Linux server setup from scratch: SSH hardening (port change, disabled root login, key-based auth, fail2ban), firewall (ufw/iptables), Nginx/Apache installation and configuration with SSL (Let’s Encrypt). Monitoring via Netdata/Prometheus, automatic security updates (unattended-upgrades), swap setup, timezones, logging. Basic load optimization.