This handbook is for technical staff members charged with administering and securing information systems and networks. The first module briefly reviews some best practices for securing host systems and covers specific techniques for securing Windows 2000 and Red Hat Linux systems. It also discusses the importance of monitoring networked services to make sure they are available to users and briefly introduces two software tools that can be used for monitoring. The second module covers the importance of firewalls and provides instructions for their configuration and deployment. The third module presents the many tasks involved in using an intrusion detection system (IDS) on a network. Topics covered include implementing IDSs on host computers and on networks, using Snort (the most common open-source IDS), and interpreting and using the information gathered using an IDS. The fourth and final module covers real-world skills and techniques for synchronizing the time on networked computers from a central clock, collecting and securing information for forensic analysis, and using a remote, centralized storage point for log data gathered from multiple computers.
This report is related to the following area(s) of work:
Security and SurvivabilityHandbook
CMU/SEI-2004-HB-001
March 2004
SEI:
May, Christopher; Baker, Michele; Gabbard, Derek; Good, Travis; Grimes, Galen; Holmgren, Mark; Nolan, Richard; Nowak, Robert; & Pennline, Sean. Advanced Information Assurance Handbook (CMU/SEI-2004-HB-001). Software Engineering Institute, Carnegie Mellon University, 2004. http://www.sei.cmu.edu/library/abstracts/reports/04hb001.cfm
IEEE:
C. May, M. Baker, D. Gabbard, T. Good, G. Grimes, M. Holmgren, R. Nolan, R. Nowak, and S. Pennline, "Advanced Information Assurance Handbook," Software Engineering Institute, Carnegie Mellon University, Pittsburgh, Pennsylvania, Handbook CMU/SEI-2004-HB-001, 2004. http://www.sei.cmu.edu/library/abstracts/reports/04hb001.cfm
APA:
May, C., Baker, M., Gabbard, D., Good, T., Grimes, G., Holmgren, M., Nolan, R., Nowak, R., & Pennline, S. (2004). Advanced Information Assurance Handbook (CMU/SEI-2004-HB-001). Retrieved May 19, 2013, from the Software Engineering Institute, Carnegie Mellon University website: http://www.sei.cmu.edu/library/abstracts/reports/04hb001.cfm
CHI:
May, Christopher, Michele Baker, Derek Gabbard, Travis Good, Galen Grimes, Mark Holmgren, Richard Nolan, Robert Nowak, and Sean Pennline. Advanced Information Assurance Handbook (CMU/SEI-2004-HB-001). Pittsburgh, PA: Software Engineering Institute, Carnegie Mellon University, 2004. http://www.sei.cmu.edu/library/abstracts/reports/04hb001.cfm
MLA:
May, C., Baker, M., Gabbard, D., Good, T., Grimes, G., Holmgren, M., Nolan, R., Nowak, R., & Pennline, S. 2004. Advanced Information Assurance Handbook (Technical Report CMU/SEI-2004-HB-001). Pittsburgh: Software Engineering Institute, Carnegie Mellon University. http://www.sei.cmu.edu/library/abstracts/reports/04hb001.cfm
For more information