Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.security > #6207

sysadmin in training

From Jeffrey Chimene <jeff@systasis.co>
Newsgroups linux.debian.security
Subject sysadmin in training
Date 2023-05-12 17:40 +0200
Message-ID <GuD29-8ob1-5@gated-at.bofh.it> (permalink)
Organization linux.* mail to news gateway

Show all headers | View raw


Hi,


I'd like to propose a minor change to 
https://www.debian.org/doc/manuals/securing-debian-manual


While I have no argument with intrusion detection, I don't see anything 
for active response. A metaphor would be Peter Cook and Dudley Moore's 
extended joke:
https://www.youtube.com/watch?v=lbnkY1tBvMU

Anyway, I'd like to propose adding a section that describes ossec. While 
I appreciate the detection aspect, I'm just a person who admins a server 
farm of 6 Linodes mostly running WordPress. It took longer than it 
should have to learn about ossec. I think an entry in the guide would be 
helpful. Also, with DEFCON approaching, this seems an appropriate time 
to start this discussion.

Cheers,
jec

Back to linux.debian.security | Previous | NextNext in thread | Find similar


Thread

sysadmin in training Jeffrey Chimene <jeff@systasis.co> - 2023-05-12 17:40 +0200
  Re: sysadmin in training Jeremy Stanley <fungi@yuggoth.org> - 2023-05-12 18:20 +0200
    Re: sysadmin in training Jeffrey Chimene <jeff@systasis.co> - 2023-05-12 19:10 +0200
      Re: sysadmin in training Jeremy Stanley <fungi@yuggoth.org> - 2023-05-12 19:20 +0200
        Re: sysadmin in training Jeffrey Chimene <jeff@systasis.co> - 2023-05-12 21:40 +0200
          Re: sysadmin in training Michael Lazin <microlaser@gmail.com> - 2023-05-13 03:50 +0200
            Re: sysadmin in training Lupe Christoph <lupe@lupe-christoph.de> - 2023-05-13 04:10 +0200
            Re: sysadmin in training Olaf Dietsche <olaf+list.debian-security@olafdietsche.de> - 2023-05-13 14:40 +0200

csiph-web