Learning Puppet Security
暫譯: 學習 Puppet 安全性

Jason Slagle

  • 出版商: Packt Publishing
  • 出版日期: 2015-03-31
  • 售價: $1,830
  • 貴賓價: 9.5$1,739
  • 語言: 英文
  • 頁數: 197
  • 裝訂: Paperback
  • ISBN: 178439775X
  • ISBN-13: 9781784397753
  • 相關分類: Puppet資訊安全
  • 海外代購書籍(需單獨結帳)

相關主題

商品描述

Secure your IT environments with the powerful security tools of Puppet

About This Book

  • Pass a compliance audit by showing the concrete state of your systems using Puppet
  • Secure your Puppet server to minimize risks associated with misconfigured installations using the gdsoperations/auditd module
  • Attain in-depth knowledge of all the security aspects related to Puppet with the help of a step-by-step approach and attain the practical skills required to develop applications

Who This Book Is For

If you are a security professional whose workload is increasing, or a Puppet professional looking to increase your knowledge of security, or even an experienced systems administrator, then this book is for you. This book will take you to the next level of security automation using Puppet. The book requires no prior knowledge of Puppet to get started.

What You Will Learn

  • Use Puppet manifests to show system compliance and track changes to the operating system resources
  • Generate security reports using PuppetDB to show that the systems are up to date
  • Automate CIS compliance using community modules
  • Configure firewalls automatically based on roles
  • Demystify the Puppet SSL stack
  • Set up centralized logging with dashboard search functionality using Elasticsearch, Logstash, and Kibana
  • Configure your systems to be secure automatically using SELinux with Puppet
  • Use Puppet to assist with PCI DSS compliance

In Detail

As application and server environments become more complex, managing security and compliance becomes a challenging situation. By utilizing Puppet and the tools associated with it, you can simplify and automate many of the more repetitive security-related tasks.

Beginning with the simplest cases, you will quickly get up and running by looking at an example Puppet manifest. Moving on, you will learn how to use Puppet to track changes to environments and how this can be used for compliance. As your knowledge increases, you will then get to explore community modules and learn how they can help simplify the deployment of your Puppet environment by using pre-written code contributed by community members. By the end of this book, you will be able to implement a complete centralized logging solution using Logstash and community modules.

商品描述(中文翻譯)

使用 Puppet 的強大安全工具來保護您的 IT 環境

本書介紹


  • 通過使用 Puppet 顯示系統的具體狀態來通過合規性審核

  • 保護您的 Puppet 伺服器,以最小化與配置錯誤的安裝相關的風險,使用 gdsoperations/auditd 模組

  • 通過逐步的方法深入了解與 Puppet 相關的所有安全方面,並獲得開發應用程序所需的實用技能

本書適合誰

如果您是一位工作量不斷增加的安全專業人士,或是一位希望增強安全知識的 Puppet 專業人士,甚至是一位經驗豐富的系統管理員,那麼這本書就是為您而寫的。本書將帶您進入使用 Puppet 的安全自動化新境界。開始時不需要具備 Puppet 的先前知識。

您將學到什麼

  • 使用 Puppet 清單顯示系統合規性並跟踪操作系統資源的變更
  • 使用 PuppetDB 生成安全報告,以顯示系統是最新的
  • 使用社群模組自動化 CIS 合規性
  • 根據角色自動配置防火牆
  • 揭開 Puppet SSL 堆疊的神秘面紗
  • 使用 Elasticsearch、Logstash 和 Kibana 設置具有儀表板搜索功能的集中日誌記錄
  • 使用 SELinux 和 Puppet 自動配置系統以確保安全
  • 使用 Puppet 協助滿足 PCI DSS 合規性

詳細內容

隨著應用程序和伺服器環境變得越來越複雜,管理安全性和合規性變得具有挑戰性。通過利用 Puppet 及其相關工具,您可以簡化和自動化許多重複的安全相關任務。

從最簡單的案例開始,您將通過查看一個示例 Puppet 清單迅速上手。接下來,您將學習如何使用 Puppet 跟踪環境的變更,以及如何將其用於合規性。隨著知識的增加,您將探索社群模組,並了解它們如何通過使用社群成員貢獻的預寫代碼來簡化 Puppet 環境的部署。在本書結束時,您將能夠使用 Logstash 和社群模組實現完整的集中日誌記錄解決方案。