• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

Host-based Intrusion Detection Systems

n0cmonkey

Elite Member
So what are you all using? I've got some time to play around, and I figured getting into an HIDS or two would be a good idea.

I know of LIDS and COPS, but I haven't tried either. A quick search didn't show up COPS in dselect, but I probably missed it.

So, anyone else play with any of these things, or have recommendations?

Other software I will probably be installing or using on a system or two: systrace (already installed on my BSD systems), aide (tripwire replacement), snort (running on several systems), and maybe shadow. So any software recommendations could be fun, but I'm hoping to stick to HIDS for the moment. 😉
 
Originally posted by: BingBongWongFooey
% apt-cache search cops
dopewars - Make a fortune dealing drugs on the streets of New York

That's ok. COPS is a security auditing tool, not a HIDS. I should stop making late night threads 😛
 
I agree with most of what you say, but LIDS will just have to wait until I get around to reading the documentation, and systrace just sounds much more interesting at the moment. It's less platform specific. 😉
 
Back
Top