Update 2011/06/14 6:00 AM: Sourceforge is reporting that the Security Onion 20110607 files have replicated to at least 15 mirrors now.
Security Onion 20110607 is now available! New features in this release are as follows:
- Sguil 0.8 (now with more shininess and anti-aliased fonts!)
- Squert 0.8.3 (now with user authentication!)
- new tcl/tk packages (resolves a scaling issue when running in VMWare and allows for the anti-aliased fonts mentioned above)
- a new Setup script (adds support for Sguil 0.8 and Squert 0.8.3 and also provides more information once Setup completes)
New users can download the latest ISO image from here. It should be noted that pentest tools have been removed from this ISO. This includes metasploit, john, ophcrack, and steghide. For more information, please see Issue 106.
Existing Security Onion users can perform an in-place upgrade to version 20110607 using the following commands:
wget http://sourceforge.net/projects/security-onion/files/security-onion-upgrade.shIt will then upgrade your box to the latest tcl/tk, Sguil, Squert, and Setup script. If you have an existing Sguil database, it will run the Sguil DB upgrade, which will ask:
sudo bash security-onion-upgrade.sh
Do you want to continue? yPlease test the upgrade on test machines before upgrading your production machines.
Database password: Press Enter to accept the default of "null" (unless you've changed the MySQL root password)
DB schema needs to be updated: Press Enter to accept the default of "y"
Path to update...Press Enter to accept the default
Sguil login window
Squert login window