|
|
|
acidlab
Analysis Console for Intrusion Databases
/Main/Debian/all/web/The Analysis Console for Intrusion Databases (ACID) is a PHP-based analysis engine to search and process a database of security events generated by various IDSes, firewalls, and network monitoring tools. The features currently include:o Query-builder and search interface for finding alerts matching on alert meta information (e.g. signature, detection time) as well as the underlying network evidence (e.g. source/destination address, ports, payload, or flags).
o Packet viewer (decoder) will graphically display the layer-3 and layer-4 packet information of logged alerts
o Alert management by providing constructs to logically group alerts to create incidents (alert groups), deleting the handled alerts or false positives, exporting to email for collaboration, or archiving of alerts to transfer them between alert databases.
o Chart and statistic generation based on time, sensor, signature, protocol, IP address, TCP/UDP ports, or classification
ACID has the ability to analyze a wide variety of events which are post-processed into its database. Tools exist for the following formats:
o using Snort (www.snort.org) - Snort alerts - tcpdump binary logs
o using logsnorter (www.snort.org/downloads/logsnorter-0.2.tar.gz) - Cisco PIX - ipchains - iptables - ipfw
Info:
Homepage: - Package version: 0.9.6b20-10.1 Architecture: all Distribution: Debian Filename: acidlab_0.9.6b20-10.1_all.deb Browse inside acidlab_0.9.6b20-10.1_all.deb:
pkg://acidlab_0.9.6b20-10.1_all.deb:660860/ info downloads[DIR]usr/ 65535+ twin directories
154 B 2003-07-28md5sums view 172 mirrors
634 B 2003-07-28control view 552+ mirrorsDownload acidlab_0.9.6b20-10.1_all.deb:
2004-11-10 ftp://ftp.uni-magdeburg.de/pub/mirror/linux/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-07-04 ftp://debian.lcs.mit.edu/pub/debian-amd64/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-14 ftp://ftp.3logic.net/.1/debian-archive/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-14 ftp://ftp.wustl.edu/pub/linux/distributions/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-07-04 ftp://ftp.wh2.tu-dresden.de/pub/mirrors/debian-amd64/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-11 ftp://ftp.uni-kassel.de/Mirrors1/ftp.de.debian.org/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-11 ftp://ftp.rd.cri74.org/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-11 ftp://ftp.lf.net/pub/Mirrors/ftp.debian.org/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-11 ftp://sapi.vlsm.org/.1/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-14 ftp://sapi.vlsm.org/.1/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-07-04 ftp://ftp.tu-ilmenau.de/Mirrors/ftp.de.debian.org/debian-amd64/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-14 ftp://ftp.csie.chu.edu.tw/pub2/Debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-14 ftp://ftp.linux.pt/pub/mirrors/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-11 ftp://ftp.school.ioffe.ru/pub/mirrors/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-14 ftp://ftp.school.ioffe.ru/pub/mirrors/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-07-04 ftp://ftp.tiscali.nl/pub/mirror/debian-amd64/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-11 ftp://ftp.tiscali.nl/pub/mirror/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-11 ftp://ftp.demon.nl/disk3/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-07-04 ftp://ftp.fh-giessen.de/pub/linux/debian-amd64/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-07-04 ftp://77.88.19.68/debian-pure64/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-14 ftp://ftp.cs.nott.ac.uk/sites/ftp.debian.org/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-11 ftp://ftp.uni-augsburg.de/mirrors/debian/ftp.de.debian.org/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-11 ftp://200.17.202.16/debian-dists/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-14 ftp://200.17.202.16/debian-dists/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2004-11-14 ftp://ftp.tuke.sk/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-10 ftp://ftp.de.netclusive.de/pub/Linux/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2006-07-03 ftp://ftp.tudelft.nl/pub/Linux/pure64.debian.org/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2006-07-03 ftp://ftp.nz.kernel.org/pub/debian-amd64/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-13 ftp://ftp.sr.bham.ac.uk/mirror/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2006-07-03 ftp://ftp.uni-kl.de/pub/linux/debian-amd64/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-10 ftp://ftp.ula.ve/linux/distribuciones/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-13 ftp://ftp.efrei.fr/pub/mirrors/linux/distributions/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-13 ftp://cudlug.cudenver.edu/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-10 ftp://ftp.usc.es/pub2/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-10 ftp://ftp.cstone.net/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-13 ftp://ftp.cstone.net/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-13 ftp://zoffy.asahi-net.or.jp/pub/linux/debian/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-10 ftp://ftp.southcom.com.au/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2006-07-03 ftp://ftp.at.debian.org/debian-amd64/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-13 ftp://ftp.uk.debian.org/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-10 ftp://ftp.debian.hu/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-10 ftp://ftp.esat.net/mirrors/.0/non-us.debian.org/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-10 ftp://ftp.gentoo.mesh-solutions.com/mirrors/ftp.de.debian.org/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-10 ftp://200.17.202.17/debian-dists/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-13 ftp://200.17.202.17/debian-dists/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-13 ftp://ftp.debian.de/archive/debian-security/pool/updates/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-12 ftp://ftp.ncku.edu.tw/Linux/Debian/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2005-11-13 ftp://ftp.funet.fi/.m/mirrors3/ftp.debian.org/debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2006-07-03 ftp://ftp.gnome.org/cdimage/snapshot-amd64/Debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
2006-07-03 ftp://ftp.gnome.org/cdimage/snapshot/Debian/pool/main/a/acidlab/acidlab_0.9.6b20-10.1_all.deb
| Results 1 - 1 |