Guardian Digital's EnGarde Secure Linux is the world's premier secure operating platform engineered from Open Source Technologies. Written in an easy to read, plain-language format, you will get introduced to the full range of benefits that makes EnGarde "Secure By Design."
Secure By Design
An overview of what makes EnGarde Secure Linux
the leading choice for secure servers. Contents:
1. Introduction to EnGarde Secure Linux 3 1.1. Pioneering Open Source Security in an Insecure World 1.2. Guardian Digital and the Open Security Model 1.3. What is EnGarde Secure Linux?
2. Design Philosophy 4
3. Feature Overview 5
4. Security at the Kernel and Security Enhanced Linux (SELinux) 6-7 4.1. The Hazards of "root" Access 4.2. "Mandatory Access Control:" Limiting The Damage from Security Breaches 4.3. "Targeted" SELinux implementations vs. "Comprehensive" EnGarde Secure Linux
5. Security and the User Experience: The Guardian Digital WebTool 8-9 5.1. Limiting Access to Services 5.2. The EnGarde Secure Linux Secure Services Portfolio 5.2.A Encryption and Passwords the Guardian Digital Way 5.2.B. Secure Web server 5.2.C. Secure Mail Transport and Delivery 5.2.D. Secure Databases 5.2.E. Secure Shell access (SSH)
6. Other services managed by the WebTool 10-11 6.1 VSFTP'd and "very secure" FTP service 6.2 Firewall Service 6.3 Secure DNS (Domain Name Service) 6.4 Proxy Services 6.5 Backup and UPS support
017. Defense in Depth: Intrusion Detection with EnGarde Secure Linux 12-13 7.1. Network-based Intrusion Detection 7.2. Secure System Logging, Host-based Intrusion Detection and the WebTool 7.2.a. Secure and Reliable System Logging 7.2.b. Host-based intrusion detection
8. Security Threats and the EnGarde Response 14-17 8.1. Con?guration-relatedcompromises 8.2. Server Host-based compromises 8.3. Network attacks 8.4. Snooping and Eavesdropping
9. Security, Consistency and the GDSN Promise: 18 Guardian Digital Secure Network 9.1. Upgrades and Security Patches 9.2. Enhancements and Adding New Services
10. Summary 19
021.1. Pioneering Open Source Security in an Insecure World
Since its inception in 1999, Guardian Digital has been revolutionizing the way companies conduct business over the Internet. Guardian Digital recognized from its beginnings that the Internet, conceived and expanded with little regard for security, required a new and more disciplined set of Internet services and tools if businesses were to remain secure. Guardian Digital was among the ?rsttorealizethatthissecureInternetinfrastructurecouldbestbeconstructed using the resources of the rapidly expanding open source software community. The result of these insights is EnGarde Secure Linux, an ef?cient,easy-to-useandcost-ef-fective Internet services platform offering an unparalleled level of built-in security.
1.2. Guardian Digital and the Open Security Model
The explosive growth of the Internet during the late 1990s was fueled by the rise of open In-ternet standards, open source software and the Linux operating system. To create EnGarde Secure Linux, Guardian Digital brought together the work of its engineering team and the contributions of the world community of open source security enthusiasts and professionals. Guardian Digital recognized that the open source model also provided the best approach to the problem of maintaining security in the relentlessly dynamic environment of the Internet. By making every element of EnGarde Secure Linux freely available for inspection by security professionals and enthusiasts throughout the world, Guardian Digital ensures that any secu-rity vulnerabilities in EnGarde Secure Linux will be rapidly found and corrected. And by freely distributing EnGarde Secure Linux to the community, Guardian Digital subjects its services to the harsh realities of Internet service and receives constant feedback from thousands of users around the world in every imaginable business setting. The result is secure and enter-prise-ready platform for delivering enterprise-class services.
1.3. What is EnGarde Secure Linux?
By joining a disciplined, professional approach to security with the resources and tools of the open source community, Guardian Digital has created EnGarde Secure Linux, the per-fect platform for developing a highly-secure online presence. EnGarde Secure Linux is not just another "repackaged" Linux distribution, but a uniqu... [download for more]