Linux Server Security, Second Edition
By
Michael D. Bauer
January 2005
Pages: 542
| Table of Contents
| Index
| Sample Chapter
| Colophon
Table of Contents
-
Chapter 1 Threat Modeling and Risk Management
-
Components of Risk
-
Simple Risk Analysis: ALEs
-
An Alternative: Attack Trees
-
Defenses
-
Conclusion
-
Resources
-
Chapter 2 Designing Perimeter Networks
-
Some Terminology
-
Types of Firewall and DMZ Architectures
-
Deciding What Should Reside on the DMZ
-
Allocating Resources in the DMZ
-
The Firewall
-
Chapter 3 Hardening Linux and Using iptables
-
OS Hardening Principles
-
Automated Hardening with Bastille Linux
-
Chapter 4 Secure Remote Administration
-
Why It's Time to Retire Cleartext Admin Tools
-
Secure Shell Background and Basic Use
-
Intermediate and Advanced SSH
-
Chapter 5 OpenSSL and Stunnel
-
Stunnel and OpenSSL: Concepts
-
Chapter 6 Securing Domain Name Services (DNS)
-
DNS Basics
-
DNS Security Principles
-
Selecting a DNS Software Package
-
Securing BIND
-
djbdns
-
Resources
-
Chapter 7 Using LDAP for Authentication
-
LDAP Basics
-
Setting Up the Server
-
LDAP Database Management
-
Conclusions
-
Resources
-
Chapter 8 Database Security
-
Types of Security Problems
-
Server Location
-
Server Installation
-
Database Operation
-
Resources
-
Chapter 9 Securing Internet Email
-
Background: MTA and SMTP Security
-
Using SMTP Commands to Troubleshootand Test SMTP Servers
-
Securing Your MTA
-
Sendmail
-
Postfix
-
Mail Delivery Agents
-
A Brief Introduction to Email Encryption
-
Resources
-
Chapter 10 Securing Web Servers
-
Web Security
-
The Web Server
-
Web Content
-
Web Applications
-
Layers of Defense
-
Resources
-
Chapter 11 Securing File Services
-
FTP Security
-
Other File-Sharing Methods
-
Resources
-
Chapter 12 System Log Management and Monitoring
-
syslog
-
Syslog-ng
-
Testing System Logging with logger
-
Managing System Logfiles with logrotate
-
Using Swatch for Automated Log Monitoring
-
Some Simple Log-Reporting Tools
-
Resources
-
Chapter 13 Simple Intrusion Detection Techniques
-
Principles of Intrusion Detection Systems
-
Using Tripwire
-
Other Integrity Checkers
-
Snort
-
Resources
-
Appendix A Two Complete iptables Startup Scripts
-
Colophon
Return to Linux Server Security