Protecting Networks with SATAN

Protecting Networks with SATAN

by Martin Freiss (Author)

Synopsis

SATAN (Security Administrator's Tool for Analyzing Networks) is a powerful aid for system administrators. It performs "security audits," scanning host computers for security vulnerabilities caused by erroneous configurations or by known software errors in frequently used programs. SATAN is a particularly interesting piece of software because it uses the Web as its front end. Readers should be particularly interested in SATAN because it has earned a lot of publicity -- even notoriety. The original SATAN paper reported details, for the first time outside the hacker community, on how insecure some often-used services on the Internet really are. The SATAN software provided a tool for automatic detection of such vulnerabilities. Because SATAN could be run on other sites, not only your own, many critics predicted that SATAN would wreak destruction on the Internet. The Oakland Tribune, for example, wrote: "It's like randomly mailing automatic rifles to 5000 addresses. I hope some crazy teen doesn't get a hold of one." The dire results predicted have not come to pass, and SATAN has become a useful tool in many system administrators' toolboxes. This small book describes not only how to install and use SATAN, but also how to extend its modular structure to adapt it to local requirements and increase its knowledge of specific security vulnerabilities. This book also discusses how you can defend your site against potential abuse by SATAN. You can configure the program to detect when a potential intruder employs the program against your host and network, and you can take appropriate measures to repel the attacks.

$8.95

Save:$8.54 (49%)

Quantity

1 in stock

More Information

Format: Paperback
Pages: 128
Edition: 1
Publisher: O'Reilly Media
Published: 01 May 1998

ISBN 10: 1565924258
ISBN 13: 9781565924253

Author Bio
Martin Freiss, after a degree in electrical engineering, decided to do something else and started his working life in UNIX development at Nixdorf Computer AG, writing IP stacks. As soon as he got the chance, he went into Internet administration, looking after the company's mail, news, WWW and DNS servers, protecting them from abuse and generally fiddling with everything having to do with networking on the Internet. He is currently at the Competence Center IT Networks department of Siemens Nixdorf Information Systems Inc. in Cologne, Germany, where his time is evenly divided between consulting on network security and Internet service and providing and giving seminars and workshops on these topics. At home, he tries to improve his language skills, though -- as a confessing network news addict - he spends most of his time at his workstation.