What is Tripwire?
Tripwire is a form intrusion detection system (IDS) that helps you keep tabs on the integrity of the files on your computer. Quite simply it will help identify files or modifications made to your system in the event someone compromised your system.
How does Tripwire work?
Tripwire works on a pretty easy to understand concept. Basically, when you install Tripwire on your linux box you tell it to scan your system and create a database of checksums and information. Once you have a good reference point or database setup, you then scan your system on a regular basis for modifications to your file system.
Why would I want run a file system integrity software?
If you have ever had your system compromised by a cracker, it's an extremely frustrating time. You never know what they have done, where they have been, or what files they have modified or installed. This type of application helps in the recovery process. Quite often crackers will installed a group of applications on your system called a rootkit. A rootkit overwrites many of your commonly used system files to help hide the tracks of the cracker, or leave a backdoor on your system so he can return at a later date. Often the types of files modified are ones such as ps and netstat. By installing their own version of applications like these they can hide the fact there is additional daemons and processes running the background.
How do I put Tripwire to practical use?
Tripwire can be configured to send you e-mails at a set time interval via Sendmail or SMTP. On small systems it wouldn't be unreasonable to have your system checked several times a day and have Tripwire e-mail you the results. If you don't want the results e-mailed you can store the information in a file for later review. I believe it is a handy tool to have the logs e-mailed to you, so a problem can be quickly identified.
Thought Tripwire won't protect you from hackers, it will help you identify the level of which your system has been compromised and if scanned at regular time intervals should help you reduce the amount of time for which your system has been compromised. If your system has been broken in to, then the best thing to do is isolate the machine from the network and rebuilt it from know good backups and try to determine the method of entry.
Ken Dennis
http://kendennis-rss.homeip.net/
I have always regretted how Microsoft price gouges and rips... Read More
How would you like to prevent spyware and adware from... Read More
You have gotten those E_Mails buy software at deep discounts.... Read More
Heard about the Quark "killer"?Adobe InDesign CS2. Will it really... Read More
Words we choose to describe things and phenomena often show... Read More
Lotus Domino/Notes ? Microsoft Great Plains tandem as ERP with... Read More
This is a short article, written in question/answer/FAQ style to... Read More
I provide, here clear explanations and a count of function... Read More
Our opinion is based on our Microsoft Business Solutions Great... Read More
DBxtra goes ASPGetting to the information hidden within corporate databases... Read More
Microsoft-Outlook is a pretty amazing program. So much more than... Read More
We all take the computer for granted. I mean, all... Read More
Introduction: The creating of a computer program involves a number... Read More
Microsoft Client Relation Management system (Microsoft CRM) and Microsoft RMS... Read More
Crystal Reports is the most flexible tool on the market... Read More
MSN messenger is a pretty cool invention. I mean I'm... Read More
Are you one of those people that keeps track of... Read More
Finding the best spyware removers to detect and remove spyware... Read More
Upgrading. Downtime. Maintenance. Hardware obsolescence. Implementation issues. The litany of... Read More
Microsoft Business Solutions Great Plains is marketed for mid-size companies... Read More
When you buy a computer, it most likely comes with... Read More
Once a business idea is selected, it is highly recommended... Read More
The software giants don't do everything and don't always produce... Read More
Some introduction into Great Plains Software products, now Microsoft Business... Read More
Spyware is software or hardware installed on a computer without... Read More
quick home cleaning Northbrook ..Whether you are an experienced web programmer or a complete... Read More
While Adobe is the most known maker of PDF tools,... Read More
Microsoft Great Plains is main Microsoft Business Solutions product, targeted... Read More
Microsoft CRM is now on the scene and it is... Read More
A LOT OF UNWANTED FILES.When you uninstall an item of... Read More
We are in a transition phase in the Managerial Administration... Read More
Microsoft Business Solutions Great Plains is marketed for mid-size companies... Read More
Microsoft Business Solutions Navision is main ERP application for European,... Read More
Customer Relationship Management (CRM) is a strategy and processes used... Read More
C/SIDE (Client/Server Integrated Development Environment) - The core of... Read More
Bad News - the Threat is Bigger than it SeemedHow... Read More
Viruses and spyware usually show up on your computer one... Read More
Microsoft Business Solutions Great Plains has Project Accounting module where... Read More
So, why should you use any O/R mapping tool? I... Read More
Costs of fleet maintenance software can vary widely. It is... Read More
In the new era of internet marketing the problem of... Read More
You have gotten those E_Mails buy software at deep discounts.... Read More
When you double-click a layer in the Layer Palette, you... Read More
Microsoft Great Plains is now targeting large and midsize businesses... Read More
Now that spyware is the single most dangerous threat to... Read More
MS CRM is very close to document workflow automation, including... Read More
Do you want to get quality software at a reasonable... Read More
Now there are Three Steps To Heaven Just listen and... Read More
In order to meet regulatory and corporate compliance requirements reporting... Read More
Navision Software was purchased by Microsoft and now it is... Read More
Software |