Cov txheej txheem:

Yuav ua li cas nruab thiab teeb tsa Ossec ntawm CentOS 7?
Yuav ua li cas nruab thiab teeb tsa Ossec ntawm CentOS 7?

Video: Yuav ua li cas nruab thiab teeb tsa Ossec ntawm CentOS 7?

Video: Yuav ua li cas nruab thiab teeb tsa Ossec ntawm CentOS 7?
Video: Tsis Muaj Peev Xwm Yuav Ua Li Cas 2024, Hlis ntuj nqeg
Anonim

Txhawm rau nruab OSSEC ntawm CentOS 7.0 siv cov kauj ruam hauv qab no:

  1. Disable Selinux mus tas li hauv '/etc/selinux/config'.
  2. Disable Selinux rau tam sim no khiav los ntawm kev siv 'setenforce 0'
  3. Qhib httpd hauv Firewall firewall-cmd --permanent --add-port=80/tcp firewall-cmd --reload.
  4. Nruab epel repository yum nruab epel-tso -y.

Ib yam li ntawd, kuv yuav teeb tsa Ossec li cas?

Nruab OSSEC Ntaus koj tus email chaw nyob hauv zos thiab nias Enter: 3.2- Koj puas xav khiav qhov kev ncaj ncees check daemon? (y/n) [y]: - Khiav syscheck (kev ncaj ncees check daemon). Nias Enter rau kev ncaj ncees check daemon: 3.3- Koj puas xav khiav lub cav tshawb nrhiav rootkit? (y/n) [y]: - Khiav rootcheck (rootkit detection).

Ib yam li ntawd, Ossec yog dab tsi hauv Linux? OSSEC (Open Source HIDS SECurity) yog qhov pub dawb, qhib qhov chaw tswj xyuas kev nkag mus rau kev nkag mus (HIDS). Nws muab kev nkag mus nrhiav pom rau feem ntau cov kev khiav haujlwm, suav nrog Linux , OpenBSD, FreeBSD, OS X, Solaris and Windows.

Cov lus nug tseem yog, Kuv yuav hloov kho Ossec li cas?

Yuav Ua Li Cas Hloov OSSEC 2.8. 1 to OSSEC 2.8. 2

  1. Kauj ruam 1 - Rub tawm thiab txheeb xyuas OSSEC 2.8. Thawj kauj ruam los txhim kho OSSEC yog rub tawm tarball thiab nws cov ntaub ntawv checksum, uas yuav raug siv los xyuas kom meej tias tarball tsis raug cuam tshuam.
  2. Kauj Ruam 2 - Txhim kho kab laum. Txawm hais tias OSSEC 2.8.
  3. Kauj Ruam 3 - Hloov kho OSSEC 2.8. Tam sim no peb tuaj yeem pib qhov kev txhim kho.

Ossec siv qhov chaw nres nkoj twg?

Tus neeg saib xyuas- server kev sib txuas lus Wazuh cov neeg sawv cev siv OSSEC cov txheej txheem xa cov xwm txheej sau rau Wazuh server dhau qhov chaw nres nkoj 1514 ( UDP los yog TCP).

Pom zoo: