|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
Re: Chapter 8 security
From: Luke Mewburn (lukem
NetBSD.org)
Date: Sun Apr 18 2004 - 19:35:21 CDT
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
On Sun, Apr 18, 2004 at 02:54:34PM -0400, Greg A. Woods wrote:
| The /etc/security support of /var/backups should even be sufficient for
| the purposes of auditing "all system changes", and even the granularity
| can be adjusted as necessary; though perhaps a well planned and deployed
| tripwire install (or similar scheme, e.g. with mtree) would be even
| better.....
NetBSD 2.0 has /etc/mtree/set.*, which contains the mtree information
including permissions and SHA1 hashes for all the files in the given set.
This could easily be used as the basis for tripwire like functionality.
Cheers,
Luke.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (NetBSD)
iD8DBQFAgx7JpBhtmn8zJHIRAoXOAJ0T1EfNYQD0CNlA3ptUpOr/dS6dwwCglK9g
ByuS8SGddA9fcVwE1sYZMeQ=
=Tan2
-----END PGP SIGNATURE-----
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]