Securix-NSM Project Page

Securix-NSM is the successor of Knoppix-NSM. It's an extension of our NSMnow technology which has been integrated with the universal Debian foundation with a range of other tools to work from. Like it's predecessor Securix-NSM is dedicated to providing a framework for individuals wanting to learn about Network Security Monitoring (NSM) or who want to quickly and reliably deploy a NSM capability in their network.

Our goal is to provide an introduction to NSM and a live CD platform that can be used as a launch pad to bigger and better things. We have tried to do most of the hard work to help you get up and running as fast as possible, so you can spend more time learning about NSM, leaving the details as a latter exercise once familiar with the concepts.

Securix-NSM is now based on Debian Live, which means that you can test all the tools in a live Debian session running on the CD without the need for a HardDisk Drive (HDD) installation.


So what are the benefits of using Securi-NSM? We're glad you asked:

  • Rapid deployment

    One file to define your configuration options and start the installer. This makes building the system fast, everything is being done behind the scenes based on all decisions and options being defined up front and in one place. You can focus on using sguil and monitoring your networks.

  • Complete out of channel Intrusion Detection and Analysis center

    With Securix-NSM you can deploy a complete NSM network to monitor your existing network infrastructure. Securix-NSM comes pre-configured for deployment of multiple sensors and databases, all you need to do is create the sensor accounts in the database and change some passwords.

  • Secure

    Securix-NSM has been built with security in mind. All remote communications are over SSL tunnels so that you do not have to be concerned about eaves droppers if you decide to run Securix-NSM in your main network channels. Another feature is the use of iptables to ensure that only allowed hosts can connect and only necessary services are visible to the network.

  • Easy console deployment

    Need another analyst client, just boot from the CD (setting the host and ip at boot time) and you are up and running straight away.

The intent of Securix-NSM is to provide a distrubtion with accompanying documentation on the tools that we have selected and how they are put together in the NSM framework. For detailed information see the documentation pages.

Powered by Xen Powered by Apache Written with VIM Best viewed with Firefox Managed by git