Intrusion Detection Systems mailing list archives

Re: snooping on RH?


From: nbates () cw net (Nathan Bates)
Date: Thu, 30 Sep 1999 08:39:39 -0400 (EDT)




`snoop` is the last one I remember tinkering with for Linux.  It required
a kernel mod and worked rather well.

        Regards,
        Nathan

/* UNIX is user friendly. It's just selective about who its friends are. */

On Wed, 29 Sep 1999, Security Team wrote:

FAQ: See http://www.ticm.com/kb/faq/idsfaq.html
IDS: See http://www-rnks.informatik.tu-cottbus.de/~sobirey/ids.html
HELP: Having problems... email questions to ids-owner () uow edu au
NOTE: Remove this section from reply msgs otherwise the msg will bounce.
SPAM: DO NOT send unsolicted mail to this list.
---------------------------------------------------------------------------
---
Does anyone know of any ports of ttywatcher for linux (specifically redhat)?

I've been looking for something good to monitor potential problem-users for
a while, Any suggestions?

Thanks,
Kris W.





Current thread: