Solved

Best intrusion detection system software for Linux

Posted on 2009-05-04
6
895 Views
Last Modified: 2013-12-16
I need a best Host based and Network based intrusion detection system software (open source) for linux os.
0
Comment
Question by:rajasekarramasamy
  • 4
  • 2
6 Comments
 
LVL 5

Accepted Solution

by:
0ren earned 125 total points
ID: 24293428
you should try snort
http://www.snort.org/
0
 
LVL 5

Expert Comment

by:0ren
ID: 24293437
you can complete the security package with nessus security scanner
http://www.nessus.org/nessus/
0
 

Author Comment

by:rajasekarramasamy
ID: 24293451
Hi 0ren,

The both software you have mentioned above are open source?. From snort site i am unable to download rules for snort.
0
Master Your Team's Linux and Cloud Stack!

The average business loses $13.5M per year to ineffective training (per 1,000 employees). Keep ahead of the competition and combine in-person quality with online cost and flexibility by training with Linux Academy.

 
LVL 5

Expert Comment

by:0ren
ID: 24293477
snort is open source.
with nessus im not sure. its free though.
about the rules did you register ?
you have rules for subscribed , registered and unregistered users.
you will need this section
Sourcefire VRT Certified Rules - The Official Snort Ruleset (registered user release)
on this url
http://www.snort.org/pub-bin/downloads.cgi
0
 

Author Comment

by:rajasekarramasamy
ID: 24293624
I have registerd now. I can able to download rules.

snort is a network based IDS is correct? Is there any Host based IDS for linux?
0
 
LVL 5

Expert Comment

by:0ren
ID: 24294047
yes it is
for HIDS you can try
http://www.ossec.net/
0

Featured Post

Simplifying Server Workload Migrations

This use case outlines the migration challenges that organizations face and how the Acronis AnyData Engine supports physical-to-physical (P2P), physical-to-virtual (P2V), virtual to physical (V2P), and cross-virtual (V2V) migration scenarios to address these challenges.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Network Interface Card (NIC) bonding, also known as link aggregation, NIC teaming and trunking, is an important concept to understand and implement in any environment where high availability is of concern. Using this feature, a server administrator …
Google Drive is extremely cheap offsite storage, and it's even possible to get extra storage for free for two years.  You can use the free account 15GB, and if you have an Android device..when you install Google Drive for the first time it will give…
Learn how to get help with Linux/Unix bash shell commands. Use help to read help documents for built in bash shell commands.: Use man to interface with the online reference manuals for shell commands.: Use man to search man pages for unknown command…
Learn how to find files with the shell using the find and locate commands. Use locate to find a needle in a haystack.: With locate, check if the file still exists.: Use find to get the actual location of the file.:

856 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question