PoÄŤĂ­taÄŤová škola GOPAS  

   


   print

UNIXS - Unix/Linux – Security

This course is designated for administrators of net servers who need to secure both server and communication with server. Participants will learn basic models and principles how to secure server and communication in net (Internet). You will learn in practice to implement PGP, SSH2, SSL systems, datagram firewall etc. Participants will learn to work with LIDS, GRSecurity and Medusa DS9 security systems

Who the course is for

This course is designated for administrators of nets and net servers with LINUX operating system who want to acquire overview of LINUX server security in Internet.

What we teach you

Participants will learn basic models and principles how to secure server and communication in net (Internet), receive information about firewall, data encryption etc. Participants will learn in practice to implement PGP, SSH2, SSL systems, datagram firewall (Netfilter) etc. Participants will learn to work with LIDS, GRSecurity and Medusa DS9 security systems.

Required skills

Wider knowledge of LINUX, TCP/IP nets

Teaching methods

Special interpretation with practical illustration, practice with PC

Teaching materials

Books for course by offering specialized editors

Course syllabus

Basic LINUX server security against external attacks

  • Analysis traditional net services from the viewpoint of security
  • INETD superdaemon, usage of, configuration, possibilities of substitution (XINETD…)
  • Usage of standard TCP wrappers
  • decommissioning of potential dangerous services or substitution using more secure equivalents (analysis)

    Advanced server security and defense against attack

  • Introduction with packet filter included in core
  • Usage of packet filter, ipchains and iptables programs
  • Basic models and principles of attacks on remote computers, analysis and used methods, practical illustration.
  • How to precede attacks, early detection of aggressor. Periodic exploring of logs etc.
  • Principles of active system defense against remote attack.
  • Defense against ports scanning (usage of portsentry program) etc.

    Principles of secure data communication in net, data encryption

  • Sniffing of network traffic, defense methods against sniffing.
  • Basic principles and models of encryption mechanisms
  • Encryption using keys (private and public key)

    PGP and SSH systems

  • Introduction with SSH2 system
  • Installation, configuration and usage of SSH2 in LINUX
  • History, introduction with PGP system
  • , configuration and usage of GPG (GNU clone of PGP system) in LINUX

    Security layer SSL

  • SSL principle
  • Installation of OpenSSL library
  • Possibilities of usage of the library
  • Implementation of SSL in Apache HTTP server (mod_ssl)
  • Principle and creation of certificates etc.

    Advanced security systems

  • Security model
  • Security policy, access matrix, RBAC, MAC models.
  • LIDS, GRSecurity and Medusa DS9 security systems

    Recommended prior courses

    LXA1 - Linux – Installation and Configuration
    LXA2 - Linux – Administration
    UNIXM1 - Unix/Linux – Mail Server
    UNIXN1 - Unix/Linux – Internet/Intranet Server
    UNIXW1 - Unix/Linux – WWW Server

    Catalog price of course and handbook

    Locality Course price ex VAT Price of handbook ex VAT Number IT points
     Praha   10650 Kč  --   30 items
     Brno   10650 Kč  --   30 items

    Course dates

    Course date Course length Locality Price ex VAT Handbook ex VAT  Speaker language  
     03.01.2011   3   GOPAS Praha   10650 Kč included in course price Course
     20.12.2010   3   GOPAS Bratislava   360 EUR included in course price Course

    If none of the offered dates suits you, please contact our customer service department on tel. +420 234 064 900-3 (Prague), +420 542 219 935-6 (Brno).