Help - Log event traps
Results 1 to 5 of 5

Thread: Help - Log event traps

  1. #1
    Senior Member
    Join Date
    Nov 2002
    Posts
    382

    Help - Log event traps

    Hey folks I need ur help on this one!
    I'm looking for a way to trap (SNMP) event from a File-system IDS (or integrity checker) like tripwire, AIDE or chkrootkit.

    by the way I've found the hereby awesome Reference Guide to Creating a Remote Log Server on linuxsecurity.org, but poorly there is no mention of snmp traps.

    thanx
    [shadow] SHARING KNOWLEDGE[/shadow]

  2. #2
    Senior Member
    Join Date
    Feb 2003
    Posts
    109
    what OS are you using on the trapping machine?
    $person!=$kiddie or die(\"Alas, die you hotmail hacker!!\");
    SecureVision

  3. #3
    Senior Member
    Join Date
    Nov 2002
    Posts
    382
    Linux
    [shadow] SHARING KNOWLEDGE[/shadow]

  4. #4
    Senior Member
    Join Date
    Mar 2002
    Posts
    442
    Use snort. http://www.snort.org
    You can read all kinds of info there and if not, do a google search for snort and you find it there.

  5. #5
    Senior Member
    Join Date
    May 2003
    Posts
    115
    also check out loganalysis.org it's run by tina bird and occasionally contribution from the man himself, mjr

    -w0rm3y

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

 Security News

     Patches

       Security Trends

         How-To

           Buying Guides