Hi All,
What is anyone doing to secure an existing environment to meet government DOD requirements?
I have been turnig off unused/not needed services in inetd.conf,
disabled sendmail etc..., ssh protocol v2, identified app ports
Some other things are users (DBA's) with clear text passwords in profiles - what can be done here?
Any other recommendations?
Thanks!!
What is anyone doing to secure an existing environment to meet government DOD requirements?
I have been turnig off unused/not needed services in inetd.conf,
disabled sendmail etc..., ssh protocol v2, identified app ports
Some other things are users (DBA's) with clear text passwords in profiles - what can be done here?
Any other recommendations?
Thanks!!