[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]

Re: what to use instead of tripwire?t



Owen Taylor writes:
> Any method that doesn't involve booting from a read-only medium
> and checking against data on that read-only medium is basically 
> only proof against casual/incompetent intruders.

Why would the medium have to be read-only?  Wouldn't it be enough that
one boots from this trusted medium and only uses binaries from it?  (I
assume of course the medium is not present when not booted from.)




[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]