Samhain | ||
---|---|---|
<<< Previous | List of configuration file options | Next >>> |
Section heading:
[Kernel]
Entries:
KernelCheckActive=true/false — 'true' to switch on, 'false' to switch off.
KernelCheckInterval=seconds — Interval between checks.
KernelCheckIDT=true/false — Check the Interrupt Descriptor Table (default true).
SeverityKernel=severity — Severity for events.
<<< Previous | Home | Next >>> |
Watching login/logout events | Up | Checking for SUID/SGID files |