<feed xmlns='http://www.w3.org/2005/Atom'>
<title>pkgsrc/security/base/files, branch pkgsrc_2008Q2</title>
<subtitle>[no description]</subtitle>
<id>https://git.osdyson.ru/mirror/pkgsrc/atom?h=pkgsrc_2008Q2</id>
<link rel='self' href='https://git.osdyson.ru/mirror/pkgsrc/atom?h=pkgsrc_2008Q2'/>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/'/>
<updated>2006-01-03T21:09:44Z</updated>
<entry>
<title>The Basic Analysis and Security Engine (BASE) is a PHP-based analysis</title>
<updated>2006-01-03T21:09:44Z</updated>
<author>
<name>adrianp</name>
<email>adrianp</email>
</author>
<published>2006-01-03T21:09:44Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=f27ba9cc2ef72b07991e972883504b0074f3623e'/>
<id>urn:sha1:f27ba9cc2ef72b07991e972883504b0074f3623e</id>
<content type='text'>
engine to search and process a database of security events generated by
various IDSes, firewalls, and network monitoring tools.  The features currently
include:

o Query-builder and search interface for finding alerts matching
  on alert meta information (e.g. signature, detection time) as well as
  the underlying network evidence (e.g. source/destination address, ports,
  payload, or flags).

o Packet viewer (decoder) will graphically display the layer-3 and
  layer-4 packet information of logged alerts

o Alert management by providing constructs to logically group alerts
  to create incidents (alert groups), deleting the handled alerts or
  false positives, exporting to email for collaboration, or archiving of
  alerts to transfer them between alert databases.

o Chart and statistic generation based on time, sensor, signature, protocol,
  IP address, TCP/UDP ports, or classification
</content>
</entry>
</feed>
