Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 11 Dec 1998 22:46:51 -0800 (PST)
From:      Roger Marquis <marquis@roble.com>
To:        security@FreeBSD.ORG
Subject:   Re: tripwire was Re: append-only devices for logging
Message-ID:  <Pine.SUN.3.96.981211224050.15866A-100000@roble.com>
In-Reply-To: <199812120549.VAA18425@hub.freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help
James Wyatt <jwyatt@rwsystr.RWSystems.net> wrote:
> This is a *great* idea! I had set the BIOS to boot w/o floppy and written 
> the DB to a floppy I changed to R/O by hand. This has a limit of 1.44MB 

Except when the floppy has bad sectors, and a large percent of floppys
do, and sends the drive into an I/O loop that can't be fixed w/o a
reboot.

> how do you protect tripwire from modification? 

We keep the entire tripwire directory encrypted when not in use.

--
Roger Marquis
Roble Systems Consulting
http://www.roble.com/


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.SUN.3.96.981211224050.15866A-100000>