Re: [Full-Disclosure] write events log to CD?

From: Alan J. Wylie (shyyqvfpybfher_at_wylie.me.uk)
Date: 08/30/04

  • Next message: debian-security-announce_at_lists.debian.org: "[Full-Disclosure] [SECURITY] [DSA 542-1] New Qt packages fix arbitrary code execution and denial of service"
    To: "Full Disclosure" <full-disclosure@lists.netsys.com>
    Date: 30 Aug 2004 13:53:26 +0100
    
    

    On Mon, 30 Aug 2004 13:53:19 +0530, "Aditya" <aditya.deshmukh@online.gateway.technolabs.net> said:

    ALD> Is there a way to setup Event Log in Windows to log to a CD-R by
    ALD> maybe using ALD> software like Aptec DirectCD so that intruders
    ALD> could not erase their tracks

    > yes you can forward the events to a syslog server and make the
    > syslog server write the logs on a worm disk.

    google for <"receive-only ethernet" syslog> for another way of making
    the storage append-only.

    It was a lot easier to set up one-way ethernet links in the days of
    thick co-ax, vampire taps and 15 pin AUI connectors.

    http://www.mrtweaks.com/sec4.htm

    -- 
    Alan J. Wylie                                          http://www.wylie.me.uk/
    "Perfection [in design] is achieved not when there is nothing left to add,
    but rather when there is nothing left to take away."
      -- Antoine de Saint-Exupery
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html
    

  • Next message: debian-security-announce_at_lists.debian.org: "[Full-Disclosure] [SECURITY] [DSA 542-1] New Qt packages fix arbitrary code execution and denial of service"