Posted by: Anonymous Coward
on December 08, 2006 02:32 AM
All distro makes, make sure no daemons which listen on ports are running by default! If people want an Internet-listening daemon, they can start it up themselves.
OpenBSD has nice concept "secure by default".
Also, make package management easy so you can update packages very quickly and painlessly to the newest versions. And keep the whole system up-to-date. Also software that can automatically check repository and compare to installed software to check if there is any newer software available and notify the user.