Tuesday, October 28, 2008

Linux Forensics

We started playing around with Fedora in the last class on Monday. Fedora is running as a virtual machine using VMware Player.

We learned about the booting process of a computer and covered a few terms such as bootstrap, kernel, multiprogramming, time sharing and virtual memory to name a few. We also started to learn a few things about the Linux operating system and how it works, particularly about processes and how they are created and managed. We still have a LOT to learn about this beast, however.

We started exploring the /proc folder which is a virtual file system that resides entirely in memory. The previous link has a lot of good information about the contents of this folder.

No comments: