IPTables Logging

Thugzclub Thugzclub <[email protected]> Tue, 3 Jul 2012 01:59:10 +0100
Newsgroups gmane.comp.security.basics,gmane.comp.security.penetration
Message-ID <CA+xB1-bL=EJ57PTT2mzbW1_9eTqwmUJoLKZ-mCSvoxcrMJNGjQ@mail.gmail.com>
Hi,

We are implementing IP Tables on the servers as Host Based Firewall
and these have be integrated into the SIEM. What are the best
practices for integrating IPTables into a SIEM solution.

Questions are :
1 - Should we be logging both incoming and outgoing?
2 - Should we be logging dropped packets?
3 - Assume we log it, whats the situation with regards to limiting the
log rate? I
Cheers

------------------------------------------------------------------------
Securing Apache Web Server with thawte Digital Certificate
In this guide we examine the importance of Apache-SSL and who needs an SSL certificate.  We look at how SSL works, how it benefits your company and how your customers can tell if a site is secure. You will find out how to test, purchase, install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for set-up are highlighted to help you ensure efficient ongoing management of your encryption keys and digital certificates.

http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f727d1
------------------------------------------------------------------------