Check out the new USENIX Web site.
 1998 USENIX Annual Technical Conference - June 15-19, 1998 - Marriott Hotel, New Orleans, Louisiana
 
Jump to Conference Home Page Jump to Registration Information
 
Table of Contents
M6   UNIX Security Tools: Use and Comparison
Marcus J. Ranum, Network Flight Recorder, Inc.

Who should attend: UNIX security administrators

There's a lot of publically-available information that can help you improve the security of your system. How do you find this information, and once you find it, how do you use it? This course will assist you to find and use such information. It will also compare the uses and drawbacks of several different programs, with an emphasis on when to use which.

Topics will include:

-    Tool checking and analysis: what to look for, how to analyze a tool, checking downloaded tools for security problems

-    Tools for authentication: proactive password changers (npasswd, passwd+); password generation tools, challenge-response and one-time password techniques (S/key), password concealment and cracking tools (shadow, crack)

-    Static analysis tools: file system auditing (Tripwire, binaudit), more general analysis tools (tiger, COPS)

-    Network analysis and security tools: monitors (tcp_wrapper), probers (strobe), NFS and NIS analysis and testing tools (nfsbug, nfswatch), ISS, SATAN, Gabriel, Courtney

-    Tools for privilege: managing shells (osh, sudo), shared account management (lsu)

-    Tools for logging and log analysis tools (swatch, etc)

-    Libraries: for example, securelib, msystem, safe_access, etc.

 


Marcus J. Ranum  (M6, T5is CEO and founder of Network Flight Recorder, Inc. He is the principal author of several major Internet firewall products, including the DEC SEAL, the TIS Gauntlet, and the TIS Internet Firewall Toolkit. Marcus has been managing UNIX systems and network security for over 13 years, including configuring and managing whitehouse.gov. Marcus is a frequent lecturer and conference speaker on computer security topics.
 


Program at-a-Glance - Tutorials - Technical Program - Registration -
Birds-of-a-Feather - Conference Activities - Hotel & Travel Info - Conference Home
Conference Index
Events Calendar
USENIX home