Open Source Security Tools: Practical Applications for Security

Tony Howlett · CERN Document Server (European Organization for Nuclear Research) · 2004

Preface. Audience. Contents. CD-ROM Contents and Organization. Tools Index. 1. Information Security and Open Source Software. The Practice of Information Security. The State of Computer Crime. Info-Security Business Risks. Open Source History. Open Source Advantages. When Open Source May Not Fit Your Needs. Windows and Open Source. Open Source Licenses. 2. Operating System Tools. Hardening Your Security Tool System. traceroute (UNIX) or tracert (Windows): Network Diagnostic Tools. Considerations for Hardening Windows. 3. Firewalls. Network Architecture Basics. TCP/IP Networking. Security Business Processes. SmoothWall Hardware Requirements. SmoothWall Express Versus SmoothWall Corporate. Installing SmoothWall. Administering the SmoothWall Firewall. Creating a VPN on the SmoothWall Firewall. Windows-Based Firewalls. 4. Port Scanners. Overview of Port Scanners. Considerations for Port Scanning. Uses for Port Scanners. 5. Vulnerability Scanners. Identifying Security Holes in Your Systems. Vulnerability Scanners to the Rescue. Considerations for Vulnerability Scanning. What Vulnerability Testing Doesn't Find. 6. Network Sniffers. A Brief History of Ethernet. Considerations for Network Sniffing. TCP/IP Packet Headers. 7. Intrusion Detection Systems. NIDS Signature Examples. The Problem of NIDS False Positives. Getting the Most Out of Your IDS. Configuring Snort for Maximum Performance. Host-Based Intrusion Detection. 8. Analysis and Management Tools. Using Databases and Web Servers to Manage Your Security Data. The Birth of an Open Source Project. 9. Encryption Tools. Types of Encryption. Virtual Private Networks. 10.Wireless Tools. Wireless LAN Technology. Dangers of Wireless LANs. The War-Driving Phenomenon. Performing a Wireless Network Security Assessment. Steps for More Secure Wireless LANs. 11. Forensic Tools. Uses for Computer Forensic Tools. Building an Incident Response Plan. Preparing for Good Forensic Data. Where to Look for Forensic Data. Tenets of Good Forensic Analysis. Forensic Analysis Tools. Reviewing Log Files. Making Copies of Forensic Evidence. 12. More on Open Source Software. Open Source Resources. Joining the Open Source Movement. More Open Source Security Tools. Appendix A Open Source Licenses. Appendix B Basic Linux/UNIX Commands. Appendix C Well-Known TCP/IP Port Numbers. Appendix D General Permission and Waiver Form. Appendix E. References. Index.

Read the paper · More papers on PaperTik