This is a quick post on how to lock down a QNAP NAS running QTS to conform with the stringent QUALYS security standards
Perform the following tasks:
- Go to Network & File Services> Network Access> Enable Service Binding
- Enable the MGMT services for the management port
- Enable the iSCSI services for the data connection
- Disable everything else
Disable Microsoft Networking
Disable Apple Networking
Disable Telnet
If you use SNMP use SNMP v3
Disable UPnP
Disable Bonjour
Disable FTP
Enable TLS 1.2 on the webserver