“UbuntuHelp:SamhainIDS”的版本间的差异
来自Ubuntu中文
小 |
小 |
||
第6行: | 第6行: | ||
== Samhain Labs, samhain IDS == | == Samhain Labs, samhain IDS == | ||
Samhain is a full system integrity monitoring and reporting application designed to alert you, good sysadmin, to suspect changes and activities on your host(s). | Samhain is a full system integrity monitoring and reporting application designed to alert you, good sysadmin, to suspect changes and activities on your host(s). | ||
− | Samhain operates in a client/server daemon environment. Host file checksums and properties are centrally stored in a variety of database servers. e.g., PostgreSQL, MySQL, etc. | + | Samhain operates in a client/server daemon environment. Host file checksums and properties are centrally stored in a variety of database servers. e.g., [[UbuntuHelp:PostgreSQL|PostgreSQL]], MySQL, etc. |
Extra documentation, details and FAQ's at: http://www.la-samhna.de/samhain | Extra documentation, details and FAQ's at: http://www.la-samhna.de/samhain | ||
== Samhain Installation and Configuration == | == Samhain Installation and Configuration == | ||
=== Install and Preconfigure a Database Server === | === Install and Preconfigure a Database Server === | ||
− | Choose a supported database server and have it installed and pre-configured prior to configuring samhain. I've chosen ''PostgreSQL''. | + | Choose a supported database server and have it installed and pre-configured prior to configuring samhain. I've chosen ''[[UbuntuHelp:PostgreSQL|PostgreSQL]]''. |
=== Install === | === Install === | ||
Ubunutu Feisty Fawn 7.04 has a samhain package in ''System Administration (universe)''. | Ubunutu Feisty Fawn 7.04 has a samhain package in ''System Administration (universe)''. |
2007年12月4日 (二) 11:21的版本
点击翻译: |
English |
目录
Intrusion Detection
As a part of your comprhensive security management the samhain host based intrusion detection system (HIDS) should be an integral component. HIDS is a proactive measure to help avoid rootkits, unplanned system changes and other potentially nefarious activity.
Samhain Labs, samhain IDS
Samhain is a full system integrity monitoring and reporting application designed to alert you, good sysadmin, to suspect changes and activities on your host(s). Samhain operates in a client/server daemon environment. Host file checksums and properties are centrally stored in a variety of database servers. e.g., PostgreSQL, MySQL, etc. Extra documentation, details and FAQ's at: http://www.la-samhna.de/samhain
Samhain Installation and Configuration
Install and Preconfigure a Database Server
Choose a supported database server and have it installed and pre-configured prior to configuring samhain. I've chosen PostgreSQL.
Install
Ubunutu Feisty Fawn 7.04 has a samhain package in System Administration (universe).
apt-get install samhain
Configuration
Creative Commons License
Author: James B. Crocker EMail: [email protected] [1] This work is licensed under a Creative Commons Attribution-Share Alike 3.0 License.