lynis - hardening and auditing for linux, mac and unix - nluug may 2014

17
NLUUG - Spring 2014 1 Lynis Security Auditing and Hardening for Linux, Mac & Unix systems Michael Boelen Twitter @mboelen Google+ +MichaelBoelen Web http://cisofy.com

Upload: michael-boelen

Post on 18-Dec-2014

369 views

Category:

Software


1 download

DESCRIPTION

Presentation about Lynis, a tool to audit and harden Linux, Mac and Unix systems. In this presentation we compare a few methods to secure your systems. We take a look at Lynis and how it can provide a solution to a common problem of lacking compliance and security controls.

TRANSCRIPT

Page 1: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

NLUUG - Spring 2014 1

Lynis

Security Auditing and Hardening for Linux, Mac & Unix systems

Michael Boelen

Twitter @mboelenGoogle+ +MichaelBoelenWeb http://cisofy.com

Page 2: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

2

Passion

http://en.wikipedia.org/wiki/File:Passiflora_Edulis_Open_Fruit2.jpg

What's yours?

Page 3: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

3

whoami

Michael Boelen

◼ Open Source developer◼ Author of Rootkit Hunter & Lynis◼ Passion for auditing

Page 4: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

4

The Problem

Auditing and Hardening..

◼ A lot of work!◼ Not that interesting, right?◼ And.. prone to errors

Page 5: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

5

Solutions

Options

◼ Guides◼ SCAP◼ Tools

Page 6: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

6

Benchmarks / Guides

Pros

◼ Free to use◼ Extensive information

Cons

◼ Time intensive◼ Usually no tooling◼ Limited distributions◼ Delayed releases

Page 7: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

7

SCAP

Pros

◼ Free to use◼ Focused on automation

Cons

◼ Limited distributions◼ Easy of use◼ Lacking documentation or

already outdated

Page 8: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

8

Lynis

Page 9: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

9

Lynis

Benefits

● Easy to implement● Quick results● Focus on automation● In-depth auditing

Page 10: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

10

Lynis

2007

◼ Quality of existing tools◼ Efficiency of work

Page 11: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

11

Lynis+

2014

◼ New website◼ Documentation refresh◼ Lynis controls online◼ Enterprise support◼ Plugins

Page 12: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

12

Demo

Page 13: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

13

Lynis++

DoneDone

● Website● Documentation● Lynis controls online● Enterprise support● Plugins

NewNew● In-depth reports● Hardening automation● Intrusion detection● Performance tuning● Compliance checking● (Forensics)● (Malware)

Page 14: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

14

Questions?

There is more..

Page 15: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

15

Demo 2

Page 16: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

16

Thank You

● Try Lynis● Share open source

Twitter @mboelenGoogle+ +MichaelBoelenWeb http://cisofy.com

Page 17: Lynis - Hardening and auditing for Linux, Mac and Unix - NLUUG May 2014

17