[prev in list] [next in list] [prev in thread] [next in thread] 

List:       prelude-announce
Subject:    [prelude-announce] [ANNOUNCE]: prelude-lml-0.9.4
From:       yoann.v () prelude-ids ! com (Yoann Vandoorselaere)
Date:       2006-03-06 17:13:10
Message-ID: 1141661586.8688.2.camel () arwen ! prelude-ids ! org
[Download RAW message or body]

We are pleased to announce the availability of Prelude-LML 0.9.4.

Prelude-LML is a signature based log analyzer monitoring logfile and
received syslog messages for suspicious activity. It handle events
generated by a large set of components, including but not limited to:
BigIP, Grsecurity, Honeyd, ipchains, Netfilter, ipfw, Nokia ipso,
Nagios, Norton Antivirus Corporate Edition, NTsyslog, PAM, Portsentry,
Postfix, Proftpd, ssh, etc.


------[ CHANGES ]------

* prelude-lml-0.9.4:

- Remove trailing space from regex we get from plugins.rules (this fix 
  a match problem on log entry that didn't contain any space). 

- Add --user / --group option to drop privilege. However, make sure it is 
  not allowed to open file that the target user can not read, because it 
  would lead to failure when trying to re-open the logfile after a rotation.

- Signal handling improvement.

- Fix priority for --quiet option.

- Use newer libprelude IDMEF_LIST_APPEND/IDMEF_LIST_PREPEND addition.

- Add unhandled arguments warning. 



------[ SUPPORT ] ------

Improving Prelude is costly, but you can help!  We are looking for
organizations that find Prelude useful and wish to contribute back.

Commercial support contracts for Prelude are available, and they help
finance continued maintenance. PreludeIDS Technologies, a privately held
company, is currently funding Prelude maintenance.


------[ DOWNLOAD ]------

http://prelude-ids.org/download/releases/prelude-lml-0.9.4.tar.gz
http://prelude-ids.org/download/releases/prelude-lml-0.9.4.tar.gz.sig
http://prelude-ids.org/download/releases/prelude-lml-0.9.4.tar.gz.md5


------[ MD5SUM ]------

33ed8f9428df64778041e4d8fe41c479  prelude-lml-0.9.4.tar.gz


------[ OpenPGP key ]------

gpg --keyserver wwwkeys.pgp.net --recv-keys 0x23D2FAC3


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.1 (GNU/Linux)
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=rvtn
-----END PGP SIGNATURE-----

-- 
Yoann Vandoorselaere | Responsable R&D / CTO | PreludeIDS Technologies
Tel: +33 (0)8 70 70 21 58                  Fax: +33(0)4 78 42 21 58
http://www.prelude-ids.com

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic