[prev in list] [next in list] [prev in thread] [next in thread] 

List:       prelude-announce
Subject:    [prelude-announce] [ANNOUNCE]: Prelude-LML 1.0.0 Release Candidate 1
From:       Yoann Vandoorselaere <yoann.v () prelude-ids ! com>
Date:       2010-01-29 17:40:02
Message-ID: 1264786802.27716.3031.camel () arwen
[Download RAW message or body]

We are pleased to announce the availability of Prelude-LML 1.0.0rc1 ! 

With this first release candidate, we hope to collect comments and bug
reports from the Prelude community in order to solve the remaining
problems with the current Prelude codebase to ensure a final 1.0 release
that is rock solid! We would like to encourage anyone who is willing and
able to spend some time on testing to find and report problems to the
Prelude developers.

The final 1.0.0 release is expected to be released in February.

Prelude-LML is a signature based log analyzer monitoring logfile and
received syslog messages for suspicious activity. It handle events
generated by a large set of components, including but not limited to:
BigIP, Grsecurity, Honeyd, ipchains, Netfilter, ipfw, Nokia ipso,
Nagios, Norton Antivirus Corporate Edition, NTsyslog, PAM, Portsentry,
Postfix, Proftpd, ssh, etc.


------[ CHANGES ]------

- Support for character encoding and convertion to UTF-8. The user
can specify a different character encoding for each files.

- Automatic character set detection if none is specified by the user,
the implementation will attempt to detect the character set used for a
given file. In case the detection fail, the system default will be
used.

- Log entry are now converted to UTF-8 before processing. This fixes a
problem where user could see incorrect characters in reported alert,
since they were carrying data that could involve differents character
set.

- Include Snare ruleset, courtesy of Nicholas Nachefski
<nnachefski@gmail.com>.

- [ModSecurity]: Events generated were missing some AdditionalData
information.

- [NetFilters]: ruleset compatibility Ulogd, various improvement.

- Various bug fixes.


------[ SUPPORT ] ------

Improving Prelude is costly, but you can help! We are looking for
organizations that find Prelude useful and wish to contribute back.

Commercial support contracts for Prelude are available, and they help
finance continued maintenance. PreludeIDS Technologies, a privately held
company, is currently funding Prelude maintenance.


------[ DOWNLOAD ]------

http://www.prelude-ids.com/development/download/


------[ CHECKSUM ]------

MD5 : bc116d9e2d89bb3aa2958245e9ddacc5
SHA1 : 6b452d742d5ce668f77dee6c197763886349ce94
SHA256 :
c25a3fbb12147dbea9bc7808c2ff6e06f073abeb14ea819fa822014acbaf4e29


------[ OpenPGP key ]------

gpg --keyserver wwwkeys.pgp.net --recv-keys 0x23D2FAC3


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iQIcBAABAgAGBQJLYxROAAoJEBHxO34j0vrD0kYP/1/Dk8CvWrf/pzco7dl3zBU4
Tiy6TswT5svTtWoDatsNuUyawRIq5MoLlilC085WGT1NICsJdsCnr3P2WTqD4ZHb
w469AcxBS8cYuHSx2k172TpQsowRaShUr3doSqfGwagXSzAWhdGHqFkWBSH484Ne
x0p0fySY/EM9+9K1A4aRt3Ea1Nr6nEES82aQNCTj+kwZF07Z6cZXdfRO+V7WI2Pd
zM3NL3Kv31qAuAE3SnXneWPGEsCuacr9Ov4TMh8poWSnOvmRM0k0Jomyoh1Ifrtq
hpaznw05Dhf3NlOH2DF4K0pZCOZDOZi6ix/XZ9fhZNfvrGQ7bU0yu1+f+rN2EOSi
wDJkWlRKcEJ4NgMpoX7PqGvcbF9d0zzHaIwryJsd1gDiURDanHHVI0GTCb+NXACc
/ZscngTYoBmT3bbXM2yzL+JS6T0+ly2QO5slU5LNgLsjUn6tMsbnv/Y0gY4arJWC
0YlFc7x8lBzPz4u0SdzPKf4T4OBLEdEpaalWlhqOJo76sr/htsJrFFBNtu7GRcrc
GLrMG/83GiBYVpp6Z2vmlQ8lzVfHshVKWmV4HAnBhzF4Ki1LNVVE/tFW6paoZyJU
CBJdYpQrWSxV/QEgEXdx58V+XzrRfPKuBqczdi10uA0LR30ryAK+gwg8avLLmERc
xXm10sWWIbRSaPjoJifT
=hIJe
-----END PGP SIGNATURE-----

-- 
Yoann Vandoorselaere | Directeur Technique/CTO | PreludeIDS Technologies
Tel: +33 (0)1 40 24 65 10                      Fax: +33 (0)1 40 24 65 28
http://www.prelude-ids.com

_______________________________________________
Prelude-announce mailing list
Prelude-announce@prelude-ids.org
http://lists.prelude-ids.org/mailman/listinfo/prelude-announce
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic