Posts tagged as:

Host based IDS

Tripwire Tutorial: Linux Host Based Intrusion Detection System

by Ramesh Natarajan on December 8, 2008

Tripwire - Linux IDSPhoto courtesy of judepics

Tripwire is a host based Intrusion detection system for Linux. Tripwire monitors Linux system to detect and report any unauthorized changes to the files and directories. Once a baseline is created, tripwire monitors and detects, which file is added, which file is changed, what is changed, who changed it, and when it was changed. If the changes are legitimate, you can update the tripwire database to accept these changes.

Also, for monitoring solution, please refer to all our previous articles on Nagios

This step by step instruction guide explains how to install and configure open source version of tripwire.
(more…)

{ 1 comment }