{
  "slug": "four-locks-one-door",
  "date": "2026-05-30",
  "image": "blog5.webp",
  "tags": [
    "security",
    "threat-detection"
  ],
  "author": {
    "en": "ManageLM Team",
    "fr": "L'équipe ManageLM",
    "de": "ManageLM-Team"
  },
  "title": {
    "en": "Four Locks on One Door: The Complete Infrastructure Security Stack",
    "fr": "Quatre serrures sur une porte : la pile de sécurité complète pour votre infrastructure",
    "de": "Vier Schlösser an einer Tür: der vollständige Sicherheitsunterbau für Ihre Infrastruktur"
  },
  "summary": {
    "en": "Most security platforms give you one lock on the door. ManageLM gives you four: internal audits, daily CVE checks, external pentests, and live threat detection. All bundled into compliance-ready reports.",
    "fr": "La plupart des produits de sécurité vous vendent une serrure. ManageLM en pose quatre : audit interne, veille CVE quotidienne, pentests depuis l'extérieur et détection des menaces en temps réel. Le tout versé dans des rapports prêts pour la conformité.",
    "de": "Die meisten Sicherheitsprodukte verkaufen Ihnen ein Schloss. ManageLM setzt vier: internes Audit, tägliche CVE-Prüfung, Pentests von außen und Bedrohungserkennung in Echtzeit. Alles fließt in prüfungsfertige Berichte."
  },
  "content": {
    "en": "<p>Think about a front door you'd actually trust.</p><p>It probably has more than one lock. A <strong>deadbolt</strong> that won't pick. A <strong>chain</strong> for when you're home. A <strong>camera</strong> pointed at whoever's on the porch. A <strong>contact sensor</strong> wired into an alarm in case someone tries to force the frame.</p><p>Each lock solves a different problem. Each one fails in a different way. Stack them and breaking in stops being worth it. Take any one of them away and you've got a weekend project for the wrong kind of person.</p><p>Server security is the same job. The frustrating part is that almost every security product on the market sells you one lock and calls it done.</p><h3>Four questions, four jobs</h3><p>If you've ever had a server you cared about, four questions probably show up in your head at some point. They don't have the same answer, and they don't have the same fix.</p><ul><li><em>Is the box itself hardened?</em> SSH config, sudoers, file permissions, accounts that someone forgot to delete two jobs ago.</li><li><em>Am I running software with known holes?</em> CVEs land every day. The question isn't whether your distro has patched them. It's whether you've installed the patch.</li><li><em>What does my attack surface look like from outside?</em> Open ports, web apps with injection bugs, an admin panel that should have been behind a VPN six months ago.</li><li><em>Is something actually happening right now?</em> A web service spawning shells at 2 AM. A login from a country nobody on the team has ever been to. A user account suddenly running sudo for the first time in a year.</li></ul><p>Four problems. Four very different tools usually. ManageLM handles all four out of the same agent.</p><h3>Lock 1: internal security audit</h3><p>The deadbolt. The agent already lives on the server, so it can look at the server the way you'd look at it if you SSH'd in with a checklist and an afternoon to kill. 18 deterministic hardening checks across SSH config, firewall rules, TLS ciphers, certificate expiry, sudoers (including <code>/etc/sudoers.d</code> and NOPASSWD), SUID binaries, world-writable files, cron jobs, container exposure, failed logins, pending security updates, kernel hardening sysctls, and more.</p><p>Severity adapts to context. The same SSH misconfig is Critical on a public, internet-facing box and Low on an internal one. Findings come back with framework tags (CIS, PCI-DSS, SOC 2), an explanation, and a remediation that's one click to apply: validated before it runs, so you don't lock yourself out fixing a typo.</p><p>An external scanner can't see this stuff. The agent can, because the agent <em>is</em> on the box.