OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: History Files
From: Bojan Zdrnja (bzdrnjaZESOI.FER.HR)
Date: Tue Apr 18 2000 - 02:37:25 CDT


There is a really nice utility available for SunOS 4.x and Solaris 2.x
systems. Utility is called TTY-Watcher and it can be used to monitor and
control users on a system.
This utility monitors raw keys users type and it is capable of recording it
into file so you can watch later *exactly* what happened (like on VCR).

For more information be sure to check:

ftp://coast.cs.purdue.edu/pub/tools/unix/ttywatcher

My collegue and I even wrote several patches for this nice util when we had
to deal with some hackers. We added parts for client/server logging
(modified version of TTY-Watcher is on `client' machine and it sends log
packets to server machine).

Only thing is that it currently works only on Sun operating systems.

Regards, Bojan

--
System Administrator at Faculty of EE&CS, Zagreb, Croatia
IT/Security Consultant