Course : Securing a Linux/Unix system

Practical course - 3d - 21h00 - Ref. SRX
Price : 1800 € E.T.

Securing a Linux/Unix system




This highly practical course will show you how to define a security strategy, secure Linux servers and maintain security levels. Among other things, the course covers securing the isolated system, securing the corporate network and what you need to know to carry out a security audit.


INTER
IN-HOUSE
CUSTOM

Practical course in person or remote class
Disponible en anglais, à la demande

Ref. SRX
  3d - 21h00
1800 € E.T.




This highly practical course will show you how to define a security strategy, secure Linux servers and maintain security levels. Among other things, the course covers securing the isolated system, securing the corporate network and what you need to know to carry out a security audit.


Teaching objectives
At the end of the training, the participant will be able to:
Measure the security level of your Linux/Unix system
System security solutions
Setting up security for a Linux/Unix application
Establish network security

Intended audience
Systems and network technicians and administrators.

Prerequisites
Good knowledge of systems and network administration.

Practical details
Hands-on work
Numerous exercises will be carried out on a network of Unix and Linux servers.

Course schedule

1
Introduction

  • Why secure a system?
  • Define a secure authentication strategy.
  • Different encryption algorithms. Password encryption. Password verification.
  • Examples of dictionary attacks.

2
Security and Open Source

  • Corrections are made quickly, and bugs are made public.
  • A hacker's approach: know the loopholes, know how to attack.
  • Example of a vulnerability and security solution. Which solution?

3
Too complete an installation: the Linux example

  • Debian, RedHat and other distributions.
  • Avoid the trap of easy installation.
  • Lighter kernel. Device drivers.
Hands-on work
Optimizing installations for safety management.

4
Local system security

  • Examples of malice and inadvertence.
  • Low permissiveness by default. File rights checking, efficient scripting and command diagnostics.
  • Read-only FS: file attributes, availability and benefits. Tripwire tools.
  • How long do you keep logs?
  • The log analysis tool: logwatch. Reacting in real time: sample script. Using RPM as a HIDS.
  • Setting up PAM in different contexts.
  • Process execution containment. Terminology DAC, MAC, RBAC, context, model...
Hands-on work
Work on rights, logs and processes.

5
Network security

  • Use a firewall? Use wrappers?
  • Set up service access filters.
  • Configure a firewall securely.
  • Diagnostic commands. Setting up a NetFilter firewall under Linux.
  • iptables philosophy and syntax.
  • The xinetd super-server. Wrapper access restrictions, trace files.
  • Audit active services. The ssh.
Hands-on work
Configure a firewall. Audit functional services.

6
Security audit utilities

  • Proprietary products and free alternatives.
  • Crack, John the Ripper, Qcrack.
  • HIDS and NIDS intrusion detection systems.
  • Test vulnerability with Nessus.
  • Implementing a safety tool.
Hands-on work
Use of a few tools.


Customer reviews
4,6 / 5
Customer reviews are based on end-of-course evaluations. The score is calculated from all evaluations within the past year. Only reviews with a textual comment are displayed.
ÉMILIE W.
24/06/26
4 / 5

It’s a bit of a lot to take in for just three days. Still, the course is interesting.
FABRICE T.
24/06/26
5 / 5

The course content was perhaps a bit intensive over three days. The content and the trainer were extremely interesting.
YOUCEF H.
24/06/26
5 / 5

A very good course. I learnt a great deal. It also gave me the chance to brush up on the basics. I really enjoyed the practical sessions, which were well put together. The course is a bit packed, which means there isn’t much opportunity to go into things in depth.



Publication date : 06/10/2024



This programme is an original creation, developed by the teaching teams at ORSYS Formation. Any reproduction, representation, adaptation or use, in whole or in part, without the prior written authorisation of ORSYS, is strictly prohibited. ORSYS reserves the right to take any action necessary to protect its intellectual property rights.

Dates and locations
Select your location or opt for the remote class then choose your date.
Remote class

Dernières places
Date garantie en présentiel ou à distance
Session garantie

REMOTE CLASS
2026 : 7 Oct., 18 Nov., 16 Dec.

2027 : 22 Mar., 22 Mar., 29 Sep., 29 Sep., 8 Dec., 8 Dec.

PARIS LA DÉFENSE
2026 : 7 Oct., 16 Dec.

2027 : 22 Mar., 29 Sep., 8 Dec.



This programme is an original creation, developed by the teaching teams at ORSYS Formation. Any reproduction, representation, adaptation or use, in whole or in part, without the prior written authorisation of ORSYS, is strictly prohibited. ORSYS reserves the right to take any action necessary to protect its intellectual property rights.