[855] in Intrusion Detection Systems

home help back first fref pref prev next nref lref last post

syslogd core

daemon@ATHENA.MIT.EDU (Ivan Pulleyn)
Tue Jan 14 13:56:47 1997

From: Ivan Pulleyn <ivan@magnify.com>
To: ids@uow.edu.au
Date: Mon, 13 Jan 1997 14:21:20 -0600 (CST)
In-Reply-To: <m0vizg5-0005x2C@SPi> from "Justin J. Lister" at Jan 11, 97 08:24:36 pm
Reply-To: ids@uow.edu.au


Hi,
  I found a core from syslogd the other day on my Solaris 2.5.1 based firewall.
We are running the FW-1 firewall that comes with Sun's Netra.  The question
is, what can I do with this core to determine if it was the result of any 
foul play? gdb tells me little, same thing with strings -a.

Thanks,
Ivan...

-- 
Ivan Pulleyn       Magnify, Inc.         home:
ivan@magnify.com   815 Garfield Street   1401 North Bosworth Avenue
                   Oak Park, IL  60304   Chicago, IL 60622
                   708 383-7002          773-278-5902

home help back first fref pref prev next nref lref last post