Showing posts with label bdr. Show all posts
Showing posts with label bdr. Show all posts

Tuesday, October 13, 2015

BDR2 Progress Report (towards Ubuntu 14.04)

I recently announced our move towards Ubuntu 14.04, called the Big Distro Rebuild 2 (BDR2):
http://blog.securityonion.net/2015/09/bdr2-electric-boogaloo-towards-ubuntu.html

I'm pleased to report that BDR2 is coming along quite nicely!

What works?
At this point, the securityonion-all metapackage and all of its dependencies should install correctly on Ubuntu 14.04 and most of the software should work correctly.

What doesn't work?
Xplico and Salt haven't been moved over yet.  There may be a few other optional packages which haven't been fully tested yet.

How can we help?
We're going to need lots of help testing all of these packages over the next few months, so if you'd like to contribute back to the community, please join the security-onion-testing mailing list and then see the following threads:
https://groups.google.com/d/topic/security-onion-testing/voIjY2OYjtc/discussion
https://groups.google.com/d/topic/security-onion-testing/dXd0qq5HP3c/discussion
https://groups.google.com/d/topic/security-onion-testing/N9DAGuvqSoo/discussion

Thanks!

What's new?
Most things are staying the same, although we're updating ELSA to the latest version which includes new animated charts and dashboards using charts.js.

Dashboard showing top DNS, HTTP, and SSL requests

Connections - Top Services

DHCP - DHCP Servers

DNS - Top Return Code

Files - MIME Types

Files - Sources

FTP - Top Commands

HTTP - Top Ports

HTTP - MIME Types

HTTP - Top Sites

HTTP - Sites Hosting EXEs

HTTP - Sites Hosting JARs

HTTP - Sites Hosting SWFs

HTTP - Sites Hosting ZIPs

Kerberos - Top Services

Notice - Top Notice Types

SMTP - Top Subjects

Software - Software Detected by Bro

SSL - Top SSL Versions

X.509 - Key Length

Thursday, September 17, 2015

BDR2: Electric Boogaloo (towards Ubuntu 14.04)

If you've been in the Security Onion community for a few years, you may remember that back in 2012 we embarked on a project called BDR (Big Distro Rebuild) to put all of our software into true Ubuntu packages designed for Ubuntu 12.04:
https://groups.google.com/d/topic/security-onion-testing/kOib06_QMPU/discussion

It's now time to rebuild all of those packages for Ubuntu 14.04, so I'm calling this BDR2.  As mentioned at the Security Onion Conference, I'm hoping to get all this work done by Christmas, but no promises!

I've done some initial work to get the securityonion-client metapackage to install cleanly on Ubuntu 14.04.
Sguil client running on Ubuntu 14.04
I'll soon start working on the securityonion-sensor and securityonion-server metapackages.

Help Wanted

We're going to need lots of help testing all of these packages over the next few months, so if you'd like to contribute back to the community, please join the security-onion-testing mailing list and then see the following thread:
https://groups.google.com/d/topic/security-onion-testing/voIjY2OYjtc/discussion

Thanks!

Search This Blog

Featured Post

Security Onion 3.1.0 Hotfix 20260528 Now Available!

Last week, we released Security Onion 3.1.0: https://blog.securityonion.net/2026/05/security-onion-310-now-available-with.html Today we are ...

Popular Posts

Blog Archive