CIDS Directory Structure
The CIDS directory structure follows a hierarchy modeled
after the UNIX OS. The organization of the structure allows administrators to
locate important system and configuration files quickly. The only variable in
the directory structure is the name and location of the installation directory
on Windows NT 4.0 servers. As seen in Figure 24-12, below the
install directory, each structure is the same on both the director and the
sensors. The following are the directories installed on both the sensors and the
director platforms:
The Install Directory (/usr/nr)
The installation directory on the
sensors is the nr directory, which is a subdirectory of /usr, so the installation directory on all sensors is /usr/nr. Sensor appliances come with the IDS software
preinstalled, so the installation directory should always be /usr/nr.
The bin Directory (usr/nr/bin)
The bin directory is used for the
storage of all the executable files for CIDS. All CIDS’ daemons, services, and
functions are stored in the /<install dir>/bin directory. These files were defined earlier in this
chapter. The files stored in the bin directory can be loosely grouped into three
categories:
-
Daemons
-
Configuration Commands
-
System Commands
The etc Directory (usr/nr/etc)
The etc directory (pronounced etsee) is a common UNIX directory used for storing system
configuration files. Anyone experienced with the UNIX OS should be familiar with
the etc directory and the types of files stored there. The etc directory on the
sensors and director platforms stores the following two types of files:
The var Directory (usr/nr/var)
The var directory is the default
directory for all log files. Files created by loggerd and error files for all
the daemons are stored in this directory.
359 times read
|
|
|
Did you enjoy this article?
(total 0 votes)
|