Random notes from the LAMP (linux / apache / mysql / php) Management with OSS Tools talk by Yazz Atlas of OSTG
IDS:
Replacements to AIDE / Tripwire, which are easier to manage across many systems.
-Osiris – http://osiris.shmoo.com
-Samhain http://samhain.sf.net
– stealthy.
-can hide configs inside of a gif file
-can be renated so that the binary is hidden, even hides strings, etc so that it cant be found via strace
Monitoring and Graphing
=======
– MRTG / RRDtool
– database load
– system load
– bandwidth usage
– Front ends to MRTG / RRDtool
– Munini
– Cacti