Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Linux Rootkit/Securing a Linux System

Status
Not open for further replies.

Gabriel2010

Technical User
Nov 14, 2003
82
US
Hello All,

Got a Red Hat 8 systen with apache, mysql & bugzilla installed, would like to have a rootkit to check for anything odd in the system. It seems there are a couple of rootkits, which one is recommended?

I'm looking to secure this system & its programs, etc (MySQL, Apache, and so on)so any link/info on that is appreciated as well.

Thanks in advance for suggestions & information.

Gabriel


Glad to be here!
 
Gabriel, you might be misusing a term.

"rootkit" is a tool that a system cracker uses to ABUSE the system. "rootkit" is not commonly known as a term to describe a tool used to secure a system. One might use a "rootkit" to test his work AFTER securing a system....

To secure Redhat, read up here....

Bastille Linux

OpenNA's Securing and Optimizing Linux book.

Hacking Linux (Second Edition)

Surfinbox.com Business Internet Services - National Dialup, DSL, T-1 and more.
 
Yes, you are right, shame on me!!!
Thanks the links, Bastille Linux should be helpful. There are tons of information about securing Linux in the Net. Amazing


Glad to be here!
 
You may also want to use programs like to check critical system files, using security features like portsentry and logsentry are crucial as well. If its a machine that alot of users are going to have access to you may think about running a 2nd SSHD and disallowing root access to the one run on port 22 to hinder most script kiddies from trying to access root on your machine. Also familiarizing yourself with ipchains/iptables would be a good idea since some daemons have buffer overflow exploits that can be prevented with iptables.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top