Iptables、Firewall
- [HOWto; Iptables; Fireware] Stateful iptables Firewalls: Part 2 of 2 - Intel?Software Network #
Welcome to Part 2 of 'Stateful iptables firewalls.' In this article, I'll show you how to design a stateful, stealthy, server-ready Linux* netfilter-based firewall from the ground up. In Part 1, I explained the four key firewall rules needed to create a super-adaptable stateful firewall that would exhibit ideal, secure behavior when handling nearly any network service. For those who missed my first article, here are those four key rules: - [HOWto; sometips; Iptables; Fireware] Designing Flexible and Secure Firewalls, Part I - Intel?Software Network #
As you probably know, Linux* has a reputation as one of the top operating systems for network-related tasks. One of the things that makes Linux such a versatile networking solution is its new netfilter API, which has replaced the venerable ipchains system found in 2.2-era Linux kernels. Using netfilter, it's possible to create stateful firewalls, set up NAT (network address translation), mark packets for later QoS (quality of service) processing and yes, even more -- all under Linux. - [run2tech; HOWto; Iptables; Gentoo] HOWTO Iptables and stateful firewalls - Gentoo Linux Wiki #
HOWTO Iptables and stateful firewalls
Security、Monitor、Snort、IDS、OpenNMS - [Securtiy_Unix and Linux; snort] Intrusion Detection With BASE And Snort | HowtoForge - Linux Howtos and Tutorials #
This tutorial shows how to install and configure BASE (Basic Analysis and Security Engine) and the Snort intrusion detection system (IDS) on a Debian Sarge system. BASE provides a web front-end to query and analyze the alerts coming from a Snort IDS system. With BASE you can perform analysis of intrusions that Snort has detected on your network. - [Securtiy_Unix and Linux; Bastille] Securing the CentOS Perfect Setup with Bastille | HowtoForge - Linux Howtos and Tutorials #
Securing the CentOS Perfect Setup with BastilleThis guide will help secure the Perfect Setup using PSAD, Bastille, and other tweaks. - [monitor; OpenNMS] Configure OpenNMS Step By Step | HowtoForge - Linux Howtos and Tutorials #
OpenNMS is an opensource enterprise network management tool. It helps network administrators to monitor critical services on remote machines and collects the information of remote nodes by using SNMP. OpenNMS has a very active community, where you can register yourself to discuss your problems. Normally openNMS installation and configuration takes time, but I have tried to cover the installation and configuration part in a few steps. - [Apache、WebLogic、Tomcat、Resin Web Srv; IA、QA; High Perform; monitor; Nikto] Security Testing your Apache Configuration with Nikto | HowtoForge - Linux Howtos and Tutorials #
This tutorial, inspired by one of the chapters in Hardening Apache by Tony Mobily (APress), will show you how to set up the free web server security scanner tool, Nikto. This tool will probe your Apache set-up for vulnerabilities, so you can get an idea of what holes may exist in your configuration. This tutorial will only get you so far as installing the tool, and running your first scan. A google search or the afore mentioned book will give you plenty of information on actually securing your Apache server. - [monitor; Centos] How To Monitor A System With Sysstat On Centos 4.3 | HowtoForge - Linux Howtos and Tutorials #
A common task for System Administrators is to monitor and care for a server. That's fairly easy to do at a moment's notice, but how to keep a record of this information over time? One way to monitor your server is to use the Sysstat package.
Mysql、How to、Shell Scripts、RsyncOpenVPN、DNS、GSLB - [HOWto; Iptables; Fireware; OpenVPN] OpenVPN 2.0 HOWTO #
OpenVPN is a full-featured SSL VPN which implements OSI layer 2 or 3 secure network extension using the industry standard SSL/TLS protocol, supports flexible client authentication methods based on certificates, smart cards, and/or username/password credentials, and allows user or group-specific access control policies using firewall rules applied to the VPN virtual interface. OpenVPN is not a web application proxy and does not operate through a web browser. - [HOWto; OpenVPN] OpenVPN HOWTO 中文版 - 中国信息安全组织 #
OpenVPN HOWTO 中文版 - [dns; GSLB] longrujun : How To Install DNS server with Master/Slave's config #
下面已longrujun.com/lrj.com为例进行配置 Server 1:Master IPADDR=192.168.5.223/224 NETMASK=255.255.255.0 GATEWAY=192.168.5.1 Server 2: Slave IPADDR=192.168.5.225/226 NETMASK=255.255.255.0 GATEWAY=192.168.5.1 其中 Longrujun.com做view功能及Master/Slave同步,再一定程度上便于解决互联互通问题 lrj.com只涉及Master/Slave同步功能
Trackback: http://tb.donews.net/TrackBack.aspx?PostId=1008445