From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from lists.gentoo.org ([140.105.134.102] helo=robin.gentoo.org) by nuthatch.gentoo.org with esmtp (Exim 4.43) id 1E06nM-0006TG-MU for garchives@archives.gentoo.org; Wed, 03 Aug 2005 00:07:41 +0000 Received: from robin.gentoo.org (localhost [127.0.0.1]) by robin.gentoo.org (8.13.4/8.13.4) with SMTP id j7306Oke006612; Wed, 3 Aug 2005 00:06:24 GMT Received: from nproxy.gmail.com (nproxy.gmail.com [64.233.182.200]) by robin.gentoo.org (8.13.4/8.13.4) with ESMTP id j7302J9b009986 for ; Wed, 3 Aug 2005 00:02:19 GMT Received: by nproxy.gmail.com with SMTP id h2so1111nfe for ; Tue, 02 Aug 2005 17:02:41 -0700 (PDT) DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:reply-to:to:subject:in-reply-to:mime-version:content-type:references; b=U3HivSmrLVPRaldsOM431hLXAhZbUSmams1PXASUlcuEgWCoi6PxmSU9sKA+pO4XfBlQ/gSoEQn9JAAKmWl1sqH+4TWL0elmS0RyXMT1Ah6IS1E8giSqh51RYwtt5/ys/auEG282gto1U+TRG4yXwIAiNuCDX9L56kxu4g7TBSE= Received: by 10.48.250.9 with SMTP id x9mr2028nfh; Tue, 02 Aug 2005 17:02:41 -0700 (PDT) Received: by 10.48.143.12 with HTTP; Tue, 2 Aug 2005 17:02:41 -0700 (PDT) Message-ID: Date: Wed, 3 Aug 2005 02:02:41 +0200 From: Peter De Zutter To: gentoo-user@lists.gentoo.org Subject: Re: [gentoo-user] Testing how secure a server is... In-Reply-To: <8f7a9d5805080216505f9b4a51@mail.gmail.com> Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-user@gentoo.org Reply-to: gentoo-user@lists.gentoo.org Mime-Version: 1.0 Content-Type: multipart/alternative; boundary="----=_Part_3732_2070831.1123027361938" References: <8f7a9d5805080216505f9b4a51@mail.gmail.com> X-Archives-Salt: 9ad07e0a-81f4-4297-80aa-b2239ff74197 X-Archives-Hash: b540fe3f71fcb301c2efa61159dfac76 ------=_Part_3732_2070831.1123027361938 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Content-Disposition: inline Hi, 2 tools nmap and nessus for network/port scanning and others. For hardering you could use bastille. Of course all found in portage. Peter On 8/3/05, Raphael Melo de Oliveira Bastos Sales = =20 wrote: >=20 > Hi there, >=20 > I was wondering what tools should I use to detect security flaws to > my server and a few tips on how to use them. What are the most common > forms of attack and how do I avoid being attacked by one of them? >=20 > The services avaliable are only Apache - SSL and SSH. I've > installed an firewall, iptables and firestarter to control it, and > blocked all ports except 443 and 8080, where the SSH is listening. > Apache has PHP installed as a module. >=20 > Thanks for the attention, >=20 > Raphael. >=20 > -- > gentoo-user@gentoo.org mailing list >=20 >=20 --=20 I have plenty of common sense,=20 I just choose to ignore it.=20 --- Calvin ------=_Part_3732_2070831.1123027361938 Content-Type: text/html; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Content-Disposition: inline Hi,
2 tools nmap and nessus for network/port scanning and others.
For hardering you could use bastille.
Of course all found in portage.
Peter

On 8/3/05, Raphael Melo de Oliveira Bastos Sales <raphael.melo21@gmail.com> wrote: Hi there,

   I was wondering what tools should I use to de= tect security flaws to
my server and a few tips on how to use them. What= are the most common
forms of attack and how do I avoid being attacked b= y one of them?

   The services avaliable are only Apache - SSL and SSH. = I've
installed an firewall, iptables and firestarter to control it, and<= br>blocked all ports except 443 and 8080, where the SSH is listening.
Ap= ache has PHP installed as a module.

Thanks for the attention,

Raphael.

--
gentoo-user@gentoo.org mailing list



--
I have plenty of comm= on sense,=20
I just choose to ignore it.
--- Calvin
------=_Part_3732_2070831.1123027361938-- -- gentoo-user@gentoo.org mailing list