[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]

RE: securing a 7.2 box



One thing that hasn't been mentioned in this thread is tripwire.

It's not easy to set up, but once you do have it set up, it will tell you
what files have changed.

You can be selective of what files to check (maybe all of /usr, but don't
check /home; whatever).

One other thing, the previous poster mentioned some paid options (RH 
subscriptions, etc).  In the case of updating errata it's not hard to
do if w/o a subscription if you keep up with it by downloading all
their errata from updates.redhat.com.  You can ftp to it, and then,
if running 7.2, 
  cd /7.2/en/os/i386

It will take you quite awhile to download them all, but if you keep up with
updates (RH has a mailing list for updates), only your initial download will 
be big.  Once you get all the updates in one directory, you can
   $ rpm -Fvh *.rpm

and it will update.

Obviously, the paid subscription is more convenient, but if you don't have
the budget....

My problem with RH subscription is they charge by machine, and not by site.
    === Al

__________________________________________________
Do You Yahoo!?
Yahoo! Finance - Get real-time stock quotes
http://finance.yahoo.com





[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]