BeBits Information Developer Central Submit Application Your Account Web Links Contact Us
BeBits
PortSentry
version 1.1
contact publisher
home page
screenshots
version history
other reviews
send updates for this application
talkback
0 comments
 Published by Peter Moore
   Click here for more information about this publisher...
 Date Posted:   October 18th, 2001
 Last Updated:   October 18th, 2001
 License: GPL
 Downloads: 839 total; 63 recently
 Page Views: 7,488 total
 User Rating: awaiting 10 votes Give this application a rating
 Jump to the Downloads section
About PortSentry:
PortSentry is designed to detect and respond to port scans against a target host in real-time.

Compiled for BONE.
Don't run Snort and this app on the SAME PC.. They conflict. I have had it running on a PC where Snort is NOT running for a long time and it hasnt failed yet.

You'll have to play around with the conf file. I changed my 333.444.555.666 to 127.0.0.1 -blackhole .....but it's been fine so far. Email me if you need help.

Seems to work ok. Stealth detection (via UDP) is only enabled in Linux at the moment. Read all about PortSentry here.

IMPORTANT:
I forgot to mention that you'll need to edit the /boot/home/config/etc/portsentry.conf file
Once you've opened it, do a search for BeOS and you'll get to here:
# BeOS
# KILL_ROUTE="/bin/route add $TARGET$ nm 255.255.255.255 gw 333.444.555.666 dev your_net_device"
#eg for my etherexpress:
KILL_ROUTE="/bin/route add $TARGET$ nm 255.255.255.255 gw 333.444.555.666 dev /dev/net/eepro100/0"
(if yours doesnt have the above just edit it)

Now you will have to add in your network card info. Mine is an intel etherexpress 100 so you can see where the info was in /dev/net. Change that to whatever yours is.

KNOWN BUGS:
I have found a bug which surfaces when someone tries to connect to port 111 (the rstatd):
This is the output from Snort, and PortSentry crashes when this occurs:
[**] [1:583:1] RPC portmap request rstatd [**]
[Classification: Attempted Information Leak] [Priority: 3]
10/21-03:41:51.782423 195.205.236.146:3466 - 127.0.0.1:111
PROTO017 TTL:35 TOS:0x0 ID:23619 IpLen:20 DgmLen:84
Len: 64
[Xref = http://www.whitehats.com/info/IDS10]
It could be that the two products don't work together. I havent been able to test this as i have to get some tools so i can replicate this scan.

As usual i didn't write, just compiled it. For best results you probably want to get Logcheck from Psionic as well.
I have it working on BeOS and if i get enough requests i'll put it up here too.

Latest Version
   
Details about this version:
first one for BeOS. you might need to get the companion program LogCheck.

 
Intel Version - requires R5   (20 KB) 479 downloads
 
 
Dev LinkLink reliability rating  [rating: 10]    Download this app  Report bad link
www.loved.com (Australia)
 
Add Additional Location
 
Source Code - requires R5   (50 KB) 360 downloads
 
 
Dev LinkLink reliability rating  [rating: 10]    Download this app  Report bad link
Psionic Software
 
Add Additional Location
  Source Available
 
Related Links:
Post your own comment to the Talkback for this application!
Report a problem with the listing for this application!
Like this app? Have questions or comments?
Why not tell the author? Use the "e-mail publisher" link to get in touch with the publisher; they usually love getting feedback.
 
BeGroovy
  Recent Downloads  -  # 547
Total Downloads  -  # 2,194
Total Views  -  # 3,007
User Ratings  -  N/A
  Misc. Network
System Utilities
1.  BePodder - 9.73
2.  QEMU - 9.68
3.  ScummVM - 9.57
4.  Haiku AGP busm... - 9.35
5.  cpu_fix - 9.31
6.  vim6 - 9.31
7.  VNCServer - 9.30
8.  Beezer - 9.26
9.  HandBrake - 9.25
10.  BeeF - 9.25
1.  Ati Radeon G... - 40,962
2.  BeOS 5 Perso... - 36,772
3.  BePDF - 22,632
4.  Realtek RTL8... - 20,776
5.  Ensoniq Audi... - 19,395
6.  USB Joystick... - 17,833
7.  ATI Rage 128... - 13,762
8.  VLC Media Pl... - 12,326
9.  DOSBox - 11,392
10.  S3 Trio 64 v... - 10,968
You are not logged in.
 Login

 
Unless otherwise noted, everything is copyright © 1999-2013 Haikuware. All Rights Reserved.
For more legal trivia, take a gander at our
Legal Stuff page and our Privacy Statement.
Website Deisgn: NumbDesign