From owner-freebsd-security Fri Jun 28 17:41: 3 2002 Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.FreeBSD.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 97F4137B400 for ; Fri, 28 Jun 2002 17:40:57 -0700 (PDT) Received: from spqr.osg.gov.bc.ca (spqr.osg.gov.bc.ca [142.32.102.24]) by mx1.FreeBSD.org (Postfix) with ESMTP id 1DC1643E06 for ; Fri, 28 Jun 2002 17:40:57 -0700 (PDT) (envelope-from Cy.Schubert@osg.gov.bc.ca) Received: from passer.osg.gov.bc.ca (passer.osg.gov.bc.ca [142.32.110.29]) by spqr.osg.gov.bc.ca (Postfix) with ESMTP id C097B9EE10; Fri, 28 Jun 2002 17:40:56 -0700 (PDT) Received: from cwsys.cwsent.com (cwsys2 [10.1.2.1]) by passer.osg.gov.bc.ca (8.12.5/8.12.3) with ESMTP id g5T0etOX051265; Fri, 28 Jun 2002 17:40:56 -0700 (PDT) (envelope-from cy@cwsent.com) Received: from cwsys (localhost [127.0.0.1]) by cwsys.cwsent.com (8.12.5/8.12.3) with ESMTP id g5T0et4V008342; Fri, 28 Jun 2002 17:40:55 -0700 (PDT) (envelope-from cy@cwsys.cwsent.com) Message-Id: <200206290040.g5T0et4V008342@cwsys.cwsent.com> X-Mailer: exmh version 2.5 07/13/2001 with nmh-1.0.4 Reply-To: Cy Schubert - CITS Open Systems Group From: Cy Schubert - CITS Open Systems Group X-os: FreeBSD X-Sender: cy@cwsent.com To: Andrew McNaughton Cc: Cy Schubert - CITS Open Systems Group , Jan Lentfer , FreeBSD Security Mailling List Subject: Re: Tripwire for Dummies In-Reply-To: Message from Andrew McNaughton of "Sat, 29 Jun 2002 12:22:48 +1200." <20020629121442.Y90506-100000@a2> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Date: Fri, 28 Jun 2002 17:40:55 -0700 Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org In message <20020629121442.Y90506-100000@a2>, Andrew McNaughton writes: > > > On Fri, 28 Jun 2002, Cy Schubert - CITS Open Systems Group wrote: > > > In message <1025280108.2819.27.camel@jan-linux.lan>, Jan Lentfer writes: > > > > > could someone be so kind and point my nose to a configuration How-To of > > > Tripwire for a dummie like me? > > > > I'm assuming you're talking about configuring the Tripwire 2.3 port, > > not the 1.2 or 1.3 ports. If so, here is a good document to start you > > off. > > > > http://download.sourceforge.net/tripwire/tripwire-2.3.0-docs-pdf.tar.gz > > Since the topic has come up, I thought I'd mention that I just sent in a > port for 'l5', a minimalist tool which might be a good substitute for > tripwire in some circumstances. > > http://www.freebsd.org/cgi/query-pr.cgi?pr=39970 > > This is far simpler than tripwire - it just recurses file trees and lists > file details, including MD5 sums. Whatever checks you want to run can > then be implemented using other simple tools like diff, grep and sed, or > perhaps with perl. I'll find some time to look at it. I'm hosting a barbecue at my place this weekend so I'll be spending most of my time cleaning junk my wife collected in the yard (she's out of town for a couple of weeks so it gives me license to do some tidying up without interference, e.g. haul some of this stuff to the trash pit -- getting rid of the trash is not the issue but the method I will choose is -- a real life bikeshed issue). But I promise to look at it on Tuesday. Deal? I've assigned the PR to myself. -- Cheers, Phone: 250-387-8437 Cy Schubert Fax: 250-387-5766 Team Leader, Sun/Alpha Team Email: Cy.Schubert@osg.gov.bc.ca Open Systems Group, CITS Ministry of Management Services Province of BC FreeBSD UNIX: cy@FreeBSD.org To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message