Alle Optionen
buster  ] [  bullseye  ] [  bookworm  ] [  trixie  ] [  sid  ]
[ Quellcode: logdata-anomaly-miner  ]

Paket: logdata-anomaly-miner (2.2.2-1)

Links für logdata-anomaly-miner

Screenshot

Debian-Ressourcen:

Quellcode-Paket logdata-anomaly-miner herunterladen:

Betreuer:

Externe Ressourcen:

Ähnliche Pakete:

tool for log analysis pipelines

This tool allows one to analyze log data streams and detect violations or anomalies in it. It can be run from console, as daemon with e-mail alerting, or embedded as library into own programs. It was designed to run the analysis with limited resources and lowest possible permissions to make it suitable for production server use. Analysis methods include:

 * log line parsing and filtering with extended syntax and options
 * detection of new data elements (IPs, user names, MAC addresses)
 * statistical anomalies in log line values and frequencies
 * correlation rules between log lines

The tool is suitable to operate as a sensor feeding a SIEM and distributing messages via message queues.

Andere Pakete mit Bezug zu logdata-anomaly-miner

  • hängt ab von
  • empfiehlt
  • schlägt vor
  • erweitert

logdata-anomaly-miner herunterladen

Download für alle verfügbaren Architekturen
Architektur Paketgröße Größe (installiert) Dateien
all 565,6 kB1.710,0 kB [Liste der Dateien]