[aklug] Re: Information Systems Audit

From: Arthur Corliss <acorliss@nevaeh-linux.org>
Date: Wed Feb 06 2013 - 14:58:12 AKST

On Wed, 6 Feb 2013, Marc Grober wrote:

> Virtually anything can be hidden in plain sight in a *x system. As an SA do you run a regular report on changed time stamps? Clock anomalies? Reboots? sudo and su? How do you sort and address alarms and warnings? If you can't stop whatever, can you detect & remediate quickly enough? Bottom like is one of your worst enemies is your user demand for speed. Get rid of the users and life would be much more secure ;-)

+1 for getting rid of users. Needy bastards... ;-)

         --Arthur Corliss
           Live Free or Die
---------
To unsubscribe, send email to <aklug-request@aklug.org>
with 'unsubscribe' in the message body.
Received on Wed Feb 6 14:58:20 2013

This archive was generated by hypermail 2.1.8 : Wed Feb 06 2013 - 14:58:20 AKST