Linux Server Hardening
All Articles

Linux Server Hardening

Below is an example check list for Linux server hardening – All ports except SSH, http is blocked. On some of the servers, DNS and SMTP ports are open for name resolution and mail sending purposes. We have hardened the kernel to disable all the unnecessary services. This has been done at the kernel level…

All Articles

Simple HTTP log analyzer

Here is a simple light weight HTTP analyzer written in PHP. I wrote this to brush up my skills writing schedulers for a typical LAMP stack. Nothing fancy, there are more things to implement on detecting malicious requests, but this will get you started – <?php /** //Simple http log parser and report generation script…

All Articles

A typical DB2 DB config

Below is a tuned DB config for a heavily loaded workflow application – [db2inst1@intranet db2inst1]$ db2 get db cfg for wf Database Configuration for Database wf Database configuration release level                    = 0x0900 Database release level                                  = 0x0900 Database territory                                      = US Database code page                                      = 819 Database code set                                       = ISO8859-1 Database country code                                   =…

All Articles

Sample Linux server (web centric) back up script in PERL

Below is a sample, detailed, PERL script for backing up your web centric Linux server. It includes ways to creating tgz of required areas, pushing them to magnetic tapes, other backup servers and even on to desktops –   Code:   #!/usr/bin/perl use POSIX qw(strftime);   umask 0000;  #####################################################  # This Program is a custom…