Lomin Security

SIM CD

jminto | 2005-05-08 06:35

SIM CD

SIM CD is OSSIM and other various open source security applications included on a preconfigured CentOS Distribution. The CD is bootable and significantly reduces the complexity of OSSIM and OS Installation, Configuration, & Deployment.

Installing SIM CD is as easy as putting the CD into the computer and rebooting. SIM CD is an unattended install. Upon reboot, SIM CD automatically installs the operating system, various other components, and OSSIM. Only the IP Address and root password need be configured after installation.

Every security application on SIM CD is preconfigured to support OSSIM. They are configured using industry-recognized best practices. The configuration is for on a stand-alone installation. This stand-alone installation uses a number of security applications. These are listed in the Features section below. All of these applications run on one computer. This is intended to support small networks with little traffic.

SIM CD may be installed in a distributed configuration; information on how to do this is available in the installation manual that Lomin LLC will be shipping with purchased CDs.

Features

SIM CD is built on CentOS and includes the following core applications:

  • Spade: network anomaly detection
  • Snort: pattern matching intrusion detection system
  • Acid: log viewer (Event Database)
  • Ntop: network use monitor
  • Mrtg: graphing
  • Mysql: data storage
  • RRDtool: a system to store and display time-series data
  • Nessus: vulnerability assessment
  • Nmap: Network discovery

To view the SIM CD messageboard, please click here...

 

jminto | 2005-12-31 06:35

Lomin LLC sells and developes innovative IA Products. The products are Computer & Network Security Applications. They allow customers to significantly reduce the risks associated with maintaining a network of computer equipment.

myra | 2005-12-30 04:55



click on items to view full details...

SIM CD

jminto | 2005-12-28 20:04

OSSIM

OSSIM (Open Source Security Information Management) unifies network monitoring, network/host security, correlation and qualification information in one single tool. It is designed and built to work with a number of Open Source and commercial tools. Its main goal is to get the most information from every single tool in a cohesive, easy to understand way.

OSSIM uses the following methods to help deliver concise information:

  • Event correlation
  • Event qualification
  • Network anomaly detection
  • Qualified intrusion detection
  • Network availability information

OSSIM integrates, qualifies and correlates both high level and low level security and network events. Sensors are integrated to gain per-view three network/host visibility levels, namely:

  • Low level log/alert/anomaly information
  • Mid level network risk level information
  • High level decision support information

Tools OSSIM Uses

OSSIM uses network security information from a variety of Open Source tools; to include:

  • Spade: network anomaly detection
  • Snort: pattern matching intrusion detection system
  • Acid: log viewer (Event Database)
  • Ntop: network use monitor
  • OpenNMS: Service availability monitoring
  • Mrtg: graphing
  • Mysql and PostgreSQL: data storage
  • RRDtool: a system to store and display time-series data
  • Nessus: vulnerability assessment
  • Nmap: Network discovery
  • Pads: Passive network discovery
  • Tcptrack: Passive network connection monitor

OSSIM also works with a number of other commercial tools as well:

  • Checkpoint: Firewall logs
  • Cisco PIX
  • Cisco Routers
  • Cisco IDS
  • UNIX: System logs
  • Microsoft IIS
  • Apache
  • Iptables
  • realsecure

The most complete and up-to-date information about OSSIM can be found at OSSIM's website: http://www.ossim.net/.

 

jminto | 2005-10-06 23:40


CentOS is the Community Enterprise Operating System. The goal of CentOS is to provide a stable Linux distribution for corporate users. CentOS is not like many free linux distributions that constantly change and deploy unstable technologies. CentOS’ stable approach allows its users to focus on applications without having to focus on changes in the underlying operating system.

CentOS is derived from sources freely provided by a prominent North American Enterprise Linux vendor. CentOS conforms fully with the upstream vendors redistribution policy and aims to be 100% binary compatible.

myra | 2005-10-01 10:15
jminto | 2005-09-14 00:31


Downloads provided by Lomin LLC.


SIM-0.9.8-1.iso
MD5 Sum: f5730b416a426582a4cc3a110f445851




SIM-0.9.6-1.iso
MD5 Sum: 074cc0fc44ae3dafb57d36c666f9cbad





SIM-SRC-0.9.6-1.iso
MD5 Sum: 133cb2da7b6275f6ae5689e738102d80

 

 

 

 

 

Syndicate content
© Copyright Lomin LLC 2005-2007.