Go Back   openSUSE Forums > Archives > SLS Archives > ARCHIVES - SuSE Linux > ARCHIVES - Network & Security > ARCHIVES - Security
Forums FAQ Members List Search Today's Posts Mark Forums Read


ARCHIVES - Security Want to know if you should really apply the latest kernel patch? Want to know how to configure your firewall? Discuss any Security related topics in here!

 
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 10-Nov-2006, 22:16
micro_xii
Guest
 
Posts: n/a
Thumbs up

Greetings:

I install the Clamav which is bundle in SLES9. Now I dont know what to do.
1.Is this clamav is running automatically. How to update this and How to scan.
2. This integrates with mail servers (attachment scanning) right, im using groupwise 7 but seems I dont see any scanning performed?

Can anyone give me tips
  #2 (permalink)  
Old 10-Nov-2006, 23:59
leavingwindows
Guest
 
Posts: n/a
Default

clam is a command line antivirus, the illustrious deltaflyer helped me out on this.
the trick is to install klamav, it will give you a gui to work with, when it scans it will find many problems, which will be mostly file size related, don't worry about those, you can check it's effectiveness by downloaded the eicar test file (the zips) at www.eicar.org the other files dos and text work only with realtime scanners, which i will get into in a moment. you can place the eicar zip anywhere you like and run a scan, it will find it, thus insuring that it works. these are just texts, not viruses, they used for testing by all the major antivirus vendors. it does nothing to your pc.

I didn't set klam to autoscan for two reasons, the dazuko module isn't compatible with apparmor, but that's in the more recent versions of SuSE, and two why waste the resources for a desktop? However, if you're serving mail or files, then by all means activate it.
when starting up, klamav will configure the file to save the definitions to, they're usually in home, when you go into root, for what ever reason and want to use it to scan files that are not accesable from user, you have to point it towards the same file (/home/username/.klamav), because it will try to set up a file in root, but you won't, nor do you want to, connect on-line and update those while in root. also you can set it up to scan your kontact e-mail, remember not all e-mails are compatible, spamassassin works well. you will also have to install, i believe amavisd-new, to work with your content checkers like spamassassin and klamav. if I'm wrong someone should correct me on this here shortly.
remember, dazuko will install if you choose autoscan, but you will have to point klamav to the files you want it to watch. antiviruses for linux work differently than they did on microslop. don't expect mclaffe or symaslacks chorton scanning every bit coming into your system. linux antiviruses, are more designed for servers which send e-mails or other content to vulnerable systems connected to it. if at all, a linux system can only act as a host.

Also the wise sage Oldcpu gave me an article to read, and which I think you should also. (the document is the attachment)

EDIT: if you are going to use your kit as a server, then get NOD32, though it's really for more serious servers which you're shelling out money for (any proprietary antivirus which is geared for servers whether mircroslop or linux is going to be expensive), but it is an incredible antivirus, ran it on my microslop machine and it blew, kaporski (and any variants based on it), mclaffe, chorton, spend micro, out of the water!! stay away from mclaffee's linuxshield. Remember anything that has a realtime scanner is not necessary on your desktop. and only get an antivirus like Nod32 (expensive) if your going to have a lot of traffic through your system.
  #3 (permalink)  
Old 17-Nov-2006, 22:59
micro_xii
Guest
 
Posts: n/a
Thumbs up

Greetings:

I downloaded the file klamav-0.38-installer.tar.gz and try to install but only dazuko is install and Klamav is not..heres the error log

