Mailinglist Archive: opensuse-security (520 mails)

< Previous Next >
Re: [suse-security] IDS goes off at /etc
Am 18.07.2002 13:02:32, schrieb Roman Drahtmueller <draht@xxxxxxx>:

>> Maybe that will be your final solution:
>>
>> I did following:
>>
>> google: file hook linux
>>
>> and got that:
>>
>> http://www.sysinternals.com/linux/utilities/filemon.shtml
>>
>> Let me now wether it meet your needs.
>>
>> Huhu, they wrote that stuff using kylix, so i'll be able to patch it
>> down to console if it necessary.
>
>
>I don't think so. It has a few problems:
>
>1) the license
>2) the availiability of the source code
>3) the fact that it comes along with a kernel module that sets function
> pointers to its own functions to intercept the system calls. This
> kernel module can't run reliably.
>
>We wouldn't ship it, no chance.
>

It was not the intention, to add it to suse-distri, but the proposal to
solve the problem of this
discussion for matthias.riese :O)

Michael





< Previous Next >