Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 10 Mar 2007 15:24:34 +0100
From:      Roger Olofsson <raggen@passagen.se>
To:        David Schulz <mailinglists@tca-cable-connector.com>
Cc:        FreeBSD Questions <questions@freebsd.org>
Subject:   Re: Advice on IDS & co.
Message-ID:  <45F2BFA2.9030705@passagen.se>
In-Reply-To: <B12C83E7-885E-4A52-83FB-0830E2D12617@tca-cable-connector.com>
References:  <B12C83E7-885E-4A52-83FB-0830E2D12617@tca-cable-connector.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Hello David,

I've been using chkrootkit and it's fairly simple. Aide is a more free 
version of Tripwire and you might want to look at Snort. Both are in the 
ports tree. I suppose you have a firewall like IPFilter or PF already?

I've been keeping an eye out for a really slick syslogfile analyzer, I'd 
be grateful for any tips on something in that direction.

Good luck!




David Schulz skrev:
> Hello all,
> 
> I would like to know what you guys think about chkrootkit, rkhunter and 
> tripwire.
> 
> I am considering adding them on my Server for some added Security. I am 
> aware, the holy grail would be to really dive into Jails, and the 
> macframework, but still i would like to have some opinions on those 
> mentioned Tools. Also, if you have other neat tricks to add some 
> security to a Server, do tell.
> 
> Thank you very much and best regards,
> David
> 
> 
> _______________________________________________
> freebsd-questions@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to 
> "freebsd-questions-unsubscribe@freebsd.org"
> 
> 
> --No virus found in this incoming message.
> Checked by AVG Free Edition.
> Version: 7.5.446 / Virus Database: 268.18.8/716 - Release Date: 
> 2007-03-09 18:53
> 
> 



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?45F2BFA2.9030705>