***** KlamAV
***** Running configure (./configure)...
checking build system type... i686-pc-linux-gnu
checking host system type... i686-pc-linux-gnu
checking target system type... i686-pc-linux-gnu
checking for a BSD-compatible install... /usr/bin/install -c
checking for -p flag to install... yes
checking whether build environment is sane... yes
checking for gawk... gawk
checking whether make sets $(MAKE)... yes
checking for kde-config... /opt/kde3/bin/kde-config
* kde-config: Unknown option '--libsuffix'.
* kde-config: Use --help to get a list of available command line options.
checking where to install... /opt/kde3 (as returned by kde-config)
checking for style of include used by make... GNU
checking for gcc... gcc
checking for C compiler default output file name... a.out
checking whether the C compiler works... yes
checking whether we are cross compiling... no
checking for suffix of executables...
checking for suffix of object files... o
checking whether we are using the GNU C compiler... yes
checking whether gcc accepts -g... yes
checking for gcc option to accept ANSI C... none needed
checking dependency style of gcc... gcc3
checking how to run the C preprocessor... gcc -E
checking for g++... g++
checking whether we are using the GNU C++ compiler... yes
checking whether g++ accepts -g... yes
checking dependency style of g++... gcc3
checking whether gcc is blacklisted... no
checking whether g++ supports -Wmissing-format-attribute... yes
checking whether gcc supports -Wmissing-format-attribute... yes
checking whether g++ supports -Wundef... yes
checking whether g++ supports -Wno-long-long... yes
checking whether g++ supports -Wno-non-virtual-dtor... yes
checking whether g++ supports -fno-reorder-blocks... yes
checking whether g++ supports -fno-exceptions... yes
checking whether g++ supports -fno-check-new... yes
checking whether g++ supports -fno-common... yes
checking whether g++ supports -fexceptions... yes
checking whether system headers can cope with -O2 -fno-inline... irrelevant
checking how to run the C++ preprocessor... g++ -E
checking whether g++ supports -O0... yes
checking whether g++ supports -Wl,--no-undefined... yes
checking whether g++ supports -Wl,--allow-shlib-undefined... yes
not using lib directory suffix
checking for a sed that does not truncate output... /usr/bin/sed
checking for egrep... grep -E
checking for ld used by gcc... /usr/i586-suse-linux/bin/ld
checking if the linker (/usr/i586-suse-linux/bin/ld) is GNU ld... yes
checking for /usr/i586-suse-linux/bin/ld option to reload object files... -r
checking for BSD-compatible nm... /usr/bin/nm -B
checking whether ln -s works... yes
checking how to recognise dependent libraries... pass_all
checking for ANSI C header files... yes
checking for sys/types.h... yes
checking for sys/stat.h... yes
checking for stdlib.h... yes
checking for string.h... yes
checking for memory.h... yes
checking for strings.h... yes
checking for inttypes.h... yes
checking for stdint.h... yes
checking for unistd.h... yes
checking dlfcn.h usability... yes
checking dlfcn.h presence... yes
checking for dlfcn.h... yes
checking for g77... g77
checking whether we are using the GNU Fortran 77 compiler... yes
checking whether g77 accepts -g... yes
checking the maximum length of command line arguments... 32768
checking command to parse /usr/bin/nm -B output from gcc object... ok
checking for objdir... .libs
checking for ar... ar
checking for ranlib... ranlib
checking for strip... strip
checking if gcc static flag works... no
checking if gcc supports -fno-rtti -fno-exceptions... no
checking for gcc option to produce PIC... -fPIC
checking if gcc PIC flag -fPIC works... no
checking if gcc supports -c -o file.o... no
checking if we can lock with hard links... yes
checking whether the gcc linker (/usr/i586-suse-linux/bin/ld) supports shared libraries... yes
checking whether -lc should be explicitly linked in... no
checking dynamic linker characteristics... GNU/Linux ld.so
checking how to hardcode library paths into programs... immediate
checking whether stripping libraries is possible... yes
checking for shl_load... no
checking for shl_load in -ldld... no
checking for dlopen... no
checking for dlopen in -ldl... yes
checking whether a program can dlopen itself... yes
checking whether a statically linked program can dlopen itself... yes
checking if libtool supports shared libraries... yes
