SEARCH
NEW RPMS
DIRECTORIES
ABOUT
FAQ
VARIOUS
BLOG

 
 

prelude rpm build for : Mandrake 9.X. For other distributions click prelude.

Name : prelude
Version : 0.4.2 Vendor : MandrakeSoft
Release : 7mdk Date : 2002-06-16 15:04:23
Group : Networking/Other Source RPM : prelude-0.4.2-7mdk.src.rpm
Size : 0.42 MB
Packager : Geoffrey Lee < snailtalk_mandrakesoft_com>
Summary : An Hybrid Intrusion Detection System
Description :
Prelude is an Hybrid Intrusion Detection System,
written entirely from scratch, in C.

Prelude is divided in several parts:
* The Prelude NIDS sensor, responsible for real time packet capture and
analysis :

- The signature engine, designed to be completly generic and evolutionary.
It is currently able to read Snort rulesets. By simply adding parser,
it should permit to load rulesets from any NIDS easily.

- The protocol plugins, which can handle packets at a higher level than
prelude does, ie: you got a tcp packet, and a Protocol plugin detect that
packet data contain an ssh header, so it will decode the ssh header,
and ask to the associated Detection plugin to analyze the decoded header.

- A set of detection plugins whose job is to analyze the data they are
interested in (they register the protocol they are interested in at
initialization time), and will eventually emit a security warning. Detection
plugin should only be used for complex intrusion detection that can\'t be
done using the signature engine.

* A report server, which sensors contact in order to report an alert, that
generates user readable report using plugins.

- The reporting plugins, whose job is to decode the reports issued by the
Detection plugin, and translate them in a user readable form (eg: syslog
report, html report, etc).

RPM found in directory: /vol/rzm6/linux-mandriva/official/9.1/i586/Mandrake/RPMS

Content of RPM  Changelog  Provides Requires

Download
ftp.icm.edu.pl  prelude-0.4.2-7mdk.i586.rpm
     Search for other platforms
prelude-0.4.2-7mdk.sparc.rpm
prelude-0.4.2-7mdk.alpha.rpm
prelude-0.4.2-7mdk.ppc.rpm
prelude-0.4.2-7mdk.ia64.rpm
prelude-0.4.2-7mdk.s390.rpm

Provides :
prelude
arpspoof.so
debug.so
http.so
rpc.so
scandetect.so
snortrules.so
telnet.so

Requires :
ld-linux.so.2
libpthread.so.0
libpcre.so.0
libc.so.6(GLIBC_2.0)
prelude-report = 0.4.2-7mdk
libssl.so.0
libdl.so.2
/bin/sh
libpthread.so.0(GLIBC_2.0)
rpmlib(PayloadFilesHavePrefix) <= 4.0-1
rpmlib(CompressedFileNames) <= 3.0.4-1
libcrypt.so.1
rpmlib(VersionedDependencies) <= 3.0.3-1
libc.so.6(GLIBC_2.1)
libc.so.6(GLIBC_2.1.3)
libprelude = 0.4.2-7mdk
libcrypto.so.0
libprelude.so.0
libpthread.so.0(GLIBC_2.1)
libc.so.6


Content of RPM :
/etc/prelude
/etc/prelude/prelude.conf
/etc/rc.d/init.d/prelude
/usr/bin/prelude
/usr/lib/prelude/detects/arpspoof.la
/usr/lib/prelude/detects/arpspoof.so
/usr/lib/prelude/detects/debug.la
/usr/lib/prelude/detects/debug.so
/usr/lib/prelude/detects/scandetect.la
/usr/lib/prelude/detects/scandetect.so
/usr/lib/prelude/detects/snortrules.la
/usr/lib/prelude/detects/snortrules.so
/usr/lib/prelude/protocols/http.la
/usr/lib/prelude/protocols/http.so
/usr/lib/prelude/protocols/rpc.la
/usr/lib/prelude/protocols/rpc.so
/usr/lib/prelude/protocols/telnet.la
/usr/lib/prelude/protocols/telnet.so
/usr/share/doc/prelude-0.4.2
/usr/share/doc/prelude-0.4.2/AUTHORS
/usr/share/doc/prelude-0.4.2/COPYING
/usr/share/doc/prelude-0.4.2/CREDITS
/usr/share/doc/prelude-0.4.2/ChangeLog
/usr/share/doc/prelude-0.4.2/NEWS
/usr/share/doc/prelude-0.4.2/README
/usr/share/doc/prelude-0.4.2/TODO

 
ICM