Course
digicode: LINSEC
Open Source & Linux Security
Learn how to secure Linux and open-source systems effectively: from SSH, authentication, and firewalls to updates, backups, and encryption, all the way to hardening and defending against brute-force attacks.
Duration
2 days
Price
1'900.–
Course documents
Digital courseware
New
Security essentials to operate Linux systems securely
Course facts
Download as PDF- Securely configuring Linux and open-source systems
- Securing administrative access, SSH, and authentication
- Implementing firewalls, port scanning, and brute-force protection
- Securely planning updates, backups, encryption, and recovery
- Conducting security checks, including AI-assisted testing
- Fundamentals of Open Source and Linux Security
- Typical vulnerabilities and attack surfaces
- Physical security and protection against unauthorised access
- Linux hardening versus kernel-level security measures
- User, privilege and access concepts
- SSH hardening and secure operation of OpenSSH
- MFA approaches for Linux systems
- PAM and authentication services such as SSSD, Winbind, realmd and authselect
- Protection against brute-force attacks
- Secure system configuration
- Update and patch strategies
- Backup strategies for system files and configurations
- Recovery considerations for secure operation
- Partitioning, LVM and secure system areas
- Firewall concepts for Linux and open-source environments
- Simple rule sets with firewalld or UFW
- Identifying and assessing open ports with nmap
- OpenSense as an example of an open-source firewall
- SELinux concepts, policies and practical application
- File and volume encryption with GnuPG, OpenSSL, ccrypt, Cryptsetup and LUKS
- Security checks and configuration verification
- AI-assisted analysis of configurations, logs and findings
- Prioritising specific hardening measures
Short blocks of theory with direct practical application
This course is aimed at IT professionals who wish to operate and protect open-source and Linux-based systems securely and carry out targeted vulnerability assessments.
You must have a very good knowledge of the Linux command line and shell, as well as expertise in package management and systemd. You must also be familiar with reading and searching through log files.