Backup linux server Resources
Backup linux server

 

Site Map :: Search :: About Us
Contact Us :: Articles

Free Practice Exam

Free Practice Exam

Backup linux server
Linux tape backup
Linux network backup
Linux system backup
Backup data linux
Backup linux snapshot
Backup encryption linux
Linux backup to dvd
Backup linux uk
Linux window backup
Linux backup script
Backup ftp linux
Linux tape backup software
Linux cd backup
Linux backup utility

Linux backup tar
Linux oracle cluster
Access cluster free linux
Cluster linux manegment sof...
Bladecenter linux cluster
Hpc linux cluster
Linux cluster software
Download red hat linux 9
How to install red hat linu...
Red hat linux 9 tutorial
Linux help desk software
Help desk linux
Blogspot.com desk help linu...
Suse linux help
Mandrake linux help

Linux command help
Linux help forum
Google i linux microsoft op...
Microsoft office to linux
Linux microsoft software
Linux vs microsoft
Google i linux microsoft of...
Linux microsoft replace win...
Linux versus microsoft
Linux microsoft similarity
Linux microsoft project
Linux distros server
Free linux distros
Distros linux use xp
Book distros linux

Small linux distros
Live linux distros
Distros install linux
Linux router project
Linux wireless router
Router ap linux
Linux firewall router
How to setup a linux router
Linux router window xp
Linksys linux router
Linux router software
Linux computer hardware
Linux computer services
Linux computer peripheral
Linux computer storage device

 

Check List for Linux Security

Check List for Linux Security

Linux is an amazing operating system considering how it was originally created. It was a modest program written for one person as a hobby - Linus Torvald of Finland. It has grown into a full-fledge 32-bit operating system. It is solid, stable and provides support for an incredible number of applications. It has very powerful capabilities and runs very fast and rarely crashes.

Unfortunately Linux machines are broken almost every day. This happens not because it is an insecure operating system. It contains all the necessary tools to make it very secure. But the truth is. It hasn't become significantly more secure with the increase in popularity. On the other hand, our understanding of the hackers methods and the wide variety of tools and techniques available contributed to help system administrators to secure their Linux computers.

Our goal in this article is to list the most critical situations, and how to prevent an invasion with simple measures.

1- Weak passwords - By far the first and most used method used by hackers to try penetrating a Linux system is cracking a password, preferently of the user root. Usually they will target a common user first, and then, using his/her access to the operating system, try to get a privileged access cracking the root password. Good password policy, and good passwords are absolutely critical to the security on any computer. Some common mistakes when selecting a password: A- use "password" as password. B- use the name of the computer. C- a well-know name from science, sports or politics. D- reference to movies. E- anything that is part of the user web site. F- references associated with the account. The latest version of Linux offer shadowed passwords. If a cracker can see an encrypted password, crack it would a simple task. So, instead of storing the password in the passwd file, they are now stored in the shadow file which is readable only for root. Before a hacker can crack a password he needs to figure out an account name. So, simple accounts names must be avoided as well. Another security measure is to apply a "no login" to the account in the passwd file. This must be done to all the accounts that don't need to log in to the system. Examples are: apache, mysql, ftp and other.

Limit which terminals root may log in from. If the root account is allowed to log in only in certain terminals that are considered secure, it will be almost impossible for a hacker to penetrate the system. This can be done listing the allowed terminals on /etc/security. The login program will consider insecure any terminal that is not listed on this file, which is readable, only by root.

2- Open Network Ports

Any Linux default installation will provide the Operating System with tons of software and services. Several of them are not necessary or even wanted by the administrator. Removing these software and services will close the path to several attacks and improve security. The /sbin/chkconfig program can be used to stop services from automatically starting at run levels 3, 4 and 5. Log in as root and type /sbin/chkconfig --list to view all the services set to start automatically. Select the ones you don't need and type /sbin/chkconfig 345 name_of_service off. You must do that to all services you don't want to keep running. Also, the xinetd server can be used to disable other services as well.

3- Old Software Versions

Everyday vulnerabilities are found in programs, and most of them are fixed constantly. It is important, and sometimes critical, to keep up with the changes. There are mailing lists for every Linux distribution where one can have security related information's, and the latest vulnerabilities found. Some place to watch for security holes are: · http://www.redhat.com/mailman/listinfo/redhat-announce-list · http://www.debian.org/MailingLists/ · http://www.mandrakesecure.net/en/mlist.php · http://www.suse.com/us/private/support/security/index.html · http://www.freebsd.org/security/index.html · http://www.linuxtoday.com/ · http://www.lwn.net/ It is crucial to insure that the security released patches are applied to the programs as soon as they area available. The hacker community will be aware of the discovered holes and will try to explore them before the fixes are applied.

