Bạn có muốn phản ứng với tin nhắn này? Vui lòng đăng ký diễn đàn trong một vài cú nhấp chuột hoặc đăng nhập để tiếp tục.
Welcome muare.forum-viet.com

LinuxCBT Debian 3 Edition - Security Implementation Techniqu 1466027_a28518e0bb72af535fc0

Latest topics
» Bạn nên biết điều kiện du học Hàn Quốc có
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyMon 05 Oct 2015, 7:51 pm by giaychuotkhoet

» Hộp đựng đa năng trong phòng tắm và các đồ dụng tiện llợi khác
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyWed 22 Jul 2015, 1:23 am by aloonline1987

» gel bôi trơn ấm áp warm lovin
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyTue 19 May 2015, 4:24 pm by shopnguoilon_sg

» màng film tránh thai vcf dành cho chị em
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyTue 19 May 2015, 4:19 pm by shopnguoilon_sg

» màng film tránh thai vcf dành cho chị em
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyTue 19 May 2015, 4:17 pm by shopnguoilon_sg

» stud 100 khẳng định đẳng cấp phái mạnh
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyFri 15 May 2015, 11:25 am by shopnguoilon_sg

» Lover aider máy mát xa dành cho nữ
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyFri 15 May 2015, 11:23 am by shopnguoilon_sg

» cung cấp máy ép dĩa chất lượng
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyFri 17 Apr 2015, 2:15 pm by huyenrio

» Máy in hình lên ly
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyWed 25 Mar 2015, 2:44 pm by huyenrio

» Máy in hình lên áo
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyWed 25 Mar 2015, 2:43 pm by huyenrio

»  trang trí cây thông noel ở vinh,cho thuê cây thông noel ở vinh,chuyển quà noel ở vinh
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyFri 28 Nov 2014, 8:44 am by sunflowerhn83

» Máy in hạn sử dụng DMJ-B chính hãng, giá sốc
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyThu 02 Oct 2014, 9:40 am by phamlinhnd1010

» Dạy cắm hoa chuyên nghiệp,dạy cắm hoa nghệ thuật,dạy cắt tỉa của quả ở T.p Vinh Nghệ An
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyTue 30 Sep 2014, 10:10 am by haiha131276

» công ty Yên Phát chuyên phân phối, lắp đặt camera chính hãng giá rẻ nhất miền Bắc.
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyFri 26 Sep 2014, 10:57 am by phamlinhnd1010

» HOT! Chung cư mini Xuân Đỉnh ở ngay giá chỉ từ 690 triệu 1 căn
LinuxCBT Debian 3 Edition - Security Implementation Techniqu EmptyFri 26 Sep 2014, 10:44 am by xuantruong23


LinuxCBT Debian 3 Edition - Security Implementation Techniqu

Go down

LinuxCBT Debian 3 Edition - Security Implementation Techniqu Empty LinuxCBT Debian 3 Edition - Security Implementation Techniqu

Bài gửi by Nguyen Trung Hoa Sun 22 Aug 2010, 8:24 am

LinuxCBT Debian 3 Edition - Security Implementation Techniqu LCBT_Deb3x_Box
LinuxCBT Debian 3 Edition - Security Implementation Techniques - Module 5

TCP Wrappers (hosts.allow/hosts.deny)

* Discuss TCP Wrappers concepts & applications
* Identify primary package and key TCP Wrappers configuration files
* Demonstrate disabled TCP Wrappers configurations by attempting connectivity
* Examine pre and post TCP Wrappers configuration effects
* Implement TCP Wrappers for common services
* Test local & remote access to TCP Wrappers-protected host & services


XINETD (Enhanced & Secure INETD Super Server Implementation)

* Upgrade Debian GNU/Linux system from INETD to XINETD
* Identify key XINETD configuration files
* Explain the contents and structure of xinetd.conf
* Restrict access to various daemons/services based on hosts & subnets
* Compare & contrast TCP Wrappers and XINETD
* Secure services with XINETD
* Insert common global xinetd.conf daemon/service defaults
* Configure XINETD to log via SYSLOG
* Configure XINETD to restrict number of spawned instances of daemons/services
* Configure port forwarding of daemons/services
* Configure XINETD to bind daemons/services to specific sub-interfaces (Virtual IP addresses)
* Explore additional XINETD features


