Hmmm.
Beginner Level: Focus on Practical Setup
(must have System Administration Background)
- learns mechanics of basic attacks (DoS, buffer overflows, etc)
- learn how to setup secure server platforms for UNIX and Windows
- learns how to use vulnerability test tools (NMAP, Saint,etc)
and interpret results
- learns how to setup firewall rules (preferably by hand)
- learns how to setup basic intrusion detection system
(snort, Shadow, Tripwire)
- learns appliance-specific (routers, switches,etc.) security features
and how to use them.
- works out a site-specific security plan/audit/recommendation for
their employer
Intermediate Level: Focus on Detection Skills
- learns how to analyze logs for security problems. Ideally should
be able to analyze network traffic patterns and decide if this
is a Nimda/NMAP/etc probe.
- learns rootkits/trojan and how to detect/stop them.
- works out a contingency plan (in-case-of-attack-what-should-we-do)
for their employer.
Advance Level:
- learns how to analyze an "owned" site/hard disk and determine why
the security failed. If possible, be able to "clean" the problem.
- knows how to do a security walkthrough of actual code (ala-OpenBSD)
I left out the details regarding legal/ethics issues...it should be
somewhere between Beginner and Intermediate.
Ambo
On Wed, 31 Oct 2001 12:09:28 +0800, Migs Paraz <[EMAIL PROTECTED]> wrote :
> On Wed, Oct 31, 2001 at 10:38:36AM +0000, Kelsey Hartigan Go wrote:
> > Perhaps a listing of the vulnerabilities of Linux and how to patch them
up...
>
>
> We already had a presentor on securing Linux systems at some event in the
past,
> so this is no biggie... :)
>
> _
> Philippine Linux Users Group. Web site and archives at
http://plug.linux.org.ph
> To leave: send "unsubscribe" in the body to [EMAIL PROTECTED]
>
> To subscribe to the Linux Newbies' List: send "subscribe" in the body to
[EMAIL PROTECTED]
>
>
>
_
Philippine Linux Users Group. Web site and archives at http://plug.linux.org.ph
To leave: send "unsubscribe" in the body to [EMAIL PROTECTED]
To subscribe to the Linux Newbies' List: send "subscribe" in the body to
[EMAIL PROTECTED]