Libnids

Libnids is an implementation of an E-component of Network Intrusion Detection System.
Download

Libnids Ranking & Summary

Advertisement

  • Rating:
  • License:
  • GPL
  • Price:
  • FREE
  • Publisher Name:
  • Rafal Wojtczuk
  • Publisher web site:
  • http://www.packetfactory.net/projects/libnids/

Libnids Tags


Libnids Description

Libnids is an implementation of an E-component of Network Intrusion Detection System. Libnids is an implementation of an E-component of Network Intrusion Detection System. It emulates the IP stack of Linux 2.0.x. Libnids offers IP defragmentation, TCP stream assembly and TCP port scan detection.The most valuable feature of libnids is reliability. A number of tests were conducted, which proved that libnids predicts behaviour of protected Linux hosts as closely as possible. Libnids is highly configurable in run-time and offers a convenient interface. Currently it compiles on Linux, *BSD and Solaris. WIN32 port is mantained separately here. Using libnids, one has got a convinient access to data carried by a TCP stream, no matter how artfully obscured by an attacker.What's New in This Release:· in TCP stream, the byte with absolute offset 0 was treated as urgent data; fixed· DLT_IEEE802_11_RADIO handling· added a few missing checks for failed malloc


Libnids Related Software