</p><h3>Lock 2: daily CVE exposure</h3><p>The contact sensor on the frame. Every day the agent inventories what's actually installed. Packages, versions, kernel modules, language runtimes, what's inside your containers. Then it cross-references the public CVE feeds and your distro's advisories.</p><p>When a CVE drops on a Tuesday afternoon, you don't read about it in next quarter's audit. You see it that day, with the exact list of hosts that are affected and the package versions that need to move. The slow part of vuln management isn't finding CVEs. It's mapping them to your fleet. That part is done.</p><h3>Lock 3: pentest from the outside</h3><p>The neighbor who walks past your door every morning and tries the handle. ManageLM's pentest service points industry-standard tooling at whatever you expose to the public internet. Port scans, web app probes (SQLi, XSS, SSRF, open redirects), TLS settings, default admin credentials, exposed <code>.git</code> directories, the embarrassing stuff.</p><p>Lock 1 and Lock 2 tell you what could be wrong on paper. A pentest tells you what an attacker actually sees when they aim a scanner at your IP.</p><h3>Lock 4: live threat detection</h3><p>The camera with motion detection, and the bit most security stacks just don't have. ManageLM ships this as <a href=\"features/threats.html\">Threat Detection</a>. The agent watches what services and users are <em>doing</em>, not just how they're configured. Failed logins piling up on one account. A web process suddenly launching <code>/bin/sh</code>. The same user logging in from two countries in the same hour. Outbound traffic to addresses that show up on threat feeds. A privilege escalation that doesn't match any deploy window.</p><p>Because a local LLM sits next to the detection pipeline, alerts come out correlated and ranked. Real incident, write it up. Noise, drop it. When something is bad enough, the user behind it is bounced out of the portal until an admin says otherwise.</p><h3>Why nobody else bundles all four</h3><p>Walk the security market and you'll see specialists. A CSPM for config hygiene. A vuln scanner for CVEs. A pentest SaaS for external probing. A SIEM or XDR for runtime monitoring. Four vendors, four contracts, four dashboards that nobody has time to check more than one of.</p><p>And worse, four silos. The CVE scanner doesn't know that the vulnerable package is on a host the pentest tool can see from the internet. The SIEM doesn't know that the user logging in from a weird IP also has sudo on that exact host. Each tool sees a slice. None of them see the picture.</p><p>ManageLM runs all four from the same agent, on the same server, in the same UI, on the same plan. That plan is free for up to 10 agents, in case you were going to ask.</p><p>The interesting part isn't the bundling. It's the correlation. A CVE in a package that is <em>also</em> exposed to the internet <em>and</em> being probed right now is not three alerts in three tools. It's one incident, with the full chain, ready to act on.</p><h3>Compliance reports that auditors can actually use</h3><p>Every check, every CVE hit, every pentest finding, every threat alert lands in the same reporting pipeline. When the SOC 2, ISO 27001, PCI, HIPAA, or NIS2 auditor shows up, you export a signed, timestamped report that covers all four pillars at once. No screenshot scavenger hunt. No spreadsheet stitched together at midnight.</p><p>Compliance gets the paperwork. The auditor gets the evidence. You get your weekend.</p><h3>The math</h3><p>One lock stops the bored. Four locks stop the patient. The same math holds up for servers.</p><p>If your stack covers one of the four pillars, you're a quarter of the way there. Two, halfway. All four through separate vendors and you're paying four bills to maintain four blind spots between them.</p><p>One platform, four locks, every door covered. <a href=\"https://app.managelm.com/register\" target=\"_blank\" rel=\"noopener\">Sign up</a>, drop an agent on a server, and watch your security posture move from <em>I hope so</em> to <em>I know so</em>. It takes about ten minutes.</p><p>One lock isn't enough for your front door. Don't accept it for your servers.</p>",
    "fr": "<p>Pensez à une porte d'entrée digne de confiance.</p><p>Elle a sans doute plus d'une serrure. Un <strong>verrou</strong> qui résiste au crochetage. Une <strong>chaîne</strong> pour les soirs où vous êtes chez vous. Une <strong>caméra</strong> braquée sur le palier. Un <strong>détecteur d'ouverture</strong> relié à une alarme, au cas où l'on forcerait l'encadrement.</p><p>Chaque serrure règle un problème différent et cède d'une manière différente. Empilez-les, et l'effraction ne vaut plus la peine. Enlevez-en une, et vous offrez un projet de week-end à quelqu'un de mal intentionné.</p><p>Pour un serveur, le métier est le même. L'agaçant, c'est que presque tous les produits de sécurité du marché vous vendent une seule serrure et considèrent l'affaire réglée.</p><h3>Quatre questions, quatre métiers</h3><p>Quiconque a déjà tenu à un serveur voit un jour ou l'autre remonter quatre questions. Elles n'ont ni la même réponse ni le même remède.</p><ul><li><em>La machine est-elle durcie ?</em> Configuration SSH, sudoers, droits sur les fichiers, comptes que personne n'a pensé à supprimer il y a deux emplois de cela.</li><li><em>Mes logiciels ont-ils des trous connus ?</em> Des CVE tombent tous les jours. La question n'est pas de savoir si votre distribution a publié le correctif, mais si vous l'avez posé.</li><li><em>À quoi ressemble ma surface d'attaque vue du dehors ?</em> Ports ouverts, applications web avec leurs failles d'injection, un panneau d'administration qui aurait dû passer derrière un VPN il y a six mois.</li><li><em>Est-ce qu'il se passe quelque chose, là, maintenant ?</em> Un service web qui ouvre des shells à 2 heures du matin. Une connexion depuis un pays où personne dans l'équipe n'a jamais mis les pieds. Un compte qui lance sudo pour la première fois depuis un an.</li></ul><p>Quatre problèmes, et d'ordinaire quatre outils très différents. ManageLM les traite tous les quatre depuis le même agent.</p><h3>Serrure 1 : l'audit de sécurité interne</h3><p>Le verrou. L'agent habite déjà le serveur : il peut donc l'examiner comme vous le feriez vous-même, une session SSH d'un côté, une liste de contrôle et un après-midi devant vous de l'autre. 18 vérifications de durcissement déterministes : configuration SSH, règles firewall, chiffrements TLS, expiration des certificats, sudoers (y compris <code>/etc/sudoers.d</code> et NOPASSWD), binaires SUID, fichiers inscriptibles par tous, tâches cron, exposition des conteneurs, tentatives de connexion échouées, mises à jour de sécurité en attente, sysctl de durcissement noyau, et d'autres encore.</p><p>La sévérité suit le contexte : la même erreur de configuration SSH est critique sur une machine exposée à Internet et faible sur une machine interne. Chaque constat arrive avec ses référentiels (CIS, PCI-DSS, SOC 2), une explication et une remédiation applicable en un clic, validée avant exécution pour ne pas vous retrouver à la porte en corrigeant une coquille.</p><p>Un scanner externe ne voit rien de tout cela. L'agent, lui, le voit, parce qu'il <em>est</em> sur la machine.</p><h3>Serrure 2 : l'exposition aux CVE, tous les jours</h3><p>Le détecteur sur l'encadrement. Chaque jour, l'agent inventorie ce qui est réellement installé : paquets, versions, modules noyau, environnements d'exécution, contenu des conteneurs. Puis il croise tout cela avec les flux publics de CVE et les avis de votre distribution.</p><p>Quand une CVE sort un mardi après-midi, vous ne l'apprenez pas dans l'audit du trimestre suivant : vous la voyez le jour même, avec la liste exacte des hôtes touchés et les versions de paquets à faire bouger. Le temps perdu dans la gestion des vulnérabilités ne vient pas de la recherche des CVE, il vient de leur rapprochement avec votre flotte. Ce travail est fait.</p><h3>Serrure 3 : le pentest, vu du dehors</h3><p>Le voisin qui passe chaque matin devant votre porte et abaisse la poignée pour voir. Le service de pentest de ManageLM braque des outils standards du secteur sur tout ce que vous exposez sur Internet : balayages de ports, sondes applicatives web (injection SQL, XSS, SSRF, redirections ouvertes), réglages TLS, identifiants d'administration laissés par défaut, répertoires <code>.git</code> accessibles, bref, les choses gênantes.</p><p>Les serrures 1 et 2 vous disent ce qui cloche sur le papier. Le pentest vous dit ce qu'un attaquant voit réellement quand il pointe un scanner sur votre adresse IP.</p><h3>Serrure 4 : la détection des menaces en direct</h3><p>La caméra à détection de mouvement, c'est-à-dire la pièce qui manque à la plupart des dispositifs. Chez ManageLM, elle s'appelle <a href=\"features/threats.html\">Détection des menaces</a>. L'agent observe ce que les services et les utilisateurs <em>font</em>, pas seulement la façon dont ils sont configurés. Des tentatives de connexion échouées qui s'accumulent sur un compte. Un processus web qui lance soudain <code>/bin/sh</code>. Le même utilisateur connecté depuis deux pays dans la même heure. Du trafic sortant vers des adresses signalées par les flux de renseignement. Une élévation de privilèges qui ne colle avec aucune fenêtre de déploiement.</p><p>Comme un LLM local se tient à côté de la chaîne de détection, les alertes sortent corrélées et hiérarchisées. Vrai incident : on documente. Bruit : on écarte. Quand c'est assez grave, l'utilisateur en cause est éjecté du portail jusqu'à ce qu'un administrateur en décide autrement.</p><h3>Pourquoi personne d'autre ne réunit les quatre</h3><p>Parcourez le marché de la sécurité : vous ne verrez que des spécialistes. Un CSPM pour l'hygiène de configuration. Un scanner pour les CVE. Un pentest en SaaS pour le regard extérieur. Un SIEM ou un XDR pour la surveillance à l'exécution. Quatre fournisseurs, quatre contrats, quatre tableaux de bord dont personne n'a le temps d'en regarder plus d'un.</p><p>Et surtout quatre silos. Le scanner de CVE ignore que le paquet vulnérable se trouve sur un hôte que l'outil de pentest voit depuis Internet. Le SIEM ignore que l'utilisateur connecté depuis une IP bizarre dispose aussi de sudo sur cet hôte précis. Chaque outil voit une tranche. Aucun ne voit le tableau.</p><p>ManageLM fait tourner les quatre depuis le même agent, sur le même serveur, dans la même interface, avec le même abonnement. Abonnement gratuit jusqu'à 10 agents, au cas où la question vous démangeait.</p><p>L'intérêt n'est pas de tout réunir, il est de tout croiser. Une CVE dans un paquet qui est <em>aussi</em> exposé sur Internet <em>et</em> sondé en ce moment même, ce ne sont pas trois alertes dans trois outils : c'est un incident, avec la chaîne complète, prêt à traiter.</p><h3>Des rapports de conformité vraiment utilisables</h3><p>Chaque vérification, chaque CVE trouvée, chaque constat de pentest, chaque alerte de menace part dans la même chaîne de reporting. Quand l'auditeur SOC 2, ISO 27001, PCI, HIPAA ou NIS2 se présente, vous exportez un rapport signé et horodaté qui couvre les quatre piliers d'un coup. Pas de chasse aux captures d'écran. Pas de tableur recousu à minuit.</p><p>La conformité a ses documents. L'auditeur a ses preuves. Vous avez votre week-end.</p><h3>Le calcul</h3><p>Une serrure arrête les curieux. Quatre serrures arrêtent les obstinés. Le calcul vaut aussi pour les serveurs.</p><p>Si votre dispositif couvre un des quatre piliers, vous êtes au quart du chemin. Deux, à la moitié. Les quatre chez des fournisseurs différents, et vous payez quatre factures pour entretenir quatre angles morts entre elles.</p><p>Une plateforme, quatre serrures, toutes les portes couvertes. <a href=\"https://app.managelm.com/register\" target=\"_blank\" rel=\"noopener\">Créez votre compte</a>, posez un agent sur un serveur et regardez votre posture de sécurité passer de <em>je l'espère</em> à <em>j'en suis sûr</em>. Comptez une dizaine de minutes.</p><p>Une seule serrure ne suffit pas à votre porte d'entrée. Ne vous en contentez pas pour vos serveurs.</p>",
