Mise à jour de 'README.md'
This commit is contained in:
parent
e4006148fc
commit
da6b20e23c
23
README.md
23
README.md
|
@ -50,15 +50,6 @@ changer user par votre utilisateur.<br>
|
||||||
<directories report_changes="yes" realtime="yes" check_all="yes">/var/www,/bin,/sbin</directories>
|
<directories report_changes="yes" realtime="yes" check_all="yes">/var/www,/bin,/sbin</directories>
|
||||||
```
|
```
|
||||||
|
|
||||||
<code>nano /var/ossec/rules/local_rules.xml</code>
|
|
||||||
```
|
|
||||||
<rule id="554" level="7" overwrite="yes">
|
|
||||||
<category>ossec</category>
|
|
||||||
<decoded_as>syscheck_new_entry</decoded_as>
|
|
||||||
<description>File added to the system.</description>
|
|
||||||
<group>syscheck,</group>
|
|
||||||
</rule>
|
|
||||||
```
|
|
||||||
# Generation des clefs:
|
# Generation des clefs:
|
||||||
<code>
|
<code>
|
||||||
openssl genrsa -out /var/ossec/etc/client.keys 2048
|
openssl genrsa -out /var/ossec/etc/client.keys 2048
|
||||||
|
@ -78,19 +69,7 @@ chmod 775 -R /var/ossec
|
||||||
chown -R ossec:ossec /var/ossec
|
chown -R ossec:ossec /var/ossec
|
||||||
</code>
|
</code>
|
||||||
|
|
||||||
```
|
Adapter les locatefile à vos log
|
||||||
sudo touch /var/log/messages
|
|
||||||
sudo touch /var/log/authlog
|
|
||||||
sudo touch /var/log/authlog
|
|
||||||
sudo touch /var/log/secure
|
|
||||||
sudo touch /var/log/authlog
|
|
||||||
sudo touch /var/log/xferlog
|
|
||||||
|
|
||||||
sudo mkdir /var/www/logs/
|
|
||||||
sudo touch /var/www/logs/access_log
|
|
||||||
sudo touch /var/www/logs/error_log
|
|
||||||
```
|
|
||||||
|
|
||||||
|
|
||||||
Si error queue:<br>
|
Si error queue:<br>
|
||||||
<code>sudo apt-get install ossec-hids-server</code>
|
<code>sudo apt-get install ossec-hids-server</code>
|
||||||
|
|
Loading…
Reference in New Issue
Block a user