Assuming I have FreeBSD audits / auditdistd logs.. is there any ruleset or process that looks for oddities and can alert? Generally, what is a reasonable way for security monitoring #FreeBSD?
Assuming I have FreeBSD audits / auditdistd logs.. is there any ruleset or process that looks for oddities and can alert? Generally, what is a reasonable way for security monitoring #FreeBSD?
If you have a fediverse account, you can quote this note from your own instance. Search https://mastodon.social/users/robinp/statuses/116227928623628330 on your instance and quote it. (Note that quoting is not supported in Mastodon.)