全部搜索项
buster  ] [  bullseye  ] [  bookworm  ] [  trixie  ] [  sid  ]
[ 源代码: logdata-anomaly-miner  ]

软件包:logdata-anomaly-miner(1.0.0-1)

logdata-anomaly-miner 的相关链接

Screenshot

Debian 的资源:

下载源码包 logdata-anomaly-miner

维护者:

外部的资源:

相似软件包:

This tool allows one to create log analysis pipelines

to analyze log data streams and detect violations or anomalies in it. It can be run from console, as daemon with e-mail alerting or embedded as library into own programs. It was designed to run the analysis with limited resources and lowest possible permissions to make it suitable for production server use. Analysis methods include:

 * static check patterns similar to logcheck but with extended
   syntax and options.
 * detection of new data elements (IPs, user names, MAC addresses)
 * statistical anomalies in log line values and frequencies
 * correlation rules between log lines as described in th AECID
   approach http://dx.doi.org/10.1016/j.cose.2014.09.006

The tool is suitable to replace logcheck but also to operate as a sensor feeding a SIEM.

Please report bugs at https://bugs.launchpad.net/logdata-anomaly-miner/+filebug

其他与 logdata-anomaly-miner 有关的软件包

  • 依赖
  • 推荐
  • 建议
  • 增强

下载 logdata-anomaly-miner

下载可用于所有硬件架构的
硬件架构 软件包大小 安装后大小 文件
all 102.9 kB468.0 kB [文件列表]