Re: Locking Down a Linux Box

From: crazytrain.com (subscribe@crazytrain.com)
Date: 12/23/01


Date: Sat, 22 Dec 2001 20:17:15 -0500
From: "crazytrain.com" <subscribe@crazytrain.com>
To: Kevin Robitaille <kevin.robitaille@ergogroup.com>, focus-linux@securityfocus.com

Kevin

there are a number of resources, some free, some not. Mileage will vary
among them, as well as your knowledge of and expertise with linux already.

http://www.redhat.com/training/security/courses/
RHS333 is excellent if you have familiarity and solid, working knowledge of
linux.
RHS253 is excellent if you're a newbie.

(yes, I'm biased since I work for RH and help develop/audit the security
curriculum! By far the most expensive yet also the most in-depth and hands
on)

http://www.linuxsecurity.com/
a number of papers and articles there that may help you in your quest.

http://bastille-linux.sourceforge.net/
good ol' bastille may help you at least partially. Now updated for 7.2

http://www.nusphere.com/secure_install_redhat.pdf
short and basic information for 'locking down' Red Hat Linux.

http://www.openna.com/products/books/securing-optimizing-linux/solrhe.htm
Securing & Optimizing Linux PDF

good luck with your tightening! :)

PS, perhaps you should look into building a monolithic kernel so as to
avoid module exploits?

farmerdude

> Any one out there know good reference for securing a
> Linux 7.2 Server OS. I'm new to using Linux and need
> to lock down a system for use as an IDS Sensor. Any
> help would be appreciated.
>
>
>
>
>
>



Relevant Pages

  • Re: Locking Down a Linux Box
    ... I'm new to using Linux and need ... In a nutshell, you run this script on a virgin installation, ... The script covers off pretty much everything from the SANS book "Securing ...
    (Focus-Linux)
  • Re: Locking Down a Linux Box
    ... Things like pop3 servers, rpc, ftpd, telnetd ... If you want, openwall patches, or patches for the kernel based on those ... These are the first things that come to mind when I think of securing a ... > Linux 7.2 Server OS. ...
    (Focus-Linux)
  • Re: Debian workstations in a school environment
    ... our workstations run Windows. ... managing linux workstations. ... There is a good document on securing Debian. ... Beauty is more important in computing than anywhere else in technology ...
    (Debian-User)
  • Re: NSA enhancing Linux security?
    ... The NSA, or NCSC, has released several guides to securing Windoze also. ... I personally welcome the SE linux project. ... and even some of the better attackers. ...
    (comp.os.linux.security)
  • Re: NSA enhancing Linux security?
    ... The NSA, or NCSC, has released several guides to securing Windoze ... > I personally welcome the SE linux project. ... > keep out the script kiddies, and even some of the better attackers. ...
    (comp.os.linux.security)