This shows you the differences between two versions of the page.
| Both sides previous revision Previous revision Next revision | Previous revision | ||
|
утилита_aide [2020/06/16 15:16] val [Debian] |
утилита_aide [2025/10/16 12:04] (current) val [Установка и инициализация] |
||
|---|---|---|---|
| Line 2: | Line 2: | ||
| * [[https://rtfm.co.ua/linux-sistema-aide-otslezhivanie-izmenenij-fajlov-i-direktorij/|Linux: система AIDE – отслеживание изменений файлов и директорий]] | * [[https://rtfm.co.ua/linux-sistema-aide-otslezhivanie-izmenenij-fajlov-i-direktorij/|Linux: система AIDE – отслеживание изменений файлов и директорий]] | ||
| + | * [[https://blog.rapid7.com/2017/06/30/how-to-install-and-configure-aide-on-ubuntu-linux/|How to Install and Configure AIDE on Ubuntu Linux]] | ||
| - | ===== Debian ===== | ||
| - | * [[Сервис MTA#Настройка MTA]] | + | |
| + | ==== Установка и инициализация ==== | ||
| + | |||
| + | * **!!!** Для Debian выполнить [[Сервис MTA#Настройка MTA]] | ||
| <code> | <code> | ||
| # apt install aide | # apt install aide | ||
| - | |||
| - | # aideinit | ||
| # less /etc/aide/aide.conf | # less /etc/aide/aide.conf | ||
| - | # /etc/cron.daily/aide | + | # time aideinit |
| + | ... | ||
| + | real 2m42.560s | ||
| + | |||
| + | # ls -l /var/lib/aide | ||
| + | </code> | ||
| + | |||
| + | ==== Вносим изменения ==== | ||
| + | <code> | ||
| + | # vim /usr/local/sbin/webd | ||
| + | </code> | ||
| + | ==== Детектируем изменения ==== | ||
| + | <code> | ||
| + | debian10# aide -c /var/lib/aide/aide.conf.autogenerated --check | ||
| + | debian11_12/ubuntu24# time aide -c /etc/aide/aide.conf --check | ||
| + | ... | ||
| + | real 4m47.421s | ||
| - | |||
| или | или | ||
| - | # mail -u student | + | |
| + | debian10_11# /etc/cron.daily/aide | ||
| + | debian12/ubuntu24# time /usr/share/aide/bin/dailyaidecheck --crondaily | ||
| + | ... | ||
| + | real 4m52.791s | ||
| + | |||
| + | |||
| + | </code> | ||
| + | ==== Фиксируем текущее состояние системы ==== | ||
| + | <code> | ||
| + | debian10# aide -c /var/lib/aide/aide.conf.autogenerated --update | ||
| + | |||
| + | debian11_12/ubuntu24# cp /var/lib/aide/aide.db.new /var/lib/aide/aide.db | ||
| </code> | </code> | ||