100 likes | 233 Vues
Join Kevin Weaver from the UTD Computer Security Group as he explores essential server hardening techniques applicable across operating systems. This presentation covers typical attack vectors and defensive measures, leading into specifics for both Linux and Windows environments. Topics include best practices for password management, account control, anti-malware solutions, and the importance of regular patches and updates. Learn about the nuances of maintaining robust security without compromising system integrity, as well as the role of honeypots in threat detection.
E N D
Basic Server Hardening UTD Computer Security Group – Kevin Weaver csg.utdallas.edu
What I'm covering • OS-independent techniques • Typical attacks and defenses • Leading into Linux- and Windows-specific topics • for other presenters
Passwords: The Usual • Minimum length • Minimum complexity • Failed attempt lockouts • Making new passwords
Passwords: The Usual SANITIZE YOUR INPUT!
Passwords: The Attack • Can't do online attacks • Offline attacks necessary
Account Management • Administrator, root • No Guest • Need-to-have privileges • Limited privilege escalation • Decoy account
Anti-Malware: The Good, The Bad, and The Ugly • Freebies: • Avast! • AVG • Avir • Real money: • Avast! again • Norton & McAfee • Kaspersky
Patches & Updates 3.5th Edition • Preview before installing • If it ain't broke, don't fix it • Update securely
QUESTIONS? UTD Computer Security Group – Kevin Weaver csg.utdallas.edu