Projects / Suricata

Suricata

Suricata is an Intrusion Detection and Prevention (IDS/IPS) engine developed by the Open Information Security Foundation and its supporting vendors. The engine is multi-threaded and has native IPv6 support, file extraction capabilities, and many more features. It's capable of loading existing Snort rules and signatures, and supports many frontends through Barnyard2.

Tags
Licenses
Operating Systems
Implementation

RSS Recent releases

Release Notes: The GeoIP keyword was added. HTTP host header matching was added. New Unix socket commands were added. Napatech support was improved. IPFW support was improved. HTTP query string normalization was improved. Many issues were fixed.

  •  08 Mar 2013 00:24

Release Notes: Several stability and accuracy issues were fixed.

Release Notes: Interactive Unix Socket mode was added. IP Reputation support was added. A Lua scripting detection keyword was added. IP Defrag engine performance was much improved. Global thresholding was improved. AF_PACKET IPS mode support was added. File log output was improved. HTTP inspection was made more configurable. Live packet capture stats support was added. The stream reassembly engine was improved. TLS cert logging, storing, and fingerprint matching was added. Support for decoding various tunnel protocols was added. Delayed detection engine initialization support was added.

  •  07 Dec 2012 01:16

Release Notes: This release fixes a major flow engine memory leak, a case in which unified2 could overwrite its own alert files, and the Windows build.

  •  29 Nov 2012 21:36

Release Notes: Interactive Unix Socket mode was added. IP Reputation support was added. Command line options were improved. The rule analyzer was improved. File log output was improved. Endace DAG card live stats support was added. A new HTTP event was added. Many issues were fixed.

Screenshot

Project Spotlight

OpenMW

A reimplementation of the Morrowind engine.

Screenshot

Project Spotlight

ocserv

An SSL VPN server.