One of the items I mentioned in my TODO list was intrusion detection. In support of this goal I have
1) Rolled out LogWatch and SNORT to all of my VmWare, bare metal systems and my vpsland.com Xen Slice. I get daily summary e-mails of system/network activity.
2) Setup the /etc/aliases file on all systems to send root e-mail to charles@thewybles.com
I am in the process of evaluating file integrity monitoring software for deployment across my systems.
So the original goal of a network intrusion detection system has been met, and I am expanding that to system intrusion detection/monitoring as well.
1) Rolled out LogWatch and SNORT to all of my VmWare, bare metal systems and my vpsland.com Xen Slice. I get daily summary e-mails of system/network activity.
2) Setup the /etc/aliases file on all systems to send root e-mail to charles@thewybles.com
I am in the process of evaluating file integrity monitoring software for deployment across my systems.
So the original goal of a network intrusion detection system has been met, and I am expanding that to system intrusion detection/monitoring as well.
