Firestorm 0.5.5
Sponsored Links
Firestorm 0.5.5 Ranking & Summary
File size:
0.22 MB
Platform:
Any Platform
License:
GPL (GNU General Public License)
Price:
Downloads:
1214
Date added:
2006-07-07
Publisher:
Gianni Tedesco
Firestorm 0.5.5 description
Firestorm is an extremely high performance network intrusion detection system (NIDS). At the moment it just a sensor but plans are to include real support for analysis, reporting, remote console and on-the-fly sensor configuration. It is fully pluggable and hence extremely flexible. Firestorm performs a lot better than all other systems I have tested (such as snort and prelude) by as much as a factor of 2 (and thats under favourable conditions, it way outstrips the competition under a targeted DoS attack).
A Network Intrusion Detection System is a system which can identify suspicious patterns in network traffic. If a firewall is a doorman, a NIDS is an undercover KGB agent. He silently gathers intelligence and can watch an enemy even if the door security has already let them in (maybe the enemy can make fake identification documents).
Tested Platforms
Linux 2.x
FreeBSD 4.x
OpenBSD
Solaris
Should compile and run on any mainstream UNIX really...
Main features:
- Protocol anomaly detection
- Full application layer decodes
- Fully pluggable
- High performance OS Specific capture module for Linux
- Capture from libpcap files (normal AND redhat extended)
- Packet decode engine fully supports encapsulation
- Decode plugins included for many protocols (see below)
- Comprehensive snort rule support
- Wu-Manber setwise string matching
- Easy to configure; just one config file
- Can run chroot and with lowered privs (when started as root)
- Can run as a realtime process (when started as root)
- Preprocessors to allow supplementary modes of detection (eg: anomaly)
- Full IP defragmentation (passes fragroute evasion tests)
- TCP stateful inspection with window tracking
- Intelligent TCP stream reassembly
- HTTP URL normalization
- EXTREMELY fast and scalable signature engine
- Configurable token-bucket rate-limiting of any alerts
- GNOME2 based analyst console user interface
- Enhanced logging format for ease of analysis
- ELOG indexing for lightning fast sorting and filtering of alerts
A Network Intrusion Detection System is a system which can identify suspicious patterns in network traffic. If a firewall is a doorman, a NIDS is an undercover KGB agent. He silently gathers intelligence and can watch an enemy even if the door security has already let them in (maybe the enemy can make fake identification documents).
Tested Platforms
Linux 2.x
FreeBSD 4.x
OpenBSD
Solaris
Should compile and run on any mainstream UNIX really...
Main features:
- Protocol anomaly detection
- Full application layer decodes
- Fully pluggable
- High performance OS Specific capture module for Linux
- Capture from libpcap files (normal AND redhat extended)
- Packet decode engine fully supports encapsulation
- Decode plugins included for many protocols (see below)
- Comprehensive snort rule support
- Wu-Manber setwise string matching
- Easy to configure; just one config file
- Can run chroot and with lowered privs (when started as root)
- Can run as a realtime process (when started as root)
- Preprocessors to allow supplementary modes of detection (eg: anomaly)
- Full IP defragmentation (passes fragroute evasion tests)
- TCP stateful inspection with window tracking
- Intelligent TCP stream reassembly
- HTTP URL normalization
- EXTREMELY fast and scalable signature engine
- Configurable token-bucket rate-limiting of any alerts
- GNOME2 based analyst console user interface
- Enhanced logging format for ease of analysis
- ELOG indexing for lightning fast sorting and filtering of alerts
Firestorm 0.5.5 Screenshot
Firestorm 0.5.5 Keywords
NIDS
Firestorm 0.5.5
Network intrusion detection system
network intrusion detection
Intrusion Detection System
extremely high performance
network intrusion
Intrusion Detection
high performance
detection system
performance network
extremely high
firestorm
network
detection
system
Bookmark Firestorm 0.5.5
Firestorm 0.5.5 Copyright
WareSeeker periodically updates pricing and software information of Firestorm 0.5.5 full version from the publisher, so some information may be slightly out-of-date. You should confirm all information before relying on it. Software piracy is theft, Using crack, password, serial numbers, registration codes, key generators is illegal and prevent future development of Firestorm 0.5.5 Edition. Download links are directly from our publisher sites, torrent files or links from rapidshare.com, yousendit.com or megaupload.com are not allowed
Featured Software
Want to place your software product here?
Please contact us for consideration.
Contact WareSeeker.com
Related Information
intrusion detection systems
evaluating network intrusion detection systems
network intrusion detection system nids
intrusion detection system ids
intrusion detection systems comparison
network intrusion detection software
intrusion detection system software
network intrusion detection tools
intrusion detection system reviews
intrusion detection system roles
network intrusion detection systems
network intrusion detection appliance
detection systems
jegs high performance
network intrusion detection and prevention
detection systems inc
network intrusion detection system products
intrusion detection software
Version History
Related Software
wifimon is a bash script that works in text mode and writes on the screen basic parameters of all wifi cards in the system. Free Download
FTester (The Firewall Tester) is a tool designed for testing firewalls filtering policies and Intrusion Detection System (IDS). Free Download
The Firewall Tester (FTester) is a tool designed for testing firewalls filtering policies and Intrusion Detection System (IDS) c Free Download
Y.A.P.R.M. is a modeller to graphicaly design 3d scenes and generate Povray-files for them. Free Download
Cricket is a high performance, extremely flexible system for monitoring trends in time-series data. Free Download
NetXMS is a monitoring system with a modular architecture. Free Download
pynids allows network sniffing, IP defrag, TCP stream reassembly, port scan detection Free Download
ARPSpoofDetector performs active and passive detection of ARP spoofing and IP (IPv4) address collision. Free Download
Latest Software
Popular Software
Favourite Software