Friday, 21 November 2008
 
 
OS Hardening Print

Over the past years, Navixia partners audited a great number of new systems and applications. When doing so, they frequently found that the initial hardening of the underlying operating system was poorly done, if done at all.

As a result, Navixia decided to help their customers define and implement baseline security policies for the main operating systems (Microsoft Windows and Linux at this time).

For these two systems, the following steps are performed.

Microsoft Windows

  • Bios and hardware options (RAID, for instance)
  • OS Install options
  • Secure remote management
  • User rights assignment
  • Files permissions
  • Required MS Services
  • Configuration of the local firewall (when possible)
  • Definition of a local security policy 

The customer usually ends up with customized "INF" or "Registry" files that can be applied to any new system.

Linux

  • Bios and hardware options
  • OS Install options
  • Definition of kickstart options for unattended installations
  • Secure remote management
  • Required daemons
  • Configuration of the local firewall
  • Centralized patches and updates management

The customer usually ends up with 2-3 pages describing what needs to be done on any new system.

Depending on the number of servers, our experts are also able to help you create a bootable CD, that would automatically set up any new system according to the rules that have been defined in the security policy.

Interested to know more? Do not hesitate to This e-mail address is being protected from spam bots, you need JavaScript enabled to view it   for any further information.

 
 
© 2008 Navixia SA