Softpedia
 

MAC CATEGORIES:



GLOBAL PAGES >>
NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
WEEK'S BEST
  • Adobe InDesign CC 9.0
  • Adobe Illustrator CC 17.0
  • Adobe Photoshop CC 14.0
  • Dropbox 2.2.6 / 2.3.14 ...
  • Parallels Desktop 8.0.1...
  • TweetDeck 3.0.2
  • Apple Xcode 4.6.3
  • Butler 4.1.15
  • Winclone 4.0.1
  • VLC Media Player 2.0.7
  • Home > Mac > Developer Tools
     Report malware

    OSSEC 2.7

    Download button

    Downloads: 188  Tell us about an update
    User Rating:
    Rated by:
    NOT RATED
    0 user(s)
    Developer:

    License / Price:

    Size / OS:

    Binary Format:

    Last Updated:

    Category:
    Trend Micro Incorporated | More programs
    GPL / FREE
    819 KB / Mac OS X
    -
    November 25th, 2012, 00:17 UTC [view history]
    Home / Developer Tools

     Read user reviews (0)  Refer to a friend  Subscribe

    OSSEC description

    An open-source, host-based intrusion detection system

    OSSEC is an a free and open-source host-based Intrusion Detection System that allows you to perform log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response.

    OSSEC can be run on most operating systems, including Linux, MacOS, Solaris, HP-UX, AIX and Windows.

    OSSEC is a complete platform that monitors and controls your systems. OSSEC has all the aspects of HIDS (host-based intrusion detection), log monitoring and SIM/SIEM together in a simple, powerful and open source solution.

    OSSEC is cross-platform and it works on Mac OS X, Windows and Linux.

    Detailed instructions on how to install and use the OSSEC utility on your Mac are available HERE.

    Here are some key features of "OSSEC":

    File Integrity checking:
    · There is one thing in common to any attack to your networks and computers: they change your systems in some way. The goal of file integrity checking (or FIM – file integrity monitoring) is to detect these changes and alert you when they happen. It can be an attack, or a misuse by an employee or even a typo by an admin, any file, directory or registry change will be alerted to you.
    · Covers PCI DSS sections 11.5 and 10.5.5.

    Log Monitoring:
    · Your operating system wants to speak to you, but do you know how to listen? Every operating system, application, and device on your network generate logs (events) to let you know what is happening. OSSEC collects, analyzes and correlates these logs to let you know if something wrong is going on (attack, misuse, errors, etc). Do you want to know when an application is installed on your client box? Or when someone changes a rule in your firewall? By monitoring your logs, OSSEC will let you know of that.
    · Covers PCI DSS section 10 in a whole.

    Rootkit detection:
    · Criminals (also known as hackers) want to hide their actions, but using rootkit detection you can be notified when they (or trojans, viruses, etc) change your system in this way.

    Active response:
    · Take immediate and automatic responses when something happens. Why wait for hours when you can alert your admin and block an attack right way?

    What's New in This Release: [ read full changelog ]

    Installation:
    · Add hybrid mode – allows the same host to be both a server and an agent, useful for multi-tier OSSEC deployment.
    · Add manage_agents -f option for bulk generation of client keys from an input file.
    · During Agent installation, allow the OSSEC server to be specified using hostname instead of IP.

    Syscheck:
    · Add prelinking support – reduce confusion when a file change is the result of prelinking.

    Rootcheck:
    · Add fine-grained configuration control – allows you to turn ON/OFF individual rootcheck tasks for more efficiency and flexibility. The default is all ON.

    Log monitoring/analysis:
    · Add GeoIP lookup support – allows geographical city names to be associated with IP addresses in OSSEC alerts, for more intelligent correlation.

    Alert options anslog output:
    · Adscheck MD5/SHA1 sum to alerts for easier integration with third-party file signature checking.
    · Support JSON and Splunk formats in syslog output.

    Rules and other notable changesfixes:
    · Windows 2000 logs support has been dep...

     Softpedia guarantees that OSSEC 2.7 is 100% FREE, which means it does not contain any form of malware, including spyware, viruses, trojans and backdoors. [read more >]


    TAGS:

    intrusion detection system | detection system | detect intruder | intrusion | detection | system

    Go to top

    WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

    SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM