Brief notes on aide, chkrootkit, debsecan, debsums, lynis, rkhunter

master
Jeff Moe 6 years ago
parent 62c3c76a89
commit c71eef35f5

@ -0,0 +1,3 @@
apt install chkrootkit
sed -i -e 's/RUN_DAILY="false"/RUN_DAILY="true"/g' /etc/chkrootkit.conf

@ -0,0 +1,7 @@
apt install debsecan
# Stretch:
sed -i -e 's/SUITE=GENERIC/SUITE=stretch/g' /etc/default/debsecan
# Buster:
sed -i -e 's/SUITE=GENERIC/SUITE=buster/g' /etc/default/debsecan

@ -0,0 +1,3 @@
apt install debsums
sed -i -e 's/CRON_CHECK=never/CRON_CHECK=weekly/g' /etc/default/debsums

@ -0,0 +1,4 @@
apt install lynis
# as root:
lynis audit system

@ -0,0 +1,5 @@
See other dirs for specific configs.
# To update virtual user table on main server:
vim /etc/postfix/virtual
postmap /etc/postfix/virtual

@ -0,0 +1,3 @@
apt install rkhunter
sed -i -e 's/CRON_DAILY_RUN=""/CRON_DAILY_RUN="true"/g' -e 's/CRON_DB_UPDATE=""/CRON_DB_UPDATE="true"/g' -e 's/DB_UPDATE_EMAIL="false"/DB_UPDATE_EMAIL="true"/g' -e 's/APT_AUTOGEN="false"/APT_AUTOGEN="true"/g' -e 's/NICE="0"/NICE="10"/g' /etc/default/rkhunter
Loading…
Cancel
Save