Hi,
In order to provide Auditors with information, are there any report generating tools with HIDS?
Some reports I am looking for is:
-To show what is being monitored and what is being ignored in regards to Modification of Files/Directories, World-Writable files, Modification of another user...etc
-A quick report to show what alerts have appeared during a certain time frame.
I understand I can use files like /var/opt/ids/schedule and logs found in /var/opt/ids/gui/logs. I am just hoping that there is something more user friendly and readable.
Thanks
Andrew Pollard