CSC586: System Administration and Security
The purpose of this course is to explore the issues involved in installing and maintaining a Linux-based system with an emphasis on setting up and maintaining secure services. In particular, the notion of an overall security architecture is addressed and these security polices are discussed:
- security issues with multiple accounts
- information ownership: who has the right to access what
- file permissions and their limitations
- access control lists: applied to file and email systems
- SE Linux role-based security enhancements
- Apache modsecurity module for limiting web-based intrusions
- host-based network security
- password visibility in a variety of network-based systems incuding database (MySQL,Postgres) and LDAP
- maintenance, management and review of security policies