Linux Format forums Forum Index Linux Format forums
Help, discussion, magazine feedback and more
 
 FAQFAQ   SearchSearch   MemberlistMemberlist   UsergroupsUsergroups   RegisterRegister 
 ProfileProfile   Log in to check your private messagesLog in to check your private messages   Log inLog in 

Some (random) server admin related questions

 
Post new topic   Reply to topic    Linux Format forums Forum Index -> Discussion
View previous topic :: View next topic  
Author Message
bobthebob1234
LXF regular


Joined: Thu Jan 03, 2008 9:38 pm
Posts: 1360
Location: A hole in a field

PostPosted: Wed Mar 30, 2011 7:57 pm    Post subject: Some (random) server admin related questions Reply with quote

Right I have had a boring afternoon so I have been think about a lot of random stuff, and a couple of questions have come to mind, but they don't each deserve their own topics.
Please answer if you have an answer to any!

Here we go!

  1. I have two servers, both with LAMP stacks on, serving different websites. Would it be better to have one running MySQL and one apache, then I can concentrate on hardening them individually rather than doing something on one and not the other.
  2. Anyone know of any good online tutorials or books for

    1. MySQL security/hardening
    2. Apache security/hardening
    3. General linux server admin/security/hardening

  3. Anyone got The Official Ubuntu Server Book (Aug 2010); is it any good (or am I being stupid not checking the subs area for a review)
  4. Thankfully I have forgotten the rest Smile
  5. EditRemembered some: Anyone know any good books or tutorials for sql injections and web app security testing (testing mine, not others!)
  6. How do (PHP) PDO objects stand up to sql injections and other attacks?

_________________
For certain you have to be lost to find the places that can't be found. Elseways, everyone would know where it was


Last edited by bobthebob1234 on Wed Mar 30, 2011 8:21 pm; edited 1 time in total
Back to top
View user's profile Send private message
Dutch_Master
LXF regular


Joined: Tue Mar 27, 2007 2:49 am
Posts: 2359

PostPosted: Wed Mar 30, 2011 8:17 pm    Post subject: Reply with quote

1) No, as Apache and mySQL interact locally. It might be possible in theory, but I wonder if the prevention would be worse then the cure then... Wink

2) http://www.google.com

3) Don't learn Ubuntu, learn Linux! ISBN: 978-0-13-148005-6 Admittedly not the cheapest book, but if you take in account the non-necessity of purchasing additional books on various subjects it's quite good value for money!

4) Nothing a quick Google can't solve Wink


Last edited by Dutch_Master on Wed Mar 30, 2011 8:25 pm; edited 1 time in total
Back to top
View user's profile Send private message
bobthebob1234
LXF regular


Joined: Thu Jan 03, 2008 9:38 pm
Posts: 1360
Location: A hole in a field

PostPosted: Wed Mar 30, 2011 8:24 pm    Post subject: Reply with quote

Thanks

2)i've been googling all afternoon, just wondering if anybody has any personal recommendations

3)I've got a birthday coming up... Very Happy
_________________
For certain you have to be lost to find the places that can't be found. Elseways, everyone would know where it was
Back to top
View user's profile Send private message
Dutch_Master
LXF regular


Joined: Tue Mar 27, 2007 2:49 am
Posts: 2359

PostPosted: Wed Mar 30, 2011 8:34 pm    Post subject: Reply with quote

Can't help you with items 5 and 6, but I've put in a link to the publishers website, listing it at a smidgen below 44 quid. For that you get over 1,300 pages of advice, history and explanations, so do the maths yourself. I have it, and recommend it for study on any serious ICT course... Hunt around for better deals though Smile
Back to top
View user's profile Send private message
bobthebob1234
LXF regular


Joined: Thu Jan 03, 2008 9:38 pm
Posts: 1360
Location: A hole in a field

PostPosted: Wed Mar 30, 2011 8:42 pm    Post subject: Reply with quote

half price on amazon Very Happy
_________________
For certain you have to be lost to find the places that can't be found. Elseways, everyone would know where it was
Back to top
View user's profile Send private message
towy71
Moderator


Joined: Wed Apr 06, 2005 3:11 pm
Posts: 4176
Location: wild West Wales

PostPosted: Wed Mar 30, 2011 8:53 pm    Post subject: Reply with quote

I was about to post that exact same comment Rolling Eyes
_________________
still looking for that door into summer
Back to top
View user's profile Send private message
Arthur_Dent
LXF regular


Joined: Mon Jan 02, 2006 11:05 am
Posts: 199
Location: London

PostPosted: Thu Mar 31, 2011 11:50 am    Post subject: Reply with quote

2 & 5 ) I presume you use ModSecurity on your webserver. If not you really should.
I believe that Ivan Ristic's book "Modsecurity Handbook" is very good on the subject of Apache hardening in general and ModSecurity in particular - Although I must stress I haven't read it myself.
Back to top
View user's profile Send private message
bobthebob1234
LXF regular


Joined: Thu Jan 03, 2008 9:38 pm
Posts: 1360
Location: A hole in a field

PostPosted: Thu Mar 31, 2011 3:47 pm    Post subject: Reply with quote

I was going to 'install' (if thats the word) it during easter, I have the book with the ninja on, but must confess I haven't read it yet cos I left it at home Sad
_________________
For certain you have to be lost to find the places that can't be found. Elseways, everyone would know where it was
Back to top
View user's profile Send private message
View previous topic :: View next topic  
Display posts from previous:   
Post new topic   Reply to topic    Linux Format forums Forum Index -> Discussion All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Linux Format forums topic RSS feed 


Powered by phpBB © 2001, 2005 phpBB Group


Copyright 2011 Future Publishing, all rights reserved.


Web hosting by UKFast