log all important events:
- Player joins/leaves
- Admin actions
- Errors and crashes
10. Regular Review
- Review logs monthly
- Remove unknown admins
- Audit your plugins