|
About:
IDABench is a Web interface to many intrusion analysis
tools. By the use of simple plug-ins, it allows an analyst
to twist and turn hourly packet logs through such
utilities as tcpdump, ngrep, tethereal, etc. Output is
textual web pages, gnuplot graphs, and downloadable
composite binary dumpfiles. Based on the US Navy's
SHADOW intrusion detection system, IDABench
simplifies the writing of tcpdump filters, allows regular-
expression context matching, and through a simple
plugin API, can be extended to include other libpcap-
based analysis tools, such as Snort, p0f, etc.
Author:
George Bakos [contact developer]
Homepage:
http://idabench.ists.dartmouth.edu
Tar/GZ:
http://idabench.ists.dartmouth.edu/download/idabench-1.0.tar.gz
Trove categories:
[change]
Dependencies:
[change]
Apache (required)
Perl 5.6.1 (required)
gnuplot (recommended)
ngrep (recommended)
Wireshark (recommended)
[download links]
|
|
» Rating:
(not rated)
» Vitality: 0.00% (Rank 25593)
» Popularity: 0.27% (Rank 19699)

(click to enlarge graphs)
Record hits: 4,053
URL hits: 1,620
Subscribers: 4
|
|