Generic Hardening

Download document-> Generic Hardening doc Hardening: Hardening is the process of securely deploying systems with the practice of ‘least privilege’. Hardening includes: Understanding what you actually need to run on the system Documentation (Policy, Standards & Guidelines) Operating systems Virtual servers Coding Application settings Database setup & configuration Network devices Portable device Platform hardening: Platforms are depended upon to deliver data in a secure, reliable fashion. There must be assurance that data integrity, confidentiality and availability are maintained....

January 12, 2013 · 2 min · 322 words · Shafiq Alibhai

Hardening Procedure for Solaris Systems

DOWNLOAD – Hardening Procedure for Solaris Systems <td style="border-top: 1px solid #000000; border-bottom: 1px solid #000000; border-left: none; border-right: none; padding: 0;" width="425"> <p class="western" style="margin-top: .21cm;"> <span style="font-size: small;">The hardening policies are defined as follows:</span> </p> <ul> <li> <p style="margin-bottom: .11cm;"> <span style="font-size: small;">Database server hardening procedure.</span> </p> </li> <li> <p style="margin-bottom: .11cm;"> <span style="font-size: small;">Web server hardening procedure</span> </p> </li> <li> <p style="margin-bottom: .11cm;"> <span style="font-size: small;">Application server hardening procedure</span> </p> </li> <li> <p style="margin-bottom: ....

December 1, 2012 · 40 min · 8412 words · Shafiq Alibhai

Third party assessment document

Download Blank Third Party Assessment <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td rowspan="3" colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> Type : Vendor Assessment </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td> Short Name </td> <td> </td> <td> Question / Description </td> <td> </td> <td> Answer / Value </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td> Name </td> <td> </td> <td> Enter the name </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td> TPA: Project Name </td> <td> </td> <td> Whirlpool project name requesting third party or service provider connection </td> <td> </td> <td colspan="3"> </td> <td> * </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td> TPA: Project Owner </td> <td> </td> <td> Whirlpool project owner requesting third party or service provider connection </td> <td> </td> <td colspan="3"> </td> <td> * </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td> TPA: Business Area </td> <td> </td> <td> Whirlpool business area or process supported by the third party or service provider </td> <td> </td> <td colspan="3"> </td> <td> * </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td> TPA: Service Provider Name </td> <td> </td> <td> Service provider company name </td> <td> </td> <td colspan="3"> </td> <td> * </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td> TPA: Service Provider Contact </td> <td> </td> <td> Service provider or third party contact </td> <td> </td> <td colspan="3"> </td> <td> * </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td> TPA: Target Implementation Date </td> <td> </td> <td> Target implementation date </td> <td> </td> <td> </td> <td> * </td> <td colspan="2"> </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td> TPA: CISO </td> <td> </td> <td> Vendor Chief Information Security Officer (CISO) or equivalent </td> <td> </td> <td colspan="3"> </td> <td> * </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td> TPA: User Directory </td> <td> </td> <td> Choose the user directory used to manage security and provisioning of access on your internal network </td> <td> </td> <td> </td> <td> * </td> <td colspan="2"> </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td> TPA: OS and database </td> <td> </td> <td> List the operating system and database used to manage Whirlpool data </td> <td> </td> <td colspan="3"> Select any number </td> <td> * </td> <td> </td> <td> </td> <td> </td> <td colspan="3"> </td> <td> </td> <td colspan="3"> Mainframe </td> <td> </td> <td> </td> <td> </td> <td> </td> <td colspan="3"> </td> <td> </td> <td colspan="3"> Unix </td> <td> </td> <td> </td> <td> </td> <td> </td> <td colspan="3"> </td> <td> </td> <td colspan="3"> AS400 </td> <td> </td> <td> </td> <td> </td> <td> </td> <td colspan="3"> </td> <td> </td> <td colspan="3"> Windows </td> <td> </td> <td> </td> <td> </td> <td> </td> <td colspan="3"> </td> <td> </td> <td colspan="3"> Oracle </td> <td> </td> <td> </td> <td> </td> <td> </td> <td colspan="3"> </td> <td> </td> <td colspan="3"> DB2/UDB </td> <td> </td> <td> </td> <td> </td> <td> </td> <td colspan="3"> </td> <td> </td> <td colspan="3"> MS SQL </td> <td> </td> <td> </td> <td> </td> <td> </td> <td colspan="3"> </td> <td> </td> <td colspan="3"> Other </td> <td> </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td> TPA: Datacenter location </td> <td> </td> <td> List the location of the datacenter that hosts Whirlpool data </td> <td> </td> <td colspan="3"> </td> <td> * </td> <td> </td> <td> </td> <td> </td> <td colspan="8"> </td> <td> </td> <td> </td> <td> </td> <td> Short Name </td> <td> </td> <td> Question / Description </td> <td> </td> <td> Answer / Value </td> <td> </td> <td> Comments </td> <td> </td> <td> </td> <td> </td> <td> </td> <td colspan="6"> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> </td> <td> WVA: Organizational Security and Privacy 1 </td> <td> </td> <td> Has a complete and current Information Security policy been established?...

