Lista de Plugins existentes no USM / OSSIM AlienVault
Olá,
Abaixo está uma lista compilada de plugins já existentes na base do USM / OSSIM.
A ferramenta não está limitada com apenas esses plugins, sendo que sempre existem plugins novos sendo criados e é possível você mesmo criar o seus próprios plugins para coletar logs de diferentes dispositivos.
Alcatel Lucent Brick
AlienVault Forensics DB Post-correlation
AlienVault OSSIM Agent
AlienVault OSSIM Monitor
AlienVault Post Correlation
Allot NetEnforcer
Apache Foundation HTTP Server
Apache Foundation Spam Assassin
Apple iPhone
Aruba Networks Mobility Access Switch
Aruba Networks Wireless
Avast Antivirus Home
Axigen Messaging Axigen Email Server
BIT9 Security Platform
Bluecoat Systems Proxy SG
Bro Network Security Monitor (NSM)
Broadweb Netkeeper Firewall
Broadweb Netkeeper IPS
Brocade Vyatta
Brookhaven National Lab Osiris
Checkpoint FW-1
Checkpoint VPN-1 / FW-1 / NG
Cisco 300 Series Managed Switches
Cisco ACE (Access Control Engine)
Cisco ACS (Access Control Server)
Cisco ASA (Adaptive Security Appliance)
Cisco ASR (Aggregation Services Router)
Cisco FWSM (Firewall Services Module)
Cisco IDS
Cisco IPS
Cisco IronPort ESA
Cisco Meraki
Cisco Nexus NX OS
Cisco PIX Firewall
Cisco VPN Concentrator 3030
Cisco WLC (Wireless LAN Controller)
Citrix Netscaler
Dell Enterasys Matrix X-Series Router
Dell Entrasys Dragon
Dell SonicWall Scrutinizer
Double Precision Inc Courier Mail Server
Drupal Project Drupal 5
Envault Corporation Airlock
Extreme Networks Alpine 3800 Series Switches
Extreme Networks Summit WM3000 Series
F5 Big IP Load Balancer
F5 Firepass Network
Fortigate Fortimail
Fortinet Fortigate
Fortinet Fortiguard
FreeBSD Project IPFW
Gamelinux PRADS
General Dynamics Fidelis XPS
GFI Software Vipre Antivirus Protection
Hardened PHP Project Suhosin
HP ServiceGuard
HP SiteScope
HP StorageWorks Command View EVA
HP TippingPoint IDS
IBM AIX Audit Logs
IBM ISS RealSecure
IBM Proventia Network IPS GX
IBM Siteprotector
IBM Storewize
IBM Tivoli RAS trace log
IBM VisionPLUS
Immunity Inc. El Jefe
Imperva Securesphere
Independent Amun HoneyPot
Independent Arpalert
Independent Artemisa VOIP Honeypot
Independent Dionaea
Independent Dovecot
Independent GlastopfNG
Independent Heartbeat
Independent Honeyd (Honeyd Virtual Honeypot)
Independent Kismet
Independent m0n0wall
Independent Monit
Independent Moodle
Independent Motion
Independent Nagios
Independent Nepenthes
Independent NFS
Independent NMAP Monitor
Independent NTOP Monitor
Independent NTOP Session Monitor
Independent NTsyslog (generic)
Independent p0f
Independent PADS (Passive Asset Detection System)
Independent Pam_Unix
Independent Ping
Independent Postfix
Independent PRADS
Independent PureFTPd
Independent RRDtool
Independent Squid
Independent Sudo
Independent TCPTrack
Independent USB udev
Independent VSFTP
Independent Webmin
Independent Whois
Independent Wuftp
Internet Systems Consortium ISC Bind
Internet Systems Consortium Linux DHCP
Intersect Alliance Snare
Juniper Networks IDP
Juniper Networks Netscreen Firewall
Juniper Networks Netscreen ISG
Juniper Networks Netscreen Manager
Juniper Networks Netscreen NSM (IDP)
Juniper Networks NSM (NetScreen Security Manager)
Juniper Networks ScreenOS
Juniper Networks SRX Series Services Gateways
Juniper Networks VPN SSL
Lawrence Berkeley Lab Arpwatch
McAfee Antispam
McAfee Antivirus
McAfee Cyberguard SG565
McAfee ePO-MVT (EPO Virtual Technician)
McAfee Intrushield
McAfee (formerly Secure Computing) Sidewinder Firewall
McAfee (formerly Stonesoft) Stonegate Firewall
McAfee (formerly Stonesoft) Stonegate IPS
MDL Project Malware Domain List
Microsoft DHCP
Microsoft Exchange Server
Microsoft IIS (Internet Information Server)
Microsoft ISA Server (Internet Security & Acceleration Server)
Microsoft Server
Microsoft SSIS (SQL Server Intregration Services)
Microsoft Windows Application Log
Microsoft Windows System Log
Microsoft Windows Security Log
Microsoft Windows NT / 2000 / XP syslog service
Microsoft WMI Monitor
Motorola Firewall
N/A Syslog
NetFilter Project Iptables
NetGear FVS318 Cable/DSL ProSafe VPN Firewall
Nortel Alteon OS
Nortel Passport 1612G Switch
OCS Inventory Team OCSInventory
OISF Suricata
OISF Suricata IDS – HTTP Logging
Open Source Mwcollect
Open System Consultants Radiator
OpenBSD Project OpenBSD-OpenSSH
OpenBSD Project OpenSSH
OpenBSD Project pf
OpenLDAP Foundation OpenLDAP
OpteNet MailSecure
Oracle Oracle Database
Oracle Oracle Database (via syslog)
Oracle Tarantella
Palo Alto Networks PA-5000 Series Firewall
Panda Software AdminSecure
Panda Software Security for Enterprise
Proofpoint Sendmail
Proxim Wireless ORiNOCO
RadWare Inc DefensePro IPS
Red Hat Resource Group (Cluster Service) Manager Daemon
RSA Security ACE
RSA Security SecurID Software Token Converter
RSA Security Authentication Manager
RSA Security SecurID
Safenet Aladdin eSafe Gateway
Samba SMB
SAP Netweaver Technology Platform
Shalla Secure Services squidGuard
Shrubbery Networks TACACS+
Sophos Antivirus
SourceFire ClamAV
SourceFire Snort
Symantec AMS (Altiris Management Suite)
Symantec Endpoint Management (EPM)
Tenable Nessus (via ossec)
Tenable Nessus Detector
Tenable Nessus Monitor
The OpenNMS Group OpenNMS
Trend Micro IMSS Messaging Security
Trend Micro Ossec
Trend Micro Ossec 2.7.3 custom alert
Trend Micro Ossec IDM
TrustWave ModSecurity Web Application Firewall
VanDyke Software Vandyke Vshell
VMWare ESXi Server
VMWare Vcenter
VMWare Workstation
WatchGuard XTM NG Firewall
WebSense Web Security Gateway
Xtera Ascenlink
(Essa lista foi atualizada dia 08/07/2015)