Securing Linux based public access terminals

From: Andrew Shore (andrew.shore_at_holistecs.com)
Date: 07/15/04

  • Next message: Samuel Petreski: "RE: Re[2]: A possible "new ?" DOS exploit with IE"
    Date: Thu, 15 Jul 2004 12:48:33 +0100
    To: <security-basics@securityfocus.com>
    
    

    Hi

    I have a project where I need to give access to the internet to groups
    of users who do not work for the company running the workstations.
    Hence, the company do not want the users to access any other part of the
    network. For reasons too complicated to go into here I can't hive this
    portion of the network off onto a DMZ or even a secure vlan.

    What I would like to is run a Linux workstation (RedHat probably 9 even
    though it's out of support) but when the user logs into the windows
    session all they get is the browser. No menus no right click on the desk
    top just a basic single application "dumb terminal". I've seen this done
    before but it was too well secured for me to see how it was done! Also
    I'd like to the workstation to log straight in as a local user with out
    user intervention.

    Any ideas how I can achieve this or perhaps secure it in another way, I
    remember with windows 3.x you could change the windows manager settings
    in win.ini and it did exactly what I want. I just really don't want to
    use Windows 3.1 ;)

    TIA

    Andy

    ---------------------------------------------------------------------------
    Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off
    any course! All of our class sizes are guaranteed to be 10 students or less
    to facilitate one-on-one interaction with one of our expert instructors.
    Attend a course taught by an expert instructor with years of in-the-field
    pen testing experience in our state of the art hacking lab. Master the skills
    of an Ethical Hacker to better assess the security of your organization.
    Visit us at:
    http://www.infosecinstitute.com/courses/ethical_hacking_training.html
    ----------------------------------------------------------------------------


  • Next message: Samuel Petreski: "RE: Re[2]: A possible "new ?" DOS exploit with IE"

    Relevant Pages

    • RE: Question: How To Secure a Public Access Workstation
      ... I think step one would be to secure the box itself. ... Access workstation" shouldn't necessarily mean access to the ... > rather than Windows Explorer. ... > q154780 - How to Use Kiosk Mode in Microsoft ...
      (Focus-Microsoft)
    • RE: Question: How To Secure a Public Access Workstation
      ... Subject: Question: How To Secure a Public Access Workstation ... > rather than Windows Explorer. ...
      (Focus-Microsoft)
    • RE: Question: How To Secure a Public Access Workstation
      ... rather than Windows Explorer. ... Subject: Question: How To Secure a Public Access Workstation ... I've found a few references to get started with, the best one seems to be ...
      (Focus-Microsoft)
    • Re: Securing windows XP
      ... xp has the potential to be much more secure than 9x. ... signifigant advantage over the 9x line in terms of security, ... any other nt kernel workstation. ... > Subject: Securing windows XP ...
      (Focus-Microsoft)
    • Paradigms II
      ... Secure Systems Revisited ... Performing the following very basic security evaluation on your system ... (server or workstation); however, they can be easily adapted to any other ... control over that information. ...
      (comp.security.misc)

  • Quantcast