SELinux System Administration - Second Edition
暫譯: SELinux 系統管理 - 第二版

Sven Vermeulen

  • 出版商: Packt Publishing
  • 出版日期: 2016-12-19
  • 售價: $2,600
  • 貴賓價: 9.5$2,470
  • 語言: 英文
  • 頁數: 285
  • 裝訂: Paperback
  • ISBN: 1787126951
  • ISBN-13: 9781787126954
  • 相關分類: Linux
  • 已過版

買這商品的人也買了...

商品描述

Ward off traditional security permissions and effectively secure your Linux systems with SELinux

About This Book

  • Leverage SELinux to improve the secure state of your Linux system
  • A clear approach to adopting SELinux within your organization
  • Essential skills and techniques to help further your system administration career

Who This Book Is For

This book is for Linux administrators who want to control the secure state of their systems. It’s packed with the latest information on SELinux operations and administrative procedures so you’ll be able to further harden your system through mandatory access control (MAC) – a security strategy that has been shaping Linux security for years.

What You Will Learn

  • Analyze SELinux events and selectively enable or disable SELinux enforcement
  • Manage Linux users and associate them with the right role and permission set
  • Secure network communications through SELinux access controls
  • Tune the full service flexibility by dynamically assigning resource labels
  • Handle SELinux access patterns enforced through the system
  • Query the SELinux policy in depth

In Detail

Do you have the crucial job of protecting your private and company systems from malicious attacks and undefined application behavior? Are you looking to secure your Linux systems with improved access controls? Look no further, intrepid administrator! This book will show you how to enhance your system’s secure state across Linux distributions, helping you keep application vulnerabilities at bay.

This book covers the core SELinux concepts and shows you how to leverage SELinux to improve the protection measures of a Linux system. You will learn the SELinux fundamentals and all of SELinux’s configuration handles including conditional policies, constraints, policy types, and audit capabilities. These topics are paired with genuine examples of situations and issues you may come across as an administrator. In addition, you will learn how to further harden the virtualization offering of both libvirt (sVirt) and Docker through SELinux.

By the end of the book you will know how SELinux works and how you can tune it to meet your needs.

Style and approach

This book offers a complete overview of SELinux administration and how it integrates with other components on a Linux system. It covers the majority of SELinux features with a mix of real life scenarios, descriptions, and examples. This book contains everything an administrator needs to customize SELinux.

商品描述(中文翻譯)

**抵禦傳統安全權限,並有效保護您的 Linux 系統與 SELinux**

## 本書介紹

- 利用 SELinux 改善您的 Linux 系統的安全狀態
- 在您的組織內部採用 SELinux 的清晰方法
- 幫助您進一步發展系統管理職業的基本技能和技術

## 本書適合誰

本書適合希望控制其系統安全狀態的 Linux 管理員。書中包含有關 SELinux 操作和管理程序的最新資訊,讓您能夠通過強制存取控制 (MAC) 進一步加強系統安全,這是一種多年來塑造 Linux 安全的安全策略。

## 您將學到什麼

- 分析 SELinux 事件並選擇性地啟用或禁用 SELinux 強制執行
- 管理 Linux 使用者並將其與正確的角色和權限集關聯
- 通過 SELinux 存取控制保護網路通信
- 通過動態分配資源標籤來調整完整服務的靈活性
- 處理系統強制執行的 SELinux 存取模式
- 深入查詢 SELinux 政策

## 詳細內容

您是否肩負著保護私人和公司系統免受惡意攻擊和未定義應用行為的關鍵任務?您是否希望通過改進的存取控制來保護您的 Linux 系統?不必再尋找了,勇敢的管理員!本書將向您展示如何在各種 Linux 發行版中增強系統的安全狀態,幫助您防範應用漏洞。

本書涵蓋了 SELinux 的核心概念,並展示了如何利用 SELinux 改善 Linux 系統的保護措施。您將學習 SELinux 的基本知識以及所有 SELinux 的配置處理,包括條件政策、約束、政策類型和審計能力。這些主題配合您作為管理員可能遇到的真實情境和問題的實例。此外,您還將學習如何通過 SELinux 進一步加強 libvirt (sVirt) 和 Docker 的虛擬化功能。

在本書結束時,您將了解 SELinux 的運作方式以及如何調整它以滿足您的需求。

## 風格與方法

本書提供了 SELinux 管理的完整概述,以及它如何與 Linux 系統上的其他組件集成。它涵蓋了大多數 SELinux 功能,並結合了現實生活中的情境、描述和範例。本書包含了管理員自定義 SELinux 所需的一切。