check-ps 0.8.5
Sponsored Links
check-ps 0.8.5 Ranking & Summary
File size:
0.022 MB
Platform:
Any Platform
License:
GPL (GNU General Public License)
Price:
Downloads:
1205
Date added:
2006-07-11
Publisher:
Jeff Yestrumskas
check-ps 0.8.5 description
Devialog is a behavior/anomaly-based syslog intrusion detection system which detectsattacks via anomalies in syslog.
Present log-based IDS:
Nearly all present log-based intrusion detection systems operate using a pre-defined known signature base, usually painstakingly created by hand. They can work well if the creator knows exactly all error and informational messages the software on a system(s) will write to syslog. Most overworked administrators wish there was an easier way to handle system logfiles in a sane, time-saving fashion. Present log-based intrusion detection systems have difficulty in detecting new attacks.
How devialog Differs:
devialog makes syslog parsing far less of a chore than it previously has been. It is functionally the inverse of standard log monitoring software. devialog, by default, reports on what is not know in its signature base, i.e. anomalous. This type of intrusion detection system is considered behavior-based, or anomaly detection. Reporting can be in the form of an email for each anomalous log, or an email for all the logs sent within a pre-defined time window. devialog can also execute commands, or simply write all anomalies to a file for periodical review.
Signature Creation:
For log-based anomaly detection to operate effectively, one must create an extremely large signature base. With an included utility, devialogsig, the signatures are created automatically. Future signature additions are ver simple, like a copy from the alert email.
Present log-based IDS:
Nearly all present log-based intrusion detection systems operate using a pre-defined known signature base, usually painstakingly created by hand. They can work well if the creator knows exactly all error and informational messages the software on a system(s) will write to syslog. Most overworked administrators wish there was an easier way to handle system logfiles in a sane, time-saving fashion. Present log-based intrusion detection systems have difficulty in detecting new attacks.
How devialog Differs:
devialog makes syslog parsing far less of a chore than it previously has been. It is functionally the inverse of standard log monitoring software. devialog, by default, reports on what is not know in its signature base, i.e. anomalous. This type of intrusion detection system is considered behavior-based, or anomaly detection. Reporting can be in the form of an email for each anomalous log, or an email for all the logs sent within a pre-defined time window. devialog can also execute commands, or simply write all anomalies to a file for periodical review.
Signature Creation:
For log-based anomaly detection to operate effectively, one must create an extremely large signature base. With an included utility, devialogsig, the signatures are created automatically. Future signature additions are ver simple, like a copy from the alert email.
check-ps 0.8.5 Screenshot
check-ps 0.8.5 Keywords
Intrusion Detection System
Intrusion Detection
detection system
Syslog
detection
devialog
system
intrusion
anomalies
check-ps
checkps
check-ps 0.8.5
Monitoring
System
Bookmark check-ps 0.8.5
check-ps 0.8.5 Copyright
WareSeeker periodically updates pricing and software information of check-ps 0.8.5 full version from the publisher, so some information may be slightly out-of-date. You should confirm all information before relying on it. Software piracy is theft, Using crack, password, serial numbers, registration codes, key generators is illegal and prevent future development of check-ps 0.8.5 Edition. Download links are directly from our publisher sites, torrent files or links from rapidshare.com, yousendit.com or megaupload.com are not allowed
Featured Software
Want to place your software product here?
Please contact us for consideration.
Contact WareSeeker.com
Related Information
intrusion detection systems
network intrusion detection system
intrusion detection software
intrusion detection system ids
intrusion detection systems comparison
intrusion detection system software
intrusion detection system reviews
intrusion detection system roles
detection systems
network intrusion detection
intrusion detection and prevention
detection systems inc
commercial intrusion detection system
evaluating network intrusion detection systems
ips
introduction to intrusion detection systems
what is intrusion detection system
security intrusion detection
Related Software
An open source PERL script providing intrusion detection and policy enforcement. Free Download
Hackedbox is a stripped down version of Blackbox Window Manager. Free Download
THC-Snooze is a framework for network traffic analysis. Free Download
Preview is a simple image viewer for GNUstep. Free Download
Pong 3D project is a OpenGL Pong clone. Free Download
pynids allows network sniffing, IP defrag, TCP stream reassembly, port scan detection Free Download
libsmtp allows programs to send mail directly through SMTP (no sendmail needed). Free Download
Firestorm is an extremely high performance network intrusion detection system (NIDS). Free Download
Latest Software
Popular Software
Favourite Software