Good Info
Translate Page To German Tranlate Page To Spanish Translate Page To French Translate Page To Italian Translate Page To Japanese Translate Page To Korean Translate Page To Portuguese Translate Page To Chinese
     
Categories

Accessories
Arts
Arts and Crafts
Automotive
Business
Business Management
Career
Cars and Trucks
CGI
Coding Sites
Computers
Computers and Technology
Cooking
Crafts
Current Affairs
Databases
Education
Entertainment
Film
Finances
Gardening
Healthy Living
Holidays
Home
Home Management
Internet
Medical
Medical Business
Medicines and Remedies
Men Only
Motorcyles
Our Pets
Outdoors
Pets
Psychiatry & Mental Heal
Recreation
Relationships
Religion
Self Improvement
Society
Sports
Staying Fit
Technology
Travel
Web Design
Weddings
Wellness, Fitness and Di
Women Only
Womens Interest
Writing
 
Stats
Total Articles: 811103
Total Authors: 79955


Newest Member
Arthur Brewer

Ubuntu and Debian Security Applications Review


By: kikaru kung
Submitted: 2010-05-29 02:29:18 | Word Count: 778


When reviewing existing security policies a few factors need to be accounted for first. These being performance, stability and overall use of system resources. Use this to see the need for every of your own requirements. Instead of just pushing all of the urged on to a single server. As some applications reviewed are not perpetually entirely interchangeable with the others mentioned.
That being said we have a tendency to'll start with Apache the World’s most in style Web Server.
Mod Security
Without doubt one of my personal favorite Apache modules is Mod Security. Although it will require registration to download and isn't entirely free while not restriction. Mod Security is a useful Net Application firewall that deters heaps of the scum and random bots floating round the Internet today. Per the Mod Security web site over 70% of all attacks allotted on the internet nowadays are done on the net application level. Which is extremely relevant since a single compromised web site can often leak thousands if not lots of thousands of passwords and user credentials in just one compromise.
[ advertisement ]

Professionals
Mod Security incorporates a very strict rule-set that is capable of blocking many varieties of net application attacks most of which can be found in the rules kicked off by the OWASP prime 10.
Cons
The default rules will break functionality of Net applications at first. However it will be fixed if you can notice the offending rules by viewing log files and commenting those rules out. Common things that will happen is that users are unable to login or some other functionality such as a custom search could break.
Snort
The following terribly interesting application is Snort the commonly known defector standard in intrusion detection. Snorts job is to observe networks while being as lightweight weight as humanly possible. On not consume to many system resources and bog down the users of the systems it could be running on. What very makes snort distinctive but is that it has heritage of being a terribly stable and robust IDS with each open source rule-sets and additional advanced industrial rule-sets which are available via subscription.
Pros
Light-weight and versatile, Trusted and stable.
Cons
The free rules on the market have a lot to be desired when compared to the subscription rules.
AIDE
AIDE the file integrity checker can be used to make hashes of files or directories and may be a generic replacement for the older Linux application trip wire. If an application has been changed without consent a straightforward cross reference via an image disk will reveal insights quickly as to that files might have changed within the process. By providing SHA1 hashes or different algorithms. It's so terribly helpful for analyzing the exact reason behind a vulnerability in the event of a possible intrusion and in several respects will be thought-about a root-kit detector without all the flamboyant bells and whistle like our next application.
Professionals
Supports custom algorithms and makes up for where trip wire and others once failed.
Cons
Lack of documentation to properly implement and utilize for fewer experienced users it will be a concept you'll offer up on quickly. (I do not blame you however it's value it.)
RKHUNTER
Another good Root-kit detector is RKHUNTER and works terribly abundant the same as AIDE but is a lot of specifically a root-kit detector in that it scans all the usual locations where it would make sense for root-kits to hide on a Linux system or where they need traditionally been stored.
Execs
Very comprehensive and has support for a wide selection of common root-kits.
Cons
By default on debian and ubuntu it flags a false positive for gawk, awk and a few other directories however I believe this to only be a false positive.
FAIL2BAN
Fail2Ban helps block out automated and typically brute-force queries by bots or potential attackers over SSH that make too several incorrect log-in attempts.
Professionals
By automatically banning bots not only do you defend your system from compromise however conjointly facilitate keep performance of the server at a lot of optimal levels.
Cons
I've locked myself out briefly before by not setting the threshold high enough and forgetting what password I used. So long as you do not do that you should be fine.

Author Resource:-

Link :

Barbara K Howard has been writing articles online for nearly 2 years now. Not only does this author specialize in Security , you can also check out his latest website about:

Portable Baby Bed Which reviews and lists the best
Portable Crib Mattress

HTML Ready Article. Click on the "Copy" button to copy into your clipboard.




Firefox users please select/copy/paste as usual
New Members
Nav Menu
Sponsors



Featured Authors
Name: Lorenzo Bouche
Joined: 2012-05-20
City: West Sussex
State: Surrey
View My Bio & Articles

Name: Joseph Batchelor
Joined: 2012-05-20
City: Chicago
State: IL
View My Bio & Articles

Name: Vision Services
Joined: 2012-05-20
City: Ahmedabad
State: Gujarat
View My Bio & Articles

Name: Tripti Sharma
Joined: 2012-05-20
City: Bangalore
State: West Bengal
View My Bio & Articles

Name: Brian Buck
Joined: 2012-05-20
City: Phoenix
State: AZ
View My Bio & Articles