1.2 Some General Security Tips and
Tricks
To handle security competently, it is important to keep up with new developments and
stay informed about the latest security issues. One very good way to protect your systems
against problems of all kinds is to get and install the updated packages recommended
by security announcements as quickly as possible. SUSE security announcements are
published on the list opensuse-security-announce@opensuse.org. It is a
first-hand source of information regarding updated packages and includes members of
SUSE's security team among its active contributors. You can subscribe to this list on
page http://en.opensuse.org/Communicate/Mailinglists.
SUSE security advisories are also available as a news feed at
.com/linux/security/suse_security.xml.
opensuse-security@opensuse.org
The mailing list
any security issues of interest. Subscribe to it on the same Web page.
bugtraq@securityfocus.com
worldwide. Reading this list, which receives between 15 and 20 postings per day, is
recommended. More information can be found at
.com.
The following is a list of rules you may find useful in dealing with basic security con-
cerns:
• According to the rule of using the most restrictive set of permissions possible for
every job, avoid doing your regular jobs as root. This reduces the risk of getting
a cuckoo egg or a virus and protects you from your own mistakes.
• If possible, always try to use encrypted connections to work on a remote machine.
Using ssh (secure shell) to replace telnet, ftp, rsh, and rlogin should be
standard practice.
• Avoid using authentication methods based on IP addresses alone.
• Try to keep the most important network-related packages up-to-date and subscribe
to the corresponding mailing lists to receive announcements on new versions of
is one of the best-known security mailing lists
http://www.securityfocus
http://www.novell
is a good place to discuss
Security and Confidentiality
11
Need help?
Do you have a question about the LINUX ENTERPRISE DESKTOP 11 - SECURITY GUIDE 17-03-2009 and is the answer not in the manual?