IDS mailing list archives

Re: Are there any other open sources IDS that not based on snort?


From: Yoann Vandoorselaere <yoann () prelude-ids org>
Date: Mon, 23 Feb 2004 17:21:35 +0000

On Mon, 2004-02-23 at 11:42, Chatprechakul Mr N wrote:
Hi all,
     I am doing a research on network security concentrating on correlation
of data from security products already in the network. I try to set up the
testbed network and run a few IDSes on this network. However, when I try to
find opensource IDS to run I would like different IDS to be difference
enough so that they provide diversity in the network. But from what I am
trying to find most of the opensource is based on snort (forgive me if I am
wrong).
     So my question is if anyone know other IDS either host based or network
based apart from snort? I have try some website that has list of IDS
research, most of them do not exist as a product anymore (if they are ever
exist).

Prelude Hybrid IDS implement it's own NIDS and HIDS sensor, please check
http://www.prelude-ids.org :

Prelude takes benefits from the combination of traces of malicious
activity from different sensors (prelude-nids, snort, honeyd, nessus
vulnerability scan, hogwash, samhain, systems logs through prelude-lml,
and others) in order to better qualify the attack and in the end to
perform automatic correlation between the various traces.

-- 
Yoann Vandoorselaere <yoann () prelude-ids org>


---------------------------------------------------------------------------
Free trial: Astaro Security Linux -- firewall with Spam/Virus Protection

Protect your network with the comprehensive security solution that integrates 
six applications for ease of use and lower TCO.

Firewall - Virus protection - Spam protection - URL blocking - VPN
- Wireless security.

Download 30-day evaluation at:
http://www.securityfocus.com/sponsor/Astaro_focus-ids_040219
---------------------------------------------------------------------------


Current thread: