gaschamber
09-14-2004, 01:38 PM
Do you have a dedicated linux server and need help with system security or management? I can help you with out breaking the bank.
APF installation
Logwatch installation
rkhunter installation
Temporary directory hardening
Software updated
Anti-Spoofing methods via host.conf & sysctl hardening
Portsentry installation
Deny normal users access to compilers
Libsafe installation
BFD
SIM
mod_security
mod_dosevasive
SPRI
LSM
Snort
ACID
Monthly Features
24/7 Monitoring
OS updates
3rd party Application Installations
Log Audits
Everything you see listed there will be installed for 70$. If you don't feel you need everything I have listed here then you can pick and choose what you wish to be installed, even if it's not
listed. The price will change for custom packages, depending on what you want installed.
I also reconize that many of you don't have the time to look through logs and install the 3rd partyapplications that your server needs. For a small charge of 40$ a month you will no longer have to worry with that time consuming task.
Thank You,
William
Yahoo:gaschamber_solutions
AIM:gaschambersales
impulsecorp
09-14-2004, 10:07 PM
I am very interested. I basically need what is offered at
http://rfxnetworks.com/linux_appsec_secbundle.php
Here's a copy of an email I sent to them:
I am interested in buying your Security Bundle with the Hardened Kernel,
Snort, SockMon, and any other programs that you would recommend.
I currently have 35 dedicated Linux servers hosted at ev1servers.net and 6
dedicated linux servers hosted at Rackspace.com. I have 1 secure server
(securemachines.com) that I use for my ecommerce system, which is hosted at
Rackspace.com ($300/month) behind a Cisco firewall ($465/month extra). The
server does not host any websites, just my shopping cart and ecommerce admin
system, all programmed in php/mysql.. I have never had any problems with it,
but it is expensive and I worry because I don't have any backup secure
server in place if it ever goes down. I spend $1000/day advertising my
websites (like CheapFlowers.com and GetVitamins.com), so I would lose
$1000/day if my secure server was down.
The only sensitive data I store on my secure server is credit card numbers
from my ecommerce sales. I don't allow customers to save their credit card
info for repeat purchases, but I do save the credit card data for a month on
my server to use in case I need to give a refund. I don't host sites for
anybody, so the only people who log into my secure server are my web
developers/programmers.
I would like to buy a new dedicated Linux server (Red Hat Enterprise) at
ev1servers.net, and pay you setup everything for me. I would also like to
use your Server Aware Monitoring.
Please answer the following questions for me:
1. Can I have the Server Aware Monitoring setup so all the email alerts go
to you, so you can fix the problems?
2. I am a little unclear on the pricing if I want both your Server Aware
Monitoring and you Security Bundle.
I also want: Hardened Kernel, Tripwire, Smart, Snort, SockMon, and any other
programs you would recommend, unless you think otherwise.
3. I have not ordered the new server yet from ev1servers.net for this
project. I was thinking of getting a Linux Enterprise P4 2 GHz 1 GB RAM
80GB Hard Drive for $139/month. Would you recommend anything different? I am
willing to spend as much as is needed. The secure server currently gets
around 100 sales per day, and the busiest ever was 500 sales per day.
4. I plan to get a SSL certificate for the new server through Geotrust,
through ev1servers.net for $49/year. Does that sound ok? I will use the
domain secure-charges.com.
5. I would like to setup a 2nd dedicated Linux server at ev1servers.net to
act as a backup secure server, in case my main secure server goes down. Do
you have any recommendations on how to do this? I would need it to use the
same domain name (secure-charges.com) and SSL certificate as my main secure
server. I would use DNS failover (from dnsmadeeasy.com) to automatically
switch traffic to the backup server if the main server is down. I can either
use mysql data replication to synch the 2 servers in realtime, or I could
have empty databases on the backup server, and then anytime it is used I
would copy the data from any sales that happen to my main server.
- Eric Borgos
Impulse Communications, Inc.
http://www.digitalcompany.com