Using Freeware Tools for Internet Security Copyright, Peter Shipley Peter shipley Network security associates
Introduction Contrary to popular managerial belief, there is a plethora of free and reliable utilities and software packages for establishing, maintaining and monitoring secure systems and networks I will present a list of free software applications currently available today
Software Requirements Security on today's internet requires the use of strong encryption, strong system logging
Security Orientated Software security Firewall tools Network encryption tools Network monitoring tools Auditing tools Unix login tools Unix auditing tools Unix operation systems
Security PGP pretty good privacy TIS - PEM - a unix implementation
Security Sendmail - a common delivery agent Qmail - a free delivery agent
Firewall Tools Drawbridge / karlbridge - pc-based packet filtering software. Screend - packet filtering for BSD based systems TIS toolkit - application based proxy software Socks -A generic proxy Xp-beta- a X11 proxy daemon
Network Encryption Tools S/WAN - Secure Wide Area Networking, link layer encryption software package swIPe - An IP-layer encryption mechanism that also provides for datagram integrity and authentication
Network Monitoring Tools tcpdump - a multi-protocol network monitoring tool netlog - a TCP and UDP network connection logger ARGUS - a transaction auditing tool arpwatch - monitors ethernet address pairing scotty- A SNMP tool
Auditing Tools Satan - Security Administrator Tool for Analyzing Networks a user friendly security scanner ISS - Internet Security Scanner ToneLoc - A Daemon Dialer (DOS) Crack - A Password Guessing / Auditing Tool
Unix Login Tools SSH - Secure Shell, a secure remote login program provide secure encrypted, and authenticated connections S/Key - A one time password pad system Kerberos - authentication system from MIT
Unix Login Tools shadow - a shadow password login replacement npasswd - a smart password replacement passwd+ - a smart password replacement
Unix Monitor Tools TripWire - A file monitoring/auditing system. SWATCH - The Simple WATCHer and filter, a tool that scans log files for pattern matches. COPS - The Computer and Oracle Password System
Network Monitor Tools Courtney - a Perl based SATAN detector Gabriel - a C-language based detector (SunOS / Solaris only) Scan-Detector - a perl based port-scan detector
Free Unix Operation Systems FreeBSD / OpenBSD - A BSD based OS Linux - GNU based OS
Access Control Utilities tcp_wrapper - security enhancement tool adding access control and logging xinetd - a security enhanced replacement for the inetd daemon securelib - a replacement shared library (SunOS)
Network Daemons Identd - network identification daemon popd - Post office protocol rpcbind - a security enhanced replacement
In Closing The best and most useful software are not commercial products Vendor solutions are not always the best solution Support for free software is. many times, superior to that of commercial.