What is Tripwire?
Tripwire is a form intrusion detection system (IDS) that helps you keep tabs on the integrity of the files on your computer. Quite simply it will help identify files or modifications made to your system in the event someone compromised your system.
How does Tripwire work?
Tripwire works on a pretty easy to understand concept. Basically, when you install Tripwire on your linux box you tell it to scan your system and create a database of checksums and information. Once you have a good reference point or database setup, you then scan your system on a regular basis for modifications to your file system.
Why would I want run a file system integrity software?
If you have ever had your system compromised by a cracker, it's an extremely frustrating time. You never know what they have done, where they have been, or what files they have modified or installed. This type of application helps in the recovery process. Quite often crackers will installed a group of applications on your system called a rootkit. A rootkit overwrites many of your commonly used system files to help hide the tracks of the cracker, or leave a backdoor on your system so he can return at a later date. Often the types of files modified are ones such as ps and netstat. By installing their own version of applications like these they can hide the fact there is additional daemons and processes running the background.
How do I put Tripwire to practical use?
Tripwire can be configured to send you e-mails at a set time interval via Sendmail or SMTP. On small systems it wouldn't be unreasonable to have your system checked several times a day and have Tripwire e-mail you the results. If you don't want the results e-mailed you can store the information in a file for later review. I believe it is a handy tool to have the logs e-mailed to you, so a problem can be quickly identified.
Thought Tripwire won't protect you from hackers, it will help you identify the level of which your system has been compromised and if scanned at regular time intervals should help you reduce the amount of time for which your system has been compromised. If your system has been broken in to, then the best thing to do is isolate the machine from the network and rebuilt it from know good backups and try to determine the method of entry.
Ken Dennis
http://kendennis-rss.homeip.net/
This short paper will expand on two key reasons to... Read More
With this small article we are continuing Microsoft Business Solutions... Read More
The objective for Zandi Digital is to make available clever... Read More
As you probably know, when Microsoft purchased Great Plains Software... Read More
The stakes are high when considering security, privacy, and savings,... Read More
Here is some free software tools to help you build... Read More
Microsoft PowerPoint has dramatically changed the way in which academic... Read More
With any good luck and a good amount of hard... Read More
Rapid Application Development (RAD) is a software development methodology. In... Read More
Java has come along a long way. Many would agree... Read More
Now that spyware is the single most dangerous threat to... Read More
If your company has regional and worldwide operations, you might... Read More
Let's say that you have a software project that's under... Read More
According to a survey conducted by InfoTrends/CAP Ventures entitled "Content-Centric... Read More
Google Inc. has launched a new software package that allows... Read More
Spyware and Adware infest over 90 percent of computers in... Read More
Need help making sense of algebra? Have algebra lectures in... Read More
Just when you thought you were Web savvy, one more... Read More
Microsoft Business Solutions Great Plains is mid and even corporate... Read More
Document Management or Enterprise Information Management is perhaps one of... Read More
While Ukraine is becoming a new popular IT outsourcing destination,... Read More
Looks like Microsoft Great Plains becomes more and more popular,... Read More
Is your PC is slow and wimpy? Then you need... Read More
So, why should you use any O/R mapping tool? I... Read More
Microsoft Great Plains and Microsoft CRM become more and more... Read More
on demand house cleaning Lake Forest ..Document Management or Enterprise Information Management is perhaps one of... Read More
Combining Microsoft Business Solutions Great Plains ERP with non-Microsoft Business... Read More
Looks like Microsoft Great Plains becomes more... Read More
Microsoft CRM is CRM answer from Microsoft and attempt to... Read More
Microsoft Great Plains - Microsoft Business Solutions accounting and ERP... Read More
Great Plains Integration Manager scripting and translation - overview for... Read More
The Internet is reshaping every form of communications medium, and... Read More
Stealing company information used to be the specialty of spies... Read More
After seeing many people complain about their weak Internet security... Read More
Microsoft Business Solutions Great Plains is very good fit for... Read More
All of us know that Microsoft bought former Great Plains... Read More
All your software is stored on a hard-drive. But how... Read More
Microsoft Business Solutions Great Plains is very popular ERP/MRP applications... Read More
As of now - Great Plains Dynamics/eEnterprise is transformed/renamed into... Read More
Microsoft Business Solutions ? Navision is an integrated solution for... Read More
In order to implement VLANs in a network environment, you'll... Read More
Great Plains Software Dynamics, Dynamics C/S+, eEnterprise were written on... Read More
What is Snort?Snort is an open source network intrusion detection... Read More
What is RAID RECOVERY?RAID stands for Redundant Array of Inexpensive... Read More
We would like to give you pluses and minuses of... Read More
No matter how much you enjoy your favorite screensavers, sometimes... Read More
Microsoft Great Plains, former Great Plains Software Dynamics, eEnterprise has... Read More
Great Plains Inventory Management (IV) module gives your business a... Read More
If you feel intimidated when someone tries to teach you... Read More
Microsoft Word is one of the most popular office applications... Read More
Software |