Hardening Linux and over one million other books are available for Amazon Kindle. Learn more



or
Sign in to turn on 1-Click ordering
Sell Us Your Item
For a $4.33 Gift Card
Trade in
More Buying Choices
Have one to sell? Sell yours here
Start reading Hardening Linux on your Kindle in under a minute.

Don't have a Kindle? Get your Kindle here, or download a FREE Kindle Reading App.
Sorry, this item is not available in
Image not available for
Color:
Image not available

To view this video download Flash Player

 

Hardening Linux [Paperback]

James Turnbull
4.6 out of 5 stars  See all reviews (8 customer reviews)

List Price: $44.99
Price: $30.55 & FREE Shipping. Details
You Save: $14.44 (32%)
o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o
In Stock.
Ships from and sold by Amazon.com. Gift-wrap available.
Want it Wednesday, May 29? Choose One-Day Shipping at checkout. Details

Formats

Amazon Price New from Used from
Kindle Edition $19.79  
Paperback $30.55  
Shop the new tech.book(store)
New! Introducing the tech.book(store), a hub for Software Developers and Architects, Networking Administrators, TPMs, and other technology professionals to find highly-rated and highly-relevant career resources. Shop books on programming and big data, or read this week's blog posts by authors and thought-leaders in the tech industry. > Shop now

Book Description

February 1, 2005

“Hardening” is the process of protecting a system and its applications against unknown threats. Hardening Linux identifies many of the risks of running Linux hosts and applications and provides practical examples and methods to minimize those risks. The book is written for Linux/UNIX administrators who do not necessarily have in-depth knowledge of security but need to know how to secure their networks.


Frequently Bought Together

Hardening Linux + UNIX and Linux System Administration Handbook (4th Edition)
Price for both: $79.82

Buy the selected items together


Editorial Reviews

From the Publisher

"Hardening" is the process of protecting a system and its applications against unknown threats. Hardening Linux identifies many of the risks of running Linux hosts and applications and provides practical examples and methods to minimize those risks.

About the Author

James Turnbull is the author of five technical books about open source software and a longtime member of the open source community. James authored the first and second books about Puppet, and works for Puppet Labs, running client services. James speaks regularly at conferences including OSCON, Linux.conf.au, FOSDEM, OpenSourceBridge, DevOpsDays and a number of others. He is a past president of Linux Australia, has run Linux.conf.au and serves on the program committee of Linux.conf.au and OSCON. James is Australian but currently lives in Portland, Oregon. His interests include cooking, wine, political theory, photojournalism, philosophy, and most recently the Portland Timbers association football team.

Product Details

  • Paperback: 584 pages
  • Publisher: Apress; 1 edition (February 1, 2005)
  • Language: English
  • ISBN-10: 1590594444
  • ISBN-13: 978-1590594445
  • Product Dimensions: 8.1 x 1.3 x 9.4 inches
  • Shipping Weight: 2.8 pounds (View shipping rates and policies)
  • Average Customer Review: 4.6 out of 5 stars  See all reviews (8 customer reviews)
  • Amazon Best Sellers Rank: #398,452 in Books (See Top 100 in Books)

More About the Author

James Turnbull works for Puppet Labs as VP of Technical Operations
managing the customer-facing business units including Services,
Sales Engineering, Support, Operations, Education and Community Management.

James has previously for the National Australia Bank as the manager of
the CERT (Computer Emergency Response Team) and as an Executive
Manager of IT Security at the Commonwealth Bank of Australia, the CIO of a medical research
foundation doing Web-based clinical trials, managing the architecture
group of an outsourcing company and in a number of IT roles in gaming,
telecommunications and government.

He is an experienced infrastructure architect with a background in
Linux/Unix, AS/400, Windows, and storage systems. He has been involved
in security consulting, infrastructure security design, SLA and service
definition and has an abiding interest in security metrics and measurement.

James is involved in the Free and Open Source Software community as a
developer and contributor. He was the Treasurer, member of the papers
committee, and coordinated the mini-conference program at linux.conf.au
2008 in Melbourne, Australia. He is also a member of Linux Australia,
including serving on the Executive Council in 2008 and President in 2010.

In his spare time his interests include cooking, wine, political theory,
photojournalism, philosophy, poetry, and cats.

