FelixDzerzhinsky
08-02-2004, 02:06 PM
I am not very experienced with linux. I have previously installed debian using Knoppix as an installer.
After installing I immediatly install tripwire and bastille and chkrootkit and poff the internet.
I then, chkrootkit, dpkg-reconfigure tripwire and InteractiveBastille. I reboot (necessary only for Bastille.
My first point of call is www.grc.com to check my firewall is working correctly. This is where it gets wierd. With knoppix installed to the hard drive I get a "True Stealth" response and a pat on the back saying my common ports don't respond to pings etc.
I did the same with debian sarge netinstalled and I FAIL the True Stealth test. No long afterwards I recieve a rootkit! Reinstalling begins.
My network configuration doesn't change whether using debian Sarge or knoppix-hdinstall.
My question is as knoppix is based on Sarge why am I getting such a different reponse after setting up Bastille? I did this two or three times. what am I doing wrong?
What other info would you need to diagnose this problem?
Otherwise the new debian installer works for me in expert mode, once I sussed out how the partitioning worked. The only annoying thing was it kept asking me about my pcmcia after I told it no twice!
After installing I immediatly install tripwire and bastille and chkrootkit and poff the internet.
I then, chkrootkit, dpkg-reconfigure tripwire and InteractiveBastille. I reboot (necessary only for Bastille.
My first point of call is www.grc.com to check my firewall is working correctly. This is where it gets wierd. With knoppix installed to the hard drive I get a "True Stealth" response and a pat on the back saying my common ports don't respond to pings etc.
I did the same with debian sarge netinstalled and I FAIL the True Stealth test. No long afterwards I recieve a rootkit! Reinstalling begins.
My network configuration doesn't change whether using debian Sarge or knoppix-hdinstall.
My question is as knoppix is based on Sarge why am I getting such a different reponse after setting up Bastille? I did this two or three times. what am I doing wrong?
What other info would you need to diagnose this problem?
Otherwise the new debian installer works for me in expert mode, once I sussed out how the partitioning worked. The only annoying thing was it kept asking me about my pcmcia after I told it no twice!