OSSIM aims to unify network monitoring, security, correlation, and qualification in one single tool. It combines Snort, BASE, NTOP, Nagios, nmap, nessus, and rrdtool to provide the user with full control over every aspect of networking or security.
| Tags | Security Monitoring |
|---|---|
| Licenses | BSD Revised |
| Operating Systems | Mac OS X POSIX BSD Linux |
| Implementation | C Perl PHP PL/SQL |
Recent releases


Changes: This release corrects lots of security problems that have appeared on the underlying OS during the last months. It also adds clamav and mod-security for self-protection, a ton of ossim bugfixes, and the new alienvault feed for nessus updates.


Changes: The OSSIM installer aims at providing an easy to use introduction to new users approaching OSSIM. Besides configuring all the needed components, it provides tools to ease an initial approach for new users to the Security Information Management area. Advanced graphs, viewers, and tuning are included, which would not be possible to achieve using standard OS installation packages.


Changes: This is mainly a bugfix release, adjusting the environment to the "blackbox" like environment that ossim is released as.


Changes: This release has many bugfixes, new executive panel plugins (including a nifty geographic positioning one), improved snort logging support, hierarchical metrics, and vulnerability scanning enhancements.


Changes: VMOSSIM is a fully working OSSIM environment packaged into a VMWare image. It's got most of the plugins enabled and is intended for uncomplicated and fast deployment, as well as for demonstration and testing purposes. It incudes a set of image management scripts not included with the main OSSIM distribution, which alleviates access to OSSIM by not-so-skilled users.