LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 09-18-2023, 09:02 AM   #1
TheDarkArtist
LQ Newbie
 
Registered: Sep 2023
Posts: 10

Rep: Reputation: Disabled
Question Developing a GUI based hardening script for Ubuntu operating system with flexibility to cater for organisational security policies


Hardening of an operating system involves implementation of security measure to make the system compliant with the security policies of the organization.

What does it mean by security policies in the above context?
 
Old 09-18-2023, 11:24 PM   #2
chrism01
LQ Guru
 
Registered: Aug 2004
Location: Sydney
Distribution: Rocky 9.2
Posts: 18,369

Rep: Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753
In the above context, it generally means that the org has some security 'limits'/tracking capabilities it expects each system to have/do.

How this is implemented is dependent on the specific OS in qn, amongst other considerations.

Ofc that's just the short answer . Hope it helps point you in the right direction.
 
1 members found this post helpful.
Old 09-19-2023, 04:22 AM   #3
TheDarkArtist
LQ Newbie
 
Registered: Sep 2023
Posts: 10

Original Poster
Rep: Reputation: Disabled
Quote:
Originally Posted by chrism01 View Post
In the above context, it generally means that the org has some security 'limits'/tracking capabilities it expects each system to have/do.

How this is implemented is dependent on the specific OS in qn, amongst other considerations.

Ofc that's just the short answer . Hope it helps point you in the right direction.


The goal is to generate a script which is undertakes hardening of Ubuntu OS using an GUI based approach. During the hardening process, the user should have the flexibility to make settings based on the organisations IT security policy provision like blocking ssh, usb, ToR etc. The grading of tool will be based on hardening functions implemented, attention to user experience and flexibility to take user settings. Security is of utmost importance.

could you elobrate a little. maybe with an example
 
Old 09-19-2023, 09:06 AM   #4
boughtonp
Senior Member
 
Registered: Feb 2007
Location: UK
Distribution: Debian
Posts: 3,644

Rep: Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562

This sounds like a university/college project.

Asking for clarification from the person who set the task is a good way to understand what is needed.

Asking other people may result in misunderstanding the intent and thus receiving a bad mark.

 
Old 09-19-2023, 11:57 PM   #5
chrism01
LQ Guru
 
Registered: Aug 2004
Location: Sydney
Distribution: Rocky 9.2
Posts: 18,369

Rep: Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753Reputation: 2753
I thought it sounded like homework ...

@TheDarkArtist
Quote:
Do not post homework assignments verbatim. We're happy to assist if you have specific questions or have hit a stumbling point, however. Let us know what you've already tried and what references you have used (including class notes, books, and searches) and we'll do our best to help. Keep in mind that your instructor might also be an LQ member.
from the LQ Rules https://www.linuxquestions.org/linux/rules.html
 
Old 09-20-2023, 04:27 PM   #6
Jan K.
Member
 
Registered: Apr 2019
Location: Esbjerg
Distribution: Windows 7...
Posts: 773

Rep: Reputation: 489Reputation: 489Reputation: 489Reputation: 489Reputation: 489
Homework or not... wouldn't tools like Lynis do the job?
 
Old 09-20-2023, 04:59 PM   #7
boughtonp
Senior Member
 
Registered: Feb 2007
Location: UK
Distribution: Debian
Posts: 3,644

Rep: Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562Reputation: 2562

That depends on what "the job" is.

Lynis is a command line reporting tool, and it's entirely possible that the security auditing side of this is irrelevant; that the course tutors want to see an understanding of what a user-friendly GUI involves, and the functionality is just a plausible "modern" task.

Which is not to say Lynis couldn't still be used as a base in such a project, but then if the real task is to demonstrate programming ability then using something pre-built - whilst a good idea in real world programming - may not provide a demonstration of the skills a programming professor would want to see.

 
  


Reply

Tags
linux, security, ubuntu



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Linux hardening and mysql hardening sagar666 Linux - Server 3 06-18-2014 11:47 PM
How to design my system? Global system + VMs (Security/Flexibility) Zzipo Linux - Virtualization and Cloud 2 07-30-2013 01:46 PM
Defining Operating System Policies. Lenux78 Linux - Security 2 03-09-2008 04:47 PM
Can linux+apache cater to pages that are accessed by mobile devices like cellphones? chickenjoy Linux - Server 4 05-18-2007 03:13 AM
LXer: Make Wget cater to your needs LXer Syndicated Linux News 0 01-12-2007 06:21 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 02:02 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration