<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Security on EdgeProtocol Blog</title><link>https://blog.edgedevice.online/tags/security/</link><description>Recent content in Security on EdgeProtocol Blog</description><generator>Hugo -- gohugo.io</generator><language>en</language><copyright>Copyright © 2026 EdgeProtocol. All rights reserved.</copyright><lastBuildDate>Thu, 27 Aug 2026 09:00:00 -0500</lastBuildDate><atom:link href="https://blog.edgedevice.online/tags/security/index.xml" rel="self" type="application/rss+xml"/><item><title>Detecting Unauthorized Package Installs on Linux Fleets</title><link>https://blog.edgedevice.online/post/detect-unauthorized-package-installs/</link><pubDate>Thu, 27 Aug 2026 09:00:00 -0500</pubDate><guid>https://blog.edgedevice.online/post/detect-unauthorized-package-installs/</guid><description>
&lt;p&gt;If you operate Linux devices in production, &lt;strong&gt;shadow IT on edge devices creates vulnerability&lt;/strong&gt; eventually becomes a bottleneck. This article explains the problem, why it worsens at scale, and a practical path forward.&lt;/p&gt;
&lt;h2 id="the-problem"&gt;The Problem&lt;/h2&gt;
&lt;p&gt;Shadow it on edge devices creates vulnerability. On a single host this is annoying; across a fleet it becomes operational debt that shows up during incidents, audits, and rollouts.&lt;/p&gt;
&lt;h2 id="why-it-gets-worse-at-scale"&gt;Why It Gets Worse at Scale&lt;/h2&gt;
&lt;p&gt;The pain grows quickly past a few dozen devices. The jump from 10 → 100 → 1,000 devices is not linear. Coordination cost dominates, and small inconsistencies compound into systemic risk.&lt;/p&gt;</description></item><item><title>Certificate Rotation on Headless Linux Devices</title><link>https://blog.edgedevice.online/post/certificate-rotation-headless-linux/</link><pubDate>Thu, 09 Jul 2026 09:00:00 -0500</pubDate><guid>https://blog.edgedevice.online/post/certificate-rotation-headless-linux/</guid><description>
&lt;p&gt;If you operate Linux devices in production, &lt;strong&gt;expired certs cause outages on devices nobody visits&lt;/strong&gt; eventually becomes a bottleneck. This article explains the problem, why it worsens at scale, and a practical path forward.&lt;/p&gt;
&lt;h2 id="the-problem"&gt;The Problem&lt;/h2&gt;
&lt;p&gt;Expired certs cause outages on devices nobody visits. On a single host this is annoying; across a fleet it becomes operational debt that shows up during incidents, audits, and rollouts.&lt;/p&gt;
&lt;h2 id="why-it-gets-worse-at-scale"&gt;Why It Gets Worse at Scale&lt;/h2&gt;
&lt;p&gt;The pain grows quickly past a few dozen devices. The jump from 10 → 100 → 1,000 devices is not linear. Coordination cost dominates, and small inconsistencies compound into systemic risk.&lt;/p&gt;</description></item><item><title>Role-Based Access for Linux Fleet Operations</title><link>https://blog.edgedevice.online/post/rbac-linux-fleet-operations/</link><pubDate>Tue, 30 Jun 2026 09:00:00 -0500</pubDate><guid>https://blog.edgedevice.online/post/rbac-linux-fleet-operations/</guid><description>
&lt;p&gt;If you operate Linux devices in production, &lt;strong&gt;shared root SSH keys do not scale for teams&lt;/strong&gt; eventually becomes a bottleneck. This article explains the problem, why it worsens at scale, and a practical path forward.&lt;/p&gt;
&lt;h2 id="the-problem"&gt;The Problem&lt;/h2&gt;
&lt;p&gt;Shared root ssh keys do not scale for teams. On a single host this is annoying; across a fleet it becomes operational debt that shows up during incidents, audits, and rollouts.&lt;/p&gt;
&lt;h2 id="why-it-gets-worse-at-scale"&gt;Why It Gets Worse at Scale&lt;/h2&gt;
&lt;p&gt;The pain grows quickly past a few dozen devices. The jump from 10 → 100 → 1,000 devices is not linear. Coordination cost dominates, and small inconsistencies compound into systemic risk.&lt;/p&gt;</description></item><item><title>Secure Remote Access Without Opening Inbound Ports</title><link>https://blog.edgedevice.online/post/secure-remote-access-no-inbound-ports/</link><pubDate>Thu, 11 Jun 2026 09:00:00 -0500</pubDate><guid>https://blog.edgedevice.online/post/secure-remote-access-no-inbound-ports/</guid><description>
&lt;p&gt;If you operate Linux devices in production, &lt;strong&gt;inbound SSH is a growing attack surface on edge devices&lt;/strong&gt; eventually becomes a bottleneck. This article explains the problem, why it worsens at scale, and a practical path forward.&lt;/p&gt;
&lt;h2 id="the-problem"&gt;The Problem&lt;/h2&gt;
&lt;p&gt;Inbound ssh is a growing attack surface on edge devices. On a single host this is annoying; across a fleet it becomes operational debt that shows up during incidents, audits, and rollouts.&lt;/p&gt;</description></item><item><title>Package Management at the Edge: Keeping Linux Fleets Updated</title><link>https://blog.edgedevice.online/post/package-management-edge/</link><pubDate>Tue, 09 Jun 2026 09:00:00 -0500</pubDate><guid>https://blog.edgedevice.online/post/package-management-edge/</guid><description>
&lt;p&gt;If you operate Linux devices in production, &lt;strong&gt;inconsistent package versions create security and compatibility risk&lt;/strong&gt; eventually becomes a bottleneck. This article explains the problem, why it worsens at scale, and a practical path forward.&lt;/p&gt;
&lt;h2 id="the-problem"&gt;The Problem&lt;/h2&gt;
&lt;p&gt;Inconsistent package versions create security and compatibility risk. On a single host this is annoying; across a fleet it becomes operational debt that shows up during incidents, audits, and rollouts.&lt;/p&gt;
&lt;h2 id="why-it-gets-worse-at-scale"&gt;Why It Gets Worse at Scale&lt;/h2&gt;
&lt;p&gt;The pain grows quickly past a few dozen devices. The jump from 10 → 100 → 1,000 devices is not linear. Coordination cost dominates, and small inconsistencies compound into systemic risk.&lt;/p&gt;</description></item></channel></rss>