DEBFIND Suche nach Debian-Paketen
Suchplatform für Softwarepakete und Archive Debian-basierter Linux-Distributionen
beta ! Diese website wird noch weiterentwickelt.
Liste aller Kategorien/Sektionen | Suchmaske | Haftungsausschluß
Paketbeschreibung
Paketname | psad |
Beschreibung | The Port Scan Attack Detector |
Archiv/Repository | Offizielles Ubuntu Archiv lucid (universe) |
Version | 2.1.5-2 |
Sektion | universe/admin |
Priorität | optional |
Installierte Größe | 756 Byte |
Hängt ab von | libc6 (>= 2.4), perl, libunix-syslog-perl, iptables, rsyslog | system-log-daemon, libnetwork-ipv4add |
Empfohlene Pakete | bastille |
Paketbetreuer | Ubuntu Developers |
Quelle | |
Paketgröße | 180470 Byte |
Prüfsumme MD5 | c8f083b82a0fdccd47a4e82eea1cb73b |
Prüfsumme SHA1 | 2ff529b33381eae725fa055b519a12d7bef08b09 |
Prüfsumme SHA256 | 3be0cc2396d0caa8c90f81bb468aed73b19d651eaf46cae164d006c4af640916 |
Link zum Herunterladen | psad_2.1.5-2_i386.deb |
Ausführliche Beschreibung | PSAD is a collection of four lightweight system daemons written in
Perl and in C that is designed to work with Linux firewalling code
(iptables in the 2.4.x kernels, and ipchains in the 2.2.x kernels)
to detect port scans. It features a set of highly configurable danger
thresholds (with sensible defaults provided), verbose alert messages
that include the source, destination, scanned port range, begin and
end times, tcp flags and corresponding nmap options (Linux 2.4.x
kernels only), reverse DNS info, email alerting, and automatic
blocking of offending ip addresses via dynamic configuration of
ipchains/iptables firewall rulesets.
.
In addition, for the 2.4.x kernels psad incorporates many
of the tcp signatures included in Snort to detect highly suspect scans
for:
.
* various backdoor programs (e.g. EvilFTP, GirlFriend, SubSeven)
* DDoS tools (mstream, shaft)
* advanced port scans (syn, fin, xmas) such as those made with nmap
.
|
Impressum
Linux is a registered trademark of Linus Torvalds
|