I am changing to a new linux distro and with that I am trying to learn about network security in all it's depth.
My objective with this topical question is.. what are all the best ways to protect my computer from the WAN in a linux environment.
Topics like chroot jailing, browser considerations, isolating services, gateway box, proxy, VNC (xen natively supported w/ kernel patch), partitioning recommendations, virusware (clamav, etc), firewall initiatives (IPtables, and other considerations), network & port monitoring (both real time & logging), rootkit detection, etc... IOW, any and all other efforts or considerations...
What ever you have to offer so I can be assured I have a system that is as hardened as is possible.
Custom configs and linux programming are not intimidating... Have any questions about my hardware or configs, please specify them.
Thanks for offering your recommendations and solutions.
kt
My objective with this topical question is.. what are all the best ways to protect my computer from the WAN in a linux environment.
Topics like chroot jailing, browser considerations, isolating services, gateway box, proxy, VNC (xen natively supported w/ kernel patch), partitioning recommendations, virusware (clamav, etc), firewall initiatives (IPtables, and other considerations), network & port monitoring (both real time & logging), rootkit detection, etc... IOW, any and all other efforts or considerations...
What ever you have to offer so I can be assured I have a system that is as hardened as is possible.
Custom configs and linux programming are not intimidating... Have any questions about my hardware or configs, please specify them.
Thanks for offering your recommendations and solutions.
kt
