Our friends over at Fibertown have a post on Best practices for security.