Free Trial

Safari Books Online is a digital library providing on-demand subscription access to thousands of learning resources.


  • Create BookmarkCreate Bookmark
  • Create Note or TagCreate Note or Tag
  • DownloadDownload
  • PrintPrint
Share this Page URL
Help

Part VII: Appendixes > Security Resources

Security Resources

Many free and commercial programs can enhance system security. Some of these are listed in Table C-1. Many of these sites have links to other, interesting sites that are worth looking at.

Table C-1. Security resources
ToolWhat it doesWhere to get it
AIDEAdvanced Intrusion Detection Environment. Similar to tripwire with extensible verification algorithms.sourceforge.net/projects/aide
bugtraqA moderated mailing list for the announcement and detailed discussion of all aspects of computer security vulnerabilities.www.securityfocus.com/archive/1
CERTComputer Emergency Response Team. A repository of papers and data about major security events and a list of security tools.www.cert.org
chkrootkitChecks for signs of a rootkit indicating that the machine has been compromised.www.chkrootkit.org
dsniffSniffing and network audit tool suite. Free.monkey.org/~dugsong/dsniff
etherealNetwork protocol analyzer. Free.www.ethereal.com
freefireSupplies free security solutions and supports developers of free security solutions.www.freefire.org
fwtkFirewall toolkit. A set of proxies that can be used to construct a firewall.www.fwtk.org
GIACA security certification and training Web site.www.giac.org
hpingMultipurpose network auditing and packet analysis tool. Free.www.hping.org
ISC2Educates and certifies industry professionals and practitioners under an international standard.www.isc2.org
JohnJohn the Ripper: a fast, flexible, weak password detector.www.openwall.com/john
KerberosComplete, secure network authentication system.web.mit.edu/kerberos/www
LIDSIntrusion detection and active defense system.www.lids.org
LinuxSecurity.comA solid news site dedicated to Linux security issues.www.linuxsecurity.com
LWN.netSecurity alert database for all major Linux distributions.lwn.net/Alerts
Microsoft SecurityMicrosoft security information.www.microsoft.com/security
nessusA plugin-based remote security scanner that can perform more than 370 security checks. Free.www.nessus.org
netcatExplores, tests, and diagnoses networks.freshmeat.net/projects/netcat
nmapScans hosts to see which ports are available. It can perform stealth scans, determine operating system type, find open ports, and more.nmap.org
RBACRole Based Access Control. Assigns roles and privileges associated with the roles.csrc.nist.gov/groups/SNS/rbac
Red Hat SecurityRed Hat security information.www.redhat.com/security
SAINTSecurity Administrator’s Integrated Network Tool. Assesses and analyzes network vulnerabilities. This tool follows satan.www.saintcorporation.com
samhainA file integrity checker. Has a GUI configurator, client/server capability, and real-time reporting capability.www.la-samhna.de/samhain
SANSSecurity training and certification.sans.org
SARAThe Security Auditor’s Research Assistant security analysis tool.www-arc.com/sara
Schneier, BruceSecurity visionary.www.schneier.com
SecuniaMonitors a broad spectrum of vulnerabilities.secunia.com
SecurityFocusHome for security tools, mail lists, libraries, and cogent analysis.www.securityfocus.com
snortA flexible IDS.www.snort.org
srpSecure Remote Password. Upgrades common protocols, such as TELNET and FTP, to use secure password exchange.srp.stanford.edu
sshA secure rsh, ftp, and rlogin replacement with encrypted sessions and other options. Supplied with Fedora/RHEL.www.ssh.org openssh.org
swatchA Perl-based log parser and analyzer.sourceforge.net/projects/swatch
TreacheryA collection of tools for security and auditing.www.treachery.net/tools
tripwireChecks for possible signs of intruder activity. Supplied with Fedora/RHEL.www.tripwire.com



  

You are currently reading a PREVIEW of this book.

                                                                                        

Get instant access to over
$1 million worth of books and videos.

  

Start a Free Trial