A
Sun Cobalt RaQ550 already comes with some tools to detect
portscans and buffer overflows. These tools are nice
to have and are a step into the right direction. However,
they do not offer the desired degree of protection which
one would expect.
To
prepare and to defend your valuable business assets
against hacks we assembled a comprehensive, multi-layered
Intrusion Detection and Prevention software which
offers the best integrated protection available for
SunCobalt RaQ550.
Our
Security Package for the RaQ3 and RaQ4 has been in service
for over two years and we installed it on hundrets of
RaQs. Very few of them have been compromised and in
all cases the Security Package quickly alerted the administrators
that something strange was going on.
We finally released the
Security Package for the RaQ550, too, which incorporates
all known services of the RaQ3 and RaQ4 Security Package,
but also goes one step further: Instead of the Ipchains
based Firewall we now install an Iptables based Firewall
which offers a slightly better degree of protection
and allows more fine tuning of the Firewall rules in
an easier fashion.
The question, which only you can answer is: Can you
afford to do without?
This is what we offer:
When establishing an Intrusion Detection System Process,
a defense in depth process concentrating on software,
networks, and hardware is the key to success as SANS
claims. Our approach to that follows these lines
and creates several layers of protection.
In
short this includes the following software packages
(detailed description further down):
-
Installation of all missing patches
- Upgrade of OpenSSH
- Installation of our custom built Firewall
-
Installation of Portsentry in "Honeypot"-mode
-
Installation of LCAP to prevent loading of
kernel modules
-
Installation of Logwatch
-
Installation of FCheck (similar to Tripwire)
-
Installation of automated CHKROOTKIT
All these programs are available as Open Source software
and have been modified by us to suit the specific needs
and environmental conditions on a SUN/Cobalt RaQ.
|