[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
UPDATE for 3.5 : securitu/prelude*
Hi,
I have updated my Prelude-IDS' ports for OpenBSD 3.5 : see
http://www.prelude-ids.org for details about Prelude.
Prelude is an innovative Hybrid Detection Intrusion System designed to be
very modular, distributed, rock solid and fast.
Prelude is composed with different components :
- libprelude is a shared library needed for communications and other
features needed by prelude-manager and sensors.
port of libprelude-0.8.10 :
http://foxy.free.fr/OpenBSD/prelude/ports_libprelude-0.8.10.tar.gz
- prelude-manager is the central logging point for sensors (lml, nids,
pflogger). It logs alerts to different back-ends (text file, MySQL and
PostgreSQL DB)
port of prelude-manager-0.8.10 (with MySQL and PostgreSQL flavor):
http://foxy.free.fr/OpenBSD/prelude/ports_prelude-manager-0.8.10.tar.gz
- prelude-nids watches for network traffic and looks for familiar
patterns. This is functionnaly equivalent to Snort.
port of prelude-nids-0.8.6 :
http://foxy.free.fr/OpenBSD/prelude/ports_prelude-nids-0.8.6.tar.gz
- prelude-lml monitors local logfiles and sends alerts to manager if
something suspicious is found (SSH logging, open session for root...)
port of prelude-lml-0.8.6 :
http://foxy.free.fr/OpenBSD/prelude/ports_prelude-lml-0.8.6.tar.gz
- prelude-pflogger is a Prelude sensor specially developped for OpenBSD
PF. It sends alerts to manager for OpenBSD PF logged packets.
port of prelude-pflogger-0.8.0 :
http://foxy.free.fr/OpenBSD/prelude/ports_prelude-pflogger-0.8.0.tar.gz
Ports built and tested on OpenBSD 3.5 / i386.
Reports of tests, bugs and improvements are welcome.
A++ Foxy
--
Laurent Cheylus <foxy@free.fr> OpenPGP ID 0x5B766EC2