Linux server security chapter

2017-05-20  本文已影响0人  luoxs

账户和登陆安全

users:adm/lp/sync/shutdown/halt/news/uucp/operator/games/gopher
group: adm/lp/news/uucp/games/dip/pppusers/popusers/slipusers

acpid haldaemon messagebus klogd network syslogd cron iptables apmd kudzu atd keytables xinetd sshd

PasswordAuthentication no

vim /etc/sudoers
user01 ALL = /bin/more /etc/shadow
user02 ALL = NOPASSWD: /etc/init.d/nagios restart
super ALL = (ALL) NOPASSWD : ALL

/etc/issue /etc/issue.net /etc/motd /etc/redhat-release

vim /etc/bashrc or ~/.bashrc

    HISTFILESIZE=4000 #记录条数
    HISTSIZE=4000       #输出记录总数
    HISTTIMEFORMAT='%F %T'
    export HISTTIMEFORMAT

chattr lsattr
chattr [-RV] [-v version] [mode] file or dir
[mode] a:只能追加,常用于日志;c:是否压缩;i:设定文件不能被修改,删除,重命名,设定链接等,也不能写入;
lsattr [adlRvV] file or dir

上一篇 下一篇

猜你喜欢

热点阅读