What is Tripwire?
Tripwire is a form intrusion detection system (IDS) that helps you keep tabs on the integrity of the files on your computer. Quite simply it will help identify files or modifications made to your system in the event someone compromised your system.
How does Tripwire work?
Tripwire works on a pretty easy to understand concept. Basically, when you install Tripwire on your linux box you tell it to scan your system and create a database of checksums and information. Once you have a good reference point or database setup, you then scan your system on a regular basis for modifications to your file system.
Why would I want run a file system integrity software?
If you have ever had your system compromised by a cracker, it's an extremely frustrating time. You never know what they have done, where they have been, or what files they have modified or installed. This type of application helps in the recovery process. Quite often crackers will installed a group of applications on your system called a rootkit. A rootkit overwrites many of your commonly used system files to help hide the tracks of the cracker, or leave a backdoor on your system so he can return at a later date. Often the types of files modified are ones such as ps and netstat. By installing their own version of applications like these they can hide the fact there is additional daemons and processes running the background.
How do I put Tripwire to practical use?
Tripwire can be configured to send you e-mails at a set time interval via Sendmail or SMTP. On small systems it wouldn't be unreasonable to have your system checked several times a day and have Tripwire e-mail you the results. If you don't want the results e-mailed you can store the information in a file for later review. I believe it is a handy tool to have the logs e-mailed to you, so a problem can be quickly identified.
Thought Tripwire won't protect you from hackers, it will help you identify the level of which your system has been compromised and if scanned at regular time intervals should help you reduce the amount of time for which your system has been compromised. If your system has been broken in to, then the best thing to do is isolate the machine from the network and rebuilt it from know good backups and try to determine the method of entry.
Ken Dennis
http://kendennis-rss.homeip.net/
I have yet to see a business that, sometimes in... Read More
Is Photoshop CS2 worth the upgrade? You bet it is!... Read More
What is Snort?Snort is an open source network intrusion detection... Read More
Linux essentials:It's free for download but you have to pay... Read More
Cyberspace has opened up a new frontier with exciting possibilities... Read More
DBxtra is a powerful query and reporting tool that hides... Read More
Creating a new markup language.Introduction.General Reuse Markup Langauge, or GRML,... Read More
Current Microsoft Business Solutions Great Plains has more that 10... Read More
While I was preparing some personal background information for a... Read More
It is really interesting that a bug can create problem... Read More
Microsoft Great Plains has full-featured Manufacturing suite of modules: Capacity... Read More
As of now - Great Plains Dynamics/eEnterprise is transformed/renamed into... Read More
Great Plains Software Dynamics, Dynamics C/S+, eEnterprise were written on... Read More
In a previous article, I wrote about OpenOffice... Read More
How many steps does it take you to locate and... Read More
Some introduction into Great Plains Software products, now Microsoft Business... Read More
The objective for Zandi Digital is to make available clever... Read More
Microsoft Business Solutions offers several ERP applications: Great Plains, Navision,... Read More
Microsoft Business Solutions Great Plains has substantial market share among... Read More
The first thing that you will notice about Linux Red... Read More
The most important benefit of XML is its simplicity. Though... Read More
While paper labeling CDs and DVDs may appear to be... Read More
Microsoft CRM is CRM answer from Microsoft Business Solutions.The whole... Read More
Microsoft Business Solutions Great Plains was designed back in the... Read More
Great Plains Integration Manager scripting and translation - overview for... Read More
Airbnb cleaning service Mundelein ..Microsoft CRM is winning market share step-by-step from such the... Read More
Are you one of those people that keeps track of... Read More
Assertion facility is added in J2SE 1.4. In order to... Read More
There are certain pluses and minuses in both cases and... Read More
Cyberspace has opened up a new frontier with exciting possibilities... Read More
I have always had a tendency to focus on the... Read More
There is many things more frustrating than surfing a website... Read More
GroupwareEfforts are continually made to manage the unavoidable ad hoc... Read More
Looks like Microsoft Great Plains becomes more and more popular,... Read More
Internet worms. Is your PC infected?If your computer has become... Read More
I completed an experiment recently. I wanted to find out... Read More
Microsoft Business Solutions Great Plains version 8.5, 8.0, 7.5, Great... Read More
"Pfishing", sometimes spelled "Phishing", is a word that's used to... Read More
There are two major WYSIWYG(What You See Is What You... Read More
FTP stands for "file transfer protocol". FTP is basically a... Read More
Anyone who has ever used Microsoft Word knows that it... Read More
Are you ready? SQL Server 2005, the next-generation data management... Read More
It could just be me, but my experiences with document... Read More
Microsoft Great Plains is now targeting large and midsize businesses... Read More
Microsoft Great Plains could be tuned and setup to fit... Read More
How many steps does it take you to locate and... Read More
So, you've bought a new Macintosh, and now you may... Read More
For a long time now Microsoft's Internet Explorer has ruled... Read More
The intuitive algorithm.Roger Penrose considered it impossible. Thinking could never... Read More
Microsoft Business Solutions products: Great Plains, MS CRM, Navision, Axapta,... Read More
Software |