ubuntu:aide_advanced_intrusion_detection_environment
Differences
This shows you the differences between two versions of the page.
Next revision | Previous revision | ||
ubuntu:aide_advanced_intrusion_detection_environment [2019/11/24 14:44] – created peter | ubuntu:aide_advanced_intrusion_detection_environment [2022/06/13 10:06] (current) – peter | ||
---|---|---|---|
Line 1: | Line 1: | ||
====== AIDE (Advanced Intrusion Detection Environment) ====== | ====== AIDE (Advanced Intrusion Detection Environment) ====== | ||
- | AIDE (Advanced Intrusion Detection Environment) is an Intrusion Detection System (IDS). Which means that AIDE is not a tool to prevent an intrusion but is actually here to report that an intrusion might have happened. | + | **AIDE** (Advanced Intrusion Detection Environment) is an Intrusion Detection System (IDS). Which means that AIDE is not a tool to prevent an intrusion but is actually here to report that an intrusion might have happened. |
+ | |||
+ | * AIDE can be used to help track file integrity. | ||
+ | * AIDE stores a checksum of every file on the system with a choice of several hash methods. | ||
+ | * Periodically AIDE will compare the snapshot it has against each file to what the file is current reporting. | ||
+ | |||
+ | <WRAP info> | ||
+ | **NOTE: | ||
+ | </ | ||
+ | |||
+ | |||
+ | ---- | ||
+ | |||
+ | |||
+ | [[Ubuntu: | ||
+ | |||
+ | [[Ubuntu: | ||
+ | |||
+ | [[Ubuntu: | ||
+ | |||
+ | [[Ubuntu: | ||
- | AIDE can be used to help track file integrity. | ||
- | Periodically AIDE will compare the snapshot it has against each file to what the file is current reporting. | ||
- | It is important to update the checksums that AIDE uses every now and then to ensure that they are kept up to date. | ||
- | [[AIDE:AIDE Configuration|AIDE Configuration]] | ||
- | [[AIDE:AIDE not working|AIDE not working]] | ||
- | [[AIDE: | ||
- | [[AIDE: |
ubuntu/aide_advanced_intrusion_detection_environment.1574606666.txt.gz · Last modified: 2020/07/15 09:30 (external edit)