RH415 – Security: Linux in Physical, Virtual, and Cloud
The "Red Hat Security: Linux in Physical, Virtual, and Cloud" (RH415) course is designed for security and system administration personnel who manage the secure operation of computer systems running Red Hat Enterprise Linux on physical hardware, as virtual machines, or as cloud instances both in private data centers and on public cloud platforms.
Course description
The "Red Hat Security: Linux in Physical, Virtual, and Cloud" (RH415) course is designed for security and system administration personnel who manage the secure operation of computer systems running Red Hat Enterprise Linux on physical hardware, as virtual machines, or as cloud instances both in private data centers and on public cloud platforms.
Maintaining the security of computing systems is a process of managing risk through the implementation of processes and standards backed by technologies and tools. "Red Hat Security: Linux in Physical, Virtual, and Cloud" (RH415) is designed for security administrators and system administrators who need to manage the secure operation of servers running Red Hat Enterprise Linux, whether deployed on physical hardware, as virtual machines, or as cloud instances. You will learn about technologies and tools that can be used to help you implement and comply with your security requirements, including the kernel's Audit subsystem, AIDE, SELinux, OpenSCAP and SCAP Workbench, USBGuard, PAM authentication, and Network-Based Device Encryption. You will learn to monitor compliance and to proactively identify, prioritize, and resolve issues by using OpenSCAP, Red Hat Insights, Red Hat Satellite, and Red Hat Ansible Automation Platform. You will have a basic introduction to how Red Hat Ansible Automation Platform automates the deployment of remediation to systems, by using Ansible Playbooks from OpenSCAP or Red Hat Insights.
Prerequisites
Audience
- System Administrator - responsible for supporting the company’s physical and virtual infrastructure, systems, and servers
- IT Security Practitioner / Compliance & Auditor - responsible for ensuring the technology environment is protected from attacks and is in compliance with security/privacy rules and regulations.
- Automation Architect - Engineer or architect responsible for the company’s automation development and optimizing cloud tools and infrastructure to achieve automation goals.
Outline
Define and implement strategies to manage security on Red Hat Enterprise Linux systems.
Remediate configuration and security issues automatically with Ansible Playbooks.
Encrypt data on storage devices with LUKS, and use NBDE to manage automatic decryption when servers are booted.
Protect systems from rogue USB device access with USBGuard.
Manage authentication, authorization, session settings, and password controls by configuring Pluggable Authentication Modules (PAM).
Record and inspect system events relevant to security by using the Linux kernel's Audit system and supporting tools.
Detect and analyze changes to a server's file systems and their contents by using AIDE.
Improve security and confinement between processes by using SELinux and advanced SELinux techniques and analysis.
Evaluate and remediate a server's compliance with security policies by using OpenSCAP.
Identify, detect, and correct common issues and security vulnerabilities with Red Hat Enterprise Linux systems by using Red Hat Insights.
Automate and scale OpenSCAP compliance checks by using Red Hat Satellite.
Review tasks from Red Hat Security: Linux in Physical, Virtual, and Cloud.