LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 07-28-2016, 10:44 AM   #1
miramarcos
Member
 
Registered: Oct 2011
Posts: 128

Rep: Reputation: Disabled
RKHunter on 16.04 ubuntu


have downloaded description from DigitalOcean community for commands to use it on ubuntu 12.04, can I use same commands on 16.04 ?
miramarcos
 
Old 07-28-2016, 11:19 AM   #2
Habitual
LQ Veteran
 
Registered: Jan 2011
Location: Abingdon, VA
Distribution: Catalina
Posts: 9,374
Blog Entries: 37

Rep: Reputation: Disabled
miramarcos:

Are you referring to https://www.digitalocean.com/communi...-an-ubuntu-vps ?
Yes, the c-line stuff is mostly the same.
See also https://help.ubuntu.com/community/RKhunter
 
1 members found this post helpful.
Old 08-01-2016, 10:36 AM   #3
Habitual
LQ Veteran
 
Registered: Jan 2011
Location: Abingdon, VA
Distribution: Catalina
Posts: 9,374
Blog Entries: 37

Rep: Reputation: Disabled
miramarcos:
How's it going? Any progress?
 
Old 08-01-2016, 11:09 AM   #4
miramarcos
Member
 
Registered: Oct 2011
Posts: 128

Original Poster
Rep: Reputation: Disabled
hello,
haven't got time yet to install the program, but we think we'll need it to get working on our ubuntu 16.04. Suspect something strange that does need to get discovered and eliminated.
miramarcos
 
Old 08-01-2016, 11:13 AM   #5
Habitual
LQ Veteran
 
Registered: Jan 2011
Location: Abingdon, VA
Distribution: Catalina
Posts: 9,374
Blog Entries: 37

Rep: Reputation: Disabled
The advice I gave earlier was too terse, and I am sorry about that.
For the installation, I wouldn't use those commands from that page.

And I have different instructions for 1.4.3, the latest.
(assuming root in terminal
Code:
cd /usr/src/
wget http://rkhunter.cvs.sourceforge.net/viewvc/rkhunter/rkhunter/?view=tar
mv index.html\?view\=tar rkhunter.tar.gz
tar zxf rkhunter.tar.gz
mv rkhunter rkhunter-1-4-3
cd  rkhunter-1-4-3
./installer.sh --install
rkhunter --update
This method of installation is not managed by the apt package manager and its maintenance is entirely up to you,
and I would remove the package manager version before installing using this method.

Holler if you need additional help.

Attached is my wiki page on my rkhunter notes for the Ubuntu environment.
Attached Files
File Type: pdf rkhunter.pdf (54.9 KB, 18 views)

Last edited by Habitual; 08-02-2016 at 11:15 AM.
 
Old 08-03-2016, 05:15 AM   #6
miramarcos
Member
 
Registered: Oct 2011
Posts: 128

Original Poster
Rep: Reputation: Disabled
Thanks for your help, I used Synaptic to get it installed. According to the terminal check I have the latest version. But now, do I have to configure it ?, inside the terminal I got many # and at the end line ^G ^etc. etc. How can I e.g. under 'set up mail notifications' put in my email address, or does the system have that being 'root'. also how to I create a 'whitelist known script files ? Have not read your attachment though.
regards
miramarcos
 
Old 08-03-2016, 09:07 AM   #7
Habitual
LQ Veteran
 
Registered: Jan 2011
Location: Abingdon, VA
Distribution: Catalina
Posts: 9,374
Blog Entries: 37

Rep: Reputation: Disabled
Synaptic installed 1.4.3? Great!

I don't know what "in terminal I got many # and ^Gs" means
Did you open a file from a Windows computer on the Linux host and edit?
See first http://rkhunter.cvs.sourceforge.net/...nter/files/FAQ
 
Old 08-03-2016, 09:42 AM   #8
miramarcos
Member
 
Registered: Oct 2011
Posts: 128

Original Poster
Rep: Reputation: Disabled
No, not the latest, but 1.4.2 version, tried to get 1.4.3 with no avail, also the website you described in yr previous thread, still doesn't have this version to download.
miramarcos
 
Old 08-03-2016, 10:03 AM   #9
Habitual
LQ Veteran
 
Registered: Jan 2011
Location: Abingdon, VA
Distribution: Catalina
Posts: 9,374
Blog Entries: 37

Rep: Reputation: Disabled
Quote:
Originally Posted by miramarcos View Post
No, not the latest, but 1.4.2 version, tried to get 1.4.3 with no avail, also the website you described in yr previous thread, still doesn't have this version to download.
miramarcos
Did I say visit a website and install it?
Avail yourself of what the instructions said.
Code:
...
wget http://rkhunter.cvs.sourceforge.net/viewvc/rkhunter/rkhunter/?view=tar...
And don't use phonespeak. "Your" is spelled your, not "yr".

You're not answering my questions.

Good Luck. Someone else may feel up to it.

But if you want to stay with "what the repo installed.", I cannot argue.
New users should stick to repository-based software IMNSHO.

"The first run of 'rkhunter' after installation may give some warning messages" on a Xubuntu beta, clean install system.
I have no doubt that the edits necessary haven't changed too much from that.

https://help.ubuntu.com/community/RKhunter and the rkhunter.pdf I attached both discuss the edits necessary in /etc/rkhunter.conf.
/etc/rkhunter.conf is liberally commented.

Last edited by Habitual; 08-03-2016 at 12:12 PM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
rkhunter scan: 1 Rootkit & 6 Possible Suspect Files /var/log/rkhunter.log included Mollusc Linux - Security 10 09-29-2011 08:43 AM
/var/log/rkhunter.log - rkhunter's (rootkit detection) logfile ahartman Linux - Security 1 07-04-2009 05:28 PM
Ubuntu and rkhunter, problem? Neo-Leper Linux - Security 3 08-03-2007 11:14 AM
rkhunter phatbastard Linux - Security 3 12-08-2004 09:44 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 06:25 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration