Hardening Monitoring & Analysis

From khika
Revision as of 10:41, 11 June 2019 by Dhanashree kulkarni (talk | contribs) (Created page with "== Introduction == Default configuration of most devices (viz. operation systems, databases, routers, switches, etc.) is not designed with security as primary focus which lea...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search

Introduction

Default configuration of most devices (viz. operation systems, databases, routers, switches, etc.) is not designed with security as primary focus which leaves them vulnerable to security threats. Hardening is the process of enhancing device security through a variety of means which results in a much more secure server operating environment. KHIKA provides hardening compliance reports which are exclusively developed for each Customer environment, to check their devices for compliance against hardening policies as defined by their own security teams. KHIKA collects hardening compliance data from devices on a daily basis which is then evaluated against pre-defined policies. The best defense against security attacks is to ensure server hardening policies are implemented and up to date, to minimize these loopholes. The resultant reports depict the hardening posture for the respective device wherein each policy along with its compliance status is rendered on KHIKA dashboards.

Business Process flow for Linux Hardening

Following sequence explains the data flow and business process for Hardening analysis and monitoring using KHIKA :

  1. Hardening related data, values are collected into KHIKA using commands/scripts which run on servers via the Ossec Agent to get the hardening data into KHIKA.
  2. For Windows, Linux, Network devices and Oracle DB the polling interval is once every 24 hours.
  3. KHIKA processes this data and generates report dashboards which mention policy-wise which servers are non compliant and what is their current state vis a vis the desired.
  4. This data is captured once in every 24 hours and dashboards are refreshed with current results.


UI/UX Details/ Mock Screens

Required Hardening Dashboard can be selected from the Dashboard list like other Dashboards


hard1