Chapter 10. Security Monitoring and Logging

In this chapter, we will discuss the following topics:

  • Viewing and managing log files using Logcheck
  • Monitoring a network using Nmap
  • Using glances for system monitoring
  • Monitoring logs using MultiTail
  • Using system tools – Whowatch
  • Using system tools – stat
  • Using system tools – lsof
  • Using system tools – strace
  • Using Lynis

Viewing and managing log files using Logcheck

As an administrator, while checking for malicious activities on the system or any software issue, log files play a very important role. However, with an increasing amount of software, the number of log files being created has also increased. This makes it very difficult for the administrator to analyze log files properly.

In such scenarios, Logcheck ...

Get Practical Linux Security Cookbook now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.