UoM::RCS::Talby::URS

Doc Group

Audit of Gateways

1. 

SSH Gateway (sekhmet.itservices)

 
                           13/10/14

ntp runlevels              y
ntp working                y

apt config (e.g. proxy)    y
nightly patching           y

local log config           y
remote logs                y
log rotation               y

backups                    ???
    #
    # ...
    #

logwatch                   y
rkhunter                   y

iptables up-to-date        y 
iptables init cfg          y
tested reboot              y

fail2ban working           y
integrated iptables        y

email to its-ri-team       y

2. 

sekhmet.umist

3. 

Jabberwock

 
                           13/10/15

ntp runlevels              y
ntp working                y

yum config (e.g. proxy)    y
nightly patching           y

local log config           y
remote logs                y
log rotation               y

backups                    ???
    #
    # ...
    #

logwatch                   y
rkhunter                   y

iptables up-to-date        y 
iptables init cfg          y
tested reboot              y

fail2ban working           y
integrated iptables        y

email to its-ri-team       y

4. 

files.csf

5. 

NyX

 
                       13/10/14
ntp runlevels          y
ntp working            y

yum nightly            y
yum updates working    y

remote logs            y,y
local log config       y
log rotation           y

backups                ???
  #
  # ...nightly rsyncs of ???
  #

logwatch               y
rkhunter               y

iptables up-to-date    y
iptables init cfg      y
iptables run levels    y

fail2ban working       y
integrated iptables    y

root to its-ri-team    y

6. 

NyX-2

 
                       13/10/14
ntp runlevels          y
ntp working            y

yum nightly            y
yum updates working    y

remote logs            y,y
local log config       y
log rotation           y

backups                ???
  #
  # ...nightly rsyncs of ???
  #

logwatch               y
rkhunter               testing.......

iptables up-to-date    y
iptables init cfg      y
iptables run levels    y 

fail2ban working       ?
integrated iptables    ?

root to its-ri-team    y