    "de": "<p>Denken Sie an eine Haustür, der Sie wirklich trauen.</p><p>Sie hat vermutlich mehr als ein Schloss. Einen <strong>Riegel</strong>, der sich nicht knacken lässt. Eine <strong>Kette</strong> für die Abende, an denen Sie zu Hause sind. Eine <strong>Kamera</strong>, die auf den Treppenabsatz zeigt. Einen <strong>Kontaktsensor</strong> an der Alarmanlage, falls jemand den Rahmen aufhebelt.</p><p>Jedes Schloss löst ein anderes Problem und gibt auf andere Weise nach. Übereinander gelegt lohnt der Einbruch nicht mehr. Nehmen Sie eines weg, und Sie liefern jemandem mit falschen Absichten ein Wochenendprojekt.</p><p>Bei Servern ist es dieselbe Aufgabe. Ärgerlich ist nur: Fast jedes Sicherheitsprodukt am Markt verkauft Ihnen ein Schloss und erklärt die Sache für erledigt.</p><h3>Vier Fragen, vier Aufgaben</h3><p>Wer je einen Server hatte, der ihm wichtig war, kennt irgendwann vier Fragen. Sie haben weder dieselbe Antwort noch dieselbe Lösung.</p><ul><li><em>Ist die Maschine gehärtet?</em> SSH-Konfiguration, sudoers, Dateirechte, Konten, an deren Löschung vor zwei Stellen niemand gedacht hat.</li><li><em>Läuft bei mir Software mit bekannten Lücken?</em> Täglich kommen neue CVEs. Die Frage ist nicht, ob Ihre Distribution gepatcht hat, sondern ob Sie den Patch eingespielt haben.</li><li><em>Wie sieht meine Angriffsfläche von außen aus?</em> Offene Ports, Webanwendungen mit ihren Injection-Lücken, ein Adminbereich, der vor sechs Monaten hinter ein VPN gehört hätte.</li><li><em>Passiert gerade etwas?</em> Ein Webdienst, der um 2 Uhr nachts Shells öffnet. Eine Anmeldung aus einem Land, in dem niemand im Team je war. Ein Konto, das zum ersten Mal seit einem Jahr sudo verwendet.</li></ul><p>Vier Probleme, üblicherweise vier sehr verschiedene Werkzeuge. ManageLM erledigt alle vier aus demselben Agenten.</p><h3>Schloss 1: das interne Sicherheitsaudit</h3><p>Der Riegel. Der Agent wohnt ohnehin auf dem Server und kann ihn deshalb so prüfen, wie Sie es selbst täten: eine SSH-Sitzung, eine Prüfliste und ein freier Nachmittag. 18 deterministische Härtungsprüfungen: SSH-Konfiguration, Firewall-Regeln, TLS-Chiffren, Zertifikatsablauf, sudoers (samt <code>/etc/sudoers.d</code> und NOPASSWD), SUID-Binaries, für alle beschreibbare Dateien, Cron-Jobs, Container-Exposition, fehlgeschlagene Logins, ausstehende Sicherheitsupdates, sysctl-Werte zur Kernel-Härtung und einiges mehr.</p><p>Der Schweregrad folgt dem Kontext: Dieselbe SSH-Fehlkonfiguration ist auf einer zum Internet offenen Maschine kritisch und auf einer internen gering. Jeder Befund kommt mit seinen Rahmenwerken (CIS, PCI-DSS, SOC 2), einer Erklärung und einer Behebung, die ein Klick einspielt, vorher geprüft, damit Sie sich beim Korrigieren eines Tippfehlers nicht selbst aussperren.</p><p>Ein externer Scanner sieht davon nichts. Der Agent sieht es, weil er auf der Maschine <em>ist</em>.</p><h3>Schloss 2: die CVE-Lage, täglich</h3><p>Der Kontaktsensor am Rahmen. Jeden Tag inventarisiert der Agent, was wirklich installiert ist: Pakete, Versionen, Kernelmodule, Laufzeitumgebungen, Inhalt der Container. Anschließend gleicht er das mit den öffentlichen CVE-Feeds und den Hinweisen Ihrer Distribution ab.</p><p>Erscheint an einem Dienstagnachmittag eine CVE, erfahren Sie davon nicht erst im Audit des nächsten Quartals, sondern am selben Tag, mit der genauen Liste betroffener Hosts und den Paketversionen, die sich bewegen müssen. Die Zeit im Schwachstellenmanagement geht nicht für das Finden der CVEs drauf, sondern für ihre Zuordnung zu Ihrer Flotte. Diese Arbeit ist erledigt.