OSSIM
Open Source Security Information Management

2005/03/18 - OSSIM 0.9.8rc2 released

release

We're proud to announce 0.9.8rc2, mainly a bugfix release. Lot's of parser bugs have been corrected as well as framework and server issues.

We've tried to keep the feature enhancements to a minimum since this is intended to be mainly a bugfix release but we could name the following new features:

See the ChangeLog for details.


2005/01/31 - OSSIM 0.9.8 is coming

release

We're releasing 0.9.8rc1 so we can catch any bugs introduced by the latest code-changes. This release features:

Enjoy ;-)


2005/01/24 - Internationalization, new appearance, ..

info

Help needed.... Again.

Starting with ossim 0.9.8 we'll introduce internationalization support and will be able to release in English, French, German and Spanish. However, we would love to support a bunch more of languages and need some help. If you're willing to contribute on any language please contact Dominique dk [at] ossim dot net.

And as a little spoiler, some screenshots [1], [2] of the new appearance which we'll introduce in 0.9.8 and wich is 99% definitive for 1.0.

Enjoy ;-)


2004/11/04 - OSSIM needs your logs

info

In an effort to get input from as many devices as possible before releasing 1.0 we request your help with this matter. We need sample logs, files/lines, regular expressions, documentation, etc... from any device/program that you consider interesting for correlation and qualification. If you are willing to help please send an email to logs at ossim dot net with the following information:

All fields are optional except the sample logs. We need them even if a regexp is provided for verification purposes. Of course you may obfuscate fields such as usernames / ip addresses and similar sensitive information although none of the submitted log-files will be published without express permission.

Thank you in advance.


2004/10/25 - OSSIM 0.9.7

release

We're proud to announce the availability of ossim 0.9.7. This release fixes numerous bugs present in rc1 and rc2 and provides two major feature enhancements: optional database configuration replacing ossim.conf and pdf reporting using FPDF. Enjoy :).


2004/09/24 - OSSIM 0.9.7rc1

release

Many things have happened since our last release (nearly three months ago).

First of all we would like to greet our two new members again: Stephane Fournier who has been helping the project for many months now and has agreed to join us and our (currently) nameless elephant, the official logo.

Focusing on the 0.9.7 release the most noticeable improvements have been:

Besides those main additions, we're currently improving the directive viewer/editor, have fixed many many bugs and added new parsers for the following devices/generators:

In order to take advantage all of this don't forget to check the new documentation (thanks Ken!):

(01/10/2004) Update: We have released OSSIM 0.9.7rc2. This version fixes some sql errors and includes some incident manager improvements.


2004/09/21 - Ossim Announce mailing list

info

We're pleased announce at ossim dot net, a newly created mailing list on which new releases, new documents, project status updates and similar information will be sent out.

If you wish to subscribe please visit http://www.ossim.net/mailman/listinfo/announce.


2004/09/15 - Ossim User Manual

devel

Kevin Milne, who we already had the pleasure to mention here some weeks ago, has just submitted a first version of his User Manual. This Manual covers ossim from an end users point of view and goes through the web-ui explaining the steps needed to create and tune assets, policies, priorities, etc.


2004/08/14 - Z4CK

info

Ossim is being mentioned in Kevin Milne's book Z4ck. Z4ck is a novel about a hacker on the run available on http://www.z4ck.org and will be soon available on Amazon. In that book, the protagonist uses ossim in his daily security monitorization job.

(DK) PS: As a personal opinion I enjoyed the book very much.


2004/08/03 - Correlation paper

devel

As said last week we were finishing another paper about ossim's correlation engine. It's done, you can grab it here. Enjoy.


2004/07/26 - Status update

logo

July is being a busy month for us all but nevertheless here's a short status update.

First of all we would like to thank Stéphane Fournier for joining our team. He's been doing a great job the last couple of months and helped to improve ossim a lot so, welcome.

If you've taken a look at the cvs you'll have noticed all the acl stuff we implemented using phpgacl which adds a new level of security to the whole app, with the code review we'll have to do before 1.0 around the corner. The rrd stuff is being heavily improved too since currently they only result in noisy false positives.

Another addition that will make it into 0.9.7 is a reporting module for incident handling that could be very useful on bigger environments with incident escalation procedures and the like.

A little bit late but we're pleased to announce the availability of the bundled Fedora-Ossim 0.9.6 ISO provided by Boseco, grab it at http://www.boseco.com. It includes some nice additions and pretty much shows how a good setup should look.

Again, new documentation is available too (thanks to Ken Gregoire) and we're finishing a second paper covering the correlation engine. It should be out later this week.

And, last but not least: check out http://www.bleedingsnort.com for up-to-date, bleeding edge snort rules. The false positive rate is extremely low for little tested signatures and they are being very useful to us.


2004/07/05 - OSSIM Logo

logo

Finally we've got a logo! Why did we choose an elephant? Our elephant will assimilate all the different network events, it will remember each attack and correlate the responses, it will find the proof that it's a real attack, finally sending a big alarm.

OSSIM Logo

You can see more pictures at the artwork section.


2004/07/01 - OSSIM 0.9.6

release

Version 0.9.6 is out. Please upgrade to this version as it corrects many bugs affecting framework, server and agents.

As you can see on http://www.ossim.net, we've also redesigned part of our web page and have setup a apt-like repository for ossim and it's deps, just add one of these lines to your sources.list:

# Fedora Core 2
rpm http://www.ossim.net/ download/fedora fc2 os-sim

# Fedora Core 1
rpm http://www.ossim.net/ download/fedora fc1 os-sim


2004/06/17 - New debian packages and installation notes

debian

We're proud to announce the availability of debian packages for most of the OSSIM dependencies and up-to-date documentation. The original OSSIM rpm's can be easily converted using alien. Enjoy!

Update:
You can add this line into your /etc/apt/source.list file:
deb http://www.ossim.net/download/ debian/


2004/06/14 - OSSIM 0.9.5

release

Ossim 0.9.5 is out. Featuring a huge number of bugfixes and some very nice improvements we're steadily approaching 1.0.

Here's a short list of what this release provides:


2004/05/12 - OSSIM 0.9.4

release

We're proud to announce OSSIM 0.9.4. Again, many, many bugs involving agent, server and framework have been fixed in this release. There have been lots of speed improvements too. Additionaly, as usual, new features have been finished.

Here is a short list:

Enjoy...


2004/04/28 - Fedora OSSIM Installation ISO

iso

We would like to thank Michael Boman for the effort he is putting into getting a fully working Fedora OSSIM-ISO with all needed dependencies packaged and ready to use. See the official announcement.

For more information about the ISO (which is still in beta-testing) please visit http://www.boseco.com. We'll also keep this site up-to-date regarding OSSIM-ISO (if you come up with a better name just throw us a mail) and announce new releases, making the iso available when it's stable enough.

We'll be releasing in a few days, so this should be 99% OSSIM 0.9.4 iso. Check for it at download section and enjoy! :)

Note: The ISO mentioned above doesn't contain a Live! Distribution. It's an installation CD.


2004/03/25 - OSSIM 0.9.3, bugfixes again

release

It happened again. Fixing some bugs within 0.9.1 we introduced a new serious bug. Release 0.9.3 fixes monitor requests from the server that were broken in 0.9.2.

We apologize for any inconvinience this could have caused.


2004/03/24 - OSSIM 0.9.2 is out, bugfix release

release

A major bug was introduced on 0.9.1 and has been fixed now. Some bug have also been fixed within the misc scripts.

Besides that os and mac detection has been incorporated into the agent and the change logic now is done on the server side.

Last but not least, sensor management has been greatly improved and now ntop, snort, arpwatch, etc... can be started/stopped and enabled/disable from within the web interface.

Thank's to all those who submitted useful bug reports.


2004/03/11 - Snort - Nessus correlation. OSSIM 0.9.1 out

release

Ten days after releasing ossim 0.9.0 we're proud to announce 0.9.1. Hopefully this means we'll be able to release every 15 days as we did at the beginning...

This release's main purpose is twofold:

With this new correlation method, whenever an alert arrives against a host on which nessus has identified a vulnerability, the alerts reliability and priority are raised. It's as simple as that. As of today we've got a relation of 610 snort-nessus events. This is possible due to the hard work of Ignacio Herrero; thank's to him, it's been a hard task.

If you think there are more events that should be included into this list please submit them.

Besides that, minor feature enhancements include:

Enjoy


Complete news archive



OSSIM (Open Source Security Information Management)
OSSIM
Open Source Security Information Management

2006/04/17 - Major Status Update

info

It's been quite some time since we last had an update so here's sort-of-a "Slashdot's slashback".

Besides that there's starting to be some activity on the plugin front. We've received some contributions lately so we th ought about setting up a separate CVS module for this purpose as well as a separate plugin listing in order to thank those c ontributors adequately.

I'm surely missing things here but I'll try to get the full list of contributions and similar by the release date. I can 't specify one right now but it should be during the next couple of weekst most definetively.

Dominique.


2005/12/02 - New document: how to install ossim-agent and Snort on Windows

release

We're publishing a new document (pdf) entitled "Ossim | How to install ossim-agent on Windows Box". The document has been written by Matteo Perazzo and targets all those users wanting to run the agent / sensor part (with snort at least) on windows.

We hope you enjoy it.


2005/10/24 - Releasing dokuwiki; new roadmap

release

We're proud to announce the availability of a Dokuwiki covering ossim information. We decided to initially trust contributions so registration is open and everybody is allowed to post almost everywhere.

Please check a couple of short behaviour rules , besides that please feel free to post what you want.

As part of the wiki release we release a new roadmap which we'll update as needed. (Hopefully not too often). Please send any comments or suggestions to Dominique dk [at] ossim . net

Enjoy!


2005/09/19 - Project status update & more

release

As you all may have noticed development has been slowing down the last four or five months. We've suffered some real life and work issues that have negatively affected the development pace but it seems like everything is more or less sorted out and we expect to get moving again soon. Expect a roadmap update that will reflect this changes as well as another release before end of the year.

Additionally, we would like to link to a couple of pages that caught our attention lately. Joël Winteregg from the swiss EIVD has put up a page with some ossim documentation as well as some interesting plans about extending ossim. Interesting read indeed.

The second link we deemed interesting is to a french speaking blog regarding ossim. It looks very promising.


2005/07/20 - Article: Armor Your Palace

release

Kaos.Theory: Fractal Blog features an interesting article combining various open source tools in order to provide physical & logical security to a site.

From the page:
"A guide to securing your home and home network with inexpensive hardware, open source software and about 8 hours of dedicated time"

Interesting read indeed.


2005/05/18 - OSSIM 0.9.8 released

release

After having fixed numerous bugs we're releasing 0.9.8. With five months of testing on it's back we expect this release to be quite stable.There have been many many bugfixes since the last release while we tried to keep improvements to a minimum.

Just as a reminder, besides the source tarball ossim packages are readily available for Debian and FC3 from download section.


2005/04/28 - RPMS available again

release

After many months we're releasing Fedora RPMS again. You can install them using apt-get, just setup your sources.list as follows:

rpm http://www.ossim.net/ download/fedora fc3

and issue an apt-get install ossim. Anyway, please check the updated FC3 documentation since quite some things have changed since the last rpm release.

We would like to thank everybody that is currently testing them and giving good support on forums & mailing lists. Thank you guys !


2005/03/18 - OSSIM 0.9.8rc2 released

release

We're proud to announce 0.9.8rc2, mainly a bugfix release. Lot's of parser bugs have been corrected as well as framework and server issues.

We've tried to keep the feature enhancements to a minimum since this is intended to be mainly a bugfix release but we could name the following new features:

See the ChangeLog for details.


2005/01/31 - OSSIM 0.9.8 is coming

release

We're releasing 0.9.8rc1 so we can catch any bugs introduced by the latest code-changes. This release features:

Enjoy ;-)


2005/01/24 - Internationalization, new appearance, ..

info

Help needed.... Again.

Starting with ossim 0.9.8 we'll introduce internationalization support and will be able to release in English, French, German and Spanish. However, we would love to support a bunch more of languages and need some help. If you're willing to contribute on any language please contact Dominique dk [at] ossim dot net.

And as a little spoiler, some screenshots [1], [2] of the new appearance which we'll introduce in 0.9.8 and wich is 99% definitive for 1.0.

Enjoy ;-)


2004/11/04 - OSSIM needs your logs

info

In an effort to get input from as many devices as possible before releasing 1.0 we request your help with this matter. We need sample logs, files/lines, regular expressions, documentation, etc... from any device/program that you consider interesting for correlation and qualification. If you are willing to help please send an email to logs at ossim dot net with the following information:

All fields are optional except the sample logs. We need them even if a regexp is provided for verification purposes. Of course you may obfuscate fields such as usernames / ip addresses and similar sensitive information although none of the submitted log-files will be published without express permission.

Thank you in advance.


2004/10/25 - OSSIM 0.9.7

release

We're proud to announce the availability of ossim 0.9.7. This release fixes numerous bugs present in rc1 and rc2 and provides two major feature enhancements: optional database configuration replacing ossim.conf and pdf reporting using FPDF. Enjoy :).


2004/09/24 - OSSIM 0.9.7rc1

release

Many things have happened since our last release (nearly three months ago).

First of all we would like to greet our two new members again: Stephane Fournier who has been helping the project for many months now and has agreed to join us and our (currently) nameless elephant, the official logo.

Focusing on the 0.9.7 release the most noticeable improvements have been:

Besides those main additions, we're currently improving the directive viewer/editor, have fixed many many bugs and added new parsers for the following devices/generators:

In order to take advantage all of this don't forget to check the new documentation (thanks Ken!):

(01/10/2004) Update: We have released OSSIM 0.9.7rc2. This version fixes some sql errors and includes some incident manager improvements.


2004/09/21 - Ossim Announce mailing list

info

We're pleased announce at ossim dot net, a newly created mailing list on which new releases, new documents, project status updates and similar information will be sent out.

If you wish to subscribe please visit http://www.ossim.net/mailman/listinfo/announce.


2004/09/15 - Ossim User Manual

devel

Kevin Milne, who we already had the pleasure to mention here some weeks ago, has just submitted a first version of his User Manual. This Manual covers ossim from an end users point of view and goes through the web-ui explaining the steps needed to create and tune assets, policies, priorities, etc.


2004/08/14 - Z4CK

info

Ossim is being mentioned in Kevin Milne's book Z4ck. Z4ck is a novel about a hacker on the run available on http://www.z4ck.org and will be soon available on Amazon. In that book, the protagonist uses ossim in his daily security monitorization job.

(DK) PS: As a personal opinion I enjoyed the book very much.


2004/08/03 - Correlation paper

devel

As said last week we were finishing another paper about ossim's correlation engine. It's done, you can grab it here. Enjoy.


2004/07/26 - Status update

logo

July is being a busy month for us all but nevertheless here's a short status update.

First of all we would like to thank Stéphane Fournier for joining our team. He's been doing a great job the last couple of months and helped to improve ossim a lot so, welcome.

If you've taken a look at the cvs you'll have noticed all the acl stuff we implemented using phpgacl which adds a new level of security to the whole app, with the code review we'll have to do before 1.0 around the corner. The rrd stuff is being heavily improved too since currently they only result in noisy false positives.

Another addition that will make it into 0.9.7 is a reporting module for incident handling that could be very useful on bigger environments with incident escalation procedures and the like.

A little bit late but we're pleased to announce the availability of the bundled Fedora-Ossim 0.9.6 ISO provided by Boseco, grab it at http://www.boseco.com. It includes some nice additions and pretty much shows how a good setup should look.

Again, new documentation is available too (thanks to Ken Gregoire) and we're finishing a second paper covering the correlation engine. It should be out later this week.

And, last but not least: check out http://www.bleedingsnort.com for up-to-date, bleeding edge snort rules. The false positive rate is extremely low for little tested signatures and they are being very useful to us.


2004/07/05 - OSSIM Logo

logo

Finally we've got a logo! Why did we choose an elephant? Our elephant will assimilate all the different network events, it will remember each attack and correlate the responses, it will find the proof that it's a real attack, finally sending a big alarm.

OSSIM Logo

You can see more pictures at the artwork section.


2004/07/01 - OSSIM 0.9.6

release

Version 0.9.6 is out. Please upgrade to this version as it corrects many bugs affecting framework, server and agents.

As you can see on http://www.ossim.net, we've also redesigned part of our web page and have setup a apt-like repository for ossim and it's deps, just add one of these lines to your sources.list:

# Fedora Core 2
rpm http://www.ossim.net/ download/fedora fc2 os-sim

# Fedora Core 1
rpm http://www.ossim.net/ download/fedora fc1 os-sim


2004/06/17 - New debian packages and installation notes

debian

We're proud to announce the availability of debian packages for most of the OSSIM dependencies and up-to-date documentation. The original OSSIM rpm's can be easily converted using alien. Enjoy!

Update:
You can add this line into your /etc/apt/source.list file:
deb http://www.ossim.net/download/ debian/


2004/06/14 - OSSIM 0.9.5

release

Ossim 0.9.5 is out. Featuring a huge number of bugfixes and some very nice improvements we're steadily approaching 1.0.

Here's a short list of what this release provides:


2004/05/12 - OSSIM 0.9.4

release

We're proud to announce OSSIM 0.9.4. Again, many, many bugs involving agent, server and framework have been fixed in this release. There have been lots of speed improvements too. Additionaly, as usual, new features have been finished.

Here is a short list:

Enjoy...


2004/04/28 - Fedora OSSIM Installation ISO

iso

We would like to thank Michael Boman for the effort he is putting into getting a fully working Fedora OSSIM-ISO with all needed dependencies packaged and ready to use. See the official announcement.

For more information about the ISO (which is still in beta-testing) please visit http://www.boseco.com. We'll also keep this site up-to-date regarding OSSIM-ISO (if you come up with a better name just throw us a mail) and announce new releases, making the iso available when it's stable enough.

We'll be releasing in a few days, so this should be 99% OSSIM 0.9.4 iso. Check for it at download section and enjoy! :)

Note: The ISO mentioned above doesn't contain a Live! Distribution. It's an installation CD.


2004/03/25 - OSSIM 0.9.3, bugfixes again

release

It happened again. Fixing some bugs within 0.9.1 we introduced a new serious bug. Release 0.9.3 fixes monitor requests from the server that were broken in 0.9.2.

We apologize for any inconvinience this could have caused.


2004/03/24 - OSSIM 0.9.2 is out, bugfix release

release

A major bug was introduced on 0.9.1 and has been fixed now. Some bug have also been fixed within the misc scripts.

Besides that os and mac detection has been incorporated into the agent and the change logic now is done on the server side.

Last but not least, sensor management has been greatly improved and now ntop, snort, arpwatch, etc... can be started/stopped and enabled/disable from within the web interface.

Thank's to all those who submitted useful bug reports.


2004/03/11 - Snort - Nessus correlation. OSSIM 0.9.1 out

release

Ten days after releasing ossim 0.9.0 we're proud to announce 0.9.1. Hopefully this means we'll be able to release every 15 days as we did at the beginning...

This release's main purpose is twofold:

With this new correlation method, whenever an alert arrives against a host on which nessus has identified a vulnerability, the alerts reliability and priority are raised. It's as simple as that. As of today we've got a relation of 610 snort-nessus events. This is possible due to the hard work of Ignacio Herrero; thank's to him, it's been a hard task.

If you think there are more events that should be included into this list please submit them.

Besides that, minor feature enhancements include:

Enjoy


2004/03/01 - OSSIM 0.9 is out

release

This release features improved detectors, improved monitors, completely redrawn visuals with lots of added features and many many core improvements.

The web interface's focus has changed towards a three tier hierarchy that shows:

Other enhancements include:

Acid integration has also been greatly improved showing asset, priority, risk and reliability for each alert. Each eventtype now gets it's own sensor assigned and there's the ability to filter by the new added data.

And last but not least, this time rpms for Fedora are being provided.

Enjoy


2004/02/24 - Correlation engine explained

devel

We're releasing a sample correlation directive that tries to reliably catch the NETBIOS DCERPC ISystemActivator exploits using fairly complex rules that uses:

As it uses many different input sources it's a nice example that shows how correlation directives are used within ossim.


2004/02/11 - OSSIM Fast Guide

devel

This document summarizes ossims functionality and use briefly showing each of its elements, why we chose them and what they provide.

Read it in order to get a quick glance of the feature ossim provides.


2004/01/27 - OSSIM 0.8

release

We're proud to announce ossim 0.8. This release adds major feature enhancements / bugfixes.

This release features:

RedHat 9 and MacosX 10.3 packages are due to be released within the next few days in order to make installation easier.

As always please report bugs, suggestions, help requests and similar to us please so we can improve our code. Either send an email to ossim or use the forums or mailing list available at http://sourceforge.net/projects/os-sim/


2003/12/26 - Installing OSSIM on a Debian GNU/Linux

debian

This document tries to show in detail and step by step how to install OSSIM on a Debian GNU/Linux system. You can find it at the documents section.

Almost everything exposed in this document can be applied to any other Linux distribution. Hopefully it will be very useful for you.

If you have any problem installing OSSIM, please contact with all the OSSIM developers at core@ossim.net. Your comments or questions are very important for us.


2003/12/19 - Status update

devel

It has been a long time since we last published some code, but it's not because we are lazy, only there are happening a lots of changes lately (as always...) and the core has become quite unstable.

So, with the holidays arriving, developmente will surely slow down but we expect our next release towars mid-end-january, including:

There are some guys working on a live CD based on Gentoo and Knoppix, and we are working too on easy installation:


2003/12/01 - OSSIM 0.7.1 - bug fixes

released

This release corrects database access errors, memory leaks and some ocassional core dumps.

