Security Onion

From HackerNet
Revision as of 21:55, 23 July 2015 by Sparco (talk | contribs)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to: navigation, search

Artikel under arbete

"Security Onion is a Linux distro for intrusion detection, network security monitoring, and log management. It's based on Ubuntu and contains Snort, Suricata, Bro, OSSEC, Sguil, Squert, Snorby, ELSA, Xplico, NetworkMiner, and many other security tools. The easy-to-use Setup wizard allows you to build an army of distributed sensors for your enterprise in minutes"

Det finns utmärkt dokumentation på deras wiki-sida, https://github.com/Security-Onion-Solutions/security-onion/wiki
Denna sida innehåller endast quick 'n dirty-guider.

IDS
Om man speglar trafik till Security Onion kan man sätta upp det som en IDS.