Binary package “sagan” in ubuntu focal
Real-time System & Event Log Monitoring System
Sagan is a multi-threaded, real time system- and event-log monitoring
system, but with a twist. Sagan uses a “Snort” like rule set for
detecting malicious events happening on your network and/or computer
systems.
If Sagan detects a potentially bad event, that event can be stored to a
Snort database (MySQL/PostgreSQL), send it to a SIEM tool like Prelude,
or send an email.
Sagan is meant to be used in a ‘centralized’ logging environment, but
will work fine as part of a standalone Host IDS system for workstations.
Source package
Published versions
- sagan 1.2.0-1.1 in amd64 (Proposed)
- sagan 1.2.0-1.1 in amd64 (Release)
- sagan 1.2.0-1.1 in arm64 (Proposed)
- sagan 1.2.0-1.1 in arm64 (Release)
- sagan 1.2.0-1.1 in armhf (Proposed)
- sagan 1.2.0-1.1 in armhf (Release)
- sagan 1.2.0-1.1 in ppc64el (Proposed)
- sagan 1.2.0-1.1 in ppc64el (Release)
- sagan 1.2.0-1.1 in riscv64 (Release)
- sagan 1.2.0-1.1 in s390x (Proposed)
- sagan 1.2.0-1.1 in s390x (Release)