IPTABLES (Netfilter Linux Kernel-based Firewall)

* Discuss IPTABLES/Netfilter Concepts
* Explain IPTABLES default chains/filters and policies
* Examine TCP/ICMP communications pre-IPTABLES chains
* Implement ICMP inbound filtration based on various hosts
* Use Cisco PIX Firewall to verify ICMP debugging
* Filter traffic based on Layer-4 TCP/UDP (Source/Destination Ports) information
* Restrict access to various daemons (SSH/FTP/HTTP/etc.)
* Test connectivity locally and remotely (RedHat/Windows/etc.)


Network Mapper (NMAP)

* Obtain, compile and install current version of NMAP
* Identify commonly used NMAP options/switches/parameters
* Perform default TCP SYN-based ethical scans of local and remote resources
* Explain typical TCP handshake protocol while using NMAP
* Examine the results of scans on remote Cisco firewall with debugging mode enabled
* Perform default TCP Connect-based ethical scans of local and remote resources
* Examine the results of scans on remote Cisco PIX Firewall with debugging mode enabled
* Use NMAP to scan using aliased and spoofed IP addresses
* Peform local ethical scans
* Identifiy key NMAP configuration files
* Use NMAP to perform operating system fingerprinting
* Peform subnet-wide ethical scans


Nessus Vulnerability Scanner

* Download, compile, and prepare Nessus vulnerability scanner for deployment
* Implement Nessus client/server Security vulnerability scanner in ~ Phisher ~mode
* Identify Nessus's key features and explore its graphical interface
* Ethical scan of the local system for vulnerabilities
* Examine scan results via the reporting engine
* Discuss mitigation techniques for suggested vulnerabilities
* Ethical scan of a fraction of the class C subnet by using CIDR
* Examine the scan results and discuss
* Ethical scan of the entire class C subnet
* Examine Nessus process utilization while vulnerability scans are in progress


Lockdown (Debian GNU/Linux System Lockdown)

* Explain potential network-based entry points to the system
* Identify superfluous daemons/services using NETSTAT & NMAP
* Disable superfluous daemons/services using update-rc.d and proper scripts
* Identify changes in the system as a result of performing the lockdown
* Disable superfluous daemons/services using XINETD
* Restrict source address access to daemons/services using XINETD
* Restrict bind address for daemons/services using XINETD
* Discuss application-layer security for added protection (MySQL/Apache/Sendmail/SSH/Nessus)
* Force SSHD to bind to desired layer-3 IP address for controlled security
* Secure the system using IPTABLES & TCP Wrappers for added security


Snort 2.1x Intrusion Detection System (IDS)

* Obtain, and install Snort pre-requisites (libpcap/libpcre/etc.)
* Obtain, compile and install the Snort Intrusion Detection System (IDS)
* Identify and explain key operating modes (Sniffer/Logger/IDS)
* Run Snort in all three modes and examine the results
* Output Snort logs to ASCII text format and examine the results
* Output Snort logs to binary format and examine the results
* Use Snort with Berkeley Packet Filter (BPF) to parse logs
* Implement Snort with BPF to filter real-time traffic
* Obtain and install requisite MySQL libraries for Snort
* Recompile Snort IDS with MySQL support
* Implement Snort IDS with MySQL integration for real-time reporting
* Implement ACID web-based front-end for examining Snort logs


Code:


http://hotfile.com/list/590130/23fcbe8
Nguyen Trung Hoa
Nguyen Trung Hoa
Admin

Đánh giá tốt! : 24

Nam
Goat
Tổng số bài gửi : 51033
Birthday : 09/10/1979
Tuổi : 45
Địa chỉ: : Lô L14-4 Khu Phố FBS - Phường 9 - Tp Tuy Hoà - Phú Yên
Điện thoại: : Mobile: 0985017089 ; 0918 957 282
Điểm : 182626
Ngày đăng ký : 13/10/2007

https://muare.forum-viet.com

Về Đầu Trang Go down

Về Đầu Trang

- Similar topics

 
Permissions in this forum:
Bạn không có quyền trả lời bài viết