Re: Rooted system

From: Brian Keefer (chort_at_amaunetsgothique.com)
Date: 02/19/04

  • Next message: Peter Pentchev: "Re: [Fwd: [gentoo-announce] [ GLSA 200402-07 ] Clamav 0.65 DoSvulnerability]"
    To: freebsd-security@freebsd.org
    Date: 18 Feb 2004 23:34:10 -0800
    
    

    On Mon, 2004-02-16 at 12:20, Clifton Royston wrote:
    > > And now what? [ You are unclear to me ]
    > >
    > > Well, you could use a Security Toolkit Distribution from Knoppix, called
    > > knoppix-std
    > > And do some research with that.
    >
    > More generic forensic help (less Linux-specific) might come from the
    > "Coroner's Toolkit" from the team of Wietse Venema and Dan Farmer
    > (SATAN et al., and also TCPwrap and Postfix in the case of Wietse.)
    > It's supposed to be pretty cross-platform with BSD support.
    >
    > <http://www.porcupine.org/forensics/tct.html>
    >

    FYI the Knoppix-STD live-CD does have an extended version of Coroner's
    Toolkit. Have a look:
    http://www.knoppix-std.org/tools.html

    Also, although it's a Linux distribution, it's *not* expressly for Linux
    forensics. It has NTFS rw support (limited) and Windows password reset
    functions, etc... In other words, it's a multi-OS generic forensics
    kit. I'm fairly certain that it does have support for mount -t ufs, but
    I haven't confirmed that.

    -- 
    Brian Keefer, CISSP
    Systems Engineer
    CipherTrust Inc, www.CipherTrust.com
    _______________________________________________
    freebsd-security@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-security
    To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
    

  • Next message: Peter Pentchev: "Re: [Fwd: [gentoo-announce] [ GLSA 200402-07 ] Clamav 0.65 DoSvulnerability]"

    Relevant Pages

    • How to save stuff with Knoppix LiveCD?
      ... I want to make sure it will support my wireless NIC -- lspci ... complete rewrite of NTFS code), but under Knoppix, even if I mount hda1 ... into a latter-day Arab hero assigning young soldiers ...
      (comp.os.linux.misc)
    • Re: Rooted system
      ... > Well, you could use a Security Toolkit Distribution from Knoppix, called ... More generic forensic help might come from the ... These things are fun, and fun is good. ...
      (FreeBSD-Security)
    • Re: Linux hardware support...
      ... I do have the same problem with it that I have with Suse ... Suse and Knoppix connect to the net right from the evaluation CD's so I'm ... I have problems getting support for the MT2050 chip even under Windows ... doesn't install properly or there are other issues. ...
      (comp.os.linux.hardware)
    • Re: Linux compatible portable MP3/Ogg players
      ... bring a Knoppix CD with you to the store and test one. ... There are still too many players ... I have a I-Bead MP100, it does only support MP3/WAV/WMx, it is mounted as a ... mass storage device without any problems (using the 1.31 firmware). ...
      (alt.linux)
    • Re: Knoppix NIC config problems
      ... > card until recently. ... > module to make the card work in the Fedora setup..... ... Knoppix 3.3 doesn't support this chipset. ...
      (comp.os.linux.networking)