Book description
This IBM Redbooks publication discusses best security practices for running Linux as a z/VM guest on IBM eServer zSeries and S/390 machines. This publication is intended for system administrators and IT architects responsible for deploying secure Linux servers running under z/VM. We consider both z/VM and Linux security topics.
We examine the unique security and integrity features zSeries offers for consolidating a large number Linux servers under z/VM. We discuss virtual machine isolation and command privileges assigned to VM guests. Security configuration options for z/VM Version 4.4 are explained.
In this book, we also discuss Linux security topics. We examine options for hardening a Linux installation. Securing Linux network traffic using Secure Sockets Layer and Secure Shell is considered. We look at implementing a virtual private network using FreeS/WAN. Commercial firewall technology and implementation using the StoneGate firewall for zSeries is discussed. We examine using IBM Tivoli Access Manager in conjunction with an LDAP server running on z/OS to authenticate Linux users against a RACF running on z/OS.
Table of contents
- Notices
- Preface
- Chapter 1: Introduction
- Chapter 2: z/VM integrity and security
- Chapter 3: Hardening a Linux installation
-
Chapter 4: Secure Sockets Layer and the Secure Shell
- Introduction to Secure Sockets Layer
- Enabling OpenSSL in Apache
- Using hardware acceleration with OpenSSL
- Secure Shell overview
- Secure network access using SSH
- File transfer and remote command execution
- Authentication without passwords
- Secure tunneling using port forwarding
- X forwarding
- Securing VNC using port forwarding
- Chapter 5: Implementing virtual private networks using FreeS/WAN
- Chapter 6: StoneGate firewall
- Chapter 7: Using z/OS features in a Linux environment
- Related publications
- Index (1/2)
- Index (2/2)
- Back cover
Product information
- Title: Linux on IBM eServer zSeries and S/390: Best Security Practices
- Author(s):
- Release date: May 2004
- Publisher(s): IBM Redbooks
- ISBN: None
You might also like
book
Linux on IBM eServer zSeries and S/390: Performance Toolkit for VM
This IBM Redbooks publication discusses Performance Toolkit for VM, a performance monitoring and analysis tool for …
book
The Virtualization Cookbook for IBM z Systems Volume 3: SUSE Linux Enterprise Server 12
This IBM® Redbooks® publication is Volume 3 of a series of three books called The Virtualization …
book
IBM z/VM and Linux on IBM System z: Virtualization Cookbook for Red Hat Enterprise Linux 4
In this IBM Redbooks publication, we assume that you have a general familiarity with IBM eServer …
book
Fibre Channel Protocol for Linux and z/VM on IBM System z
This IBM® Redbooks® publication builds upon the existing Linux for zSeriesLinux on zSeries: Fibre Channel Protocol …