Practical Unix & Internet Security, 3/e (Paperback)
暫譯: 實用的 Unix 與網際網路安全,第 3 版 (平裝本)

Simson Garfinkel, Gene Spafford, Alan Schwartz

  • 出版商: O'Reilly
  • 出版日期: 2003-04-01
  • 定價: $1,800
  • 售價: 8.8$1,584
  • 語言: 英文
  • 頁數: 988
  • 裝訂: Paperback
  • ISBN: 0596003234
  • ISBN-13: 9780596003234
  • 相關分類: 資訊安全
  • 立即出貨(限量)

買這商品的人也買了...

商品描述

When Practical Unix Security was first published more than a decade ago, it became an instant classic. Crammed with information about host security, it saved many a Unix system administrator from disaster. The second edition added much-needed Internet security coverage and doubled the size of the original volume. The third edition is a comprehensive update of this very popular book - a companion for the Unix/Linux system administrator who needs to secure his or her organization's system, networks, and web presence in an increasingly hostile world.

Focusing on the four most popular Unix variants today--Solaris, Mac OS X, Linux, and FreeBSD--this book contains new information on PAM (Pluggable Authentication Modules), LDAP, SMB/Samba, anti-theft technologies, embedded systems, wireless and laptop issues, forensics, intrusion detection, chroot jails, telephone scanners and firewalls, virtual and cryptographic filesystems, WebNFS, kernel security levels, outsourcing, legal issues, new Internet protocols and cryptographic algorithms, and much more.

Practical Unix & Internet Security consists of six parts:

  • Computer security basics: introduction to security problems and solutions, Unix history and lineage, and the importance of security policies as a basic element of system security.

  • Security building blocks: fundamentals of Unix passwords, users, groups, the Unix filesystem, cryptography, physical security, and personnel security.

  • Network security: a detailed look at modem and dialup security, TCP/IP, securing individual network services, Sun's RPC, various host and network authentication systems (e.g., NIS, NIS+, and Kerberos), NFS and other filesystems, and the importance of secure programming.

  • Secure operations: keeping up to date in today's changing security world, backups, defending against attacks, performing integrity management, and auditing.

  • Handling security incidents: discovering a break-in, dealing with programmed threats and denial of service attacks, and legal aspects of computer security.

  • Appendixes: a comprehensive security checklist and a detailed bibliography of paper and electronic references for further reading and research.



Packed with 1000 pages of helpful text, scripts, checklists, tips, and warnings, this third edition remains the definitive reference for Unix administrators and anyone who cares about protecting their systems and data from today's threats.

Table of Contents

Preface

Part I. Computer Security Basics

1. Introduction: Some Fundamental Questions

2. Unix History and Lineage

3. Policies and Guidelines

Part II. Security Building Blocks

4. Users, Passwords, and Authentication

5. Users, Groups, and the Superuser

6. Filesystems and Security

7. Cryptography Basics

8. Physical Security for Servers

9. Personnel Security

Part III. Network and Internet Security

10. Modems and Dialup Security

11. TCP/IP Networks

12. Securing TCP and UDP Services

13. Sun RPC

14. Network-Based Authentication Systems

15. Network Filesystems

16. Secure Programming Techniques

Part IV. Secure Operations

17. Keeping Up to Date

18. Backups

19. Defending Accounts

20. Integrity Management

21. Auditing, Logging, and Forensics

Part V. Handling Security Incidents

22. Discovering a Break-in

23. Protecting Against Programmed Threats

24. Denial of Service Attacks and Solutions

25. Computer Crime

26. Who Do You Trust?

Part VI. Appendixes

A. Unix Security Checklist

B. Unix Processes

C. Paper Sources

D. Electronic Resources

E. Organizations

Index

商品描述(中文翻譯)

當《Practical Unix Security》首次出版於十多年前時,它立即成為經典之作。這本書充滿了有關主機安全的信息,拯救了許多 Unix 系統管理員免於災難。第二版增加了急需的網際網路安全內容,並將原本的篇幅加倍。第三版是這本非常受歡迎的書籍的全面更新,為需要在日益敵對的世界中保護其組織系統、網絡和網路存在的 Unix/Linux 系統管理員提供了伴侶。

本書專注於當今四種最受歡迎的 Unix 變體——Solaris、Mac OS X、Linux 和 FreeBSD,包含有關 PAM(可插拔身份驗證模組)、LDAP、SMB/Samba、防盜技術、嵌入式系統、無線和筆記型電腦問題、取證、入侵檢測、chroot 監獄、電話掃描器和防火牆、虛擬和加密檔案系統、WebNFS、內核安全級別、外包、法律問題、新的網際網路協議和加密算法等新信息,還有更多內容。

《Practical Unix & Internet Security》由六個部分組成:
1. 電腦安全基礎:介紹安全問題和解決方案、Unix 的歷史和血統,以及安全政策作為系統安全基本要素的重要性。
2. 安全構建塊:Unix 密碼、用戶、群組、Unix 檔案系統、密碼學、物理安全和人員安全的基本原則。
3. 網絡安全:詳細探討調製解調器和撥號安全、TCP/IP、保護個別網絡服務、Sun 的 RPC、各種主機和網絡身份驗證系統(例如 NIS、NIS+ 和 Kerberos)、NFS 和其他檔案系統,以及安全編程的重要性。
4. 安全操作:在當今不斷變化的安全世界中保持最新、備份、防禦攻擊、執行完整性管理和審計。
5. 處理安全事件:發現入侵、應對程式化威脅和拒絕服務攻擊,以及電腦安全的法律方面。
6. 附錄:全面的安全檢查清單和詳細的文獻目錄,供進一步閱讀和研究。

本書擁有 1000 頁的有用文本、腳本、檢查清單、提示和警告,第三版仍然是 Unix 管理員和任何關心保護其系統和數據免受當今威脅的人的權威參考。

目錄
前言

第一部分:電腦安全基礎
1. 介紹:一些基本問題
2. Unix 的歷史和血統
3. 政策和指導方針

第二部分:安全構建塊
4. 用戶、密碼和身份驗證
5. 用戶、群組和超級用戶
6. 檔案系統和安全
7. 密碼學基礎
8. 伺服器的物理安全
9. 人員安全

第三部分:網絡和網際網路安全
10. 調製解調器和撥號安全
11. TCP/IP 網絡
12. 保護 TCP 和 UDP 服務
13. Sun RPC
14. 基於網絡的身份驗證系統
15. 網絡檔案系統
16. 安全編程技術

第四部分:安全操作
17. 保持最新
18. 備份
19. 防禦帳戶
20. 完整性管理
21. 審計、日誌記錄和取證

第五部分:處理安全事件
22. 發現入侵
23. 防範程式化威脅
24. 拒絕服務攻擊及其解決方案
25. 電腦犯罪
26. 你信任誰?

第六部分:附錄
A. Unix 安全檢查清單
B. Unix 進程
C. 紙本來源
D. 電子資源
E. 組織
索引