+ Post New Thread
Results 1 to 5 of 5
*nix Thread, OSSIM - anyone tried it out and have some pointers? in Technical; OSSIM is a one-stop-shop for host and security monitoring - more details can be found at OSSIM (Open Source Security ...
  1. #1

    Ric_'s Avatar
    Join Date
    Jun 2005
    Location
    London
    Posts
    7,590
    Thank Post
    109
    Thanked 762 Times in 593 Posts
    Rep Power
    180

    OSSIM - anyone tried it out and have some pointers?

    OSSIM is a one-stop-shop for host and security monitoring - more details can be found at OSSIM (Open Source Security Information Management)

    Anyway... it looks rather interesting, combining NESSUS, Nagios, OCS, Snare, Osiris...

    The only problem is that the documentation is pretty poor IMHO.

  2. Thanks to Ric_ from:

    localzuk (7th October 2008)

  3. #2

    localzuk's Avatar
    Join Date
    Dec 2006
    Location
    Minehead
    Posts
    17,524
    Thank Post
    513
    Thanked 2,398 Times in 1,859 Posts
    Blog Entries
    24
    Rep Power
    821
    Hmm... I'll take a look at this, as it would be useful for centralising logging, and other monitoring - something I've been tasked with for these data protection rules.

  4. #3

    localzuk's Avatar
    Join Date
    Dec 2006
    Location
    Minehead
    Posts
    17,524
    Thank Post
    513
    Thanked 2,398 Times in 1,859 Posts
    Blog Entries
    24
    Rep Power
    821
    I've had a play with it and it looks quite useful. I've got it set up with snare agent on one of our servers, sending windows events to the central location. I've also got it doing the OCS-NG bit, and a few other bits and pieces.

    One thing - it is *very* resource hungry! I gave it a VM machine with 2 processors, 2GB ram and 24GB hard disk and it ran out of memory after about an hour. I'll keep on playing and hopefully figure out a good amount of memory for it.

  5. #4

    Ric_'s Avatar
    Join Date
    Jun 2005
    Location
    London
    Posts
    7,590
    Thank Post
    109
    Thanked 762 Times in 593 Posts
    Rep Power
    180
    Quote Originally Posted by localzuk View Post
    One thing - it is *very* resource hungry! I gave it a VM machine with 2 processors, 2GB ram and 24GB hard disk and it ran out of memory after about an hour. I'll keep on playing and hopefully figure out a good amount of memory for it.
    I did notice that... I threw a little more RAM at it (4GB IIRC) and it still ate it all.

  6. #5

    localzuk's Avatar
    Join Date
    Dec 2006
    Location
    Minehead
    Posts
    17,524
    Thank Post
    513
    Thanked 2,398 Times in 1,859 Posts
    Blog Entries
    24
    Rep Power
    821
    Quote Originally Posted by Ric_ View Post
    I did notice that... I threw a little more RAM at it (4GB IIRC) and it still ate it all.
    I had it crashing with too little memory with 2GB so increased to 3.5GB and it then seemed to be happy. I think it is just one or 2 tasks that eat all the memory, as it only shoots up occasionally.

    I've got it working now with snare and ocs. Just figuring out the remaining bits now...

SHARE:
+ Post New Thread

Similar Threads

  1. DNS Pointers pleeze
    By mark in forum Windows
    Replies: 6
    Last Post: 20th January 2007, 09:34 PM
  2. Advice, pointers on Blogs and blog casts.
    By Kyle in forum How do you do....it?
    Replies: 13
    Last Post: 23rd April 2006, 08:54 PM
  3. Replies: 9
    Last Post: 16th March 2006, 09:14 AM

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •