Index of /ports_security/acid
Name Last modified Size
Parent Directory -
Makefile 15-Feb-2008 13:20 1.2K
distinfo 25-Nov-2005 21:00 196
files/ 25-Dec-2006 04:06 -
pkg-descr 26-Sep-2000 06:58 709
pkg-message 16-Feb-2004 17:21 266
pkg-plist 26-Feb-2003 11:28 1.6K
ACID is a PHP-based analysis engine to search and process a database of
security incidents generated by the NDIS Snort. The features currently
include:
- Search interface for finding alerts matching practically any criteria.
This includes arrival time, signature time, source/dest address/port,
flags, payload, etc. Furthermore, these queries can be made arbitrarily
complex to satsify almost any parameters.
- Statistics:
- % of traffic for each protocol
- Alerts: # of src/dst IP, last/first arrival time
- Graph # of arrived alert over a period of time
- last x-number of alerts by protocol
- All features are provided in real-time
WWW: http://www.cert.org/kb/acid/