"fooler" <[EMAIL PROTECTED]> wrote:
>Fritz Mesedilla wrote:
>
>> Greetings!
>>
>> I hope someone can help me. I wish to know how to configure a SECURE REMOTE
>> LOGGING host.
>>
>> I'm currently using Red Hat LInux 7.0 and Apache 1.3.19. Please advice on
>> what things are needed and what i have to do.
>>
>
>the most important thing on your syslog server is your log files. its up to you how
>you protect your log files even if
>your syslog server is being compromise.
Nope. If your log server is compromised (rooted), game over ka na. No amount of "log
files protection" will help you. The best approach, AFAIK, is to _prevent_ your
loghost from being compromised. Easier said than done, I know.
__________________________________
www.edsamail.com
_
Philippine Linux Users Group. Web site and archives at http://plug.linux.org.ph
To leave: send "unsubscribe" in the body to [EMAIL PROTECTED]
To subscribe to the Linux Newbies' List: send "subscribe" in the body to
[EMAIL PROTECTED]