OSSEC Host-Based Intrusion Detection Guide by Andrew Hay, Daniel Cid, Rory Bray

OSSEC Host-Based Intrusion Detection Guide




Download eBook

OSSEC Host-Based Intrusion Detection Guide Andrew Hay, Daniel Cid, Rory Bray ebook
Format: pdf
Page: 335
ISBN: 159749240X, 9781597492409
Publisher: Syngress

Andrew Hay – Senior Security Analyst , The 451 Group. Expert Briefing: IOC – The Death of Filename and MD5 hash Searching. “This article shows how to install and run OSSEC HIDS, an open source host-based intrusion detection system. OSSEC – http://www.ossec.net/. Next, I add the agent to my Security Onion server. Http://www.andrewhay.ca/ – Author of the “OSSEC Host-based Intrusion Detection Guide”. Andrew Hay’s Book – http://www.amazon.com/OSSEC-Host-Based-Intrusion-Detection-Guide/dp/159749240X. OSSEC is an Open Source Host-based Intrusion Detection System. It performs log analysis, integrity checking, Windows install.sh” script (It will guide you through the installation). “OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response.” Many systems include integrity checking programs in their default installs these days, /var/ossec/bin/manage_agents More information at: http://www.ossec.net/en/manual.html#ma.