Wednesday, June 6, 2007

Security

SELinux - Security-Enhanced Linux - an implementation of mandatory access control using Linux Security Modules (LSM) in the Linux kernel. (See http://en.wikipedia.org/wiki/SELinux and http://www.nsa.gov/selinux/). It is a standard part of many distributions. (See http://selinux.sourceforge.net/).

Some of the benefits of SELinux are:
  • Simple - You may be using without even knowing you are.
  • Can be used in business
  • Provides a firm foundation beneath the firewall, instead of a sanding foundation
  • Still really strong security of go
AppArmor - GNU security software for Linux. Currently maintained by Novell (See http://en.wikipedia.org/wiki/AppArmor and http://en.opensuse.org/AppArmor)

Sort - An open source intrusion detection system (IDS) application. Signature based. (See http://www.snort.org/ and http://en.wikipedia.org/wiki/Snort_(software) ).

Barnyard - An open source output spool reader for Snort. Decouples output overhead from the Snort netword intrusion detection system allowing Snort to run a full speed. (See http://sourceforge.net/projects/barnyard and http://web2.uwindsor.ca/courses/cs/aggarwal/cs60564/projects/Barnyard.ppt)