Linux & Network Security Essentials
By Wanderson Leandro de Oliveira
This course builds on Terminal & Linux Essentials to take you into defensive security: the discipline of reducing attack surface and detecting trouble on machines you own. You will harden the Linux security model itself (users, permissions, services), build firewall rules with ufw and iptables, understand the TCP/IP concepts that matter for defense, segment a network, lock down SSH with key-based auth and bastion hosts, capture and read traffic with tcpdump and Wireshark, centralize logs with syslog/journald, monitor file integrity, use auditd for kernel-level auditing, and finish with a hands-on project: a full hardening checklist plus fail2ban on a local server. Every exercise runs against your own local VM or server — never against systems you do not own.
Course content
Linux hardening
- 🔒 The Linux security model: the basics text
- 🔒 User and permission hardening text
- 🔒 Disabling unnecessary services text
Firewall and networking
- 🔒 Firewall basics with ufw/iptables text
- 🔒 Understanding TCP/IP for security text
- 🔒 Network segmentation: the basics text
SSH and remote access
- 🔒 SSH hardening essentials text
- 🔒 Key-based auth and disabling passwords text
- 🔒 Bastion hosts and VPN basics text
Network monitoring
- 🔒 Reading traffic with tcpdump text
- 🔒 Introduction to Wireshark analysis text
- 🔒 Detecting anomalies in network traffic text
Logs and auditing
- 🔒 Linux logging essentials (syslog/journald) text
- 🔒 File integrity monitoring: the basics text
- 🔒 auditd essentials text
Practical project
- 🔒 Hardening checklist walkthrough text
- 🔒 Setting up fail2ban text
- 🔒 Practical project: hardening a Linux server text