← Back to all services
Security

AIDE File Integrity Checker Configuration

aide systemctl: N/A (cron-based)

Advanced Intrusion Detection Environment. Detects file system changes.

🔌 Default Port

N/A
N/A
Local file integrity checker

📦 Installation Command

apt install aide aide-common

⚙️ Configuration Files

  • /etc/aide/aide.conf
  • /etc/aide/aide.conf.d/

📂 Default Directories

  • config: /etc/aide
  • data: /var/lib/aide
  • logs: /var/log/aide
  • database: /var/lib/aide/aide.db

🔐 Default Credentials

Username:N/A
Password:N/A
💡 Requires root

⚠️ Conflicts

N/A Port: N/A

✅ Works With

lynisossectripwire

🛡️ Security Notes

Initialize database on clean system, store database backup offline, update after legitimate changes

❓ Frequently Asked Questions

What is AIDE?
AIDE monitors filesystem changes to detect unauthorized modifications - a host-based IDS.
How to initialize AIDE database?
Run: sudo aideinit to create the baseline database.
How to run AIDE check?
Run: sudo aide --check to compare current state with baseline.