全部搜索项
bullseye  ] [  bookworm  ] [  sid  ] [  experimental  ]
[ 源代码: crowdsec  ]

软件包:crowdsec(1.0.9-4)

crowdsec 的相关链接

Screenshot

Debian 的资源:

下载源码包 crowdsec

维护小组:

外部的资源:

相似软件包:

试制(Experimental)软件包

警告:这个软件包来自于 experimental 发行版。这表示它很有可能表现出不稳定或者出现 bug ,甚至是导致资料损失。请务必在使用之前查阅 changelog 以及其他潜在的文档。

lightweight and collaborative security engine

CrowdSec is a lightweight security engine, able to detect and remedy aggressive network behavior. It can leverage and also enrich a global community-wide IP reputation database, to help fight online cybersec aggressions in a collaborative manner.

CrowdSec can read many log sources, parse and also enrich them, in order to detect specific scenarios, that usually represent malevolent behavior. Parsers, Enrichers, and Scenarios are YAML files that can be shared and downloaded through a specific Hub, as well as be created or adapted locally.

Detection results are available for CrowdSec, its CLI tools and bouncers via an HTTP API. Triggered scenarios lead to an alert, which often results in a decision (e.g. IP banned for 4 hours) that can be consumed by bouncers (software components enforcing a decision, such as an iptables ban, an nginx lua script, or any custom user script).

The CLI allows users to deploy a Metabase Docker image to provide simple-to-deploy dashboards of ongoing activity. The CrowdSec daemon is also instrumented with Prometheus to provide observability.

CrowdSec can be used against live logs (“à la fail2ban”), but can also work on cold logs to help, in a forensic context, to build an analysis for past events.

On top of that, CrowdSec aims at sharing detection signals amongst all participants, to pre-emptively allow users to block likely attackers. To achieve this, minimal meta-information about the attack is shared with the CrowdSec organization for further retribution.

Users can also decide not to take part into the collective effort via the central API, but to register on a local API instead.

其他与 crowdsec 有关的软件包

  • 依赖
  • 推荐
  • 建议
  • 增强

下载 crowdsec

下载可用于所有硬件架构的
硬件架构 软件包大小 安装后大小 文件
amd64 9,294.4 kB33,471.0 kB [文件列表]
arm64 7,972.3 kB32,207.0 kB [文件列表]
armel 8,107.1 kB31,906.0 kB [文件列表]
armhf 8,085.3 kB31,794.0 kB [文件列表]
i386 8,694.9 kB31,788.0 kB [文件列表]
mipsel 7,350.3 kB35,701.0 kB [文件列表]
riscv64 (非官方移植版) 8,434.1 kB33,507.0 kB [文件列表]
s390x 8,309.4 kB35,075.0 kB [文件列表]