What is Tripwire?
Tripwire is a form intrusion detection system (IDS) that helps you keep tabs on the integrity of the files on your computer. Quite simply it will help identify files or modifications made to your system in the event someone compromised your system.
How does Tripwire work?
Tripwire works on a pretty easy to understand concept. Basically, when you install Tripwire on your linux box you tell it to scan your system and create a database of checksums and information. Once you have a good reference point or database setup, you then scan your system on a regular basis for modifications to your file system.
Why would I want run a file system integrity software?
If you have ever had your system compromised by a cracker, it's an extremely frustrating time. You never know what they have done, where they have been, or what files they have modified or installed. This type of application helps in the recovery process. Quite often crackers will installed a group of applications on your system called a rootkit. A rootkit overwrites many of your commonly used system files to help hide the tracks of the cracker, or leave a backdoor on your system so he can return at a later date. Often the types of files modified are ones such as ps and netstat. By installing their own version of applications like these they can hide the fact there is additional daemons and processes running the background.
How do I put Tripwire to practical use?
Tripwire can be configured to send you e-mails at a set time interval via Sendmail or SMTP. On small systems it wouldn't be unreasonable to have your system checked several times a day and have Tripwire e-mail you the results. If you don't want the results e-mailed you can store the information in a file for later review. I believe it is a handy tool to have the logs e-mailed to you, so a problem can be quickly identified.
Thought Tripwire won't protect you from hackers, it will help you identify the level of which your system has been compromised and if scanned at regular time intervals should help you reduce the amount of time for which your system has been compromised. If your system has been broken in to, then the best thing to do is isolate the machine from the network and rebuilt it from know good backups and try to determine the method of entry.
Ken Dennis
http://kendennis-rss.homeip.net/
Microsoft Great Plains has substantial mid-market share in the USA... Read More
Current Microsoft Business Solutions Great Plains has more that 10... Read More
Microsoft Business Solutions Great Plains is very good fit for... Read More
MS CRM is very close to document workflow automation, including... Read More
Are you one of those people that keeps track of... Read More
We all take the computer for granted. I mean, all... Read More
Microsoft CRM is CRM application, maintained and supported by Microsoft... Read More
If you have Microsoft Great Plains and support it... Read More
Microsoft CRM is new player on the CRM software... Read More
Background: For many organizations like ours, the interim target of... Read More
I've been active in the Cisco Certification track for four... Read More
Microsoft bought Navision, Denmark based software development company, along with... Read More
Now is the time to look at an alternative to... Read More
Customer Relationship Management, abbreviated "CRM," is the term for a... Read More
This is intermediate level SQL scripting article for DB Administrator,... Read More
You would like to protect your documents, wouldn't you? Reasons... Read More
In the early days of the personal computer, we're talking... Read More
When you buy a computer, it most likely comes with... Read More
Language development computer: Computer-based method for aiding language development seems... Read More
During the years of our consulting practice, which comes back... Read More
Microsoft Business Solutions Great Plains was historically designed to serve... Read More
MSN messenger is a pretty cool invention. I mean I'm... Read More
Microsoft Business Solutions ? Navision is an integrated solution for... Read More
Microsoft Business Solutions is emerging as very attractive vendor for... Read More
The COSMIC FP (function point) software quality metric, is no... Read More
Granger Lincoln Stretch limo rentals ..Stop the Runaway MouseWhat's the "runaway mouse?" You've seen it...you... Read More
Microsoft SQL Server is the leader for inexpensive and middle... Read More
Program Flow is what you think it is. How the... Read More
Microsoft Business Solutions Great Plains, Solomon, Navision, Axapta, Microsoft CRM... Read More
If you look back to the history, you will see... Read More
Document Management or Enterprise Information Management is perhaps one of... Read More
Just the thought of a duel-boot scares many people away,... Read More
Microsoft Business Solutions Great Plains might be considered as ERP... Read More
Imagine something that follows you home and sets itself up... Read More
In our case ? we serve Microsoft Business Solutions ERP... Read More
#5 All your hardware components like Printers, PCs etc come... Read More
Former Great Plains Software Dynamics/eEnterprise, and currently Microsoft Business Solutions... Read More
Microsoft Great Plains is main Microsoft Business Solutions accounting package... Read More
So let's begin crunching down these 300 images using Adobe... Read More
When it comes to running an office, the SOHO entrepreneur... Read More
IntroductionDuring the early years of our modern computer era, very... Read More
Need software to record your voice, streaming audio or musical... Read More
We live in a post-industrial age where information is the... Read More
Microsoft Business Solutions Great Plains, former Great Plains Software eEnterprise,... Read More
GroupwareEfforts are continually made to manage the unavoidable ad hoc... Read More
With any good luck and a good amount of hard... Read More
Do you remember that frustrating feeling when you find an... Read More
We would like to give you pluses and minuses of... Read More
There are two approaches for application integration:? Programmer's approach ?... Read More
Adware is a type of Spyware program that displays some... Read More
Software |