19.12.2012 Views

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Safeguard Catalogue - Hardware & Software Remarks<br />

____________________________________________________________________ .........................................<br />

- SATAN<br />

This public domain program enables the network security to be analysed. It<br />

checks networked UNIX systems for known deficiencies which have often<br />

not been eliminated.<br />

- BSI secure UNIX administration tool (USE<strong>IT</strong>)<br />

USE<strong>IT</strong> was developed by the BSI to enable System Administrators to<br />

automatically check the security settings of a UNIX system with a tool.<br />

Checks of the consistency of system files and of the system itself are<br />

performed, password strength is checked and insecure processes are<br />

identified. Checksums of files and file attributes are generated and<br />

checked. Network security is reviewed and penetration testing can be<br />

performed. Insecure ports and services are checked. Logging is monitored.<br />

Checks of imported manufacturer's patches and of relevant CERT<br />

publications are performed. Further information on USE<strong>IT</strong> can be obtained<br />

from the <strong>IT</strong> baseline protection CD.<br />

- crack<br />

With this public domain program, a check is made of whether the existing<br />

passwords are too simple and can be easily guessed.<br />

Additional controls:<br />

- Are the performance and results of such security checks documented?<br />

- Which vulnerabilities are checked by means of the programs and shell<br />

scripts used?<br />

____________________________________________________________________ .........................................<br />

<strong>IT</strong>-<strong>Baseline</strong> <strong>Protection</strong> <strong>Manual</strong>: Oktober 2000

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!