Ò׽ؽØͼÈí¼þ¡¢µ¥Îļþ¡¢Ãâ°²×°¡¢´¿ÂÌÉ«¡¢½ö160KB

linuxϵͳ°²È«(¶þ): ÈÕÖ¾

 
linuxϵͳ°²È«(¶þ): ÈÕÖ¾
http://www.ibm.com/developerworks/cn/linux/security/l-ossec/part2/index.html
ÎĵµÑ¡Ïî
´òÓ¡±¾Ò³
½«´ËÒ³×÷Ϊµç×ÓÓʼþ·¢ËÍ
¼¶±ð£º ³õ¼¶
½úÁÁ (sound810@sina.com), ÍøÂ簲ȫ¹¤³Ìʦ
2003 Äê 1 ÔÂ 09 ÈÕ
ÎÒÃÇÖ÷Òª½²Ò»ÏÂLinux»·¾³ÖеÄϵͳ¼ÇÕʺÍϵͳÈÕÖ¾¹ÜÀíÒÔ¼°ÔõôÓÃһЩ¹¤¾ß¸ü¼Ó·½±ãÓÐЧµÄ¹ÜÀíÈÕÖ¾ÐÅÏ¢¡£
µ±ÎÒÃÇÓÃÉÏÃæµÄ·½·¨½øÐÐÁË Linux ·þÎñÆ÷µÄ°²×°ºÍһЩ»ù±¾µÄÉèÖúó£¬ÎÒÃǵķþÎñÆ÷Ó¦¸Ã˵À´ÊDZȽϰ²È«µÄ¡£µ«ÊÇ×ÜÊÇ»¹»áÓкڿͿÉÒÔͨ¹ý¸÷ÖÖ·½·¨ÀûÓÃϵͳ¹ÜÀíÔ±µÄÊèºöÇÖÈëÎÒÃǵÄϵͳ¡£ËûÃǵÄÒ»¾ÙÒ»¶¯¶¼»á¼Ç¼µ½ÏµÍ³µÄÈÕÖ¾Ö®ÖУ¬¾¡¹ÜËûÃÇ¿ÉÄÜ¿ÉÒԸıäÕâЩÈÕÖ¾ÐÅÏ¢£¬ÉõÖÁÓÃ×Ô¼ºµÄ³ÌÐòÌæ»»µôÎÒÃÇϵͳ±¾ÉíµÄÃüÁî³ÌÐò£¬µ«ÊÇͨ¹ýÈÕÖ¾ÎÒÃÇ×Ü»¹ÊÇÄÜÕÒµ½Ò»Ð©ÖëË¿Âí¼£¡£ÏÂÃæÎÒÃÇÖ÷Òª½²Ò»Ï Linux »·¾³ÖеÄϵͳ¼ÇÕʺÍϵͳÈÕÖ¾¹ÜÀíÒÔ¼°ÔõôÓÃһЩ¹¤¾ß¸ü¼Ó·½±ãÓÐЧµÄ¹ÜÀíÈÕÖ¾ÐÅÏ¢¡£
1 ϵͳ¼ÇÕÊ
×î³õ¿ª·¢µÄϵͳ¼ÇÕÊÓÃÓÚ¸ú×ÙÓû§×ÊÔ´Ïû·ÑÇé¿ö£¬´ÓÓû§ÕʺÅÖÐÌáÈ¡·ÑÓÃΪĿµØµÄ¡£ÏÖÔÚÎÒÃÇ¿ÉÒÔ°ÑËüÓÃÓÚ°²È«Ä¿µÄ£¬¸øÎÒÃÇÌṩÓйØÔÚϵͳÖз¢ÉúµÄ¸÷ÖֻµÄÓмÛÖµÐÅÏ¢¡£
ϵͳ¼ÇÕÊÖ÷Òª·ÇΪÁ½Àà:
1) Á¬½Ó¼ÇÕÊ
Á¬½Ó¼ÇÕÊÊǸú×Ùµ±Ç°Óû§µ±Ç°¶Ô»°¡¢Óû§µÇ¼ºÍÍ˳öµÄ»î¶¯¡£ÔÚ Linux ϵͳÖÐʹÓà utmp (¶¯Ì¬Óû§¶Ô»°)ºÍ wtmp (µÇ¼/Í˳öÈÕÖ¾¼Ç¼)¹¤¾ßÀ´Íê³ÉÕâÒ»¼ÇÕʹý³Ì¡£Wtmp ¹¤¾ßͬʱά»¤ÖØÐÂÒýµ¼ºÍϵͳ״̬±ä»¯ÐÅÏ¢¡£¸÷ÖÖ³ÌÐò¶ÔÕâЩ¹¤¾ß½øÐÐˢкÍά»¤£¬Òò´ËÎÞÐë½øÐÐÌØÊâµÄºǫ́½ø³Ì»ò³ÌÐò¡£È»¶ø£¬utmp ºÍ wtmp Êä³ö½á¹ûÎļþ±ØÐë´æÔÚ£¬Èç¹ûÕâЩÎļþ²»´æÔÚ»á¹Ø±ÕÁ¬½Ó¼ÇÕÊ¡£Óë utmp ºÍ wtmp ÓйصÄËùÓÐÊý¾Ý½«·Ö±ð±£´æÔÚ /var/run/utmp ºÍ /var/log/wtmp ÖС£ÕâЩÎļþ¹é¸ùÓû§ËùÓС£ÕâЩÎļþÖеÄÊý¾ÝÊÇÓû§²»¿É¶ÁµÄ£¬µ«Ò²Óй¤¾ß¿ÉÒÔת»»³É¿É¶ÁµÄÐÎʽ¡£
dump-utmp ¿ÉÒÔת»»Á¬½Ó¼ÇÕÊÊý¾ÝΪ¿É¶ÁµÄ ASCII ¸ñʽÊý¾Ý¡£
ac ÃüÁîÌṩÁËÓйØÓû§Á¬½ÓµÄ´ó¸Åͳ¼Æ£¬ÎÒÃÇ¿ÉÒÔʹÓôøÓбêÖ¾ d ºÍ p µÄ ac ÃüÁî¡£±êÖ¾ d ÏÔʾÁËÒ»ÌìµÄ×ÜÁ¬½Óͳ¼Æ£¬±êÖ¾ p ÏÔʾÁËÿһ¸öÓû§µÄÁ¬½Óʱ¼ä¡£ÕâÖÖͳ¼ÆÐÅÏ¢µÄ·½Ê½¶ÔÁ˽âÓë̽²âÈëÇÖÓйصÄÓû§Çé¿ö¼°ÆäËû»î¶¯ºÜÓаïÖú¡£Last ºÍ who ÊdzöÓÚ°²È«½Ç¶È¶¨ÆÚʹÓõÄ×î³£ÓÃÃüÁî¡£
last ÃüÁîÌṩÿһ¸öÓû§µÄµÇ¼ʱ¼ä£¬Í˳öµÇ¼ʱ¼ä£¬µÇ¼λÖã¬ÖØÐÂÒýµ¼ÏµÍ³¼°ÔËÐ춱ð±ä»¯µÄÐÅÏ¢¡£last -10 ±íʾ last µÄ×î¶àÊä³ö½á¹ûΪ×î½üµÄ 10 ÌõÐÅÏ¢¡£È±Ê¡Ê± last ½«ÁгöÔÚ /var/log/wtmp ÖмǼµÄÿһÁ¬½ÓºÍÔËÐ춱ðµÄ±ä


