发布于 2016-08-13 01:32:34 | 197 次阅读 | 评论: 0 | 来源: 网友投递
SELKS 基于Debian的自启动发行
SELKS 是Stamus Networks的产品,它是基于Debian的自启动运行发行,面向网络安全管理。它基于自己的图形规则管理器提供一套完整的、易于使用的 Suricata入侵检测/入侵防范生态系统。该系统还包含Kibana ID/NSM控制面板以图形化日志及其他带有时戳的数据,以及Suricata的规则管理界面Scirius。SELKS遵循GNU通用公共许可证第3版 而发布。
SELKS 3.0 发布了,一些内置软件更新特性:
Suricata IDS/IPS/NSM – Suricata 3.1.1 packaged.
Elasticsearch 2.3.5 – latest available ES edition featuring speed, scalability, security improvements and more.
Logstash 2.3.4 – performance improvement ES 2.3 compatability, dynamically reload pipelines on the fly and more
Kibana 4.5.4 – taking advantage of the latest features and performance improvement of ES
Scirius 1.1.10 – support for xbits, hostbits, thresholding, suppression, backup and more
Evebox – alert management/viewer/report interface for Suricata/ES allowing easy export of payload/packets into pcaps
4.4.x longterm kernel – SELKS 3.0 comes by default with 4.4.16 kernel.
Dashboards – reworked dashboards with flow and rule correlation capability.
下载地址:https://www.stamus-networks.com/open-source/#selks