Header banner
Revain logoHome Page
Josh Allen photo
1 Level
799 Review
25 Karma

Review on Ossec by Josh Allen

Revainrating 5 out of 5

A valuable tool that helped create secure & safe datacenters

The best feature of OSEC for me personally was being able to use python scripts which allowed us as DevOps people to automate processes in our environment without having any IT/Network support at all! This also helps with creating an automated workflow where we can run tests against each other servers before they go live (this has saved many hours). I dislike how much easier it would be if you had better documentation about some functions such as finding files by searching directories etc. For example there are two different ways when performing searches but its hard to know what one means or works differently from another - this could help users get confused sometimes so maybe write up more clearly? Also make sure your server hardware supports Linux kernel 4+ due to security vulnerabilities found recently since 3 does not have Kernel Protection Keys implemented yet! We were using Python's ossec library along side Nmap internally here so used most often. Security breaches within environments meant less.

Pros
  • If anyone wants screenshots let them ask via PM / email because my original post wasn;'
Cons
  • Some problems