December 1, 2012 · 88 min · 18581 words · Shafiq Alibhai

Status Quo : Review Of Some Testing Practices

November 11, 2011 · 0 min · 0 words · Shafiq Alibhai

Proposals and Contracts [Sample]

<td valign="top" width="191"> <p align="center"> <strong>Description</strong> </p> </td> <td valign="top" width="90"> <p align="center"> <strong>Version No</strong> </p> </td> <td valign="top" width="108"> <p align="center"> <strong>Requested By</strong> </p> </td> <td valign="top" width="108"> <p align="center"> <strong>Authorized By</strong> </p> <p align="center"> <strong> </strong> </p> </td> </tr> <tr> <td valign="top" width="45"> <p align="center"> 1. </p> </td> <td valign="top" width="191"> <p align="center"> Initial </p> </td> <td valign="top" width="90"> <p align="center"> 1.0 </p> </td> <td valign="top" width="108"> <p align="center"> NA </p> </td> <td valign="top" width="108"> </td> </tr> <tr> <td valign="top" width="45"> </td> <td valign="top" width="191"> </td> <td valign="top" width="90"> </td> <td valign="top" width="108"> </td> <td valign="top" width="108"> </td> </tr> <tr> <td valign="top" width="45"> </td> <td valign="top" width="191"> </td> <td valign="top" width="90"> </td> <td valign="top" width="108"> </td> <td valign="top" width="108"> </td> </tr> <tr> <td valign="top" width="45"> </td> <td valign="top" width="191"> </td> <td valign="top" width="90"> </td> <td valign="top" width="108"> </td> <td valign="top" width="108"> </td> </tr> <tr> <td valign="top" width="45"> </td> <td valign="top" width="191"> </td> <td valign="top" width="90"> </td> <td valign="top" width="108"> </td> <td valign="top" width="108"> </td> </tr> <tr> <td valign="top" width="45"> </td> <td valign="top" width="191"> </td> <td valign="top" width="90"> </td> <td valign="top" width="108"> </td> <td valign="top" width="108"> </td> </tr> <tr> <td valign="top" width="45"> </td> <td valign="top" width="191"> </td> <td valign="top" width="90"> </td> <td valign="top" width="108"> </td> <td valign="top" width="108"> </td> </tr> <tr> <td valign="top" width="45"> </td> <td valign="top" width="191"> </td> <td valign="top" width="90"> </td> <td valign="top" width="108"> </td> <td valign="top" width="108"> </td> </tr> **...

October 1, 2011 · 7 min · 1281 words · Shafiq Alibhai

Puppet logs in solaris 10

/var/svc/log/network-cswpuppetd:default.log /var/svc/log/network-cswpuppetmasterd:default.log p.s. use `tail -f `

May 19, 2011 · 1 min · 7 words · Shafiq Alibhai

OpenSuse 11.4 [screenshots]

March 13, 2011 · 0 min · 0 words · Shafiq Alibhai

Ubuntu 11.04 Alpha 1 x64 Vmware Image

My friend JD uploaded a Vmware image of Ubuntu 11.04 Alpha 1 so am sharing it here :

December 26, 2010 · 1 min · 18 words · Shafiq Alibhai