etch  ] [  etch-m68k  ] [  lenny  ] [  squeeze  ] [  sid  ] [  experimental  ]
[ Source: samhain  ]

Package: samhain (2.2.3-6.2 and others)

Data integrity and host intrusion alert system

Samhain is an integrity checker and host intrusion detection system that can be used on single hosts as well as large, UNIX-based networks. It supports central monitoring as well as powerful (and new) stealth features to run undetected on memory using steganography.

Main features

    * Complete integrity check
         + uses cryptographic checksums of files to detect
           modifications,
         + can find rogue SUID executables anywhere on disk, and
    * Centralized monitoring
         + native support for logging to a central server via encrypted
           and authenticated connections
    * Tamper resistance
         + database and configuration files can be signed
         + logfile entries and e-mail reports are signed
         + support for stealth operation

Homepage: http://la-samhna.de/samhain/index.html

Tags: System Administration: Monitoring, User Interface: Command Line, Daemon, Role: Program, Scope: Utility, Security: Intrusion Detection, File Integrity, Purpose: Monitoring

Other Packages Related to samhain

  • depends
  • recommends
  • suggests
  • dep: debconf (>= 1.2.9)
    Debian configuration management system
    or debconf-2.0
    virtual package provided by cdebconf, cdebconf-udeb, debconf
  • dep: libc0.1 (>= 2.3.4) [kfreebsd-amd64, kfreebsd-i386]
    GNU C Library: Shared libraries
    also a virtual package provided by libc0.1-udeb
  • dep: libc6 (>= 2.5-5) [m68k]
    GNU C Library: Shared libraries
    also a virtual package provided by libc6-udeb
    dep: libc6 (>= 2.7-1) [not alpha, ia64, kfreebsd-amd64, kfreebsd-i386, m68k]
  • dep: libc6.1 (>= 2.7-1) [alpha, ia64]
    GNU C Library: Shared libraries
    also a virtual package provided by libc6.1-udeb
  • dep: libgcrypt11 (>= 1.4.0) [not kfreebsd-amd64, kfreebsd-i386]
    LGPL Crypto library - runtime library
    dep: libgcrypt11 (>= 1.4.2) [kfreebsd-amd64, kfreebsd-i386]
  • dep: libgnutls26 (>= 2.4.0-0) [not kfreebsd-amd64, kfreebsd-i386]
    the GNU TLS library - runtime library
    dep: libgnutls26 (>= 2.5.9-0) [kfreebsd-amd64, kfreebsd-i386]
  • dep: libprelude2
    Hybrid Intrusion Detection System [ Base library ]

Download samhain

Download for all available architectures
Architecture Version Package Size Installed Size Files
alpha 2.2.3-6.2 869.0 kB2152 kB [list of files]
amd64 2.2.3-6.2 853.6 kB2068 kB [list of files]
armel 2.2.3-6.2 850.8 kB2060 kB [list of files]
hppa 2.2.3-6.2 865.8 kB2080 kB [list of files]
i386 2.2.3-6.2 824.1 kB1972 kB [list of files]
ia64 2.2.3-6.2 908.6 kB2376 kB [list of files]
kfreebsd-amd64 2.2.3-6.2 834.1 kB1870 kB [list of files]
kfreebsd-i386 2.2.3-6.2 825.1 kB1870 kB [list of files]
m68k (unofficial port) 2.2.3-6.1 809.8 kB2036 kB [list of files]
mips 2.2.3-6.2 855.0 kB2160 kB [list of files]
mipsel 2.2.3-6.2 854.1 kB2160 kB [list of files]
powerpc 2.2.3-6.2 851.6 kB2100 kB [list of files]
s390 2.2.3-6.2 843.9 kB2076 kB [list of files]
sparc 2.2.3-6.2 846.6 kB2060 kB [list of files]