Automated Solution by TCS Hardens Red Hat Servers
US security vendor Trusted Computer Solutions (TCS) recently presented a solution for automating server hardening.
The solution, dubbed "Security Blanket", was developed for systems with Red Hat Enterprise Linux (RHEL). The menu-driven system uses predefined profiles to secure servers based on industry standards. The profiles are based on the Unix Security (STIG) and specifications by the Center for Internet Security (CIS). Profiles can also be customized to match user requirements. TCS will be distributing the system for US$ 199 a license starting in September.
When a user chooses and executes a profile, there are three possible outcomes: success, error, or can't execute. In the last two cases the software produces a detailed error report and suggests modifications which you can accept or refuse.
The application is not ready to handle large data centers the vendor admits. The target group is administrators that manage a reasonable number of server systems. Raven Zachary from TCS also stated that Security Blanket might be ported to other Linux distributions, and that this should not pose too big a challenge.
Jennifer Mulligan, an analyst with Forrester Research, compares Security Blanket with the features of Bastille Linux, a Linux application with an interactive hardening script for RHEL and Suse Lnux Enterprise Server. Both offer similar features, however, the GPL'd solution requires for more background knowledge than the commercial tool.
Subscribe to our Linux Newsletters
Find Linux and Open Source Jobs
Subscribe to our ADMIN Newsletters
Support Our Work
Linux Magazine content is made possible with support from readers like you. Please consider contributing when you’ve found an article to be beneficial.
News
-
Systemd Fixes Bug While Facing New Challenger in GNU Shepherd
The systemd developers have fixed a really nasty bug amid the release of the new GNU Shepherd init system.
-
AlmaLinux 10.0 Beta Released
The AlmaLinux OS Foundation has announced the availability of AlmaLinux 10.0 Beta ("Purple Lion") for all supported devices with significant changes.
-
Gnome 47.2 Now Available
Gnome 47.2 is now available for general use but don't expect much in the way of newness, as this is all about improvements and bug fixes.
-
Latest Cinnamon Desktop Releases with a Bold New Look
Just in time for the holidays, the developer of the Cinnamon desktop has shipped a new release to help spice up your eggnog with new features and a new look.
-
Armbian 24.11 Released with Expanded Hardware Support
If you've been waiting for Armbian to support OrangePi 5 Max and Radxa ROCK 5B+, the wait is over.
-
SUSE Renames Several Products for Better Name Recognition
SUSE has been a very powerful player in the European market, but it knows it must branch out to gain serious traction. Will a name change do the trick?
-
ESET Discovers New Linux Malware
WolfsBane is an all-in-one malware that has hit the Linux operating system and includes a dropper, a launcher, and a backdoor.
-
New Linux Kernel Patch Allows Forcing a CPU Mitigation
Even when CPU mitigations can consume precious CPU cycles, it might not be a bad idea to allow users to enable them, even if your machine isn't vulnerable.
-
Red Hat Enterprise Linux 9.5 Released
Notify your friends, loved ones, and colleagues that the latest version of RHEL is available with plenty of enhancements.
-
Linux Sees Massive Performance Increase from a Single Line of Code
With one line of code, Intel was able to increase the performance of the Linux kernel by 4,000 percent.