Hookem-Banem

Built to react fast in server farms environments (ISPs, HSPs, organisations...) Hookem-Banem is a log monitoring system which monitors logs being sent to a central server (syslog, file...) and on detection of malicious intent (repeated login failures, many failed RCPT commands...

Cost / License

  • Free
  • Open Source

Application type

Platforms

  • Linux
  • Self-Hosted
-
No reviews
2likes
0comments
0news articles

Features

Suggest and vote on features
  1.  Distributed
  2.  Firewall
  3.  Support for IPv6

 Tags

Hookem-Banem News & Activities

Highlights All activities

Recent activities

No activities found.

Hookem-Banem information

  • Developed by

    Unknown
  • Licensing

    Open Source (GPL-3.0) and Free product.
  • Written in

  • Alternatives

    8 alternatives listed
  • Supported Languages

    • English

AlternativeTo Category

Security & Privacy

GitHub repository

  •  1 Stars
  •  0 Forks
  •  0 Open Issues
  •   Updated  
View on GitHub
Hookem-Banem was added to AlternativeTo by James Hook on and this page was last updated .
No comments or reviews, maybe you want to be first?
Post comment/review

What is Hookem-Banem?

Built to react fast in server farms environments (ISPs, HSPs, organisations...) Hookem-Banem is a log monitoring system which monitors logs being sent to a central server (syslog, file...) and on detection of malicious intent (repeated login failures, many failed RCPT commands, bad HTTP requests... any other repeating condition you want to monitor for) it broadcasts a ban command to all servers in the cluster so the clients running on each machine can drop/reject any future connections from the attacker for a limited time (and on continued repeats even longer periods)

You can just monitor sshd logs for individual matching lines or using the built in pattern matching (generated line X then generated line Y), Hookem-Banem can be configured to only block specific attack attempts.

Official Links