6.1. Linux Security Checklist6.1.1. Finding Distribution-Specific Security Resources6.1.2. Finding General Security Resources6.2. Using Linux Securely6.2.1. Using Password Protection6.2.2. Choosing Good Passwords6.2.3. Using a Shadow Password File6.2.3.1. Breaking Encrypted Passwords6.2.3.2. Checking for the Shadow Password File6.3. Using Log Files6.3.1. The Role of syslogd6.3.2. Redirecting Logs to a Loghost with syslogd6.3.3. Understanding the messages Log File6.4. Using Secure Shell Tools6.4.1. Starting the ssh Service6.4.2. Using the ssh, sftp, and scp Commands6.4.3. Using ssh, scp, and sftp Without Passwords6.5. Securing Linux Servers6.5.1. Controlling Access to Services with TCP Wrappers6.5.2. Understanding Attack Techniques6.5.3. Protecting Against Denial of Service Attacks6.5.3.1. Mailbombing6.5.3.1.1. Blocking Mail with Procmail6.5.3.1.2. Blocking Mail with sendmail6.5.3.2. Spam Relaying6.5.3.3. Smurf Amplification Attack6.5.4. Protecting Against Distributed DOS Attacks6.5.5. Protecting Against Intrusion Attacks6.5.5.1. Evaluating Access to Network Services6.5.5.2. Disabling Network Services6.5.6. Securing Servers with SELinux6.5.7. Protecting Web Servers with Certificates and Encryption6.5.7.1. Symmetric Cryptography6.5.7.2. Asymmetric Cryptography6.5.7.3. Secure Sockets Layer6.5.7.3.1. Creating SSL Certificates6.5.7.3.2. Using Third-Party Certificate Signers6.5.7.3.3. Creating a Certificate Service Request6.5.7.3.4. Getting Your CSR Signed6.5.7.3.5. Creating Self-Signed Certificates6.5.7.3.6. Restarting Your Web Server6.5.7.3.7. Troubleshooting Your Certificates6.6. Using Linux Live CD Security Tools6.6.1. Advantages of Security Live CDs6.6.2. Using INSERT to Check for rootkits6.7. Summary