YASSP


How to install Solaris 2.6//2.7 and have a good host security.

Use at your own risk!

:-)

A new package is uder development in cooperation with SANS
Please check yassp.parc.xerox.com for more detail


Table of contents:

    1. Intro
    2. OS installation:
    3. OS Cleanup
    4. Others packages available
    5. References & Links
    6. pgp key

All comments are welcome: chouanard@parc.xerox.com

From the logs of this ftp server, I can see that people are reading this page and downloading some package, but I am getting nearly no feedback at all.

*Please*, don't hesitate to drop me an E-mail if you are using this package. Thanks!


Introduction:


OS installation:

Do this install with no network connectivity, or with connectivity with *only* a trusted network. During this first step, your server will be vulnerable and easy to compromise.

Do the install from CD-ROM (Either the original Solaris 2.6//2.7 distribution, either the latest hardware release)

Provide the information as needed:

At this step, you have a; newly installed Solaris box, with the recommended patches. Do not connected it yet on the network!
IMPORTANT: Never use sys-unconfig to cleanup the configuration of an miss configured workstation. It will not only make your /etc/hosts and /etc/networks world-writtable, but also modify a various filemode without updating the Solaris content database.

OS Cleanup


Security package


Make a full BACKUP!!!!
And keep it in a safe place...

Others packages available.