Sunday 18 January 2015

Suricata 2.0.6 released, Available for Ubuntu, Fedora, OpenSUSE, RHEL, Slackware, Devbian, Linux Mint, Mac OSX, FreeBSD and Windows




Suricata 2.0.6 released, Available for Ubuntu, Fedora, OpenSUSE, RHEL, Slackware, Devbian, Linux Mint, Mac OSX, FreeBSD and Windows

Suricata is a high performance Network IDS, IPS and Network Security Monitoring engine. Open Source and owned by a community run non-profit foundation, the Open Information Security Foundation (OISF). Suricata is developed by the OISF and its supporting vendors.

Suricata is without no doubt the best IDS (Intrusion Detection System) and IPS (Intrusion Prevention System) software ever built, powered only by open source technologies.

What's New in This Release:
  • Bug #1364: evasion issues
  • Bug #1337: output-json: duplicate logging
  • Bug #1325: tls detection leads to tcp stream reassembly sequence gaps (IPS)
  • Bug #1192: Suricata does not compile on OS X/Clang due to redefinition of string functions
  • Bug #1183: pcap: cppcheck warning


1. Highly Scalable

Suricata is multi threaded. This means you can run one instance and it will balance the load of processing across every processor on a sensor Suricata is configured to use. This allows commodity hardware to achieve 10 gigabit speeds on real life traffic without sacrificing ruleset coverage.

2. Protocol Identification

The most common protocols are automatically recognized by Suricata as the stream starts, thus allowing rule writers to write a rule to the protocol, not to the port expected. This makes Suricata a Malware Command and Control Channel hunter like no other. Off port HTTP CnC channels, which normally slide right by most IDS systems, are child’s play for Suricata! Furthermore, thanks to dedicated keywords you can match on protocol fields which range from http URI to a SSL certificate identifier.

3. File Identification, MD5 Checksums, and File Extraction

Suricata can identify thousands of file types while crossing your network! Not only can you identify it, but should you decide you want to look at it further you can tag it for extraction and the file will be written to disk with a meta data file describing the capture situation and flow. The file’s MD5 checksum is calculated on the fly, so if you have a list of md5 hashes you want to keep in your network, or want to keep out, Suricata can find it.

Suricata has many more great features, and we hope you give it a run. It’s free, it’s fast, and it’s going to be here long term!

Suricata 2.0.6 released, Available for Ubuntu, Fedora, OpenSUSE, RHEL, Slackware, Devbian, Linux Mint, Mac OSX, FreeBSD and Windows

to installation Suricata 2.0.6 stable on Ubuntu 15.04 vivid Vervet, ubuntu 14.10 Utopic Unicorn, Ubuntu 14.04 Trusty Tahr (LTS), Ubuntu 13.10/13.04/12.04, Linux Mint 17.1 Rebecca, Linux Mint 17 Qiana, Linux Mint 13 Maya, Pinguy OS 14.04, Elementary OS 0.3 Freya, Elementary OS 0.2 Luna, Peppermint Five, Deepin 2014, LXLE 14.04, Linux Lite 2.0, Linux Lite 2.2 and other Ubuntu derivative systems via PPA, open a new Terminal window and bash (get it?) in the following commands:

sudo add-apt-repository ppa:oisf/suricata-stable
sudo apt-get update
Then you can install the latest stable Suricata with:
sudo apt-get install suricata
or for the Suricata package with build in (enabled) debugging!
sudo apt-get install suricata-dbg
To remove Suricata from your system:
sudo apt-get remove suricata
For Other OS and other linux distro you can follow link this bellow :
Home Suricata

No comments:

Post a Comment