Re: Unix jumpbox \ console

From: Leif Ericksen (leife_at_dls.net)
Date: 01/29/04

  • Next message: Shawn Jackson: "RE: Worm.SCO.A (W32/Mydoom@MM)"
    Date: Wed, 28 Jan 2004 22:27:57 -0600
    To: Byron Sonne <blsonne@rogers.com>
    
    

    JUMP BOX; AKA HOP BOX.

    How secure do you want it to be?

    1) Require (Open)SSH into the box and to the servers that you are going
    to go to from this box. This box has 2 nics.
            1 Private network (to the desk top for instance)
            2 to the open network (the servers that you do not want direct
                access to. (they may have 2 nics 1 to the internet 1 to the
                  hop box)

    2) If you can afford SecureID or other one time password system require
    that as well.
    3) Shut off ALL services but the 'essential' on the hop box.
    4) DO NOT HAVE SUPER SENSITIVE DATA that is TOP SECRET Material that
    would be found SIPERNET or other networks of a classified nature.
    Attached directly in this manner unless you really know what you are
    doing. With this question I can tell that you are trying to dig for
    information so more research might be required.

    Have Fun Enjoy, and do not be afraid to ask more questions.

    Byron Sonne wrote:

    >> Hi I am looking for advice on creating a secure unix jumpbox
    >
    >
    > What is a 'jumpbox'? I've never heard the term before.
    >

    ---------------------------------------------------------------------------
    Ethical Hacking at InfoSec Institute. Mention this ad and get $720 off any
    course! All of our class sizes are guaranteed to be 10 students or less.
    We provide Ethical Hacking, Advanced Ethical Hacking, Intrusion Prevention,
    and many other technical hands on courses.
    Visit us at http://www.infosecinstitute.com/securityfocus to get $720 off
    any course!
    ----------------------------------------------------------------------------


  • Next message: Shawn Jackson: "RE: Worm.SCO.A (W32/Mydoom@MM)"

    Relevant Pages

    • RE: securing password list
      ... secure a list such as this? ... Ethical Hacking at the InfoSec Institute. ... to facilitate one-on-one interaction with one of our expert instructors. ... pen testing experience in our state of the art hacking lab. ...
      (Security-Basics)
    • RE: How to secure my yahoo account
      ... I would recommend using a more secure email service such as HushMail. ... communications are given additional encryption beyond the https:// SSL. ... How can you know if your yahoo account password has been cracked in case ... We provide Ethical Hacking, Advanced Ethical Hacking, Intrusion Prevention, ...
      (Security-Basics)
    • RE: how secure is a vlan
      ... Is this technology as secure as physical net? ... VLAN transversal typically occurs via error in network hardware ... > We provide Ethical Hacking, Advanced Ethical Hacking, Intrusion ...
      (Security-Basics)
    • RE: how secure is a vlan
      ... How do you propose that VLAN hopping has been fized? ... > a vlan to secure a part of the net. ... We provide Ethical Hacking, Advanced Ethical Hacking, Intrusion Prevention, ... and many other technical hands on courses. ...
      (Security-Basics)