Current Issue


Table of contents

CD-ROM

Sys Admin and The Perl Journal CD-ROM version 12.0

Version 12.0 delivers every issue of Sys Admin from 1992 through 2006 and every
issue of The Perl Journal from 1996-2002 in one convenient CD-ROM!

Order now!

Sys Admin Magazine > Archives > 2001 > August 2001

Tripwire in the Enterprise: Integrating Tripwire into Big Brother

Elena Khan

I work for Adero, Inc., a start-up that specializes in global caching of Web content. We first opened shop in Massachusetts two years ago, moved a couple of times to bigger facilities, and finally found a home in the Boston suburb of Waltham. As our company grew, however, so did our need for intrusion detection. Our security team recommended Tripwire, and the operations team (my group) was tasked with implementing it on 200 machines (comprising four discrete functional groups) that were already deployed worldwide.

This article describes the system I created for making Tripwire administration across the enterprise as easy as possible. It was designed for Adero's specific needs, which were three-fold:

  1. Install Tripwire on production machines in the field.

  2. Confirm that the builds were consistent between machines within each functional group.

  3. Integrate the running of Tripwire into an existing monitoring system.

Before beginning this project, I tried to find a third-party solution for using Tripwire in an enterprise, but an extensive Web search produced nothing. The only product that came close to addressing the problem was from Tripwire itself -- the "HQ Console". When I evaluated the Console (Q4 of 2000), it was not robust enough for our needs. As I continued to work on this project, I realized that the dearth of ready-made solutions was a result of Tripwire's being inherently "enterprise unfriendly". I will clarify this perception as I explain what I did and the reasoning behind it. I assume throughout that the reader is familiar with Tripwire (




MarketPlace

Free Download Speeds Up PCs
Make Your PC Faster --New Diskeeper 2008 Speeds Up PCs --Download Free Trial Now!

Automate Software Builds with Visual Build Pro
Easily create an automated, repeatable process for building and deploying software.

Flowcharts from C/C++ code -- Free trial download
Understand C/C++ code in less time. A new team member ? Inherited legacy code ? Get up to speed faster with Crystal Flow for C/C++. Code-formatting improves readability. Flowcharts are integrated with code browser. Export flowcharts to Visio.

WinDev 12 - Powerful IDE
Develop 10 times faster ! ALM, IDE, .Net, RAD, 5GL, Database, 5GL, 64-bit, etc. Free Express version

Wanna see your ad here?