I just got a few LinuxCare Bootable Toolboxes (v 2.0) in the mail. I like the concept. Has anyone reproduced this effort in the form of a forensics toolkit? I would think the following should be considered: - tct (without a doubt) - ability to use NFS mounting to store forensic data - ability to use a syslog daemon on another machine (laptop exporting nfs and syslog would solve the above 2 issues). - ability to get sigs from partitions Any other thoughts? Thanks, JJ -- J. J. Horner "H*","6d6174686c696e40326a6e6574776f726b732e636f6d" *************************************************** "H*","6a6a686f726e65724062656c6c736f7574682e6e6574" Freedom is an all-or-nothing proposition: either we are completely free, or we are subjects of a tyrannical system. If we lose one freedom in a thousand, we become completely subjugated.
This archive was generated by hypermail 2b30 : Thu Oct 04 2001 - 09:41:35 PDT