website scanning question
Hi all, new to forums and Linux so be kind...1) I work for a company that was audited last year adn soon to be again in September. One of the questions was, "Have you done any scans on the website to confirm the site was not hijacked"?
^- How do you that? The site is hosted off site.
2) The same company has Linux 7.3 Kernel 2.4.??? and is being used as a firewall and imap server. How secure is this box (General question, I know you would need to see what was installed and what services are running) It doesn't do www or ftp only FW and mail. SSH is enabled.
3) I'm pretty sure no recent updates have been done since the installation. Is that a hard thing to do. I noticed "X window" has a red button on the bottom right indicating updates available.
4) How often should a kernel be updated?
_______________
Sorry, if these are super boon questions. Just getting my toes wet and use to the water before I jump in.