Difference between revisions of "FCCU Forensics"

From ERPXE Wiki
 
(One intermediate revision by the same user not shown)
Line 50: Line 50:
 
{{PluginInstructionsEnd}}
 
{{PluginInstructionsEnd}}
 
[[Category:Plugins]]
 
[[Category:Plugins]]
[[Category:Plugins-LinuxLive]]
+
[[Category:Security Diagnostics]]
 +
[[Category:Supported from ERPXE 1.0]]

Latest revision as of 19:16, 4 April 2012

Important information

This plugin requires a static IP address (Default is 10.0.0.1).
Every change to the server IP MUST be reflected into the plugin's menu file.
How to adjust ERPXE to local IP address

return to Plugins list

FCCU Forensics 12.1

http://www.lnx4n6.be/

Information

ERPXE Module

  • Name: - FCCU Forensics
  • Version: 12.1

Plugin type

Plugin type
FCCU Forensics Anti-Virus Deployment Diagnostics OS Installation Live Media Recovery Tools
No No No Yes Yes Yes

Plugin Requirments

Plugin Requirments
FCCU Forensics CIFS HTTP Internet NFS Linux OS Windows OS
No No No Yes Yes Yes

Screen Shots

Special Information

The FCCU GNU/Linux Forensic Boot CD is a Live CD built on top of Debian.

It focuses on incident response and computer forensics.

The authors welcome comments and suggestions.

Linux Installation Instructions

Download fccu121-XXX.tar.gz to /

https://sourceforge.net/projects/erpxe/files/plugins/

extract fccu121-XXX.tar.gz file:

tar -xvzf fccu121-XXX.tar.gz

Download FCCU 12.1 ISO Latest Version to /mnt/ :

http://www.lnx4n6.be/index.php?sec=Downloads&page=bootcd

Mount ISO file to temporary location (/mnt/cdrom/)

mkdir /mnt/cdrom/
mount -o loop /mnt/fccu-linux-cd-12.1.iso /mnt/cdrom/

Copy initrd1.img , vmlinuz1 , filesystem.* to appropriate directory: (LOWER CASE ONLY!)

cp /mnt/cdrom/live/vmlinuz1 /tftpboot/er/plugins/fccu/vmlinuz1
cp /mnt/cdrom/live/initrd1.img /tftpboot/er/plugins/fccu/initrd1.img 
cp /mnt/cdrom/live/filesystem.* /tftpboot/er/shares/fccu/live/

Verify files with filelist.txt in each folder.

All Done!