|
Part I is concerned with increasing the security of your systems. This book is organized with the understanding that some SysAdmins have only a little time right now, but certainly want to fix the most severe holes immediately, before someone breaks into their systems.The book then progresses into more involved procedures that can be done to increase security, allowing the system administrator to progress to as secure a system as time and desire allows.It even addresses some simple kernel modifications to increase security still further. It can be treated as a workbook, to be worked through a bit at a time, or as a reference book, with relevant areas picked from the Table of Contents or from the extensive Index. Part II deals with preparing for an intrusion. No computer or network is completely secure and anyone who thinks that his is 100 percent secure is, well, probably due for some "education." Most computer security books deal almost exclusively with securing systems and devote only a few pages to dealing with an intrusion that 100 percent of their readers will suffer. This author considers this to be a naive disservice. In many of the cases that this author has been asked to analyze, the vulnerability that allowed the break-in turned out to be a bug in system software that had not been well known at the time. This proves the point that just securing a system is not sufficient. This book is called Real World Linux Security: Intrusion Prevention, Detection, and Recovery because in the real world a significant percentage of computers are broken into and the prepared SysAdmin is well prepared for this. Perhaps 55 percent of SysAdmins who have secured their Linux boxes still will have to deal with an intrusion. Even the author's own client-side network on broadband suffers hourly intrusion attempts, but it has been prepared for intrusion attempts and even for fast recovery from a possible successful intrusion. Part III deals with detecting intrusions and sophisticated notification and logging in detail. Part IV discusses recovering from intrusions successfully, completely, and quickly! It also covers tracking down the intruder and dealing with law enforcement officers and the courts, and what to expect from them. Outages can cost millions of dollars a day in lost revenue and bad publicity can mean more lost business and worse the dismissal of the SysAdmins. A quick recovery may get no publicity and might even be blamed on a glitch in the Internet. Download free ebooks on linux: real world linux security 2nd edition
|
Operating System
Part I is concerned with increasing the security of your systems. This book is organized with the understanding that some SysAdmins have only a little time right now, but certainly want to fix the most severe holes immediately, before someone breaks into their systems.