From Fedora Project Wiki

(change the page according to the spins process)
m (→‎Benefit to Fedora: remove wishlist)
(60 intermediate revisions by 12 users not shown)
Line 1: Line 1:
{{subst:Spins_New_Spin_Page_Template}}
[[File:Spins-banner_security.png]]
<!-- All fields on this form are required to be accepted by the Spins SIG
We also request that you maintain the same order of sections so that all of the feature pages are uniform.  -->
 
= Fedora Security Spin =
{{admon/note|Wiki Page Purpose|This page follows the [[Spins_Process]]. The Development Home can be found at https://pagure.io/security-lab}}
== Summary ==
The Fedora Security Spin is a livecd based on Fedora to provide a safe test-environment for working on security-auditing, forensics and penetration-testing, coupled with all the Fedora-Security features and tools.
 
== Owner(s) ==
* Owner(s): [[User:fab | Fabian Affolter]]
 
* Quality Assurance: [[User:Athmane | Athmane Madjoudj ]]
 
* Former Owner(s): [[User:Lmacken | Luke Macken]], [[User:Maxamillion | Adam John Miller]], [[User:Cwickert | Christoph Wickert]], [[User:Hiemanshu | Hiemanshu Sharma]], [[User:Jsimon | Joerg Simon]]
 
== Detailed Description ==
The spin is maintained by a community of Security Testers and Developers. It comes with the clean and fast Xfce Desktop Enviroment and a customized menu to have all the instruments one may need to follow a proper test-path on security testing[https://fedorahosted.org/security-spin/wiki/availableApps]or to rescue a broken system. With the read-write rootfs, it is possible to install software while the livecd is running. The Fedora liveusb-creator provides an overlay feature to put the security-spin on an usb-stick so that the user can install and update software - and can save his test-results permanently.
 
== Benefit to Fedora ==
* Covered by the above description
* A stable platform for teaching security along security classes in universities and organisations like the [http://www.isecom.org ISECOM]
** People learn about Fedora through these classes
* Showcase for security features and testing
* A toolset for proper security testing
* A complete repair/rescue system - with tools not contained on the other LiveCDs to rescue your System
* Gather interested people to package new tools for this spin
* Cool marketing instrument and a story to tell
* There are industry partners who are interested to contribute
* and also contained in this presentation [http://jsimon.fedorapeople.org/fedora_osstmm_secspinv5.pdf SecuritySpin and the OSSTMM]
 
== Kickstart File ==
 
* https://pagure.io/security-lab/blob/master/f/fedora-livecd-security.ks
 
== ISO Name / FS Label ==
* ISO name: Fedora-$release-$arch-LiveSecurity
* FS-Label: Fedora-$release-$arch-Security
 
== Dependencies ==
* security-menus
** <s>https://bugzilla.redhat.com/show_bug.cgi?id=548824#c17</s> DONE
 
== Testing / QA ==
* Run [[JeremyKatz/SpinChecklist#Testing_of_the_Spin| basic spin testing]]
* Test installs from livecd and usb, test livecd-creator
* Persistence of Security Menu after installations
* How do the [https://fedorahosted.org/security-spin/wiki/availableApps available applications] work?
* [https://fedoraproject.org/wiki/Category:Security_Lab Current security lab applications test-cases]
* As of Fedora 16, Security Lab release validation test events are available.
 
Please track your checks on the relevant release in the [https://fedoraproject.org/wiki/Category:Security_Lab_Testing Security Lab Testing category]
 
== Spins Page ==
See https://fedorahosted.org/security-spin/wiki/spinspage
 
Spins Page is set up https://labs.fedoraproject.org/security/
 
[[Category:Spins_Fedora_23]]
[[Category:Spins_Fedora_22]]
[[Category:Spins_Fedora_21]]
[[Category:Spins_Fedora_20]]
[[Category:Spins_Fedora_19]]
[[Category:Spins_Fedora_18]]
[[Category:Spins_Fedora_17]]
[[Category:Spins_Fedora_16]]
[[Category:Spins_Fedora_15]]
[[Category:Spins_Fedora_14]]
[[Category:Spins_Fedora_13]]
[[Category:Security Lab]]
[[Category:Spins]]

Revision as of 15:11, 30 August 2017

Spins-banner security.png

Fedora Security Spin

Note.png
Wiki Page Purpose
This page follows the Spins_Process. The Development Home can be found at https://pagure.io/security-lab

Summary

The Fedora Security Spin is a livecd based on Fedora to provide a safe test-environment for working on security-auditing, forensics and penetration-testing, coupled with all the Fedora-Security features and tools.

Owner(s)

Detailed Description

The spin is maintained by a community of Security Testers and Developers. It comes with the clean and fast Xfce Desktop Enviroment and a customized menu to have all the instruments one may need to follow a proper test-path on security testing[1]or to rescue a broken system. With the read-write rootfs, it is possible to install software while the livecd is running. The Fedora liveusb-creator provides an overlay feature to put the security-spin on an usb-stick so that the user can install and update software - and can save his test-results permanently.

Benefit to Fedora

  • Covered by the above description
  • A stable platform for teaching security along security classes in universities and organisations like the ISECOM
    • People learn about Fedora through these classes
  • Showcase for security features and testing
  • A toolset for proper security testing
  • A complete repair/rescue system - with tools not contained on the other LiveCDs to rescue your System
  • Gather interested people to package new tools for this spin
  • Cool marketing instrument and a story to tell
  • There are industry partners who are interested to contribute
  • and also contained in this presentation SecuritySpin and the OSSTMM

Kickstart File

ISO Name / FS Label

  • ISO name: Fedora-$release-$arch-LiveSecurity
  • FS-Label: Fedora-$release-$arch-Security

Dependencies

Testing / QA

Please track your checks on the relevant release in the Security Lab Testing category

Spins Page

See https://fedorahosted.org/security-spin/wiki/spinspage

Spins Page is set up https://labs.fedoraproject.org/security/