SensorFleet IDS Rule Manager Instrument

Provides management web ui for Zeek and Suricata instruments.

In Rule Manager Suricata and Zeek entries can be created and edited, also external lists can be used together with locally created.

Rule manager delivers entries to Zeek and Suricata instruments.

Features

  • History log of user interactions with entries
  • Validation for locally created entries

Suricata

  • Rule list management
    • Local rule lists
    • External rule lists
    • Rule revisions
    • Rule commenting
  • Event filter management
  • Rule search

Zeek

  • Scripts management
  • Blacklists management

Properties

Developer SensorFleet Oy
Categories Attack Detection, Traffic Analysis, IDS
Network access type None
Required interfaces None
Dependencies Suricata IDS
Related Instruments Zeek
Data retention Rule manager stores edit history of Suricata rules and history of user actions (edit, delete creation)
Management UI Yes
Previous instrument Log Forwarder Next instrument PortDiff

Contact & Locations

contact@sensorfleet.com

Privacy policy »

© SensorFleet Oy
Business ID: 2884312-2

Oulu

SensorFleet Oy
Teknologiantie 11
90590 Oulu
Finland

Sami Petäjäsoja
+358 40 503 0745

Helsinki

SensorFleet Oy
Hitsaajankatu 22
00810 Helsinki
Finland

Simo Mäkipaja
+358 40 583 3999