Ïà¹ØÎĵµ£º

LinuxʵÑ鱨¸æ4

 LinuxʵÑ鱨¸æ4
ÎÒµÄ×÷Òµ   2009-11ÔÂ11
ʵÑ飺ÎļþȨÏÞ¼°Óû§¹ÜÀí
ÐÕ    Ãû
 ÕÅ¿­
 
ÈονÌʦ
 
³ÂѩƼ
 
Ö¸µ¼½Ìʦ
 
³ÂѩƼ
 
ʵÑéµØµã
 
B203
 
ʵÑéʱ¼ä
 
2009Äê11ÔÂ11ÐÇÆÚ ¶þ
 
Ò»¡¢ÊµÑéÄ¿µÄ
 
ÒªÇ ......

¹ØÓÚlinuxµÄÆô¶¯Á÷³ÌµÄ±Ê¼Ç

 Ò»¡¢´ÓÄÄÀïµ½ÄÄÀï
±¾ÎÄÖ¼ÔÚÃèÊölinuxÖÐÄÚºËÈçºÎµ÷ÓÃÆô¶¯£¬È»ºóÈçºÎ´ÓimgµÄÎļþϵͳÇл»µ½Ó²Å̵Ĺý³Ì¡£
ÃèÊöÆðÓÚ£ºlinux-2.6.11/init/main.cÖк¯Êý static int init(void * unused)
ÃèÊöÖ¹ÓÚ£º/etc/rc.d/rc.sysinitÎļþµÄ±»µ÷ÓÃ
¶þ¡¢ÃèдÁ÷³Ì
ÔÚlinux´úÂëlinux-2.6.11/init/main.cÖÐinitÕâ¸öº¯Êý±»µ÷ÓÃʱ£¬³ ......

LinuxÍø¹Ü±Ê¼Ç£¨32£©£ºLinuxϵÄVPN·þÎñÆ÷ÇáËÉ´òÔì

    ×î½ü£¬ÓиöÅóÓÑÀÏÊÇÎÊVPNµÄÊÂÇé¡£½áºÏÎÒµÄÌå»á£¬ËãÊǸøËû×¼±¸Ò»¸öרÌâÎÄÕ°ɡ£ 1.µ½µ×ʲôÊÇVPN
VPNµÄÓ¢ÎÄÈ«³ÆÊÇ¡°Virtual Private Network¡±£¬·­Òë¹ýÀ´¾ÍÊÇ¡°ÐéÄâרÓÃÍøÂ硱¡£¹ËÃû˼Ò壬ÐéÄâרÓÃÍøÂçÎÒÃÇ¿ÉÒÔ°ÑËüÀí½â³ÉÊÇÐéÄâ³öÀ´µÄÆóÒµÄÚ²¿×¨Ïß¡£Ëü¿ÉÒÔͨ¹ýÌØÊâµÄ¼ÓÃܵÄͨѶЭÒéÔÚÁ¬½ÓÔÚInternet ......

linux¶àÏß³Ìѧϰ(Èý)——Ïß³ÌÊôÐÔÉèÖÃ

 ÔÚÉÏһƪÎÄÕÂÖУ¬½éÉÜÁËÏ̵߳Ĵ´½¨ºÍÍ˳ö£¬ÒÔ¼°Ïà¹Øº¯ÊýµÄʹÓá£ÆäÖÐpthread_createº¯ÊýµÄµÚ¶þ¸ö²ÎÊý£¬ÊǹØÓÚÏß³ÌÊôÐÔµÄÉèÖã¬ÕâÒ²ÊǽñÌìËùÓн²ÊöµÄ¡£ÕâЩÊôÐÔÖ÷Òª°üÀ¨°î¶¨ÊôÐÔ¡¢·ÖÀëÊôÐÔ¡¢¶ÑÕ»µØÖ·¡¢¶ÑÕ»´óС¡¢ÓÅÏȼ¶¡£ÆäÖÐϵͳĬÈϵÄÊǷǰ¡¢·Ç·ÖÀ롢ȱʡ1MµÄ¶ÑÕ»¡¢Ó븸½ø³ÌͬÑù¼¶±ðµÄÓÅÏȼ¶¡£ÔÚpthread_createÖÐ ......

linux¶àÏß³Ìѧϰ£¨Î壩

 1. Ïà¹Øº¯Êý                                               & ......
© 2009 ej38.com All Rights Reserved. ¹ØÓÚE½¡ÍøÁªÏµÎÒÃÇ | Õ¾µãµØͼ | ¸ÓICP±¸09004571ºÅ