Slide 10
Slide 10 text
Open Source Software and some glue,
duct tape, and WD-40
• cfengine (Configuration Management)
• Subversion (Code & Configuration Repository)
• JFFNMS (Network Monitoring via SNMP)
• Netdisco (Network Discovery via SNMP, CDP, LLDP)
• Custom libpcap based detectors at key points in the network (Service
Discovery, Traffic Monitoring)
• syslog-ng (Communication Bridge)
• dhcpd (Node Discovery)
• snort (Security Event Detection)
• Windows Event Logs (Correlation / Discovery)
• OSSEC HIDS (Correlation / Detection / Prevention)
• PostgreSQL Database (Storage / Correlation)
• RRDTool (Storage / Visual Analysis)
• Perl (Glue / Duct Tape / WD-40)
10