Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | RE: OSSIM Fedback |
|---|---|
| Date: | Tue, 13 Jun 2006 12:46:25 -0600 |
Don't know much about the code. However, the Vmware image is cool and the .iso needs to be updated. I think that there is great value in pulling all of these tools together. As usual, I am sure the installation process will get better over time. Thanks, John -----Original Message----- From: Dominique Karg [mailto:dk@ossim.net] Sent: Tuesday, June 13, 2006 1:37 AM To: Stefano Zanero; Koolk3 Cc: security-basics@securityfocus.com; focus-ids@securityfocus.com; pen-test@securityfocus.com Subject: Re: OSSIM Fedback First of all my apologies for the cross-posting, I don't like it but since it's been started this way I'll answer to the three lists. It's not my duty to enter into discussion if ossim is easy to use or not but I will freely admit that we'd love to have much more documentation that there's already available. I hope time & third party contributions will be able to close this gap in the near future, we'll see. What made me enter this thread were what I see as accusations of intentionally writing complex code. I must say that I have to deny this and ask Stefano sincerely for proof of this. Ossim is a complex project, it's been evolving since more than four years now and there are quite some things we have done in the past which we don't like. Ossim has not been planned to it's current extent beforehand because we haven't had tons of money to spend and the little funding we had could only be consolidated having something working asap. This is why parts of it may be not well documented, not clearly structured and so on. But obfuscating / complicating code in purpose ? No way. Anyway, if you have had trouble understanding the code and needed help, we've got a small but fine user base who would've been glad to help (ourselves included). I recommend you trying out the vmware image we released a couple of weeks ago, it is already setup and working and could be used by anyone to at least "learn by example". And, in order to close this mail and clarify a last thing, most of what's included with ossim is being released under BSD license, if at any time we had intention to avoid reuse of the code we would've used a more restrictive license in the first place (like GPL), don't you think so ? Greetings, Dominique Am 12.06.2006 um 23:06 schrieb Stefano Zanero:
We studied OSSIM in order to use it as a framework for implementing our own correlation algorithms. My experience is partially negative, in particular for the lack of documentation on installation and software internals. Additionally, the source code is intentionally complex and undocumented, to avoid forking or reuse... which is quite curious for a GPL software.
------------------------------------------------------------------------ ------ This List Sponsored by: Cenzic Concerned about Web Application Security? Why not go with the #1 solution - Cenzic, the only one to win the Analyst's Choice Award from eWeek. As attacks through web applications continue to rise, you need to proactively protect your applications from hackers. Cenzic has the most comprehensive solutions to meet your application security penetration testing and vulnerability management needs. You have an option to go with a managed service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can help you: http://www.cenzic.com/news_events/wpappsec.php And, now for a limited time we can do a FREE audit for you to confirm your results from other product. Contact us at request@cenzic.com for details. ------------------------------------------------------------------------ ------ ------------------------------------------------------------------------------ This List Sponsored by: Cenzic Concerned about Web Application Security? Why not go with the #1 solution - Cenzic, the only one to win the Analyst's Choice Award from eWeek. As attacks through web applications continue to rise, you need to proactively protect your applications from hackers. Cenzic has the most comprehensive solutions to meet your application security penetration testing and vulnerability management needs. You have an option to go with a managed service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can help you: http://www.cenzic.com/news_events/wpappsec.php And, now for a limited time we can do a FREE audit for you to confirm your results from other product. Contact us at request@cenzic.com for details. ------------------------------------------------------------------------------
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | RE: What are the best open source cisco pix log analyzers?, Robertson, Seth (JSC-IM) |
|---|---|
| Next by Date: | RE: What are the best open source cisco pix log analyzers?, Beauford, Jason |
| Previous by Thread: | Re: OSSIM Fedback, Dominique Karg |
| Next by Thread: | Re: OSSIM Fedback, Stefano Zanero |
| Indexes: | [Date] [Thread] [Top] [All Lists] |