Special offers now — see discounted courses.
day
:
hour
:
min
:
sec
See special offers
Complete Guide to Linux Security: Protecting Your Linux Server Environment

Complete Guide to Linux Security: Protecting Your Linux Server Environment

11h 29mIntermediate2025-06-06

Authors

Pearson

Pearson

Dave Prowse

Dave Prowse

Course details

Do you know how to harden, patch, update, and lock down your Linux server, in the event of an attack? In this course, author and trainer Dave Prowse shows you the ins and outs of Linux security, from protecting your Linux server environment from common threats and attacks to working with services and systems, securing SSH, and more. Learn how to use Linux as a server while also exploring how to cover client-side security. With dozens of hands-on demonstrations, this course offers exercises and challenges so you can practice your skills as you learn.

Skills covered

LinuxNetwork SecurityServer AdministrationCybersecurityNetwork and System AdministrationOpen SourceOne-Off

Concepts

0. Introduction

  • 01 - Linux security - Basics and beyond

1. User Security Basics

  • 02 - Linux user security introduction
  • 03 - Learning objectives
  • 04 - Introduction to Linux users
  • 05 - Principle of least privilege
  • 06 - Accessing the repository and network map
  • 07 - The id command

2. Working with Passwords

  • 08 - Learning objectives
  • 09 - Secure passwords
  • 10 - Setting the password
  • 11 - Generating passwords with OpenSSL and KeePass
  • 12 - The passwd and shadow files
  • 13 - Password settings
  • 14 - Password policy configuration

3. Linux Authentication

  • 15 - Learning objectives
  • 16 - Logging in as a typical user by password
  • 17 - Logging in as an enterprise user
  • 18 - Locking the system
  • 19 - SSH basics
  • 20 - SSH and Linux in the cloud

4. su, sudo, and sudoers

  • 21 - Learning objectives
  • 22 - The su command
  • 23 - Using the sudo command
  • 24 - Sudoers
  • 25 - Assigning a regular user sudo permissions

5. Linux Operating System Security Basics

  • 26 - Securing Linux operating systems introduction
  • 27 - Learning objectives
  • 28 - Introduction to Linux OS security
  • 29 - Defense in depth
  • 30 - The CIA triad

6. Updating Linux

  • 31 - Learning objectives
  • 32 - Updating Debian and Ubuntu
  • 33 - More apt and repositories
  • 34 - Updating Fedora, Red Hat, and CentOS
  • 35 - Installing security updates only
  • 36 - Updating SUSE
  • 37 - Updating Arch

7. Working with Services and System Health

  • 38 - Learning objectives
  • 39 - systemctl basics
  • 40 - Reducing the attack surface
  • 41 - Creating a degraded system
  • 42 - Repairing a degraded system
  • 43 - systemd states

8. Securing Linux Distros

  • 44 - Learning objectives
  • 45 - 10 steps to a secure Linux server, part 1
  • 46 - 10 steps to a secure Linux server, part 2
  • 47 - Wired and wireless security in Linux
  • 48 - Securing GRUB

9. Application Security

  • 49 - Learning objectives
  • 50 - AppArmor basics
  • 51 - AppArmor profiles
  • 52 - AppArmor and Apache example
  • 53 - SELinux basics

10. Introduction to Firewall Security

  • 54 - Firewalls and SSH security introduction
  • 55 - Learning objectives
  • 56 - What is a firewall
  • 57 - Types of Linux-based firewalls
  • 58 - Zero-trust environment mindset

11. UFW

  • 59 - Learning objectives
  • 60 - UFW introduction
  • 61 - Setting up UFW
  • 62 - Configuring UFW

12. firewalld

  • 63 - Learning objectives
  • 64 - firewalld introduction
  • 65 - Installing and enabling firewalld
  • 66 - Configuring and testing firewalld
  • 67 - Lock it down
  • 68 - Returning the system to its original state

13. nftables

  • 69 - Learning objectives
  • 70 - Introduction to nftables and the nft command
  • 71 - nftables setup
  • 72 - Tables Chains Rules
  • 73 - Building the nftables configuration, part 1
  • 74 - Building the nftables configuration, part 2
  • 75 - Saving and restoring the nftables configurations
  • 76 - Translating iptables to nftables

14. Securing SSH

  • 77 - Learning objectives
  • 78 - Review of SSH
  • 79 - Using keys to connect via SSH
  • 80 - The sshd config file
  • 81 - Modifying the default SSH port
  • 82 - Disabling password-based SSH
  • 83 - Disabling root login via SSH
  • 84 - Exclusive SSH groups
  • 85 - Authentication settings
  • 86 - Terminating SSH connections, part 1
  • 87 - Terminating SSH connections, part 2

15. Storage Drive Fault Tolerance and Backup

  • 88 - Linux file security and security tools introduction
  • 89 - Learning objectives
  • 90 - RAID 1
  • 91 - RAID 5
  • 92 - RAID 10 and ZFS
  • 93 - Backup

16. Working with Files in Linux

  • 94 - Learning objectives
  • 95 - chmod
  • 96 - chown and chgrp
  • 97 - Encryption in Linux
  • 98 - Linux encoding and hashing

17. Working with Processes

  • 99 - Learning objectives
  • 100 - Viewing processes
  • 101 - Ending processes with commands
  • 102 - Ending processes with top

18. Vigilant Logging and Tooling

  • 103 - Learning objectives
  • 104 - Logging in Linux - The journal
  • 105 - Logging in Linux - rsyslog, part 1
  • 106 - Logging in Linux - rsyslog, part 2
  • 107 - Auditing in Linux
  • 108 - Nmap
  • 109 - Wireshark
  • 110 - Additional tools

Conclusion

  • 111 - Summary

About us

LyndaKade is a leading learning platform that helps people learn business, software, technology, and creative skills to achieve personal and professional goals.

Phone numberAparat ChannelTelegram SupportTelegram ChannelInstagram Page

All rights to this site belong to LyndaKade.

Terms of Service|Privacy Policy

نماد الکترونیک enamad در صورت اتصال با آی‌پی داخل کشور، نمایش داده خواهد شد.
logo-samandehi - لوگو ساماندهی
Zarinpal
Zibal