4- Insecure and Badly Configured Programs

There are some programs that have a history of security problems. To name a few IMAP, POP, FTP, port map and NFS, are the most known. The good thing is that most of these programs can be replaced by a secure version like spop, sftp or scp.

It is important that, before deploying any service, the administrator investigate its security history. Sometimes simple configuration measures can prevent serious headaches in the future.

Some advices regarding a web server configuration are well worth to mention:

- Never run the web server as a privileged user; - Do not keep clients' confidential data on the web server - Credit card numbers, phone numbers, mailing addresses, must be recorded on a different machine. - Make sure the privileged data that a user supplies on a form does not show up as a default for the next person to use the form; - Establish acceptable values for data that is supplied by web clients. - Check vulnerabilities on CGI programs.

5- Stale and Unnecessary Accounts

When a user no longer uses his /her account, make sure it is removed from the system. This stale account won't have this password changed periodically leaving a hole. Publicly readable or writable files owned by that account must be removed. When you remove an unnecessary service make sure you remove or disable the correspondent account.

Security Resources in the web

Bugtraq - Includes detailed discussions of Unix security holes http://www.securityfocus.com/

Firewalls - Discuss the design, construction, operation, and maintenance of firewall systems.

http://www.isc.org/services/public/lists/firewalls.html

RISKS Discuss risks to society from computers

http://www.risks.org/

Insecure.org

http://www.insecure.org/

About the Author

Jair Santos Software Engineer Cliconnect Internet Telephony www.cliconnect.com


 Additional Backup linux server Resources

Linux server backup software. Allows to backup and restore linux serve
Acronis True Image 8.0 Server for Linux. Real-time server disk backup, server disk imaging, and bare-metal restore for Linux servers. The only Linux disk imaging and bare-metal restore ...

Linux-Backup.net
Linux-CAE.net Linux-Sec.net Linux-Boot.net Linux-Backup.net Linux-Wireless.org Linux ... s 7-day incremental backup on a DIFFERENT server than...

Arkeia, Intelligent Backup Solutions
Excellent backup software for Linux.

Linux Server Backup and Recovery Software Program
Downloads Mergemill Free Web Templates Support Press Releases Articles Home > Acronis True Image Linux Server Backup and Recovery Software Don't Let This Happen to You: Ineffective ...

Debian GNU/Linux
Select a server near you ... Skip Quicknav. About Debian. News. Getting Debian ... Debian GNU/Linux provides more than a pure OS: it comes with...

Acronis offers backup server for Linux | Tech News on ZDNet
News Blogs White Papers Downloads Reviews Prices Page One| Datapoint| Water Cooler| All News| All Video| RSS Feeds GO Acronis offers backup server for Linux By Dinesh C. Sharma, CNET ...

NetVault
High performance tape backup software. Works in a client or server architecture. Server backup software for the Windows NT, Unix, Linux platforms and client software for various platforms.

Net Integration Technologies
Legal - SiteMap. Backup Server Solutions - Security Appliance - Linux Server Solution - Groupware Solution - Linux Virtual Server...

Arkeia: Arkeia Server Backup
... for speedy, automated backup and recovery that eases ... Server Backup, built on Arkeia's proven technology, was expressly developed for SMBs and organizations with centralized Linux ...

linux Online
...where to find all answers about linux, some details about for linux, all information about.....download linux..linux on..de linux..linux server..para linux..server linux..linux ...

Fake: Redundant Server Switch
Fake has been designed to switch in backup servers on a LAN.

Linux Server Backup -- at Shopping.com
Find, compare and buy Linux Server Backup and other Computer Software products. Read product reviews and compare prices with tax and shipping.

Linux hosting
...basic custom java linux macintosh mfc palm php plant power software visual window, linux mail server.....linux backup linux certification etc. linux mp3 player. About linux application ...

CD-Utils - Linux CD Backup and Burning
A simple way to backup data and burn CD media from the unix command line. Includes a web-based interface for SME Server. Burns data, audio, multi-mode and iso images.

Linux Backup, Unix Backup, Online Backup for Linux, Solaris and
How to Backup using rsync with IBackup ... With Stunnel version 3. Run Stunnel on your UNIX or linux server: $ stunnel -c -d localhost:45873 -r...

Other Recommended Backup linux server Links

Linux backup tar
Linux oracle cluster
Access cluster free linux
Cluster linux manegment sof...
Bladecenter linux cluster
Hpc linux cluster
Linux cluster software
Download red hat linux 9
How to install red hat linu...
Red hat linux 9 tutorial
Linux help desk software
Help desk linux
Blogspot.com desk help linu...
Suse linux help
Mandrake linux help

   
   

Site Map :: Search :: About Us :: Contact Us :: Articles

© http://www.pcinform.com/Linux All Rights Reserved