Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 20 Apr 2001 04:42:41 -0700
From:      Cy Schubert - ITSD Open Systems Group <Cy.Schubert@uumail.gov.bc.ca>
To:        Raoul Schroeder <memphis_ms@gmx.net>
Cc:        Kris Kennaway <kris@obsecurity.org>, fukuda shinichi <fukuda@alles.ad.jp>, freebsd-security@FreeBSD.ORG
Subject:   Re: unknown process 
Message-ID:  <200104201142.f3KBgxM10140@cwsys.cwsent.com>
In-Reply-To: Your message of "Thu, 19 Apr 2001 11:02:24 EDT." <3ADEFE00.812EA0A3@gmx.net> 

next in thread | previous in thread | raw e-mail | index | archive | help
In message <3ADEFE00.812EA0A3@gmx.net>, Raoul Schroeder writes:
> >
> > Take your system off the net and check it for signs of intrusion.
> >
> > Kris
> 
> Just a quick question: How does one check for signs of intrusion. The FreeBSD
> handbook does not really talk a lot about this.
> Is there a good documentation about this?

Install an IDS immediately after installation, then use it.  This is 
not a 100% solution but IMO one of the better solutions in your toolkit.


Regards,                         Phone:  (250)387-8437
Cy Schubert                        Fax:  (250)387-5766
Team Leader, Sun/Alpha Team   Internet:  Cy.Schubert@osg.gov.bc.ca
Open Systems Group, ITSD, ISTA
Province of BC




To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200104201142.f3KBgxM10140>