Security
2 1
This section contains the following topics:
Section 21.1, "Overview of OES Security Services," on page 219
Section 21.2, "Planning for Security," on page 221
Section 21.3, "Configuring and Administering Security," on page 223
Section 21.4, "Links to Product Security Considerations," on page 223
Section 21.5, "Links to Anti-Virus Partners," on page 225
21.1 Overview of OES Security Services
This section provides specific overview information for the following key OES components:
Section 21.1.1, "Application Security (AppArmor)," on page 219
Section 21.1.2, "NSS Auditing Engine," on page 219
Section 21.1.3, "Encryption (NICI)," on page 220
Section 21.1.4, "General Security Issues," on page 221
For more authentication and security topics, see the
21.1.1 Application Security (AppArmor)
Novell AppArmor provides easy-to-use application security for both servers and workstations. You
specify which files a program can read, write, and execute.
AppArmor enforces good application behavior without relying on attack signatures and prevents
attacks even if they are exploiting previously unknown vulnerabilities.
For more information, see the
documentation/apparmor/index.html).
21.1.2 NSS Auditing Engine
OES 2 SP3 includes the NSS Auditing Engine, which is installed by default with NSS.
The auditing engine provides an interface for auditing client applications, such as Novell Sentinel
and various third-party products to access. Information about the auditing engine SDK is available
on the
Novell Web site
(http://developer.novell.com/wiki/index.php/NSS_Auditing_SDK).
Using the SDK, client applications can be developed to audit various NSS file system operations on
files and directories, including:
delete
create
open
close
OES online
Novell AppArmor Documentation Web site (http://www.novell.com/
documentation.
21
Security
219
Need help?
Do you have a question about the OPEN ENTERPRISE SERVER - PLANNING AND IMPLEMENTATION GUIDE 12-2010 and is the answer not in the manual?
Questions and answers