[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

UPDATE for 3.5 : securitu/prelude*



Hi,

I have updated my Prelude-IDS' ports for OpenBSD 3.5 : see 
http://www.prelude-ids.org for details about Prelude.

Prelude is an innovative Hybrid Detection Intrusion System designed to be 
very modular, distributed, rock solid and fast.

Prelude is composed with different components :

- libprelude is a shared library needed for communications and other 
features needed by prelude-manager and sensors.

port of libprelude-0.8.10 : 
http://foxy.free.fr/OpenBSD/prelude/ports_libprelude-0.8.10.tar.gz

- prelude-manager is the central logging point for sensors (lml, nids, 
pflogger). It logs alerts to different back-ends (text file, MySQL and 
PostgreSQL DB)

port of prelude-manager-0.8.10 (with MySQL and PostgreSQL flavor):
http://foxy.free.fr/OpenBSD/prelude/ports_prelude-manager-0.8.10.tar.gz

- prelude-nids watches for network traffic and looks for familiar 
patterns. This is functionnaly equivalent to Snort.

port of prelude-nids-0.8.6 : 
http://foxy.free.fr/OpenBSD/prelude/ports_prelude-nids-0.8.6.tar.gz

- prelude-lml monitors local logfiles and sends alerts to manager if 
something suspicious is found (SSH logging, open session for root...)

port of prelude-lml-0.8.6 :
http://foxy.free.fr/OpenBSD/prelude/ports_prelude-lml-0.8.6.tar.gz

- prelude-pflogger is a Prelude sensor specially developped for OpenBSD 
PF. It sends alerts to manager for OpenBSD PF logged packets.

port of prelude-pflogger-0.8.0 :
http://foxy.free.fr/OpenBSD/prelude/ports_prelude-pflogger-0.8.0.tar.gz

Ports built and tested on OpenBSD 3.5 / i386.

Reports of tests, bugs and improvements are welcome.

A++ Foxy

-- 
Laurent Cheylus <foxy@free.fr> OpenPGP ID 0x5B766EC2