From owner-freebsd-stable@FreeBSD.ORG Sun Aug 3 09:44:18 2003 Return-Path: Delivered-To: freebsd-stable@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 7AECA37B401 for ; Sun, 3 Aug 2003 09:44:18 -0700 (PDT) Received: from hermes.pressenter.com (hermes.pressenter.com [69.58.128.19]) by mx1.FreeBSD.org (Postfix) with ESMTP id 89E0B43FB1 for ; Sun, 3 Aug 2003 09:44:17 -0700 (PDT) (envelope-from nospam@hiltonbsd.com) Received: from [69.58.130.157] (helo=daggar.sbgnet.local) by hermes.pressenter.com with smtp (Exim 3.16 #1) id 19jLxw-0007nK-00; Sun, 03 Aug 2003 11:44:16 -0500 Date: Sun, 3 Aug 2003 11:44:16 -0500 From: Stephen Hilton To: Joe Warner Message-Id: <20030803114416.17cf698f.nospam@hiltonbsd.com> In-Reply-To: <200308030920.45437.rootman22@comcast.net> References: <200308030920.45437.rootman22@comcast.net> X-Mailer: Sylpheed version 0.9.3 (GTK+ 1.2.10; i386-portbld-freebsd4.8) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit cc: freebsd-stable@freebsd.org Subject: Re: Forensics CD Toolkit for FreeBSD X-BeenThere: freebsd-stable@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Production branch of FreeBSD source code List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 03 Aug 2003 16:44:18 -0000 On Sun, 3 Aug 2003 09:20:45 -0600 Joe Warner wrote: > Hi, > > I'd like to build a toolkit CD specifically for conducting > forensics on FreeBSD. I'm not talking about a bootable > CD but rather one that I could pop into a CD ROM drive > and run trusted commands like ps, netstat, ls, etc., from. > > I'd like to build a CD that would work on -RELEASE versions > of FreeBSD like 5.1 and -STABLE versions of FreeBSD too. > > Can anyone give me any pointers about how I might accomplish > this? > > I've spent hours searching Google and only found a few links about > a guy named Joe Magee who was trying to do the same thing but > couldn't find his email addy. I searched the FreeBSD archives but > get: Joe, Try Google-Groups, works great for me, but not all FreeBSD lists are archived (freebsd-gnome is one that I miss that is not there) http://groups.google.com/groups?hl=en&group=mailing.freebsd Regards, Stephen Hilton nospam@hiltonbsd.com