Re: Linux SuSe host base IDS.

From: Jose Maria Lopez (jkerouac_at_bgsec.com)
Date: 09/08/04

  • Next message: arif.jatmoko_at_sea.ccamatil.com: "Comparison Between IDS / IPS Products"
    To: focus-ids@securityfocus.com
    Date: 08 Sep 2004 19:15:16 +0200
    
    

    El jue, 19 de 08 de 2004 a las 19:32, Dennis Carter escribió:
    > Does anyone on this forum know of HOST BASE IDS for Linux SuSe?
    >
    >
    >
    > Thanks
    >
    > Dennis

    You have tripwire (a commercial product with a GPL version) and
    aide (GPL). Both are very similar, but I like tripwire the most.

    -- 
    Jose Maria Lopez Hernandez
    Director Tecnico de bgSEC
    jkerouac@bgsec.com
    bgSEC Seguridad y Consultoria de Sistemas Informaticos
    http://www.bgsec.com
    ESPAÑA
    The only people for me are the mad ones -- the ones who are mad to live,
    mad to talk, mad to be saved, desirous of everything at the same time,
    the ones who never yawn or say a commonplace thing, but burn, burn, burn
    like fabulous yellow Roman candles.
                    -- Jack Kerouac, "On the Road"
    --------------------------------------------------------------------------
    Test Your IDS
    Is your IDS deployed correctly?
    Find out quickly and easily by testing it with real-world attacks from CORE IMPACT.
    Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 to learn more.
    --------------------------------------------------------------------------
    

  • Next message: arif.jatmoko_at_sea.ccamatil.com: "Comparison Between IDS / IPS Products"

    Relevant Pages

    • Re: Linux SuSe host base IDS.
      ... >>Does anyone on this forum know of HOST BASE IDS for Linux SuSe? ... > aide (GPL). ... but I like tripwire the most. ... Test Your IDS ...
      (Focus-IDS)
    • RE: can tripwire be used for sensor integrity???
      ... We have lots of users who use IDS Informer in this way to ensure that the $$ ... not caught out by a sensor going off line without knowing. ... tripwire does not detect LKM trojans or tampering. ... of kernel integrity protection. ...
      (Focus-IDS)
    • Re: Tripwire
      ... Although Tripwire sucks in innumerable ways, ... > Likewise with Samba browselists, a nessessity for getting MS browselists ... > My bets are more on some IDS, ... setting up the correlation rules isn't a cake walk ...
      (comp.os.linux.security)
    • Re: What to do if they ignore you
      ... > My company provides outsource security management/monitoring services. ... The only people for me are the mad ones -- the ones who are mad to live, ... the ones who never yawn or say a commonplace thing, but burn, burn, burn ... Test Your IDS ...
      (Incidents)
    • Re: Snort IDS
      ... > would like to use the Open Source Snort network IDS running on RedHat Linux ... The only people for me are the mad ones -- the ones who are mad to live, mad to talk, mad to be saved, desirous of everything at the same time, the ones who never yawn or say a commonplace thing, but burn, burn, burn like fabulous yellow Roman candles. ...
      (comp.security.firewalls)