Port Scan Attack Detector PSAD
Sep 24, 2009, 21:36 (0 Talkback[s])
(Other stories by Jimmy Ray Purser)
"I started messin' around with Port Knocking and Single Packet
Authentication. I grabbed one of my favorite Linux reference
guides; "Linux Firewalls" by Michael Rash. If you have not read
this book, you're missin' out on the best thing since cornbread
found pinto beans. Super friggen awesome book!
"On my way to chapter 12, I happened to stumble across Port Scan
Attack Detector (PSAD). Wholly smokes! I have completely overlooked
this awesome utility! PSAD at one time in a galaxy not so far away
was called Bastille Linux NIDS. It is still part of the that
awesome package but now called PSAD. If you are looking for a great
OS hardening package look no further then:
http://bastille-linux.sourceforge.net/"
Complete
Story
Related Stories:
- Snort open source IDS turns 10(Jun 01, 2009)
- Howto block DDOS attacks on Ubuntu(Feb 27, 2009)
- 10 iptables rules to help secure your Linux box(Feb 20, 2009)
- Video: Mastering IPTables, Final Installment(Nov 05, 2008)
- More Results from Realeyes(Oct 30, 2008)
- Video: Mastering Iptables, part 2
(Oct 19, 2008)
- Video: Mastering IPTables, Part I(Oct 08, 2008)
- psad: Linux Detect And Block Port Scan Attacks In Real Time(Aug 12, 2008)