[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Setting up "pristine" system



Hello again,

Being the paranoid individual that I am, I would like to start my laptop
Debian system from scratch using woody/stable. I have the 8-CD CheapBytes
set to reinstall from. Basically, I want the system to remain as a pristine
'stable' system, with any non-stable dist programs installed locally to
/usr/local. (About the only thing this wouldn't work for is the ltmodem
driver for the winmodem)

I also would like to setup intrusion detection software, etc. I figure that
for all this to really serve the intended purpose, I need to setup the
intrusion detection software prior to the first time I connect to the 
internet (along with my iptables firewall). Any suggestions for all this?
I've been considering AIDE for intrusion detection. As far as services, the
only services that will be running are sshd and www (via boa, for docs by
dwww), and only sshd will be allowed to accept incoming packets via iptables.
(Of course there's the xserver, but that shouldn't be accepting TCP!)

So any thoughts as far as what I need to make sure I have standing by when
I try to set all this up? Thanks!

-Rob

-- 
Key fingerprint = 9296 627F 9D12 0C38 1946  C94F A7E9 C6C8 2B3C 7FE3

Attachment: pgpWzS9xMcgQd.pgp
Description: PGP signature


Reply to: