KnowledgeBase

Differences between revisions 2 and 8 (spanning 6 versions)
Revision 2 as of 2008-03-27 19:20:26
Size: 964
Editor: c-76-105-157-155
Comment:
Revision 8 as of 2008-08-06 17:00:02
Size: 1729
Editor: localhost
Comment:
Deletions are marked like this. Additions are marked like this.
Line 1: Line 1:
[[Include(SecurityTeam/Header)]] <<Include(SecurityTeam/Header)>>
Line 3: Line 3:
||<tablestyle="float:right; font-size: 0.9em; width:30%; background:#F1F1ED; background-repeat: no-repeat; background-position: 98% 0.5ex; margin: 0 0 1em 1em; padding: 0.5em;">'''Contents'''[[BR]][[TableOfContents]]|| ||<tablestyle="float:right; font-size: 0.9em; width:30%; background:#F1F1ED; background-repeat: no-repeat; background-position: 98% 0.5ex; margin: 0 0 1em 1em; padding: 0.5em;"><<TableOfContents>>||
Line 7: Line 7:
 {{{This page is still very much place-holder. If you have time, please update it with more information.}}} {{{
This page is still very much place-holder. If you have time, please update it with more information.
}}}
Line 9: Line 11:
== Security updates ==
Line 10: Line 13:
 * security updates
  * [:SecurityUpdateProcedures: Security Update Procedures]
  * Ubuntu CVE tracker link
  * mitre
  * NVD
  * oss-security link
 * Policies (FAQ could link to Knowledge{{{}}}Base)
  * policy on local DoS
  * policy on root passwords/sudo
  * policy on open network ports
  * policy on sudo
  * policy on home directory permissions
 * AppArmor docs
 * SELinux docs
=== Vulnerability Resources ===
 * [[https://launchpad.net/ubuntu-cve-tracker|Ubuntu CVE tracker]]
 * [[http://cve.mitre.org|Common Vulnerabilities and Exposures]] (CVEs)
 * [[http://nvd.nist.gov/nvd.cfm|National Vulnerabilities Database]]
 * [[http://oss-security.openwall.org|Open Source Software Security]]

=== Update processes ===
 * [[SecurityUpdateProcedures| Security Update Procedures]]
 * [[StableReleaseUpdates/MicroReleaseExceptions]]
 * [[StableReleaseUpdates]] (SRU)
 * [[https://help.ubuntu.com/community/UbuntuBackports|Backport Requests]]

=== Update techniques ===
Line 25: Line 27:
  * good upstream patches
  * micro release
  * SRU
  * -backports
 * [:DebuggingSecurity] for bug reports
 * How to test the update
  * [[https://code.launchpad.net/~ubuntu-bugcontrol/qa-regression-testing/master|QA Regression Testing]]
  * Proof of Concept (PoC)
  * Build test suites (eg, 'make check')
 * ABI compatibility (eg, check-symbols, nm)
 * Checklists

== Policies ==
(FAQ could link to Knowledge{{{}}}Base)
 * policy on local DoS
 * policy on root passwords/sudo
 * policy on open network ports
 * policy on sudo
 * policy on home directory permissions

== Features ==
 * [[AppArmor]] docs
 * [[SELinux]] docs

== Problems ==
 * [[DebuggingSecurity]] for bug reports
 * [[DebuggingApparmor]] for bug reports dealing with [[AppArmor]] profiles

This page is still very much place-holder.  If you have time, please update it with more information.

Security updates

Vulnerability Resources

Update processes

Update techniques

  • How to handle backporting security updates
  • How to test the update
  • ABI compatibility (eg, check-symbols, nm)
  • Checklists

Policies

(FAQ could link to KnowledgeBase)

  • policy on local DoS
  • policy on root passwords/sudo
  • policy on open network ports
  • policy on sudo
  • policy on home directory permissions

Features

Problems


CategorySecurityTeam

SecurityTeam/KnowledgeBase (last edited 2023-08-25 14:36:54 by rodrigo-zaiden)