</p><h3>Schloss 3: der Pentest von außen</h3><p>Der Nachbar, der jeden Morgen an Ihrer Tür vorbeigeht und die Klinke drückt. Der Pentest-Dienst von ManageLM richtet branchenübliche Werkzeuge auf alles, was Sie öffentlich ins Internet stellen: Portscans, Sonden gegen Webanwendungen (SQL-Injection, XSS, SSRF, offene Weiterleitungen), TLS-Einstellungen, voreingestellte Administratorzugänge, erreichbare <code>.git</code>-Verzeichnisse, kurz, das Peinliche.</p><p>Schloss 1 und Schloss 2 sagen Ihnen, was auf dem Papier nicht stimmt. Der Pentest sagt Ihnen, was ein Angreifer tatsächlich sieht, wenn er einen Scanner auf Ihre IP richtet.</p><h3>Schloss 4: Bedrohungserkennung in Echtzeit</h3><p>Die Kamera mit Bewegungsmelder, also genau das Stück, das den meisten Aufbauten fehlt. Bei ManageLM heißt es <a href=\"features/threats.html\">Bedrohungserkennung</a>. Der Agent beobachtet, was Dienste und Nutzer <em>tun</em>, nicht nur, wie sie eingerichtet sind. Fehlgeschlagene Logins, die sich auf einem Konto häufen. Ein Webprozess, der plötzlich <code>/bin/sh</code> startet. Derselbe Nutzer, binnen einer Stunde aus zwei Ländern angemeldet. Ausgehender Verkehr zu Adressen, die auf Bedrohungslisten stehen. Eine Rechteausweitung, die zu keinem Wartungsfenster passt.</p><p>Weil ein lokales LLM neben der Erkennungskette sitzt, kommen die Alarme korreliert und nach Dringlichkeit sortiert heraus. Echter Vorfall: festhalten. Rauschen: verwerfen. Ist es schlimm genug, fliegt der verantwortliche Nutzer aus dem Portal, bis eine Administratorin anders entscheidet.</p><h3>Warum sonst niemand alle vier bündelt</h3><p>Gehen Sie über den Sicherheitsmarkt: Sie sehen lauter Spezialisten. Ein CSPM für die Konfigurationshygiene. Einen Scanner für CVEs. Ein Pentest-SaaS für den Blick von außen. Ein SIEM oder XDR für die Laufzeit. Vier Anbieter, vier Verträge, vier Dashboards, von denen niemand Zeit hat, mehr als eines anzusehen.</p><p>Vor allem aber vier Silos. Der CVE-Scanner weiß nicht, dass das verwundbare Paket auf einem Host liegt, den das Pentest-Werkzeug aus dem Internet sieht. Das SIEM weiß nicht, dass der Nutzer mit der merkwürdigen IP auf genau diesem Host auch sudo hat. Jedes Werkzeug sieht einen Ausschnitt. Keines sieht das Bild.</p><p>ManageLM betreibt alle vier aus demselben Agenten, auf demselben Server, in derselben Oberfläche, im selben Tarif. Der ist für bis zu 10 Agenten kostenlos, falls Sie gerade fragen wollten.</p><p>Das Interessante ist nicht das Bündeln, sondern das Verknüpfen. Eine CVE in einem Paket, das <em>zugleich</em> aus dem Internet erreichbar ist <em>und</em> gerade abgetastet wird, sind nicht drei Alarme in drei Werkzeugen, sondern ein Vorfall, mit der ganzen Kette, bereit zum Handeln.</p><h3>Compliance-Berichte, mit denen sich arbeiten lässt</h3><p>Jede Prüfung, jeder CVE-Treffer, jeder Pentest-Befund, jeder Bedrohungsalarm läuft in dieselbe Berichtskette. Steht der Auditor für SOC 2, ISO 27001, PCI, HIPAA oder NIS2 vor der Tür, exportieren Sie einen signierten Bericht mit Zeitstempel, der alle vier Säulen auf einmal abdeckt. Keine Schnitzeljagd nach Screenshots. Keine um Mitternacht zusammengeflickte Tabelle.</p><p>Die Compliance bekommt ihre Unterlagen. Der Auditor bekommt seine Nachweise. Sie bekommen Ihr Wochenende.</p><h3>Die Rechnung</h3><p>Ein Schloss hält Gelangweilte auf. Vier Schlösser halten Geduldige auf. Für Server gilt dieselbe Rechnung.</p><p>Deckt Ihr Aufbau eine der vier Säulen ab, haben Sie ein Viertel des Wegs. Bei zweien die Hälfte. Alle vier bei verschiedenen Anbietern, und Sie zahlen vier Rechnungen für vier blinde Flecken dazwischen.</p><p>Eine Plattform, vier Schlösser, jede Tür abgedeckt. <a href=\"https://app.managelm.com/register\" target=\"_blank\" rel=\"noopener\">Konto anlegen</a>, einen Agenten auf einen Server setzen und zusehen, wie Ihre Sicherheitslage von <em>hoffentlich</em> zu <em>ich weiß es</em> wandert. Rechnen Sie mit zehn Minuten.</p><p>Für Ihre Haustür genügt ein Schloss nicht. Geben Sie sich bei Ihren Servern nicht damit zufrieden.</p>"
  }
}
