★ wanayoo — archive 1999 http://www.linuxsecurity.com/articles/server_security_article-3364.htmlNouvelle recherche | Portail wanayoo
Advertise Here

   
Documentation
Security Sources
Forums
Firewalls
Host Security
Cryptography
Network Security
Intrusion Detection
Organizations/Events
Server Security
Vendors/Products
Projects
General
Privacy
Government
Hacks/Cracks
 
News: Server Security 7/18/2001 20:31

The Duke of URL Reviews EnGarde Secure Linux

TheDukeOfURL.org
Submitted By: Patrick Mullen
Posted By: Dave Wreski
7/18/2001

Patrick Mullen writes, "The Duke of URL has just posted its review of EnGarde Secure Linux 1.0.1. EnGarde Secure Linux is a unique brand of Linux with a focus on security, e-commerece, and servers. The review covers installation, its interface, and more."

EnGarde, which is a secure e-commerce solution, is managed by a web-based interface, aptly named Webtool, via a 512-bit SSL connection. It is a great way to manage a system, one that I prefer over the multitude of installable, proprietary, management systems that need to provide support for multiple operating systems.

In fact, SSL plays a large part in the design of their system. OpenSSL is integrated right into the system so that customers can build secure e-commerce site. On top of that, they have also successfully integrated OpenSSH to provide administrators a secure shell to manage data and the the system remotely.

Other security features are intrusion detection (what system doesn't need this?), extensive system logging, and security policy enforcement. The intrusion detection is fine-grained and easy to setup. If a service is accessed by unauthorized means the administrator is notified immediately. Logging can be configured to be general or specific and is event-based. You can also configure your logs to be stored on the server in one, or several, locations on the network. Security policies such as password length and password expiration are easily enforced and automated. It's just a matter of clicking a few options and things are completely set up. You can also restrict the commands that a user may access.

Guardian Digital, the primary sponsors of LinuxSecurity.com, are also the primary developers of EnGarde Secure Linux.



Click here to go to this article.
Fingerprinting Port 80 Attacks: A look into web server, and web application attack signatures: Part Two
Mar 6

SwitchSniff
Mar 5

Stop Him Before He Hacks Again
Mar 5

PGP is dead! Long live PGP? Maybe
Mar 5

Cross-Site Scripting Vulnerabilities
Mar 5

Web server defense drafted
Mar 5

Multi-Layered Security
Mar 5

Contact Us | Legal Notice | About Our Site
© Guardian Digital, Inc., 2000