Package: acidlab (0.9.6b20-13ubuntu1) [universe]
Links for acidlab
Ubuntu Resources:
Download Source Package acidlab:
- [acidlab_0.9.6b20-13ubuntu1.dsc]
- [acidlab_0.9.6b20.orig.tar.gz]
- [acidlab_0.9.6b20-13ubuntu1.diff.gz]
Maintainer:
Please consider filing a bug or asking a question via Launchpad before contacting the maintainer directly.
Original Maintainers (usually from Debian):
- Jeremy T. Bouse
- Javier Fernandez-Sanguino Pen~a
It should generally not be necessary for users to contact the original maintainer.
Similar packages:
Analysis Console for Intrusion Databases
The Analysis Console for Intrusion Databases (ACID) is a PHP-based analysis engine to search and process a database of security events generated by various IDSes, firewalls, and network monitoring tools. The features currently include:
o Query-builder and search interface for finding alerts matching
on alert meta information (e.g. signature, detection time) as well as the underlying network evidence (e.g. source/destination address, ports, payload, or flags).
o Packet viewer (decoder) will graphically display the layer-3 and
layer-4 packet information of logged alerts
o Alert management by providing constructs to logically group alerts
to create incidents (alert groups), deleting the handled alerts or false positives, exporting to email for collaboration, or archiving of alerts to transfer them between alert databases.
o Chart and statistic generation based on time, sensor, signature, protocol,
IP address, TCP/UDP ports, or classification
ACID has the ability to analyze a wide variety of events which are post-processed into its database. Tools exist for the following formats:
o using Snort (www.snort.org)
- Snort alerts
- tcpdump binary logs
o using logsnorter (www.snort.org/downloads/logsnorter-0.2.tar.gz)
- Cisco PIX
- ipchains
- iptables
- ipfw
Homepage: http://acidlab.sourceforge.net/
Other Packages Related to acidlab
|
|
|
-
- dep: acidlab-pgsql
- Analysis Console for Intrusion Databases for Postgres
- or acidlab-mysql
- Analysis Console for Intrusion Databases for MySQL
-
- dep: apache
- versatile, high-performance HTTP server
- or httpd
- virtual package provided by aolserver4, apache, apache-perl, apache-ssl, apache2-mpm-perchild, apache2-mpm-prefork, apache2-mpm-worker, boa, bozohttpd, caudium, cherokee, dhttpd, fnord, lighttpd, mathopd, micro-httpd, mzscheme, roxen3, roxen4, thttpd, thy, yaws
-
- dep: debconf
- Debian configuration management system
- or debconf-2.0
- virtual package provided by cdebconf, cdebconf-udeb, debconf
-
- dep: libphp-adodb (>= 4.50-1)
- The 'adodb' database abstraction layer for php
-
- dep: libphp-phplot (>= 4.4.6-3)
- The graphic library for PHP
-
- dep: php4-gd
- GD module for php4
- or php3-gd
- Package not available
- or php3-cgi-gd
- Package not available
-
- dep: wwwconfig-common (>= 0.0.7)
- Debian web auto configuration
-
- sug: snort-mysql
- Flexible Network Intrusion Detection System [MySQL]
- or snort-pgsql
- Flexible Network Intrusion Detection System [PostgreSQL]
Download acidlab
| Architecture | Package Size | Installed Size | Files |
|---|---|---|---|
| all | 647.7 kB | 1484 kB | [list of files] |