Preventing General DoS Attacks Malformed Packet Attacks and Flooding

For the exam, you should know the six techniques SUN recommends implementing to help prevent DoS attacks against the Solaris operating system. These are disabling executable stacks, disabling extraneous IP services ports, using egress filtering, using firewalls, monitoring networks, and implementing a patch update program. To prevent and defend against DoS attacks, including malformed packet attacks and flooding, Sun Microsystems recommends using egress filtering, TCP wrappers, firewalling,...

How to Use Port Forwarding in Solaris Secure Shell

You can specify that a local port be forwarded to a remote host. Effectively, a socket is allocated to listen to the port on the local side. The connection from this port is made over a secure channel to the remote host. For example, you might specify port 143 to obtain e-mail remotely with IMAP4. Similarly, a port can be specified on the remote side. To use port forwarding, you must first enable port forwarding on the target Solaris Secure Shell server. 1. Assume the Primary Administrator...

Twominute Drill Tkr

Here are some of the key points from the certification objectives in Chapter 11. Explain How to Protect Files Using the Solaris Cryptographic Framework Algorithms can be symmetric secret key or asymmetric public key computational procedures used for encryption. In symmetric algorithms, the same key is used for both encryption and decryption, and in asymmetric algorithms, two keys are used one to encrypt and another to decrypt a message. Providers are cryptographic plug-ins that are used by...

Use the PAM Framework to Configure the Use of System Entry Services for User

10. 0 The PAM software consists of a library, various service modules, and a configuration file. The pam.conf file defines which modules to use and in what order the modules are to be used with each application. The PAM library provides the framework to load the appropriate modules and to manage the stacking process. The PAM library provides a generic structure to which all of the modules can plug in. The PAM framework provides a method for authenticating users with multiple services by using...

Lab Answer Ijo

The first task that ABCD Inc. hired you to perform is to run ASET manually at the high security level. To avoid resource encumbrance, and knowing that ASET tasks should be run during off-peak hours or when system activities as well as the user load are low, you'll execute ASET promptly at 9 p.m. To do so, log in as root or become superuser and then issue the usr aset aset -l high -d usr asset command. At that time, you should notify the customer that you'll be gathering the report files to...

Sun Certified Security Administrator for Solaris 9 10 Study Guide

McGraw-Hill Osborne is an independent entity from Sun Microsystems, Inc. and is not affiliated with Sun Microsystems, Inc. in any manner. This publication and CD may be used in assisting students to prepare for the Sun Certified Security Administrator Exam. Neither Sun Microsystems nor McGraw-Hill Osborne warrant that use of this publication and CD will ensure passing the relevant exam. Solaris, Sun Microsystems, and the Sun Logo are trademarks or registered trademarks of Sun Microsystems, Inc....

Nside The Exam

The Sun Certified Security Administrator for Solaris exam consists of 60 multiple-choice, drag-drop, and matching questions to be answered in 90 minutes. The passing score for the entire exam is 60 percent. Of these 60 questions, approximately ten questions cover Section 1 - General Security Concepts of the official exam objectives and include the following items 1. Explain fundamental concepts concerning information security and explain what good security architectures include people, process,...