Would you please direct me to a source that will define specific areas to monitor for intrusion detection on a UNIX system, with the possibility of scripts for HP-UX to help better organize, define and audit for intrusion detection?
You should also look at HP, too. HP has a number of products lumped together as "Praesidium" that include intrusion detection among them. They are among the best available for any Unix, so you should strongly consider looking at that. Also, on their Web site, they have a number of security-related manuals, papers and topics, which I found by searching for "intrusion detection." Take a look at http://my.itrc.hp.com/ for more information.
This was first published in March 2001