Great Circle Associates Firewalls
(June 1994)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Tripwire [was: Re: NNTP as a trusted service]
From: Aydin Edguer <edguer @ MorningStar . Com>
Date: Thu, 16 Jun 1994 15:38:54 -0400 (EDT)
To: firewalls @ greatcircle . com
Cc: david @ capmkt . com
In-reply-to: <9406161844 . AA20913 @ yen . capmkt . com> from "david @ capmkt . com" at Jun 16, 94 11:44:29 am

> So, You Tripwire Users Out There: what methods are you using
> to both keep the Tripwire database secure, *and* to make
> Tripwire easy to maintain?

Use a workstation with a floppy disk drive.  The tripwire binaries
and database for a firewall will easily fit on a floppy.  Access speed
is not high but since tripwire is usually run automatically by the
system, run time is not a large consideration.  By using the write protect
tab on the floppy, it is possible to easily update the database
when needed (in standalone mode) and to prevent network crackers
from modifying the database.  Using a floppy makes it easy to keep
an extra copy offsite and run database comparisons on other systems
by removing the floppy disk.


References:
Indexed By Date Previous: Re: Notes from Usenix Firewall BOF
From: dsmith @ isc . nva . ge . com
Next: Re: NNTP as a trusted service
From: dsmith @ isc . nva . ge . com
Indexed By Thread Previous: Tripwire [was: Re: NNTP as a trusted service]
From: david @ capmkt . com
Next: Re: Tripwire [was: Re: NNTP as a trusted service]
From: lacoursj @ uprc . com (Jeffrey D. LaCoursiere)

Google
 
Search Internet Search www.greatcircle.com