Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.


New Tool Lets Enterprises Manage Security on Multiple Linux Servers

Trusted Computer Solutions readies software that can 'lock down' servers running Red Hat, CentOS, or Oracle Enterprise Linux

The good news about open source security tools is that they're cheap and don't require much administration. The bad news about open source security tools is that they're cheap and don't require much administration.

That's the problem faced by many computing environments that use a large number of Linux servers. The security tools available in the open source environment are easy to procure, but they don't offer a central method of handling administration across multiple servers.

Trusted Computer Solutions Inc. tomorrow will attempt to jump into this void with the introduction of Security Blanket 2.0 Enterprise Edition, an automated "system lock down" and security management tool for Linux operating systems that can manage all local and remote Linux servers from a centralized Web-based management console.

The idea is to make it easier for larger Linux environments, such as government and educational organizations, to do the "hardening" process required to meet security compliance requirements, says Jamie Adams, senior developer at TCS.

"This will help organizations lock everything down to make assessors happy," Adams says. "It helps you figure out what needs to be configured, and then it helps you do the configuration. Then it helps you enforce the policy, making sure all of your servers are configured consistently and all the patches are up to date."

Currently, the primary open source tool for security administration is Bastille, but Bastille can't configure multiple servers from a central location and doesn't always meet current standards for compliance. "There's no commercial entity working on it," Adams observes. "You're not always getting updates right away."

The Enterprise version enables administrators to easily group Linux servers, associate a lockdown profile with a group of servers, scan all servers within a group to determine compliance, and configure the server operating systems to the lockdown level of the chosen profile.

Security Blanket 2.0 Enterprise includes the security guidelines recommended by the Center for Internet Security (CIS), the Defense Information Security Agency (DISA) Security Technical Implementation Guides (STIGs), and select guidelines from the SANS Institute’s defined risks associated with Linux. It lets administrators group servers, select one of these industry lockdown profiles (or build their own), assess the state of the servers against the profile, and then automatically configure the operating systems to meet those profile guidelines, TCS says.

Automation might increase organizations' interest in server hardening, which many still don't do, said Forrester Research in a report issued last year.

"Although server hardening is a well-established practice, only [45 percent] of interviewees harden all of their servers, and [26 percent] left some Internet-facing servers unhardened," Forrester said. "Why? Perhaps because they feel they can't spare the time -- today, [53 percent] of systems administrators harden their servers manually."

Security Blanket Enterprise Edition starts at $3,000 for a console that supports up to 100 servers. Server licenses start at $198 per server.

Have a comment on this story? Please click "Discuss" below. If you'd like to contact Dark Reading's editors directly, send us a message.

  • The Center for Internet Security (CIS)
  • Forrester Research Inc.
  • The SANS Institute
  • Trusted Computer Solutions Inc.

    Tim Wilson is Editor in Chief and co-founder of Dark Reading.com, UBM Tech's online community for information security professionals. He is responsible for managing the site, assigning and editing content, and writing breaking news stories. Wilson has been recognized as one ... View Full Bio

    Comment  | 
    Print  | 
    More Insights
  • Comments
    Newest First  |  Oldest First  |  Threaded View
    A Startup With NSA Roots Wants Silently Disarming Cyberattacks on the Wire to Become the Norm
    Kelly Jackson Higgins, Executive Editor at Dark Reading,  5/11/2021
    When AI Becomes the Hacker
    Kelly Jackson Higgins, Executive Editor at Dark Reading,  5/13/2021
    Cybersecurity: What Is Truly Essential?
    Joshua Goldfarb, Director of Product Management at F5,  5/12/2021
    Register for Dark Reading Newsletters
    White Papers
    Cartoon Contest
    Current Issue
    2021 Top Enterprise IT Trends
    We've identified the key trends that are poised to impact the IT landscape in 2021. Find out why they're important and how they will affect you today!
    Flash Poll
    How Enterprises are Developing Secure Applications
    How Enterprises are Developing Secure Applications
    Recent breaches of third-party apps are driving many organizations to think harder about the security of their off-the-shelf software as they continue to move left in secure software development practices.
    Twitter Feed
    Dark Reading - Bug Report
    Bug Report
    Enterprise Vulnerabilities
    From DHS/US-CERT's National Vulnerability Database
    PUBLISHED: 2021-05-17
    When subscribing using AcyMailing, the 'redirect' parameter isn't properly sanitized. Turning the request from POST to GET, an attacker can craft a link containing a potentially malicious landing page and send it to the victim.
    PUBLISHED: 2021-05-17
    There is functionality in the Store Locator Plus for WordPress plugin through 5.5.14 that made it possible for authenticated users to update their user meta data to become an administrator on any site using the plugin.
    PUBLISHED: 2021-05-17
    There are several endpoints in the Store Locator Plus for WordPress plugin through 5.5.15 that could allow unauthenticated attackers the ability to inject malicious JavaScript into pages.
    PUBLISHED: 2021-05-17
    The Happy Addons for Elementor WordPress plugin before 2.24.0, Happy Addons Pro for Elementor WordPress plugin before 1.17.0 have a number of widgets that are vulnerable to stored Cross-Site Scripting(XSS) by lower-privileged users such as contributors, all via a similar method: The â€&oe...
    PUBLISHED: 2021-05-17
    It was possible to exploit an Unauthenticated Time-Based Blind SQL Injection vulnerability in the Spam protection, AntiSpam, FireWall by CleanTalk WordPress Plugin before 5.153.4. The update_log function in lib/Cleantalk/ApbctWP/Firewall/SFW.php included a vulnerable query that could be injected via...