Minor feature enhancements are also included.


2003/11/22 - OSSIM 0.7 released

released

We're proud to announce the release of version 0.7.

The most important inclusion this time is the first event correlation method. It uses if-then events defined within a xml configuration file in order to detect event sequences that may show a successful intrusion or at least an interesting and qualified security event.

More code rewrite has been done in order to handle all the new functionality. Server and Agents are now two separate entities, the former handles the core processing, calculation and correlation and the latter take care of data input (snort, spade, firewall-1, iptables, apache and IIS for this time)

Please read more at the release notes and check the changelog for more details; there are lots of changes this time.


2003/11/07 - English system description available

info

The system description translation has been finished at last.
Please check it out: [online, PDF].

Many thanks to Curtis Draves for the great translation.


2003/11/04 - OSSIM 0.6.3 released

relesase

Lots of changes this time.

The parser rewrite is now complete and its performance has been drastically increased. Some functionality (rrd, fw-1) is missing but should be reinserted soon.

Now it's time to focus on modularity, correlation and to write a generic agent/parser interface, separating it from our main server.

Not many gui changes, we begun to work on remote sensor management but the code needs lots of improvements.

Enjoy ;)


2003/10/30 - OSSIM Project status update

info

There are some important changes going on. The parser rewrite (now called server) is almost finished and performance has drastically improved, reaching the 55 events/second lower limit. Our intention is to reach about 300 events/second.

Architecture has been also rewritten and we are now taking a much more modular approach, separating remote agents (those running snort, ntop, p0f, etc...) from the main core and making everything quite modular.

Our main focus over the next few weeks will be all the event correlation stuff but as of now we only have small working code snippets that we are going to merge into our main code tree soon.


2003/10/17 - OSSIM 0.6.2 released and project changes

relesase

Did we say parser would be fixed in a few days? We were wrong. Fabio Ospitia has joined our team and is doing a complete parser rewrite. The code cannot be used but we included it this week because it's quite impressive.

Some minor framework enhancements have been done too and we're working quite hard on usability and installation ease.

Once the parser is stable we'll begin to work full-time on event correlation and stability fixes.


2003/10/10 - OSSIM 0.6 is out

relesase

Be careful using the parser, we know some things are broken and we want to fix them as soon as possible. If you change the policy, host or network info you have to restart the parser, ip reset doesn't work and there are some other issues.

If you want to make sure everything works alright use the new code but stick to the old parser and .pl files.

Some of these issues should get fixed within a few days, so expect 0.6.1 soon.


2003/10/06 - OSSIM description in detail

documentation

Finally, we have finished the OSSIM description document (also available in PDF). It covers both architecture and functionality of this project, and also describes the qualification and correlation methods used. Hopefully it'll be interesting for you.

At this time, only a spanish version is available. We are working on the translation.


2003/10/03 - OSSIM 0.5.2 released

release

OSSIM 0.6 was intended to be released today but we've done a major parser rewrite and there are still some issues to solve. So old parser is used and the new one is being included for review.

Our TODO list has been growing this week too and is still doing so. This weekend we should release some documentation about the internals, first in spanish, sorry. (It's being translated)

Also thanks to some people for their helpful input ;)


2003/09/25 - OSSIM 0.5.1 released

release

We are releasing 0.5.1 early since there will be many changes during the next few days/weeks and code may become quite unstable.

This new version fixed a time-based policy bug, and added minor functionality. See the ChangeLog for details.


2003/09/25 - Devel status info

devel

We want to release sort of a roadmap stating what we wan't to work on until 1.0 and 2.0. But time is sparse...

In the next few weeks we intend to:

Integrate:


2003/09/18 - OSSIM 0.5 released

release

Some changes this week, we are working on a time based policy, the rule viewer now works again. RRD anomalies are now being qualified and host/networking scanning functionality has finally been regained.

Check the ChangeLog for more details.


2003/09/15 - First screenshots

screenshot

First screenshots have been submitted. They mean to show the OSSIM functionality. You can see them at the screenshots section.


2003/09/14 - Documentation

doc

We are writing a lot of documentation, that will be posted at the docs section. Hopefully this will help to understand the details of the project.


2003/09/10 - Welcome to the OSSIM Web Site!

info

Welcome to the OSSIM web page. Sorry to disappoint you - we're still under construction, so you can't enjoy this page yet! Our aim is to have most of our site up in a few days.

In the meantime, have a look at the sourceforge web project.