Unix Security Tips

This page is a collection of pointers to information that will help departmental and individual users improve the security of their UNIX systems.

Page Table of Contents

System Compromises

If you believe your system may have been broken into, please review the following information for actions to take:


System Configuration Guidelines
System Patches

One key element of system security is to be sure that your system has the latest vendor patches applied, particularly those that correct security problems.

Your system manufacturer provides these patches (and installation instructions), likely via an anonymous ftp or web site (see Vendor Security Support Sites).


Security Advisories

The following are particularly important advisories regarding UNIX systems:

  1. CA-94:01 Ongoing Network Monitoring Attacks
  2. CA-94:15 NFS Vulnerabilities
  3. CA-95:01 IP Spoofing and Hijacked Terminal Connections
  4. CERT Summaries -- periodic update on current security problems and solutions

See also Security Advisory Information about receiving and reviewing other computer security alerts.


Vendor Security Support Sites

If you administer particular vendor(s) systems, you may find helpful security advisory information and/or patches at a vendor site. We keep links to these at: our vendor support site.


Tools

Some tools are available to help you administer a secure system. We especially recommend the following, although not all will be useful in all situations.


Further Information