Linux Hardening in Hostile Networks: Server Security from TLS to Tor

Linux Hardening in Hostile Networks: Server Security from TLS to Tor (Prentice Hall Open Source Software Development Series)
0134173260
Linux Hardening in Hostile Networks: Server Security from TLS to Tor (Prentice Hall Open Source Software Development Series)
by 作者: Kyle Rankin
ISBN-10 书号: 0134173260
ISBN-13 书号: 9780134173269
Edition 版本: 1
Publisher Finelybook 出版日期: 2017-08-07
Pages: 272


Book Description
Implement Industrial-Strength Security on Any Linux Server
In an age of mass surveillance,when advanced cyberwarfare weapons rapidly migrate into every hacker’s toolkit,you can’t rely on outdated security methods—especially if you’re responsible for Internet-facing services. In Linux® Hardening in Hostile Networks,Kyle Rankin helps you to implement modern safeguards that provide maximum impact with minimum effort and to strip away old techniques that are no longer worth your time.
Rankin provides clear,concise guidance on modern workstation,server,and network hardening,and explains how to harden specific services,such as web servers,email,DNS,and databases. Along the way,he demystifies technologies once viewed as too complex or mysterious,but now essential to mainstream Linux security. He also includes a full chapter on effective incident response.
Each chapter begins with techniques any sysadmin can use quickly to protect against entry-level hackers and presents intermediate and advanced techniques to safeguard against sophisticated and knowledgeable attackers,perhaps even state actors. Throughout,you learn what each technique does,how it works,what it does and doesn’t protect against,and whether it would be useful in your environment.
Learn how to
Apply core security techniques including 2FA and strong passwords
Protect admin workstations via lock screens,disk encryption,BIOS passwords,and other methods
Use the security-focused Tails distribution as a quick path to a hardened workstation
Compartmentalize workstation tasks into VMs with varying levels of trust
Harden servers with SSH,use apparmor and sudo to limit the damage attackers can do,and set up remote syslog servers to track their actions
Establish secure VPNs with OpenVPN,and leverage SSH to tunnel traffic when VPNs can’t be used
Configure a software load balancer to terminate SSL/TLS connections and initiate new ones downstream
Set up standalone Tor services and hidden Tor services and relays
Secure Apache and Nginx web servers,and take full advantage of HTTPS
Perform advanced web server hardening with HTTPS forward secrecy and ModSecurity web application firewalls
Strengthen email security with SMTP relay authentication,SMTPS,SPF records,DKIM,and DMARC
Harden DNS servers,deter their use in DDoS attacks,and fully implement DNSSEC
Systematically protect databases via network access control,TLS traffic encryption,and encrypted data storage
Respond to a compromised server,collect evidence,and prevent future attacks
Contents
Chapter 1. Overall Security Concepts
Chapter 2. Workstation Security
Chapter 3. Server Security
Chapter 4. Network
Chapter 5. Web Servers
Chapter 6. Email
Chapter 7. DNS
Chapter 8. Database
Chapter 9. Incident Response

下载地址:

AW Linux Hardening in Hostile Networks 0134173260.epub

下载地址:

AW Linux Hardening in Hostile Networks 0134173260.mobi

下载地址:

AW Linux Hardening in Hostile Networks 0134173260.pdf

打赏
未经允许不得转载:finelybook » Linux Hardening in Hostile Networks: Server Security from TLS to Tor

相关推荐

  • 暂无文章

评论 抢沙发

  • 昵称 (必填)
  • 邮箱 (必填)
  • 网址

觉得文章有用就打赏一下

您的打赏,我们将继续给力更多优质内容

支付宝扫一扫打赏

微信扫一扫打赏