Re: secure UNIX log server

From: Bernd Eckenfels (ecki-news2002-05@lina.inka.de)
Date: 05/29/02


From: Bernd Eckenfels <ecki-news2002-05@lina.inka.de>
Date: 29 May 2002 14:06:39 GMT

Trueblood <trueblood@lonegunmen.org> wrote:
> One possibility would be to take away root from the admins, but give them
> sudo access. The good news about this is with sudo, every command can be
> logged. That way, they can do whatever they need to do, but if something
> happens you'll have a better audit log.

It is more secure to not allow any network access to the system at all.

Greetings
Bernd



Relevant Pages

  • Re: secure UNIX log server
    ... > One possibility would be to take away root from the admins, ... > sudo access. ... The good news about this is with sudo, ...
    (comp.security.unix)
  • Re: hardening a linux server against local exploits
    ... > require root. ... >> sudo access where I can... ... > I've used LIDS quite successfully (terrific support from the support ... but if they demand root, you'll probably be inundated with demands ...
    (comp.os.linux.security)
  • Re: hardening a linux server against local exploits
    ... > filesystem that holds the OS files, ... agree that the only way to really clean it up is a fresh install. ... I've read that the SuckIt root kit infects random binaries. ... sudo access where I can... ...
    (comp.os.linux.security)
  • Re: Upgrade from RH 6.2 to 8.0 Goes a Bit Astray
    ... > might need root or sudo access to see the logs, ie, sudo less ... i586 means any Pentium-class processor... ... the successor to ... the 486 processor (hint Pentium comes from the greek root for the ...
    (linux.redhat.misc)
  • Re: Trouble Logging In as Root
    ... Ignore the advice to set a root password. ... with the primary user having root access it's ... I also always lock down sudo access for multiple users ... the server I need to get to. ...
    (Ubuntu)