|
via Udemy |
Go to Course: https://www.udemy.com/course/linux-security-hardening/
IntroductionAbout SecurityTips & TricksPhysical Security of a Linux BoxOverview of Physical SecurityBIOS Firmware SecuritySet BIOS PasswordSingle User Mode Security How to set password at Single User ModeSecuring Boot LoaderSection SummaryProject Assignment: Securing Single User Mode in LinuxProject Assignment: Securing the Boot Loader in LinuxPAM (Pluggable Authentication Modules)Overview of PAM SecurityConcepts of PAMPAM Modules & ConfigurationsPAM Module GroupsControl Flags in PAMPAM ModulesProject Assignment on PAM - Pluggable Authentication ModulesQuizAccount SecurityOverview of User Account SecurityUser Account InformationForcing strong passwordsPam_pwquality - Password strength-checkingSecurity by Account LockedAccount Locked using pam_faillock PAM module - Lab SessionUnderstanding Password Aging PolicyPractice Lab SessionFile System SecurityOverview of File & Directory PermissionAccess modeChange Permission & OwnershipSpecial Permissions·Setuid, Setguid, Sticky bit, ACL, etcACLControlling files with ACLACLs demoPractice Lab SessionGeneral SecurityKeep your system updatedDisable USB stick Turn off IPv6Restrict users to use old passwordsCheck password expirationVerify accounts for Empty passwordVerify accounts for "Zero" UIDReview logs regularlyKeep /boot as read onlyNetwork SecurityOverview of Network SecurityOpenssh SecuritySecuring SSHDLinux FirewallFirewall conceptsAbout nftables, features, and advantages of firewalldFirewalld components, pre-defined zonesHow packet flows through the firewallCheck firewalld services - Lab SessionAdding and Removing Services & Port from Firewall Server - Lab SessionAdd Services Permanently in Firewalld - Lab SessionAdd HTTP Service in firewalld - Lab SessionPort forwarding - Lab SessionConceptual discussion about Masquerading, Packet Flow in FirewalldMasquerading with Port Forwarding - Lab SessionAbout Rich Rules in FirewalldSpecifically allow a Server using Rich Rules - Lab SessionAllow Telnet Port, SSH with log-prefix using Rich Rule - Lab SessionAccept, Reject, Drop - Lab SessionManaging SELinux SecurityIntroduction - SELinuxSELinux Security ConceptsChanging SELinux ModesPractice Lab SessionsChanging SELinux ContextsSELinux BooleansAudit logs & troubleshooting SELinuxLast lecture