Linux Security and Hardening: A Practical Approach

所在平台: Udemy

课程主页: https://www.udemy.com/course/linux-security-hardening/

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:Linux安全与强化:实践方法 课程概述: 本课程旨在为学员提供Linux系统安全与强化的实用知识。内容涵盖以下几个主要方面: 1. **安全导论**: - 安全的重要性和基本概念。 - 提供物理安全的建议以及保障Linux设备的物理安全策略。 2. **BIOS和引导加载器安全**: - 如何设置BIOS密码。 - 单用户模式安全设置及密码保护。 3. **PAM(可插拔认证模块)**: - 了解PAM的安全性及其配置。 - 实用作业:配置PAM模块。 4. **账户安全**: - 用户账户安全的基本知识。 - 强制实施强密码策略及密码过期策略的实用实验。 5. **文件系统安全**: - 文件和目录权限的管理及特殊权限的使用。 - ACL(访问控制列表)的实际操作。 6. **网络安全**: - 网络安全概念及OpenSSH的安全性。 - 深入了解Linux防火墙(nftables和firewalld)的应用及配置。 7. **SELinux安全管理**: - 介绍SELinux的基本概念及安全实践。 - 实践课程中如何更改SELinux的上下文和布尔值。 通过本课程,学员将掌握Linux系统的安全配置和强化策略,并具备在实战中应用这些知识的能力。课程还包括多个实验和项目作业,通过实际操作加深理解。

课程评论(0条)

课程详情

IntroductionAbout SecurityTips & TricksPhysical Security of a Linux BoxOverview of Physical SecurityBIOS Firmware SecuritySet BIOS PasswordSingle User Mode Security How to set password at Single User ModeSecuring Boot LoaderSection SummaryProject Assignment: Securing Single User Mode in LinuxProject Assignment: Securing the Boot Loader in LinuxPAM (Pluggable Authentication Modules)Overview of PAM SecurityConcepts of PAMPAM Modules & ConfigurationsPAM Module GroupsControl Flags in PAMPAM ModulesProject Assignment on PAM - Pluggable Authentication ModulesQuizAccount SecurityOverview of User Account SecurityUser Account InformationForcing strong passwordsPam_pwquality - Password strength-checkingSecurity by Account LockedAccount Locked using pam_faillock PAM module - Lab SessionUnderstanding Password Aging PolicyPractice Lab SessionFile System SecurityOverview of File & Directory PermissionAccess modeChange Permission & OwnershipSpecial Permissions·Setuid, Setguid, Sticky bit, ACL, etcACLControlling files with ACLACLs demoPractice Lab SessionGeneral SecurityKeep your system updatedDisable USB stick Turn off IPv6Restrict users to use old passwordsCheck password expirationVerify accounts for Empty passwordVerify accounts for "Zero" UIDReview logs regularlyKeep /boot as read onlyNetwork SecurityOverview of Network SecurityOpenssh SecuritySecuring SSHDLinux FirewallFirewall conceptsAbout nftables, features, and advantages of firewalldFirewalld components, pre-defined zonesHow packet flows through the firewallCheck firewalld services - Lab SessionAdding and Removing Services & Port from Firewall Server - Lab SessionAdd Services Permanently in Firewalld - Lab SessionAdd HTTP Service in firewalld - Lab SessionPort forwarding - Lab SessionConceptual discussion about Masquerading, Packet Flow in FirewalldMasquerading with Port Forwarding - Lab SessionAbout Rich Rules in FirewalldSpecifically allow a Server using Rich Rules - Lab SessionAllow Telnet Port, SSH with log-prefix using Rich Rule - Lab SessionAccept, Reject, Drop - Lab SessionManaging SELinux SecurityIntroduction - SELinuxSELinux Security ConceptsChanging SELinux ModesPractice Lab SessionsChanging SELinux ContextsSELinux BooleansAudit logs & troubleshooting SELinuxLast lecture

课程标签

0人关注该课程

主题相关的课程