So what are you all using? I've got some time to play around, and I figured getting into an HIDS or two would be a good idea.
I know of LIDS and COPS, but I haven't tried either. A quick search didn't show up COPS in dselect, but I probably missed it.
So, anyone else play with any of these things, or have recommendations?
Other software I will probably be installing or using on a system or two: systrace (already installed on my BSD systems), aide (tripwire replacement), snort (running on several systems), and maybe shadow. So any software recommendations could be fun, but I'm hoping to stick to HIDS for the moment. 😉
I know of LIDS and COPS, but I haven't tried either. A quick search didn't show up COPS in dselect, but I probably missed it.
So, anyone else play with any of these things, or have recommendations?
Other software I will probably be installing or using on a system or two: systrace (already installed on my BSD systems), aide (tripwire replacement), snort (running on several systems), and maybe shadow. So any software recommendations could be fun, but I'm hoping to stick to HIDS for the moment. 😉