checking whether to build shared libraries... yes
checking whether to build static libraries... no
configure: creating libtool
appending configuration tag "CXX" to libtool
checking for ld used by g++... /usr/i586-suse-linux/bin/ld
checking if the linker (/usr/i586-suse-linux/bin/ld) is GNU ld... yes
checking whether the g++ linker (/usr/i586-suse-linux/bin/ld) supports shared libraries... yes
checking for g++ option to produce PIC... -fPIC
checking if g++ PIC flag -fPIC works... yes
checking if g++ supports -c -o file.o... yes
checking whether the g++ linker (/usr/i586-suse-linux/bin/ld) supports shared libraries... yes
checking dynamic linker characteristics... GNU/Linux ld.so
checking how to hardcode library paths into programs... immediate
checking whether stripping libraries is possible... yes
checking for shl_load... (cached) no
checking for shl_load in -ldld... (cached) no
checking for dlopen... (cached) no
checking for dlopen in -ldl... (cached) yes
checking whether a program can dlopen itself... (cached) yes
checking whether a statically linked program can dlopen itself... (cached) yes
appending configuration tag "F77" to libtool
checking if libtool supports shared libraries... yes
checking whether to build shared libraries... yes
checking whether to build static libraries... no
checking for g77 option to produce PIC... -fPIC
checking if g77 PIC flag -fPIC works... yes
checking if g77 supports -c -o file.o... yes
checking whether the g77 linker (/usr/i586-suse-linux/bin/ld) supports shared libraries... yes
checking dynamic linker characteristics... GNU/Linux ld.so
checking how to hardcode library paths into programs... immediate
checking whether stripping libraries is possible... yes
checking for msgfmt... /usr/bin/msgfmt
checking for gmsgfmt... /usr/bin/msgfmt
checking for xgettext... /usr/bin/xgettext
checking if C++ programs can be compiled... yes
checking for strlcat... no
checking if strlcat needs custom prototype... yes - in libkdefakes
checking for strlcpy... no
checking if strlcpy needs custom prototype... yes - in libkdefakes
checking for main in -lutil... yes
checking for main in -lcompat... no
checking for crypt in -lcrypt... yes
checking for socklen_t... yes
checking for dnet_ntoa in -ldnet... no
checking for dnet_ntoa in -ldnet_stub... no
checking for inet_ntoa... yes
checking for connect... yes
checking for remove... yes
checking for shmat... yes
checking for sys/types.h... (cached) yes
checking for stdint.h... (cached) yes
checking sys/bitypes.h usability... yes
checking sys/bitypes.h presence... yes
checking for sys/bitypes.h... yes
checking for poll in -lpoll... no
checking Carbon/Carbon.h usability... no
checking Carbon/Carbon.h presence... no
checking for Carbon/Carbon.h... no
checking CoreAudio/CoreAudio.h usability... no
checking CoreAudio/CoreAudio.h presence... no
checking for CoreAudio/CoreAudio.h... no
checking if res_init needs -lresolv... yes
checking for res_init... yes
checking if res_init needs custom prototype... no
checking for killpg in -lucb... no
checking for int... yes
checking size of int... 4
checking for short... yes
checking size of short... 2
checking for long... yes
checking size of long... 4
checking for char *... yes
checking size of char *... 4
checking for dlopen in -ldl... (cached) yes
checking for shl_unload in -ldld... no
checking for size_t... yes
checking size of size_t... 4
checking for unsigned long... yes
checking size of unsigned long... 4
checking sizeof size_t == sizeof unsigned long... yes
checking for PIE support... no
checking if enabling -pie/fPIE support... no
checking crt_externs.h usability... no
checking crt_externs.h presence... no
checking for crt_externs.h... no
checking for _NSGetEnviron... no
checking for vsnprintf... yes
checking for snprintf... yes
* configure: error: Can't find X includes. Please check your installation and add the correct paths!
***** Return value 1

-----all components with no answers, I try to search it in yast but those files did not exist. What should I do? Can anyone help me
  #4 (permalink)  
Old 18-Nov-2006, 02:18
deltaflyer
Guest
 
Posts: n/a
Default

try installing it via smart package manager, makes it easier

andy
  #5 (permalink)  
Old 18-Nov-2006, 03:47
caf4926
Guest
 
Posts: n/a
Default

or add packman repo
 

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




 

Search Engine Friendly URLs by vBSEO 3.3.0 RC2