How to deploy HIDS in a Solaris Network (II)

Source: Internet
Author: User
Article Title: how to deploy HIDS in a Solaris Network (II ). Linux is a technology channel of the IT lab in China. Includes basic categories such as desktop applications, Linux system management, kernel research, embedded systems, and open source.

The above section describes the technical features of IDS and OSSEC. The following describes the specific configuration process using the Solaris 10 operating system as an example. Here there are several ways to first install and configure the ossec-hids-1.5 on the Solaris 10 server, and then configure the ossec ids proxy on the Linux workstation, windows workstation, and BSD workstation. Finally, the configuration is based on the Web monitoring interface. A long process is difficult for beginners.
  
1. configure the ossec-hids-1.5 under the Solaris server

System requirements: the C compiler and make tools must be configured first. It is only the basis of Unix work. readers can view relevant information for configuration. I skipped this article. In addition, the hardware is configured according to the number of monitored hosts, as shown in table-1.

Recommended server selection, as shown in Table 1

IDS proxy client count IDS server CPU count IDS server CPU speed Memory capacity of IDS server Disk storage capacity of the client used by the IDS server
1? 100 1 More than 1500 MHZ 1024 MB More than 20 GB
100-200 Dual-core or multi-processor More than 2000 MHZ More than MB 40 GB or above

  

1. download and install the software

# Wegt http://www.ossec.net/files/ossec-hids-1.5.tar.gz
# Wegt http://www.ossec.net/files/OSSEC-GPG-KEY.asc
# Gpg -- import OSSEC-GPG-KEY.asc
# Gpg -- verify file. sig file

The gpg verification ensures the software package security.

# Gunzip ossec-hids-1.5.tar.gz
# Tar vxf ossec-hids-1.5.tar
# Cd ossec-hids-1.5
#./Install



Start Installation Interface 1.

Start Installation


First of all, the language selection because the author uses the Solaris 10 server does not support the UTF encoding format, so Chinese characters are displayed as garbled characters, so the installation in English should be a basic skill of the Unix system administrator, however, it can be installed in Chinese in Linux. Then the system checks host status 2.

 

Detect host status

 

It indicates that the OSSEC must be installed with the root permission. Press ENTER to continue or press Ctrl-C to exit.

[1] [2] [3] [4] [5] [6] [7] Next page

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.