Join Sean Colins for an in-depth discussion in this video Allowing FTP and SFTP servers, part of Linux: Firewalls and SELinux.
- [Instructor] Elsewhere in the course,…I spoke about NFS and Samba…as file sharing technologies that you might want to allow.…And they're a good idea.…Samba has fantastic support for high-end authentication…and very secure transmission capabilities.…NFS could be configured to be Kerberized,…which is very secure.…But there's also FTP out there.…If you have an FTP server, it very likely belongs…in your demilitarized zone.…So putting it into a network zone…where it's completely on its own.…
Maybe it's exposed to the internet,…but has very limited exposure…to other servers that are supposed to be secure,…or workstations on your network, might be a good idea.…What we're talking about right now is of course,…the default zone, and we are only going to be protecting…the local computer because we…don't have multiple network interfaces…on the system that we're protecting.…That's the whole premise behind what we're doing here.…So those are separate sort of circumstances,…but I did want to mention that at the very least,…
- Working with iptables
- Installing Firewalld
- Exploring zones and services
- Allowing the Apache web server
- Allowing FTP and SFTP servers
- Installing SELinux utils
- Setting discretionary or mandatory access
- Installing SELinux man pages
- Working with Booleans
- Changing context labels
- Running sepolicy
- Finding SELinux logs
- Making domains permissive
- Disabling and reenabling SELinux
Skill Level Intermediate
Linux: Multitasking at the Command Linewith Scott Simpson39m 1s Intermediate
1. Firewall Basics on Linux
2. Configuring Firewalld for Local Protection
3. SELinux Fundamentals
4. Working with SELinux
5. SELinux Troubleshooting
Next steps3m 4s
- Mark as unwatched
- Mark all as unwatched
Are you sure you want to mark all the videos in this course as unwatched?
Take notes with your new membership!
Type in the entry box, then click Enter to save your note.
1:30Press on any video thumbnail to jump immediately to the timecode shown.