Re: distributed IDS/sensor network



Im sure OSSIM could be what you are looking for (http://www.ossim.net/).

Im not to sure about the hardware, im guessing a couple of normal
desktops with ethernet taps to run the sensors and a couple of
desktops with sebek or something like that for the honeypot.

Regards,

Daniel

On Wed, Mar 11, 2009 at 3:45 PM, Ganbold <ganbold@xxxxxxxxxxxxx> wrote:
Hi,

My friend is doing small research on the design and
implementation of the distributed IDS/sensor network and security
operation center. The requirements include but not limited to:

*Distributed IDS sensor network (maybe with 20 IDS, honeynet/honeypot)
*Real-time monitoring of threats, incidents and attacks (large LCD
displays etc)
*Watch and warning system (hardware and software)
*Security alerting system (hardware and software)
*Incident report and response system (web etc)

In my opinion some existing open source software solutions like snort
might work for IDS for the first time. Or it could be either
commercial systems.
So here I have a few questions:

1. Can somebody give me some pointers to existing well known
distributed IDS/sensor networks and technologies (software/hardware
names) that they use?
2. Are there any known real-time monitoring systems around?
3. Are there any well known projects which implements
distributed IDS/sensor networks, and real-time monitoring systems?

If somebody can give me some names I can further search and
find what they are and what technologies they use.
I appreciate if somebody can give me some pointers in this regard.

thanks in advance,

Ganbold

--
A Smith & Wesson beats four aces.




Relevant Pages

  • Re: COMPUTER PSU/PROCESSOR FAN PROBLEM
    ... As far as your issue, it could be a CPU fan, a case fan a power supply ... desktops and/or workstations will have a minimum 400W but I have seen ... > LIKEWISE, IF IT THE PROCESSOR FAN, WHAT REPLACEMENT HARDWARE IS IT BEST ... > ROBERT GETHING ...
    (microsoft.public.windowsxp.general)
  • Re: No more OOo in UNR 10.04
    ... desktops are now. ... And at that time the server will be like a supercomputer and Matlab ... Netbooks will by definition always be at the low end of the hardware ... enough to do what you need, not for cramming bloated software into ...
    (Ubuntu)
  • Re: Q about swap size
    ... Don't run Gnome/KDE desktops - they're memory hogs. ... It's interesting that Linux has followed in the path of Wintel, ... forcing hardware upgrades with new OS releases. ...
    (Fedora)
  • Re: On to the next topic: Editing software
    ... And their Western Electric subsidiary was legendary for the reliability ... narrow range of hardware, all made and sold by AT&T. ... Nothing requires that desktops be complex. ... Mainframe operating systems are ...
    (rec.video.desktop)
  • Re: Adobe Audition 1.5: Record from device A, play full mix through device B (while recording?)
    ... built-in facilities for real-time monitoring. ... you have to do via hardware or other software. ... Certainly Audition 2.0 has ASIO support. ...
    (rec.audio.pro)