diff options
| -rw-r--r-- | recipes-ids/aide/aide/aide.conf | 11 |
1 files changed, 4 insertions, 7 deletions
diff --git a/recipes-ids/aide/aide/aide.conf b/recipes-ids/aide/aide/aide.conf index 2c99e07..c4b917e 100644 --- a/recipes-ids/aide/aide/aide.conf +++ b/recipes-ids/aide/aide/aide.conf | |||
| @@ -51,7 +51,7 @@ report_url=stdout | |||
| 51 | #crc32: crc32 checksum (MHASH only) | 51 | #crc32: crc32 checksum (MHASH only) |
| 52 | #whirlpool: whirlpool checksum (MHASH only) | 52 | #whirlpool: whirlpool checksum (MHASH only) |
| 53 | 53 | ||
| 54 | FIPSR = p+i+n+u+g+s+m+c+acl+selinux+xattrs+sha256 | 54 | FIPSR = p+u+g+s+acl+xattrs+sha256 |
| 55 | 55 | ||
| 56 | #R: p+i+n+u+g+s+m+c+acl+selinux+xattrs+md5 | 56 | #R: p+i+n+u+g+s+m+c+acl+selinux+xattrs+md5 |
| 57 | #L: p+i+n+u+g+acl+selinux+xattrs | 57 | #L: p+i+n+u+g+acl+selinux+xattrs |
| @@ -70,10 +70,10 @@ EVERYTHING = R+ALLXTRAHASHES | |||
| 70 | NORMAL = FIPSR+sha512 | 70 | NORMAL = FIPSR+sha512 |
| 71 | 71 | ||
| 72 | # For directories, don't bother doing hashes | 72 | # For directories, don't bother doing hashes |
| 73 | DIR = p+i+n+u+g+acl+selinux+xattrs | 73 | DIR = p+u+g+acl+xattrs |
| 74 | 74 | ||
| 75 | # Access control only | 75 | # Access control only |
| 76 | PERMS = p+i+u+g+acl+selinux | 76 | PERMS = p+u+g+acl |
| 77 | 77 | ||
| 78 | # Logfile are special, in that they often change | 78 | # Logfile are special, in that they often change |
| 79 | LOG = > | 79 | LOG = > |
| @@ -83,12 +83,9 @@ LSPP = FIPSR+sha512 | |||
| 83 | 83 | ||
| 84 | # Some files get updated automatically, so the inode/ctime/mtime change | 84 | # Some files get updated automatically, so the inode/ctime/mtime change |
| 85 | # but we want to know when the data inside them changes | 85 | # but we want to know when the data inside them changes |
| 86 | DATAONLY = p+n+u+g+s+acl+selinux+xattrs+sha256 | 86 | DATAONLY = p+u+g+s+acl+xattrs+sha256 |
| 87 | 87 | ||
| 88 | # Next decide what directories/files you want in the database. | 88 | # Next decide what directories/files you want in the database. |
| 89 | 89 | ||
| 90 | # Check only permissions, inode, user and group for /etc, but | 90 | # Check only permissions, inode, user and group for /etc, but |
| 91 | # cover some important files closely. | 91 | # cover some important files closely. |
| 92 | /bin NORMAL | ||
| 93 | /sbin NORMAL | ||
| 94 | /lib NORMAL | ||
