PortscanGeoinfo is a plugin for the powerful Prelude correlation engine. This plugin correlates alerts from Snort NIDS and OSSEC HIDS sensors regarding portscans. Geographical information (GeoIP) is included in the correlated alert.

Features

  • GeoIP lookup
  • correlation of IDMEF events (prelude-correlator)
  • correlation of portscans

Project Activity

See All Activity >

License

GNU General Public License version 2.0 (GPLv2)

Follow PortscanGeoinfo

PortscanGeoinfo Web Site

Other Useful Business Software
AI-powered service management for IT and enterprise teams Icon
AI-powered service management for IT and enterprise teams

Enterprise-grade ITSM, for every business

Give your IT, operations, and business teams the ability to deliver exceptional services—without the complexity. Maximize operational efficiency with refreshingly simple, AI-powered Freshservice.
Try it Free
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of PortscanGeoinfo !

Additional Project Details

Operating Systems

FreeBSD, Linux, NetBSD, OpenBSD

Languages

English

Intended Audience

Advanced End Users, System Administrators

Programming Language

Python

Related Categories

Python Network Monitoring Software

Registered

2011-01-21