r2 - 05 Aug 2008 - 14:43:36 - MattJonkmanYou are here: TWiki >  Main Web > SidReporter

SidReporter

SidReporter is the Emerging Threats Data Sharing Tool that allows users to report anonymously their local IDS/IPS event data. In return you will (soon) get an analysis of how your events compare to the whole, what you're missing, what trends are showing globally, and what you can do to tune your rulesets.

All data is reported in a non-source identifiable way using PGP to encrypt in transit. So your data can only be decrypted by you or the Emerging Threats data correlation process.

We are currently Beta Testing the SidReporter perl collector. You can download the current version of the SidReporter here:

http://www.emergingthreats.net/sidreporter/

CVS access is available here for the most up to date version:

http://www.emergingthreats.net/cgi-bin/cvsweb.cgi/?cvsroot=sidreporter

Instructions for installing SidReporter and some notes on the best way to get GnuPG? running are available here:

SidReporterInstall

-- MattJonkman - 04 Aug 2008

Edit | Attach | Printable | Raw View | Backlinks: Web, All Webs | History: r2 < r1 | More topic actions
 
Emerging Threats
This site is powered by the TWiki collaboration platformCopyright © by the contributing authors. All material on this collaboration platform is the property of the contributing authors.
Ideas, requests, problems regarding TWiki? Send feedback