Which of the following will help detect changes made by an
intruder to the system log of a server?

A. Mirroring of the system log on another server

B. Simultaneously duplicating the system log on a write-once
disk

C. Write protecting the directory containing the system log

D. Storing the backup of the system log offsite

Answer Posted / guest

Answer: B

A write-once CD cannot be overwritten. Therefore, the system
log duplicated on the disk could be compared to the original
log to detect differences, which could be the result of
changes made by an intruder. Write protecting the system log
does not prevent deletion or modification, since the
superuser can override the write protection. Backup and
mirroring may overwrite earlier files and may not be current.

Is This Answer Correct ?    11 Yes 0 No



Post New Answer       View All Answers


Please Help Members By Posting Answers For Below Questions

WHICH OF THE FOLLOWING IS OFTEN AN ADVANTAGE OF USING PROTOTYPING GOR DYDTEM DVELOPMENT

2975


purchase orders issued to vendors have been authorized as per the authorization matrix

1204