The best way to harden Solaris is to use JASS, or as it's known now, Solaris Security Toolkit.
I've just recently gone through the exercise of hardening 8 Solaris 10 servers for a bank before the auditors came through. The good thing about Solaris Security Toolkit is that you can easily extend or modify the hardening steps and it comes with an auditing mode to ensure that your security configuration hasn't changed.
It's free and fully supported by Sun.
See http://www.sun.com/softwar
Main Topics
Browse All Topics





by: bpetersePosted on 2007-07-27 at 06:55:23ID: 19582253
Most unnecessary services are turned off to begin with, but this question is bit broad to be answered with a simple laundry list - much of it depends on what you'll be using the server for.
policies/c hecklists/ solaris10. php al/Solaris Webcast.pd f g/Solaris/ hardening. shtml /2005/Aug/ 0088.html community/ os_user_gr oups/dfw-o sug/ solari s-security -tech-over view-pub-a pr07.pdf
Check these links for more info:
http://www.utexas.edu/its/
http://www.deer-run.com/~h
http://www.softpanorama.or
http://seclists.org/basics
http://opensolaris.org/os/