Last active
May 8, 2017 06:54
-
-
Save koheyamada/253bec73c0657162f6ce7771a7ad9f3d to your computer and use it in GitHub Desktop.
AIDEを使ってファイルの改竄検知を行う。 ref: http://qiita.com/kooohei/items/bcf34fd82c2f98b0b559
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
$ sudo yum install aide |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
$ sudo cp /var/lib/aide/aide.db.new.gz /var/lib/aide/aide.db.gz |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
$ sudo cp /var/lib/aide/aide.db.new.gz /var/lib/aide/aide.db.gz |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
$ sudo touch /root/aide-test.txt |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
$ sudo aide -i | |
AIDE, version 0.14 | |
### AIDE database at /var/lib/aide/aide.db.new.gz initialized. |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
$ sudo aide --check | |
AIDE found differences between database and filesystem!! | |
Start timestamp: 2017-04-28 17:36:55 | |
Summary: | |
Total number of files: 60760 | |
Added files: 1 | |
Removed files: 0 | |
Changed files: 1 | |
--------------------------------------------------- | |
Added files: | |
--------------------------------------------------- | |
added: /root/aide-test.txt | |
--------------------------------------------------- | |
Changed files: | |
--------------------------------------------------- | |
changed: /root | |
-------------------------------------------------- | |
Detailed information about changes: | |
--------------------------------------------------- | |
Directory: /root | |
Mtime : 2017-04-28 17:28:16 , 2017-04-28 17:36:47 | |
Ctime : 2017-04-28 17:28:16 , 2017-04-28 17:36:47 |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment