{"id":1409,"date":"2018-12-24T14:54:28","date_gmt":"2018-12-24T05:54:28","guid":{"rendered":"http:\/\/www.kinryo.net\/?p=1409"},"modified":"2025-06-10T17:06:03","modified_gmt":"2025-06-10T08:06:03","slug":"8%ef%bc%9a%e3%83%95%e3%82%a1%e3%82%a4%e3%83%ab%e6%94%b9%e7%ab%84%e6%a4%9c%e7%9f%a5%e3%82%b7%e3%82%b9%e3%83%86%e3%83%a0-tripwire%e3%81%ae%e5%b0%8e%e5%85%a5","status":"publish","type":"post","link":"https:\/\/www.kinryo.net\/?p=1409","title":{"rendered":"8\uff1a\u30d5\u30a1\u30a4\u30eb\u6539\u7ac4\u691c\u77e5\u30b7\u30b9\u30c6\u30e0 Tripwire\u306e\u5c0e\u5165"},"content":{"rendered":"\r\n<p>\u3053\u3053\u306f<a href=\"http:\/\/centossrv.com\/tripwire.shtml\">http:\/\/centossrv.com\/tripwire.shtml<\/a><br \/>\u306e\u53d7\u3051\u58f2\u308a\u3067<\/p>\r\n\r\n\r\n\r\n<pre class=\"wp-block-preformatted\"># yum -y install tripwire\u3000\u2190\u3000tripwire\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb <br \/># tripwire-setup-keyfiles\u3000\u2190\u3000tripwire\u521d\u671f\u8a2d\u5b9a<\/pre>\r\n\r\n\r\n\r\n<p>\u8a2d\u5b9a\u3059\u308b\u305f\u3081\u306b\u30b5\u30a4\u30c8\u30d1\u30b9\u30d5\u30ec\u30fc\u30ba\u3092\uff12\u56de\u805e\u304b\u308c\u3001\u30ed\u30fc\u30ab\u30eb\u30d1\u30b9\u30d5\u30ec\u30fc\u30ba\u3082\uff12\u56de\u805e\u3044\u3066\u304d\u307e\u3059\u3002\u3055\u3089\u306b\u30b5\u30a4\u30c8\u30d1\u30b9\u30d5\u30ec\u30fc\u30ba\u3092\uff12\u56de\u805e\u3044\u3066\u304d\u307e\u3059\u3002\u306e\u3067\u30b5\u30a4\u30c8\u30d1\u30b9\u30d5\u30ec\u30fc\u30ba\u3068\u30ed\u30fc\u30ab\u30eb\u30d1\u30b9\u30d5\u30ec\u30fc\u30ba\u3092\u63a7\u3048\u3066\u304a\u304d\u307e\u3059\u3002\u3053\u3053\u3082<a href=\"http:\/\/centossrv.com\/tripwire.shtml\">http:\/\/centossrv.com\/tripwire.shtm<\/a><br \/>\u3092\u53c2\u8003\u306b\u3057\u3066\u3044\u307e\u3059\u3002Tripwire\u8a2d\u5b9a \u3092\u3057\u3066\u3044\u304d\u307e\u3059\u3002<\/p>\r\n\r\n\r\n\r\n<pre class=\"wp-block-preformatted\"># gedit \/etc\/tripwire\/twcfg.txt<\/pre>\r\n\r\n\r\n\r\n<figure class=\"wp-block-image\"><img loading=\"lazy\" decoding=\"async\" width=\"704\" height=\"375\" src=\"http:\/\/www.kinryo.net\/wp-content\/uploads\/2018\/12\/tripwire.png\" alt=\"\" class=\"wp-image-1410\" srcset=\"https:\/\/www.kinryo.net\/wp-content\/uploads\/2018\/12\/tripwire.png 704w, https:\/\/www.kinryo.net\/wp-content\/uploads\/2018\/12\/tripwire-150x80.png 150w, https:\/\/www.kinryo.net\/wp-content\/uploads\/2018\/12\/tripwire-300x160.png 300w\" sizes=\"auto, (max-width: 704px) 100vw, 704px\" \/><\/figure>\r\n\r\n\r\n\r\n<p>\u4e0a\u306e\u56f3\u306e\u3088\u3046\u306b\uff12\u30f6\u6240\u5909\u66f4\u3057\u4fdd\u5b58<\/p>\r\n\r\n\r\n\r\n<pre class=\"wp-block-preformatted\"># twadmin -m F -c \/etc\/tripwire\/tw.cfg -S \/etc\/tripwire\/site.key \/etc\/tripwire\/twcfg.txt\u3000\u2190\u3000Tripwire\u8a2d\u5b9a\u30d5\u30a1\u30a4\u30eb(\u6697\u53f7\u7f72\u540d\u7248)\u4f5c\u6210<\/pre>\r\n\r\n\r\n\r\n<p>\u30b5\u30a4\u30c8\u30d1\u30b9\u30d5\u30ec\u30fc\u30ba\u3092\u805e\u304b\u308c\u307e\u3059\u3002\u305d\u3057\u3066.txt\u30d5\u30a1\u30a4\u30eb\u3092\u524a\u9664\u3057\u3066\u304a\u304f<\/p>\r\n\r\n\r\n\r\n<pre class=\"wp-block-preformatted\"># rm -f \/etc\/tripwire\/twcfg.txt\u3000\u2190\u3000Tripwire\u8a2d\u5b9a\u30d5\u30a1\u30a4\u30eb(\u30c6\u30ad\u30b9\u30c8\u7248)\u524a\u9664<\/pre>\r\n\r\n\r\n\r\n<pre class=\"wp-block-preformatted\"><strong>\u203bTripwire\u8a2d\u5b9a\u30d5\u30a1\u30a4\u30eb(\u30c6\u30ad\u30b9\u30c8\u7248)\u3092\u5fa9\u5143\u3059\u308b\u5834\u5408<\/strong><br \/># twadmin -m f -c \/etc\/tripwire\/tw.cfg &gt; \/etc\/tripwire\/twcfg.txt<\/pre>\r\n\r\n\r\n\r\n<pre class=\"wp-block-preformatted\"># gedit \/etc\/tripwire\/twpolmake.pl<\/pre>\r\n\r\n\r\n\r\n<pre class=\"wp-block-preformatted\">#!\/usr\/bin\/perl<br \/># Tripwire Policy File customize tool<br \/># ----------------------------------------------------------------<br \/># Copyright (C) 2003 Hiroaki Izumi<br \/># This program is free software; you can redistribute it and\/or<br \/># modify it under the terms of the GNU General Public License<br \/># as published by the Free Software Foundation; either version 2<br \/># of the License, or (at your option) any later version.<br \/># This program is distributed in the hope that it will be useful,<br \/># but WITHOUT ANY WARRANTY; without even the implied warranty of<br \/># MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the<br \/># GNU General Public License for more details.<br \/># You should have received a copy of the GNU General Public License <br \/># along with this program; if not, write to the Free Software<br \/># Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA  02111-1307, USA.<br \/># ----------------------------------------------------------------<br \/># Usage:<br \/>#    perl twpolmake.pl {Pol file}<br \/># ----------------------------------------------------------------<br \/>#<br \/>$POLFILE=$ARGV[0];<br \/>open(POL,\"$POLFILE\") or die \"open error: $POLFILE\" ;<br \/>my($myhost,$thost) ;<br \/>my($sharp,$tpath,$cond) ;<br \/>my($INRULE) = 0 ;<br \/>while (&lt;POL&gt;) {     chomp;<br \/>    if (($thost) = \/^HOSTNAME\\s*=\\s*(.*)\\s*;\/) {<br \/>         $myhost = `hostname` ; chomp($myhost) ;<br \/>         if ($thost ne $myhost) {<br \/>             $_=\"HOSTNAME=\\\"$myhost\\\";\" ;<br \/>        }     <br \/>    }<br \/>   elsif ( \/^{\/ ) {<br \/>         $INRULE=1 ;<br \/>    }<br \/>     elsif ( \/^}\/ ) {<br \/>         $INRULE=0 ;     <br \/>    }<br \/>     elsif ($INRULE == 1 and ($sharp,$tpath,$cond) = \/^(\\s*\\#?\\s*)(\\\/\\S+)\\b(\\s+-&gt;\\s+.+)$\/) {<br \/>         $ret = ($sharp =~ s\/\\#\/\/g) ;<br \/>         if ($tpath eq '\/sbin\/e2fsadm' ) {<br \/>             $cond =~ s\/;\\s+(tune2fs.*)$\/; \\#$1\/ ;<br \/>         }<br \/>          if (! -s $tpath) {<br \/>             $_ = \"$sharp#$tpath$cond\" if ($ret == 0) ;<br \/>         }<br \/>          else {<br \/>             $_ = \"$sharp$tpath$cond\" ;<br \/>         }<br \/>     }<br \/>     print \"$_\\n\" ;<br \/>} close(POL) ;<\/pre>\r\n\r\n\r\n\r\n<pre class=\"wp-block-preformatted\"># perl \/etc\/tripwire\/twpolmake.pl \/etc\/tripwire\/twpol.txt &gt; \/etc\/tripwire\/twpol.txt.new\u3000\u2190\u3000\u30dd\u30ea\u30b7\u30fc\u30d5\u30a1\u30a4\u30eb\u6700\u9069<br \/># echo ! \"\/var\/lib\/tripwire\/<code>hostname<\/code>.twd ;\" &gt;&gt; \/etc\/tripwire\/twpol.txt.new\u3000\u2190\u3000Tripwire\u30c7\u30fc\u30bf\u30d9\u30fc\u30b9\u81ea\u4f53\u3092\u30c1\u30a7\u30c3\u30af\u5bfe\u8c61\u5916\u306b\u3059\u308b<br \/># echo ! \"\/tmp\/tripwire.log ;\" &gt;&gt; \/etc\/tripwire\/twpol.txt.new\u3000\u2190\u3000Tripwire\u30ed\u30b0\u3092\u30c1\u30a7\u30c3\u30af\u5bfe\u8c61\u5916\u306b\u3059\u308b<strong>\u203b\u5f8c\u8ff0\u306eTripwire\u5b9a\u671f\u81ea\u52d5\u5b9f\u884c\u30b9\u30af\u30ea\u30d7\u30c8\u3067\u4f7f\u7528<\/strong><br \/># twadmin -m P -c \/etc\/tripwire\/tw.cfg -p \/etc\/tripwire\/tw.pol -S \/etc\/tripwire\/site.key \/etc\/tripwire\/twpol.txt.new\u3000\u2190\u3000\u6700\u9069\u5316\u6e08\u30dd\u30ea\u30b7\u30fc\u30d5\u30a1\u30a4\u30eb\u3092\u5143\u306b\u30dd\u30ea\u30b7\u30fc\u30d5\u30a1\u30a4\u30eb(\u6697\u53f7\u7f72\u540d\u7248)\u4f5c\u6210<\/pre>\r\n\r\n\r\n\r\n<pre class=\"wp-block-preformatted\"># twadmin -m P -c \/etc\/tripwire\/tw.cfg -p \/etc\/tripwire\/tw.pol -S \/etc\/tripwire\/site.key \/etc\/tripwire\/twpol.txt.new\u3000\u2190\u3000\u6700\u9069\u5316\u6e08\u30dd\u30ea\u30b7\u30fc\u30d5\u30a1\u30a4\u30eb\u3092\u5143\u306b\u30dd\u30ea\u30b7\u30fc\u30d5\u30a1\u30a4\u30eb(\u6697\u53f7\u7f72\u540d\u7248)\u4f5c\u6210\u30b5\u30a4\u30c8\u30d1\u30b9\u30d5\u30ec\u30fc\u30ba<\/pre>\r\n\r\n\r\n\r\n<p>\u30b5\u30a4\u30c8\u30d1\u30b9\u30d5\u30ec\u30fc\u30ba\u3092\u805e\u3044\u3066\u304f\u308b\u306e\u3067\u5165\u529b\u3059\u308b\u3068\u30dd\u30ea\u30b7\u30fc\u30d5\u30a1\u30a4\u30eb\u3092\u4f5c\u308b\u3002<\/p>\r\n\r\n\r\n\r\n<pre class=\"wp-block-preformatted\">rm -f \/etc\/tripwire\/twpol.txt*\u3000\u2190\u3000\u30dd\u30ea\u30b7\u30fc\u30d5\u30a1\u30a4\u30eb(\u30c6\u30ad\u30b9\u30c8\u7248)\u524a\u9664<br \/> <strong>\u203b\u30dd\u30ea\u30b7\u30fc\u30d5\u30a1\u30a4\u30eb(\u30c6\u30ad\u30b9\u30c8\u7248)\u3092\u5fa9\u5143\u3059\u308b\u5834\u5408<\/strong> <br \/>twadmin -m p -c \/etc\/tripwire\/tw.cfg -p \/etc\/tripwire\/tw.pol -S \/etc\/tripwire\/site.key &gt; \/etc\/tripwire\/twpol.txt<\/pre>\r\n\r\n\r\n\r\n<p>\u30c7\u30fc\u30bf\u30d9\u30fc\u30b9\u4f5c\u6210<\/p>\r\n\r\n\r\n\r\n<p># tripwire -m i -s -c \/etc\/tripwire\/tw.cfg<\/p>\r\n\r\n\r\n\r\n<p>\u30ed\u30fc\u30ab\u30eb\u30d1\u30b9\u30d5\u30ec\u30fc\u30ba\u3092\u805e\u3044\u3066\u304f\u308b\u306e\u3067\u5165\u529b\u3001\u305d\u3057\u3066<br \/>Tripwire\u78ba\u8a8d<\/p>\r\n\r\n\r\n\r\n<pre class=\"wp-block-preformatted\"># tripwire -m c -s -c \/etc\/tripwire\/tw.cfg<\/pre>\r\n\r\n\r\n\r\n<p>&nbsp;<\/p>\r\n\r\n\r\n\r\n<p>\u7d50\u69cb\u306a\u30d5\u30a1\u30a4\u30eb\u3092\u30c1\u30a7\u30c3\u30af\u3057\u3066\u3044\u308b\u306e\u3067\u6642\u9593\u304c\u304b\u304b\u308b\u304c\u3001\u30ec\u30dd\u30fc\u30c8\u304c\u8868\u793a\u3055\u308c\u308c\u3070OK<\/p>\r\n\r\n\r\n\r\n<p>&nbsp;<\/p>\r\n","protected":false},"excerpt":{"rendered":"<p>\u3053\u3053\u306fhttp:\/\/centossrv.com\/tripwire.shtml\u306e\u53d7\u3051\u58f2\u308a\u3067 # yum -y install tripwire\u3000\u2190\u3000tripwire\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb # tripwire-setup-keyfi &hellip; <a href=\"https:\/\/www.kinryo.net\/?p=1409\">\u7d9a\u304d\u3092\u8aad\u3080 <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"vkexunit_cta_each_option":"","footnotes":""},"categories":[16],"tags":[],"class_list":["post-1409","post","type-post","status-publish","format-standard","hentry","category-centos7"],"acf":[],"_links":{"self":[{"href":"https:\/\/www.kinryo.net\/index.php?rest_route=\/wp\/v2\/posts\/1409","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kinryo.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kinryo.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kinryo.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kinryo.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1409"}],"version-history":[{"count":10,"href":"https:\/\/www.kinryo.net\/index.php?rest_route=\/wp\/v2\/posts\/1409\/revisions"}],"predecessor-version":[{"id":4369,"href":"https:\/\/www.kinryo.net\/index.php?rest_route=\/wp\/v2\/posts\/1409\/revisions\/4369"}],"wp:attachment":[{"href":"https:\/\/www.kinryo.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1409"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kinryo.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1409"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kinryo.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1409"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}