I had to do some maintenance work on a Linux based server

I had to do some maintenance work on a Linux based server. It was mainly just archiving some files around and updating packages and configurations. However, as part of the maintenance I took the opportunity to put in some simple technical security controls in place and documented some of them here for my reference. MySQL Database There was a MySQL server running that was only needed for the local host, but a “netstat -ltn” indicated

Read More →

Installing OSSEC on Centos 5.7

OSSEC is an open source host-based IDS that performs log analysis, and is able to correlate and analyse logs for a number of Linux (and Windows, but that is outside the scope of this blog post) servers. The software architecture of OSSEC and the use of agents, lends OSSEC to flexible deployment and management <span class=“Apple-style-span” style=“font-size: xx-small;“>[1]. Set-up the Atomic repository that already has the appropriate OSSEC packages and install them would be the easiest way.

Read More →