BartDemo

Bart Demo (3 Minutes)

Description

This demo introduces Bart, a simple to use auditing tool.

OpenSolaris Versions Supported

2008.05 or newer

Points to Hit

  • Bart is very easy to use.
  • Using bart you can make your system more secure because you know when config files etc. get modified.

Demo Prep

None.

Gotchas

None known.

Demo

  • Run pfexec bart create -R /etc > /tmp/manifest1.
  • Run pfexec touch /etc/newfile.txt.
  • Run pfexec chmod 777 /etc/passwd.
  • Run pfexec bart create -R /etc > /tmp/manifest2.
  • Run bart compare /tmp/manifest1 /tmp/manifest2. Explain what just happened.

Demo Cleanup

Delete /tmp/manifest1 and /tmp/manifest2. Change access rights of /etc/passwd to 644. Delete /etc/newfile.txt.

Enter labels to add to this page:
Please wait 
Looking for a label? Just start typing.

Sign up or Log in to add a comment or watch this page.


The individuals who post here are part of the extended Sun Microsystems community and they might not be employed or in any way formally affiliated with Sun Microsystems. The opinions expressed here are their own, are not necessarily reviewed in advance by anyone but the individual authors, and neither Sun nor any other party necessarily agrees with them.

Copyright 1994-2009 Sun Microsystems, Inc.
Powered by Atlassian Confluence
Sun Guidelines on Public Discourse Privacy Policy Terms of Use Trademarks Site Map Employment Investor Relations Contact