Archive for the “Snort” Category

Snort IDS / IPS systems

What is it?

PacketProtector 

 

 

 

 

 

 

PacketProtector is a Linux distribution for wireless routers, built on top of OpenWrt. The goal of this project is to transform the router into a unified threat management device.

Here's what you get:

PacketProtector

PacketProtector Light

a stateful firewall (iptables)

y

y

WPA/WPA2 Enterprise wireless (802.1X and PEAP with FreeRADIUS)

y

n

intrusion prevention (Snort-inline)

y

y

remote access VPN (OpenVPN)

y

y

content filtering/parental controls (DansGuardian)

y

n

web antivirus (DG + ClamAV)

y

n

a local certificate authority (OpenSSL)

y

y

secure management interfaces (SSH and HTTPS)

y

y

advanced firewall scripts for blocking IM and P2P apps

y

y

IP spoofing prevention (Linux rp_filter)

y

y

basic protocol anomaly detection (ipt_unclean)

y

y

anti-phishing (OpenDNS)

y

y

automatic signature/rule updates

y

y


Each of these services is automatically bootstrapped and configured with sensible defaults. A secure web interface makes common configuration tasks as simple as a point and click.

PacketProtector Light runs on the Linksys WRT54G/WRT54GS (versions 1-4) and the WRT54GL.

The full version requires a Linksys WRTSL54GS or ASUS WL-500g (Deluxe or Premium) router, and a USB 2.0 drive with 120MB of free space. More… 

Comments Comments Off