33
RED HAT SYSTEM ADMINISTRATION III RH255-RHEL6-en-2-20110124

RHEL6 - Rh255

Embed Size (px)

Citation preview

Page 1: RHEL6 - Rh255

RED HAT SYSTEM ADMINISTRATION IIIRH255-RHEL6-en-2-20110124

Page 2: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

DAY ONE

Introduction

Review

User Security

Bash Scripting

GnuPG

RPM

DAY TWO

RPM(continued)

NetworkMonitoring

AdvancedNetworking

NetworkSecurity

NTP

SystemMonitoring

DAY THREE

AdvancedStorage

SSL WebService

AdditionalWeb Config.

SMTP

DAY FOUR

Caching DNS

NFS

CIFS

FTP Upload

BootTroubleshooting

Page 3: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 1:Getting Started with the Classroom Environment

● Virtualization Tools and Review

Introduction

DAY ONE

Review

User Security

Bash Scripting

GnuPG

RPM

Page 4: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 2:Enhance User Security

● Configuring sudo

● Kerberos Configuration

● Troubleshooting System Security Services Daemon (SSSD)

Introduction

DAY ONE

Review

User Security

Bash Scripting

GnuPG

RPM

Page 5: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 3:Bash Scripting and Tools

● Bash Programming

● Text Processing Tools

● Password Aging

Introduction

DAY ONE

Review

User Security

Bash Scripting

GnuPG

RPM

Page 6: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 4:File Security with GnuPG

● Encrypting Files with GnuPG

Introduction

DAY ONE

Review

User Security

Bash Scripting

GnuPG

RPM

Page 7: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 5:Package Management

● Using Yum Plugins to Manage Packages

● RPM Package Design

● RPM Package Specifications

● Building and Signing an RPM Package

● Publishing RPM Packages

Introduction

DAY ONE

Review

User Security

Bash Scripting

GnuPG

RPM

Page 8: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

DAY ONE

Introduction

Review

User Security

Bash Scripting

GnuPG

RPM

DAY TWO

RPM(continued)

NetworkMonitoring

AdvancedNetworking

NetworkSecurity

NTP

SystemMonitoring

DAY THREE

AdvancedStorage

SSL WebService

AdditionalWeb Config.

SMTP

DAY FOUR

Caching DNS

NFS

CIFS

FTP Upload

BootTroubleshooting

Page 9: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 5:Package Management

RPM (continued)

DAY TWO

Network Monitoring

Advanced Networking

Network Security

NTP

System Monitoring

● Using Yum Plugins to Manage Packages

● RPM Package Design

● RPM Package Specifications

● Building and Signing an RPM Package

● Publishing RPM Packages

Page 10: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 6:Network Monitoring

● Identifying Security Risks by Detecting Open Ports

● Sniffing Network Traffic

RPM (continued)

DAY TWO

Network Monitoring

Advanced Networking

Network Security

NTP

System Monitoring

Page 11: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 7:Advanced Network Configuration

● Network Interface Configuration: IP Aliases

● Network Interface Configuration: Bonding

● Tuning Kernel Network Parameters

● Static Route Configuration

RPM (continued)

DAY TWO

Network Monitoring

Advanced Networking

Network Security

NTP

System Monitoring

Page 12: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Page 13: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 8:Secure Network Traffic

● SSH Through a Firewall Bastion

● Packet Filtering

● Network Address Translation

RPM (continued)

DAY TWO

Network Monitoring

Advanced Networking

Network Security

NTP

System Monitoring

Page 14: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Page 15: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Page 16: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 9:NTP Server Configuration

● Configure an NTP Server

RPM (continued)

DAY TWO

Network Monitoring

Advanced Networking

Network Security

NTP

System Monitoring

Page 17: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 10:System Monitoring and Logs

● Usage Reports

● Monitor Systems with aide and sar

● Tuning tmpwatch and logrotate

● Configure a Remote Logging Service

RPM (continued)

DAY TWO

Network Monitoring

Advanced Networking

Network Security

NTP

System Monitoring

Page 18: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

DAY ONE

Introduction

Review

User Security

Bash Scripting

GnuPG

RPM

DAY TWO

RPM(continued)

NetworkMonitoring

AdvancedNetworking

NetworkSecurity

NTP

SystemMonitoring

DAY THREE

AdvancedStorage

SSL WebService

AdditionalWeb Config.

