[nzlug] Urgent: Load balancing / network monitoring / security

Steve Holdoway steve at greengecko.co.nz
Sun Sep 16 15:42:05 NZST 2007


On Sun, 16 Sep 2007 15:33:57 +1200
Robin Sheat <robin at kallisti.net.nz> wrote:

> On Sunday 16 September 2007 13:49:49 Steve Holdoway wrote:
> > 2. Identify the problem(s)
> > 3. Remove it.
> > 4. Bring back up.
> But don't trust it until you've reinstalled/restored from known good sources. 
> It's an almost intractable problem figuring out everything an attacker may 
> have touched/backdoored.
> 
> -- 
> Robin <robin at kallisti.net.nz> JabberID: <eythian at jabber.kallisti.net.nz>
> 
> Hostes alienigeni me abduxerunt. Qui annus est?
> 
> PGP Key 0xA99CEB6D = 5957 6D23 8B16 EFAB FEF8  7175 14D3 6485 A99C EB6D
> 

Indeed. I use something like fcheck every couple of yours or so, but that a) can be compromised, and b) uses a lot of cpu which may make it impractical on busy machines. Hmm... maybe I should be saving my fcheck database elsewhere...?

Steve.



More information about the NZLUG mailing list