The purpose of SNX is to have a modular series of components that report back to a central repository and 'AI' for pattern recognition and anomoly detection. This is to help with IDS systems, and to move to the next generation of security.
Be the first to post a text review of SensorNet X (SNX). Rate and review a project by clicking thumbs up or thumbs down in the right column.
I have created a basic install iso image from the openbsd 3.9 sources. I haev some of the core hooks and basic tools added to the image, making it easy to install and boot a basic SNX sensor. We are still trying to hack out the bugs in the control senter.
Well, after long delay, and some staff changes, I am back on as full developer of the project. I am now rebuilding and redesigning XBSD, which is nowe the core for the project. Once i am done with this, i will start releasing beta's for the project. This will be what ties the rest together, initial, it will be XBSD, with the core FW and IDS/IPS hooks. I will then add the res t as time permits, and code changes or input comes in.
I have completed several long term tdy contracts, and I will now be focusing on updating and releasing new code for the project. the first will be the core os, of which 2 version only will be done. Modified OpenBSD (maybe FreeBSD) and Mac OS X, are the only 2 Supported platforms now.
Changed the internal component layout.
----------------------------------------------- Complete System Monitor (CSM) Changelog ----------------------------------------------- Legend: +Addition -Deletion *Bug Fix &Author's Note ----------------------------------------------- 12/10/01 - 0.1.1 &The utility has been re-named to CSM for Complete System Monitor, as i'm going to want to check for more then just checksums before the util is finished :) 12/04/01 - 0.1.0 +Added the SHA256 checksum &The code was re-wrote to make it more 'modular' by default, this will help for whenever i plan to impliment input and output plugins into the system. 10/30/01 - 0.0.9 +Added the RipeMD160 checksum &Code will be undergoing a MAJOR rewrite before it will be fully released to the general public 09/15/01 - 0.0.8 *Fixed a bug in the db write *Fixed handling of the /dev directory 08/16/01 - 0.0.7 +Added the MD2 digest +Added the MD4 digest 07/24/01 - 0.0.6 +Added the SHA1 digest to the checksuming *Fixed a bug with the MD5 implimentation 07/10/01 - 0.0.5 *Fixed the damn problem with NA not being put into the DB because of a small script problem... forgot to trim that white space... *Fixed new directories not being found when a comparison check was being run &I plan on adding more checks to this utility first thing... the first inclusion will be SHA1 checks. I will keep you all posted... 07/03/01 - 0.0.4 -Removed the Device ID check, this was a must... as it was causing problems all over the place... and took over 2 hours to track down. -removed the Blocksize check. -removed the Block location check. *Fixed the problem with permissions not being added correctly to the database, now if it finds a combination that it doesn't reconize, it will add what it found from a simple 'ls'. This is not a problem with my script... it's with the File::Mode perl module... i've yet to find another way to solve this... +Added the symbolic link database, so it will now do a comparison on this *Fixed the ability to recognize new directories. &I have one last check that needs to be done, and that's a cross-reference of the database... i'm not sure why I didn't notice this before... 05/18/01 - 0.0.3 *Fixed the problem when dealing with either the /dev or /proc filesystem, it will now skip these by default when it's doing the database generation and comparison. 04/24/01 - 0.0.2 -Removed the fi.pl script... it's not really needed, so it was removed... *Fixed the problem with the comdb.pl and gendb.pl scripts barfing on a /proc filesystem... i'm not sure why people would want to check it, but it's there in case you are wanting to. &Added a COMPATIBILITY document, to list the compatibility of OS's and File Systems out there. 04/23/01 - 0.0.1 &Version 0.0.1 released!!! Give me some time here in order to get more things added into the util! :) ----------------------------------------------- Author:Darrick Harter Email:fizbo@email.com
We will be releasing the first in a series of code tests. this are not for prduction systems but for testing, and we would like as much feedback as possible. Thank You Spiders
This recaps what's been going on with SNX for the past week: SNXbot - There has been a lot going on with this the past week. The encrypted logging is complete, as well as the 3DES encryption for communication on the botnet. A major step forward on this. SNXsensor - Already in the development phase on this one ;) - Looks like there is a little bit of a difference on the EtherTypes when it comes to dec and hex format, but don't worry, this is a minor issue. The template engine is coming along at a good start and progress is good. SNXqueue - A lot of groundwork has been laid with socket communication, and how components are going to interact with each other, currently deciding on the format of the transaction queue for inbound and outbound communications. Well, that's all peeps, have a good weekend, I know i'll be coding a LOT over the next few days, and hope to have SOMETHING out there for people to check out before the end of March. Stay Tuned! - fizbo
Be the first person to add a text review.
Copyright © 2009 Geeknet, Inc. All rights reserved. Terms of Use
Thanks for your rating!
Would you also like to write a review?