Currently, I am a junior application consultant and we are maintaining huge amounts of redhat machines as servers. I am given the chance and liberty by my boss (unbelieveable!) to go do my own research regarding the security of our own systems. So I thought, maybe I should ask around here.... Hope you don't mind :)
So the question is: What should be audited in a Red Hat 5.x+ system to ensure the safety and make sure that proper measures will be taken to realize the given points here below:
- Critical data protection
- illegal access prevention
- system integrity
- uptime
- system updates and patches are most recent
- and etc...
What I want to achieve with this is to create a uniform and secure process to audit our systems and chart the status to intervene. In the end, I would like to look for possibilities to integrate this process with our monitoring systems.