fedora

fedora

Fedora35 : Logwatch , DiCEのインストール

Logwatch Introduction ①Install # dnf install logwatch ②Edit configuration file # cat /usr/share/logwatch/default.conf/logwatch.conf >> /etc/logwatch/conf/logwatch.conf # vi /etc/logwatch/conf/logwatch.conf Installing DiCE Whenever the global IP changes, which happens when the network is disconnected or the router is disconnected and rebooted, the dynamic DNS must be accessed to inform the user that the global IP has changed. DiCE does this automatically!
fedora

Fedora35 : SNORT , Tripwire , Chkrootkit

SNORT Installation 1.advance preparation ①Add the CodeReady Red Hat repository and install the required software # dnf -y install bison flex libpcap-devel pcre-devel openssl-devel libdnet-devel libtirpc-devel libtool nghttp2 libnghttp2-devel # mkdir /var/src Tripwire Installation 1.Download and installation # cd /usr/local/src # wget https://rpmfind.net/linux/epel/8/Everything/x86_64/Packages/t/tripwire-2.4.3.7-5.el8.x86_64.rpm # rpm -Uvh tripwire-2.4.3.7-5.el8.x86_64.rpm
fedora

Fedora35 : ウイルス対策 、Mailサーバー

Install Clamav ( anti-virus software ) 1.Install Clam AntiVirus # dnf -y install clamav clamd clamav-update 2.Edit Clam AntiVirus configuration file # vi /etc/clamd.d/scan.conf ●Line 14. # Default: disabled LogFile /var/log/clamd.scan ← Uncomment Mail Server Install 1. Install Postfix 1.1 Install Install Postfix and build an SMTP server # dnf -y install postfix Check if Postfix is installed # rpm -qa | grep postfix postfix-3.6.4-1.fc35.x86_64 Mail サーバー : Postfix + Clamav + Amavisd+SpamAssassin 1.Real-time scanning of E-mails ①Install Amavisd and Clamav Server # dnf -y install amavisd-new clamd perl-Digest-SHA1 perl-IO-stringy ➁Configuration File Edit # vi /etc/clamd.d/scan.conf
fedora

Fedora35 : WEBサーバー

Apache2 installation and virtual host configuration 1.Apache2 installed ①Install httpd # dnf -y install httpd Version Check # httpd -v Server version: Apache/2.4.53 (Fedora Linux) 2.Apache Configuration ①Edit "httpd.conf" file # cp /etc/httpd/conf/httpd.conf /etc/httpd/conf/httpd.conf_bak # vi /etc/httpd/conf/httpd.conf ●Line 91 : Specify administrator address 3.Virtual Host Settings Assign and configure the domain name [fedora.korodes.com] to the document root [/var/www/html/fedora.korodes.com] directory for virtual host operation
fedora

Fedora35 : SSH , Firewall

1.Remote connection by SSH SSH is a service for connecting remotely to a server, basically running immediately after OS installation, but the default settings are somewhat insecure. Configure the default settings to increase the security of ssh connections. 1.1 SSH service configuration file changes The SSH service configuration file is "/etc/ssh/sshd_config". Open the configuration file in a vi editor. 2.How to set up a firewall (firewalld) In Fedora, firewalld is set as the default and is enabled during OS installation. 2.1 How to use the "firewall-cmd" command to control "firewalld 1)Command to check the status and settings of "firewalld 3.Remote connection from Windows Configuration in Windows The terminal emulator is "Tera Term". Start Tera Term, cancel the startup screen, and then select "New Connection" from "File" in the Tera Term menu.
fedora

Fedora35 : 初期設定

1. SELinux Disable First, disable selinux. selinux is a feature that improves auditing and security in Linux, but when enabled, it can limit the behavior of services and the configuration considerably. Therefore, it is basically invalidated in many cases. You can disable it by doing the following 2. System modernization & Services suspended due to security measures 2.1 System modernization # dnf -y upgrade
fedora

Fedora35 : インストール

What is Fedora? Fedora is an open source operating system software, a Linux distribution. The project started as a successor to Red Hat Linux, whose development was terminated at the end of 2003. It is unique in that it is community-driven, proactively incorporates feedback from the field, and introduces advanced, flexible, and advanced features. The most obvious difference when compared to popular Linux distributions such as "Ubuntu" is the balance between "advanced" and "stable". However, its stability has now been greatly improved, and it is gaining a reputation as an OS that can be used regularly, not just for functional testing purposes. For those who want to incorporate new and useful features as soon as possible, Fedora will be the best choice. However, it should not be used as a production environment or corporate need. In this case, we will use the latest Fedora 35 Server, released November 02, 2021.
fedora

Fedora35 : SSHの公開鍵暗号方式

SSH public key cipher setting Create an SSH private key on Windows and an SSH public key on the server to allow login by key pair authentication. 1.Create key pair with ECDSA Become an ordinary user and create a key pair in ECDSA # su – <user name> $ ssh-keygen -t ecdsa Generating public/private ecdsa key pair. Enter file in which to save the key (/home/huong/.ssh/id_ecdsa):<Enter> Created directory '/home/huong/.ssh'. Enter passphrase (empty for no passphrase):  ← Enter any password Enter same passphrase again:  ← Enter the same password again. Your identification has been saved in /home/<user name>/.ssh/id_ecdsa. Your public key has been saved in /home/<user name>/.ssh/id_ecdsa.pub.
fedora

Fedora35 : FTPサーバー(Vsftpd)

FTP Server Installation 1. Vsftpd installation # dnf -y install vsftpd 2.Vsftpd configuration Save the unedited vsftpd.conf with .bak # cp /etc/vsftpd/vsftpd.conf /home/huong/vsftpd.conf.bak 2. Vsftpd Configuration # vi /etc/vsftpd/vsftpd.conf ● Add to the last line:SSL/TLS Enable rsa_cert_file=/etc/pki/tls/certs/vsftpd.pem ssl_enable=YES force_local_data_ssl=YES force_local_logins_ssl=YES
fedora

Fedora35 : MySQL 8 . WordPress

Mysql8 インストール #dnf module -y install mysql:8.0 #vi /etc/my.cnf.d/charset.cnf charset.cnf 下記の内容で新規作成 # デフォルトの文字コードを設定 # 絵文字等 4 バイト長の文字を扱う場合は [utf8mb4] [mysqld] character-set-server = utf8mb4 [client] default-character-set = utf8mb4 2.Wordpressインストール # cd /var/www/html/fedora.korodes.com # wget http://ja.wordpress.org/latest-ja.tar.gz # tar xvf latest-ja.tar.gz 3.Wordpress設定ファイルの編集 # cd wordpress/ # cp wp-config-sample.php wp-config.php # vi wp-config.php
fedora

Fedora35 ; Let’s Encryptで証明書取得 , Apache SSL化

Obtain SSL Certificate (Let's Encrypt) Install the latest open ssl # dnf install openssl-devel 1.Certificate Installation # dnf -y install certbot # certbot certonly --webroot -w /var/www/html/[domain name] -d [domain name] # Registration of e-mail address and agreement to terms of use are required for the first time only. # Specify an email address to receive
fedora

Fedora35 : システムのバックアップ & リストア

Web構成ファイル(html配下)バックアップ ①html配下バックアップスクリプトファイルの作成 # cd /var/www/system/ # vi html_backup.sh MySQLデータベースバックアップ ①バックアップスクリプトファイルの作成 # cd /var/www/system # vi db_my_backup.sh db_my_backup.shの内容
タイトルとURLをコピーしました