UN1X


Security

Topics

  • Secure Operating Systems (rbac , selinux, etc.) 
    • Firewalls (ipfw, pf, ipfilter)
  • Secure Programming
    • Web Applications
    • Databases Security
    • Native Apps (Pointers , Memory alocation)
  • Network Security
    • VPN's
    • Encrypted Traffic (SSL, TLS)
  • Password Strength
    • Choosing good Passwords
  • Encryption 
    • Algorith and strength
  • Digital Signatures

Links

Site Description
hackerjournals.com Computer security related articles, reviews
phrack PHRACK ISSUES 1 - 67






PKI

Handling digital Certificates with plain Openssl requires to learn a heap of comandline stuff.  Having a lot of Certificates around is often the 2nd reason to look for something simpler and more powerful.

For simple usage with no more than some dozens Certificates TinyCA works quite well. For anything larger or complicated (many Certificates , differently Types of Certificates for different usage etc.) Solutions like EJBCA make more sense.

WARNING (EJBCA / tinyca)
PKI Solutions require careful Security tuning which is not covered here. It's setup and run only.