How do you monitor your virtual machines for security breaches?
3330 pts.
0
Q:
How do you monitor your virtual machines for security breaches?
How do you monitor your VM's for security breaches? What are your go-to tools?
ASKED: Aug 26 2009  9:24 PM GMT
_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _
0
660 pts.
0
A:
 RATE THIS ANSWER
0
Click to Vote:
  •   0
  •  0
  • AddThis Social Bookmark Button
We regularly scan all of our hosts, physical and virtual, with Nessus, looking for vulnerabilities. In addition, for *nix hosts, we have AIDE configured and running daily reports, looking for new/modified files in critical areas. We also have Sourcefire IPDS sensors littered around our network, sniffing for suspect behavior.

I'm sure I'm missing something. We've spent a fair bit of time and money looking for a good balance of security and usability.
Last Answered: Aug 27 2009  3:07 PM GMT by Sonotsky   660 pts.
0
0
Discuss This Answer:
_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _



_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _

KevinBeaver   7610 pts.  |   Aug 28 2009  8:24PM GMT

You have to treat your VMs just like your physical hosts. Harden them, scan them, and monitor them in the same ways because they have the same issues.

 
0