Tripwire
Version: 2.3.1-4 ||
Release Date: 2006-07-19 ||
License: GPL
Change detection and notification. Tripwire establishes a baseline 'snapshot' of your file system (recording file system properties - owner, permissions, modify time, content hashes, etc) and stores this information in a secured database. When an integrity check is run, it gathers the same information on the same files and looks for any differences. Any deviations are written to a report file and (optionally) emailed to whoever you specify.
Tags: security , system , admin




2 Opinions:
Tripwire is, as said below, an essential tool for the expirienced UNIX system administrator. Better than any "AI" intrusion detection program.
Not easy to set up and configure properly - therefore this one is not for the faint of heart, but definitely an essential tool for any system admin.
Frodo did a great job of putting this package together with the necessary documentation. Hopefully it will be brought in sync with the latest version at sourceforge.