SMTP

DAY FOUR

Caching DNS

NFS

CIFS

FTP Upload

BootTroubleshooting

Page 19: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 11:Centralized and Secure Storage

● Access iSCSI Storage

● Encrypt Centralized Storage

Advanced Storage

DAY THREE

SSL Web Service

Additional Web Config.

SMTP

Page 20: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 12:SSL Encapsulated Web Services

● Securing Apache with Encryption

● Customizing a Self-Signed Certificate

● Generating a Certificate Signing Request

Advanced Storage

DAY THREE

SSL Web Service

Additional Web Config.

SMTP

Page 21: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 13:Web Server Additional Configuration

● Configure Name-based Virtual Hosting

● Stage a CGI Executable

● Configure User-based Authentication

● Troubleshooting Apache

Advanced Storage

DAY THREE

SSL Web Service

Additional Web Config.

SMTP

Page 22: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 14:Basic SMTP Configuration

● Basic E-mail Delivery

● Intranet Configuration

Advanced Storage

DAY THREE

SSL Web Service

Additional Web Config.

SMTP

Page 23: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Page 24: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Page 25: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

DAY ONE

Introduction

Review

User Security

Bash Scripting

GnuPG

RPM

DAY TWO

RPM(continued)

NetworkMonitoring

AdvancedNetworking

NetworkSecurity

NTP

SystemMonitoring

DAY THREE

AdvancedStorage

SSL WebService

AdditionalWeb Config.

SMTP

DAY FOUR

Caching DNS

NFS

CIFS

FTP Upload

BootTroubleshooting

Page 26: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 15:Caching-Only DNS Server

● DNS Overview

● Caching-Only DNS Servers

Caching DNS

DAY FOUR

NFS

CIFS

FTP Upload

Boot Troubleshooting

Page 27: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 16:File Sharing with NFS

● NFS Concepts and Configuration

● Using NFS

● Securing an NFS Server

Caching DNS

DAY FOUR

NFS

CIFS

FTP Upload

Boot Troubleshooting

Page 28: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

NFSv2 NFSv3 NFSv4

Original public NFS protocol Extended NFSv2 architecture

Still in use Added features: TCP support 64-bit file sizes and offsets Larger read/write sizes

Some implementations (including Red Hat Enterprise Linux) support Kerberos

Requires support services:nfsd, rpc.mountd, rpc.statd, lockd

Also requires support services: nfsd, rpc.mountd, rpc.statd, lockd

More difficult to secure behind a firewall

More difficult to secure behind a firewall

Useful for backward compatibility

Useful for backward compatibility

Page 29: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 17:File Sharing with CIFS

● Providing Home Directories as CIFS Shares

● Accessing CIFS Shares

● Configuring Group and Print CIFS Shares

Caching DNS

DAY FOUR

NFS

CIFS

FTP Upload

Boot Troubleshooting

Page 30: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 18:File Sharing with FTP

● “Drop-box” Anonymous Upload

Caching DNS

DAY FOUR

NFS

CIFS

FTP Upload

Boot Troubleshooting

Page 31: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Unit 19:Troubleshooting Boot Process

● The Boot Process and Rescue Mode

● Repairing Boot Issues

● Configure a Serial Console

Caching DNS

DAY FOUR

NFS

CIFS

FTP Upload

Boot Troubleshooting

Page 32: RHEL6 - Rh255

Copyright © 2011 Red Hat, Inc.RH255-RHEL6-en-2-20110124

Page 33: RHEL6 - Rh255

Copyright © 2010 Red Hat, Inc. RH134-RHEL6-en-20101004-0