[Gllug] network monitoring

Chris Ball chris at void.printf.net
Tue Feb 19 19:03:25 UTC 2002


>>>>> "Paul" == Paul Brazier <pbrazier at cosmos-uk.co.uk> writes:

    Paul> What I'm after is some thing that can monitor things like
    Paul> bandwidth usage etc. and alert me by email if some h4x0rs are
    Paul> using them for ftp warez or mail relays or installing rootkits
    Paul> or whatever.

That seems a little hard to test for.  I'd suggest running netsaint and
mrtg, though.  Netsaint tests your machines for things like a working
mail server, free disk space, etc, and will e-mail you if anything goes
wrong.  I'm not aware of this sort of side to mrtg, which just draws
pretty graphs of bandwidth and disk usage.  :-)

    Paul> Could running a SNMP daemon be a security risk in itself?

Yes; and there was a serious remote vulnerability in one of the
implementations recently.

Hope this helps,

- Chris.
-- 
$a="printf.net"; Chris Ball | chris at void.$a | www.$a | finger: chris@$a
         "In the beginning there was nothing, which exploded."


-- 
Gllug mailing list  -  Gllug at linux.co.uk
http://list.ftech.net/mailman/listinfo/gllug




More information about the GLLUG mailing list