Русские видео

Сейчас в тренде

Иностранные видео


Скачать с ютуб Automated Security Hardening for Ubuntu Server в хорошем качестве

Automated Security Hardening for Ubuntu Server 2 года назад


Если кнопки скачивания не загрузились НАЖМИТЕ ЗДЕСЬ или обновите страницу
Если возникают проблемы со скачиванием, пожалуйста напишите в поддержку по адресу внизу страницы.
Спасибо за использование сервиса savevideohd.ru



Automated Security Hardening for Ubuntu Server

Today, I am looking at a set of security scripts, which harden Ubuntu Server (20.04 or 22.04). Hardening is the process to change the system configuration in order to meet the basic set of compliance standards. In this example we will receive our compliance information from lynis, CIS and the DISA STIG. There are several things to discuss before jumping into the video. WARNING: Never try a new automation script on production servers without first testing it in a controlled lab on test equipment! - you have been warned First, how do we know what we need to change on our systems in order to bring it into compliance with various agency and regulatory standards. The first is the tool set provided by: https://github.com/konstruktoid/harde... Second, Once we have applied the changes to our system, how do we know we have met the standards we are trying to comply with? https://www.open-scap.org/ Security Content Automation Protocol (SCAP) is a method for using specific standards to help organizations automate vulnerability management and policy compliance evaluation. SCAP comprises numerous open security standards, as well as applications which use these standards to check systems for vulnerabilities and misconfigurations. One of the compliance files is called a STIG or A Security Technical Implementation Guide is a configuration standard consisting of cybersecurity requirements for a specific product. These are usually crafted for a specific operating system and version such as Ubuntu 20.04, RedHat 8, etc. One other method of security validation I did not show is CIS Ubuntu Security Benchmark and you can find more information here: https://www.cisecurity.org/benchmark/... 00:00 - Intro 00:28 - Preparations 01:31 - Setup the Server 06:40 - Change ubuntu.cfg 08:56 - running the ubuntu.sh script 09:38 - validating the changes 11:17 - Running a few tests (768) 14:46 - OpenSCAP Run 16:19 - SCAP Analysis 21:17 - Final Thoughts 22:12 - Outro Support me on Patreon:   / djware   Follow me: Twitter @djware55 Facebook:  / don.ware.7758   Discord:   / discord   Gitlab: https://gitlab.com/djware27 "Tech Live" Kevin MacLeod (incompetech.com) Licensed under Creative Commons: By Attribution 4.0 License http://creativecommons.org/licenses/b... "Militaire Electronic" Kevin MacLeod (incompetech.com) Licensed under Creative Commons: By Attribution 4.0 License http://creativecommons.org/licenses/b... Werq by Kevin MacLeod Link: https://incompetech.filmmusic.io/song... License: https://filmmusic.io/standard-license Industrial Cinematic by Kevin MacLeod Link: https://incompetech.filmmusic.io/song... License: https://filmmusic.io/standard-license Music Used in this video "NonStop" Kevin MacLeod (incompetech.com) Licensed under Creative Commons: By Attribution 3.0 License #Infosec #SCAP #STIG

Comments