Wednesday, April 15, 2009

Lynis v1.2.6 - Security & System Auditing Tool

Project information:
Lynis is an auditing tool for Unix (specialists). It scans the system and available software, to detect security issues. Beside security related information it will also scan for general system information, installed packages and configuration mistakes.

This software aims in assisting automated auditing, software patch management, vulnerability and malware scanning of Unix based systems. It can be run without prior installation, so inclusion on read only storage is no problem (USB stick, cd/dvd).

Lynis assists Auditors in performing Basel II, GLBA, HIPAA, PCI DSS and  SOX (Sarbanes-Oxley) compliance audits.

Please note that Lynis is Not a hardening tool. Lynis does not fix things automatically, it reports only & gives suggestions.

Intended Audience:
Security specialists, penetration testers, system auditors, system/network managers.

Examples of Audit tests:
    - Available authentication methods
    - Expired SSL certificates
    - Outdated software
    - User accounts without password
    - Incorrect file permissions
    - Firewall auditing

Current State:
Stable releases are available, development is active.

Download:
You can download Lynis 1.2.6 here:
http://www.rootkit.nl/files/lynis-1.2.6.tar.gz

For Lynis Documentation, please see here:
http://www.rootkit.nl/files/lynis-documentation.html

For System requirements, Supported Operating Systems & Hash information on Lynis download, please see here:
http://www.rootkit.nl/projects/lynis.html

No comments:

Post a Comment

Disclaimer

The views, information & opinions expressed in this blog are my own and do not reflect the views of my current or former employers or employees or colleagues.