Eu quero usar debsums
para verificar a integridade de todos os meus pacotes com
sudo dpkg -l | awk {'print $2'} | xargs | debsums |grep -v OK
Mas eu recebo esses erros:
debsums: can't open fwupd file /var/lib/polkit-1/localauthority/10-vendor.d/fwupd.pkla (Permission denied)
debsums: can't open geoclue-2.0 file /var/lib/polkit-1/localauthority/10-vendor.d/geoclue-2.0.pkla (Permission denied)
debsums: can't open gnome-initial-setup file /var/lib/polkit-1/localauthority/10-vendor.d/gnome-initial-setup.pkla (Permission denied)
debsums: can't open linux-image-5.0.0-31-generic file /boot/vmlinuz-5.0.0-31-generic (Permission denied)
debsums: can't open linux-image-5.0.0-32-generic file /boot/vmlinuz-5.0.0-32-generic (Permission denied)
debsums: can't open linux-modules-5.0.0-31-generic file /boot/System.map-5.0.0-31-generic (Permission denied)
debsums: can't open linux-modules-5.0.0-32-generic file /boot/System.map-5.0.0-32-generic (Permission denied)
debsums: can't open network-manager file /var/lib/polkit-1/localauthority/10-vendor.d/org.freedesktop.NetworkManager.pkla (Permission denied)
debsums: can't open packagekit file /var/lib/polkit-1/localauthority/10-vendor.d/org.freedesktop.packagekit.pkla (Permission denied)
debsums: can't open policykit-desktop-privileges file /var/lib/polkit-1/localauthority/10-vendor.d/com.ubuntu.desktop.pkla (Permission denied)
debsums: can't open systemd file /var/lib/polkit-1/localauthority/10-vendor.d/systemd-networkd.pkla (Permission denied)
Como evito esses erros? E por que o root não consegue ler esses arquivos?
Finalmente, gostaria de criar um sistema mínimo de detecção de rootkits que envie um e-mail se houver alguma saída
1 respostas