Security Basics mailing list archives

Re: Security auditing tools


From: Mark Ryan del Moral Talabis <talabis () gmail com>
Date: Thu, 13 Oct 2005 10:18:21 +0800

Yeah, we had the same problem here. What we did was get the raw log
files. ran it through snort. put it in mysql and wrote some PHP
scripts which created our graphics...

Here's the output:
http://www.philippinehoneynet.org/default.php
http://www.philippinehoneynet.org/data.php

It's still a work in progress though. It'll probably be ready in a
month or so. =)

Cheers!
Ryan Talabis
Philippine Honeynet Project
http://www.philippinehoneynet.org



On 10/11/05, Carlos Silva <carlosmiguel.silva () gmail com> wrote:
Hello list,
I'm wondering what type of security auditing tools (open source) do we
have to perform some traffic analysis. I know that ethereal is
becoming more sophisticated, but it doesn't present the graphics as
some comercial tools, and i would like to see if anyone in here does
know some tool (or set of tools) to perform this type of job?
And, does anyone here knows where i can find a comparison between this
type of software and comercial software that do this type of job (like
Observer or Sniffer)?
Thanks in advance.
My best regards,

Carlos Silva



Current thread: