[prev in list] [next in list] [prev in thread] [next in thread] 

List:       prelude-announce
Subject:    [prelude-announce] [ANNOUNCE]: prelude-lml-0.9.2
From:       yoann.v () prelude-ids ! com (Yoann Vandoorselaere)
Date:       2006-01-31 10:48:57
Message-ID: 1138700930.32250.10.camel () arwen ! prelude-ids ! org
[Download RAW message or body]

We are pleased to announce the availability of Prelude-LML 0.9.2.

Prelude-LML is a signature based log analyzer monitoring logfile and
received syslog messages for suspicious activity. It handle events
generated by a large set of components, including but not limited to:
BigIP, Grsecurity, Honeyd, ipchains, Netfilter, ipfw, Nokia ipso,
Nagios, Norton Antivirus Corporate Edition, NTsyslog, PAM, Portsentry,
Postfix, Proftpd, ssh, etc.


------[ CHANGES ]------

- Get rid of the 1024 characters per line limitation (defined as per 
  the syslog RFC), since LML is not limited to parsing input from syslog 
  anymore.

- Handle events in Clamav logging format as well as syslog. 

- Abstracted Squid chain regex to allow parsing of data directly 
  from Squid log files. 

- Introduced support for openhostapd.

- Began expanding rulesets with additional_data and vendor-specific 
  classification data. 

- Various ruleset updates and bug fixes.


------[ SUPPORT ] ------

Improving Prelude is costly, but you can help!  We are looking for
organizations that find Prelude useful and wish to contribute back.

Commercial support contracts for Prelude are available, and they help
finance continued maintenance. PreludeIDS Technologies, a privately held
company, is currently funding Prelude maintenance.


------[ DOWNLOAD ]------

http://prelude-ids.org/download/releases/prelude-lml-0.9.2.tar.gz
http://prelude-ids.org/download/releases/prelude-lml-0.9.2.tar.gz.sig
http://prelude-ids.org/download/releases/prelude-lml-0.9.2.tar.gz.md5


------[ MD5SUM ]------

af857bc2fa8e0240b5ad06e18fd487c7  prelude-lml-0.9.2.tar.gz


------[ OpenPGP key ]------

gpg --keyserver wwwkeys.pgp.net --recv-keys 0x23D2FAC3


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)
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=36v7
-----END PGP SIGNATURE-----

-- 
Yoann Vandoorselaere | Responsable R&D / CTO | PreludeIDS Technologies
Tel: +33 (0)8 70 70 21 58                  Fax: +33(0)4 78 42 21 58
http://www.prelude-ids.com

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic