월간 인기 게시물

게시물 111건
   
취약점 분석도구 - lynis
글쓴이 : 최고관리자 날짜 : 2015-07-21 (화) 02:40 조회 : 7007
글주소 :
                             



lynis : Unix 기반의 보안감사 및 강화도구
# git clone https://github.com/CISOfy/lynis.git
# cd lynis
# ./lynis --check-all -Q

Warning : 취약점 경고문구
#  grep Warning /var/log/lynis.log
[09:19:31] Warning: Found world writable startup scripts [BOOT-5184]
[09:19:32] Warning: Multiple users with UID 0 found in passwd file [AUTH-9204]
[09:19:53] Warning: Found one or more vulnerable packages. [PKGS-7392]
[09:19:53] Warning: Couldn't find 2 responsive nameservers [NETW-2705]
[09:19:54] Warning: Root can directly login via SSH [SSH-7412]
※ Suggestion : 보안강화를 위한 제안


Once lynis starts scanning your system, it will perform auditing in a number of categories:

  • System tools: system binaries
  • Boot and services: boot loaders, startup services
  • Kernel: run level, loaded modules, kernel configuration, core dumps
  • Memory and processes: zombie processes, IO waiting processes
  • Users, groups and authentication: group IDs, sudoers, PAM configuration, password aging, default mask
  • Shells
  • File systems: mount points, /tmp files, root file system
  • Storage: usb-storage, firewire ohci
  • NFS
  • Software: name services: DNS search domain, BIND
  • Ports and packages: vulnerable/upgradable packages, security repository
  • Networking: nameservers, promiscuous interfaces, connections
  • Printers and spools: cups configuration
  • Software: e-mail and messaging
  • Software: firewalls: iptables, pf
  • Software: webserver: Apache, nginx
  • SSH support: SSH configuration
  • SNMP support
  • Databases: MySQL root password
  • LDAP services
  • Software: php: php options
  • Squid support
  • Logging and files: syslog daemon, log directories
  • Insecure services: inetd
  • Banners and identification
  • Scheduled tasks: crontab/cronjob, atd
  • Accounting: sysstat data, auditd
  • Time and synchronization: ntp daemon
  • Cryptography: SSL certificate expiration
  • Virtualization
  • Security frameworks: AppArmor, SELinux, grsecurity status
  • Software: file integrity
  • Software: malware scanners
  • Home directories: shell history files

이름 패스워드
비밀글 (체크하면 글쓴이만 내용을 확인할 수 있습니다.)
왼쪽의 글자를 입력하세요.
   

 



 
사이트명 : 모지리네 | 대표 : 이경현 | 개인커뮤니티 : 랭키닷컴 운영체제(OS) | 경기도 성남시 분당구 | 전자우편 : mojily골뱅이chonnom.com Copyright ⓒ www.chonnom.com www.kyunghyun.net www.mojily.net. All rights reserved.