FLAG was designed to simplify the process of log file analysis and forensic investigations. It uses a database as a backend to assist in managing the large volumes of data. This allows it to remain responsive and expedite data manipulation operations. It features compatibility with encase images, Windows registry support, and network dump analysis.
Reapoff (Regular Expression, Arbitrary Protocol, Opensource Filtering Firewall) is a regular expression enabled TCP/IP proxy. It operates on data using a pair of simple rule- based configuration files defining the tests and actions to perform on data. It can also sign SSL connections transparently (with MITM), applying a security policy to encrypted SSL sessions that would otherwise be allowed unchecked. The proxy forms the core part of an overall firewall solution designed to run from a RAM disk using Trinux.