Re: Distributed audit daemon committed (was: svn commit: r243752 - in head: etc etc/defaults etc/mail etc/mtree etc/rc.d share/man/man4 usr.sbin usr.sbin/auditdistd (fwd))

From: Hugo Silva <hugo_at_barafranca.com>
Date: Mon, 17 Dec 2012 12:42:18 +0000
On 12/01/12 15:15, Robert Watson wrote:
> 
> Dear all:
> 
> I've now committed the build glue required to install the recently
> merged Audit Distribution Daemon (auditdistd) contributed by the Pawel
> Dawidek, and sponsored by the FreeBSD Foundation.  This allows
> individual hosts generating audit trails to submit trails to a central
> audit server for review and safe keeping.  Part of the goal is to ensure
> that a host submitting trail data can't later modify the trails.  Pawel
> uses a variety of useful security- and resilience-related features such
> as TLS, Capsicum, etc, in auditdistd.  As the recent security incident
> in the FreeBSD.org cluster illustrated, having reliable and detailed
> audit trails makes a big difference in forensic work, and hopefully this
> will allow the FreeBSD Project (and our users) to do that better in the
> future.
> 
> Robert N M Watson
> Computer Laboratory
> University of Cambridge


Wonderful! Personally I think this is a very worthy addition to the
project and I would like to congratulate and thank everyone involved in
this work.
Received on Mon Dec 17 2012 - 11:51:21 UTC

This archive was generated by hypermail 2.4.0 : Wed May 19 2021 - 11:40:33 UTC