Asianux - Security Solution


Software flaws in applications that are exposed via the Internet can allow attackers to compromise systems that host critical data. General security only solves part of the problem, and firewalls do little to protect against the growing number of threats that originate from within company walls.

As a result, IT organizations regularly patch their servers to protect against the latest threats; however, this reactive security strategy still leaves businesses dangerously exposed. With experienced hackers becoming faster at exploiting security vulnerabilities, IT organizations often have little or no time to download, test and apply security patches to their systems.

  • SELinux enhancements include Multi-Level Security and targeted policies for all services
  • SEtroubleshooter GUI simplifies SELinux management
  • Integrated directory and security capabilities
  • IPSEC enhancements improve security and performance
  • ExecShield enhancements, such as a call frame Canary word, strengthen hacker defenses
  • New Audit features provide powerful new search/reporting and real-time monitoring

Application Firewall

Asianux provides enterprise-class application security that protects the operating system and its applications from the harmful side effects of attacks, malicious applications and viruses. It does this by creating a firewall around applications. If an application is compromised by an intruder, damage is not permitted outside the "application firewall." No matter where an attack originates—internally or externally—Asianux Server allows enterprises to ensure data integrity while reducing system administration costs and preventing downtime.

Security Enhanced Linux (SELinux) provide:

File systems and storage 

A large number of new capabilities are provided, including:

  • The Ext3 file system will now support 16TB file systems.
  • iSCSI and Fibre Channel can be configured during installation.
  • OpenAIS - a standard API that can mask many types of faults in applications, middleware, operating systems and hardware by providing a simple framework for allowing developers to create redundant applications.
  • Dm-crypt provides block-level storage device encryption.

* Enhanced storage scalability and security combined with simplified configuratiFile systems and storage (general)

A large number of new capabilities are provided, including:

  • The Ext3 file system will now support 16TB file systems.
  • iSCSI and Fibre Channel can be configured during installation.
  • OpenAIS - a standard API that can mask many types of faults in applications, middleware, operating systems and hardware by providing a simple framework for allowing developers to create redundant applications.
  • Dm-crypt provides block-level storage device encryption.

*Enhanced storage scalability and security combined with simplified configuration

Asianux Linux service are provided with targeted policies enable by default

Significant ease-of-use enhancements are provided with the inclusion of the SELinux Troubleshooter, a GUI-based analyzer which guides system administrators on appropriate actions to take in the event of a security alert.

The distribution is built using the fortify-source compiler flag which provides more stringent run-time buffer bounds checking, thereby adding to overall system security.

*Asianux offers the highest level of out-of-the-box security in the industry. Security administration is greatly simplified.