From mboxrd@z Thu Jan 1 00:00:00 1970 From: Antony Stone Subject: Re: what filtering to do on the OUTPUT chain? Date: Fri, 25 Oct 2002 00:06:03 +0100 Sender: netfilter-admin@lists.netfilter.org Message-ID: <20021024230606.TASL292.mta03-svc.ntlworld.com@there> References: <200210230943.g9N9hiL02304@vulcan.rissington.net> <20021024223148.A19115@funkyjesus.org> Mime-Version: 1.0 Content-Transfer-Encoding: 8bit Return-path: In-Reply-To: <20021024223148.A19115@funkyjesus.org> Errors-To: netfilter-admin@lists.netfilter.org List-Help: List-Post: List-Subscribe: , List-Id: List-Unsubscribe: , List-Archive: Content-Type: text/plain; charset="us-ascii" To: netfilter mailing list On Thursday 24 October 2002 10:31 pm, Nick Drage wrote: > On Wed, Oct 23, 2002 at 10:43:37AM +0100, Antony Stone wrote: > > If you're concerned about this level of security (which you should be) > > then you need to deal with Operating System security and things like Host > > Intrustion Detection - netfilter is not going to do the job effectively > > for you. > > "Host Intrusion Detection"? For example..... ? Tripwire - http://www.tripwire.org Snare - http://www.intersectalliance.com/projects/Snare Aide - http://www.cs.tut.fi/~rammer/aide.html Lids - http://www.lids.org Those sort of things..... Antony. -- There are only 10 types of people in the world: those who understand binary notation, and those who don't.