Subject: Re: Adding /usr/local to daily security audit
To: Jeff_W <jgw@tx0.org>
From: Francisco Valladolid Hdez. <ficovh@yahoo.com>
List: netbsd-users
Date: 06/28/2007 15:57:16
Hi Jeff

You know veriexec ?, maybe it can help you.

$ man 4 veriexec

Regards.

--- Jeff_W <jgw@tx0.org> wrote:


> Is there an easy way? Mainly just want to check the
> binaries, libraries
> and config files under /usr/local.  Doesn't need to
> be at the same level
> as the default /usr/pkg audit, maybe just daily
> checks of
> /usr/local/{bin,etc,libexec}, log diffs and
> generate/check checksums.  As
> near as I can tell I'd probably need to create
> something in
> /etc/security.local and maybe a permissions category
> under /etc/mtree/.
> But I'm not sure.  Maybe there's an easier way. 
> Didn't see anything that
> seemed relevant on netbsd.org; maybe someone knows
> of other online
> resources that cover this topic?
> 
> Jeff W.
> Albany, OR
> 


--- 
Therefore, if anyone is in Christ, he is a new creation; the old has gone, the new has come! - 2 Corinthians 5:17 (NIV)
-----------------------------------
Francisco Valladolid Hdez.
http://blog.bsdguy.net - http://flickr.com/photos/sigueme/


 
____________________________________________________________________________________
TV dinner still cooling? 
Check out "Tonight's Picks" on Yahoo! TV.
http://tv.yahoo.com/