Atomic Secured Linux

Статус
В этой теме нельзя размещать новые ответы.

aressto

Гуру форума
Регистрация
17 Июн 2007
Сообщения
442
Реакции
51
Присматриваюсь к этой платной разработке к Linux (думаю об установке на свой сервер, работающий в качестве вебсервера с Центос 5 + Плеск)

возможности
New Web GUI to manage everything, plus everything in 1.0 and tons of new features and security:
Vulnerability scanner
Hardening tools to secure your system
Stack overflow protection from the PaX project, that addresses exploits in services on the system, such as apache, bind, secure shell, mysql, postgres, etc.
Virtual Patching of web applications, which makes its possible to use software which have vulnerabilities when a patch is not available or it is not possible to install one
Web Application Firewall through mod_security, and the industry leading rules created by Atomicorp at gotroot.com, optimized for Plesk Server Administrator environments.
Realtime malware scanning of web, email and local filesystems
Domain based control of antispam and antimalware features (for control panels like Plesk)
Automatic process monitoring, alerting and actions, such as restarting critical processes that have died, have hung or are consuming too many resources
An intelligent and robust Role-Based Access Control (RBAC) system that can generate least privilege policies for your entire system with no configuration, from the Grsecurity project.
Trusted Path Execution, which only allows untrusted users such as apache to execute commands owned by root, thus simply preventing a whole class of exploit techniques used by attackers, or internet worms
Users are restricted to only view their processes
Denial of Service protection through mod_evasive
Realtime attack shunning and blocking, and policy based unshunning after user defined period of time

ASL Kernel (grsecurity, firewall additions like match, and stealth), mod_security and, mod_evasive for input validation, and DoS protection, userspace HIDS with ossec, application inventory module, compliance and vulnerability scanner, and PSA integration.



может уже кто то пользуется, что скажите?
 
Статус
В этой теме нельзя размещать новые ответы.
Назад
Сверху