Setup guide

UNCLASSIFIED
UNCLASSIFIED
v
3.9 Logon Warning Banners ..................................................................................23
3.10 Auditing and Log File Configuration .............................................................24
3.10.1 Configuring syslogd.................................................................................24
3.10.2 Local Logging ..........................................................................................25
3.10.3 Remote Logging ......................................................................................26
3.11 Disabling Hardware Components...................................................................26
3.12 Disabling Mac OS 9 ........................................................................................27
4. Securing Network Services ..............................................................30
4.1 Securing the DNS Service................................................................................ 30
4.1.1 Disable the DNS Service ........................................................................... 30
4.1.2 Basic Security Settings ............................................................................. 30
4.2 NTP, SNMP, and Macintosh Manager Services .............................................. 31
4.2.1 Disable the NTP, SNMP, and Macintosh Manager Services .................... 31
4.3 DHCP Service ...................................................................................................32
4.3.1 Disable the DHCP Service.........................................................................32
4.3.2 Configure the DHCP Service ....................................................................32
4.4 Enabling the Secure Sockets Layer ..................................................................33
4.4.1 Obtaining SSL Certificates ........................................................................33
4.4.1.1 Creating a CA to sign certificates .......................................................34
4.4.1.2 Creating an SSL Certificate for Web Services ...................................35
4.4.1.3 Creating an SSL Certificate for E-mail Services................................36
4.4.1.4 Creating an SSL Certificate for LDAP Services .................................37
4.4.2 Enable Client Support...............................................................................38
4.5 Securing Open Directory Service .....................................................................38
4.5.1 Configure Role...........................................................................................39
4.5.2 Configure Protocols ..................................................................................39
4.5.3 Configure Authentication Policies........................................................... 40
4.6 Securing Web Services .................................................................................... 40
4.6.1 Disable the Web Server ............................................................................. 41
4.6.2 Basic Security Settings.............................................................................. 41
4.6.3 Configuring SSL Support..........................................................................42
4.7 Securing E-mail Services..................................................................................43
4.7.1 Disable Unnecessary E-mail Services .......................................................43
4.7.2 Configure SSL Support .............................................................................44
4.7.2.1 Install Mail Server Certificates ..........................................................44
4.7.2.2 Enable SSL Support...........................................................................44
4.7.3 Configure Authentication Support ...........................................................45
4.7.4 Set Account to Receive Problem Reports .................................................45
4.7.5 Disable the SMTP Banner.........................................................................46
4.8 Remote Logging ...............................................................................................46
4.9 Securing Remote Login....................................................................................47
4.9.1 Disable Remote Login ...............................................................................47