Unix Class Security 5

From Rivalug Wiki

Jump to: navigation, search

Based on: http://www.geekcomix.com/classnotes/ by Samuel Hart (hart@physics.arizona.edu) in 2005 released under Creative Commons Attribution, Share Alike Generic License 2.0

Looks like the original pages no longer are posted, but they are still available on the Wayback Machine:

http://web.archive.org/web/20080621235004/http://www.geekcomix.com/classnotes/

The following material is also released under Creative Commons Attribution, Share Alike Generic License 3.0


  • /A Review

Contents

Linux Encryption

  • /Overview of Linux Encryption Options
  • /Kernel Space Encryption
  • /Encryption with aespipe

PROJECT : /Encrypt an archive

Monitoring Activity

Snort IDS

  • /Introduction to Snort
  • /Snort Install
  • /Snort Usage
  • /Snort Configuration

Shadow

  • /Introduction to Shadow

= Trapping the Intruder

  • /Honeypots and Tarpits
  • /Introduction to thp
  • /Configuring thp

PROJECT /Setup Tiny Honeypot with Snort

/Introduction to TripWire

PROJECT /Setup Logcheck and TripWire

/Monitoring Attacks with Ethereal

Regaining Control

  • /General behavior
  • /Backing up the system
  • /Forensics analysis
  • /Handling Running Cracker's Processes
  • /Emergency Shutdown
  • /Booting Read Only

PROJECT : /Regain Control