Close
Contact Us info@learnquest.com

??WelcomeName??
??WelcomeName??
« Important Announcement » Contact Us 877-206-0106 | USA Flag
Close
Close
Close
photo

Thank you for your interest in LearnQuest.

Your request is being processed and LearnQuest or a LearnQuest-Authorized Training Provider will be in touch with you shortly.

photo

Thank you for your interest in Private Training.

We look forward to helping you develop the perfect training solution to help you meet your company's goals.

For immediate assistance, speak with one of our representatives using the chat module below. Otherwise, LearnQuest or a LearnQuest-Authorized Training Provider will be in touch with you shortly.

Close
photo

Thank you for your interest in LearnQuest!

Now, you will be able to stay up-to-date on our latest course offerings, promotions, and training discounts. Watch your inbox for upcoming special offers.

title

Date: xxx

Location: xxx

Time: xxx

Price: xxx

Please take a moment to fill out this form. We will get back to you as soon as possible.

All fields marked with an asterisk (*) are mandatory.

Enterprise Linux Server Hardening

Price
2,340 USD
4 Days
OSUN-413
Classroom Training, Online Training
Red Hat Training Partner

AWS Training Pass

Take advantage of flexible training options with the AWS Training Pass and get Authorized AWS Training for a full year.

Learn More

Prices reflect a 22.5% discount for IBM employees (wherever applicable).
Prices reflect a 24% discount for Kyndryl employees (wherever applicable).
Prices reflect the Accenture employee discount.
Prices shown are the special AWS Partner Prices.
Prices reflect the Capgemini employee discount.
Prices reflect the UPS employee discount.
Prices reflect the ??democompanyname?? employee discount.
GSA Private/Onsite Price: ??gsa-private-price??
For GSA pricing, please go to GSA Advantage.

Class Schedule

Delivery Formats

Sort results

Filter Classes

Guaranteed to Run

Modality

Location

Language

Date

    Sorry, there are no public classes currently scheduled in your country.

    Please complete this form, and a Training Advisor will be in touch with you shortly to address your training needs.

View Global Schedule

Course Description

Overview


 

Objectives


 

Audience


 

Prerequisites

    and OSUN-225 'Enterprise Linux Systems Administration'.
     

Topics

1. SECURITY CONCEPTS
  • Basic Security Principles
  • RHEL7 Default Install
  • Minimization – Discovery
  • Service Discovery
  • Hardening
  • Security Concepts
    • LAB TASKS
  • Removing Packages Using RPM
  • Firewall Configuration
  • Process Discovery
  • Operation of the setuid() and capset() System Calls
  • Operation of the chroot() System Call
  • Introduction to Troubleshooting Labs
2. SCANNING, PROBING, AND MAPPING VULNERABILITIES
  • The Security Environment
  • Stealth Reconnaissance
  • The WHOIS database
  • Interrogating DNS
  • Discovering Hosts
  • Discovering Reachable Services
  • Reconnaissance with SNMP
  • Discovery of RPC Services
  • Enumerating NFS Shares
  • Nessus/OpenVAS Insecurity Scanner
  • Configuring OpenVAS
  • Intrusion Detection Systems
  • Snort Rules
  • Writing Snort Rules
    • LAB TASKS
  • NMAP
  • OpenVAS
  • Advanced nmap Options
3. TRACKING SECURITY UPDATES AND SOFTWARE MAINTENANCE
  • Security Advisories
  • Managing Software
  • RPM Features
  • RPM Architecture
  • RPM Package Files
  • Working With RPMs
  • Querying and Verifying with RPM
  • Updating the Kernel RPM
  • Dealing With RPM & Yum Digest Changes
  • Using the Yum command
  • Using Yum history
  • Yum Plugins & RHN Subscription Manager
  • YUM Repositories
    • LAB TASKS
  • Managing Software with RPM
  • Creating a Custom RPM Repository
  • Querying the RPM Database
  • Using Yum
4. MANAGE THE FILESYSTEM
  • Partitioning Disks with fdisk & gdisk
  • Resizing a GPT Partition with gdisk
  • Partitioning Disks with parted
  • Filesystem Creation
  • Persistent Block Devices
  • Mounting Filesystems
  • Filesystem Maintenance
  • Swap
    • LAB TASKS
  • Creating and Managing Filesystems
  • Hot Adding Swap
5. SECURING THE FILESYSTEM
  • Configuring Disk Quotas
  • Setting Quotas
  • Viewing and Monitoring Quotas
  • Filesystem Attributes
  • Filesystem Mount Options
  • GPG – GNU Privacy Guard
  • File Encryption with OpenSSL
  • File Encryption With encfs
  • Linux Unified Key Setup (LUKS)
    • LAB TASKS
  • Setting User Quotas
  • Securing Filesystems
  • Securing NFS
  • File Encryption with GPG
  • File Encryption With OpenSSL
  • LUKS-on-disk format Encrypted Filesystem
6. MANAGE SPECIAL PERMISSIONS
  • File and Directory Permissions
  • File Creation Permissions with umask
  • SUID and SGID on files
  • SGID and Sticky Bit on Directories
  • Changing File Permissions
  • User Private Group Scheme
7. MANAGE FILE ACCESS CONTROLS
  • File Access Control Lists
  • Manipulating FACLs
  • Viewing FACLs
  • Backing Up FACLs
  • LAB TASKS
  • Using Filesystem ACLs
8. MONITOR FOR FILESYSTEM CHANGES
  • Host Intrusion Detection Systems
  • Using RPM as a HIDS
  • Introduction to AIDE
  • AIDE Installation
  • AIDE Policies
  • AIDE Usage
    • LAB TASKS
  • File Integrity Checking with RPM
  • File Integrity Checking with AIDE
9. MANAGE USER ACCOUNTS
  • Approaches to Storing User Accounts
  • User and Group Concepts
  • User Administration
  • Modifying Accounts
  • Group Administration
  • RHEL DS Client Configuration
  • System Security Services Daemon (SSSD)
    • LAB TASKS
  • User Private Groups
10. PASSWORD SECURITY AND PAM
  • Unix Passwords
  • Password Aging
  • Auditing Passwords
  • PAM Overview
  • PAM Module Types
  • PAM Order of Processing
  • PAM Control Statements
  • PAM Modules
  • pam_unix
  • pam_cracklib.so
  • pam_env.so
  • pam_xauth.so
  • pam_tally2.so
  • pam_wheel.so
  • pam_limits.so
  • pam_nologin.so
  • pam_deny.so
  • pam_warn.so
  • pam_securetty.so
  • pam_time.so
  • pam_access.so
  • pam_listfile.so
  • pam_lastlog.so
  • pam_console.so
    • LAB TASKS
  • John the Ripper
  • Cracklib
  • Using pam_listfile to Implement Arbitrary ACLs
  • Using pam_limits to Restrict Simultaneous Logins
  • Using pam_nologin to Restrict Logins
  • Using pam_access to Restrict Logins
  • su & pam
11. USING FREEIPA FOR CENTRALIZED AUTHENTICATION
  • What Is FreeIPA?
  • FreeIPA Features
  • FreeIPA Installation
  • FreeIPA Client Installation
  • User, Group, And Host Management
  • User, Group, And Host Management
  • FreeIPA Active Directory Integration
12. LOG FILE ADMINISTRATION
  • System Logging
  • systemd Journal
  • systemd Journal's journalctl
  • Secure Logging with Journal's Log Sealing
  • gnome-system-log
  • Rsyslog
  • /etc/rsyslog.conf
  • Log Management
  • Log Anomaly Detector
  • Sending logs from the shell
    • LAB TASKS
  • Using the systemd Journal
  • Setting up a Full Debug Logfile
  • Remote Syslog Configuration
  • Remote Rsyslog TLS Configuration
13. ACCOUNTABILITY WITH KERNEL AUDITD
  • Accountability and Auditing
  • Simple Session Auditing
  • Simple Process Accounting & Command History
  • Kernel-Level Auditing
  • Configuring the Audit Daemon
  • Controlling Kernel Audit System
  • Creating Audit Rules
  • Searching Audit Logs
  • Generating Audit Log Reports
  • Audit Log Analysis
    • LAB TASKS
  • Auditing Login/Logout
  • Auditing File Access
  • Auditing Command Execution
14. SECURING SERVICES
  • Xinetd
  • Xinetd Connection Limiting and Access Control
  • Xinetd: Resource limits, redirection, logging
  • TCP Wrappers
  • The /etc/hosts.allow & /etc/hosts.deny Files
  • /etc/hosts.{allow,deny} Shortcuts
  • Advanced TCP Wrappers
  • FirewallD
  • Netfilter: Stateful Packet Filter Firewall
  • Netfilter Concepts
  • Using the iptables Command
  • Netfilter Rule Syntax
  • Targets
  • Common match_specs
  • Connection Tracking
    • LAB TASKS
  • Securing xinetd Services
  • Enforcing Security Policy with xinetd
  • Securing Services with TCP Wrappers
  • Securing Services with Netfilter
  • FirewallD
  • Troubleshooting Practice
15. SELINUX
  • DAC vs. MAC
  • Shortcomings of Traditional Unix Security
  • SELinux Goals
  • SELinux Evolution
  • SELinux Modes
  • Gathering SELinux Information
  • SELinux Virtual Filesystem
  • SELinux Contexts
  • Managing Contexts
  • The SELinux Policy
  • Choosing an SELinux Policy
  • Policy Layout
  • Tuning and Adapting Policy
  • Booleans
  • Permissive Domains
  • Managing File Context Database
  • Managing Port Contexts
  • SELinux Policy Tools
  • Examining Policy
  • SELinux Troubleshooting
  • 21. SELinux Troubleshooting Continued
    • LAB TASKS
  • Exploring SELinux Modes
  • SELinux File Contexts
  • SELinux Contexts in Action
  • Managing SELinux Booleans
  • Creating Policy with Audit2allow
  • Creating & Compiling Policy from Source
2023 Top 20 Training Industry Company - IT Training

