Skip to content
Sections
>> Trisquel >> Packages >> aramo >> admin >> sagan
etiona  ] [  nabia  ] [  aramo  ]
[ Source: sagan  ]

Package: sagan (1.2.0-1.2)

Real-time System & Event Log Monitoring System

Sagan is a multi-threaded, real time system- and event-log monitoring system, but with a twist. Sagan uses a “Snort” like rule set for detecting malicious events happening on your network and/or computer systems. If Sagan detects a potentially bad event, that event can be stored to a Snort database (MySQL/PostgreSQL), send it to a SIEM tool like Prelude, or send an email. Sagan is meant to be used in a ‘centralized’ logging environment, but will work fine as part of a standalone Host IDS system for workstations.

Other Packages Related to sagan

  • depends
  • recommends
  • suggests
  • dep: adduser
    add and remove users and groups
  • dep: libc6 (>= 2.32)
    GNU C Library: Shared libraries
    also a virtual package provided by libc6-udeb
  • dep: libfastjson4 (>= 0.99.3)
    fast json library for C
  • dep: liblognorm5 (>= 0.3.0)
    log normalizing library
  • dep: libpcre3
    Old Perl 5 Compatible Regular Expression Library - runtime files
  • dep: libyaml-0-2
    Fast YAML 1.1 parser and emitter library
  • dep: lsb-base (>= 3.0-6)
    Linux Standard Base init script functionality
  • dep: sagan-rules
    Real-time System & Event Log Monitoring System [rules]

Download sagan

Download for all available architectures
Architecture Package Size Installed Size Files
amd64 107.1 kB589 kB [list of files]
arm64 98.0 kB563 kB [list of files]
armhf 102.6 kB467 kB [list of files]
ppc64el 118.1 kB845 kB [list of files]