SIMS - Prelude vs OSSIM vs OpenSIMS, with Nagios and remote logging too

SIMS - Prelude vs OSSIM vs OpenSIMS, with Nagios and remote logging too

Secure Home | Search | About
 General Computer Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
SIMS - Prelude vs OSSIM vs OpenSIMS, with Nagios and remote logging too Pat 08-29-2006
Posted by Pat on August 29, 2006, 9:46 am
If you were  Registered and logged in, you could reply and use other advanced thread options
Hi,

Briefly, my question: does anyone here know the best way to implement
all of these (Integrity Checks, Servers Monitoring and Remote Logging)
in a mixed environment (UNIX/Windows), everything being open-source ?

Details of the question:

I am looking for open-source products to secure our network and
servers, which are a mix of Windows/Linux/AIX. I am looknig for some
help in deciding what products to implement.

1- I want to begin by implementing an integrity checker. I am looking
at Samhain and Osiris. Samhain seems better, but since it does not
support Windows, I will probably use Osiris.

2- I want to run Nagios on my servers for monitoring

3- I want to setup my UNIX and Windows servers with remote logging. For
the UNIX/Linux servers, I would do remote syslogging to a syslog server
such as Syslog-ng or Rsyslog. For the Windows servers, I would also
setup a remote logging to that same syslog server, with a client tool
such as Winsyslog.

4- On top of that, I would like to implement a SIMS. I know of 3
open-source SIMS: Prelude, OSSIM and OpenSIMS. Is one better than the
other with my mixed environment?

5- Would a Change Management Solution like Radmind on top of all that
be compatible worthwile, or it would mainly be redundant ?

So my question again: does anyone here know the best way to implement
all of these (Integrity Checks, Servers Monitoring and remote Logging)
in a mixed environment (UNIX/Windows), everything being open-source ?

Thank you.


Similar ThreadsPosted
"/usr/local/nagios/etc" directory doe not exits May 9, 2005, 11:28 pm
"/usr/local/nagios/libexec" directory missing May 11, 2005, 2:40 am
ldap error at the time of nagios plugin configuration May 12, 2005, 2:42 am
Snort logging May 4, 2005, 4:52 am
HPSBUX02354 SSRT080113 rev.1 - HP-UX Running Netscape / Red Hat Directory Server, Remote Cross Site Scripting (XSS) or Remote Denial of Service (DoS) September 2, 2008, 8:15 am
snort file logging name December 18, 2004, 5:31 am
A question about firewall logging March 29, 2006, 7:42 am
Re: How safe is Tor for logging into http (nont https) web sites October 26, 2007, 8:57 am
Re: How safe is Tor for logging into http (nont https) web sites October 27, 2007, 5:16 pm
Re: How safe is Tor for logging into http (nont https) web sites October 27, 2007, 5:24 pm

The site map in XML format XML site map

Contact Us | Privacy Policy