Need Help?

Call us at 877-206-0106 or e-mail us at info@learnquest.com

Personalized Solutions

Need a personalized solution for your Training? Contact us, and one of our training advisors will help you find the best solution.

Contact Us

Need Help?

Do you have a question about the courses, instruction, or materials covered? Do you need help finding which course is best for you? We are here to help!

Talk to us

20% Off All AI Training Courses

Achieve more with AI-powered tools and strategies.

PROMO CODE: AI20
VALID THROUGH APRIL 30, 2024

20% Off All AI Training Courses

Self-Paced Training Info

Learn at your own pace with anytime, anywhere training

  • Same in-demand topics as instructor-led public and private classes.
  • Standalone learning or supplemental reinforcement.
  • e-Learning content varies by course and technology.
  • View the Self-Paced version of this outline and what is included in the SPVC course.
  • Learn more about e-Learning

Course Added To Shopping Cart

bla

bla

bla

bla

bla

bla

Self-Paced Training Terms & Conditions

??spvc-wbt-warning??
??group-training-form-area??
??how-can-we-help-you-area??
??personalized-form-area??
??request-quote-area??

Sorry, there are no classes that meet your criteria.

Please contact us to schedule a class.
Close

self-paced
STOP! Before You Leave

Save 0% on this course!

Take advantage of our online-only offer & save 0% on any course !

Promo Code skip0 will be applied to your registration

Close
Nothing yet
here's the message from the cart

To view the cart, you can click "View Cart" on the right side of the heading on each page
Add to cart clicker.

Purchase Information

??elearning-coursenumber?? ??coursename??
View Cart

Need more Information?

Speak with our training specialists to continue your learning journey.

 

Delivery Formats

Close

By submitting this form, I agree to LearnQuest's Terms and Conditions

heres the new schedule
This website uses third-party profiling cookies to provide services in line with the preferences you reveal while browsing the Website. By continuing to browse this Website, you consent to the use of these cookies. If you wish to object such processing, please read the instructions described in our Privacy Policy.
Your use of this LearnQuest site affirms your consent to our use of session and persistent cookies to track how you use our website.