Welcome to the Linux Foundation Forum!
networking/security
Napoleonlinux
Posts: 4
in Small Talk
I want to dive into the topics networking/security. I have some working knowledge of Linux: I use Ubuntu Linux, Chakra Linux, Puppy Linux. And I know the terminal well.
My question: where to start? What books do you recommend that I should read on these topics? Where did you start? Btw, I have a higher education.
Any help on this is more than welcome.
0
Comments
-
I've kept this bookmark around for quite a few years, because it contains links to a lot of security documents. While it is a broad "Linux Security" article, it also contains links to network based security pages.
https://isc.sans.edu//diary.html?storyid=3514
BTW - It was written in 2007, but most of the links point to recent versions (Like the fedora link links to F16). Even though it's a few years old, the methods haven't changed much and are still worth reading.0 -
Thank you for your answers.0
-
If you really want to understand various security controls in Linux based systems, then I highly recommend checking out gentoo or Linux From Scratch so that you can install a system from the core components without any built-in security controls. This will allow you to hand configure the controls you wish to implement and will force you to watch the vulnerability lists to maintain a secure systems. The greater purpose is to force you to use that system as your primary system so that the necessary research and testing is forced upon you.
You should also checkout backtrack http://distrowatch.com/table.php?distribution=backtrack so that you can test and learn about various network and physical intrusion methods.
Can you share what aspect of Network Security you are most interested in such as packet analysis, port control, remote exploits, intrusion detection systems, etc...?0 -
Lol, all of it, Mfillpot. I am reading a book written by Patrick Engebretson, called "The Basics of Hacking and Penetration Testing." It covers the basics and it is just what I need. In this book he covers Backtrack.
Are there books you can recommend? Have you ever used distributions such as IPcop Firewall?
I will be grateful for your answers.
0 -
My favorite books are:
Special Ops: http://www.amazon.com/Special-OPs-Network-Security-Microsoft/dp/1931836698
Hack Proofing Linux: http://books.google.com/books/about/Hack_proofing_Linux.html?id=5vVy6F80gJ4C
Guide to Network Defense and Countermeasures: http://books.google.com/books?id=XD0FAAAACAAJ&dq=guide+to+network+defense+and+countermeasures&hl=en&sa=X&ei=Ud49T860JIbi0QGHyt2vBw&ved=0CDwQ6AEwAQ
Honestly security tactics and techniques change so often that books on the subject are outdated before they are published. You can use some of the information from the books as reference for past methods and to teach you the basic techniques, but the only way to really know what is going on is to get some hands on experience.
To really understand what is going on I highly recommend setting up a snort ( http://www.snort.org/ ) server in a detached network and running attacks against various operating systems and applications from the backtrack disk, that logged traffic will show you common patterns and attack portals.
Ipcop is a user friendly firewall solution, personally I prefer scripting modifications to a stock iptables firewall than going through a gui or restricted setup. You can see my firewall script from a couple of revisions ago at http://pastebin.com/8bzyUG5F
As for what distributions I use, I am a loyal slackware user. Pat's diligence in testing software, watching vulnerabilities and simplifying the installation base makes is very easy to build a very secure system. I consider the lack of PAM and SeLinux a benefit because it removed the potential for configuration mistakes and eliminates the vulnerabity histories of that software from my mind. An important rule is to keep your security solutions simple, the simplicity reduces complexity and attack vectors.0 -
Great answer, mfillpot. I can work with that. Thank you.
0
Categories
- All Categories
- 177 LFX Mentorship
- 177 LFX Mentorship: Linux Kernel
- 750 Linux Foundation IT Professional Programs
- 373 Cloud Engineer IT Professional Program
- 169 Advanced Cloud Engineer IT Professional Program
- 74 DevOps IT Professional Program - Discontinued
- 4 DevOps & GitOps IT Professional Program
- 99 Cloud Native Developer IT Professional Program
- 7.6K Training Courses & Learning Paths
- 1 AI & ML Training
- 1 Blockchain & Decentralized Identity Training
- 3 Cloud & Containers Training
- 1 Cybersecurity Training
- 2 DevOps & Site-Reliability Training
- 1 Linux Kernel Development Training
- 1 Networking Training
- 1 Open Source Best Practice Training
- 1 System Administration Training
- 1 System Engineering Training
- 1 Web & Application Development Training
- 792 Hardware
- 202 Drivers
- 68 I/O Devices
- 37 Monitors
- 95 Multimedia
- 173 Networking
- 91 Printers & Scanners
- 87 Storage
- 769 Linux Distributions
- 81 Debian
- 68 Fedora
- 22 Linux Mint
- 13 Mageia
- 24 openSUSE
- 150 Red Hat Enterprise
- 31 Slackware
- 13 SUSE Enterprise
- 356 Ubuntu
- 465 Linux System Administration
- 31 Cloud Computing
- 73 Command Line/Scripting
- Github systems admin projects
- 98 Linux Security
- 78 Network Management
- 101 System Management
- 46 Web Management
- 106 Mobile Computing
- 18 Android
- 73 Development
- 1.2K New to Linux
- 1K Getting Started with Linux
- 392 Off Topic
- 121 Introductions
- 181 Small Talk
- 29 Study Material
- 955 Programming and Development
- 310 Kernel Development
- 627 Software Development
- 983 Software
- 375 Applications
- 182 Command Line
- 5 Compiling/Installing
- 68 Games
- 317 Installation
- Archived
- 2 LFD140 Class Forum
Upcoming Training
-
August 20, 2018
Kubernetes Administration (LFS458)
-
August 20, 2018
Linux System Administration (LFS301)
-
August 27, 2018
Open Source Virtualization (LFS462)
-
August 27, 2018
Linux Kernel Debugging and Security (LFD440)