OSSEC v1.5 released

View: New views
1 Messages — Rating Filter:   Alert me  

OSSEC v1.5 released

by Daniel Cid-3 :: Rate this Message:

Reply to Author | View Threaded | Show Only this Message

Hi list,

The OSSEC team is pleased to announce the general availability of OSSEC HIDS
version 1.5.

OSSEC is an Open Source Host-based Intrusion Detection System and performs log analysis,
integrity checking, Windows registry monitoring, rootkit detection, real-time alerting and active response.
It runs on most operating systems, including Linux, OpenBSD, FreeBSD, MacOS, Solaris and Windows.


This version comes with lots of bug fixes and new features, including:

-New log formats (info):

    * Solaris BSM auditing logs
    * Asterisk logs
    * Checkpoint and Smart Defense logs
    * Debian package (dpkg) install/status/remove messages
    * Shorewall logs
    * Postfix SASL error messages
    * Localized pure-ftpd messages (for 12 different languages)
    * DJB multilog

-Greek translation of the install.

-Added agent_control tool to manage the agents directly from the server (info).

-New options to syscheckd/rootcheckd to better schedule the scans (info).

-Performance improvements to the Windows Agent, specially when dealing with
large event logs.

-Added new options to Rootcheck to look for common web exploits installed
on the system (used to attack others).


*Check the v1.5 Changelog to see all the changes and contributors:
http://www.ossec.net/main/ossec-v15-released

*Download it from: http://www.ossec.net/main/downloads .


Thanks,


--
Daniel B. Cid
dcid ( at ) ossec.net

------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it
with real-world attacks from CORE IMPACT.
Go to http://www.coresecurity.com/index.php5?module=Form&action=impact&campaign=intro_sfw 
to learn more.
------------------------------------------------------------------------