Download List

프로젝트 설명

Prelude-LML is a signature-based log analyzer monitoring your log file and received syslog messages for suspicious activity. It handle events generated by a large set of components, including but not limited to: APC Emu, BigIP, Cisco PIX, Clamav, Dell-OM, Grsecurity, Honeyd, ipchains, Netfilter, ipfw, Nokia ipso, Apache ModSecurity, Ms-SQL, Nagios, Norton Antivirus Corporate Edition, NTsyslog, Pam, Portsentry, Postfix, Proftpd, SSH, and others. It is part of Prelude, a hybrid Intrusion Detection framework implementing an open communication layer for use by any security application.

System Requirements

System requirement is not defined
Information regarding Project Releases and Project Resources. Note that the information here is a quote from Freecode.com page, and the downloads themselves may not be hosted on OSDN.

2008-08-22 02:23 Back to release list
0.9.13

ModSecurity ruleset은 ModSecurity 2.0 로그 형식을 처리하는 재작성. FreeBSD를 님을위한 새로운 시도 rulesets. 기본 구성에서 추가적인 형식으로 아파치 error_log 파일 형식을 처리합니다. 어떤 종류 정상화되었습니다 : 원격 로그인 및 자격 변경이 도입되었습니다. SSH를 ruleset이 향상되었습니다. 확인 확인에 대한 자동화된 회귀 테스트합니다.
Tags: Major feature enhancements
A ModSecurity ruleset rewrite that handles the ModSecurity 2.0 log format. New rulesets for FreeBSD su attempts. An additional format in the default configuration to deal with the Apache error_log file format. Some classification has been normalized: Remote Login and Credentials Change have been introduced. The SSH ruleset has been improved. Automated regression tests on make check.

Project Resources