Security and tools in Linux distributions

Security and tools in Linux distributions

How does security differ between Linux distros? What tools are offered by commercial distros? What are the strengths and weaknesses of them?

    Requires Free Membership to View

    When you register, my team of editors will also send you resources covering Linux administration and management; integration and interoperability between Linux, Windows and Unix; securing Linux and mixed-platform environments; and migrating to Linux.

    Cathleen A. Gagne, Senior Editorial Director

    By submitting your registration information to SearchEnterpriseLinux.com you agree to receive email communications from TechTarget and TechTarget partners. We encourage you to read our Privacy Policy which contains important disclosures about how we collect and use your registration and other information. If you reside outside of the United States, by submitting this registration information you consent to having your personal data transferred to and processed in the United States. Your use of SearchEnterpriseLinux.com is governed by our Terms of Use. You may contact us at webmaster@TechTarget.com.

There are far too many variables (and far too many distributions!) to make a simple comparison between security on various distributions. Additionally, security is only one of the considerations you need to factor in when deciding on a particular distribution. Cost, ease-of-use, administration and performance are all other factors that should be considered.

Obviously, some distributions (both commercial and not) offer features that others don't. For example, SUSE's support for AppArmor or SELinux support in many distributions. In comparing the security of distributions, some of the factors I'd recommend considering are:

  • Default installation security, i.e. how secure is the host when installed. For example, whether a firewall is enabled or are a minimal number of packages installed, etc.
  • Availability and frequency of patches and updates. It's also worth reviewing previous security vulnerabilities that the distribution has had.
  • Availability of features such as SELinux, GrSecurity, PaX, ExecShield

This was first published in April 2007