资源描述:
《principles of unix system management - solaris 8》由会员上传分享,免费在线阅读,更多相关内容在教育资源-天天文库。
1、PrinciplesofUnixSystemManagement-Solaris8RandyMarchanyVATechComputingCenterBlacksburg,VA24060540-231-9523email:randy.marchany@vt.eduva-scanCopyright1999,MarchanySystemAdministrationDuties1.InstallingSystemPatches2.MakingSystemChecklists3.Editingsystemconfigurationfiles4.K
2、eepingtrackofSUID/SGIDprograms5.Recordingdevicefilepermissions6.Keeptrackofworld,groupwritablefiles,directories7.Recordencryptedchecksumofallsystembinaries8.Verifypasswordstrengthforsystem,useraccounts9.Expiringinactiveaccounts10.Restrictrootaccesstothesystemconsoleva-sca
3、nCopyright1999,MarchanySystemAdministrationDuties11.Allownoguestaccounts,nomultipleusers/account,1user/account12.Disabler-commands13.MonitorNFSusageusingnfsstat,nfswatch.Check/etc/exports14.MonitorNISsystemusage15.Monitormodemfiledevicepermissions16.DisableUUCPorverifythe
4、computerhangsupthephonecorrectly17.InstalltheLATESTversionofSendmail(8.9.x)18.Disabletftpservices19VerifyFTPclientandserverconfigurations20.SetupanemailaliasfortheFTPaccountva-scanCopyright1999,MarchanySystemAdministrationDuties21.Setcorrectsystem-wideumask22.Allowno.rhos
5、t,.netrcfiles23.Verifybackup/restoreprocedures24.Checkstickybitfilepermissions25.Checkcronandatjobfilesforcompleteness26.Enablesystemaccounting,systemauditingfunctions27.Checksystem-widepathdefinitions28.Installtools:portsentry,logcheck,TCPWrappers,tripwire,lsof,CISSecuri
6、tyBenchmarkdocument29.CheckforIPforwardinginthekernel30.CheckXWindowssecurityva-scanCopyright1999,MarchanySysAdminTricks/Hints1.Getagoodideaofwhatisnormalactivityonyoursystem.UseUnixperformancecommand/scriptstomonitoryoursystem.Checkuserlogintimestogetafeelforwhatisnormal
7、activityforauser.2.Obtainchecklistsatirregularintervals.Neverdoyourmonitoringatregularintervals.Storethechecklistsoffline.3.Rememberthat1megabytedoesn'tnecessarilyequal1megabyte.gigabytegigabyteRealmathtellsus1Mb=2**20=1,048,576bytes1Gb=2**30=1,073,741,824bytesBUTtovendor
8、s,1MB=1,000,000bytesand1GB=1,000,000,000bytes.So,youmaynotbemissingspace.Avendor1Gbdiskgivesyouo