Explore top 10 tips to secure your open-source projects now. Read More
×System security is a crucial aspect of Linux administration. Securing every aspect of the system can be difficult as soon as we have several software packages, user accounts, and settings. It is, therefore, important to use a script like Lynis to check for potential security flaws and attack surfaces. . The tutorial linked below will show you how to automate security checks on a Linux System. Lynis checks your system for security flaws and vulnerabilities rather than manually checking it. . Master the art of streamlining security assessments using Lynis, improving system evaluations and uncovering weaknesses in Linux environments.. Linux Security Audits, Automating Security Checks, Lynis Tool. . Anthony Pell
Several tools can assist you in keeping your Linux system secure, but one tool stands out: config-server firewall (CSF). This tool is an all-in-one security solution for your Linux machine, and it offers many features that make it stand out from other options. . CSF was created by Daniel Borkmann, who wanted to create a tool that could help him with both personal and professional projects. As such, he created CSF with features like real-time log monitoring and alerts. It also has a built-in firewall with support for IPTables, which means you can use it to create advanced rules for blocking traffic and ports. In addition to these features, CSF also comes with DDoS protection capabilities—a feature that will prove useful if you ever find yourself under attack by hackers or bots trying to take down your site. Fellow Rocky Linux users: learn how to install and configure CSF on Rocky Linux 9 in the tutorial linked below. I found it very helpful and straightforward. Please reach out to me on X @lnxsec if you have any questions - I'd love to help! . Establish and fine-tune Config Server Firewall (CSF) on Rocky Linux 9 by following guidelines to enhance your system's security seamlessly. CSF Installation, Config Server Firewall, Rocky Linux Firewall, Linux Security Setup. . Brittany Day
In this article, we'll look at how to manage SELinux policies, implement and customize them, and how to troubleshoot problems. . SELinux is an important part of modern Linux security. It's designed to enhance the system's security by allowing users to set fine-grained access control policies for different processes and files. This helps prevent exploits from running as root or modifying system files that are outside their scope. SELinux can be configured in two ways: centrally (through the policy management tool) or locally (at the user level). When you configure SELinux centrally, it's known as "policy management." When you configure SELinux locally, it's called "user space configuration." If you're a Linux administrator who wants to manage SELinux policies or implement them on your own servers, then the article linked below will help you do just that! The link for this article located at Security Boulevard is no longer available. . Grasp the intricacies involved in the oversight and tailoring of AppArmor profiles to significantly bolster your Linux security architecture.. SELinux Management, Access Control Policies, Linux Security Implementation. . Brittany Day
How do you know if your systems are secure? Penetration testing is one way to find out. Here is how to set up Kali Linux, which has a full suite of security testing tools. . Penetration testing is a requirement for so many businesses. After all, you’re going to need to know if your systems have vulnerabilities , so they can be mitigated as quickly as possible. One the if best ways to do this is to attempt to break into the system itself. One of the most widely used pen testing platforms on the market is Kali Linux . With this Linux distribution, you have a plethora of tools at your disposal. But what if you want to be able to run penetration testing without having to install a full-blown operating system? And if your security staff (or admins) have at least a fundamental understanding of Docker containers, they could always deploy Kali Linux as a Docker container and run penetration testing from within a headless container. It’s actually quite a fascinating and flexible method of penetration testing and I’m going to show you how to make it happen. . Become an expert in ethical hacking using Kali Linux hosted within a Docker environment for enhanced safety. Fortify your defenses now!. penetration testing, kali linux, docker container, security tools, system vulnerabilities. . Brittany Day
We know that the most effective way to strengthen system security and protect against any cyber threat is to keep our system updated with the latest OS and application software patches. For Linux the kernel upgrades and security patches require a system reboot, hence it is hard to maintain the OS safe. Here we are going to see how to update the Linux kernels, without a reboot. . There are 3 different methods and let’s what are they. The command line is the standard way to do an update and if you’re using Ubuntu, you can follow the below command. . Enhance your Linux system's security without rebooting by using kexec, live patching tools, containerization, smart package management, and systemd services. Linux Kernel Patching, System Security Methods, Kernel Update Process. . Brittany Day
The sudo command gives a user superuser or root powers. No doubt you gave them the “with great power comes great responsibility” speech. Here’s how to check if they listened or not. . The sudo command stands for “substitute user do.” It lets an authorized person execute a command as though they were another user. It can take command line parameters, one of which is the name of the user you wish to have the command executed as. The most common way sudo is used is to omit the command line options and use the default action. This effectively executes the command as the root user. To use sudo in this way requires special permission. Only the privileged can use sudo . When you install a modern Linux distribution, you’re prompted to set up a root password that you can use with sudo . Permission to do so is granted to the regular user that you create during installation. This is the preferred way to handle access to the capabilities of the root user. The old way was to create a root user and log in as them in order to administer your system. The link for this article located at How-To Geek is no longer available. . The su command empowers permitted users to run operations as a different user, bolstering system safety and administration.. Sudo Command, Enhanced Security, User Permissions, Command Management, Linux Best Practices. . Brittany Day
Are you certain your data center Linux servers are free from vulnerabilities? If not, you need to scan them immediately! Learn how this can be done with Nessus. . Nessus is one of those tools every network, system and security admin should have at the ready. Once up and running, you can easily set up scans to check your data center servers to make sure everything is on the up and up. And knowing whether or not your systems suffer from vulnerabilities is one of the more challenging aspects of your job. Fortunately, Nessus scans are incredibly easy to run. They do take some time to complete, but the process of launching a scan should take you no time. . Discover the essential steps to conduct a vulnerability assessment on your Linux systems utilizing the Nexpose tool to enhance overall protection.. Nessus Scan, Linux Server Security, Vulnerability Assessments, Network Administration. . Anthony Pell
Learn how to install and use Lynis 3.0.4 to automate auditing and improve the security of your Linux system in this tutorial. . Lynis is an open-source and much powerful auditing tool for Unix/Linux-like operating systems. It scans the system for security information, general system information, installed and available software information, configuration mistakes, security issues, user accounts without a password, wrong file permissions, firewall auditing, etc. Lynis is one of the most trusted automated auditing tools for software patch management, malware scanning, and vulnerability detecting in Unix/Linux-based systems. This tool is useful for auditors, network and system administrators, security specialists, and penetration testers. . Streamline security assessments of your Unix systems using Lynis, improving comprehensive security measures and update strategies.. Lynis Auditing Tool, Linux Security Audit, Open Source Security Tool, System Auditing Linux, Security Improvement Tutorial. . Brittany Day
Get the latest Linux and open source security news straight to your inbox.