One other thing that I thought of was and sorry if someone else already posted 
it but you should concider running your IDS and syslog servers WITHOUT TCP on 
them. There are a few recent articles on stealth monitoring and logging that 
you can look into.

My source is linuxtoday for this stuff. :) linuxtoday.com makes a great home 
page. :) Changes every few minutes during the weekday. :)

Robert

On Wednesday 18 September 2002 07:40 pm, Chris Berry wrote:
> >I would also unshadow the passwd file and crack it with john.
> >See how may have god,love,sex, ect as passwd's.
>
> Hehe, well, because of the way we do business, I'm actually required to
> keep a copy of everyone's password so I verify that the complexity rules
> are being followed.  However, it might be a decent idea to write a script
> that ties in with the change password feature to do that automatically. 
> Hmm, you know I bet perl would be great for that. *grin*
>
> Chris Berry
> [EMAIL PROTECTED]
> Systems Administrator
> JM Associates
>
> "I have found the way, and the way is Perl."
>
>
> _________________________________________________________________
> Join the world�s largest e-mail service with MSN Hotmail.
> http://www.hotmail.com
>
>
> Orange County Linux Users Group   http://www.oclug.org
> To unsubscribe mailto:[EMAIL PROTECTED]?body=unsubscribe%20oclug

Reply via email to