Jeroen van Baarsen
Jeroen van Baarsen
@michiels Is this on production?
@michiels Was this a server where IC and Dokku runs on the same server?
@w0www Thanks for reporting back! I'll take a look later this week.
@michiels This does throw up a few questions: - Are we going to "destroy" that service? - What are we going to do with the data? - If we not...
@michiels Do we actually want to have the events specified up front? What do you think about a "normal" logbook type thing? Maybe with a couple of categories, i.e: "[Server]...
This is how GH does it: So you could still filter on the category type. I think with the following categories you have plenty of freedom: * Security * Add-ons...
I believe there is a subtle difference in rkhunter and Tripwire. Tripwire acts as an Intrusion detection system, RKHunter mainly checks for rootkits. I have to dive deeper into this...
@michiels I think it makes sense to run both.
@michiels Tripwire checks a full set of files and checks if they have been modified. What I've seen so far is that RKHunter checks against a known list of rootkits,...