OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: SHAIFUL HASHIM (s.hashimusa.net)
Date: Wed May 23 2001 - 10:38:08 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    Hi,

    Have a look at cfengine. It is available at

    http://www.iu.hioslo.no/cfengine/

    or better still, go to http://www.securityfocus.com/ and look under
    tools->intrusion detection->host

    Regards,
    Shaiful

    xternal <xternal1yahoo.com> wrote:
    This is a rather desperate attempt, but I figure I'd
    give it a shot. I'm looking for an open-source HIDS
    that come with, or is easily extensible to provide
    notifications to a central logging server. Now, the
    scary part is, I'd like to find a package that support
    both MS and Unix systems. Granted, the whole process
    of determining intrusion events between those
    platforms is almost completely different, but, the
    formatting of messages and notifications to a central
    server would be nice if consistent. Otherwise, the
    task would require in house coding from scratch, 2
    systems, or parsing of incoming notifications into a
    common format. Ideas?

    ____________________________________________________________________
    Get free email and a permanent address at http://www.netaddress.com/?N=1