Differences between revisions 27 and 30 (spanning 3 versions)
Revision 27 as of 2019-03-12 06:59:58
Size: 3647
Editor: PaulWise
Comment: latest version dropped i386
Revision 30 as of 2019-05-27 05:13:54
Size: 3669
Editor: PaulWise
Comment: move source tarball to the apt section
Deletions are marked like this. Additions are marked like this.
Line 8: Line 8:
{{https://www.alienvault.com/images/av-nav-logo.png|AlienVault OSSIM Logo}} {{https://cdn5.alienvault.com/images/uploads/product/ossim/img1.png|AlienVault OSSIM Logo}}
Line 20: Line 20:
 * Corporate sponsor:  * Corporate sponsor: [[https://www.alienvault.com/blogs/security-essentials/att-cybersecurity-is-born|AT&T]]
Line 31: Line 31:
 * wiki: https://www.alienvault.com/wiki/doku.php?id=user_manual:introduction  * Documentation: https://www.alienvault.com/documentation/
Line 41: Line 41:
 * VCS repository: http://www.assembla.com/code/os-sim/git-2/nodes
 * Bug tracker: http://www.assembla.com/spaces/os-sim/support/tickets
 * VCS repository: https://github.com/AlienVault-Labs
 * Bug tracker:
Line 55: Line 55:
 * list of developers: http://labs.alienvault.com/labs/index.php/blogs/  * list of developers:
Line 65: Line 65:
# Source packages are not provided, but the VCS repository contains source. # Source packages are not provided, but a source tarball is provided:
# https://dlcdn.alienvault.com/alienvault-ossim.tar.gz

AlienVault OSSIM

AlienVault OSSIM Logo

AlienVault Open Source SIEM (OSSIM) is a complete Security Management solution. Along with the AlienVault Unified SIEM for IT and AlienVault ICS SIEM for industrial / SCADA applications, AlienVault OSSIM is in use at more organizations than all alternatives combined. AlienVault OSSIM provides all of the functionality required to detect and profiles attacks and provides a comprehensive, intelligent Security Management platform and toolset. The entire solution is based on Debian's, including all seamlessly integrated tools and the security management platform. The OSSIM project was created and is currently coordinated by the founders of AlienVault.

The OSSIM platform consists of a Management Server, and Sensor or "Probe". A professional version that includes Logger functionality is also available (please see below). The solution may be implemented as a single monolithic appliance or a set of appliances in which probes are separated from the management server, and distributed throughout the enterprise.

Probes capture network and system information in real time, and send it to the central Management Server where the data is analyzed to assess immediate threats and risk, filter out false positives, and locate false negatives that other security devices and software on the network cannot detect.

deb [arch=amd64] http://data.alienvault.com/alienvault5/alienvault/ binary/
deb [arch=amd64] http://data.alienvault.com/feed/ binary/
deb [arch=amd64] http://data.alienvault.com/plugins-feed/ binary/
# Source packages are not provided, but a source tarball is provided:
# https://dlcdn.alienvault.com/alienvault-ossim.tar.gz

Last updated 2011-07-11 11:01:17