Customer Reviews

4.6 out of 5 stars
(8)
4.6 out of 5 stars
3 star
0
2 star
0
1 star
0
Highly recommended reading if you're running a Linux box you wouldn't want getting "0wn3d." Lasse Koskela  |  3 reviewers made a similar statement
The coverage of PAM is better than anything I have seen. Michael Stahnke  |  1 reviewer made a similar statement
Most Helpful Customer Reviews
31 of 33 people found the following review helpful
4.0 out of 5 stars Much more than I expected March 2, 2005
Format:Paperback
I thought this might just be a book on iptables and other firewalls, but it's much more. In 400 pages, this covers everything from initial installation right through what to do if you did get breached. It covers email security, ftp,

dns and bind, ssh, file systems, pam authentication, firewalls, penetration testing and more.

The really impressive thing is that everything is covered well - obviously some of these subjects could be hundreds of pages by themselves, but the author manages to succintly present the important concepts.

I'd certainly recommend this to anyone running a Linux box.
Comment | 
Was this review helpful to you?
26 of 28 people found the following review helpful
5.0 out of 5 stars Excellent. Couldn't ask for more. August 13, 2005
Format:Paperback
I haven't run a Linux box since 2002. Some time ago, realizing that I'd soon have a chance to migrate to using Linux for everyday work, I decided I should start refreshing my *NIX commands and shell scripting. Then, I saw "Hardening Linux". Rather spontaneously, I decided to start with this security-focused title instead of the perhaps more intuitive path of installing the latest distro, setting up a bunch of daemons, installing databases, etc. That proved to be an excellent decision. "Hardening Linux" is not a small book. Yet, I read the 500 pages more or less cover to cover. Even though we're talking about a book of which purpose is to help you to secure your Linux server, I felt like I learned more about Linux reading this book than I've learned during the last year at work.

Turnbull kick starts the book by explaining user and group management, basics of the Linux file system security, how to verify downloaded packages, which tools and packages you probably should remove from a production server. By page 50, he had also shown how to compile your kernel with security flags and the Openwall project.

After the rather intense first chapter, the rest of the book's chapters each focus on a certain aspect of a system or a specific product, showing how to secure your system from that particular perspective. Most of these chapters are really top-notch compared to most of the online material I've resorted to in the past. For example, Turnbull presents the most intuitive tutorial on configuring the iptables firewall I've seen so far.

Another excellent description is the chapter on file system security. In my experience, the majority of developers dealing with Linux -- myself included -- don't really know much about Linux file system security beyond the basic file permission attributes. Thanks to chapter 4, I know twice as much about what's possible and what to look out for with regards to file permissions and ownership, and all those mysterious "special" characters that don't have to do with the basic read-write-execute stuff.

The author also covers the topics of syslog (and syslog-ng), secure remote connections (including SSL/TLS and SSH among other things), and gives a broad overview of common security analysis tools such as NMAP, Nessus, Ethereal, and tcpdump. Beyond those I already mentioned, Turnbull has written excellent chapters explaining how to secure your email servers (both sendmail and postfix), putting your FTP server into a chroot jail, and how to set up your DNS server and protect yourself from common attacks such as cache poisoning.

All in all, an excellent book on not just Linux security but also on Linux fundamentals. Highly recommended reading if you're running a Linux box you wouldn't want getting "0wn3d."
Was this review helpful to you?
10 of 11 people found the following review helpful
5.0 out of 5 stars Great topics May 2, 2006
Format:Paperback
After reading this book, I think it is going to be the mandatory companion I hand out to new Linux administrators, along with Essential System Administration. The first 6 chapters are exceptional. I can't say enough good things about them. The coverage of PAM is better than anything I have seen. The coverage of authentication, groups, users and best practices surrounding them was very good as well. The logging chapter alone is probably worth the purchase of the book.

After the first section, the book covers more specific topics that are of less interest to me. I realize that a lot of people use email, of all kinds. Chapter 7, 8 and 9 cover email, and I just wasn't that excited about it.

Chapter 10 covered securing FTP, which is nice, and 11 covers Bind. I guess I wonder why some of the topics were chosen. There are whole books on email and bind, available, but there isn't always good material for some other services, like CUPS, maybe some web-based administration tools, or SELinux. The coverage of topics that made the table of contents are very good.

I would say if you are new to Linux Security, or a seasoned player looking for just another reference, this book is great.
Comment | 
Was this review helpful to you?
Most Recent Customer Reviews
Search Customer Reviews
Only search this product's reviews

What Other Items Do Customers Buy After Viewing This Item?


Forums

There are no discussions about this product yet.
Be the first to discuss this product with the community.
Start a new discussion
Topic:
First post:
Prompts for sign-in
 



So You'd Like to...


Create a guide


Look for Similar Items by Category