Re: secure UNIX log server

From: quentyn@fotango.com
Date: 05/30/02


From: quentyn@fotango.com
Date: Thu, 30 May 2002 10:16:56 +0100

Nick Maclaren wrote:
 
> Would you like to explain how you can monitor a server from
> several miles away without either logging in or using an
> equivalent form of network access?
>

have a script that listens on a port

when a client connects to said port it spews out the status of the
server (disks / mem / whatever you are interested in etc)

I will leave as to how you control access to the said port to you (
there are many ways) you could be extra paranoid and GPG the data first.

you could also use snmp ( grab the UCD snmpd utils or whatever)

there are many ways

BTW

LIDS is seems to be perfect for secure log host creation -
(www.lids.org)

-- 
#####################
Quentyn Taylor
Sysadmin - Fotango
#####################
"Persons compelled to habitate in structures of patent frangibility
should, under no
circumstances, employ fragmentations of the lithosphere as projectiles."



Relevant Pages

  • RE: two FTP sites on same server?
    ... IP for that server and I already have one functional FTP site on it. ... persons who will be logging on will be assigned a user name and password. ... > address on port 21, rather than the same IP on different ports. ...
    (microsoft.public.inetserver.iis.ftp)
  • Re: Exchange incoming email issue
    ... I built an SBS 2003 R2 server a couple of weeks ago, mainly so my client could use Exchange. ... set it to log the port 25 forwarding rule and then get on to that nice Mr Gibson from the SBS and see a) if he finds port 25 open and b) whether your log shows the attempt. ... If you enable logging on another well-known port as well, such as 443, you can confirm that the scan and the logging is working. ...
    (microsoft.public.windows.server.sbs)
  • Re: secure UNIX log server
    ... > Would you like to explain how you can monitor a server from ... > several miles away without either logging in or using an ... > equivalent form of network access? ... when a client connects to said port it spews out the status of the ...
    (comp.security.unix)
  • Re: Strange Port 113:1433 traffic from my server to my server
    ... > IP addresses to my Linux server's port 1433 which should be MS SQL. ... Your ipchains option "-l" is for logging. ... Server admin, support & programing for shared & dedicated web servers ...
    (comp.security.unix)
  • RE: Some technical errors
    ... If the SMTP server is not running on port 25 TCP it is not a public ... Manager - Computer Assurance Services BDO Chartered Accountants & ...
    (Security-Basics)