-
•Securing Apple Applications - Mail, Web browsing (Safari), IM (iChat). One unusual (and quite difficult) recommendation: “You should only send email that is digitally signed and encrypted.”
-
•Securing VPN
-
•Securing Firewall - ipfw command line tool along with the “built-in” UI
-
•About Internet Sharing - “violates many organizational security policies... activates DHCP, NAT, and Firewall services which are unconfigurable.”
-
•Enabling TCP Wrappers - why??
-
•Securing SSH - 6 pages of mostly command line stuff; great if you’re already an expert.
-
•Securing Bonjour
-
•Securing Network Services - AFP, Windows Sharing (“You should not enable Windows sharing, because there are well-known risks associated with SMB/CIFS.”), Personal Web Sharing, Remote Login (more ssh), FTP (“an insecure tool used for file sharing that should not be enabled,”) Apple Remote Desktop, Remote Apple Events, Printer Sharing, XGrid.
-
•Intrusion Detection Systems
There’s also a very nice “Security Checklist” appendix.