Linux-security.pdf

Linux-security.pdf

ID:33925635

大小:122.17 KB

页数:23页

时间:2019-02-28

Linux-security.pdf_第1页
Linux-security.pdf_第2页
Linux-security.pdf_第3页
Linux-security.pdf_第4页
Linux-security.pdf_第5页
资源描述:

《Linux-security.pdf》由会员上传分享,免费在线阅读,更多相关内容在学术论文-天天文库

1、SecuringLinuxPresentedby:DarrenMobleyIntroduction●Hello,MynameisDarren●HavebeensupportinganddevelopingcPan-elforover4years.●We'llbecoveringsomestepstotaketohelpprotectserversfromcommonattacksMainTopics●Localsecuritymeasures●Protectingagainstcommonremoteattacks●Wha

2、ttodoafteranattack,cleanup●HavingandfollowingaSecurityPolicyLocalAttacks:PasswordsMakesureexistingusershavedecentpass-words–Crackyourownusers'passwordsusingJTR,crack–Preferablyrunthecrackersonadedicatedma-chine,nottheserver,duetoload–Anypasswordsthatcrackinunderaf

3、ewhoursneedtohaveshellaccessremoveduntilthepasswordcanbechanged.Thisshouldbewrit-tenintoTOS/AUPwhichis“signed”bytheclient.LocalAttacks:xinetd●Turningoffunneededdaemonsinxinetd–Check/etc/xinetd.conf–Check/etc/xinetd.d/*●Commononesarecupsd(printingdaemon)●nfs/statd(

4、unlessusingnfsmountedFS)LocalAttacks:RunningProcessesFindlocallyrunningprocesses–Oftenscriptkiddieswilllaunchbackdoorscriptsontheserverusingvulnerablephpscripts–BadclientsorhackedaccountswillbeusedtolaunchIRCbots/bouncers●`psauxww`●`lsof-n`–Trytofindprocesseshidde

5、nbyarootkit,suchasSuckIt●mpid=`sysctlkernel.pid_max

6、cut-d""-f3`;foriin`seq1$mpid`;dotest-f/proc/$i/cmdline&&(echo-n"[$i]";strings/proc/$i/cmdline;echo);doneLocalAttacks:LoginAccess●Settingloginaccessdefinitions–/etc/login.defs●ExpirepasswordsafterPASS_MAX_DAYS●Set

7、minimumpasswordlengthtoPASS_MIN_LEN●SetnumberofdaysbeforepassexpirestosendreminderwithPASS_WARN_AGE●Therearemoreoptionsthatarewelldocumentedinthedefaultfile–/etc/hosts.allowand/etc/hosts.deny●Suggesttousefirewallinsteadasitwillprotectallservices,notjusttheoneswrit

8、tentoobeytherulessetinthehosts.*filesLocalAttacks:ShelllimitsSettingresourcelimitsforshellaccounts–Setin/etc/security/limits.conf●Protectagainstforkbombsandoutofcontrolapplica-tions,scripts●Willwanttostartoutverylax,makestricteraftertest-ingwithcurrentsettings;asn

9、eedarises●Examplesettings:–@usershardnofile500–@usershardcpu30–@usershardnproc150–@userssoftnproc100–@usershardrss50000–@users-maxlogins3–nobodyhardnofi

当前文档最多预览五页,下载文档查看全文

此文档下载收益归作者所有

当前文档最多预览五页,下载文档查看全文
温馨提示:
1. 部分包含数学公式或PPT动画的文件,查看预览时可能会显示错乱或异常,文件下载后无此问题,请放心下载。
2. 本文档由用户上传,版权归属用户,天天文库负责整理代发布。如果您对本文档版权有争议请及时联系客服。
3. 下载前请仔细阅读文档内容,确认文档内容符合您的需求后进行下载,若出现内容与标题不符可向本站投诉处理。
4. 下载文档时可能由于网络波动等原因无法下载或下载错误,付费完成后未能成功下载的用户请联系客服处理。
相关文章
更多
相关标签