Does anyone know of an opensource, or just free, Alert Management System that could coralate snort, syslog, firewall logs, etc? An IDS is good, and firewalls are a must, and syslog can prove if you had an 'incedent' on a host. It would be nice to have a free engine that can pull it all togeater, maybe with a pen test plug-in to know what hosts run what OS/services. There are plenty of products that coast upwards of $250,000. But I just need something to keep tabs on my elaborate home network.
Any idea's would be greatly appreciated!
Any idea's would be greatly appreciated!
Comment